Cant connect to websites

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • jxdama
    PCHF Member
    • Dec 2022
    • 666

    #241
    Will do first thing in the AM. Thanks.

    Comment

    • jxdama
      PCHF Member
      • Dec 2022
      • 666

      #242
      As usual, it wont work. when i click 1, then 2 a box comes up saying non-compliant script see tutorial.

      Comment

      • Malnutrition
        PCHF Moderator
        • Jul 2016
        • 7041

        #243
        Copy entire script.

        Comment

        • jxdama
          PCHF Member
          • Dec 2022
          • 666

          #244
          You mean copy it here for you to see?

          Comment

          • jxdama
            PCHF Member
            • Dec 2022
            • 666

            #245
            When i hit the number 1 thing a script shows in the box but when i try to right click copy and paste doesnt come up

            Comment

            • jxdama
              PCHF Member
              • Dec 2022
              • 666

              #246
              I cant copy it

              Comment

              • jxdama
                PCHF Member
                • Dec 2022
                • 666

                #247
                ~ ZHPDiag v2022.12.16.89 By Nicolas Coolman (2022/12/16)
                ~ Run by John (Administrator) (2022/12/20 07:45:41)
                ~ Assistance: https://forum.nicolascoolman.eu/
                ~ Blog: https://nicolascoolman.eu/
                ~ Facebook: ZHP
                ~ Certificate ZHPDiag: Legal
                ~ State version:
                ~ Mode: Scan
                ~ Report: C:\Users\John\Desktop\ZHPDiag.txt
                ~ Report: C:\Users\John\AppData\Roaming\ZHP\ZHPDiag.txt
                ~ UAC: Activate
                ~ System startup: Normal (Normal boot)
                Windows VISTA, 32-bit Service Pack 1 (Build 6001)

                —\ Internet Browsers (3) - 0s
                ~ GCIE: Google Chrome v49.0.2623.112
                ~ MFIE: Mozilla Firefox 52.9.0 ESR (x86 en-US)
                ~ MSIE: Internet Explorer v8.0.6001.19088

                —\ Windows Product Information (4) - 0s
                ~ Windows Server License Manager Script : OK
                ~ Licence Script File Génération : OK
                Windows Automatic Updates : OK
                Windows Activation Technologies : KO

                —\ System protection software (1) - 0s
                Avast Free Antivirus v18.8.2356 (Protection)

                —\ Surveillance software (1) - 0s
                ~ Adobe Reader X (Surveillance)

                —\ Informations on the system (6) - 0s
                ~ Operating System: x86 Family 6 Model 15 Stepping 13, GenuineIntel
                ~ Operating System: 32-bit
                ~ Boot mode: Normal (Normal boot)
                Total RAM: 2087.568 MB (26% free) : OK =>.RAM Value
                System Restore: Activé (Enable)
                System drive C: has 256 GB () free of 333 GB : OK =>.Disk Space

                —\ Connection to the system mode (3) - 0s
                ~ Computer Name: SARAH-PC
                ~ User Name: John
                ~ Logged in as Administrator

                —\ Enumeration of the disk units (2) - 0s
                ~ Drive C: has 256 GB free of 333 GB (System)
                ~ Drive D: has 1 GB free of 9 GB

                —\ SYSTEM DISK MAIN FEATURES (22) - 7s
                ~ Model: ST3360320AS ATA Device v3.CHL (333 Gb )
                ~ Media Type: HDD Fixed Disk ( Bus: ATA)

