Cant connect to websites

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • Malnutrition
    PCHF Moderator
    • Jul 2016
    • 7041

    #226
    Originally posted by jxdama
    Should i still do the CMD thing?
    Yes this will place the downloads folder n the default position. Then just use zhp suite and get me logs. You will need to go into the downloads folder and drag it to your desktop.

    Comment

    • jxdama
      PCHF Member
      • Dec 2022
      • 666

      #227
      I will be back after work around 5 if i can make it the whole day. I know this is frustrating for you because im stupid and im sure im not explaining things right from my end.

      Comment

      • jxdama
        PCHF Member
        • Dec 2022
        • 666

        #228
        Originally posted by Malnutrition
        Yes this will place the downloads folder n the default position. Then just use zhp suite and get me logs. You will need to go into the downloads folder and drag it to your desktop.
        ok, thanks

        Comment

        • jxdama
          PCHF Member
          • Dec 2022
          • 666

          #229
          Tht first fixit thing we did worked. I have no idea if that went to the notebbok or not. Nothing is listed in notebook. I mean from a few days ago when the videos were louder.

          Comment

          • Malnutrition
            PCHF Moderator
            • Jul 2016
            • 7041

            #230
            Ok, there is still more to clean unless you want to consider this solved.?

            Comment

            • jxdama
              PCHF Member
              • Dec 2022
              • 666

              #231
              Originally posted by Malnutrition
              We will just move it back.

              Hit windows key and R at the same time.
              Type CMD hit ok.
              In the command prompt copy and paste
              move %userprofile%\desktop\downloads %userprofile%\downloads
              hit enter.
              its not working. it says windows cant find move. Things are really messed up

              Comment

              • jxdama
                PCHF Member
                • Dec 2022
                • 666

                #232
                Originally posted by Malnutrition
                Ok, there is still more to clean unless you want to consider this solved.?
                Its not solved but i cant put downloads back

                Comment

                • jxdama
                  PCHF Member
                  • Dec 2022
                  • 666

                  #233
                  It says windows cant find “move”. It says retype and try again

                  Comment

                  • jxdama
                    PCHF Member
                    • Dec 2022
                    • 666

                    #234
                    I would like to get this cleaned up. I cant afford to buy a new comp and i doubt i could set it up right anyway. There must be something easy to do that would help. Take a break if you like and then we can try more things. Its still saying checking for a secure connection to a few websites then saying its secure then going back into the loop. Most sites work.

                    Comment

                    • jxdama
                      PCHF Member
                      • Dec 2022
                      • 666

                      #235
                      downlaods is still an icon. I can click on it and see downloads but when i try windows R it says windows cant find downloads.

                      Comment

                      • Malnutrition
                        PCHF Moderator
                        • Jul 2016
                        • 7041

                        #236
                        I can click on it and see downloads but when i try windows R it says windows cant find downloads.

                        That is because it is on your desktop. That directory does not exist on your computer, I did that to force windows to download items to your desktop. If the downloads folder is not in the correct place windows will automatically download to the desktop. I did this to try and make it easier on you.
                        i cant put downloads back

                        It must be due to not copying correctly, you can follow the steps below, do not try and type this out just copy and paste it, that way there is no error.



                        Copy this in the quote box, do not try and type it yourself..
                        Windows key and R at same time.
                        Type CMD hit ok
                        Copy this command.
                        move %userprofile%\desktop\downloads %userprofile%\downloads

                        Then paste into command window.
                        Hit enter.

                        Or this command.

                        Copy this in the quote box, do not try and type it yourself..
                        Windows key and R at same time.
                        Type CMD hit ok
                        Copy this command.
                        md %userprofile%\downloads

                        Then paste into command window.
                        Hit enter.



                        Or the windows key and R
                        Copy and paste
                        C:\Users\John
                        Hit ok.
                        Then drag the downloads icon from your desktop to this folder.
                        This will place it back in the correct spot.

                        Comment

                        • jxdama
                          PCHF Member
                          • Dec 2022
                          • 666

                          #237
                          If its better this way i will just leave it like that. I do want things cleaned up. Like i said i cant afford a new comp so i have to try and keep this geezer going, lol

                          Comment

                          • Malnutrition
                            PCHF Moderator
                            • Jul 2016
                            • 7041

                            #238
                            Download ZHP Suite to your desktop.
                            Right Click Run as admin.
                            Hit the scanner button.
                            Once it is complete a file name ZHPdiag.txt will be on your desktop.
                            Copy and paste it here.

                            Comment

                            • jxdama
                              PCHF Member
                              • Dec 2022
                              • 666

                              #239
                              BE back this evening.

                              Code:
                              ~ ZHPDiag v2022.12.16.89 By Nicolas Coolman (2022/12/16)
                              ~ Run by John (Administrator) (2022/12/19 10:51:27)
                              ~ Assistance: https://forum.nicolascoolman.eu/
                              ~ Blog: https://nicolascoolman.eu/
                              ~ Facebook: ZHP
                              ~ Certificate ZHPDiag: Legal
                              ~ State version: Version OK
                              ~ Mode: Scan
                              ~ Report: C:\Users\John\Desktop\ZHPDiag.txt
                              ~ Report: C:\Users\John\AppData\Roaming\ZHP\ZHPDiag.txt
                              ~ UAC: Activate
                              ~ System startup: Normal (Normal boot)
                              Windows VISTA, 32-bit Service Pack 1 (Build 6001)
                              
                              —\ Internet Browsers (3) - 0s
                              ~ GCIE: Google Chrome v49.0.2623.112
                              ~ MFIE: Mozilla Firefox 52.9.0 ESR (x86 en-US)
                              ~ MSIE: Internet Explorer v8.0.6001.19088
                              
                              —\ Windows Product Information (4) - 3s
                              ~ Windows Server License Manager Script : OK
                              ~ Licence Script File Génération : OK
                              Windows Automatic Updates : OK
                              Windows Activation Technologies : KO
                              
                              —\ System protection software (1) - 1s
                              Avast Free Antivirus v18.8.2356 (Protection)
                              
                              —\ Surveillance software (1) - 1s
                              ~ Adobe Reader X (Surveillance)
                              
                              —\ Informations on the system (6) - 0s
                              ~ Operating System: x86 Family 6 Model 15 Stepping 13, GenuineIntel
                              ~ Operating System: 32-bit
                              ~ Boot mode: Normal (Normal boot)
                              Total RAM: 2087.568 MB (21% free) : OK =>.RAM Value
                              System Restore: Activé (Enable)
                              System drive C: has 256 GB () free of 333 GB : OK =>.Disk Space
                              
                              —\ Connection to the system mode (3) - 0s
                              ~ Computer Name: SARAH-PC
                              ~ User Name: John
                              ~ Logged in as Administrator
                              
                              —\ Enumeration of the disk units (2) - 0s
                              ~ Drive C: has 256 GB free of 333 GB (System)
                              ~ Drive D: has 1 GB free of 9 GB
                              
                              —\ SYSTEM DISK MAIN FEATURES (22) - 11s
                              ~ Model: ST3360320AS ATA Device v3.CHL (333 Gb )
                              ~ Media Type: HDD Fixed Disk ( Bus: ATA)
                              
                              —\ S.M.A.R.T. PARAMETERS - [Flag][Value][Worst] [Threshold][Raw Value]
                              OK - 01 - Taux d’erreur de lecture (Raw Read Error Rate) - [15][100][253] [6][0]
                              RE - 03 - Temps moyen de mise en rotation (ms) (Spin-Up Time) - [2][98][95] [0][0]
                              OK - 04 - Nombre de démarrages/arrêts (Start/Stop Count) - [51][67][67] [20][34434]
                              KO - 05 - Nombre de secteurs réalloués (Reallocated Sector Count) - [51][100][100] [36][3]
                              OK - 07 - Taux d’erreurs de recherche (Seek Error Rate) - [15][89][60] [30][32994]
                              OK - 09 - Heures de fonctionnement (Power-On Hours Count (POH) - [50][11][11] [0][13042]
                              OK - 0A - Nombre d’essai de relance de rotation (Spin Retry Count) - [19][100][100] [97][0]
                              OK - 0C - Nombre total de cycles d’alimentation (Power Cycle Count) - [51][68][68] [20][32919]
                              OK - B8 - Transfert de données à travers le cache (End-to-End error ) - [51][100][253] [97][0]
                              OK - BB - Nombre d’erreurs irrécupérable avec ECC (Reported Uncorrectable Errors) - [58][100][100] [0][0]
                              OK - BD - Erreurs incorrigibles signalées (High Fly Writes) - [34][100][100] [0][0]
                              OK - BE - Température interne (Airflow Temperature) - [26][63][54] [0][37]
                              OK - C2 - Température interne actuelle (Enclosure Temperature) - [0][37][46] [0][37]
                              OK - C3 - Matériel ECC Récupéré (Hardware ECC Recovered) - [50][69][54] [0][2935]
                              OK - C5 - Nombre de secteurs instables (Current Pending Sector Count) - [0][100][100] [0][0]
                              OK - C6 - Total d’erreurs incorrigibles d’un secteur (Off-Line Uncorrectable Sector Count) - [0][100][100] [0][0]
                              OK - C7 - Nombre d’erreurs dans le transfert de données (Ultra ATA CRC Error Rate) - [0][200][200] [0][623]
                              
                              —\ State of the Windows Security Center (12) - 0s
                              [HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK
                              [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
                              [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
                              [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
                              [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
                              [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
                              [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
                              [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
                              [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
                              [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
                              [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
                              [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
                              
                              —\ Search Generic System Files (24) - 5s
                              [MD5.4F554999D7D5F05DAAEBBA7B5BA1089D] - 29/10/2008 - (.Microsoft Corporation - Windows Explorer.) – C:\Windows\Explorer.exe [2927104] [Unsigned] =>.Microsoft Corporation
                              [MD5.4B555106290BD117334E9A08761C035A] - 02/11/2006 - (.Microsoft Corporation - Windows host process (Rundll32).) – C:\Windows\System32\rundll32.exe [44544] [Unsigned] =>.Microsoft Corporation
                              [MD5.101BA3EA053480BB5D957EF37C06B5ED] - 19/01/2008 - (.Microsoft Corporation - Windows Start-Up Application.) – C:\Windows\System32\Wininit.exe [96768] [Unsigned] =>.Microsoft Corporation
                              [MD5.DE4685DE5130039FA63DA66C0F72F787] - 28/05/2011 - (.Microsoft Corporation - Internet Extensions for Win32.) – C:\Windows\System32\wininet.dll [916480] [Unsigned] =>.Microsoft Corporation
                              [MD5.C2610B6BDBEFC053BBDAB4F1B965CB24] - 19/01/2008 - (.Microsoft Corporation - Windows Logon Application.) – C:\Windows\System32\Winlogon.exe [314880] [Unsigned] =>.Microsoft Corporation
                              [MD5.5665120753FCE7123C4DEACE241EE715] - 02/03/2011 - (.Microsoft Corporation - DNS Client API DLL.) – C:\Windows\System32\dnsapi.dll [167936] [Unsigned] =>.Microsoft Corporation
                              [MD5.6298277B73C77FA99106B271A7525163] - 06/08/2009 - (.Microsoft Corporation - Windows Update Agent.) – C:\Windows\System32\wuaueng.dll [1929952] =>.Microsoft Windows Component Publisher®
                              [MD5.48EB99503533C27AC6135648E5474457] - 21/04/2011 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) – C:\Windows\System32\drivers\AFD.sys [273408] [Unsigned] =>.Microsoft Corporation
                              [MD5.2D9C903DC76A66813D350A562DE40ED9] - 19/01/2008 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) – C:\Windows\System32\drivers\atapi.sys [21560] =>.Microsoft Windows®
                              [MD5.7ADD03E75BEB9E6DD102C3081D29840A] - 19/01/2008 - (.Microsoft Corporation - CD-ROM File System Driver.) – C:\Windows\System32\drivers\Cdfs.sys [70144] [Unsigned] =>.Microsoft Corporation
                              [MD5.1EC25CEA0DE6AC4718BF89F9E1778B57] - 19/01/2008 - (.Microsoft Corporation - SCSI CD-ROM Driver.) – C:\Windows\System32\drivers\Cdrom.sys [67072] [Unsigned] =>.Microsoft Corporation
                              [MD5.A3E9FA213F443AC77C7746119D13FEEC] - 14/04/2011 - (.Microsoft Corporation - DFS Namespace Client Driver.) – C:\Windows\System32\drivers\DfsC.sys [75264] [Unsigned] =>.Microsoft Corporation
                              [MD5.C87B1EE051C0464491C1A7B03FA0BC99] - 18/01/2008 - (.Microsoft Corporation - High Definition Audio Bus Driver.) – C:\Windows\System32\drivers\HDAudBus.sys [53760] [Unsigned] =>.Microsoft Corporation
                              [MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - 19/01/2008 - (.Microsoft Corporation - i8042 Port Driver.) – C:\Windows\System32\drivers\i8042prt.sys [54784] [Unsigned] =>.Microsoft Corporation
                              [MD5.8793643A67B42CEC66490B2A0CF92D68] - 19/01/2008 - (.Microsoft Corporation - IP Network Address Translator.) – C:\Windows\System32\drivers\IpNat.sys [100864] [Unsigned] =>.Microsoft Corporation
                              [MD5.5734A0F2BE7E495F7D3ED6EFD4B9F5A1] - 29/04/2011 - (.Microsoft Corporation - Windows NT SMB Minirdr.) – C:\Windows\System32\drivers\MRxSmb.sys [105984] [Unsigned] =>.Microsoft Corporation
                              [MD5.7C5FEE5B1C5728507CD96FB4A13E7A02] - 19/01/2008 - (.Microsoft Corporation - MBT Transport driver.) – C:\Windows\System32\drivers\netBT.sys [184320] [Unsigned] =>.Microsoft Corporation
                              [MD5.B4EFFE29EB4F15538FD8A9681108492D] - 19/01/2008 - (.Microsoft Corporation - NT File System Driver.) – C:\Windows\System32\drivers\ntfs.sys [1081912] =>.Microsoft Windows®
                              [MD5.0FA9B5055484649D63C303FE404E5F4D] - 02/11/2006 - (.Microsoft Corporation - Parallel Port Driver.) – C:\Windows\System32\drivers\Parport.sys [79360] [Unsigned] =>.Microsoft Corporation
                              [MD5.A214ADBAF4CB47DD2728859EF31F26B0] - 19/01/2008 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) – C:\Windows\System32\drivers\Rasl2tp.sys [76288] [Unsigned] =>.Microsoft Corporation
                              [MD5.E8BD98D46F2ED77132BA927FCCB47D8B] - 02/11/2006 - (.Microsoft Corporation - Microsoft RDP Device redirector.) – C:\Windows\System32\drivers\rdpdr.sys [242688] [Unsigned] =>.Microsoft Corporation
                              [MD5.031E6BCD53C9B2B9ACE111EAFEC347B6] - 19/01/2008 - (.Microsoft Corporation - SMB Transport driver.) – C:\Windows\System32\drivers\smb.sys [66560] [Unsigned] =>.Microsoft Corporation
                              [MD5.D09276B1FAB033CE1D40DCBDF303D10F] - 19/01/2008 - (.Microsoft Corporation - TDI Translation Driver.) – C:\Windows\System32\drivers\tdx.sys [71680] [Unsigned] =>.Microsoft Corporation
                              [MD5.D8B4A53DD2769F226B3EB374374987C9] - 19/01/2008 - (.Microsoft Corporation - Volume Shadow Copy Driver.) – C:\Windows\System32\drivers\volsnap.sys [227896] =>.Microsoft Windows®
                              
                              —\ No disabled Windows Services (62) - 8s
                              O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
                              O23 - Service: C:\WINDOWS\System32\aelupsvc.dll (AeLookupSvc) . (.Microsoft Corporation - Application Experience Service.) - C:\WINDOWS\System32\aelupsvc.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\audiosrv.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Windows Audio Service.) - C:\WINDOWS\System32\audiosrv.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\audiosrv.dll (Audiosrv) . (.Microsoft Corporation - Windows Audio Service.) - C:\WINDOWS\System32\audiosrv.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - Avast Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software s.r.o.®
                              O23 - Service: C:\WINDOWS\System32\BFE.DLL (BFE) . (.Microsoft Corporation - Base Filtering Engine.) - C:\WINDOWS\System32\BFE.DLL [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\qmgr.dll (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) - C:\WINDOWS\System32\qmgr.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\browser.dll (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) - C:\WINDOWS\System32\browser.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: Microsoft .NET Framework NGEN v4.0.30319_X86 (clr_optimization_v4.0.30319_32) . (.Microsoft Corporation - .NET Runtime Optimization Service.) - C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe =>.Microsoft Corporation®
                              O23 - Service: C:\WINDOWS\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) - C:\WINDOWS\System32\cryptsvc.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\dhcpcsvc.dll (Dhcp) . (.Microsoft Corporation - DHCP Client Service.) - C:\WINDOWS\System32\dhcpcsvc.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - DNS Caching Resolver Service.) - C:\WINDOWS\System32\dnsrslvr.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\ehome\ehstart.dll (ehstart) . (.Microsoft Corporation - Windows Media Center Service Launcher.) - C:\WINDOWS\ehome\ehstart.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\emdmgmt.dll (EMDMgmt) . (.Microsoft Corporation - ReadyBoost Service.) - C:\WINDOWS\System32\emdmgmt.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\wevtsvc.dll (Eventlog) . (.Microsoft Corporation - Host Process for Windows Services.) - C:\WINDOWS\System32\svchost.exe [Unsigned] =>.Microsoft Corporation
                              O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\WINDOWS\System32\es.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\FDResPub.dll (FDResPub) . (.Microsoft Corporation - Function Discovery Resource Publication Ser.) - C:\WINDOWS\System32\FDResPub.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Group Policy Client.) - C:\WINDOWS\System32\gpsvc.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: Google Update Service (gupdate) (gupdate) . (.Google Inc. - Google Installer.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
                              O23 - Service: HP Health Check Service (HP Health Check Service) . (.Hewlett-Packard - HP Health Check Service.) - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [Unsigned] =>.Hewlett-Packard
                              O23 - Service: C:\WINDOWS\System32\IKEEXT.DLL (IKEEXT) . (.Microsoft Corporation - IKE extension.) - C:\WINDOWS\System32\IKEEXT.DLL [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) - C:\WINDOWS\System32\iphlpsvc.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: @comres.dll,-2946 (KtmRm) . (.Microsoft Corporation - MS DTCOLE Transactions KTM Resource Manager.) - C:\WINDOWS\System32\msdtckrm.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) - C:\WINDOWS\System32\srvsvc.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) - C:\WINDOWS\System32\wkssvc.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company - LightScribe Service.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe [Unsigned] =>.Hewlett-Packard Company
                              O23 - Service: C:\WINDOWS\System32\lmhsvc.dll (lmhosts) . (.Microsoft Corporation - TCPIP NetBios Transport Services DLL.) - C:\WINDOWS\System32\lmhsvc.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\mmcss.dll (MMCSS) . (.Microsoft Corporation - Multimedia Class Scheduler Service.) - C:\WINDOWS\System32\mmcss.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\FirewallAPI.dll (MpsSvc) . (.Microsoft Corporation - Microsoft Protection Service.) - C:\WINDOWS\System32\MPSSVC.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\netprof.dll (netprofm) . (.Microsoft Corporation - Network List Manager.) - C:\WINDOWS\System32\netprofm.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Network Location Awareness 2.) - C:\WINDOWS\System32\nlasvc.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Network Store Interface RPC server.) - C:\WINDOWS\System32\nsisvc.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\pcasvc.dll (PcaSvc) . (.Microsoft Corporation - Program Compatibility Assistant Service.) - C:\WINDOWS\System32\pcasvc.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\umpnpmgr.dll (PlugPlay) . (.Microsoft Corporation - User-mode Plug-and-Play Service.) - C:\WINDOWS\System32\umpnpmgr.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\polstore.dll (PolicyAgent) . (.Microsoft Corporation - Windows IPsec SPD Server DLL.) - C:\WINDOWS\System32\IPSECSVC.DLL [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\WINDOWS\System32\profsvc.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: @oleres.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\WINDOWS\System32\rpcss.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Task Scheduler Service.) - C:\WINDOWS\System32\schedsvc.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\seclogon.dll (seclogon) . (.Microsoft Corporation - Secondary Logon Service DLL.) - C:\WINDOWS\System32\seclogon.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\Sens.dll (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) - C:\WINDOWS\System32\Sens.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) - C:\WINDOWS\System32\shsvcs.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\Windows\System32\SLsvc.exe,-101 (slsvc) . (.Microsoft Corporation - Microsoft Software Licensing Service.) - C:\WINDOWS\System32\SLsvc.exe [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\Windows\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Spooler SubSystem App.) - C:\WINDOWS\System32\spoolsv.exe [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\wiaservc.dll (stisvc) . (.Microsoft Corporation - Still Image Devices Service.) - C:\WINDOWS\System32\wiaservc.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\sysmain.dll (SysMain) . (.Microsoft Corporation - Superfetch Service Host.) - C:\WINDOWS\System32\sysmain.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\TabSvc.dll (TabletInputService) . (.Microsoft Corporation - Microsoft Tablet PC Input Service.) - C:\WINDOWS\System32\TabSvc.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\tbssvc.dll (TBS) . (.Microsoft Corporation - TBS Service.) - C:\WINDOWS\System32\tbssvc.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\termsrv.dll (TermService) . (.Microsoft Corporation - Terminal Server Remote Connections Manager.) - C:\WINDOWS\System32\termsrv.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\shsvcs.dll (Themes) . (.Microsoft Corporation - Windows Shell Services Dll.) - C:\WINDOWS\System32\shsvcs.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\upnphost.dll (upnphost) . (.Microsoft Corporation - UPnP Device Host.) - C:\WINDOWS\System32\upnphost.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\Windows\System32\dwm.exe,-2000 (UxSms) . (.Microsoft Corporation - Microsoft User Experience Session Managemen.) - C:\WINDOWS\System32\uxsms.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\w32time.dll (W32Time) . (.Microsoft Corporation - Windows Time Service.) - C:\WINDOWS\System32\w32time.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\WebClnt.dll (WebClient) . (.Microsoft Corporation - Web DAV Service DLL.) - C:\WINDOWS\System32\WebClnt.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\wersvc.dll (WerSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) - C:\WINDOWS\System32\wersvc.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: @%ProgramFiles%\Windows Defender\MsMpRes.dll,-103 (WinDefend) . (.Microsoft Corporation - Service Module.) - C:\Program Files\Windows Defender\MpSvc.dll =>.Microsoft Windows®
                              O23 - Service: C:\WINDOWS\System32\wbem\WMIsvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\WINDOWS\System32\wbem\WMIsvc.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\wpdbusenum.dll (WPDBusEnum) . (.Microsoft Corporation - Portable Device Enumerator.) - C:\WINDOWS\System32\wpdbusenum.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) - C:\WINDOWS\System32\wscsvc.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\Windows\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Microsoft Windows Search Indexer.) - C:\WINDOWS\System32\SearchIndexer.exe [Unsigned] =>.Microsoft Corporation
                              O23 - Service: C:\WINDOWS\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) - C:\WINDOWS\System32\wuaueng.dll =>.Microsoft Windows Component Publisher®
                              O23 - Service: C:\WINDOWS\System32\WUDFSvc.dll (wudfsvc) . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) - C:\WINDOWS\System32\WUDFSvc.dll [Unsigned] =>.Microsoft Corporation
                              O23 - Service: XAudioService (XAudioService) . (.Conexant Systems, Inc. - Modem Audio Service.) - C:\WINDOWS\System32\drivers\XAudio.exe [Unsigned] =>.Conexant Systems, Inc.
                              
                              —\ Services not Microsoft (SR=Run, SS=Stop) (87) - 85s
                              SR - Auto [24/09/2015] [ 81088] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
                              SS - Demand [08/12/2020] [ 335416] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe.) - C:\WINDOWS\System32\Macromed\Flash\FlashPlayerUpdateService.exe [Unsigned] =>.Adobe
                              SR - Disabl [02/11/2006] [ 420968] (adp94xx) . (.Adaptec, Inc..) - C:\WINDOWS\System32\drivers\adp94xx.sys =>.Microsoft Windows®
                              SR - Disabl [02/11/2006] [ 297576] (adpahci) . (.Adaptec, Inc..) - C:\WINDOWS\System32\drivers\adpahci.sys =>.Microsoft Windows®
                              SR - Disabl [02/11/2006] [ 98408] (adpu160m) . (.Adaptec, Inc..) - C:\WINDOWS\System32\drivers\adpu160m.sys =>.Microsoft Windows®
                              SR - Disabl [02/11/2006] [ 147048] (adpu320) . (.Adaptec, Inc..) - C:\WINDOWS\System32\drivers\adpu320.sys =>.Microsoft Windows®
                              SR - Disabl [02/11/2006] [ 71272] (aic78xx) . (.Adaptec, Inc..) - C:\WINDOWS\System32\drivers\djsvs.sys =>.Microsoft Windows®
                              SR - Disabl [02/11/2006] [ 14952] (aliide) . (.Acer Laboratories Inc..) - C:\WINDOWS\System32\drivers\aliide.sys =>.Microsoft Windows®
                              SR - Disabl [02/11/2006] [ 67688] (arc) . (.Adaptec, Inc..) - C:\WINDOWS\System32\drivers\arc.sys =>.Microsoft Windows®
                              SR - Disabl [02/11/2006] [ 67688] (arcsas) . (.Adaptec, Inc..) - C:\WINDOWS\System32\drivers\arcsas.sys =>.Microsoft Windows®
                              SR - System [15/12/2022] [ 167480] aswArPot (aswArPot) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswArPot.sys =>.AVAST Software s.r.o.®
                              SR - System [15/12/2022] [ 188976] aswbidsdriver (aswbidsdriver) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswbidsdriverx.sys =>.AVAST Software s.r.o.®
                              SR - Boot [15/12/2022] [ 165384] aswbidsh (aswbidsh) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswbidshx.sys =>.AVAST Software s.r.o.®
                              SR - Boot [15/12/2022] [ 284256] aswblog (aswblog) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswblogx.sys =>.AVAST Software s.r.o.®
                              SR - Boot [15/12/2022] [ 57904] aswbuniv (aswbuniv) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswbunivx.sys =>.AVAST Software s.r.o.®
                              SR - System [15/12/2022] [ 183176] aswHdsKe (aswHdsKe) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswHdsKe.sys =>.AVAST Software s.r.o.®
                              SR - Demand [15/12/2022] [ 42736] aswHwid (aswHwid) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswHwid.sys =>.AVAST Software s.r.o.®
                              SR - System [15/12/2022] [ 40688] aswKbd (aswKbd) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswKbd.sys =>.AVAST Software s.r.o.®
                              SR - Auto [15/12/2022] [ 135200] aswMonFlt (aswMonFlt) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswMonFlt.sys =>.AVAST Software s.r.o.®
                              SR - System [15/12/2022] [ 70640] aswRdr (aswRdr) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswRdr.sys =>.AVAST Software s.r.o.®
                              SR - Boot [15/12/2022] [ 72800] aswRvrt (aswRvrt) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswRvrt.sys =>.AVAST Software s.r.o.®
                              SR - System [15/12/2022] [ 784552] aswSnx (aswSnx) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswSnx.sys =>.AVAST Software s.r.o.®
                              SR - System [15/12/2022] [ 397984] aswSP (aswSP) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswSP.sys =>.AVAST Software s.r.o.®
                              SR - Demand [15/12/2022] [ 146584] aswStmXP (aswStmXP) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswStmXP.sys =>.AVAST Software s.r.o.®
                              SR - Boot [15/12/2022] [ 310200] aswVmm (aswVmm) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswVmm.sys =>.AVAST Software s.r.o.®
                              SR - Auto [15/12/2022] [ 324000] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software s.r.o.®
                              SR - Disabl [00/00/0000] [ 0] (blbdrive) . (…) - C:\Windows\System32\drivers\blbdrive.sys (.not file.) [Unsigned]
                              SR - Demand [02/11/2006] [ 13568] Brother USB Mass-Storage Lower Filter Driver (BrFiltLo) . (.Brother Industries, Ltd..) - C:\WINDOWS\System32\drivers\BrFiltLo.sys [Unsigned] =>.Brother Industries, Ltd.
                              SR - Demand [02/11/2006] [ 5248] Brother USB Mass-Storage Upper Filter Driver (BrFiltUp) . (.Brother Industries, Ltd..) - C:\WINDOWS\System32\drivers\BrFiltUp.sys [Unsigned] =>.Brother Industries, Ltd.
                              SR - Disabl [02/11/2006] [ 71808] Brother MFC Serial Port Interface Driver (WDM) (Brserid) . (.Brother Industries Ltd..) - C:\WINDOWS\System32\drivers\BrSerId.sys [Unsigned] =>.Brother Industries Ltd.
                              SR - Disabl [02/11/2006] [ 62336] Brother WDM Serial driver (BrSerWdm) . (.Brother Industries Ltd..) - C:\WINDOWS\System32\drivers\BrSerWdm.sys [Unsigned] =>.Brother Industries Ltd.
                              SR - Disabl [02/11/2006] [ 12160] Brother MFC USB Fax Only Modem (BrUsbMdm) . (.Brother Industries Ltd..) - C:\WINDOWS\System32\drivers\BrUsbMdm.sys [Unsigned] =>.Brother Industries Ltd.
                              SR - Demand [02/11/2006] [ 11904] Brother MFC USB Serial WDM Driver (BrUsbSer) . (.Brother Industries Ltd..) - C:\WINDOWS\System32\drivers\BrUsbSer.sys [Unsigned] =>.Brother Industries Ltd.
                              SR - Disabl [02/11/2006] [ 16488] (cmdide) . (.CMD Technology, Inc..) - C:\WINDOWS\System32\drivers\cmdide.sys =>.Microsoft Windows®
                              SR - Demand [02/11/2006] [ 117760] Intel(R) PRO/1000 NDIS 6 Adapter Driver (E1G60) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\E1G60I32.sys [Unsigned] =>.Intel Corporation
                              SR - Disabl [02/11/2006] [ 316520] (elxstor) . (.Emulex.) - C:\WINDOWS\System32\drivers\elxstor.sys =>.Microsoft Windows®
                              SR - Auto [09/08/2017] [ 153168] Google Update Service (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
                              SS - Demand [09/08/2017] [ 153168] Google Update Service (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
                              SR - Auto [19/09/2007] [ 65536] HP Health Check Service (HP Health Check Service) . (.Hewlett-Packard.) - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [Unsigned] =>.Hewlett-Packard
                              SR - Disabl [02/11/2006] [ 37480] (HpCISSs) . (.Hewlett-Packard Company.) - C:\WINDOWS\System32\drivers\HpCISSs.sys =>.Microsoft Windows®
                              SR - Demand [08/05/2008] [ 980992] (HSF_DP) . (.Conexant Systems, Inc..) - C:\WINDOWS\System32\drivers\HSX_DP.sys [Unsigned] =>.Conexant Systems, Inc.
                              SR - Demand [08/05/2008] [ 266752] (HSXHWBS2) . (.Conexant Systems, Inc..) - C:\WINDOWS\System32\drivers\HSXHWBS2.sys [Unsigned] =>.Conexant Systems, Inc.
                              SR - Demand [25/03/2008] [ 2307072] (ialm) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\igdkmd32.sys [Unsigned] =>.Intel Corporation
                              SR - Disabl [02/11/2006] [ 232040] Intel RAID Controller Vista (iaStorV) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorV.sys =>.Microsoft Windows®
                              SR - Demand [25/03/2008] [ 2307072] (igfx) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\igdkmd32.sys [Unsigned] =>.Intel Corporation
                              SR - Disabl [02/11/2006] [ 41576] (iirsp) . (.Intel Corp./ICP vortex GmbH.) - C:\WINDOWS\System32\drivers\iirsp.sys =>.Microsoft Windows®
                              SR - Demand [15/01/2008] [ 2047576] Service for Realtek HD Audio (WDM) (IntcAzAudAddService) . (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RTKVHDA.sys =>.Realtek Semiconductor Corp®
                              SR - Demand [00/00/0000] [ 0] IP in IP Tunnel Driver (IpInIp) . (…) - C:\Windows\System32\DRIVERS\ipinip.sys (.not file.) [Unsigned]
                              SR - Disabl [02/11/2006] [ 35944] ITEATAPI_Service_Install (iteatapi) . (.Integrated Technology Express, Inc..) - C:\WINDOWS\System32\drivers\iteatapi.sys =>.Microsoft Windows®
                              SR - Disabl [02/11/2006] [ 35944] ITERAID_Service_Install (iteraid) . (.Integrated Technology Express, Inc..) - C:\WINDOWS\System32\drivers\iteraid.sys =>.Microsoft Windows®
                              SR - Auto [17/03/2009] [ 73728] LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe [Unsigned] =>.Hewlett-Packard Company
                              SR - Disabl [02/11/2006] [ 65640] (LSI_FC) . (.LSI Logic.) - C:\WINDOWS\System32\drivers\lsi_fc.sys =>.Microsoft Windows®
                              SR - Disabl [02/11/2006] [ 65640] (LSI_SAS) . (.LSI Logic.) - C:\WINDOWS\System32\drivers\lsi_sas.sys =>.Microsoft Windows®
                              SR - Disabl [02/11/2006] [ 65640] (LSI_SCSI) . (.LSI Logic.) - C:\WINDOWS\System32\drivers\lsi_scsi.sys =>.Microsoft Windows®
                              SR - Demand [00/00/0000] [ 0] MBAMSwissArmy (MBAMSwissArmy) . (…) - C:\Windows\System32\Drivers\mbamswissarmy.sys (.not file.) [Unsigned]
                              SR - Auto [19/06/2006] [ 12672] (mdmxsdk) . (.Conexant.) - C:\WINDOWS\System32\drivers\mdmxsdk.sys [Unsigned] =>.Conexant
                              SR - Disabl [02/11/2006] [ 28776] (megasas) . (.LSI Logic Corporation.) - C:\WINDOWS\System32\drivers\megasas.sys =>.Microsoft Windows®
                              SS - Demand [27/06/2018] [ 174032] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
                              SR - Disabl [02/11/2006] [ 33384] (Mraid35x) . (.LSI Logic Corporation.) - C:\WINDOWS\System32\drivers\Mraid35x.sys =>.Microsoft Windows®
                              SS - Demand [00/00/0000] [ 0] @%SystemRoot%\system32\msimsg.dll,-27 (msiserver) . (…) - C:\Windows\System32\msiexec .msiexec (.not file.) [Unsigned]
                              SR - Disabl [02/11/2006] [ 45160] (nfrd960) . (.IBM Corporation.) - C:\WINDOWS\System32\drivers\nfrd960.sys =>.Microsoft Windows®
                              SR - Disabl [02/11/2006] [ 20608] N-trig HID Tablet Driver (ntrigdigi) . (.N-trig Innovative Technologies.) - C:\WINDOWS\System32\drivers\ntrigdigi.sys [Unsigned] =>.N-trig Innovative Technologies
                              SR - Disabl [02/11/2006] [ 88680] (nvraid) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvraid.sys =>.Microsoft Windows®
                              SR - Disabl [02/11/2006] [ 40040] (nvstor) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvstor.sys =>.Microsoft Windows®
                              SR - Demand [00/00/0000] [ 0] IPX Traffic Filter Driver (NwlnkFlt) . (…) - C:\Windows\System32\DRIVERS\nwlnkflt.sys (.not file.) [Unsigned]
                              SR - Demand [00/00/0000] [ 0] IPX Traffic Forwarder Driver (NwlnkFwd) . (…) - C:\Windows\System32\DRIVERS\nwlnkfwd.sys (.not file.) [Unsigned]
                              SR - Disabl [02/11/2006] [ 900712] QLogic Fibre Channel Miniport Driver (ql2300) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\ql2300.sys =>.Microsoft Windows®
                              SR - Disabl [02/11/2006] [ 106088] QLogic iSCSI Miniport Driver (ql40xx) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\ql40xx.sys =>.Microsoft Windows®
                              SR - Demand [03/08/2007] [ 91648] Realtek 8169 NT Driver (RTL8169) . (.Realtek Corporation.) - C:\WINDOWS\System32\drivers\Rtlh86.sys [Unsigned] =>.Realtek Corporation
                              SR - Disabl [02/11/2006] [ 38504] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\WINDOWS\System32\drivers\sisraid2.sys =>.Microsoft Windows®
                              SR - Disabl [02/11/2006] [ 71784] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\WINDOWS\System32\drivers\sisraid4.sys =>.Microsoft Windows®
                              SR - Disabl [02/11/2006] [ 35944] (Symc8xx) . (.LSI Logic.) - C:\WINDOWS\System32\drivers\symc8xx.sys =>.Microsoft Windows®
                              SR - Demand [00/00/0000] [ 0] Symantec Network Security Intermediate Filter Service (SymIM) . (…) - C:\Windows\System32\DRIVERS\SymIM.sys (.not file.) [Unsigned]
                              SR - Demand [00/00/0000] [ 0] (SymIMMP) . (…) - C:\Windows\System32\DRIVERS\SymIM.sys (.not file.) [Unsigned]
                              SR - Disabl [02/11/2006] [ 31848] (Sym_hi) . (.LSI Logic.) - C:\WINDOWS\System32\drivers\sym_hi.sys =>.Microsoft Windows®
                              SR - Disabl [02/11/2006] [ 34920] (Sym_u3) . (.LSI Logic.) - C:\WINDOWS\System32\drivers\sym_u3.sys =>.Microsoft Windows®
                              SR - Auto [23/01/2009] [ 44384] Acronis True Image FS Filter (tifsfilter) . (.Acronis.) - C:\WINDOWS\System32\drivers\tifsfilt.sys =>.Acronis, Inc®
                              SR - Boot [23/01/2009] [ 441760] Acronis True Image Backup Archive Explorer (timounter) . (.Acronis.) - C:\WINDOWS\System32\drivers\timntr.sys =>.Acronis, Inc®
                              SR - Disabl [02/11/2006] [ 235112] (uliahci) . (.ULi Electronics Inc..) - C:\WINDOWS\System32\drivers\uliahci.sys =>.Microsoft Windows®
                              SR - Disabl [02/11/2006] [ 98408] (UlSata) . (.Promise Technology, Inc..) - C:\WINDOWS\System32\drivers\ulsata.sys =>.Microsoft Windows®
                              SR - Disabl [02/11/2006] [ 115816] (ulsata2) . (.Promise Technology, Inc..) - C:\WINDOWS\System32\drivers\ulsata2.sys =>.Microsoft Windows®
                              SR - Disabl [02/11/2006] [ 17512] (viaide) . (.VIA Technologies, Inc..) - C:\WINDOWS\System32\drivers\viaide.sys =>.Microsoft Windows®
                              SR - Disabl [02/11/2006] [ 112232] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\WINDOWS\System32\drivers\vsmraid.sys =>.Microsoft Windows®
                              SR - Demand [01/11/2006] [ 33588] WAN Miniport (ATW) (wanatw) . (.America Online, Inc..) - C:\WINDOWS\System32\drivers\wanatw4.sys [Unsigned] =>.America Online, Inc.
                              SR - Demand [08/05/2008] [ 661504] (winachsf) . (.Conexant Systems, Inc..) - C:\WINDOWS\System32\drivers\HSX_CNXT.sys [Unsigned] =>.Conexant Systems, Inc.
                              SR - Auto [18/10/2007] [ 8704] (XAudio) . (.Conexant Systems, Inc..) - C:\WINDOWS\System32\drivers\XAudio.sys [Unsigned] =>.Conexant Systems, Inc.
                              SR - Auto [18/10/2007] [ 386560] XAudioService (XAudioService) . (.Conexant Systems, Inc..) - C:\WINDOWS\System32\drivers\XAudio.exe [Unsigned] =>.Conexant Systems, Inc.
                              
                              —\ Task Planned Automatically (Register) (8) - 3s
                              O38 - TASK: {7C040E69-E581-4AC7-8EB4-91071E0C4223}[\GoogleUpdateTaskMachineCore] - (.Google Inc. - Google Installer.) – C:\Program Files\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc.
                              O38 - TASK: {82D27DDD-CDE9-4646-8F0E-62E5BACA334D}[\GoogleUpdateTaskMachineUA] - (.Google Inc. - Google Installer.) – C:\Program Files\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc.
                              O38 - TASK: {AB2E9287-6A5A-4902-9415-5286C3725604}[\Avast Emergency Update] - (.AVAST Software - Avast Emergency Update.) – C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2762968] =>.AVAST Software
                              O38 - TASK: {C33B7959-E56A-475B-BCD0-562348DC4289}[\Avast Software\Overseer] - (.AVAST Software - Avast Overseer.) – C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1630008] =>.AVAST Software
                              C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore - (.Google Inc..) – C:\Program Files\Google\Update\GoogleUpdate.exe [/c] =>.Google Inc.
                              C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA - (.Google Inc..) – C:\Program Files\Google\Update\GoogleUpdate.exe [/ua ./ua] =>.Google Inc.
                              C:\Windows\System32\Tasks\Avast Emergency Update - (.AVAST Software.) – C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe =>.AVAST Software
                              C:\Windows\System32\Tasks\Avast Software\Overseer - (.AVAST Software.) – C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe =>.AVAST Software
                              
                              —\ Auto loading programs from Registry and folders (9) - 1s
                              O4 - HKLM..\Run: [hpsysdrv] . (.Hewlett-Packard Company - hpsysdrv.) – c:\hp\support\hpsysdrv.exe [Unsigned] =>.Hewlett-Packard Company
                              O4 - HKLM..\Run: [OsdMaestro] . (.OsdMaestro - OsdMaestro main program.) – C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe [Unsigned] =>.OsdMaestro
                              O4 - HKLM..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) – C:\WINDOWS\System32\hkcmd.exe =>.Intel Corporation®
                              O4 - HKLM..\Run: [Persistence] . (.Intel Corporation - persistence Module.) – C:\WINDOWS\System32\igfxpers.exe =>.Intel Corporation®
                              O4 - HKLM..\Run: [AvastUI.exe] . (.AVAST Software - AvLaunch component.) – C:\Program Files\AVAST Software\Avast\AvLaunch.exe =>.AVAST Software s.r.o.®
                              O4 - HKCU..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) – C:\WINDOWS\ehome\ehtray.exe [Unsigned] =>.Microsoft Corporation
                              O4 - HKCU..\Run: [Aim] . (.AOL Inc. - AOL Instant Messenger.) – C:\Program Files\AIM\aim.exe =>.AOL Inc.®
                              O4 - HKUS\S-1-5-21-2314338359-2121603862-2684469121-1000..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) – C:\WINDOWS\ehome\ehtray.exe [Unsigned] =>.Microsoft Corporation
                              O4 - HKUS\S-1-5-21-2314338359-2121603862-2684469121-1000..\Run: [Aim] . (.AOL Inc. - AOL Instant Messenger.) – C:\Program Files\AIM\aim.exe =>.AOL Inc.®
                              
                              —\ Process running (21) - 4s
                              [MD5.CD8EC552551810716A60F52B265137D9] - (.AVAST Software - Avast Service.) – C:\Program Files\AVAST Software\Avast\AvastSvc.exe [324000] [PID.1692] =>.AVAST Software s.r.o.®
                              [MD5.9A4322EE420D6FACD4D4B1FF6CB856B1] - (.Hewlett-Packard Company - hpsysdrv.) – C:\hp\support\hpsysdrv.exe [65536] [PID.1712] [Unsigned] =>.Hewlett-Packard Company
                              [MD5.B1361669BDC6ED612C35B7C67ADA2240] - (.OsdMaestro - OsdMaestro main program.) – C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe [118784] [PID.1716] [Unsigned] =>.OsdMaestro
                              [MD5.FC5B75CA6A1DA31EDD4F8D53F5540B98] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) – C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [81088] [PID.980] =>.Adobe Systems, Incorporated®
                              [MD5.361CD47DC5BD83EE24407903233B0D9A] - (.Realtek Semiconductor - HD Audio Control Panel.) – C:\WINDOWS\RtHDVCpl.exe [4874240] [PID.2056] [Unsigned] =>.Realtek Semiconductor
                              [MD5.409E5B10053382C9D339BAEAA6584999] - (.Intel Corporation - hkcmd Module.) – C:\WINDOWS\System32\hkcmd.exe [166424] [PID.2156] =>.Intel Corporation®
                              [MD5.B76195C8E8845FF2A8FA658709345DE2] - (.Intel Corporation - persistence Module.) – C:\WINDOWS\System32\igfxpers.exe [133656] [PID.2164] =>.Intel Corporation®
                              [MD5.DFEFF67508D3A9AEB1A85D7B0F513B24] - (.Hewlett-Packard Company - LightScribe Service.) – C:\Program Files\Common Files\LightScribe\LSSrvc.exe [73728] [PID.2308] [Unsigned] =>.Hewlett-Packard Company
                              [MD5.1CF370D5C495F52DB8B83346BDF3AE7C] - (.Intel Corporation - igfxsrvc Module.) – C:\WINDOWS\System32\igfxsrvc.exe [256536] [PID.2504] =>.Intel Corporation®
                              [MD5.583C79A7128B8604306735975A8BD5DD] - (.AOL Inc. - AOL Instant Messenger.) – C:\Program Files\AIM\aim.exe [4156312] [PID.2936] =>.AOL Inc.®
                              [MD5.CD5F291A1161F15896D1A4D63DAFF5DF] - (.Conexant Systems, Inc. - Modem Audio Service.) – C:\WINDOWS\System32\drivers\XAudio.exe [386560] [PID.3252] [Unsigned] =>.Conexant Systems, Inc.
                              [MD5.EFB5B4E32AC9E2721F79E455CAF8D6DD] - (.AVAST Software - Avast Behavior Shield.) – C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6799632] [PID.3736] =>.AVAST Software s.r.o.®
                              [MD5.0D26C438E2938A3E6BDD91173BC96FF0] - (.Hewlett-Packard - HP Health Check Service.) – c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [65536] [PID.3896] [Unsigned] =>.Hewlett-Packard
                              [MD5.FA7346F3C657197C00B20572EC01C61E] - (.Mozilla Corporation - Firefox.) – C:\Program Files\Mozilla Firefox\firefox.exe [517072] [PID.3428] =>.Mozilla Corporation®
                              [MD5.FA7346F3C657197C00B20572EC01C61E] - (.Mozilla Corporation - Firefox.) – C:\Program Files\Mozilla Firefox\firefox.exe [517072] [PID.3552] =>.Mozilla Corporation®
                              [MD5.97D8F69DFBD5584A52C1D881E0A7518E] - (.AVAST Software - Avast Antivirus.) – C:\Program Files\AVAST Software\Avast\AvastUI.exe [11193560] [PID.4720] =>.AVAST Software s.r.o.®
                              [MD5.06FAA58219BF8B6D1BC25C2783763E11] - (.Google Inc. - Google Chrome.) – C:\Program Files\Google\Chrome\Application\chrome.exe [874648] [PID.6120] =>.Google Inc®
                              [MD5.06FAA58219BF8B6D1BC25C2783763E11] - (.Google Inc. - Google Chrome.) – C:\Program Files\Google\Chrome\Application\chrome.exe [874648] [PID.5812] =>.Google Inc®
                              [MD5.06FAA58219BF8B6D1BC25C2783763E11] - (.Google Inc. - Google Chrome.) – C:\Program Files\Google\Chrome\Application\chrome.exe [874648] [PID.3372] =>.Google Inc®
                              [MD5.06FAA58219BF8B6D1BC25C2783763E11] - (.Google Inc. - Google Chrome.) – C:\Program Files\Google\Chrome\Application\chrome.exe [874648] [PID.5268] =>.Google Inc®
                              [MD5.2864FE6DD54C1CF9D06B6FD3CFC92040] - (.Nicolas Coolman - ZHPSuite.) – C:\Users\John\Desktop\ZHPSuite.exe [3510472] [PID.5620] [Unsigned] =>.Nicolas Coolman
                              
                              —\ Google Chrome, Start,Search,Extensions (9) - 1s
                              G2 - GCE: Preference [John][User Data\Default\Extensions] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides}
                              G2 - GCE: Preference [John][User Data\Default\Extensions] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs}
                              G2 - GCE: Preference [John][User Data\Default\Extensions] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive}
                              G2 - GCE: Preference [John][User Data\Default\Extensions] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube}
                              G2 - GCE: Preference [John][User Data\Default\Extensions] [felcaaldnbdncclmgdcncolpebgiejap] =>.Google Inc. {Sheets}
                              G2 - GCE: Preference [John][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
                              G2 - GCE: Preference [John][User Data\Default\Extensions] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet}
                              G2 - GCE: Preference [John][User Data\Default\Extensions] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail}
                              G2 - GCE: Preference [John][User Data\Default\Local Extension Settings] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
                              
                              —\ Mozilla Firefox,Plugins,Start,Search,Extensions (25) - 7s
                              P2 - EXT FILE: (.Avast Software s.r.o.) – C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\su7k0ty2.default-1670861870862\extensions\sp@avast.com.xpi [Unsigned] =>.Avast Software s.r.o
                              P2 - EXT FILE: (.Avast Software s.r.o.) – C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\su7k0ty2.default-1670861870862\extensions\wrc@avast.com.xpi [Unsigned] =>.Avast Software s.r.o
                              P2 - EXT FILE: (.Macromedia, Inc. - Macromedia Authorware Web Player Netscape p.) – C:\Program Files\Mozilla Firefox\Plugins\np32asw.dll =>.Macromedia, Inc.®
                              P2 - EXT FILE: (.AOL LLC - npdnu.) – C:\Program Files\Mozilla Firefox\Plugins\npdnu.dll [Unsigned] =>.AOL LLC
                              P2 - EXT FILE: (.AOL LLC - npdnupdater2.) – C:\Program Files\Mozilla Firefox\Plugins\npdnupdater2.dll [Unsigned] =>.AOL LLC
                              P2 - EXT FILE: (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape.) – C:\Program Files\Mozilla Firefox\Plugins\nppdf32.dll =>.Adobe Systems, Incorporated®
                              P2 - EXT FILE: (.Mozilla - Firefox.) – C:\Program Files\Mozilla Firefox\browser\features\aushelper@mozilla.org.xpi =>.Mozilla
                              P2 - EXT FILE: (.Mozilla - Firefox.) – C:\Program Files\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi =>.Mozilla
                              P2 - EXT FILE: (.Mozilla Corporation.) – C:\Program Files\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi [Unsigned] =>.Mozilla Corporation
                              P2 - EXT FILE: (.Mozilla - Firefox.) – C:\Program Files\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi =>.Mozilla
                              P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe.) – C:\WINDOWS\System32\Macromed\Flash\NPSWF32_32_0_0_465.dll =>.Adobe
                              C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\su7k0ty2.default-1670861870862\bookmarkbackups =>Mozilla Corporation
                              C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\su7k0ty2.default-1670861870862\browser-extension-data =>Mozilla Corporation
                              C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\su7k0ty2.default-1670861870862\crashes =>Mozilla Corporation
                              C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\su7k0ty2.default-1670861870862\datareporting =>Mozilla Corporation
                              C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\su7k0ty2.default-1670861870862\extensions =>Mozilla Corporation
                              C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\su7k0ty2.default-1670861870862\features =>Mozilla Corporation
                              C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\su7k0ty2.default-1670861870862\gmp =>Mozilla Corporation
                              C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\su7k0ty2.default-1670861870862\gmp-gmpopenh264 =>Mozilla Corporation
                              C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\su7k0ty2.default-1670861870862\gmp-widevinecdm =>Mozilla Corporation
                              C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\su7k0ty2.default-1670861870862\minidumps =>Mozilla Corporation
                              C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\su7k0ty2.default-1670861870862\saved-telemetry-pings =>Mozilla Corporation
                              C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\su7k0ty2.default-1670861870862\sessionstore-backups =>Mozilla Corporation
                              C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\su7k0ty2.default-1670861870862\storage =>Mozilla Corporation
                              C:\Users\John\AppData\Roaming\Mozilla\Firefox\Profiles\su7k0ty2.default-1670861870862\weave =>Mozilla Corporation
                              
                              —\ Internet Explorer Extensions, Start, Search (9) - 0s
                              R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ =>.Yahoo! Inc.
                              R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ =>.Yahoo! Inc.
                              R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://search.yahoo.com/ =>.Yahoo! Inc.
                              R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.yahoo.com/ =>.Yahoo! Inc.
                              R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://search.yahoo.com/ =>.Yahoo! Inc.
                              R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
                              R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
                              R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab =>.Microsoft Corporation
                              R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Internet Explorer.) (8.00.6001.18702 (longhorn_ie8_rtm(wmbla).090308-0339)) – C:\WINDOWS\System32\ieframe.dll =>.Microsoft Corporation
                              
                              —\ INTERNET EXPLORER, trusted site and sensitive site (2) - 0s
                              ~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad)
                              ~ Microsoft Internet Explorer Restricted Site(s) EscDomains: 0(Good) / 0(Bad)
                              
                              —\ Internet Explorer, Proxy Management (6) - 0s
                              R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value
                              R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value
                              R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 =>.Default.Value
                              R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 0
                              R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
                              R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies =>.Microsoft
                              
                              —\ Line Analysis, IniFiles, Auto loading programs (3) - 1s
                              F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
                              F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
                              F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL “sysdm.cpl”
                              
                              —\ Hosts file redirection (1) - 0s
                              ~ Le fichier hôte est sain (The hosts file is clean) (2)
                              
                              —\ Browser Helper Object (BHO) (2) - 0s
                              O2 - BHO: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java™ Platform SE binary.) – C:\Program Files\Java\jre1.8.0_91\bin\ssv.dll =>.Oracle America, Inc.®
                              O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java™ Platform SE binary.) – C:\Program Files\Java\jre1.8.0_91\bin\jp2ssv.dll =>.Oracle America, Inc.®
                              
                              —\ Global shortcuts Startup (86) - 12s
                              O4 - GS\Desktop [Administrator]: ZHPSuite.lnk . (.Nicolas Coolman - ZHPSuite.) C:\Users\John\AppData\Roaming\ZHP\ZHPSuite.exe =>.Nicolas Coolman
                              O4 - GS\Quicklaunch [Administrator]: AIM.lnk . (.AOL Inc. - AOL Instant Messenger.) C:\Program Files\AIM\aim.exe /d locale=en-US =>.AOL Inc.®
                              O4 - GS\Quicklaunch [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
                              O4 - GS\Quicklaunch [Administrator]: Launch Internet Explorer Browser (2).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
                              O4 - GS\Quicklaunch [Administrator]: Mozilla Firefox (2).lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
                              O4 - GS\Quicklaunch [Administrator]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
                              O4 - GS\Quicklaunch [Administrator]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
                              O4 - GS\Programs [Administrator]: CyberLink DVD Suite Deluxe.lnk . (.CyberLink - PowerStarter.) C:\Program Files\CyberLink\DVD Suite Deluxe\PowerStarter.exe =>.CyberLink®
                              O4 - GS\Programs [Administrator]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
                              O4 - GS\Programs [Administrator]: Windows Mail.lnk . (.Microsoft Corporation - Windows Mail.) C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation
                              O4 - GS\Programs [Administrator]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
                              O4 - GS\Desktop [Guest]: ZHPSuite.lnk . (.Nicolas Coolman - ZHPSuite.) C:\Users\John\AppData\Roaming\ZHP\ZHPSuite.exe =>.Nicolas Coolman
                              O4 - GS\Quicklaunch [Guest]: AIM.lnk . (.AOL Inc. - AOL Instant Messenger.) C:\Program Files\AIM\aim.exe /d locale=en-US =>.AOL Inc.®
                              O4 - GS\Quicklaunch [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
                              O4 - GS\Quicklaunch [Guest]: Launch Internet Explorer Browser (2).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
                              O4 - GS\Quicklaunch [Guest]: Mozilla Firefox (2).lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
                              O4 - GS\Quicklaunch [Guest]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
                              O4 - GS\Quicklaunch [Guest]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
                              O4 - GS\Programs [Guest]: CyberLink DVD Suite Deluxe.lnk . (.CyberLink - PowerStarter.) C:\Program Files\CyberLink\DVD Suite Deluxe\PowerStarter.exe =>.CyberLink®
                              O4 - GS\Programs [Guest]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
                              O4 - GS\Programs [Guest]: Windows Mail.lnk . (.Microsoft Corporation - Windows Mail.) C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation
                              O4 - GS\Programs [Guest]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
                              O4 - GS\Desktop [John]: ZHPSuite.lnk . (.Nicolas Coolman - ZHPSuite.) C:\Users\John\AppData\Roaming\ZHP\ZHPSuite.exe =>.Nicolas Coolman
                              O4 - GS\Quicklaunch [John]: AIM.lnk . (.AOL Inc. - AOL Instant Messenger.) C:\Program Files\AIM\aim.exe /d locale=en-US =>.AOL Inc.®
                              O4 - GS\Quicklaunch [John]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
                              O4 - GS\Quicklaunch [John]: Launch Internet Explorer Browser (2).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
                              O4 - GS\Quicklaunch [John]: Mozilla Firefox (2).lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
                              O4 - GS\Quicklaunch [John]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
                              O4 - GS\Quicklaunch [John]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
                              O4 - GS\Programs [John]: CyberLink DVD Suite Deluxe.lnk . (.CyberLink - PowerStarter.) C:\Program Files\CyberLink\DVD Suite Deluxe\PowerStarter.exe =>.CyberLink®
                              O4 - GS\Programs [John]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
                              O4 - GS\Programs [John]: Windows Mail.lnk . (.Microsoft Corporation - Windows Mail.) C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation
                              O4 - GS\Programs [John]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
                              O4 - GS\CommonDesktop [Public]: Adobe Reader X.lnk . (.Adobe Systems Incorporated - Adobe Reader.) C:\Program Files\Adobe\Reader 10.0\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated®
                              O4 - GS\CommonDesktop [Public]: AIM.lnk . (.AOL Inc. - AOL Instant Messenger.) C:\Program Files\AIM\aim.exe /d locale=en-US =>.AOL Inc.®
                              O4 - GS\CommonDesktop [Public]: Avast Free Antivirus.lnk . (.AVAST Software - Avast Antivirus.) C:\Program Files\AVAST Software\Avast\AvastUI.exe =>.AVAST Software s.r.o.®
                              O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
                              O4 - GS\CommonDesktop [Public]: Internet & Digital Services.lnk . (.Hewlett-Packard - HP SDP Application Module.) C:\Program Files\Hewlett-Packard\SDP\HPSdpApp.exe /LaunchPage /eis [Unsigned] =>.Hewlett-Packard
                              O4 - GS\CommonDesktop [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
                              O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
                              O4 - GS\CommonDesktop [Public]: MSN Installer.lnk . (.Microsoft Corp. - Msn Application.) C:\Program Files\MSN\MsnInstaller\msniadm.exe [Unsigned] =>.Microsoft Corp.
                              O4 - GS\CommonDesktop [Public]: MSN.lnk . (…) C:\Program Files\Online Services\MSN90\msnsusii.exe [Unsigned]
                              O4 - GS\CommonDesktop [Public]: Try Microsoft Office for 60 days.lnk . (…) C:\hp\bin\msoffice\trial.hta [Unsigned]
                              O4 - GS\CommonDesktop [Public]: Windows Media Center.lnk . (.Microsoft Corporation - Media Center.) C:\WINDOWS\ehome\ehshell.exe =>.Microsoft Corporation
                              O4 - GS\Programs [Public]: CyberLink DVD Suite Deluxe.lnk . (.CyberLink - PowerStarter.) C:\Program Files\CyberLink\DVD Suite Deluxe\PowerStarter.exe =>.CyberLink®
                              O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
                              O4 - GS\Programs [Public]: Windows Mail.lnk . (.Microsoft Corporation - Windows Mail.) C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation
                              O4 - GS\Programs [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
                              O4 - GS\Accessories [Public]: Command Prompt.lnk . (.Microsoft Corporation - Windows Command Processor.) C:\WINDOWS\System32\cmd.exe =>.Microsoft Corporation
                              O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Notepad.) C:\WINDOWS\System32\notepad.exe =>.Microsoft Corporation
                              O4 - GS\Accessories [Public]: Windows Explorer.lnk . (.Microsoft Corporation - Windows Explorer.) C:\WINDOWS\explorer.exe =>.Microsoft Corporation
                              O4 - GS\SystemTools [Public]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe -extoff =>.Microsoft Corporation®
                              O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Windows Calculator.) C:\WINDOWS\System32\calc.exe =>.Microsoft Corporation
                              O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Windows Mobility Center.) C:\WINDOWS\System32\mblctr.exe /open =>.Microsoft Corporation
                              O4 - GS\Accessories [Public]: NetworkProjection.lnk . (.Microsoft Corporation - Connect to a Network Projector.) C:\WINDOWS\System32\NetProj.exe =>.Microsoft Corporation
                              O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\System32\mspaint.exe =>.Microsoft Corporation
                              O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Remote Desktop Connection.) C:\WINDOWS\System32\mstsc.exe =>.Microsoft Corporation
                              O4 - GS\Accessories [Public]: Sidebar.lnk . (.Microsoft Corporation - Windows Sidebar.) C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
                              O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Snipping Tool.) C:\WINDOWS\System32\SnippingTool.exe =>.Microsoft Corporation
                              O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Windows Sound Recorder.) C:\WINDOWS\System32\SoundRecorder.exe =>.Microsoft Corporation
                              O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) C:\WINDOWS\System32\mobsync.exe =>.Microsoft Corporation
                              O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\control.exe /name Microsoft.WelcomeCenter =>.Microsoft Corporation
                              O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Windows Wordpad Application.) C:\Program Files\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
                              O4 - GS\SystemTools [Public]: Backup.lnk . (.Microsoft Corporation - Microsoft® Windows Backup.) C:\Windows\System32\sdclt.exe =>.Microsoft Corporation
                              O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Character Map.) C:\WINDOWS\System32\charmap.exe =>.Microsoft Corporation
                              O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Microsoft® Disk Defragmenter.) C:\WINDOWS\System32\dfrgui.exe =>.Microsoft Corporation
                              O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Disk Space Cleanup Manager for Windows.) C:\WINDOWS\System32\cleanmgr.exe =>.Microsoft Corporation
                              O4 - GS\SystemTools [Public]: migwiz.lnk . (.Microsoft Corporation - Windows Easy Transfer.) C:\WINDOWS\System32\migwiz\migwiz.exe =>.Microsoft Windows®
                              O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - System Information.) C:\WINDOWS\System32\msinfo32.exe =>.Microsoft Corporation
                              O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Microsoft® Windows System Restore.) C:\WINDOWS\System32\rstrui.exe =>.Microsoft Corporation
                              O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (…) C:\WINDOWS\System32\taskschd.msc /s [Unsigned] =>..Microsoft Corporation
                              O4 - GS\ProgramsCommon [Public]: Adobe Reader X.lnk . (…) C:\Windows\Installer{AC76BA86-7AD7-1033-7B44-AA1000000001}\SC_Reader.ico [Unsigned] =>.Adobe Inc.
                              O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
                              O4 - GS\ProgramsCommon [Public]: HP Advisor.lnk . (.Hewlett-Packard - HP Advisor.) C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe =>.Hewlett-Packard Company®
                              O4 - GS\ProgramsCommon [Public]: Media Center.lnk . (.Microsoft Corporation - Media Center.) C:\WINDOWS\ehome\ehshell.exe =>.Microsoft Corporation
                              O4 - GS\ProgramsCommon [Public]: Microsoft Office PowerPoint Viewer 2007.lnk . (…) C:\Windows\Installer{95120000-00AF-0409-0000-0000000FF1CE}\ppvwicon.exe =>.Microsoft Corporation®
                              O4 - GS\ProgramsCommon [Public]: Microsoft Works Task Launcher.lnk . (.Microsoft® Corporation - Microsoft® Works.) C:\Program Files\Microsoft Works\MSWorks.exe =>.Microsoft Corporation®
                              O4 - GS\ProgramsCommon [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
                              O4 - GS\ProgramsCommon [Public]: Windows Calendar.lnk . (.Microsoft Corporation - Windows Calendar.) C:\Program Files\Windows Calendar\WinCal.exe =>.Microsoft Corporation
                              O4 - GS\ProgramsCommon [Public]: Windows Collaboration.lnk . (.Microsoft Corporation - Windows Meeting Space.) C:\Program Files\Windows Collaboration\WinCollab.exe =>.Microsoft Corporation
                              O4 - GS\ProgramsCommon [Public]: Windows Contacts.lnk . (.Microsoft Corporation - Windows Contacts.) C:\Program Files\Windows Mail\wab.exe =>.Microsoft Corporation
                              O4 - GS\ProgramsCommon [Public]: Windows Defender.lnk . (.Microsoft Corporation - Windows Defender User Interface.) C:\Program Files\Windows Defender\MSASCui.exe =>.Microsoft Windows®
                              O4 - GS\ProgramsCommon [Public]: Windows DVD Maker.lnk . (.Microsoft Corporation - Windows DVD Maker.) C:\Program Files\Movie Maker\DVDMaker.exe =>.Microsoft Corporation
                              O4 - GS\ProgramsCommon [Public]: Windows Mail.lnk . (.Microsoft Corporation - Windows Mail.) C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation
                              O4 - GS\ProgramsCommon [Public]: Windows Movie Maker.lnk . (.Microsoft Corporation - Windows Movie Maker.) C:\Program Files\Movie Maker\MOVIEMK.exe =>.Microsoft Corporation
                              O4 - GS\ProgramsCommon [Public]: Windows Photo Gallery.lnk . (.Microsoft Corporation - Windows Photo Gallery.) C:\Program Files\Windows Photo Gallery\WindowsPhotoGallery.exe =>.Microsoft Corporation
                              