                —\ S.M.A.R.T. PARAMETERS - [Flag][Value][Worst] [Threshold][Raw Value]
                OK - 01 - Taux d’erreur de lecture (Raw Read Error Rate) - [15][100][253] [6][0]
                RE - 03 - Temps moyen de mise en rotation (ms) (Spin-Up Time) - [2][98][95] [0][0]
                OK - 04 - Nombre de démarrages/arrêts (Start/Stop Count) - [51][67][67] [20][34451]
                KO - 05 - Nombre de secteurs réalloués (Reallocated Sector Count) - [51][100][100] [36][3]
                OK - 07 - Taux d’erreurs de recherche (Seek Error Rate) - [15][89][60] [30][48466]
                OK - 09 - Heures de fonctionnement (Power-On Hours Count (POH) - [50][11][11] [0][13063]
                OK - 0A - Nombre d’essai de relance de rotation (Spin Retry Count) - [19][100][100] [97][0]
                OK - 0C - Nombre total de cycles d’alimentation (Power Cycle Count) - [51][68][68] [20][32935]
                OK - B8 - Transfert de données à travers le cache (End-to-End error ) - [51][100][253] [97][0]
                OK - BB - Nombre d’erreurs irrécupérable avec ECC (Reported Uncorrectable Errors) - [58][100][100] [0][0]
                OK - BD - Erreurs incorrigibles signalées (High Fly Writes) - [34][100][100] [0][0]
                OK - BE - Température interne (Airflow Temperature) - [26][66][54] [0][34]
                OK - C2 - Température interne actuelle (Enclosure Temperature) - [0][34][46] [0][34]
                OK - C3 - Matériel ECC Récupéré (Hardware ECC Recovered) - [50][61][54] [0][50063]
                OK - C5 - Nombre de secteurs instables (Current Pending Sector Count) - [0][100][100] [0][0]
                OK - C6 - Total d’erreurs incorrigibles d’un secteur (Off-Line Uncorrectable Sector Count) - [0][100][100] [0][0]
                OK - C7 - Nombre d’erreurs dans le transfert de données (Ultra ATA CRC Error Rate) - [0][200][200] [0][623]

                —\ State of the Windows Security Center (12) - 0s
                [HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK
                [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
                [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
                [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
                [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\pol icies\system] EnableLUA: OK
                [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Exp lorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
                [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Exp lorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
                [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Exp lorer\Associations] Application: OK
                [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
                [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
                [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
                [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Win dowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