                              —\ Lop.com/Domain Hijackers (2) - 0s
                              O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 68.105.28.11 68.105.29.11 68.105.28.12 =>.USA Phoenix Cox Communications
                              O17 - HKLM\System\CCS\Services\Tcpip..{73B646CC-8C74-4151-84F9-23E4B03FD810}: DhcpNameServer = 68.105.28.11 68.105.29.11 68.105.28.12 =>.USA Phoenix Cox Communications
                              
                              —\ Extra protocols (23) - 2s
                              O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) – C:\WINDOWS\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
                              O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\WINDOWS\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
                              O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - ActiveX control for streaming video.) – C:\WINDOWS\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation
                              O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\WINDOWS\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
                              O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\WINDOWS\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
                              O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\WINDOWS\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
                              O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\WINDOWS\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
                              O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) – C:\WINDOWS\System32\itss.dll [Unsigned] =>.Microsoft Corporation
                              O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) – C:\WINDOWS\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
                              O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\WINDOWS\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
                              O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) – C:\WINDOWS\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
                              O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) – C:\WINDOWS\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation
                              O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\WINDOWS\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
                              O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) – C:\WINDOWS\System32\itss.dll [Unsigned] =>.Microsoft Corporation
                              O18 - Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) – C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll =>.Microsoft Corporation®
                              O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) – C:\WINDOWS\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
                              O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - ActiveX control for streaming video.) – C:\WINDOWS\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation
                              O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) – C:\WINDOWS\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
                              O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) – C:\WINDOWS\System32\mscoree.dll =>.Microsoft Corporation®
                              O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) – C:\WINDOWS\System32\mscoree.dll =>.Microsoft Corporation®
                              O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) – C:\WINDOWS\System32\mscoree.dll =>.Microsoft Corporation®
                              O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\WINDOWS\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
                              O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\WINDOWS\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
                              
                              —\ AppInit_DLLs Registry value Autorun (1) - 0s
                              O20 - Winlogon : UserInit . (.Microsoft Corporation - Userinit Logon Application.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation
                              
                              —\ ASIC (ActiveSetup Installed Components) (8) - 1s
                              O40 - ASIC: Browser Customizations - >{60B49E34-C7CC-11D0-8953-00A0C90347FF} . (.Microsoft Corporation - Windows host process (Rundll32).) – C:\WINDOWS\System32\rundll32.exe [Unsigned] =>.Microsoft Corporation
                              O40 - ASIC: Microsoft Windows Media Player 11.0 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) – C:\WINDOWS\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation
                              O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - Microsoft(C) Register Server.) – C:\WINDOWS\System32\regsvr32.exe [Unsigned] =>.Microsoft Corporation
                              O40 - ASIC: Microsoft Windows Mail 7 - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) – C:\Program Files\Windows Mail\WinMail.exe [Unsigned] =>.Microsoft Corporation
                              O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Microsoft Windows Media Player Setup Utilit.) – C:\WINDOWS\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation
                              O40 - ASIC: Internet Explorer - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - IE Per-User Initialization Utility.) – C:\WINDOWS\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation
                              O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) – C:\WINDOWS\System32\mscories.dll =>.Microsoft Corporation®
                              O40 - ASIC: Adobe Flash Player - {D27CDB6E-AE6D-11CF-96B8-444553540000} . (.Adobe - Adobe Flash Player 32.0 r0.) – C:\WINDOWS\System32\Macromed\Flash\Flash32_32_0_0_465.ocx [Unsigned] =>.Adobe
                              
                              —\ Software installed (54) - 19s
                              O42 - Logiciel: Adobe Flash Player 32 ActiveX - (.Adobe.) [HKLM] – Adobe Flash Player ActiveX [Unsigned] =>.Adobe
                              O42 - Logiciel: Adobe Flash Player 32 NPAPI - (.Adobe.) [HKLM] – Adobe Flash Player NPAPI [Unsigned] =>.Adobe
                              O42 - Logiciel: Adobe Reader X (10.1.16) - (.Adobe Systems Incorporated.) [HKLM] – {AC76BA86-7AD7-1033-7B44-AA1000000001} [Unsigned] =>.Adobe Systems Incorporated
                              O42 - Logiciel: AIM 7 - (..) [HKLM] – AIM_7 [Unsigned]
                              O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM] – Avast Antivirus =>.AVAST Software s.r.o.®
                              O42 - Logiciel: Avast Update Helper - (.AVAST Software.) [HKLM] – {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} [Unsigned] =>.AVAST Software (Hidden)
                              O42 - Logiciel: Cards_Calendar_OrderGift_DoMorePlugout - (.Hewlett-Packard.) [HKLM] – {4CACFCD9-F71B-413A-8DF5-1A6419D5CDC6} [Unsigned] =>.Hewlett-Packard (Hidden)
                              O42 - Logiciel: Compatibility Pack for the 2007 Office system - (.Microsoft Corporation.) [HKLM] – {90120000-0020-0409-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation
                              O42 - Logiciel: CyberLink DVD Suite Deluxe - (.CyberLink Corp..) [HKLM] – {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} =>.CyberLink®
                              O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] – Google Chrome =>.Google Inc®
                              O42 - Logiciel: Hewlett-Packard Active Check - (.Hewlett-Packard.) [HKLM] – {254C37AA-6B72-4300-84F6-98A82419187E} [Unsigned] =>.Hewlett-Packard (Hidden)
                              O42 - Logiciel: Hewlett-Packard Asset Agent for Health Check - (.HP.) [HKLM] – {669D4A35-146B-4314-89F1-1AC3D7B88367} [Unsigned] =>.HP (Hidden)
                              O42 - Logiciel: HP Active Support Library - (.Hewlett-Packard.) [HKLM] – {11BB336F-0E58-4977-B866-F24FA334616B} [Unsigned] =>.Hewlett-Packard
                              O42 - Logiciel: HP Advisor - (.Hewlett-Packard.) [HKLM] – {73A43E42-3658-4DD9-8551-FACDA3632538} [Unsigned] =>.Hewlett-Packard
                              O42 - Logiciel: HP Customer Feedback - (.Hewlett-Packard.) [HKLM] – {9DBA770F-BF73-4D39-B1DF-6035D95268FC} [Unsigned] =>.Hewlett-Packard (Hidden)
                              O42 - Logiciel: HP Easy Setup - Frontend - (.Hewlett-Packard.) [HKLM] – {9885A11E-60E4-417C-B58B-8B31B21C0B8A} [Unsigned] =>.Hewlett-Packard
                              O42 - Logiciel: HP On-Screen Cap/Num/Scroll Lock Indicator - (.Hewlett-Packard.) [HKLM] – OsdMaestro [Unsigned] =>.Hewlett-Packard
                              O42 - Logiciel: HP Photosmart Essential 2.5 - (.Hewlett-Packard.) [HKLM] – {BAD0FA60-09CF-4411-AE6A-C2844C8812FA} [Unsigned] =>.Hewlett-Packard (Hidden)
                              O42 - Logiciel: HP Photosmart Essential 2.5 - (.HP.) [HKLM] – HP Photosmart Essential =>.Hewlett Packard®
                              O42 - Logiciel: HPPhotoSmartPhotobookWebPack1 - (.Hewlett-Packard.) [HKLM] – {12A76360-388E-4B27-ABEB-D5FC5378DD2A} [Unsigned] =>.Hewlett-Packard (Hidden)
                              O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] – HDMI =>.Intel Corporation®
                              O42 - Logiciel: Java 8 Update 91 - (.Oracle Corporation.) [HKLM] – {26A24AE4-039D-4CA4-87B4-2F83218091F0} [Unsigned] =>.Oracle Corporation
                              O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM] – {4A03706F-666A-4037-7777-5F2748764D10} [Unsigned] =>.Oracle Corporation (Hidden)
                              O42 - Logiciel: K-Lite Codec Pack 10.6.5 Basic - (.KLite Inc.) [HKLM] – KLiteCodecPack_is1 [Unsigned] =>.KLite Inc
                              O42 - Logiciel: LabelPrint - (.CyberLink Corp..) [HKLM] – {C59C179C-668D-49A9-B6EA-0121CCFC1243} =>.CyberLink®
                              O42 - Logiciel: LightScribe System Software - (.LightScribe.) [HKLM] – {7F10292C-A190-4176-A665-A1ED3478DF86} [Unsigned] =>.LightScribe
                              O42 - Logiciel: LightScribe Template Labeler - (.LightScribe.) [HKLM] – {3EBA6E7C-3DF6-48AE-B87B-4CAFB2C1C3F7} [Unsigned] =>.LightScribe
                              O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] – {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} [Unsigned] =>.Microsoft Corporation (Hidden)
                              O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] – Microsoft .NET Framework 3.5 SP1 =>.Microsoft Corporation®
                              O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] – {3C3901C5-3455-3E0A-A214-0B093A5070A6} [Unsigned] =>.Microsoft Corporation (Hidden)
                              O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] – Microsoft .NET Framework 4 Client Profile =>.Microsoft Corporation®
                              O42 - Logiciel: Microsoft Office Home and Student 60 day trial - (..) [HKLM] – OfficeTrial [Unsigned]
                              O42 - Logiciel: Microsoft Office PowerPoint Viewer 2007 (English) - (.Microsoft Corporation.) [HKLM] – {95120000-00AF-0409-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation
                              O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] – {7299052b-02a4-4627-81f2-1818da5d550d} [Unsigned] =>.Microsoft Corporation
                              O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] – {A49F249F-0C91-497F-86DF-B2585E8E76B7} [Unsigned] =>.Microsoft Corporation
                              O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] – {1F1C2DFC-2D24-3E06-BCB8-725134ADF989} [Unsigned] =>.Microsoft Corporation
                              O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] – {15BC8CD0-A65B-47D0-A2DD-90A824590FA8} [Unsigned] =>.Microsoft Corporation
                              O42 - Logiciel: Mozilla Firefox 52.9.0 ESR (x86 en-US) - (.Mozilla.) [HKLM] – Mozilla Firefox 52.9.0 ESR (x86 en-US) =>.Mozilla Corporation®
                              O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] – MozillaMaintenanceService [Unsigned] =>.Mozilla
                              O42 - Logiciel: MSN - (..) [HKLM] – MSNINST [Unsigned]
                              O42 - Logiciel: muvee autoProducer 6.1 - (.muvee Technologies.) [HKLM] – {E8C2622C-9FF1-4F60-8008-A0208154F9F3} [Unsigned] =>.muvee Technologies
                              O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM] – {40BF1E83-20EB-11D8-97C5-0009C5020658} =>.CyberLink®
                              O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM] – {CB099890-1D5F-11D5-9EA9-0050BAE317E1} [Unsigned] =>.CyberLink Corp. (Hidden)
                              O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM] – InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1} =>.CyberLink®
                              O42 - Logiciel: PSSWCORE - (.Hewlett-Packard.) [HKLM] – {34BFB099-07B2-4E95-A673-7362D60866A2} [Unsigned] =>.Hewlett-Packard (Hidden)
                              O42 - Logiciel: Python 2.5 - (.Martin v. Löwis.) [HKLM] – {0A2C5854-557E-48C8-835A-3B9F074BDCAA} [Unsigned] =>.Martin v. Löwis
                              O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] – {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} [Unsigned] =>.Realtek Semiconductor Corp.
                              O42 - Logiciel: RTC Client API v1.2 - (.Microsoft.) [HKLM] – {44CDBD1B-89FB-4E02-8319-2A4C550F664A} [Unsigned] =>.Microsoft
                              O42 - Logiciel: Snapfish Picture Mover - (.HP Snapfish.) [HKLM] – {029B5901-1F27-4347-9923-E8ACC8F54E15} [Unsigned]
                              O42 - Logiciel: Soft Data Fax Modem with SmartCP - (.Conexant Systems.) [HKLM] – CNXT_MODEM_PCI_VEN_14F1&DEV_2F20&SUBSYS_200C14F1 [Unsigned] =>.Conexant Systems
                              O42 - Logiciel: Update for Microsoft .NET Framework 3.5 SP1 (KB963707) - (.Microsoft Corporation.) [HKLM] – {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707 [Unsigned] =>.Microsoft Corporation
                              O42 - Logiciel: VideoToolkit01 - (.Hewlett-Packard.) [HKLM] – {E08DC77E-D09A-4e36-8067-D6DBBCC5F8DC} [Unsigned] =>.Hewlett-Packard (Hidden)
                              O42 - Logiciel: Visual Studio 2012 x86 Redistributables - (.AVG Technologies CZ, s.r.o..) [HKLM] – {98EFF19A-30AB-4E4B-B943-F06B1C63EBF8} [Unsigned] =>.AVG Technologies CZ, s.r.o.
                              O42 - Logiciel: WeatherBug Gadget - (.AWS Convergence Technologies.) [HKLM] – {209CDA54-D390-46A2-A97C-7BF61734418D} [Unsigned] =>PUP.Optional.WeatherBug (Hidden)
                              
                              —\ HKCU & HKLM Software Keys (119) - 19s
                              HKLM\SOFTWARE\Acronis =>.Acronis
                              HKLM\SOFTWARE\Adobe =>.Adobe
                              HKLM\SOFTWARE\America Online =>.America Online
                              HKLM\SOFTWARE\AOL =>.America On Line Inc.
                              HKLM\SOFTWARE\Avast =>.Avast Software s.r.o
                              HKLM\SOFTWARE\AVAST Software =>.AVAST Software
                              HKLM\SOFTWARE\AVG =>.AVG Software
                              HKLM\SOFTWARE\Conexant Systems =>.Conexant Systems, Inc.
                              HKLM\SOFTWARE\Conexant Systems Inc =>.Conexant Systems, Inc.
                              HKLM\SOFTWARE\CXT =>.CXT Software
                              HKLM\SOFTWARE\CyberLink =>.CyberLink Corporation
                              HKLM\SOFTWARE\Debug =>.Legitimate
                              HKLM\SOFTWARE\Google =>.Google
                              HKLM\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
                              HKLM\SOFTWARE\HP =>.HP
                              HKLM\SOFTWARE\Icaros =>.Icaros
                              HKLM\SOFTWARE\InstallShield =>.InstallShield
                              HKLM\SOFTWARE\Intel =>.Intel
                              HKLM\SOFTWARE\JavaSoft =>.JavaSoft
                              HKLM\SOFTWARE\JreMetrics =>.JreMetrics
                              HKLM\SOFTWARE\KLCodecPack =>.KLite Inc
                              HKLM\SOFTWARE\LAV =>.LAV Inc
                              HKLM\SOFTWARE\LightScribe =>.LightScribe
                              HKLM\SOFTWARE\LightScribeTemplateLabeler
                              HKLM\SOFTWARE\Macromedia =>.Macromedia
                              HKLM\SOFTWARE\Malwarebytes’ Anti-Malware =>.Malwarebytes’ Anti-Malware
                              HKLM\SOFTWARE\Malwarebytes’ Anti-Malware (Trial) =>.Malwarebytes
                              HKLM\SOFTWARE\Mozilla =>.Mozilla
                              HKLM\SOFTWARE\mozilla.org =>.mozilla.org
                              HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
                              HKLM\SOFTWARE\muvee Technologies =>.muvee Technologies
                              HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
                              HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
                              HKLM\SOFTWARE\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp.
                              HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
                              HKLM\SOFTWARE\Software =>.Unknown
                              HKLM\SOFTWARE\Sonic =>.Sonic
                              HKLM\SOFTWARE\SRS Labs =>.SRS Labs
                              HKLM\SOFTWARE\Symantec =>.Symantec
                              HKLM\SOFTWARE\Volatile =>.Microsoft Corporation
                              HKLM\SOFTWARE\Wilson WindowWare =>.Wilson WindowWare
                              HKLM\SOFTWARE\Windows =>.Microsoft Corporation
                              HKLM\SOFTWARE\Wow6432Node =>.Microsoft Corporation
                              HKLM\SOFTWARE\Yahoo =>.Yahoo! Inc.
                              HKCU\SOFTWARE\Acronis =>.Acronis
                              HKCU\SOFTWARE\Adobe =>.Adobe
                              HKCU\SOFTWARE\America Online =>.America Online
                              HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
                              HKCU\SOFTWARE\AusLogics =>SUP.Optional.Auslogics
                              HKCU\SOFTWARE\Avast Software =>.AVAST Software
                              HKCU\SOFTWARE\Avg =>.AVG Software
                              HKCU\SOFTWARE\AVG SafePrice =>.AVG Software
                              HKCU\SOFTWARE\AVG Web TuneUp =>.AVG Web TuneUp
                              HKCU\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o
                              HKCU\SOFTWARE\Chromium =>.Chromium
                              HKCU\SOFTWARE\Google =>.Google
                              HKCU\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
                              HKCU\SOFTWARE\HP Guide
                              HKCU\SOFTWARE\Icaros =>.Icaros
                              HKCU\SOFTWARE\Intel =>.Intel
                              HKCU\SOFTWARE\JavaSoft =>.JavaSoft
                              HKCU\SOFTWARE\Licenses =>.Microsoft Corporation
                              HKCU\SOFTWARE\Macromedia =>.Macromedia
                              HKCU\SOFTWARE\MainConcept =>.MainConcept AG
                              HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes
                              HKCU\SOFTWARE\Malwarebytes’ Anti-Malware =>.Malwarebytes’ Anti-Malware
                              HKCU\SOFTWARE\McAfee =>.McAfee Inc.
                              HKCU\SOFTWARE\Mozilla =>.Mozilla
                              HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins
                              HKCU\SOFTWARE\Netscape =>.Netscape
                              HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
                              HKCU\SOFTWARE\Sammsoft
                              HKCU\SOFTWARE\Snapfish =>.Snapfish
                              HKCU\SOFTWARE\Softthinks =>.SoftThinks
                              HKCU\SOFTWARE\Wintertree =>.Wintertree Software
                              HKCU\SOFTWARE\Yahoo =>.Yahoo! Inc.
                              HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
                              HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
                              HKCU\SOFTWARE\AppDataLow\Software\JavaSoft =>.JavaSoft
                              HKCU\SOFTWARE\AppDataLow\Software\Yahoo =>.Yahoo! Inc.
                              HKU.DEFAULT\SOFTWARE\Avast Software =>.AVAST Software
                              HKU.DEFAULT\SOFTWARE\Avg Secure Update =>.AVG Software
                              HKU.DEFAULT\SOFTWARE\AVG Web TuneUp =>.AVG Web TuneUp
                              HKU.DEFAULT\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o
                              HKU.DEFAULT\SOFTWARE\JavaSoft =>.JavaSoft
                              HKU.DEFAULT\SOFTWARE\Malwarebytes’ Anti-Malware =>.Malwarebytes’ Anti-Malware
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Acronis =>.Acronis
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Adobe =>.Adobe
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\America Online =>.America Online
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\AppDataLow =>.Microsoft Corporation
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\AusLogics =>SUP.Optional.Auslogics
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Avast Software =>.AVAST Software
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Avg =>.AVG Software
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\AVG SafePrice =>.AVG Software
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\AVG Web TuneUp =>.AVG Web TuneUp
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Chromium =>.Chromium
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Google =>.Google
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\HP Guide
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Icaros =>.Icaros
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Intel =>.Intel
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\JavaSoft =>.JavaSoft
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Licenses =>.Microsoft Corporation
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Macromedia =>.Macromedia
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\MainConcept =>.MainConcept AG
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Malwarebytes =>.Malwarebytes
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Malwarebytes’ Anti-Malware =>.Malwarebytes’ Anti-Malware
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\McAfee =>.McAfee Inc.
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Mozilla =>.Mozilla
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\MozillaPlugins =>.MozillaPlugins
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Netscape =>.Netscape
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Sammsoft
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Snapfish =>.Snapfish
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Softthinks =>.SoftThinks
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Wintertree =>.Wintertree Software
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Yahoo =>.Yahoo! Inc.
                              HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\ZHP =>.Nicolas Coolman
                              
                              —\ Contents of the Common Files folders (207) - 14s
                              O43 - CFD: 17/10/2013 - D – C:\Program Files\Adobe =>.Adobe Systems, Incorporated®
                              O43 - CFD: 25/03/2017 - D – C:\Program Files\AIM =>.AOL Inc.®
                              O43 - CFD: 23/01/2009 - D – C:\Program Files\AIM Toolbar =>.AOL LLC®
                              O43 - CFD: 23/01/2009 - D – C:\Program Files\Auslogics =>SUP.Optional.Auslogics
                              O43 - CFD: 15/12/2022 - D – C:\Program Files\AVAST Software =>.AVAST Software s.r.o.®
                              O43 - CFD: 04/02/2017 - D – C:\Program Files\AVG =>.AVG Software
                              O43 - CFD: 18/11/2007 - D – C:\Program Files\AWS =>.Amazon Corporation
                              O43 - CFD: 15/12/2022 - D – C:\Program Files\Common Files =>.Microsoft Corporation
                              O43 - CFD: 18/11/2007 - D – C:\Program Files\CONEXANT =>.Conexant Systems, Inc.
                              O43 - CFD: 18/11/2007 - D – C:\Program Files\CyberLink =>.CyberLink Corporation
                              O43 - CFD: 18/11/2007 - D – C:\Program Files\earthlink totalaccess {5B2FD02E944AD78D4D06F59814E14714}.
                              O43 - CFD: 19/12/2022 - D – C:\Program Files\Google =>.Google Inc®
                              O43 - CFD: 21/10/2010 - D – C:\Program Files\Hewlett-Packard =>.Hewlett-Packard
                              O43 - CFD: 14/05/2011 - D – C:\Program Files\HP =>.Hewlett-Packard
                              O43 - CFD: 15/12/2022 - HD – C:\Program Files\InstallShield Installation Information =>.InstallShield
                              O43 - CFD: 13/05/2012 - D – C:\Program Files\Internet Explorer =>.Microsoft Corporation
                              O43 - CFD: 10/05/2016 - D – C:\Program Files\Java =>.Oracle
                              O43 - CFD: 26/08/2014 - D – C:\Program Files\K-Lite Codec Pack =>.KLite Inc
                              O43 - CFD: 18/11/2007 - D – C:\Program Files\LightScribeTemplateLabeler [Unsigned]
                              O43 - CFD: 15/12/2022 - D – C:\Program Files\Malwarebytes =>.Malwarebytes
                              O43 - CFD: 02/11/2006 - D – C:\Program Files\Microsoft Games =>.Microsoft Corporation
                              O43 - CFD: 18/11/2007 - D – C:\Program Files\Microsoft Office =>.Microsoft Corporation
                              O43 - CFD: 18/11/2007 - D – C:\Program Files\Microsoft Works =>.Microsoft Corporation
                              O43 - CFD: 17/05/2012 - D – C:\Program Files\Microsoft.NET =>.Microsoft Corporation
                              O43 - CFD: 10/05/2012 - D – C:\Program Files\Movie Maker =>.Microsoft Corporation
                              O43 - CFD: 27/06/2018 - D – C:\Program Files\Mozilla Firefox =>.Mozilla
                              O43 - CFD: 01/09/2016 - D – C:\Program Files\Mozilla Firefox(117) =>.Mozilla Corporation
                              O43 - CFD: 28/09/2016 - D – C:\Program Files\Mozilla Firefox(174) =>.Mozilla Corporation
                              O43 - CFD: 24/09/2016 - D – C:\Program Files\Mozilla Firefox(69) =>.Mozilla Corporation
                              O43 - CFD: 03/10/2015 - D – C:\Program Files\Mozilla Firefox(9) =>.Mozilla Corporation
                              O43 - CFD: 27/06/2018 - D – C:\Program Files\Mozilla Maintenance Service =>.Mozilla
                              O43 - CFD: 02/11/2006 - D – C:\Program Files\MSBuild =>.Microsoft Corporation
                              O43 - CFD: 01/02/2010 - D – C:\Program Files\MSN =>.Microsoft Corporation
                              O43 - CFD: 18/11/2007 - D – C:\Program Files\muvee Technologies [Unsigned] =>.muvee Technologies
                              O43 - CFD: 18/11/2007 - D – C:\Program Files\Online Services =>.Hewlett-Packard
                              O43 - CFD: 14/08/2012 - D – C:\Program Files\Oracle =>.Oracle
                              O43 - CFD: 18/11/2007 - D – C:\Program Files\Realtek =>.Realtek
                              O43 - CFD: 02/11/2006 - D – C:\Program Files\Reference Assemblies =>.Microsoft Corporation
                              O43 - CFD: 18/11/2007 - D – C:\Program Files\Snapfish Picture Mover [Unsigned]
                              O43 - CFD: 02/11/2006 - [0] HD – C:\Program Files\Uninstall Information =>.Microsoft Corporation
                              O43 - CFD: 10/05/2012 - D – C:\Program Files\Windows Calendar =>.Microsoft Corporation
                              O43 - CFD: 10/05/2012 - D – C:\Program Files\Windows Collaboration =>.Microsoft Corporation
                              O43 - CFD: 10/05/2012 - D – C:\Program Files\Windows Defender =>.Microsoft Corporation
                              O43 - CFD: 10/05/2012 - D – C:\Program Files\Windows Journal =>.Microsoft Corporation
                              O43 - CFD: 10/05/2012 - D – C:\Program Files\Windows Mail =>.Microsoft Corporation
                              O43 - CFD: 10/05/2012 - D – C:\Program Files\Windows Media Player =>.Microsoft Corporation
                              O43 - CFD: 02/11/2006 - D – C:\Program Files\Windows NT =>.Microsoft Corporation
                              O43 - CFD: 10/05/2012 - D – C:\Program Files\Windows Photo Gallery =>.Microsoft Corporation
                              O43 - CFD: 08/06/2016 - D – C:\Program Files\Windows Sidebar =>.Microsoft Corporation
                              O43 - CFD: 15/12/2022 - D – C:\Program Files\Yahoo! =>.Yahoo!
                              O43 - CFD: 10/05/2012 - RD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
                              O43 - CFD: 10/05/2012 - RD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
                              O43 - CFD: 25/03/2017 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AIM
                              O43 - CFD: 23/04/2009 - [0] D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOL =>.AOL
                              O43 - CFD: 15/12/2022 - [0] D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics =>SUP.Optional.Auslogics
                              O43 - CFD: 15/12/2022 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software =>.AVAST Software
                              O43 - CFD: 10/05/2012 - RD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Extras and Upgrades =>.Legitimate
                              O43 - CFD: 15/12/2022 - RD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
                              O43 - CFD: 21/10/2010 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hewlett-Packard =>.Hewlett-Packard
                              O43 - CFD: 15/12/2022 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP =>.Hewlett-Packard
                              O43 - CFD: 10/05/2016 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle
                              O43 - CFD: 09/05/2016 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java(50) =>.Sun Microsystems
                              O43 - CFD: 26/08/2014 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack =>.KLite Inc
                              O43 - CFD: 29/07/2009 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LightScribe Direct Disc Labeling =>.LightScribe
                              O43 - CFD: 02/11/2006 - RD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
                              O43 - CFD: 18/11/2007 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works =>.Microsoft Corporation
                              O43 - CFD: 18/11/2007 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\muvee =>.muvee
                              O43 - CFD: 28/05/2008 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Online Services =>.Hewlett-Packard
                              O43 - CFD: 15/12/2022 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Help & Tools =>.Hewlett-Packard
                              O43 - CFD: 18/11/2007 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Snapfish Picture Mover
                              O43 - CFD: 22/08/2012 - RD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
                              O43 - CFD: 02/11/2006 - RHD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC =>.Wacom Technology
                              O43 - CFD: 18/11/2007 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\User Guides =>.Unknown
                              O43 - CFD: 23/01/2009 - D – C:\ProgramData\acccore
                              O43 - CFD: 23/01/2009 - D – C:\ProgramData\Acronis =>.Acronis
                              O43 - CFD: 21/11/2013 - D – C:\ProgramData\Adobe =>.Adobe
                              O43 - CFD: 17/06/2010 - D – C:\ProgramData\AIM
                              O43 - CFD: 23/01/2009 - D – C:\ProgramData\AIM Toolbar
                              O43 - CFD: 17/06/2010 - D – C:\ProgramData\AOL =>.AOL
                              O43 - CFD: 23/01/2009 - D – C:\ProgramData\AOL OCP =>.America On Line Inc.
                              O43 - CFD: 28/05/2008 - [0] SHD – C:\ProgramData\Application Data =>.Microsoft Corporation
                              O43 - CFD: 15/12/2022 - D – C:\ProgramData\AVAST Software =>.AVAST Software
                              O43 - CFD: 04/02/2017 - D – C:\ProgramData\Avg =>.AVG Software
                              O43 - CFD: 08/07/2016 - HD – C:\ProgramData\Common Files =>.Microsoft Corporation
                              O43 - CFD: 28/05/2008 - [0] SHD – C:\ProgramData\Desktop =>.Microsoft Corporation
                              O43 - CFD: 28/05/2008 - [0] SHD – C:\ProgramData\Documents =>.Microsoft Corporation
                              O43 - CFD: 28/05/2008 - [0] SHD – C:\ProgramData\Favorites =>.Microsoft Corporation
                              O43 - CFD: 28/05/2008 - D – C:\ProgramData\Hewlett-Packard =>.Hewlett-Packard
                              O43 - CFD: 18/11/2007 - D – C:\ProgramData\HP =>.Hewlett-Packard
                              O43 - CFD: 28/05/2008 - D – C:\ProgramData\Macromedia =>.Macromedia
                              O43 - CFD: 15/12/2022 - D – C:\ProgramData\Malwarebytes =>.Malwarebytes
                              O43 - CFD: 15/12/2022 - D – C:\ProgramData\MB2Migration
                              O43 - CFD: 14/08/2012 - D – C:\ProgramData\McAfee =>.McAfee
                              O43 - CFD: 03/02/2017 - D – C:\ProgramData\MFAData =>.AVG Software
                              O43 - CFD: 03/07/2008 - SD – C:\ProgramData\Microsoft =>.Microsoft Corporation
                              O43 - CFD: 07/06/2012 - D – C:\ProgramData\Mozilla =>.Mozilla Corporation
                              O43 - CFD: 18/11/2007 - D – C:\ProgramData\muvee Technologies =>.muvee Technologies
                              O43 - CFD: 14/09/2010 - D – C:\ProgramData\NOS
                              O43 - CFD: 09/05/2016 - D – C:\ProgramData\Oracle =>.Oracle
                              O43 - CFD: 28/05/2008 - [0] SHD – C:\ProgramData\Start Menu =>.Microsoft Corporation
                              O43 - CFD: 28/06/2010 - D – C:\ProgramData\Sun =>.Oracle
                              O43 - CFD: 28/05/2008 - D – C:\ProgramData\Symantec =>.Symantec
                              O43 - CFD: 28/05/2008 - [0] SHD – C:\ProgramData\Templates =>.Microsoft Corporation
                              O43 - CFD: 15/12/2022 - D – C:\ProgramData\WildTangent =>.WildTangent
                              O43 - CFD: 13/11/2014 - D – C:\ProgramData\WindowsSearch =>.Microsoft Corporation
                              O43 - CFD: 25/01/2009 - D – C:\ProgramData\Yahoo! =>.Yahoo!
                              O43 - CFD: 23/01/2009 - D – C:\Program Files\Common Files\Acronis =>.Acronis
                              O43 - CFD: 05/12/2015 - D – C:\Program Files\Common Files\Adobe =>.Adobe
                              O43 - CFD: 23/04/2009 - D – C:\Program Files\Common Files\aol =>.AOL
                              O43 - CFD: 28/05/2008 - D – C:\Program Files\Common Files\aolback
                              O43 - CFD: 06/12/2017 - D – C:\Program Files\Common Files\Avast Software =>.AVAST Software
                              O43 - CFD: 18/11/2007 - D – C:\Program Files\Common Files\HP =>.Hewlett-Packard
                              O43 - CFD: 18/11/2007 - D – C:\Program Files\Common Files\InstallShield =>.InstallShield
                              O43 - CFD: 23/11/2012 - D – C:\Program Files\Common Files\Java =>.Oracle
                              O43 - CFD: 29/07/2009 - AD – C:\Program Files\Common Files\LightScribe =>.LightScribe
                              O43 - CFD: 18/11/2007 - AD – C:\Program Files\Common Files\LS Getting Started =>.LightScribe
                              O43 - CFD: 18/11/2007 - D – C:\Program Files\Common Files\microsoft shared =>.Microsoft Corporation
                              O43 - CFD: 18/11/2007 - D – C:\Program Files\Common Files\muvee Technologies =>.muvee Technologies
                              O43 - CFD: 28/05/2008 - D – C:\Program Files\Common Files\Nullsoft =>.Nullsoft
                              O43 - CFD: 02/11/2006 - D – C:\Program Files\Common Files\Services =>.Microsoft Corporation
                              O43 - CFD: 02/11/2006 - D – C:\Program Files\Common Files\SpeechEngines =>.Microsoft Corporation
                              O43 - CFD: 28/05/2008 - D – C:\Program Files\Common Files\Symantec Shared =>.Symantec Corporation
                              O43 - CFD: 10/05/2012 - D – C:\Program Files\Common Files\System =>.Microsoft Corporation
                              O43 - CFD: 23/01/2009 - D – C:\Users\John\AppData\Roaming\acccore
                              O43 - CFD: 23/01/2009 - D – C:\Users\John\AppData\Roaming\Acronis =>.Acronis
                              O43 - CFD: 21/11/2013 - D – C:\Users\John\AppData\Roaming\Adobe =>.Adobe
                              O43 - CFD: 23/04/2009 - [0] D – C:\Users\John\AppData\Roaming\AOL =>.AOL
                              O43 - CFD: 30/01/2017 - [0] D – C:\Users\John\AppData\Roaming\Auslogics =>SUP.Optional.Auslogics
                              O43 - CFD: 15/12/2022 - D – C:\Users\John\AppData\Roaming\AVAST Software =>.AVAST Software
                              O43 - CFD: 31/01/2017 - D – C:\Users\John\AppData\Roaming\AVG =>.AVG Software
                              O43 - CFD: 15/12/2022 - D – C:\Users\John\AppData\Roaming\Crystal Security
                              O43 - CFD: 28/05/2008 - D – C:\Users\John\AppData\Roaming\Hewlett-Packard =>.Hewlett-Packard
                              O43 - CFD: 09/12/2022 - D – C:\Users\John\AppData\Roaming\HpUpdate =>.Hewlett-Packard
                              O43 - CFD: 28/05/2008 - D – C:\Users\John\AppData\Roaming\Identities =>.Microsoft Corporation
                              O43 - CFD: 10/03/2011 - D – C:\Users\John\AppData\Roaming\Macromedia =>.Macromedia
                              O43 - CFD: 30/09/2015 - [0] D – C:\Users\John\AppData\Roaming\Malwarebytes =>.Malwarebytes
                              O43 - CFD: 02/11/2006 - [0] D – C:\Users\John\AppData\Roaming\Media Center Programs =>.Microsoft Corporation
                              O43 - CFD: 21/11/2013 - SD – C:\Users\John\AppData\Roaming\Microsoft =>.Microsoft Corporation
                              O43 - CFD: 23/04/2009 - D – C:\Users\John\AppData\Roaming\Mozilla =>.Mozilla Corporation
                              O43 - CFD: 01/02/2010 - D – C:\Users\John\AppData\Roaming\MSNInstaller =>.Microsoft Corporation
                              O43 - CFD: 28/05/2008 - D – C:\Users\John\AppData\Roaming\Snapfish =>.Snapfish
                              O43 - CFD: 09/05/2016 - D – C:\Users\John\AppData\Roaming\Sun =>.Oracle
                              O43 - CFD: 28/05/2008 - D – C:\Users\John\AppData\Roaming\Symantec =>.Symantec
                              O43 - CFD: 23/10/2010 - D – C:\Users\John\AppData\Roaming\Template =>.Microsoft Corporation
                              O43 - CFD: 08/07/2016 - D – C:\Users\John\AppData\Roaming\TuneUp Software =>.TuneUp Software
                              O43 - CFD: 29/01/2009 - D – C:\Users\John\AppData\Roaming\WinBatch =>.winbatch.com
                              O43 - CFD: 15/12/2022 - [0] D – C:\Users\John\AppData\Roaming\Yahoo! =>.Yahoo!
                              O43 - CFD: 19/12/2022 - D – C:\Users\John\AppData\Roaming\ZHP =>.Nicolas Coolman
                              O43 - CFD: 17/10/2013 - D – C:\Users\John\AppData\Local\Adobe =>.Adobe
                              O43 - CFD: 25/03/2017 - D – C:\Users\John\AppData\Local\AIM
                              O43 - CFD: 23/01/2009 - D – C:\Users\John\AppData\Local\AIM Toolbar
                              O43 - CFD: 23/01/2009 - D – C:\Users\John\AppData\Local\AOL =>.AOL
                              O43 - CFD: 23/01/2009 - D – C:\Users\John\AppData\Local\AOL OCP =>.America On Line Inc.
                              O43 - CFD: 28/05/2008 - [0] SHD – C:\Users\John\AppData\Local\Application Data =>.Microsoft Corporation
                              O43 - CFD: 24/04/2012 - D – C:\Users\John\AppData\Local\Apps =>.Microsoft Corporation
                              O43 - CFD: 18/12/2022 - D – C:\Users\John\AppData\Local\AVAST Software =>.AVAST Software
                              O43 - CFD: 31/01/2017 - D – C:\Users\John\AppData\Local\Avg =>.AVG Software
                              O43 - CFD: 04/02/2017 - D – C:\Users\John\AppData\Local\AvgSetupLog =>.AVG Software
                              O43 - CFD: 28/11/2016 - D – C:\Users\John\AppData\Local\CEF =>.CEF
                              O43 - CFD: 27/07/2017 - [0] D – C:\Users\John\AppData\Local\Deployment =>.Microsoft Corporation
                              O43 - CFD: 27/01/2013 - D – C:\Users\John\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation
                              O43 - CFD: 09/08/2017 - D – C:\Users\John\AppData\Local\Google =>.Google
                              O43 - CFD: 28/05/2008 - D – C:\Users\John\AppData\Local\Hewlett-Packard =>.Hewlett-Packard
                              O43 - CFD: 28/05/2008 - [0] SHD – C:\Users\John\AppData\Local\History =>.Microsoft Corporation
                              O43 - CFD: 17/03/2016 - D – C:\Users\John\AppData\Local\Macromedia =>.Macromedia
                              O43 - CFD: 31/01/2017 - D – C:\Users\John\AppData\Local\MFAData =>.AVG Software
                              O43 - CFD: 18/04/2014 - D – C:\Users\John\AppData\Local\Microsoft =>.Microsoft Corporation
                              O43 - CFD: 19/08/2012 - [0] D – C:\Users\John\AppData\Local\MigWiz =>.MigWiz
                              O43 - CFD: 23/04/2009 - D – C:\Users\John\AppData\Local\Mozilla =>.Mozilla Corporation
                              O43 - CFD: 30/11/2011 - D – C:\Users\John\AppData\Local\Solid State Networks =>.Solid State Networks
                              O43 - CFD: 19/12/2022 - D – C:\Users\John\AppData\Local\Temp =>.Microsoft Corporation
                              O43 - CFD: 28/05/2008 - [0] SHD – C:\Users\John\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
                              O43 - CFD: 03/08/2009 - D – C:\Users\John\AppData\Local\VirtualStore =>.Microsoft Corporation
                              O43 - CFD: 15/12/2022 - [0] D – C:\Users\John\AppData\Local\Yahoo
                              O43 - CFD: 19/12/2022 - D – C:\Users\John\AppData\Local\ZHP =>.Nicolas Coolman
                              O43 - CFD: 21/11/2013 - D – C:\Users\John\AppData\LocalLow\Adobe =>.Adobe
                              O43 - CFD: 21/11/2013 - SD – C:\Users\John\AppData\LocalLow\Microsoft =>.Microsoft Corporation
                              O43 - CFD: 18/12/2022 - D – C:\Users\John\AppData\LocalLow\Mozilla =>.Mozilla Corporation
                              O43 - CFD: 14/08/2012 - D – C:\Users\John\AppData\LocalLow\Oracle =>.Oracle
                              O43 - CFD: 28/05/2008 - D – C:\Users\John\AppData\LocalLow\Sun =>.Oracle
                              O43 - CFD: 13/12/2022 - [0] SD – C:\Users\John\AppData\LocalLow\Temp =>.Microsoft Corporation
                              O43 - CFD: 23/04/2009 - D – C:\Users\John\Desktop\AOL Saved PFC
                              O43 - CFD: 18/12/2022 - RD – C:\Users\John\Desktop\downloads
                              O43 - CFD: 12/12/2022 - D – C:\Users\John\Desktop\Old Firefox Data
                              O43 - CFD: 31/01/2017 - RD – C:\Users\John\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
                              O43 - CFD: 31/01/2017 - RD – C:\Users\John\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
                              O43 - CFD: 31/01/2017 - RD – C:\Users\John\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
                              O43 - CFD: 31/01/2017 - RD – C:\Users\John\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
                              O43 - CFD: 28/05/2008 - [0] SHD – C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
                              O43 - CFD: 28/05/2008 - [0] SHD – C:\Users\Default\AppData\Local\History =>.Microsoft Corporation
                              O43 - CFD: 02/11/2006 - D – C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
                              O43 - CFD: 02/11/2006 - [0] D – C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
                              O43 - CFD: 28/05/2008 - [0] SHD – C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
                              O43 - CFD: 28/05/2008 - [0] SHD – C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
                              O43 - CFD: 28/05/2008 - [0] SHD – C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation
                              O43 - CFD: 02/11/2006 - D – C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
                              O43 - CFD: 02/11/2006 - [0] D – C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation
                              O43 - CFD: 28/05/2008 - [0] SHD – C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
                              O43 - CFD: 23/01/2009 - D – C:\Windows\System32\Config\systemprofile\AppData\Local\AOL =>.AOL
                              O43 - CFD: 04/02/2017 - D – C:\Windows\System32\Config\systemprofile\AppData\Local\Avg =>.AVG Software
                              O43 - CFD: 02/02/2017 - D – C:\Windows\System32\Config\systemprofile\AppData\Local\AvgSetupLog =>.AVG Software
                              O43 - CFD: 31/01/2017 - D – C:\Windows\System32\Config\systemprofile\AppData\Local\Google =>.Google
                              O43 - CFD: 18/11/2007 - D – C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
                              O43 - CFD: 23/01/2009 - D – C:\Windows\System32\Config\systemprofile\AppData\Roaming\Acronis =>.Acronis
                              O43 - CFD: 31/01/2017 - D – C:\Windows\System32\Config\systemprofile\AppData\Roaming\AVG =>.AVG Software
                              O43 - CFD: 11/10/2017 - D – C:\Windows\System32\Config\systemprofile\AppData\Roaming\Macromedia =>.Macromedia
                              O43 - CFD: 31/01/2017 - SD – C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation
                              
                              —\ ShellIconOverlayIdentifiers (SIOI) (1) - 0s
                              O106 - SIOI: avast [00asw] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - Avast Shell Extension.) – C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software s.r.o.®
                              
                              —\ Search Context Menu Handlers (SCMH) (15) - 1s
                              O108 - CMH1: avast - {472083B0-C522-11CF-8763-00608CC02F24} . (.AVAST Software - Avast Shell Extension.) – C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software s.r.o.®
                              O108 - CMH1: BriefcaseMenu - {85BBD920-42A0-1069-A2E4-08002B30309D} . (…) – syncui.dll (.not file.)
                              O108 - CMH1: Open With - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - Windows Shell Common Dll.) – C:\WINDOWS\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
                              O108 - CMH1: Open With EncryptionMenu - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - Windows Shell Common Dll.) – C:\WINDOWS\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
                              O108 - CMH1: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (…) – ntshrui.dll (.not file.)
                              O108 - CMH2: OpenContainingFolderMenu - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - Windows Shell Common Dll.) – C:\WINDOWS\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
                              O108 - CMH3: 00asw - {472083B0-C522-11CF-8763-00608CC02F24} . (.AVAST Software - Avast Shell Extension.) – C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software s.r.o.®
                              O108 - CMH3: CopyAsPathMenu - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - Windows Shell Common Dll.) – C:\WINDOWS\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
                              O108 - CMH3: Send To - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - Windows Shell Common Dll.) – C:\WINDOWS\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
                              O108 - CMH4: EncryptionMenu - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - Windows Shell Common Dll.) – C:\WINDOWS\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
                              O108 - CMH4: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (…) – ntshrui.dll (.not file.)
                              O108 - CMH5: New - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - Windows Shell Common Dll.) – C:\WINDOWS\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
                              O108 - CMH6: avast - {472083B0-C522-11CF-8763-00608CC02F24} . (.AVAST Software - Avast Shell Extension.) – C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software s.r.o.®
                              O108 - CMH6: BriefcaseMenu - {85BBD920-42A0-1069-A2E4-08002B30309D} . (…) – syncui.dll (.not file.)
                              O108 - CMH7: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (…) – ntshrui.dll (.not file.)
                              
                              —\ Image File Execution Options (1) - 0s
                              O50 - IFEO:C:\WINDOWS\System32\FlashPlayerApp.exe - (.Adobe - Adobe Flash Player Control Panel Applet.) [DisableExceptionChainValidation\0] [Unsigned] =>.Adobe
                              
                              —\ ShareTools MSconfig StartupReg (2) - 1s
                              O53 - SMSR:HKLM...\startupreg\HP Health Check Scheduler [Key] . (…) – [ProgramFilesFolder]Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe (.not file.)
                              O53 - SMSR:HKLM...\startupreg\HPADVISOR [Key] . (.Hewlett-Packard - HP Advisor.) – C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe =>.Hewlett-Packard
                              
                              —\ System Drivers List (294) - 22s
                              O58 - SDL:2006/11/02 03:55:12 A . (.Microsoft Corporation - 1394 Bus Device Driver.) – C:\Windows\System32\drivers\1394bus.sys [53376] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 02:43:03 A . (.Microsoft Corporation - ACPI Driver for NT.) – C:\Windows\System32\drivers\acpi.sys [266808] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:51:38 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) – C:\Windows\System32\drivers\adp94xx.sys [420968] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:51:32 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) – C:\Windows\System32\drivers\adpahci.sys [297576] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:50:35 A . (.Adaptec, Inc. - Adaptec LH Ultra160 Driver (x86).) – C:\Windows\System32\drivers\adpu160m.sys [98408] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:51:00 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) – C:\Windows\System32\drivers\adpu320.sys [147048] =>.Microsoft Windows®
                              O58 - SDL:2011/04/21 08:16:42 A . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) – C:\Windows\System32\drivers\afd.sys [273408] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 04:49:52 A . (.Microsoft Corporation - 440 NT AGP Filter.) – C:\Windows\System32\drivers\AGP440.sys [53864] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:49:20 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) – C:\Windows\System32\drivers\aliide.sys [14952] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:49:59 A . (.Microsoft Corporation - AMD NT AGP Filter.) – C:\Windows\System32\drivers\AMDAGP.SYS [54888] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:49:26 A . (.Microsoft Corporation - AMD IDE Driver.) – C:\Windows\System32\drivers\amdide.sys [15464] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 03:30:18 A . (.Microsoft Corporation - Processor Device Driver.) – C:\Windows\System32\drivers\amdk7.sys [38912] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 03:30:18 A . (.Microsoft Corporation - Processor Device Driver.) – C:\Windows\System32\drivers\amdk8.sys [40960] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 04:50:09 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) – C:\Windows\System32\drivers\arc.sys [67688] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:50:10 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) – C:\Windows\System32\drivers\arcsas.sys [67688] =>.Microsoft Windows®
                              O58 - SDL:2022/12/15 22:44:27 A . (.AVAST Software - Avast anti rootkit.) – C:\Windows\System32\drivers\aswArPot.sys [167480] =>.AVAST Software s.r.o.®
                              O58 - SDL:2022/12/15 22:44:04 A . (.AVAST Software - IDS Application Activity Monitor Driver..) – C:\Windows\System32\drivers\aswbidsdriverx.sys [188976] =>.AVAST Software s.r.o.®
                              O58 - SDL:2022/12/15 22:44:04 A . (.AVAST Software - Application Activity Monitor Helper Driver.) – C:\Windows\System32\drivers\aswbidshx.sys [165384] =>.AVAST Software s.r.o.®
                              O58 - SDL:2022/12/15 22:44:05 A . (.AVAST Software - Logging Driver.) – C:\Windows\System32\drivers\aswblogx.sys [284256] =>.AVAST Software s.r.o.®
                              O58 - SDL:2022/12/15 22:44:05 A . (.AVAST Software - Universal Driver.) – C:\Windows\System32\drivers\aswbunivx.sys [57904] =>.AVAST Software s.r.o.®
                              O58 - SDL:2022/12/15 23:06:07 A . (.AVAST Software - Home Network Security.) – C:\Windows\System32\drivers\aswHdsKe.sys [183176] =>.AVAST Software s.r.o.®
                              O58 - SDL:2022/12/15 22:44:27 A . (.AVAST Software - Avast HWID.) – C:\Windows\System32\drivers\aswHwid.sys [42736] =>.AVAST Software s.r.o.® (Avast Software s.r.o)
                              O58 - SDL:2022/12/15 22:44:21 A . (.AVAST Software - Avast Keyboard Filter Driver.) – C:\Windows\System32\drivers\aswKbd.sys [40688] =>.AVAST Software s.r.o.®
                              O58 - SDL:2022/12/15 23:06:18 A . (.AVAST Software - Avast File System Minifilter for Windows 20.) – C:\Windows\System32\drivers\aswMonFlt.sys [135200] =>.AVAST Software s.r.o.®
                              O58 - SDL:2022/12/15 22:44:26 A . (.AVAST Software - Avast TDI Redirect Driver.) – C:\Windows\System32\drivers\aswRdr.sys [70640] =>.AVAST Software s.r.o.®
                              O58 - SDL:2022/12/15 22:44:27 A . (.AVAST Software - Avast Revert.) – C:\Windows\System32\drivers\aswRvrt.sys [72800] =>.AVAST Software s.r.o.® (Avast Software s.r.o)
                              O58 - SDL:2022/12/15 23:06:19 A . (.AVAST Software - Avast Virtualization Driver.) – C:\Windows\System32\drivers\aswSnx.sys [784552] =>.AVAST Software s.r.o.®
                              O58 - SDL:2022/12/15 23:06:19 A . (.AVAST Software - Avast self protection module.) – C:\Windows\System32\drivers\aswSP.sys [397984] =>.AVAST Software s.r.o.®
                              O58 - SDL:2022/12/15 22:44:28 A . (.AVAST Software - Avast Stream Filter.) – C:\Windows\System32\drivers\aswStmXP.sys [146584] =>.AVAST Software s.r.o.®
                              O58 - SDL:2022/12/15 22:44:27 A . (.AVAST Software - Avast VM Monitor.) – C:\Windows\System32\drivers\aswVmm.sys [310200] =>.AVAST Software s.r.o.® (Avast Software s.r.o)
                              O58 - SDL:2008/01/19 00:56:29 A . (.Microsoft Corporation - MS Remote Access serial network driver.) – C:\Windows\System32\drivers\asyncmac.sys [17408] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 02:41:30 A . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) – C:\Windows\System32\drivers\atapi.sys [21560] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 02:43:06 A . (.Microsoft Corporation - ATAPI Driver Extension.) – C:\Windows\System32\drivers\ataport.sys [110136] =>.Microsoft Windows®
                              O58 - SDL:2006/11/09 18:36:04 A . (.America Online - ATW Protocol Driver.) – C:\Windows\System32\drivers\atwpkt2.sys [25136] =>.AOL LLC®
                              O58 - SDL:2006/11/09 18:36:19 A . (.America Online - ATW Protocol Driver.) – C:\Windows\System32\drivers\atwpkt264.sys [33592] =>.AOL LLC®
                              O58 - SDL:2006/11/02 04:49:47 A . (.Microsoft Corporation - Battery Class Driver.) – C:\Windows\System32\drivers\battc.sys [25192] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 00:53:30 A . (.Microsoft Corporation - Microsoft BDA Driver Support Library.) – C:\Windows\System32\drivers\bdasup.sys [12288] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:49:10 A . (.Microsoft Corporation - BEEP Driver.) – C:\Windows\System32\drivers\beep.sys [6144] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2011/02/22 07:51:51 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) – C:\Windows\System32\drivers\bowser.sys [69632] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 03:24:45 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) – C:\Windows\System32\drivers\BrFiltLo.sys [13568] [Unsigned] =>.Brother Industries, Ltd.
                              O58 - SDL:2006/11/02 03:24:46 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) – C:\Windows\System32\drivers\BrFiltUp.sys [5248] [Unsigned] =>.Brother Industries, Ltd.
                              O58 - SDL:2008/01/19 01:58:26 A . (.Microsoft Corporation - MAC Bridge Driver.) – C:\Windows\System32\drivers\bridge.sys [93696] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 03:25:24 A . (.Brother Industries Ltd. - Brotehr Serial I/F Driver (WDM).) – C:\Windows\System32\drivers\BrSerId.sys [71808] [Unsigned] =>.Brother Industries Ltd.
                              O58 - SDL:2006/11/02 03:24:44 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) – C:\Windows\System32\drivers\BrSerWdm.sys [62336] [Unsigned] =>.Brother Industries Ltd.
                              O58 - SDL:2006/11/02 03:24:44 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) – C:\Windows\System32\drivers\BrUsbMdm.sys [12160] [Unsigned] =>.Brother Industries Ltd.
                              O58 - SDL:2006/11/02 03:24:47 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) – C:\Windows\System32\drivers\BrUsbSer.sys [11904] [Unsigned] =>.Brother Industries Ltd.
                              O58 - SDL:2006/11/02 03:55:23 A . (.Microsoft Corporation - Bluetooth Communications Driver.) – C:\Windows\System32\drivers\bthmodem.sys [39936] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:28:02 A . (.Microsoft Corporation - CD-ROM File System Driver.) – C:\Windows\System32\drivers\cdfs.sys [70144] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:49:51 A . (.Microsoft Corporation - SCSI CD-ROM Driver.) – C:\Windows\System32\drivers\cdrom.sys [67072] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 03:55:08 A . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) – C:\Windows\System32\drivers\circlass.sys [35328] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 02:43:13 A . (.Microsoft Corporation - SCSI Class System Dll.) – C:\Windows\System32\drivers\Classpnp.sys [127544] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:49:28 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) – C:\Windows\System32\drivers\cmdide.sys [16488] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:49:32 A . (.Microsoft Corporation - Composite Battery Driver.) – C:\Windows\System32\drivers\compbatt.sys [18280] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 02:41:58 A . (.Microsoft Corporation - Crash Dump Driver.) – C:\Windows\System32\drivers\crashdmp.sys [36408] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:49:43 A . (.Microsoft Corporation - Disk Block Verification Filter Driver.) – C:\Windows\System32\drivers\crcdisk.sys [22632] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 03:30:18 A . (.Microsoft Corporation - Processor Device Driver.) – C:\Windows\System32\drivers\crusoe.sys [38912] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2011/04/14 09:24:14 A . (.Microsoft Corporation - DFS Namespace Client Driver.) – C:\Windows\System32\drivers\dfsc.sys [75264] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 02:42:20 A . (.Microsoft Corporation - PnP Disk Driver.) – C:\Windows\System32\drivers\disk.sys [55352] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 00:49:43 A . (.Microsoft Corporation - Crash Dump Disk Driver.) – C:\Windows\System32\drivers\Diskdump.sys [19968] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 04:50:11 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) – C:\Windows\System32\drivers\djsvs.sys [71272] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 01:53:03 A . (.Microsoft Corporation - Microsoft Kernel DRM Descrambler Filter.) – C:\Windows\System32\drivers\drmk.sys [130048] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:53:16 A . (.Microsoft Corporation - Microsoft Kernel DRM Audio Descrambler Filt.) – C:\Windows\System32\drivers\drmkaud.sys [5632] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 02:41:40 A . (.Microsoft Corporation - ATAPI Dump Driver.) – C:\Windows\System32\drivers\Dumpata.sys [29240] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 00:36:12 A . (.Microsoft Corporation - DirectX API Driver.) – C:\Windows\System32\drivers\dxapi.sys [13312] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:36:12 A . (.Microsoft Corporation - DirectX Graphics Driver.) – C:\Windows\System32\drivers\dxg.sys [76288] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/08/01 20:01:23 A . (.Microsoft Corporation - DirectX Graphics Kernel.) – C:\Windows\System32\drivers\dxgkrnl.sys [625152] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 02:30:54 A . (.Intel Corporation - Intel(R) PRO/1000 Adapter NDIS 6 deserializ.) – C:\Windows\System32\drivers\E1G60I32.sys [117760] [Unsigned] =>.Intel Corporation
                              O58 - SDL:2008/01/19 02:42:11 A . (.Microsoft Corporation - Special Memory Device Cache.) – C:\Windows\System32\drivers\ecache.sys [143416] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:51:34 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) – C:\Windows\System32\drivers\elxstor.sys [316520] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 00:28:01 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) – C:\Windows\System32\drivers\exfat.sys [136192] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:28:01 A . (.Microsoft Corporation - Fast FAT File System Driver.) – C:\Windows\System32\drivers\fastfat.sys [143360] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 03:51:33 A . (.Microsoft Corporation - Floppy Disk Controller Driver.) – C:\Windows\System32\drivers\fdc.sys [25088] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 02:42:31 A . (.Microsoft Corporation - FileInfo Filter Driver.) – C:\Windows\System32\drivers\fileinfo.sys [58936] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 00:30:23 A . (.Microsoft Corporation - File Trace Filter Driver.) – C:\Windows\System32\drivers\filetrace.sys [27648] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 03:51:32 A . (.Microsoft Corporation - Floppy Driver.) – C:\Windows\System32\drivers\flpydisk.sys [20480] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 02:42:38 A . (.Microsoft Corporation - Microsoft Filesystem Filter Manager.) – C:\Windows\System32\drivers\fltMgr.sys [192056] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 00:27:57 A . (.Microsoft Corporation - File System Recognizer Driver.) – C:\Windows\System32\drivers\fs_rec.sys [12800] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 02:43:01 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) – C:\Windows\System32\drivers\FWPKCLNT.SYS [101432] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:50:04 A . (.Microsoft Corporation - MS Generic AGPv3.0 Filter for K8/9 Processo.) – C:\Windows\System32\drivers\GAGP30KX.SYS [58984] =>.Microsoft Windows®
                              O58 - SDL:2008/01/18 23:30:49 A . (.Microsoft Corporation - High Definition Audio Bus Driver.) – C:\Windows\System32\drivers\hdaudbus.sys [53760] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 02:36:49 A . (.Microsoft Corporation - High Definition Audio Function Driver.) – C:\Windows\System32\drivers\HdAudio.sys [235520] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 03:55:22 A . (.Microsoft Corporation - Bluetooth Miniport Driver for HID Devices.) – C:\Windows\System32\drivers\hidbth.sys [29184] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 03:55:01 A . (.Microsoft Corporation - Hid Class Library.) – C:\Windows\System32\drivers\hidclass.sys [38912] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 03:55:01 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) – C:\Windows\System32\drivers\hidir.sys [21504] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 03:55:00 A . (.Microsoft Corporation - Hid Parsing Library.) – C:\Windows\System32\drivers\hidparse.sys [25472] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 03:55:01 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) – C:\Windows\System32\drivers\hidusb.sys [12288] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 04:50:10 A . (.Hewlett-Packard Company - Smart Array Storport Driver.) – C:\Windows\System32\drivers\HpCISSs.sys [37480] =>.Microsoft Windows®
                              O58 - SDL:2008/05/08 04:05:18 A . (.Conexant Systems, Inc. - HSF_HWB2 WDM driver.) – C:\Windows\System32\drivers\HSXHWBS2.sys [266752] [Unsigned] =>.Conexant Systems, Inc.
                              O58 - SDL:2008/05/08 04:04:16 A . (.Conexant Systems, Inc. - HSF_CNXT driver.) – C:\Windows\System32\drivers\HSX_CNXT.sys [661504] [Unsigned] =>.Conexant Systems, Inc.
                              O58 - SDL:2008/05/08 04:03:18 A . (.Conexant Systems, Inc. - HSF_DP driver.) – C:\Windows\System32\drivers\HSX_DP.sys [980992] [Unsigned] =>.Conexant Systems, Inc.
                              O58 - SDL:2010/02/20 16:18:40 A . (.Microsoft Corporation - HTTP Protocol Stack.) – C:\Windows\System32\drivers\http.sys [411136] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 04:49:25 A . (.Microsoft Corporation - I2O Utility Filter.) – C:\Windows\System32\drivers\i2omgmt.sys [16488] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:49:49 A . (.Microsoft Corporation - I2O Miniport Driver.) – C:\Windows\System32\drivers\i2omp.sys [27752] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 00:49:18 A . (.Microsoft Corporation - i8042 Port Driver.) – C:\Windows\System32\drivers\i8042prt.sys [54784] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 04:51:25 A . (.Intel Corporation - Intel Matrix Storage Manager driver (base).) – C:\Windows\System32\drivers\iaStorV.sys [232040] =>.Microsoft Windows®
                              O58 - SDL:2008/03/25 15:44:24 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) – C:\Windows\System32\drivers\igdkmd32.sys [2307072] [Unsigned] =>.Intel Corporation
                              O58 - SDL:2006/11/02 04:50:17 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) – C:\Windows\System32\drivers\iirsp.sys [41576] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 02:41:20 A . (.Microsoft Corporation - Intel PCI IDE Driver.) – C:\Windows\System32\drivers\intelide.sys [17976] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 00:27:21 A . (.Microsoft Corporation - Processor Device Driver.) – C:\Windows\System32\drivers\intelppm.sys [41472] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:56:23 A . (.Microsoft Corporation - IP FILTER DRIVER.) – C:\Windows\System32\drivers\ipfltdrv.sys [47616] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 03:42:03 A . (.Microsoft Corporation - WMI IPMI DRIVER.) – C:\Windows\System32\drivers\IPMIDrv.sys [65536] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:56:28 A . (.Microsoft Corporation - IP Network Address Translator.) – C:\Windows\System32\drivers\ipnat.sys [100864] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:55:26 A . (.Microsoft Corporation - IRDA Protocol Driver.) – C:\Windows\System32\drivers\irda.sys [95744] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:55:19 A . (.Microsoft Corporation - Infra-Red Bus Enumerator.) – C:\Windows\System32\drivers\irenum.sys [13312] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 04:50:24 A . (.Microsoft Corporation - PNP ISA Bus Driver.) – C:\Windows\System32\drivers\isapnp.sys [47208] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:50:07 A . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) – C:\Windows\System32\drivers\iteatapi.sys [35944] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:50:09 A . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) – C:\Windows\System32\drivers\iteraid.sys [35944] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 02:41:52 A . (.Microsoft Corporation - Keyboard Class Driver.) – C:\Windows\System32\drivers\kbdclass.sys [35384] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 03:51:12 A . (.Microsoft Corporation - HID Keyboard Filter Driver.) – C:\Windows\System32\drivers\kbdhid.sys [15872] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:49:22 A . (.Microsoft Corporation - Kernel CSA Library.) – C:\Windows\System32\drivers\ks.sys [148992] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2009/06/15 13:20:59 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) – C:\Windows\System32\drivers\ksecdd.sys [439896] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 00:55:03 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) – C:\Windows\System32\drivers\lltdio.sys [47104] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 04:50:04 A . (.LSI Logic - LSI Logic Fusion-MPT FC Driver (StorPort).) – C:\Windows\System32\drivers\lsi_fc.sys [65640] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:50:05 A . (.LSI Logic - LSI Logic Fusion-MPT SAS Driver (StorPort).) – C:\Windows\System32\drivers\lsi_sas.sys [65640] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:50:10 A . (.LSI Logic - LSI Logic Fusion-MPT SCSI Driver (StorPort).) – C:\Windows\System32\drivers\lsi_scsi.sys [65640] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 00:30:36 A . (.Microsoft Corporation - LUA File Virtualization Filter Driver.) – C:\Windows\System32\drivers\luafv.sys [84480] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:49:59 A . (.Microsoft Corporation - Medium changer class driver.) – C:\Windows\System32\drivers\mcd.sys [18944] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/06/19 09:26:58 A . (.Conexant - Diagnostic Interface x86 Driver.) – C:\Windows\System32\drivers\mdmxsdk.sys [12672] [Unsigned] =>.Conexant
                              O58 - SDL:2006/11/02 04:49:53 A . (.LSI Logic Corporation - MEGASAS RAID Controller Driver for Windows.) – C:\Windows\System32\drivers\megasas.sys [28776] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 00:57:16 A . (.Microsoft Corporation - Modem Device Driver.) – C:\Windows\System32\drivers\modem.sys [31744] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:52:19 A . (.Microsoft Corporation - Monitor Driver.) – C:\Windows\System32\drivers\monitor.sys [41984] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 02:41:52 A . (.Microsoft Corporation - Mouse Class Driver.) – C:\Windows\System32\drivers\mouclass.sys [34360] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 03:51:12 A . (.Microsoft Corporation - HID Mouse Filter Driver.) – C:\Windows\System32\drivers\mouhid.sys [15872] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 02:42:28 A . (.Microsoft Corporation - Mount Point Manager.) – C:\Windows\System32\drivers\mountmgr.sys [57400] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:50:16 A . (.Microsoft Corporation - MultiPath Support Bus-Driver.) – C:\Windows\System32\drivers\mpio.sys [78952] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 00:54:46 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) – C:\Windows\System32\drivers\mpsdrv.sys [64000] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 04:49:59 A . (.LSI Logic Corporation - MegaRAID RAID Controller Driver for Windows.) – C:\Windows\System32\drivers\Mraid35x.sys [33384] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 00:28:45 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) – C:\Windows\System32\drivers\mrxdav.sys [110080] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2011/04/29 07:49:35 A . (.Microsoft Corporation - Windows NT SMB Minirdr.) – C:\Windows\System32\drivers\mrxsmb.sys [105984] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2011/07/06 09:56:47 A . (.Microsoft Corporation - Longhorn SMB Downlevel SubRdr.) – C:\Windows\System32\drivers\mrxsmb10.sys [213504] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2011/04/29 07:49:44 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) – C:\Windows\System32\drivers\mrxsmb20.sys [79360] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 04:49:44 A . (.Microsoft Corporation - MS AHCI 1.0 Standard Driver.) – C:\Windows\System32\drivers\msahci.sys [23144] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:50:17 A . (.Microsoft Corporation - Microsoft Device Specific Module.) – C:\Windows\System32\drivers\msdsm.sys [80488] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 00:28:09 A . (.Microsoft Corporation - Mailslot driver.) – C:\Windows\System32\drivers\msfs.sys [22528] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 02:41:14 A . (.Microsoft Corporation - ISA Driver.) – C:\Windows\System32\drivers\msisadrv.sys [16440] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 02:42:35 A . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) – C:\Windows\System32\drivers\msiscsi.sys [181304] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 00:49:20 A . (.Microsoft Corporation - MS KS Server.) – C:\Windows\System32\drivers\mskssrv.sys [8192] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:49:18 A . (.Microsoft Corporation - MS Proxy Clock.) – C:\Windows\System32\drivers\mspclock.sys [5888] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:49:18 A . (.Microsoft Corporation - MS Proxy Quality Manager.) – C:\Windows\System32\drivers\mspqm.sys [5504] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 02:42:29 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) – C:\Windows\System32\drivers\msrpc.sys [163384] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 02:41:49 A . (.Microsoft Corporation - System Management BIOS Driver.) – C:\Windows\System32\drivers\mssmbios.sys [31288] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 00:49:19 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) – C:\Windows\System32\drivers\mstee.sys [6016] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 02:42:14 A . (.Microsoft Corporation - Multiple UNC Provider driver.) – C:\Windows\System32\drivers\mup.sys [49720] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 02:43:31 A . (.Microsoft Corporation - NDIS 6.0 wrapper driver.) – C:\Windows\System32\drivers\ndis.sys [529464] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 00:56:24 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) – C:\Windows\System32\drivers\ndistapi.sys [20992] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:55:40 A . (.Microsoft Corporation - NDIS User mode I/O driver.) – C:\Windows\System32\drivers\ndisuio.sys [16896] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:56:33 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) – C:\Windows\System32\drivers\ndiswan.sys [121344] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:56:28 A . (.Microsoft Corporation - NDIS Proxy.) – C:\Windows\System32\drivers\ndproxy.sys [49664] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:55:45 A . (.Microsoft Corporation - NetBIOS interface driver.) – C:\Windows\System32\drivers\netbios.sys [35840] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:55:35 A . (.Microsoft Corporation - MBT Transport driver.) – C:\Windows\System32\drivers\netbt.sys [184320] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 02:42:44 A . (.Microsoft Corporation - Network I/O Subsystem.) – C:\Windows\System32\drivers\netio.sys [223288] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:50:19 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) – C:\Windows\System32\drivers\nfrd960.sys [45160] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 00:28:10 A . (.Microsoft Corporation - NPFS Driver.) – C:\Windows\System32\drivers\npfs.sys [34816] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:55:50 A . (.Microsoft Corporation - NSI Proxy.) – C:\Windows\System32\drivers\nsiproxy.sys [16384] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 02:43:40 A . (.Microsoft Corporation - NT File System Driver.) – C:\Windows\System32\drivers\ntfs.sys [1081912] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 02:36:50 A . (.N-trig Innovative Technologies - N-trig tablet digitizer in-box driver.) – C:\Windows\System32\drivers\ntrigdigi.sys [20608] [Unsigned] =>.N-trig Innovative Technologies
                              O58 - SDL:2008/01/19 00:49:12 A . (.Microsoft Corporation - NULL Driver.) – C:\Windows\System32\drivers\null.sys [4608] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 04:50:24 A . (.NVIDIA Corporation - NVIDIA® nForce™ RAID Driver.) – C:\Windows\System32\drivers\nvraid.sys [88680] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:50:13 A . (.NVIDIA Corporation - NVIDIA® nForce™ Sata Performance Driver.) – C:\Windows\System32\drivers\nvstor.sys [40040] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:50:40 A . (.Microsoft Corporation - NForce NT AGP Filter.) – C:\Windows\System32\drivers\NV_AGP.SYS [106600] =>.Microsoft Windows®
                              O58 - SDL:2008/05/19 21:07:31 A . (.Microsoft Corporation - NativeWiFi Miniport Driver.) – C:\Windows\System32\drivers\nwifi.sys [148480] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 03:55:16 A . (.Microsoft Corporation - 1394 OpenHCI Port Driver.) – C:\Windows\System32\drivers\ohci1394.sys [62080] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/04/04 20:21:42 A . (.Microsoft Corporation - QoS Packet Scheduler.) – C:\Windows\System32\drivers\pacer.sys [72192] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 03:51:30 A . (.Microsoft Corporation - Parallel Port Driver.) – C:\Windows\System32\drivers\parport.sys [79360] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 02:42:23 A . (.Microsoft Corporation - Partition Management Driver.) – C:\Windows\System32\drivers\partmgr.sys [56376] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 03:51:23 A . (.Microsoft Corporation - VDM Parallel Driver.) – C:\Windows\System32\drivers\parvdm.sys [8704] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 02:42:20 A . (.Microsoft Corporation - NT Plug and Play PCI Enumerator.) – C:\Windows\System32\drivers\pci.sys [151096] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:49:20 A . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) – C:\Windows\System32\drivers\pciide.sys [13416] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 02:42:10 A . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) – C:\Windows\System32\drivers\pciidex.sys [45112] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:51:12 A . (.Microsoft Corporation - PCMCIA Bus Driver.) – C:\Windows\System32\drivers\pcmcia.sys [167528] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:04:35 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) – C:\Windows\System32\drivers\PEAuth.sys [878080] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:53:19 A . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) – C:\Windows\System32\drivers\portcls.sys [167936] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 03:30:18 A . (.Microsoft Corporation - Processor Device Driver.) – C:\Windows\System32\drivers\processr.sys [38400] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 04:51:45 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) – C:\Windows\System32\drivers\ql2300.sys [900712] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:50:35 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) – C:\Windows\System32\drivers\ql40xx.sys [106088] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 00:56:07 A . (.Microsoft Corporation - Microsoft Quality Windows Audio Video Exper.) – C:\Windows\System32\drivers\qwavedrv.sys [31232] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:56:31 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) – C:\Windows\System32\drivers\rasacd.sys [11776] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:56:34 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) – C:\Windows\System32\drivers\rasl2tp.sys [76288] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:56:33 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) – C:\Windows\System32\drivers\raspppoe.sys [41472] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:56:34 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) – C:\Windows\System32\drivers\raspptp.sys [62976] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:56:43 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) – C:\Windows\System32\drivers\rassstp.sys [69120] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:28:37 A . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) – C:\Windows\System32\drivers\rdbss.sys [224768] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 01:01:08 A . (.Microsoft Corporation - RDP Miniport.) – C:\Windows\System32\drivers\RDPCDD.sys [6144] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 04:03:00 A . (.Microsoft Corporation - Microsoft RDP Device redirector.) – C:\Windows\System32\drivers\rdpdr.sys [242688] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 01:01:09 A . (.Microsoft Corporation - RDP Miniport.) – C:\Windows\System32\drivers\RDPENCDD.sys [6144] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 01:01:21 A . (.Microsoft Corporation - RDP Terminal Stack Driver.) – C:\Windows\System32\drivers\rdpwd.sys [181248] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/05/09 20:33:10 A . (.Microsoft Corporation - Reliable Multicast Transport.) – C:\Windows\System32\drivers\rmcast.sys [113664] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:56:07 A . (.Microsoft Corporation - Remote NDIS Miniport.) – C:\Windows\System32\drivers\RNDISMP.sys [33280] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:57:15 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) – C:\Windows\System32\drivers\rootmdm.sys [8192] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:55:03 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) – C:\Windows\System32\drivers\rspndr.sys [60416] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/15 19:19:04 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) – C:\Windows\System32\drivers\RTKVHDA.sys [2047576] =>.Realtek Semiconductor Corp®
                              O58 - SDL:2007/08/03 05:44:00 A . (.Realtek Corporation - Realtek 8101E/8168/8169 NDIS6 32-bit Driver.) – C:\Windows\System32\drivers\Rtlh86.sys [91648] [Unsigned] =>.Realtek Corporation
                              O58 - SDL:2006/11/02 04:50:16 A . (.Microsoft Corporation - SBP-2 Protocol Driver.) – C:\Windows\System32\drivers\sbp2port.sys [76392] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 02:42:10 A . (.Microsoft Corporation - SCSI Port Driver.) – C:\Windows\System32\drivers\scsiport.sys [142904] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 01:37:21 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) – C:\Windows\System32\drivers\secdrv.sys [20480] [Unsigned] =>.Rovi Corporation
                              O58 - SDL:2006/11/02 03:51:25 A . (.Microsoft Corporation - Serial Port Enumerator.) – C:\Windows\System32\drivers\serenum.sys [17920] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 03:51:30 A . (.Microsoft Corporation - Serial Device Driver.) – C:\Windows\System32\drivers\serial.sys [83456] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:49:16 A . (.Microsoft Corporation - Serial Mouse Filter Driver.) – C:\Windows\System32\drivers\sermouse.sys [19968] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2007/11/18 21:08:10 A . (.Microsoft Corporation - Small Form Factor Disk Driver.) – C:\Windows\System32\drivers\sffdisk.sys [13312] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2007/11/18 21:08:10 A . (.Microsoft Corporation - Small Form Factor MMC Protocol Driver.) – C:\Windows\System32\drivers\sffp_mmc.sys [12800] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2007/11/18 21:08:10 A . (.Microsoft Corporation - Small Form Factor SD Protocol Driver.) – C:\Windows\System32\drivers\sffp_sd.sys [12800] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 03:51:40 A . (.Microsoft Corporation - SCSI Floppy Driver.) – C:\Windows\System32\drivers\sfloppy.sys [13312] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 04:49:51 A . (.Microsoft Corporation - SIS NT AGP Filter.) – C:\Windows\System32\drivers\SISAGP.SYS [53352] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:50:10 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) – C:\Windows\System32\drivers\sisraid2.sys [38504] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:50:16 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) – C:\Windows\System32\drivers\sisraid4.sys [71784] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 00:55:27 A . (.Microsoft Corporation - SMB Transport driver.) – C:\Windows\System32\drivers\smb.sys [66560] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:49:30 A . (.Microsoft Corporation - Smard Card Driver Library.) – C:\Windows\System32\drivers\smclib.sys [17408] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2009/01/23 18:52:50 A . (.Acronis - Acronis Snapshot API.) – C:\Windows\System32\drivers\snapman.sys [132224] =>.Acronis, Inc®
                              O58 - SDL:2008/01/19 02:41:30 A . (.Microsoft Corporation - loader for security processor.) – C:\Windows\System32\drivers\spldr.sys [21048] =>.Microsoft Windows®
                              O58 - SDL:2008/01/18 23:10:35 A . (.Microsoft Corporation - security processor.) – C:\Windows\System32\drivers\spsys.sys [681984] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2011/02/18 08:31:24 A . (.Microsoft Corporation - Server driver.) – C:\Windows\System32\drivers\srv.sys [304640] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2011/04/29 07:49:57 A . (.Microsoft Corporation - Smb 2.0 Server driver.) – C:\Windows\System32\drivers\srv2.sys [146432] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2011/04/29 07:49:55 A . (.Microsoft Corporation - Server Network driver.) – C:\Windows\System32\drivers\srvnet.sys [102400] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 02:43:12 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) – C:\Windows\System32\drivers\Storport.sys [123960] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 00:53:16 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) – C:\Windows\System32\drivers\stream.sys [52992] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 02:41:14 A . (.Microsoft Corporation - Plug and Play Software Device Enumerator.) – C:\Windows\System32\drivers\swenum.sys [15288] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:50:05 A . (.LSI Logic - LSI Logic 8XX SCSI Miniport Driver.) – C:\Windows\System32\drivers\symc8xx.sys [35944] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:49:56 A . (.LSI Logic - LSI Logic Hi-Perf SCSI Miniport Driver.) – C:\Windows\System32\drivers\sym_hi.sys [31848] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:50:03 A . (.LSI Logic - LSI Logic Ultra160 SCSI Miniport Driver.) – C:\Windows\System32\drivers\sym_u3.sys [34920] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 00:49:56 A . (.Microsoft Corporation - SCSI Tape Class Driver.) – C:\Windows\System32\drivers\tape.sys [24576] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2010/06/16 10:59:54 A . (.Microsoft Corporation - TCP/IP Driver.) – C:\Windows\System32\drivers\tcpip.sys [898952] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 00:56:07 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) – C:\Windows\System32\drivers\tcpipreg.sys [30208] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:57:10 A . (.Microsoft Corporation - TDI Wrapper.) – C:\Windows\System32\drivers\tdi.sys [20992] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 01:01:07 A . (.Microsoft Corporation - Named Pipe Transport Driver.) – C:\Windows\System32\drivers\tdpipe.sys [17920] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2009/01/23 18:52:48 A . (.Acronis - Acronis Try&Decide and Restore Points Volum.) – C:\Windows\System32\drivers\tdrpman.sys [368480] =>.Acronis, Inc®
                              O58 - SDL:2008/01/19 01:01:08 A . (.Microsoft Corporation - TCP Transport Driver.) – C:\Windows\System32\drivers\tdtcp.sys [29184] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:55:58 A . (.Microsoft Corporation - TDI Translation Driver.) – C:\Windows\System32\drivers\tdx.sys [71680] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 02:42:19 A . (.Microsoft Corporation - Terminal Server Driver.) – C:\Windows\System32\drivers\termdd.sys [54328] =>.Microsoft Windows®
                              O58 - SDL:2009/01/23 18:52:53 A . (.Acronis - Acronis True Image File System Filter.) – C:\Windows\System32\drivers\tifsfilt.sys [44384] =>.Acronis, Inc®
                              O58 - SDL:2009/01/23 18:52:53 A . (.Acronis - Acronis True Image Backup Archive Explorer.) – C:\Windows\System32\drivers\timntr.sys [441760] =>.Acronis, Inc®
                              O58 - SDL:2008/01/19 01:01:15 A . (.Microsoft Corporation - TS Security Filter Driver.) – C:\Windows\System32\drivers\tssecsrv.sys [23552] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:55:41 A . (.Microsoft Corporation - Microsoft Tunnel Interface Driver.) – C:\Windows\System32\drivers\TUNMP.SYS [15360] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2010/02/18 06:52:00 A . (.Microsoft Corporation - Microsoft Tunnel Interface Driver.) – C:\Windows\System32\drivers\tunnel.sys [25088] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 04:49:59 A . (.Microsoft Corporation - MS AGPv3.5 Filter.) – C:\Windows\System32\drivers\UAGP35.SYS [56936] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 00:28:08 A . (.Microsoft Corporation - UDF File System Driver.) – C:\Windows\System32\drivers\udfs.sys [226816] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 04:50:04 A . (.Microsoft Corporation - ULi AGPv3.0 Filter for K8/9 Processor Platf.) – C:\Windows\System32\drivers\ULIAGPKX.SYS [58472] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:51:25 A . (.ULi Electronics Inc. - ULi SATA Controller Driver.) – C:\Windows\System32\drivers\uliahci.sys [235112] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:50:35 A . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win200.) – C:\Windows\System32\drivers\ulsata.sys [98408] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:50:45 A . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) – C:\Windows\System32\drivers\ulsata2.sys [115816] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 00:53:40 A . (.Microsoft Corporation - User-Mode Bus Enumerator.) – C:\Windows\System32\drivers\umbus.sys [34816] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:53:39 A . (.Microsoft Corporation - Generic pass-through driver.) – C:\Windows\System32\drivers\umpass.sys [7680] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:56:08 A . (.Microsoft Corporation - Remote NDIS USB Driver.) – C:\Windows\System32\drivers\usb8023.sys [15872] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:53:23 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) – C:\Windows\System32\drivers\USBCAMD.sys [25728] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:53:23 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) – C:\Windows\System32\drivers\USBCAMD2.sys [25728] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 03:55:11 A . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) – C:\Windows\System32\drivers\usbccgp.sys [73216] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 03:55:09 A . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) – C:\Windows\System32\drivers\usbcir.sys [68608] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:53:17 A . (.Microsoft Corporation - Universal Serial Bus Driver.) – C:\Windows\System32\drivers\usbd.sys [5888] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:53:21 A . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) – C:\Windows\System32\drivers\usbehci.sys [39424] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:53:42 A . (.Microsoft Corporation - Default Hub Driver for USB.) – C:\Windows\System32\drivers\usbhub.sys [194560] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 03:55:05 A . (.Microsoft Corporation - OHCI USB Miniport Driver.) – C:\Windows\System32\drivers\usbohci.sys [19456] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:53:25 A . (.Microsoft Corporation - USB 1.1 & 2.0 Port Driver.) – C:\Windows\System32\drivers\usbport.sys [226304] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 04:14:58 A . (.Microsoft Corporation - USB Printer driver.) – C:\Windows\System32\drivers\usbprint.sys [18944] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:53:22 A . (.Microsoft Corporation - USB Mass Storage Class Driver.) – C:\Windows\System32\drivers\USBSTOR.SYS [55296] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:53:20 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) – C:\Windows\System32\drivers\usbuhci.sys [23552] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:52:06 A . (.Microsoft Corporation - VGA/Super VGA Video Driver.) – C:\Windows\System32\drivers\vga.sys [25088] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 03:53:56 A . (.Microsoft Corporation - VGA/Super VGA Video Driver.) – C:\Windows\System32\drivers\vgapnp.sys [26112] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 04:49:52 A . (.Microsoft Corporation - VIA NT AGP Filter.) – C:\Windows\System32\drivers\VIAAGP.SYS [54376] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 03:30:19 A . (.Microsoft Corporation - Processor Device Driver.) – C:\Windows\System32\drivers\viac7.sys [39424] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 04:49:30 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) – C:\Windows\System32\drivers\viaide.sys [17512] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 00:52:12 A . (.Microsoft Corporation - Video Port Driver.) – C:\Windows\System32\drivers\videoprt.sys [110080] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 02:42:18 A . (.Microsoft Corporation - Volume Manager Driver.) – C:\Windows\System32\drivers\volmgr.sys [52792] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 02:43:03 A . (.Microsoft Corporation - Volume Manager Extension Driver.) – C:\Windows\System32\drivers\volmgrx.sys [294456] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 02:42:48 A . (.Microsoft Corporation - Volume Shadow Copy Driver.) – C:\Windows\System32\drivers\volsnap.sys [227896] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 04:50:41 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR X86-32.) – C:\Windows\System32\drivers\vsmraid.sys [112232] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 03:52:52 A . (.Microsoft Corporation - Wacom Serial Pen Tablet HID Driver.) – C:\Windows\System32\drivers\wacompen.sys [20608] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:56:31 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) – C:\Windows\System32\drivers\wanarp.sys [62464] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/01 15:18:15 A . (.America Online, Inc. - Wan Miniport (ATW).) – C:\Windows\System32\drivers\wanatw4.sys [33588] [Unsigned] =>.America Online, Inc.
                              O58 - SDL:2008/01/19 00:35:30 A . (.Microsoft Corporation - Watchdog Driver.) – C:\Windows\System32\drivers\watchdog.sys [32768] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 04:49:38 A . (.Microsoft Corporation - Microsoft Watchdog Timer Driver.) – C:\Windows\System32\drivers\wd.sys [19560] =>.Microsoft Windows®
                              O58 - SDL:2009/07/14 12:45:07 A . (.Microsoft Corporation - Kernel Mode Driver Framework Runtime.) – C:\Windows\System32\drivers\Wdf01000.sys [445008] =>.Microsoft Windows®
                              O58 - SDL:2009/07/14 12:45:07 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) – C:\Windows\System32\drivers\WdfLdr.sys [38480] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 03:35:03 A . (.Microsoft Corporation - Windows Management Interface for ACPI.) – C:\Windows\System32\drivers\wmiacpi.sys [11264] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 02:41:20 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) – C:\Windows\System32\drivers\wmilib.sys [17976] =>.Microsoft Windows®
                              O58 - SDL:2008/01/19 00:56:49 A . (.Microsoft Corporation - Winsock2 IFS Layer.) – C:\Windows\System32\drivers\ws2ifsl.sys [15872] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:52:50 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) – C:\Windows\System32\drivers\WUDFPf.sys [51200] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 00:53:04 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) – C:\Windows\System32\drivers\WUDFRd.sys [83328] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2007/10/18 06:36:54 A . (.Conexant Systems, Inc. - Modem Audio Device Driver.) – C:\Windows\System32\drivers\XAudio.sys [8704] [Unsigned] =>.Conexant Systems, Inc.
                              O58 - SDL:2006/11/02 02:09:42 A . (…) – C:\Windows\System32\ANSI.SYS [9029] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2008/01/19 02:42:58 A . (.Microsoft Corporation - Common Log File System Driver.) – C:\Windows\System32\clfs.sys [247352] =>.Microsoft Windows®
                              O58 - SDL:2006/11/02 02:09:45 A . (…) – C:\Windows\System32\country.sys [27097] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 02:09:41 A . (…) – C:\Windows\System32\HIMEM.SYS [4768] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 02:09:44 A . (…) – C:\Windows\System32\KEY01.SYS [42809] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 02:09:44 A . (…) – C:\Windows\System32\KEYBOARD.SYS [42537] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 02:09:29 A . (…) – C:\Windows\System32\NTDOS.SYS [27866] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 02:09:35 A . (…) – C:\Windows\System32\NTDOS404.SYS [29146] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 02:09:38 A . (…) – C:\Windows\System32\NTDOS411.SYS [29370] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 02:09:40 A . (…) – C:\Windows\System32\NTDOS412.SYS [29274] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 02:09:31 A . (…) – C:\Windows\System32\NTDOS804.SYS [29146] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 02:09:20 A . (…) – C:\Windows\System32\NTIO.SYS [33952] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 02:09:23 A . (…) – C:\Windows\System32\NTIO404.SYS [34672] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 02:09:24 A . (…) – C:\Windows\System32\NTIO411.SYS [35776] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 02:09:26 A . (…) – C:\Windows\System32\NTIO412.SYS [35536] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2006/11/02 02:09:22 A . (…) – C:\Windows\System32\NTIO804.SYS [34672] [Unsigned] =>.Microsoft Corporation
                              O58 - SDL:2011/06/02 07:59:29 A . (.Microsoft Corporation - Multi-User Win32 Driver.) – C:\Windows\System32\win32k.sys [2042368] [Unsigned] =>.Microsoft Corporation
                              
                              —\ Last modified or created user files (1) - 214s
                              O61 - LFC: 2022/12/16 09:21:31 A . (. Malwarebytes.) – C:\Users\John\Desktop\downloads\mb-support-1.8.7.918.exe [13471344] [Unsigned]
                              
                              —\ File Associations Shell Spawning (10) - 1s
                              O67 - Shell Spawning: <.bat> [HKLM..\open\Command] (…) – “%1” %* =>.Default.Value
                              O67 - Shell Spawning: <.cpl> [HKLM..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) – C:\WINDOWS\System32\control.exe [Unsigned] =>.Microsoft Corporation
                              O67 - Shell Spawning: <.cmd> [HKLM..\open\Command] (…) – “%1” %* =>.Default.Value
                              O67 - Shell Spawning: <.com> [HKLM..\open\Command] (…) – “%1” %* =>.Default.Value
                              O67 - Shell Spawning: <.evt> [HKLM..\open\Command] (.Microsoft Corporation - Event Viewer Snapin Launcher.) – C:\WINDOWS\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation
                              O67 - Shell Spawning: <.exe> [HKLM..\open\Command] (…) – “%1” %* =>.Default.Value
                              O67 - Shell Spawning: <.html> [HKLM..\open\Command] (.Google Inc. - Google Chrome.) – C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
                              O67 - Shell Spawning: <.js> [HKLM..\open\Command] (…) – C:\Windows\System32\WScript.exe “%1” %* =>.Default.Value
                              O67 - Shell Spawning: <.reg> [HKLM..\open\Command] (.Microsoft Corporation - Registry Editor.) – C:\WINDOWS\regedit.exe [Unsigned] =>.Microsoft Corporation
                              O67 - Shell Spawning: <.scr> [HKLM..\open\Command] (…) – “%1” /S =>.Default.Value
                              
                              —\ Start Menu Internet (12) - 1s
                              O68 - StartMenuInternet: <FIREFOX.EXE> [HKLM..\Shell\open\Command] (.Mozilla Corporation - Firefox.) – C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
                              O68 - StartMenuInternet: [HKLM..\Shell\open\Command] (.Google Inc. - Google Chrome.) – C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
                              O68 - StartMenuInternet: <IEXPLORE.EXE> [HKLM..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) – C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
                              O68 - StartMenuInternet: <FIREFOX.EXE> [HKLM..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) – C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
                              O68 - StartMenuInternet: [HKLM..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) – C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc.
                              O68 - StartMenuInternet: <IEXPLORE.EXE> [HKLM..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) – C:\WINDOWS\System32\ie4uinit.exe =>.Microsoft Corporation
                              O68 - StartMenuInternet: <FIREFOX.EXE> [HKLM..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) – C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
                              O68 - StartMenuInternet: [HKLM..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) – C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc.
                              O68 - StartMenuInternet: <IEXPLORE.EXE> [HKLM..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) – C:\WINDOWS\System32\ie4uinit.exe =>.Microsoft Corporation
                              O68 - StartMenuInternet: <FIREFOX.EXE> [HKLM..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) – C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
                              O68 - StartMenuInternet: [HKLM..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) – C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc.
                              O68 - StartMenuInternet: <IEXPLORE.EXE> [HKLM..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) – C:\WINDOWS\System32\ie4uinit.exe =>.Microsoft Corporation
                              
                              —\ Search Browser Infection (8) - 11s
                              O69 - SBI: SearchScopes [HKCU]{0B4A10D1-FBD6-451d-BFDA-F03252B05984} - (AIM Search) - http://slirsredirect.search.aol.com/ =>.America On Line Inc.
                              O69 - SBI: SearchScopes [HKCU]{55C1D719-5274-4281-A484-D799AE2BA7E5} - (Yahoo! Search) - http://search.yahoo.com/ =>.Yahoo! Inc.
                              O69 - SBI: SearchScopes [HKCU]{8f6ecace-7280-4a70-834a-38c6fca77ee7} - (AOL Search) - http://slirsredirect.search.aol.com/ =>.America On Line Inc.
                              O69 - SBI: SearchScopes [HKCU]{9CB96984-43C3-4D44-90EF-01466EFCF7BB} [DefaultScope] - (Yahoo! (Avast)) - http://search.yahoo.com/ =>.Yahoo! Inc.
                              O69 - SBI: SearchScopes [HKLM]{0B4A10D1-FBD6-451d-BFDA-F03252B05984} - (AIM Search) - http://slirsredirect.search.aol.com/ =>.America On Line Inc.
                              O69 - SBI: SearchScopes [HKLM]{55C1D719-5274-4281-A484-D799AE2BA7E5} - (Yahoo! Search) - http://search.yahoo.com/ =>.Yahoo! Inc.
                              O69 - SBI: SearchScopes [HKLM]{6FFC5051-438A-4405-9F3C-54DFE9532F52} - (Ask.com) - http://www.ask.com/ =>Toolbar.Ask
                              O69 - SBI: SearchScopes [HKLM]{9CB96984-43C3-4D44-90EF-01466EFCF7BB} [DefaultScope] - (Yahoo! (Avast)) - http://search.yahoo.com/ =>.Yahoo! Inc.
                              
                              —\ Search Svchost Services (31) - 1s
                              O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Application Experience Service.) – C:\WINDOWS\System32\aelupsvc.dll [24576] [Unsigned] =>.Microsoft Corporation
                              O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Problem Reports and Solutions.) – C:\WINDOWS\System32\wercplsupport.dll [62976] [Unsigned] =>.Microsoft Corporation
                              O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Windows Shell Services Dll.) – C:\WINDOWS\System32\shsvcs.dll [247808] [Unsigned] =>.Microsoft Corporation
                              O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) – C:\WINDOWS\System32\certprop.dll [40448] [Unsigned] =>.Microsoft Corporation
                              O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) – C:\WINDOWS\System32\certprop.dll [40448] [Unsigned] =>.Microsoft Corporation
                              O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - Server Service DLL.) – C:\WINDOWS\System32\srvsvc.dll [125952] [Unsigned] =>.Microsoft Corporation
                              O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Group Policy Client.) – C:\WINDOWS\System32\gpsvc.dll [574464] [Unsigned] =>.Microsoft Corporation
                              O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - IKE extension.) – C:\WINDOWS\System32\IKEEXT.DLL [438272] [Unsigned] =>.Microsoft Corporation
                              O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) – C:\WINDOWS\System32\audiosrv.dll [314368] [Unsigned] =>.Microsoft Corporation
                              O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) – C:\WINDOWS\System32\rasauto.dll [90624] [Unsigned] =>.Microsoft Corporation
                              O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) – C:\WINDOWS\System32\rasmans.dll [260608] [Unsigned] =>.Microsoft Corporation
                              O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) – C:\WINDOWS\System32\mprdim.dll [68608] [Unsigned] =>.Microsoft Corporation
                              O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) – C:\WINDOWS\System32\Sens.dll [47104] [Unsigned] =>.Microsoft Corporation
                              O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Microsoft NAT Helper Components.) – C:\WINDOWS\System32\ipnathlp.dll [288256] [Unsigned] =>.Microsoft Corporation
                              O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Microsoft® Windows™ Telephony Server.) – C:\WINDOWS\System32\tapisrv.dll [242688] [Unsigned] =>.Microsoft Corporation
                              O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Terminal Server Remote Connections Manager.) – C:\WINDOWS\System32\termsrv.dll [448512] [Unsigned] =>.Microsoft Corporation
                              O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) – C:\WINDOWS\System32\wuaueng.dll [1929952] =>.Microsoft Windows Component Publisher®
                              O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) – C:\WINDOWS\System32\qmgr.dll [758272] [Unsigned] =>.Microsoft Corporation
                              O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) – C:\WINDOWS\System32\shsvcs.dll [247808] [Unsigned] =>.Microsoft Corporation
                              O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) – C:\WINDOWS\System32\iphlpsvc.dll [190464] [Unsigned] =>.Microsoft Corporation
                              O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - Secondary Logon Service DLL.) – C:\WINDOWS\System32\seclogon.dll [19968] [Unsigned] =>.Microsoft Corporation
                              O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Application Information Service.) – C:\WINDOWS\System32\appinfo.dll [33280] [Unsigned] =>.Microsoft Corporation
                              O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - iSCSI Discovery service.) – C:\WINDOWS\System32\iscsiexe.dll [111616] [Unsigned] =>.Microsoft Corporation
                              O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Multimedia Class Scheduler Service.) – C:\WINDOWS\System32\mmcss.dll [45056] [Unsigned] =>.Microsoft Corporation
                              O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) – C:\WINDOWS\System32\profsvc.dll [153600] [Unsigned] =>.Microsoft Corporation
                              O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Microsoft EAPHost service.) – C:\WINDOWS\System32\eapsvc.dll [57344] [Unsigned] =>.Microsoft Corporation
                              O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) – C:\WINDOWS\System32\wbem\WMIsvc.dll [161792] [Unsigned] =>.Microsoft Corporation
                              O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Task Scheduler Service.) – C:\WINDOWS\System32\schedsvc.dll [603648] [Unsigned] =>.Microsoft Corporation
                              O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Terminal Services Configuration service.) – C:\WINDOWS\System32\SessEnv.dll [84992] [Unsigned] =>.Microsoft Corporation
                              O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - Computer Browser Service DLL.) – C:\WINDOWS\System32\browser.dll [81920] [Unsigned] =>.Microsoft Corporation
                              O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Key Management Service.) – C:\WINDOWS\System32\KMSVC.DLL [68096] [Unsigned] =>.Microsoft Corporation
                              
                              —\ Firewall Active Exception List (24) - 4s
                              O87 - FAEL: “{E8483AA0-B6A2-4E65-8E1A-487AF1D60F96}” [In-None-P6-TRUE] .(.CyberLink Corp. - PowerDirector.) – c:\Program Files\Cyberlink\PowerDirector\PDR.EXE =>.CyberLink®
                              O87 - FAEL: “{FF70F5DB-A77F-4995-82F4-F392FE088383}” [In-None-P6-TRUE] .(…) – C:\Program Files\earthlink totalaccess\TaskPanl.exe {5B2FD02E944AD78D4D06F59814E14714}.
                              O87 - FAEL: “{7CA489F2-040E-4A14-B3CE-841374A39D14}” [In-None-P17-TRUE] .(…) – C:\Program Files\earthlink totalaccess\TaskPanl.exe {5B2FD02E944AD78D4D06F59814E14714}.
                              O87 - FAEL: “{6C9B8201-7929-4920-92D0-FBF369AB8F02}” [In-None-P6-TRUE] .(…) – C:\Program Files\earthlink totalaccess\TaskPanl.exe {5B2FD02E944AD78D4D06F59814E14714}.
                              O87 - FAEL: “{793C14E1-E9F1-43A0-81E3-5990CECA9272}” [In-None-P17-TRUE] .(…) – C:\Program Files\earthlink totalaccess\TaskPanl.exe {5B2FD02E944AD78D4D06F59814E14714}.
                              O87 - FAEL: “{409E208E-3A8E-4C91-A4EA-CF32EC792BE1}” [In-None-P6-TRUE] .(…) – C:\Program Files\earthlink totalaccess\TaskPanl.exe {5B2FD02E944AD78D4D06F59814E14714}.
                              O87 - FAEL: “{32E8602A-B424-4804-8652-6DD5FCE87884}” [In-None-P17-TRUE] .(…) – C:\Program Files\earthlink totalaccess\TaskPanl.exe {5B2FD02E944AD78D4D06F59814E14714}.
                              O87 - FAEL: “{D2DFA983-1E8D-460E-89CB-0352F1AB2BA8}” [In-None-P6-TRUE] .(.AOL Inc. - AOL Loader.) – C:\Program Files\Common Files\aol\Loader\aolload.exe =>.AOL Inc.®
                              O87 - FAEL: “{32AFA6F4-899C-4C3C-9130-749E79257543}” [In-None-P17-TRUE] .(.AOL Inc. - AOL Loader.) – C:\Program Files\Common Files\aol\Loader\aolload.exe =>.AOL Inc.®
                              O87 - FAEL: “{B862DD3D-630A-478D-9901-8D589C31EB1C}” [In-None-P6-TRUE] .(.AOL Inc. - AOL Loader.) – C:\Program Files\Common Files\aol\Loader\aolload.exe =>.AOL Inc.®
                              O87 - FAEL: “{18954565-0C09-4879-942F-5DD029B03AB8}” [In-None-P17-TRUE] .(.AOL Inc. - AOL Loader.) – C:\Program Files\Common Files\aol\Loader\aolload.exe =>.AOL Inc.®
                              O87 - FAEL: “{60D32775-8659-4D06-B54C-3B6171048679}” [In-None-P6-TRUE] .(…) – C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe [Unsigned] (.not file.) =>.SUP.Orphan
                              O87 - FAEL: “{8B1743DE-136A-4409-90EC-8BBACEFEAF0A}” [In-None-P17-TRUE] .(…) – C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe [Unsigned] (.not file.) =>.SUP.Orphan
                              O87 - FAEL: “{4F87DBE6-6356-42F1-824B-BDCF6BDFBB9F}” [In-None-P6-TRUE] .(.AOL Inc. - AOL Instant Messenger.) – C:\Program Files\AIM\aim.exe =>.AOL Inc.®
                              O87 - FAEL: “{98E15AFD-DED9-4FE8-B9CF-D50DE8A89A1E}” [In-None-P17-TRUE] .(.AOL Inc. - AOL Instant Messenger.) – C:\Program Files\AIM\aim.exe =>.AOL Inc.®
                              O87 - FAEL: “{2F1C4541-2B64-4B4A-8EA8-0F3ED7B890C0}” [In-None-P6-TRUE] .(.Mozilla Corporation - Firefox.) – C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
                              O87 - FAEL: “{6D78CD1A-7F6A-4A87-A8AE-46A55023C5E5}” [In-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) – C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
                              O87 - FAEL: “TCP Query User{A5E60A3B-4561-424E-8A18-174F42E21003}C:\program files\mozilla firefox\firefox.exe” [In-None-P6-TRUE] .(.Mozilla Corporation - Firefox.) – C:\program files\mozilla firefox\firefox.exe =>.Mozilla Corporation®
                              O87 - FAEL: “UDP Query User{EB8C3515-5A35-4A71-A72B-F5E61F7E2008}C:\program files\mozilla firefox\firefox.exe” [In-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) – C:\program files\mozilla firefox\firefox.exe =>.Mozilla Corporation®
                              O87 - FAEL: “{2F134E04-97DC-49A8-B255-2B36AE9A218C}” [In-None-P6-TRUE] .(.Mozilla Corporation - Firefox.) – C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
                              O87 - FAEL: “{65921389-A4FF-4AF2-B28E-9A38485FE263}” [In-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) – C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
                              O87 - FAEL: “{9DCEE7C7-A0AC-48AD-83A9-C1055C5ABA0D}” [In-None-P17-TRUE] .(.Google Inc. - Google Chrome.) – C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
                              O87 - FAEL: “{7CFFBEFF-43DB-4A1C-8833-27560307053A}” [In-None-P6-TRUE] .(.AVAST Software - Avast Emergency Update.) – C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe =>.AVAST Software s.r.o.®
                              O87 - FAEL: “{2F3596B0-FED9-43BD-A9A0-AD47A640FA32}” [In-None-P17-TRUE] .(.AVAST Software - Avast Emergency Update.) – C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe =>.AVAST Software s.r.o.®
                              
                              —\ Product Upgrade Codes (28) - 1s
                              O90 - PUC: “00002109020090400000000000F01FEC” [HKLM] . (.Compatibility Pack for the 2007 Office system.) – C:\Windows\Installer{90120000-0020-0409-0000-0000000FF1CE}\O12ConvIcon.exe
                              O90 - PUC: “00002159FA0090400000000000F01FEC” [HKLM] . (.Microsoft Office PowerPoint Viewer 2007 (English).) – C:\Windows\Installer{95120000-00AF-0409-0000-0000000FF1CE}\ppvwicon.exe,0 =>.Microsoft Corporation
                              O90 - PUC: “06367A21E88372B4BABE5DCF3587DDA2” [HKLM] . (.HPPhotoSmartPhotobookWebPack1.) =>.EBP Informatique
                              O90 - PUC: “06AF0DABFC901144EAA62C48C48821AF” [HKLM] . (.HP Photosmart Essential 2.5.) – C:\Windows\Installer{BAD0FA60-09CF-4411-AE6A-C2844C8812FA}\ARPPRODUCTICON.exe =>.Hewlett-Packard
                              O90 - PUC: “098990BCF5D15D11E99A0005AB3E711E” [HKLM] . (.PowerDirector.) – c:\Windows\Installer{CB099890-1D5F-11D5-9EA9-0050BAE317E1}\ARPPRODUCTICON.exe =>.CyberLink Corporation
                              O90 - PUC: “0DC8CB51B56A0D742ADD098A4295F08A” [HKLM] . (.Microsoft Works.) – C:\Windows\Installer{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}\MSWorks.exe =>.Microsoft Corporation
                              O90 - PUC: “1095B92072F1743499328ECA8C5FE451” [HKLM] . (.Snapfish Picture Mover.) – C:\Windows\Installer{029B5901-1F27-4347-9923-E8ACC8F54E15}\ARPPRODUCTICON.exe
                              O90 - PUC: “24E34A3785639DD45815AFDC3A365283” [HKLM] . (.HP Advisor.) – C:\Windows\Installer{73A43E42-3658-4DD9-8551-FACDA3632538}\ARPPRODUCTICON.exe =>.Hewlett-Packard
                              O90 - PUC: “26DDC2EC4210AC63483DF9D4FCC5B59D” [HKLM] . (.Microsoft .NET Framework 3.5 SP1.) =>.Microsoft Corporation
                              O90 - PUC: “4EA42A62D9304AC4784BF2381208190F” [HKLM] . (.Java 8 Update 91.) – C:\Program Files\Java\jre1.8.0_91\bin\javaws.exe =>.Sun Microsystems
                              O90 - PUC: “53A4D966B6414134981FA13C7D8B3876” [HKLM] . (.Hewlett-Packard Asset Agent for Health Check.) =>.Hewlett-Packard
                              O90 - PUC: “5C1093C35543A0E32A41B090A305076A” [HKLM] . (.Microsoft .NET Framework 4 Client Profile.) =>.Microsoft Corporation
                              O90 - PUC: “68AB67CA7DA73301B744AA0100000010” [HKLM] . (.Adobe Reader X (10.1.16).) – C:\Windows\Installer{AC76BA86-7AD7-1033-7B44-AA1000000001}\SC_Reader.ico =>.Adobe Inc.
                              O90 - PUC: “93BAD29AC2E44034A96BCB446EB8552E” [HKLM] . (.Avast Update Helper.) =>.Avast Software s.r.o
                              O90 - PUC: “990BFB432B7059E46A3737266D80662A” [HKLM] . (.PSSWCORE.) – C:\Windows\Installer{34BFB099-07B2-4E95-A673-7362D60866A2}\ARPPRODUCTICON.exe
                              O90 - PUC: “9DCFCAC4B17FA314D85FA146915DDC6C” [HKLM] . (.Cards_Calendar_OrderGift_DoMorePlugout.)
                              O90 - PUC: “A91FFE89BA03B4E49B340FB6C136BE8F” [HKLM] . (.Visual Studio 2012 x86 Redistributables.) =>.bl.org
                              O90 - PUC: “AA73C45227B60034486F898A429181E7” [HKLM] . (.Hewlett-Packard Active Check.) =>.Hewlett-Packard
                              O90 - PUC: “B1DBDC44BF9820E43891A2C455F066A4” [HKLM] . (.RTC Client API v1.2.)
                              O90 - PUC: “b25099274a207264182f8181add555d0” [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org
                              O90 - PUC: “C29201F7091A67146A561ADE4387FD68” [HKLM] . (.LightScribe System Software.) – C:\Windows\Installer{7F10292C-A190-4176-A665-A1ED3478DF86}\ARPPRODUCTICON.exe =>.Hewlett-Packard
                              O90 - PUC: “C7E6ABE36FD3EA848BB7C4FA2B1C3C7F” [HKLM] . (.LightScribe Template Labeler.) – C:\Windows\Installer{3EBA6E7C-3DF6-48AE-B87B-4CAFB2C1C3F7}\ARPPRODUCTICON.exe =>.Hewlett-Packard
                              O90 - PUC: “CFD2C1F142D260E3CB8B271543DA9F98” [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148.) =>.bl.org
                              O90 - PUC: “E77CD80EA90D63e408766DBDCB5C8FCD” [HKLM] . (.VideoToolkit01.)
                              O90 - PUC: “F077ABD937FB93D41BFD06539D2586CF” [HKLM] . (.HP Customer Feedback.) =>.Hewlett-Packard
                              O90 - PUC: “F60730A4A66673047777F5728467D401” [HKLM] . (.Java Auto Updater.) =>.Sun Microsystems
                              O90 - PUC: “F633BB1185E077948B662FF43A4316B6” [HKLM] . (.HP Active Support Library.) – c:\Windows\Installer{11BB336F-0E58-4977-B866-F24FA334616B}\ARPPRODUCTICON.exe =>.Hewlett-Packard
                              O90 - PUC: “F942F94A19C0F79468FD2B85E5E8677B” [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org
                              
                              —\ Windows Installer Scan (24) - 10s
                              [MD5.85029662BA6B6FFFB6C84759A9C3274D] [WIS][2012/08/14 19:16:21] (.Oracle - Java™ SE Runtime Environment 7.0.) – C:\Windows\Installer\130e10.msi [17379840] =>.Oracle
                              [MD5.0217C79886B2686F99B6D364082D678E] [WIS][2016/05/10 20:55:34] (.Oracle Corporation - Java SE Runtime Environment 8 Update 91.) – C:\Windows\Installer\147c27.msi [1306624] =>.Oracle Corporation
                              [MD5.C87B804D90D3A0637CDC3D964F247FD2] [WIS][2016/05/10 20:57:30] (.Oracle Corporation - Java Auto Updater.) – C:\Windows\Installer\147c2d.msi [231424] =>.Oracle Corporation
                              [MD5.E3A7FC9BE2D9592B823C386172F22F1B] [WIS][2013/10/17 06:52:24] (.Adobe Systems Incorporated - ADOBER~1.0Adobe Reader X (10.0.1).) – C:\Windows\Installer\16827a.msi [2295808] =>.Adobe Systems Incorporated
                              [MD5.3B69E8EF444F48E137C86014D2680A14] [WIS][2016/10/18 21:11:40] (.AVG Technologies - AVG.) – C:\Windows\Installer\1893ca9.msi [6787072] =>.AVG Technologies
                              [MD5.89E92309B078B34480D59E161A3129CE] [WIS][2007/11/18 21:46:02] (.Hewlett-Packard - HP Active Support Library.) – C:\Windows\Installer\2a517.msi [398848] =>.Hewlett-Packard
                              [MD5.DA2300999D6284E794F7B8693C818562] [WIS][2007/11/18 21:46:04] (.Hewlett-Packard - Hewlett-Packard Asset Agent.) – C:\Windows\Installer\2a51d.msi [180224] =>.Hewlett-Packard
                              [MD5.8D53DEA3E20161227F791E5C95D987BB] [WIS][2007/11/18 21:46:05] (.Hewlett-Packard - HP ActiveCheck Local Mode.) – C:\Windows\Installer\2a523.msi [280064] =>.Hewlett-Packard
                              [MD5.F43816F713EE7C02A533D588D8E3475F] [WIS][2007/11/18 21:48:57] (..) – C:\Windows\Installer\2a52a.msi [988160]
                              [MD5.F7AFDB93688145574098F87FCB5A7DAA] [WIS][2007/11/18 21:49:04] (. - .) – C:\Windows\Installer\2a530.msi [510976]
                              [MD5.28AB9AE1AE6D4F5E0CE8DD7830716054] [WIS][2007/11/18 21:49:07] (. - .) – C:\Windows\Installer\2a536.msi [312320]
                              [MD5.3E2436C058B31DC3E6DCB3DF4316CA7D] [WIS][2007/11/18 21:49:08] (. - .) – C:\Windows\Installer\2a53c.msi [211968]
                              [MD5.F0D360FCED7CABC2B40C9B73F41AED36] [WIS][2007/11/18 21:49:09] (. - Cards_Calendar_OrderGift_DoMorePlugout.) – C:\Windows\Installer\2a543.msi [623616]
                              [MD5.EAAF74C5B8798462667566D2841E6EA3] [WIS][2007/11/18 21:55:16] (.CyberLink Corp..) – C:\Windows\Installer\2a547.msi [6644224] =>.CyberLink Corp.
                              [MD5.A8C8D7D7B4BD4B468670C3588066D108] [WIS][2007/11/18 21:58:22] (.LightScribe - LightScribe Template Labeler.) – C:\Windows\Installer\2a554.msi [2616832] =>.LightScribe
                              [MD5.C122EE33DD8C73C850ED8F9526128CFB] [WIS][2007/11/18 22:00:36] (.InstallShield Software Corporation.) – C:\Windows\Installer\2a564.msi [820736] =>.InstallShield Software Corporation
                              [MD5.A1461B9FF5763039B60ADF1E69BAECC9] [WIS][2007/11/18 22:03:50] (.Hewlett-Packard.) – C:\Windows\Installer\2a585.msi [321024] =>.Hewlett-Packard
                              [MD5.7C255DAD4E42E8D5D964C7CB4103488B] [WIS][2010/10/21 05:06:28] (.Hewlett-Packard - HP Advisor.) – C:\Windows\Installer\2bbb02.msi [5035008] =>.Hewlett-Packard
                              [MD5.639F7B0C1218A39B6B5E36BE08111D42] [WIS][2018/06/21 06:25:18] (.AVAST Software - Avast Update Helper.) – C:\Windows\Installer\8ef03.msi [16896] =>.AVAST Software
                              [MD5.AA3113833CF15E490182454C1B2E929A] [WIS][2016/07/08 22:45:27] (.AVG Technologies CZ, s.r.o. - Visual Studio 2012 x86 Redistributables.) – C:\Windows\Installer\b06a7.msi [27136] =>.AVG Technologies CZ, s.r.o.
                              [MD5.4E9A435CA621220FFCB1A2C5158C0874] [WIS][2009/07/29 20:30:34] (.Hewlett-Packard Company - LS_HSI.) – C:\Windows\Installer\e9ab17.msi [1809920] =>.Hewlett-Packard Company
                              [MD5.39A573338A47038E9AC75E7D257BDC48] [WIS][2012/07/27 20:20:54] (.Adobe Systems, Incorporated.) – C:\Windows\Installer\16827b.msp [13123584] =>.SUP.Obsolete.Adobe
                              [MD5.765E81508D7A084A970E249E22D754F3] [WIS][2015/10/12 23:18:03] (.Adobe Systems, Incorporated.) – C:\Windows\Installer\70de7.msp [20824064] =>.SUP.Obsolete.Adobe
                              
                              —\ FEATURE CONTROL. (108) - 0s
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:presentationHost.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:msn6.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:ehExtHost.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:presentationHost.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:presentationHost.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:presentationHost.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:presentationHost.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:ehExtHost.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:presentationHost.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:presentationHost.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:presentationHost.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HIGH_CONTRAST_BACKGROUND_IMAGES]:sidebar.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:ehExtHost.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:presentationHost.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:ehExtHost.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:ehExtHost.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:eek:utlook.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:ehExtHost.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:ehExtHost.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:presentationHost.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:presentationHost.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:presentationHost.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:ehExtHost.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:presentationHost.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:presentationHost.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:eek:utlook.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:ehExtHost.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:ehExtHost.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WARN_ON_SEC_CERT_REV_FAILED]:mbam.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn6.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:ehExtHost.exe =>.Legitimate
                              [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:presentationHost.exe =>.Legitimate
                              
                              —\ Observer Of Events (50) - 58s
                              
                              Application.Warning: Microsoft-Windows-CAPI2 (1817)
                              ~Numéro: 333449
                              ~Date: 12/19/2022 10:53:26 AM
                              ~ID: 6
                              ~Description: 5060
                              ~Suggestion: Aucune
                              
                              Application.Warning: profsvc (24)
                              ~Numéro: 333357
                              ~Date: 12/18/2022 10:08:51 AM
                              ~ID: 1530
                              ~Description: Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 2 user registry handl
                              
                              Application.Error: Windows Search Service (286)
                              ~Numéro: 333296
                              ~Date: 12/18/2022 04:40:43 AM
                              ~ID: 3013
                              ~Description: The entry <%2> in the hash map cannot be updated.Context: Application, SystemIndex CatalogDetails: A device attached to the system is not functioning. (0x8007001f)
                              
                              Application.Error: Application Error (17)
                              ~Numéro: 333185
                              ~Date: 12/16/2022 10:05:29 PM
                              ~ID: 1000
                              ~Description: Faulting application %1, version %2, time stamp 0x%3, faulting module %4, version %5, time stamp 0x%6, exception code 0x%7, fault offset 0x%8, process id 0x%9, application start time 0x%10.
                              ~Suggestion: Réparer ou réinstaller l’application.
                              
                              Application.Warning: Microsoft-Windows-RestartManager (1)
                              ~Numéro: 332857
                              ~Date: 12/15/2022 10:33:40 PM
                              ~ID: 10010
                              ~Description: 12088C:\Program Files\Crystal Security\Crystal Security.exeCrystal Security001671088651
                              ~Suggestion: Redémarrer manuellement l’application ou le service
                              
                              Application.Error: VSS (3)
                              ~Numéro: 332787
                              ~Date: 12/15/2022 09:39:32 PM
                              ~ID: 8194
                              ~Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface. hr = %1. This is often caused by incorrect security settings in either the writer or requestor process. Operation: Gathering Writer DataContext: Wr
                              ~Suggestion: Localiser les enregistreurs VSS qui se trompent et changer le compte sous lequel ils s’exécutent du service réseau au système local. Ajuster les autorisations d’activation du service COM par défaut
                              
                              Application.Error: Application Hang (31)
                              ~Numéro: 332511
                              ~Date: 12/14/2022 12:36:09 PM
                              ~ID: 1002
                              ~Description: The program %1 version %2 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Problem Reports and Solutions control panel. Process ID: dbc Start Time: 01d90fe11d
                              ~Suggestion: Essayer les commandes suivantes ipconfig /release et ipconfig / renew.
                              
                              Application.Warning: ESENT (1)
                              ~Numéro: 331654
                              ~Date: 12/03/2022 04:29:22 AM
                              ~ID: 507
                              ~Description: %1 (%2) %3A request to read from the file “%4” at offset %5 for %6 bytes succeeded, but took an abnormally long time (%7 seconds) to be serviced by the OS. This problem is likely due to faulty hardware. Please contact your hardware vendor for further
                              
                              Application.Warning: Wlclntfy (3)
                              ~Numéro: 331285
                              ~Date: 11/30/2022 08:15:41 PM
                              ~ID: 6000
                              ~Description: The winlogon notification subscriber <%1> was unavailable to handle a notification event.
                              
                              —\ Additional Scan (O88) (1018) - 58s
                              HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall{209CDA54-D390-46A2-A97C-7BF61734418D} =>PUP.Optional.WeatherBug
                              HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall{209CDA54-D390-46A2-A97C-7BF61734418D} =>PUP.Optional.WeatherBug
                              C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics =>SUP.Optional.Auslogics
                              C:\Users\John\AppData\Roaming\Auslogics =>SUP.Optional.Auslogics
                              HKLM\Software\Classes*\ShellEx\ContextMenuHandlers\BriefcaseMenu =>.SUP.Orphan
                              HKLM\Software\Classes\CLSID{85BBD920-42A0-1069-A2E4-08002B30309D} =>.SUP.Orphan
                              HKLM\Software\Wow6432Node\Classes\CLSID{85BBD920-42A0-1069-A2E4-08002B30309D} =>.SUP.Orphan
                              HKLM\Software\Classes*\ShellEx\ContextMenuHandlers\Sharing =>.SUP.Orphan
                              HKLM\Software\Classes\CLSID{f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} =>.SUP.Orphan
                              HKLM\Software\Wow6432Node\Classes\CLSID{f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} =>.SUP.Orphan
                              HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\Sharing =>.SUP.Orphan
                              HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\BriefcaseMenu =>.SUP.Orphan
                              HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\Sharing =>.SUP.Orphan
                              HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes{6FFC5051-438A-4405-9F3C-54DFE9532F52} =>Toolbar.Ask
                              C:\Windows\Installer\16827b.msp =>.SUP.Obsolete.Adobe
                              C:\Windows\Installer\70de7.msp =>.SUP.Obsolete.Adobe
                              C:\Users\John\AppData\Local\Temp\tmp-40s.xpi =>.SUP.Temporary.Firefox
                              C:\Users\John\AppData\Local\Temp\tmp-pzj.xpi =>.SUP.Temporary.Firefox
                              C:\Users\John\AppData\Local\Temp\tmp-rwm.xpi =>.SUP.Temporary.Firefox
                              C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\001 =>.SUP.Temporary.Chrome
                              C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\002 =>.SUP.Temporary.Chrome
                              C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\005 =>.SUP.Temporary.Chrome
                              C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\006 =>.SUP.Temporary.Chrome
                              C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\007 =>.SUP.Temporary.Chrome
                              C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\008 =>.SUP.Temporary.Chrome
                              C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\009 =>.SUP.Temporary.Chrome
                              C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\010 =>.SUP.Temporary.Chrome
                              C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\012 =>.SUP.Temporary.Chrome
                              C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\014 =>.SUP.Temporary.Chrome
                              C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\015 =>.SUP.Temporary.Chrome
                              C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\017 =>.SUP.Temporary.Chrome
                              C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\019 =>.SUP.Temporary.Chrome
                              C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\020 =>.SUP.Temporary.Chrome
                              C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\021 =>.SUP.Temporary.Chrome
                              C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\022 =>.SUP.Temporary.Chrome
                              C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\023 =>.SUP.Temporary.Chrome
                              C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\024 =>.SUP.Temporary.Chrome
                              C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\025 =>.SUP.Temporary.Chrome
                              C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\026 =>.SUP.Temporary.Chrome
                              C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\027 =>.SUP.Temporary.Chrome
                              C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\028 =>.SUP.Temporary.Chrome
                              C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\030 =>.SUP.Temporary.Chrome
                              C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\031 =>.SUP.Temporary.Chrome
                              C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\032 =>.SUP.Temporary.Chrome
                              C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\033 =>.SUP.Temporary.Chrome
                              C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\034 =>.SUP.Temporary.Chrome
                              C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\035 =>.SUP.Temporary.Chrome
                              C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\036 =>.SUP.Temporary.Chrome
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:sstpsvc.dll,-35001 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netlogon.dll,-1010 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:snmptrap.exe,-3 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:PlaSrv.exe,-10005 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\explorer.exe,-7024 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\dfrgui.exe,-103 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\ie4uinit.exe,-21 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\ie4uinit.exe,-20 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\System32\ie4uinit.exe,-733 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\unregmp2.exe,-4 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Program Files\Windows Photo Gallery\ImagingDevices.exe,-101 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\appwiz.cpl,-156 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Program Files\Windows Sidebar\sidebar.exe,-11003 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\appwiz.cpl,-1070 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\FirewallSettings.exe,-12122 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mblctr.exe,-1002 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\System32\ie4uinit.exe,-731 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\System32\hdwwiz.cpl,-1000 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\appwiz.cpl,-159 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Program Files\Windows Calendar\wincal.exe,-200 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Program Files\Movie Maker\DVDMaker.exe,-61403 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Program Files\Windows Mail\WinMail.exe,-225 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\explorer.exe,-6006 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\colorcpl.exe,-6 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\explorer.exe,-7021 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\explorer.exe,-7023 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\HP\HP Software Update\hpwucli.exe =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\PC-Doctor 5 for Windows\pcdr5cuiw32.exe =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%SystemRoot%\system32\werfault.exe,-100 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%SystemRoot%\system32\werfault.exe,-101 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%SystemRoot%\system32\werfault.exe,-102 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%SystemRoot%\system32\werfault.exe,-103 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:wmploc.dll,-102 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\notepad.exe,-469 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:zipfldr.dll,-10148 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:sendmail.dll,-21 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:sendmail.dll,-4 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%systemroot%\system32\Dfrgui.exe,-172 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\PROGRA~1\WI0FCF~1\Journal.exe,-40145 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mblctr.exe,-1008 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Program Files\Windows Sidebar\sidebar.exe,-1005 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mstsc.exe,-4000 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\SoundRecorder.exe,-100 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\SnippingTool.exe,-15051 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Program Files\windows journal\journal.exe,-62005 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%SystemRoot%\System32\SnippingTool.exe,-15052 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\System32\ie4uinit.exe,-737 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\MdSched.exe,-4001 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\msconfig.exe,-126 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\explorer.exe,-6000 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\explorer.exe,-6004 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Program Files\Microsoft Games\inkball\InkBall.exe,-15051 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\wercon.exe,-350 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\msra.exe,-100 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\Speech\SpeechUX\sapi.cpl,-5555 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\sdclt.exe,-100 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\msinfo32.exe,-100 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\rstrui.exe,-100 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\StikyNot.exe,-551 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Program Files\Windows Journal\Journal.exe,-3074 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\WindowsPowerShell\v1.0\powershell.exe,-101 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5856 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5824 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5825 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:ieframe.dll,-10323 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5826 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5827 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5828 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5829 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5830 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5858 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5832 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5837 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5833 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5834 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5835 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5836 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5839 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5840 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5841 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5842 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:ieframe.dll,-10324 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5843 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5845 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5846 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5847 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5848 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5849 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5852 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5853 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5859 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5854 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:ieframe.dll,-10321 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:ieframe.dll,-10325 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5831 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:ieframe.dll,-17315 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:ieframe.dll,-10322 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:ieframe.dll,-10320 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:ieframe.dll,-12513 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:ieframe.dll,-10326 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\System32\speech\speechux\sapi.cpl,-5566 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\System32\speech\speechux\sapi.cpl,-5563 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\System32\speech\speechux\sapi.cpl,-5562 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\System32\speech\speechux\sapi.cpl,-5564 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\System32\speech\speechux\sapi.cpl,-5561 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\System32\speech\speechux\sapi.cpl,-5565 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-700 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-701 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-702 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-703 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-704 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-705 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-706 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-707 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-708 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\Speech\SpeechUX\sapi.cpl,-5581 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\Speech\SpeechUX\sapi.cpl,-5580 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\Speech\SpeechUX\sapi.cpl,-5578 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\Speech\SpeechUX\sapi.cpl,-5577 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\Speech\SpeechUX\sapi.cpl,-5579 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-710 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-711 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-712 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-713 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-714 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-715 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-716 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-717 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-718 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-719 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-720 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-721 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-722 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-736 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-723 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-724 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-725 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-726 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-734 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-727 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-737 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-728 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-729 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-730 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-731 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-732 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-733 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-735 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-738 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-800 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-801 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Program Files\Windows Photo Gallery\ImagingDevices.exe,-102 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\appwiz.cpl,-160 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:systemcpl.dll,-1 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%windir%\explorer.exe,-6007 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%ProgramFiles%\Windows Mail\WinMail.exe,-226 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\unregmp2.exe,-155 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%ProgramFiles%\Windows Sidebar\sidebar.exe,-1012 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%systemroot%\system32\rstrui.exe,-102 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%systemroot%\system32\Msinfo32.exe,-130 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%systemroot%\system32\sdclt.exe,-101 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:networkexplorer.dll,-1005 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:networkexplorer.dll,-1006 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:networkexplorer.dll,-1029 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:networkexplorer.dll,-1040 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:networkexplorer.dll,-1028 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:networkexplorer.dll,-1039 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:networkexplorer.dll,-1041 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:networkexplorer.dll,-1042 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:networkexplorer.dll,-1050 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:networkexplorer.dll,-1051 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\FirewallSettings.exe,-12123 =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:van.dll,-7205 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-12026 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-12027 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-12002 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-12003 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-12016 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-12017 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-12023 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-12007 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-12004 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-12006 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-12008 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:van.dll,-7204 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-1700 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-1712 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-1530 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-1535 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-1565 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-1570 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-1540 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-1550 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-1555 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-1560 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-1575 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netcfgx.dll,-50002 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%SystemRoot%\System32\drivers\pacer.sys,-100 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netcfgx.dll,-50003 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:tcpipcfg.dll,-50002 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:appwiz.cpl,-165 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:appwiz.cpl,-166 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:appwiz.cpl,-167 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:appwiz.cpl,-168 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:appwiz.cpl,-169 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:appwiz.cpl,-170 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:appwiz.cpl,-171 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:appwiz.cpl,-172 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%SystemRoot%\system32\oobefldr,-33057 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%SystemRoot%\system32\SoundRecorder.exe,-32790 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%windir%\explorer.exe,-7003 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%systemroot%\system32\Mstsc.exe,-4001 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:usercpl.dll,-45 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:explorer.exe,-7003 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:explorer.exe,-7004 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:explorer.exe,-7001 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:sud.dll,-1 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%systemroot%\system32\msconfig.exe,-1601 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\K-Lite Codec Pack\Tools\CodecTweakTool.exe =>.Unsigned
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:explorer.exe,-8243 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Malwarebytes Anti-Malware\mbam.exe =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\adwcleaner.exe =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST.exe =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST(1).exe =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%windir%\explorer.exe,-7001 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%windir%\explorer.exe,-304 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%windir%\explorer.exe,-307 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%ProgramFiles%\Windows Calendar\wincal.exe,-204 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%ProgramFiles%\Movie Maker\DVDMaker.exe,-63385 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST(2).exe =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Desktop\adwcleaner.exe =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\kprm_2.10.0.exe =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST(3).exe =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST(4).exe =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\adwcleaner_7.4.2.exe =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\PROGRA~1\Yahoo!\MESSEN~1\UNWISE.EXE =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp\is-BMB94.tmp\mb3-setup-legacywos-3.5.1.2522-1.0.365-1.0.5292.tmp =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp\is-5MNM0.tmp\mb3-setup-legacywos-3.5.1.2522-1.0.365-1.0.5292.tmp =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Malwarebytes Anti-Malware\unins000.exe =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp_iu14D2N.tmp =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp~nsu.tmp\Au_.exe =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Crystal Security\Crystal Security.exe =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\WINDOWS\Temp\asw.bdd5f65ebeeff25d\avast_free_antivirus_setup_online.exe =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Malwarebytes\Anti-Malware\unins000.exe =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\mb-support-1.8.7.918.exe =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp\7zS330B.tmp\mbstub.exe =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\KVRT.exe =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28502 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28545 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28547 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28543 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28539 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28542 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28535 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28538 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28527 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28530 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28519 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28522 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28511 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28514 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28503 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28506 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32752 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32817 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32818 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32813 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32814 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32809 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32810 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32801 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32804 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32785 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32788 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32777 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32780 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32769 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32772 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32761 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32764 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32753 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32756 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:sstpsvc.dll,-35002 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:sstpsvc.dll,-35003 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:snmptrap.exe,-7 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:snmptrap.exe,-8 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netlogon.dll,-1003 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netlogon.dll,-1006 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25000 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25351 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25357 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25326 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25332 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25301 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25303 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25376 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25382 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25251 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25257 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25082 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25088 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25075 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25081 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25068 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25074 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25061 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25067 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-26106 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25011 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25012 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25018 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25026 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25032 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25019 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25025 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25116 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25118 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25113 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25115 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25001 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25007 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25110 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25112 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31752 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31773 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31774 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31769 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31770 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31761 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31764 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31753 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31756 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30502 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30515 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30518 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30507 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30510 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33752 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33765 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33768 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33753 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33756 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30252 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:WsmRes.dll,-52 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33002 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33027 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33030 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33019 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33022 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33003 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33006 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33035 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33036 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33011 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33014 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33502 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33513 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33514 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33511 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33512 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33503 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33506 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33252 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33257 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33260 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33253 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33256 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28252 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28274 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28277 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28270 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28273 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28262 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28265 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28254 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28257 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30002 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30007 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30010 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30003 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30006 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29502 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29515 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29518 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29507 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29510 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29503 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29506 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29252 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29265 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29268 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29257 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29260 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29253 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29256 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34002 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34007 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34008 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34003 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34004 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34251 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34256 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34257 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34254 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34255 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34252 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34253 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34501 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34506 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34507 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34504 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34505 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34502 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34503 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32002 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32027 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32030 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32019 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32022 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32011 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32014 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32003 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32006 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29002 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29003 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29006 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29752 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29765 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29768 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29757 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29760 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29753 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29756 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32252 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32277 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32280 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32269 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32272 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32261 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32264 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32253 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32256 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30752 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30801 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30804 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30793 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30796 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30785 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30788 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30777 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30780 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30769 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30772 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30761 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30764 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30753 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30756 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31252 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31313 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31316 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31305 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31308 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31293 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31296 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31285 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31288 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31277 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31280 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31269 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31272 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31261 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31264 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31253 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31256 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31002 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31003 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31006 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:PlaSrv.exe,-10002 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:PlaSrv.exe,-10003 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:PlaSrv.exe,-10000 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:PlaSrv.exe,-10001 =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Desktop\kprm_2.10.0.exe =>.SUP.Orphan.MUICache
                              [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%SystemRoot%\system32\mblctr.exe,-1004 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:sstpsvc.dll,-35001 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netlogon.dll,-1010 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:snmptrap.exe,-3 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:PlaSrv.exe,-10005 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\explorer.exe,-7024 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\dfrgui.exe,-103 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\ie4uinit.exe,-21 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\ie4uinit.exe,-20 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\System32\ie4uinit.exe,-733 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\unregmp2.exe,-4 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Program Files\Windows Photo Gallery\ImagingDevices.exe,-101 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\appwiz.cpl,-156 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Program Files\Windows Sidebar\sidebar.exe,-11003 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\appwiz.cpl,-1070 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\FirewallSettings.exe,-12122 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mblctr.exe,-1002 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\System32\ie4uinit.exe,-731 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\System32\hdwwiz.cpl,-1000 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\appwiz.cpl,-159 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Program Files\Windows Calendar\wincal.exe,-200 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Program Files\Movie Maker\DVDMaker.exe,-61403 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Program Files\Windows Mail\WinMail.exe,-225 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\explorer.exe,-6006 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\colorcpl.exe,-6 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\explorer.exe,-7021 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\explorer.exe,-7023 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\HP\HP Software Update\hpwucli.exe =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\PC-Doctor 5 for Windows\pcdr5cuiw32.exe =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%SystemRoot%\system32\werfault.exe,-100 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%SystemRoot%\system32\werfault.exe,-101 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%SystemRoot%\system32\werfault.exe,-102 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%SystemRoot%\system32\werfault.exe,-103 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:wmploc.dll,-102 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\notepad.exe,-469 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:zipfldr.dll,-10148 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:sendmail.dll,-21 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:sendmail.dll,-4 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%systemroot%\system32\Dfrgui.exe,-172 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\PROGRA~1\WI0FCF~1\Journal.exe,-40145 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mblctr.exe,-1008 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Program Files\Windows Sidebar\sidebar.exe,-1005 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mstsc.exe,-4000 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\SoundRecorder.exe,-100 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\SnippingTool.exe,-15051 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Program Files\windows journal\journal.exe,-62005 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%SystemRoot%\System32\SnippingTool.exe,-15052 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\System32\ie4uinit.exe,-737 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\MdSched.exe,-4001 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\msconfig.exe,-126 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\explorer.exe,-6000 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\explorer.exe,-6004 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Program Files\Microsoft Games\inkball\InkBall.exe,-15051 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\wercon.exe,-350 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\msra.exe,-100 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\Speech\SpeechUX\sapi.cpl,-5555 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\sdclt.exe,-100 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\msinfo32.exe,-100 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\rstrui.exe,-100 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\StikyNot.exe,-551 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Program Files\Windows Journal\Journal.exe,-3074 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\WindowsPowerShell\v1.0\powershell.exe,-101 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5856 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5824 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5825 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:ieframe.dll,-10323 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5826 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5827 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5828 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5829 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5830 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5858 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5832 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5837 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5833 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5834 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5835 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5836 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5839 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5840 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5841 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5842 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:ieframe.dll,-10324 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5843 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5845 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5846 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5847 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5848 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5849 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5852 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5853 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5859 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5854 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:ieframe.dll,-10321 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:ieframe.dll,-10325 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-5831 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:ieframe.dll,-17315 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:ieframe.dll,-10322 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:ieframe.dll,-10320 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:ieframe.dll,-12513 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:ieframe.dll,-10326 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\System32\speech\speechux\sapi.cpl,-5566 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\System32\speech\speechux\sapi.cpl,-5563 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\System32\speech\speechux\sapi.cpl,-5562 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\System32\speech\speechux\sapi.cpl,-5564 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\System32\speech\speechux\sapi.cpl,-5561 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\System32\speech\speechux\sapi.cpl,-5565 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-700 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-701 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-702 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-703 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-704 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-705 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-706 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-707 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-708 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\Speech\SpeechUX\sapi.cpl,-5581 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\Speech\SpeechUX\sapi.cpl,-5580 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\Speech\SpeechUX\sapi.cpl,-5578 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\Speech\SpeechUX\sapi.cpl,-5577 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\Speech\SpeechUX\sapi.cpl,-5579 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-710 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-711 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-712 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-713 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-714 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-715 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-716 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-717 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-718 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-719 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-720 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-721 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-722 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-736 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-723 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-724 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-725 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-726 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-734 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-727 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-737 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-728 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-729 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-730 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-731 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-732 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-733 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-735 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\mmsys.cpl,-738 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-800 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:mmsys.cpl,-801 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Program Files\Windows Photo Gallery\ImagingDevices.exe,-102 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\appwiz.cpl,-160 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:systemcpl.dll,-1 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%windir%\explorer.exe,-6007 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%ProgramFiles%\Windows Mail\WinMail.exe,-226 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\unregmp2.exe,-155 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%ProgramFiles%\Windows Sidebar\sidebar.exe,-1012 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%systemroot%\system32\rstrui.exe,-102 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%systemroot%\system32\Msinfo32.exe,-130 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%systemroot%\system32\sdclt.exe,-101 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:networkexplorer.dll,-1005 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:networkexplorer.dll,-1006 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:networkexplorer.dll,-1029 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:networkexplorer.dll,-1040 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:networkexplorer.dll,-1028 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:networkexplorer.dll,-1039 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:networkexplorer.dll,-1041 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:networkexplorer.dll,-1042 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:networkexplorer.dll,-1050 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:networkexplorer.dll,-1051 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:C:\Windows\system32\FirewallSettings.exe,-12123 =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:van.dll,-7205 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-12026 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-12027 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-12002 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-12003 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-12016 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-12017 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-12023 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-12007 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-12004 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-12006 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-12008 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:van.dll,-7204 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-1700 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-1712 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-1530 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-1535 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-1565 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-1570 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-1540 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-1550 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-1555 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-1560 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netshell.dll,-1575 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netcfgx.dll,-50002 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%SystemRoot%\System32\drivers\pacer.sys,-100 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netcfgx.dll,-50003 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:tcpipcfg.dll,-50002 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:appwiz.cpl,-165 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:appwiz.cpl,-166 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:appwiz.cpl,-167 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:appwiz.cpl,-168 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:appwiz.cpl,-169 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:appwiz.cpl,-170 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:appwiz.cpl,-171 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:appwiz.cpl,-172 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%SystemRoot%\system32\oobefldr,-33057 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%SystemRoot%\system32\SoundRecorder.exe,-32790 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%windir%\explorer.exe,-7003 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%systemroot%\system32\Mstsc.exe,-4001 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:usercpl.dll,-45 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:explorer.exe,-7003 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:explorer.exe,-7004 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:explorer.exe,-7001 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:sud.dll,-1 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%systemroot%\system32\msconfig.exe,-1601 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\K-Lite Codec Pack\Tools\CodecTweakTool.exe =>.Unsigned
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:explorer.exe,-8243 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Malwarebytes Anti-Malware\mbam.exe =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\adwcleaner.exe =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST.exe =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST(1).exe =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%windir%\explorer.exe,-7001 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%windir%\explorer.exe,-304 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%windir%\explorer.exe,-307 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%ProgramFiles%\Windows Calendar\wincal.exe,-204 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%ProgramFiles%\Movie Maker\DVDMaker.exe,-63385 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST(2).exe =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Desktop\adwcleaner.exe =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\kprm_2.10.0.exe =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST(3).exe =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST(4).exe =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\adwcleaner_7.4.2.exe =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\PROGRA~1\Yahoo!\MESSEN~1\UNWISE.EXE =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp\is-BMB94.tmp\mb3-setup-legacywos-3.5.1.2522-1.0.365-1.0.5292.tmp =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp\is-5MNM0.tmp\mb3-setup-legacywos-3.5.1.2522-1.0.365-1.0.5292.tmp =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Malwarebytes Anti-Malware\unins000.exe =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp_iu14D2N.tmp =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp~nsu.tmp\Au_.exe =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Crystal Security\Crystal Security.exe =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\WINDOWS\Temp\asw.bdd5f65ebeeff25d\avast_free_antivirus_setup_online.exe =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Malwarebytes\Anti-Malware\unins000.exe =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\mb-support-1.8.7.918.exe =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp\7zS330B.tmp\mbstub.exe =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\KVRT.exe =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28502 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28545 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28547 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28543 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28539 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28542 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28535 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28538 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28527 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28530 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28519 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28522 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28511 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28514 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28503 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28506 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32752 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32817 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32818 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32813 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32814 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32809 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32810 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32801 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32804 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32785 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32788 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32777 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32780 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32769 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32772 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32761 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32764 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32753 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32756 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:sstpsvc.dll,-35002 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:sstpsvc.dll,-35003 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:snmptrap.exe,-7 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:snmptrap.exe,-8 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netlogon.dll,-1003 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:netlogon.dll,-1006 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25000 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25351 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25357 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25326 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25332 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25301 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25303 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25376 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25382 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25251 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25257 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25082 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25088 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25075 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25081 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25068 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25074 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25061 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25067 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-26106 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25011 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25012 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25018 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25026 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25032 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25019 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25025 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25116 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25118 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25113 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25115 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25001 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25007 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25110 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-25112 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31752 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31773 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31774 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31769 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31770 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31761 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31764 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31753 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31756 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30502 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30515 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30518 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30507 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30510 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33752 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33765 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33768 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33753 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33756 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30252 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:WsmRes.dll,-52 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33002 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33027 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33030 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33019 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33022 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33003 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33006 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33035 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33036 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33011 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33014 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33502 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33513 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33514 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33511 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33512 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33503 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33506 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33252 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33257 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33260 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33253 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-33256 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28252 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28274 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28277 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28270 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28273 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28262 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28265 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28254 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-28257 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30002 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30007 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30010 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30003 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30006 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29502 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29515 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29518 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29507 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29510 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29503 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29506 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29252 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29265 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29268 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29257 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29260 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29253 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29256 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34002 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34007 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34008 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34003 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34004 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34251 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34256 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34257 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34254 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34255 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34252 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34253 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34501 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34506 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34507 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34504 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34505 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34502 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-34503 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32002 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32027 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32030 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32019 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32022 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32011 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32014 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32003 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32006 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29002 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29003 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29006 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29752 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29765 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29768 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29757 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29760 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29753 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-29756 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32252 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32277 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32280 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32269 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32272 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32261 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32264 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32253 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-32256 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30752 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30801 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30804 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30793 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30796 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30785 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30788 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30777 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30780 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30769 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30772 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30761 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30764 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30753 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-30756 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31252 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31313 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31316 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31305 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31308 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31293 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31296 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31285 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31288 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31277 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31280 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31269 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31272 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31261 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31264 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31253 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31256 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31002 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31003 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:FirewallAPI.dll,-31006 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:PlaSrv.exe,-10002 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:PlaSrv.exe,-10003 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:PlaSrv.exe,-10000 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:PlaSrv.exe,-10001 =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Desktop\kprm_2.10.0.exe =>.SUP.Orphan.MUICache
                              [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:mad:%SystemRoot%\system32\mblctr.exe,-1004 =>.SUP.Orphan.MUICache
                              
                              —\ Summary of the elements found (10) - 0s
                              ZHPDiag et l'analyse S.M.A.R.T. des disques durs - ZAM => SMART Information
                              Zone Anti-Malware - ZAM =>PUP.Optional.WeatherBug
                              Zone Anti-Malware - ZAM =>SUP.Optional.Auslogics
                              Zone Anti-Malware - ZAM =>.SUP.Orphan
                              Zone Anti-Malware - ZAM =>Toolbar.Ask
                              Zone Anti-Malware - ZAM =>.SUP.Obsolete.Adobe
                              Zone Anti-Malware - ZAM =>Warning.EventLogApp
                              Zone Anti-Malware - ZAM =>.SUP.Temporary.Firefox
                              Zone Anti-Malware - ZAM =>.SUP.Temporary.Chrome
                              Zone Anti-Malware - ZAM =>.SUP.Orphan.MUICache
                              
                              —\ Serial Number
                              [0091D9A0840B6CB065F7409ED429F976E2] [25/10/2008] (.Auslogics Software.) - C:\Program Files\Auslogics\AusLogics Disk Defrag\cdefrag.exe =>SUP.Optional.Auslogics
                              [044E3BF58976880FFD074448A8F7A058] [15/12/2022] (.Malwarebytes Corporation.) - C:\Users\John\Desktop\downloads\mb3-setup-legacywos-3.5.1.2522-1.0.365-1.0.5292.exe =>.Malwarebytes Corporation
                              [06572D4762FC6C6AB0C32E862C302B8F] [23/01/2009] (.Acronis, Inc.) - C:\Windows\System32\drivers\snapman.sys =>.Acronis, Inc
                              [06572D4762FC6C6AB0C32E862C302B8F] [23/01/2009] (.Acronis, Inc.) - C:\Windows\System32\drivers\tdrpman.sys =>.Acronis, Inc
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/11/2018] (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\setup\instup.exe =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\ashQuick.exe =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\aswidsagent.exe =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\AvastUI.exe =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\AvLaunch.exe =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Users\John\AppData\Local\Temp_av_iup.tm~a00820\HTMLayout.dll =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Users\John\AppData\Local\Temp_av_iup.tm~a00820\Instup.dll =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Users\John\AppData\Local\Temp_av_iup.tm~a00820\Instup.exe =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Users\John\AppData\Local\Temp_av_iup.tm~a00820\New_12080934\aswOfferTool.exe =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Users\John\AppData\Local\Temp_av_iup.tm~a00820\New_12080934\avBugReport.exe =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Users\John\AppData\Local\Temp_av_iup.tm~a00820\New_12080934\AvDump32.exe =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Users\John\AppData\Local\Temp_av_iup.tm~a00820\New_12080934\AvDump64.exe =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Users\John\AppData\Local\Temp_av_iup.tm~a00820\New_12080934\sbr.exe =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswArPot.sys =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswbidsdriverx.sys =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswbidshx.sys =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswblogx.sys =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswbunivx.sys =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswHdsKe.sys =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswHwid.sys =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswKbd.sys =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswMonFlt.sys =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswRdr.sys =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswRvrt.sys =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswSnx.sys =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswSP.sys =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswStmXP.sys =>.AVAST Software s.r.o.
                              [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswVmm.sys =>.AVAST Software s.r.o.
                              [08994531FDF1B2EBB8C7821BF650FDCF] [05/08/2009] (.Hewlett-Packard Company.) - C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe =>.Hewlett-Packard Company
                              [0C5396DCB2949C70FAC48AB08A07338E] [27/06/2018] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation
                              [0C5396DCB2949C70FAC48AB08A07338E] [27/06/2018] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
                              [0C5396DCB2949C70FAC48AB08A07338E] [27/06/2018] (.Mozilla Corporation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation
                              [0FDFA25000B6ED9763BFEC89AB3F513C] [06/01/2010] (.AOL Inc..) - C:\Program Files\Common Files\aol\Loader\aolload.exe =>.AOL Inc.
                              [12F0277E0F233B39F9419B06E8CDE352] [10/05/2016] (.Oracle America, Inc..) - C:\Program Files\Java\jre1.8.0_91\bin\jp2ssv.dll =>.Oracle America, Inc.
                              [12F0277E0F233B39F9419B06E8CDE352] [10/05/2016] (.Oracle America, Inc..) - C:\Program Files\Java\jre1.8.0_91\bin\ssv.dll =>.Oracle America, Inc.
                              [14F8FDD167F92402B1570B5DC495C815] [09/08/2017] (.Google Inc.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc
                              [28D202398DA929FCDEFA15A53CD0D780] [20/08/2007] (.Hewlett Packard.) - C:\Program Files\HP\Digital Imaging\PhotoSmartEssential\hpzscr01.exe =>.Hewlett Packard
                              [43406AA9B82DE87E572C9C12F952C2C1] [02/07/2004] (.Macromedia, Inc..) - C:\Program Files\Mozilla Firefox\Plugins\np32asw.dll =>.Macromedia, Inc.
                              [4B619B840AE7449CC9C35C4C1CAD5183] [09/11/2006] (.AOL LLC.) - C:\Windows\System32\drivers\atwpkt264.sys =>.AOL LLC
                              [4C40DBA5F988FAE57A57D6457495F98B] [06/04/2016] (.Google Inc.) - C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc
                              [4C40DBA5F988FAE57A57D6457495F98B] [23/03/2022] (.Google Inc.) - C:\Program Files\Google\Chrome\Application\49.0.2623.112\Installer\setup.exe =>.Google Inc
                              [57D50A48CDF681BB93C28879633A4452] [23/01/2009] (.Acronis, Inc.) - C:\WINDOWS\System32\drivers\tifsfilt.sys =>.Acronis, Inc
                              [57D50A48CDF681BB93C28879633A4452] [23/01/2009] (.Acronis, Inc.) - C:\WINDOWS\System32\drivers\timntr.sys =>.Acronis, Inc
                              [5B2FD02E944AD78D4D06F59814E14714] [30/08/2006] (.EarthLink.) - C:\Program Files\earthlink totalaccess\TaskPanl.exe =>.Not verified
                              [5E6DDC87375082845814F442D1D82A25] [15/01/2008] (.Realtek Semiconductor Corp.) - C:\WINDOWS\System32\drivers\RTKVHDA.sys =>.Realtek Semiconductor Corp
                              [68FED17FDBADC3E2F6FC678D984470A9] [09/11/2006] (.AOL LLC.) - C:\Windows\System32\drivers\atwpkt2.sys =>.AOL LLC
                              [6D467C9A4514B23549EC613CAF3A9DDB] [07/10/2008] (.AOL LLC.) - C:\Program Files\AIM Toolbar\aimtbServer.exe =>.AOL LLC
                              [75FB51C8768EF6927BF41DA1A234A1D9] [24/09/2015] (.Adobe Systems, Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated
                              [772C5535FC3A40E39F632C599AB6631D] [24/09/2015] (.Adobe Systems, Incorporated.) - C:\Program Files\Adobe\Reader 10.0\Reader\AcroBroker.exe =>.Adobe Systems, Incorporated
                              [772C5535FC3A40E39F632C599AB6631D] [24/09/2015] (.Adobe Systems, Incorporated.) - C:\Program Files\Adobe\Reader 10.0\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated
                              [772C5535FC3A40E39F632C599AB6631D] [24/09/2015] (.Adobe Systems, Incorporated.) - C:\Program Files\Mozilla Firefox\Plugins\nppdf32.dll =>.Adobe Systems, Incorporated
                              [77BA6D53EE5B4344000000005565FB42] [23/02/2017] (.AOL Inc..) - C:\Program Files\AIM\aim.exe =>.AOL Inc.
                              [79E299006F7AE25E062B1A7A067FC548] [01/06/2007] (.CyberLink.) - C:\Program Files\InstallShield Installation Information{CB099890-1D5F-11D5-9EA9-0050BAE317E1}\setup.exe =>.CyberLink
                              [79E299006F7AE25E062B1A7A067FC548] [10/10/2007] (.CyberLink.) - c:\Program Files\Cyberlink\PowerDirector\PDR.EXE =>.CyberLink
                              [79E299006F7AE25E062B1A7A067FC548] [19/10/2007] (.CyberLink.) - C:\Program Files\CyberLink\DVD Suite Deluxe\PowerStarter.exe =>.CyberLink
                              [79E299006F7AE25E062B1A7A067FC548] [19/12/2006] (.CyberLink.) - C:\Program Files\InstallShield Installation Information{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}\Setup.exe =>.CyberLink
                              [79E299006F7AE25E062B1A7A067FC548] [19/12/2006] (.CyberLink.) - C:\Program Files\InstallShield Installation Information{40BF1E83-20EB-11D8-97C5-0009C5020658}\Setup.exe =>.CyberLink
                              [79E299006F7AE25E062B1A7A067FC548] [19/12/2006] (.CyberLink.) - C:\Program Files\InstallShield Installation Information{C59C179C-668D-49A9-B6EA-0121CCFC1243}\Setup.exe =>.CyberLink
                              
                              ~ Unselected Options: O82,
                              ~ End of the scan, 8988 items in 09mn38s (2647)(0)

                              Comment

                              • Malnutrition
                                PCHF Moderator
                                • Jul 2016
                                • 7041

                                #240
                                Right click ZHP Suite
                                Run as admin.
                                Click on Repair.
                                Copy the content of the quote box below.
                                In the top right click on paste a report.
                                It will be the second down from the top right.
                                Then click on start script at the top left.

                                [ATTACH type=“full”]11054[/ATTACH]
                                Start::
                                CreateRestorePoint
                                EmptyCLSID
                                EmptyFlash
                                EmptyTemp
                                EmptyTracing
                                EmptyPrefetch
                                EmptyProxy
                                EmptyRecycle
                                O42 - Logiciel: WeatherBug Gadget - (.AWS Convergence Technologies.) [HKLM] – {209CDA54-D390-46A2-A97C-7BF61734418D} [Unsigned] =>PUP.Optional.WeatherBug (Hidden)
                                HKCU\SOFTWARE\AusLogics =>SUP.Optional.Auslogics
                                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\AusLogics =>SUP.Optional.Auslogics
                                O43 - CFD: 23/01/2009 - D – C:\Program Files\Auslogics =>SUP.Optional.Auslogics
                                O43 - CFD: 15/12/2022 - [0] D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics =>SUP.Optional.Auslogics
                                O43 - CFD: 30/01/2017 - [0] D – C:\Users\John\AppData\Roaming\Auslogics =>SUP.Optional.Auslogics
                                HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\Curren tVersion\Uninstall{209CDA54-D390-46A2-A97C-7BF61734418D} =>PUP.Optional.WeatherBug
                                HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uni nstall{209CDA54-D390-46A2-A97C-7BF61734418D} =>PUP.Optional.WeatherBug
                                C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics =>SUP.Optional.Auslogics
                                C:\Users\John\AppData\Roaming\Auslogics =>SUP.Optional.Auslogics
                                [0091D9A0840B6CB065F7409ED429F976E2] [25/10/2008] (.Auslogics Software.) - C:\Program Files\Auslogics\AusLogics Disk Defrag\cdefrag.exe =>SUP.Optional.Auslogics
                                O42 - Logiciel: Visual Studio 2012 x86 Redistributables - (.AVG Technologies CZ, s.r.o..) [HKLM] – {98EFF19A-30AB-4E4B-B943-F06B1C63EBF8} [Unsigned] =>.AVG Technologies CZ, s.r.o.
                                HKLM\SOFTWARE\AVG =>.AVG Software
                                HKCU\SOFTWARE\Avg =>.AVG Software
                                HKCU\SOFTWARE\AVG SafePrice =>.AVG Software
                                HKCU\SOFTWARE\AVG Web TuneUp =>.AVG Web TuneUp
                                HKU.DEFAULT\SOFTWARE\Avg Secure Update =>.AVG Software
                                HKU.DEFAULT\SOFTWARE\AVG Web TuneUp =>.AVG Web TuneUp
                                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Avg =>.AVG Software
                                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\AVG SafePrice =>.AVG Software
                                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\AVG Web TuneUp =>.AVG Web TuneUp
                                O43 - CFD: 04/02/2017 - D – C:\Program Files\AVG =>.AVG Software
                                O43 - CFD: 04/02/2017 - D – C:\ProgramData\Avg =>.AVG Software
                                O43 - CFD: 03/02/2017 - D – C:\ProgramData\MFAData =>.AVG Software
                                O43 - CFD: 31/01/2017 - D – C:\Users\John\AppData\Roaming\AVG =>.AVG Software
                                O43 - CFD: 31/01/2017 - D – C:\Users\John\AppData\Local\Avg =>.AVG Software
                                O43 - CFD: 04/02/2017 - D – C:\Users\John\AppData\Local\AvgSetupLog =>.AVG Software
                                O43 - CFD: 31/01/2017 - D – C:\Users\John\AppData\Local\MFAData =>.AVG Software
                                O43 - CFD: 04/02/2017 - D – C:\Windows\System32\Config\systemprofile\AppData\L ocal\Avg =>.AVG Software
                                O43 - CFD: 02/02/2017 - D – C:\Windows\System32\Config\systemprofile\AppData\L ocal\AvgSetupLog =>.AVG Software
                                O43 - CFD: 31/01/2017 - D – C:\Windows\System32\Config\systemprofile\AppData\R oaming\AVG =>.AVG Software
                                [MD5.3B69E8EF444F48E137C86014D2680A14] [WIS][2016/10/18 21:11:40] (.AVG Technologies - AVG.) – C:\Windows\Installer\1893ca9.msi [6787072] =>.AVG Technologies
                                [MD5.AA3113833CF15E490182454C1B2E929A] [WIS][2016/07/08 22:45:27] (.AVG Technologies CZ, s.r.o. - Visual Studio 2012 x86 Redistributables.) – C:\Windows\Installer\b06a7.msi [27136] =>.AVG Technologies CZ, s.r.o.
                                HKCU\SOFTWARE\McAfee =>.McAfee Inc.
                                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\McAfee =>.McAfee Inc.
                                O43 - CFD: 14/08/2012 - D – C:\ProgramData\McAfee =>.McAfee
                                SR - Demand [00/00/0000] [ 0] Symantec Network Security Intermediate Filter Service (SymIM) . (…) - C:\Windows\System32\DRIVERS\SymIM.sys (.not file.) [Unsigned]
                                HKLM\SOFTWARE\Symantec =>.Symantec
                                O43 - CFD: 28/05/2008 - D – C:\ProgramData\Symantec =>.Symantec
                                O43 - CFD: 28/05/2008 - D – C:\Program Files\Common Files\Symantec Shared =>.Symantec Corporation
                                O43 - CFD: 28/05/2008 - D – C:\Users\John\AppData\Roaming\Symantec =>.Symantec
                                R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ =>.Yahoo! Inc.
                                R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ =>.Yahoo! Inc.
                                R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://search.yahoo.com/ =>.Yahoo! Inc.
                                R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.yahoo.com/ =>.Yahoo! Inc.
                                R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://search.yahoo.com/ =>.Yahoo! Inc.
                                HKLM\SOFTWARE\Yahoo =>.Yahoo! Inc.
                                HKCU\SOFTWARE\Yahoo =>.Yahoo! Inc.
                                HKCU\SOFTWARE\AppDataLow\Software\Yahoo =>.Yahoo! Inc.
                                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Yahoo =>.Yahoo! Inc.
                                O43 - CFD: 15/12/2022 - D – C:\Program Files\Yahoo! =>.Yahoo!
                                O43 - CFD: 25/01/2009 - D – C:\ProgramData\Yahoo! =>.Yahoo!
                                O43 - CFD: 15/12/2022 - [0] D – C:\Users\John\AppData\Roaming\Yahoo! =>.Yahoo!
                                O43 - CFD: 15/12/2022 - [0] D – C:\Users\John\AppData\Local\Yahoo
                                O69 - SBI: SearchScopes [HKCU]{55C1D719-5274-4281-A484-D799AE2BA7E5} - (Yahoo! Search) - http://search.yahoo.com/ =>.Yahoo! Inc.
                                O69 - SBI: SearchScopes [HKCU]{9CB96984-43C3-4D44-90EF-01466EFCF7BB} [DefaultScope] - (Yahoo! (Avast)) - http://search.yahoo.com/ =>.Yahoo! Inc.
                                O69 - SBI: SearchScopes [HKLM]{55C1D719-5274-4281-A484-D799AE2BA7E5} - (Yahoo! Search) - http://search.yahoo.com/ =>.Yahoo! Inc.
                                O69 - SBI: SearchScopes [HKLM]{9CB96984-43C3-4D44-90EF-01466EFCF7BB} [DefaultScope] - (Yahoo! (Avast)) - http://search.yahoo.com/ =>.Yahoo! Inc.
                                O87 - FAEL: “{60D32775-8659-4D06-B54C-3B6171048679}” [In-None-P6-TRUE] .(…) – C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe [Unsigned] (.not file.) =>.SUP.Orphan
                                O87 - FAEL: “{8B1743DE-136A-4409-90EC-8BBACEFEAF0A}” [In-None-P17-TRUE] .(…) – C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe [Unsigned] (.not file.) =>.SUP.Orphan
                                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICO DE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\PROGRA~1\Yahoo!\MESSEN~1\UNWISE.EXE =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\PROGRA~1\Yahoo!\MESSEN~1\UNWISE.EXE =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]sstpsvc.dll,-35001 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netlogon.dll,-1010 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]snmptrap.exe,-3 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]PlaSrv.exe,-10005 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Windows\explorer.exe,-7024 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Program Files\Windows Photo Gallery\ImagingDevices.exe,-101 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Program Files\Windows Sidebar\sidebar.exe,-11003 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Program Files\Windows Calendar\wincal.exe,-200 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Program Files\Movie Maker\DVDMaker.exe,-61403 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Program Files\Windows Mail\WinMail.exe,-225 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Windows\explorer.exe,-6006 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Windows\explorer.exe,-7021 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Windows\explorer.exe,-7023 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\HP\HP Software Update\hpwucli.exe =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\PC-Doctor 5 for Windows\pcdr5cuiw32.exe =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%SystemRoot%\system32\werfault.exe,-100 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%SystemRoot%\system32\werfault.exe,-101 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%SystemRoot%\system32\werfault.exe,-102 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%SystemRoot%\system32\werfault.exe,-103 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]wmploc.dll,-102 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]zipfldr.dll,-10148 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]sendmail.dll,-21 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]sendmail.dll,-4 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%systemroot%\system32\Dfrgui.exe,-172 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\PROGRA~1\WI0FCF~1\Journal.exe,-40145 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Program Files\Windows Sidebar\sidebar.exe,-1005 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Program Files\windows journal\journal.exe,-62005 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%SystemRoot%\System32\SnippingTool.exe,-15052 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Windows\explorer.exe,-6000 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Windows\explorer.exe,-6004 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Program Files\Microsoft Games\inkball\InkBall.exe,-15051 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Program Files\Windows Journal\Journal.exe,-3074 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5856 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5824 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5825 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]ieframe.dll,-10323 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5826 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5827 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5828 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5829 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5830 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5858 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5832 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5837 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5833 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5834 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5835 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5836 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5839 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5840 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5841 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5842 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]ieframe.dll,-10324 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5843 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5845 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5846 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5847 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5848 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5849 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5852 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5853 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5859 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5854 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]ieframe.dll,-10321 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]ieframe.dll,-10325 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5831 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]ieframe.dll,-17315 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]ieframe.dll,-10322 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]ieframe.dll,-10320 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]ieframe.dll,-12513 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]ieframe.dll,-10326 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-800 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-801 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Program Files\Windows Photo Gallery\ImagingDevices.exe,-102 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]systemcpl.dll,-1 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%windir%\explorer.exe,-6007 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%ProgramFiles%\Windows Mail\WinMail.exe,-226 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%ProgramFiles%\Windows Sidebar\sidebar.exe,-1012 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%systemroot%\system32\rstrui.exe,-102 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%systemroot%\system32\Msinfo32.exe,-130 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%systemroot%\system32\sdclt.exe,-101 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]networkexplorer.dll,-1005 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]networkexplorer.dll,-1006 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]networkexplorer.dll,-1029 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]networkexplorer.dll,-1040 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]networkexplorer.dll,-1028 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]networkexplorer.dll,-1039 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]networkexplorer.dll,-1041 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]networkexplorer.dll,-1042 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]networkexplorer.dll,-1050 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]networkexplorer.dll,-1051 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]van.dll,-7205 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-12026 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-12027 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-12002 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-12003 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-12016 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-12017 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-12023 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-12007 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-12004 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-12006 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-12008 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]van.dll,-7204 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-1700 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-1712 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-1530 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-1535 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-1565 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-1570 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-1540 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-1550 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-1555 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-1560 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-1575 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netcfgx.dll,-50002 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%SystemRoot%\System32\drivers\pacer.sys,-100 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netcfgx.dll,-50003 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]tcpipcfg.dll,-50002 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]appwiz.cpl,-165 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]appwiz.cpl,-166 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]appwiz.cpl,-167 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]appwiz.cpl,-168 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]appwiz.cpl,-169 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]appwiz.cpl,-170 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]appwiz.cpl,-171 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]appwiz.cpl,-172 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%SystemRoot%\system32\oobefldr,-33057 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%SystemRoot%\system32\SoundRecorder.exe,-32790 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%windir%\explorer.exe,-7003 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%systemroot%\system32\Mstsc.exe,-4001 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]usercpl.dll,-45 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]explorer.exe,-7003 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]explorer.exe,-7004 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]explorer.exe,-7001 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]sud.dll,-1 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%systemroot%\system32\msconfig.exe,-1601 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]explorer.exe,-8243 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Malwarebytes Anti-Malware\mbam.exe =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\adwcleaner.exe =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST.exe =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST(1).exe =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%windir%\explorer.exe,-7001 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%windir%\explorer.exe,-304 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%windir%\explorer.exe,-307 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%ProgramFiles%\Windows Calendar\wincal.exe,-204 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%ProgramFiles%\Movie Maker\DVDMaker.exe,-63385 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST(2).exe =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Desktop\adwcleaner.exe =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\kprm_2.10.0.exe =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST(3).exe =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST(4).exe =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\adwcleaner_7.4.2.exe =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\PROGRA~1\Yahoo!\MESSEN~1\UNWISE.EXE =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp\is-BMB94.tmp\mb3-setup-legacywos-3.5.1.2522-1.0.365-1.0.5292.tmp =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp\is-5MNM0.tmp\mb3-setup-legacywos-3.5.1.2522-1.0.365-1.0.5292.tmp =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Malwarebytes Anti-Malware\unins000.exe =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp_iu14D2N.tmp =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp~nsu.tmp\Au_.exe =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Crystal Security\Crystal Security.exe =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\WINDOWS\Temp\asw.bdd5f65ebeeff25d\avast_free_a ntivirus_setup_online.exe =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Malwarebytes\Anti-Malware\unins000.exe =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\mb-support-1.8.7.918.exe =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp\7zS330B.tmp\mbst ub.exe =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\KVRT.exe =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28502 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28545 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28547 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28543 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28539 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28542 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28535 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28538 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28527 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28530 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28519 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28522 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28511 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28514 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28503 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28506 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32752 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32817 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32818 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32813 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32814 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32809 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32810 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32801 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32804 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32785 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32788 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32777 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32780 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32769 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32772 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32761 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32764 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32753 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32756 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]sstpsvc.dll,-35002 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]sstpsvc.dll,-35003 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]snmptrap.exe,-7 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]snmptrap.exe,-8 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netlogon.dll,-1003 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netlogon.dll,-1006 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25000 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25351 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25357 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25326 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25332 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25301 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25303 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25376 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25382 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25251 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25257 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25082 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25088 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25075 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25081 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25068 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25074 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25061 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25067 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-26106 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25011 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25012 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25018 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25026 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25032 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25019 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25025 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25116 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25118 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25113 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25115 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25001 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25007 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25110 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25112 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31752 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31773 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31774 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31769 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31770 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31761 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31764 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31753 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31756 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30502 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30515 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30518 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30507 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30510 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33752 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33765 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33768 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33753 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33756 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30252 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]WsmRes.dll,-52 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33002 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33027 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33030 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33019 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33022 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33003 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33006 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33035 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33036 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33011 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33014 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33502 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33513 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33514 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33511 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33512 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33503 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33506 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33252 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33257 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33260 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33253 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33256 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28252 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28274 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28277 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28270 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28273 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28262 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28265 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28254 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28257 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30002 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30007 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30010 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30003 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30006 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29502 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29515 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29518 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29507 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29510 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29503 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29506 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29252 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29265 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29268 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29257 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29260 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29253 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29256 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34002 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34007 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34008 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34003 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34004 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34251 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34256 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34257 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34254 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34255 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34252 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34253 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34501 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34506 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34507 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34504 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34505 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34502 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34503 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32002 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32027 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32030 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32019 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32022 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32011 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32014 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32003 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32006 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29002 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29003 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29006 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29752 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29765 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29768 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29757 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29760 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29753 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29756 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32252 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32277 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32280 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32269 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32272 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32261 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32264 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32253 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32256 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30752 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30801 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30804 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30793 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30796 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30785 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30788 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30777 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30780 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30769 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30772 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30761 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30764 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30753 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30756 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31252 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31313 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31316 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31305 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31308 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31293 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31296 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31285 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31288 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31277 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31280 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31269 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31272 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31261 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31264 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31253 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31256 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31002 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31003 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31006 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]PlaSrv.exe,-10002 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]PlaSrv.exe,-10003 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]PlaSrv.exe,-10000 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]PlaSrv.exe,-10001 =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Desktop\kprm_2.10.0.exe =>.SUP.Orphan.MUICache
                                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%SystemRoot%\system32\mblctr.exe,-1004 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]sstpsvc.dll,-35001 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netlogon.dll,-1010 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]snmptrap.exe,-3 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]PlaSrv.exe,-10005 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Windows\explorer.exe,-7024 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Program Files\Windows Photo Gallery\ImagingDevices.exe,-101 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Program Files\Windows Sidebar\sidebar.exe,-11003 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Program Files\Windows Calendar\wincal.exe,-200 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Program Files\Movie Maker\DVDMaker.exe,-61403 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Program Files\Windows Mail\WinMail.exe,-225 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Windows\explorer.exe,-6006 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Windows\explorer.exe,-7021 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Windows\explorer.exe,-7023 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\HP\HP Software Update\hpwucli.exe =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\PC-Doctor 5 for Windows\pcdr5cuiw32.exe =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%SystemRoot%\system32\werfault.exe,-100 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%SystemRoot%\system32\werfault.exe,-101 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%SystemRoot%\system32\werfault.exe,-102 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%SystemRoot%\system32\werfault.exe,-103 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]wmploc.dll,-102 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]zipfldr.dll,-10148 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]sendmail.dll,-21 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]sendmail.dll,-4 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%systemroot%\system32\Dfrgui.exe,-172 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\PROGRA~1\WI0FCF~1\Journal.exe,-40145 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Program Files\Windows Sidebar\sidebar.exe,-1005 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Program Files\windows journal\journal.exe,-62005 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%SystemRoot%\System32\SnippingTool.exe,-15052 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Windows\explorer.exe,-6000 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Windows\explorer.exe,-6004 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Program Files\Microsoft Games\inkball\InkBall.exe,-15051 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Program Files\Windows Journal\Journal.exe,-3074 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5856 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5824 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5825 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]ieframe.dll,-10323 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5826 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5827 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5828 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5829 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5830 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5858 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5832 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5837 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5833 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5834 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5835 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5836 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5839 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5840 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5841 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5842 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]ieframe.dll,-10324 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5843 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5845 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5846 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5847 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5848 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5849 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5852 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5853 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5859 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5854 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]ieframe.dll,-10321 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]ieframe.dll,-10325 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-5831 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]ieframe.dll,-17315 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]ieframe.dll,-10322 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]ieframe.dll,-10320 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]ieframe.dll,-12513 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]ieframe.dll,-10326 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-800 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]mmsys.cpl,-801 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]C:\Program Files\Windows Photo Gallery\ImagingDevices.exe,-102 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]systemcpl.dll,-1 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%windir%\explorer.exe,-6007 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%ProgramFiles%\Windows Mail\WinMail.exe,-226 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%ProgramFiles%\Windows Sidebar\sidebar.exe,-1012 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%systemroot%\system32\rstrui.exe,-102 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%systemroot%\system32\Msinfo32.exe,-130 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%systemroot%\system32\sdclt.exe,-101 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]networkexplorer.dll,-1005 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]networkexplorer.dll,-1006 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]networkexplorer.dll,-1029 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]networkexplorer.dll,-1040 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]networkexplorer.dll,-1028 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]networkexplorer.dll,-1039 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]networkexplorer.dll,-1041 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]networkexplorer.dll,-1042 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]networkexplorer.dll,-1050 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]networkexplorer.dll,-1051 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]van.dll,-7205 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-12026 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-12027 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-12002 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-12003 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-12016 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-12017 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-12023 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-12007 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-12004 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-12006 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-12008 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]van.dll,-7204 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-1700 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-1712 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-1530 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-1535 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-1565 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-1570 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-1540 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-1550 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-1555 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-1560 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netshell.dll,-1575 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netcfgx.dll,-50002 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%SystemRoot%\System32\drivers\pacer.sys,-100 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netcfgx.dll,-50003 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]tcpipcfg.dll,-50002 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]appwiz.cpl,-165 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]appwiz.cpl,-166 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]appwiz.cpl,-167 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]appwiz.cpl,-168 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]appwiz.cpl,-169 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]appwiz.cpl,-170 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]appwiz.cpl,-171 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]appwiz.cpl,-172 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%SystemRoot%\system32\oobefldr,-33057 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%SystemRoot%\system32\SoundRecorder.exe,-32790 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%windir%\explorer.exe,-7003 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%systemroot%\system32\Mstsc.exe,-4001 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]usercpl.dll,-45 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]explorer.exe,-7003 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]explorer.exe,-7004 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]explorer.exe,-7001 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]sud.dll,-1 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%systemroot%\system32\msconfig.exe,-1601 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]explorer.exe,-8243 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Malwarebytes Anti-Malware\mbam.exe =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\adwcleaner.exe =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST.exe =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST(1).exe =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%windir%\explorer.exe,-7001 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%windir%\explorer.exe,-304 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%windir%\explorer.exe,-307 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%ProgramFiles%\Windows Calendar\wincal.exe,-204 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%ProgramFiles%\Movie Maker\DVDMaker.exe,-63385 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST(2).exe =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Desktop\adwcleaner.exe =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\kprm_2.10.0.exe =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST(3).exe =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST(4).exe =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\adwcleaner_7.4.2.exe =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\PROGRA~1\Yahoo!\MESSEN~1\UNWISE.EXE =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp\is-BMB94.tmp\mb3-setup-legacywos-3.5.1.2522-1.0.365-1.0.5292.tmp =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp\is-5MNM0.tmp\mb3-setup-legacywos-3.5.1.2522-1.0.365-1.0.5292.tmp =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Malwarebytes Anti-Malware\unins000.exe =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp_iu14D2N.tmp =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp~nsu.tmp\Au_.exe =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Crystal Security\Crystal Security.exe =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\WINDOWS\Temp\asw.bdd5f65ebeeff25d\avast_free_a ntivirus_setup_online.exe =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Malwarebytes\Anti-Malware\unins000.exe =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\mb-support-1.8.7.918.exe =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp\7zS330B.tmp\mbst ub.exe =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\KVRT.exe =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28502 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28545 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28547 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28543 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28539 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28542 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28535 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28538 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28527 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28530 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28519 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28522 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28511 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28514 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28503 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28506 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32752 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32817 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32818 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32813 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32814 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32809 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32810 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32801 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32804 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32785 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32788 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32777 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32780 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32769 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32772 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32761 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32764 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32753 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32756 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]sstpsvc.dll,-35002 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]sstpsvc.dll,-35003 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]snmptrap.exe,-7 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]snmptrap.exe,-8 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netlogon.dll,-1003 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]netlogon.dll,-1006 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25000 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25351 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25357 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25326 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25332 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25301 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25303 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25376 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25382 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25251 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25257 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25082 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25088 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25075 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25081 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25068 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25074 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25061 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25067 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-26106 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25011 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25012 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25018 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25026 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25032 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25019 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25025 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25116 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25118 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25113 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25115 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25001 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25007 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25110 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-25112 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31752 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31773 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31774 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31769 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31770 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31761 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31764 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31753 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31756 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30502 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30515 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30518 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30507 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30510 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33752 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33765 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33768 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33753 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33756 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30252 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]WsmRes.dll,-52 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33002 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33027 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33030 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33019 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33022 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33003 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33006 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33035 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33036 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33011 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33014 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33502 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33513 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33514 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33511 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33512 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33503 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33506 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33252 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33257 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33260 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33253 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-33256 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28252 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28274 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28277 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28270 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28273 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28262 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28265 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28254 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-28257 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30002 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30007 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30010 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30003 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30006 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29502 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29515 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29518 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29507 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29510 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29503 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29506 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29252 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29265 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29268 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29257 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29260 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29253 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29256 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34002 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34007 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34008 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34003 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34004 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34251 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34256 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34257 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34254 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34255 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34252 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34253 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34501 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34506 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34507 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34504 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34505 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34502 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-34503 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32002 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32027 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32030 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32019 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32022 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32011 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32014 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32003 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32006 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29002 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29003 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29006 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29752 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29765 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29768 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29757 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29760 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29753 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-29756 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32252 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32277 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32280 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32269 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32272 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32261 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32264 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32253 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-32256 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30752 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30801 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30804 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30793 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30796 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30785 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30788 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30777 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30780 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30769 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30772 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30761 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30764 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30753 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-30756 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31252 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31313 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31316 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31305 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31308 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31293 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31296 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31285 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31288 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31277 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31280 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31269 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31272 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31261 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31264 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31253 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31256 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31002 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31003 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]FirewallAPI.dll,-31006 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]PlaSrv.exe,-10002 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]PlaSrv.exe,-10003 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]PlaSrv.exe,-10000 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]PlaSrv.exe,-10001 =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Desktop\kprm_2.10.0.exe =>.SUP.Orphan.MUICache
                                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]%SystemRoot%\system32\mblctr.exe,-1004 =>.SUP.Orphan.MUICache
                                SR - Disabl [00/00/0000] [ 0] (blbdrive) . (…) - C:\Windows\System32\drivers\blbdrive.sys (.not file.) [Unsigned]
                                SR - Demand [00/00/0000] [ 0] IP in IP Tunnel Driver (IpInIp) . (…) - C:\Windows\System32\DRIVERS\ipinip.sys (.not file.) [Unsigned]
                                SR - Demand [00/00/0000] [ 0] MBAMSwissArmy (MBAMSwissArmy) . (…) - C:\Windows\System32\Drivers\mbamswissarmy.sys (.not file.) [Unsigned]
                                SS - Demand [00/00/0000] [ 0] @%SystemRoot%\system32\msimsg.dll,-27 (msiserver) . (…) - C:\Windows\System32\msiexec .msiexec (.not file.) [Unsigned]
                                SR - Demand [00/00/0000] [ 0] IPX Traffic Filter Driver (NwlnkFlt) . (…) - C:\Windows\System32\DRIVERS\nwlnkflt.sys (.not file.) [Unsigned]
                                SR - Demand [00/00/0000] [ 0] IPX Traffic Forwarder Driver (NwlnkFwd) . (…) - C:\Windows\System32\DRIVERS\nwlnkfwd.sys (.not file.) [Unsigned]
                                SR - Demand [00/00/0000] [ 0] Symantec Network Security Intermediate Filter Service (SymIM) . (…) - C:\Windows\System32\DRIVERS\SymIM.sys (.not file.) [Unsigned]
                                SR - Demand [00/00/0000] [ 0] (SymIMMP) . (…) - C:\Windows\System32\DRIVERS\SymIM.sys (.not file.) [Unsigned]
                                O108 - CMH1: BriefcaseMenu - {85BBD920-42A0-1069-A2E4-08002B30309D} . (…) – syncui.dll (.not file.)
                                O108 - CMH1: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (…) – ntshrui.dll (.not file.)
                                O108 - CMH4: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (…) – ntshrui.dll (.not file.)
                                O108 - CMH6: BriefcaseMenu - {85BBD920-42A0-1069-A2E4-08002B30309D} . (…) – syncui.dll (.not file.)
                                O108 - CMH7: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (…) – ntshrui.dll (.not file.)
                                O53 - SMSR:HKLM...\startupreg\HP Health Check Scheduler [Key] . (…) – [ProgramFilesFolder]Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe (.not file.)
                                O87 - FAEL: “{60D32775-8659-4D06-B54C-3B6171048679}” [In-None-P6-TRUE] .(…) – C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe [Unsigned] (.not file.) =>.SUP.Orphan
                                O87 - FAEL: “{8B1743DE-136A-4409-90EC-8BBACEFEAF0A}” [In-None-P17-TRUE] .(…) – C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe [Unsigned] (.not file.) =>.SUP.Orphan
                                O42 - Logiciel: WeatherBug Gadget - (.AWS Convergence Technologies.) [HKLM] – {209CDA54-D390-46A2-A97C-7BF61734418D} [Unsigned] =>PUP.Optional.WeatherBug (Hidden)
                                HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\Curren tVersion\Uninstall{209CDA54-D390-46A2-A97C-7BF61734418D} =>PUP.Optional.WeatherBug
                                HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uni nstall{209CDA54-D390-46A2-A97C-7BF61734418D} =>PUP.Optional.WeatherBug
                                O43 - CFD: 08/07/2016 - D – C:\Users\John\AppData\Roaming\TuneUp Software =>.TuneUp Software
                                O43 - CFD: 29/01/2009 - D – C:\Users\John\AppData\Roaming\WinBatch =>.winbatch.com
                                cmd: ipconfig /flushdns
                                cmd: netsh advfirewall reset
                                cmd: netsh advfirewall set allprofiles state on
                                WinsockFix
                                End::

                                Comment

                                Working...