                —\ Search Generic System Files (24) - 1s
                [MD5.4F554999D7D5F05DAAEBBA7B5BA1089D] - 29/10/2008 - (.Microsoft Corporation - Windows Explorer.) – C:\Windows\Explorer.exe [2927104] [Unsigned] =>.Microsoft Corporation
                [MD5.4B555106290BD117334E9A08761C035A] - 02/11/2006 - (.Microsoft Corporation - Windows host process (Rundll32).) – C:\Windows\System32\rundll32.exe [44544] [Unsigned] =>.Microsoft Corporation
                [MD5.101BA3EA053480BB5D957EF37C06B5ED] - 19/01/2008 - (.Microsoft Corporation - Windows Start-Up Application.) – C:\Windows\System32\Wininit.exe [96768] [Unsigned] =>.Microsoft Corporation
                [MD5.DE4685DE5130039FA63DA66C0F72F787] - 28/05/2011 - (.Microsoft Corporation - Internet Extensions for Win32.) – C:\Windows\System32\wininet.dll [916480] [Unsigned] =>.Microsoft Corporation
                [MD5.C2610B6BDBEFC053BBDAB4F1B965CB24] - 19/01/2008 - (.Microsoft Corporation - Windows Logon Application.) – C:\Windows\System32\Winlogon.exe [314880] [Unsigned] =>.Microsoft Corporation
                [MD5.5665120753FCE7123C4DEACE241EE715] - 02/03/2011 - (.Microsoft Corporation - DNS Client API DLL.) – C:\Windows\System32\dnsapi.dll [167936] [Unsigned] =>.Microsoft Corporation
                [MD5.6298277B73C77FA99106B271A7525163] - 06/08/2009 - (.Microsoft Corporation - Windows Update Agent.) – C:\Windows\System32\wuaueng.dll [1929952] =>.Microsoft Windows Component Publisher®
                [MD5.48EB99503533C27AC6135648E5474457] - 21/04/2011 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) – C:\Windows\System32\drivers\AFD.sys [273408] [Unsigned] =>.Microsoft Corporation
                [MD5.2D9C903DC76A66813D350A562DE40ED9] - 19/01/2008 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) – C:\Windows\System32\drivers\atapi.sys [21560] =>.Microsoft Windows®
                [MD5.7ADD03E75BEB9E6DD102C3081D29840A] - 19/01/2008 - (.Microsoft Corporation - CD-ROM File System Driver.) – C:\Windows\System32\drivers\Cdfs.sys [70144] [Unsigned] =>.Microsoft Corporation
                [MD5.1EC25CEA0DE6AC4718BF89F9E1778B57] - 19/01/2008 - (.Microsoft Corporation - SCSI CD-ROM Driver.) – C:\Windows\System32\drivers\Cdrom.sys [67072] [Unsigned] =>.Microsoft Corporation
                [MD5.A3E9FA213F443AC77C7746119D13FEEC] - 14/04/2011 - (.Microsoft Corporation - DFS Namespace Client Driver.) – C:\Windows\System32\drivers\DfsC.sys [75264] [Unsigned] =>.Microsoft Corporation
                [MD5.C87B1EE051C0464491C1A7B03FA0BC99] - 18/01/2008 - (.Microsoft Corporation - High Definition Audio Bus Driver.) – C:\Windows\System32\drivers\HDAudBus.sys [53760] [Unsigned] =>.Microsoft Corporation
                [MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - 19/01/2008 - (.Microsoft Corporation - i8042 Port Driver.) – C:\Windows\System32\drivers\i8042prt.sys [54784] [Unsigned] =>.Microsoft Corporation
                [MD5.8793643A67B42CEC66490B2A0CF92D68] - 19/01/2008 - (.Microsoft Corporation - IP Network Address Translator.) – C:\Windows\System32\drivers\IpNat.sys [100864] [Unsigned] =>.Microsoft Corporation
                [MD5.5734A0F2BE7E495F7D3ED6EFD4B9F5A1] - 29/04/2011 - (.Microsoft Corporation - Windows NT SMB Minirdr.) – C:\Windows\System32\drivers\MRxSmb.sys [105984] [Unsigned] =>.Microsoft Corporation
                [MD5.7C5FEE5B1C5728507CD96FB4A13E7A02] - 19/01/2008 - (.Microsoft Corporation - MBT Transport driver.) – C:\Windows\System32\drivers\netBT.sys [184320] [Unsigned] =>.Microsoft Corporation
                [MD5.B4EFFE29EB4F15538FD8A9681108492D] - 19/01/2008 - (.Microsoft Corporation - NT File System Driver.) – C:\Windows\System32\drivers\ntfs.sys [1081912] =>.Microsoft Windows®
                [MD5.0FA9B5055484649D63C303FE404E5F4D] - 02/11/2006 - (.Microsoft Corporation - Parallel Port Driver.) – C:\Windows\System32\drivers\Parport.sys [79360] [Unsigned] =>.Microsoft Corporation
                [MD5.A214ADBAF4CB47DD2728859EF31F26B0] - 19/01/2008 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) – C:\Windows\System32\drivers\Rasl2tp.sys [76288] [Unsigned] =>.Microsoft Corporation
                [MD5.E8BD98D46F2ED77132BA927FCCB47D8B] - 02/11/2006 - (.Microsoft Corporation - Microsoft RDP Device redirector.) – C:\Windows\System32\drivers\rdpdr.sys [242688] [Unsigned] =>.Microsoft Corporation
                [MD5.031E6BCD53C9B2B9ACE111EAFEC347B6] - 19/01/2008 - (.Microsoft Corporation - SMB Transport driver.) – C:\Windows\System32\drivers\smb.sys [66560] [Unsigned] =>.Microsoft Corporation
                [MD5.D09276B1FAB033CE1D40DCBDF303D10F] - 19/01/2008 - (.Microsoft Corporation - TDI Translation Driver.) – C:\Windows\System32\drivers\tdx.sys [71680] [Unsigned] =>.Microsoft Corporation
                [MD5.D8B4A53DD2769F226B3EB374374987C9] - 19/01/2008 - (.Microsoft Corporation - Volume Shadow Copy Driver.) – C:\Windows\System32\drivers\volsnap.sys [227896] =>.Microsoft Windows®

                —\ No disabled Windows Services (62) - 6s
                O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
                O23 - Service: C:\WINDOWS\System32\aelupsvc.dll (AeLookupSvc) . (.Microsoft Corporation - Application Experience Service.) - C:\WINDOWS\System32\aelupsvc.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\audiosrv.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Windows Audio Service.) - C:\WINDOWS\System32\audiosrv.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\audiosrv.dll (Audiosrv) . (.Microsoft Corporation - Windows Audio Service.) - C:\WINDOWS\System32\audiosrv.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - Avast Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software s.r.o.®
                O23 - Service: C:\WINDOWS\System32\BFE.DLL (BFE) . (.Microsoft Corporation - Base Filtering Engine.) - C:\WINDOWS\System32\BFE.DLL [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\qmgr.dll (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) - C:\WINDOWS\System32\qmgr.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\browser.dll (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) - C:\WINDOWS\System32\browser.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: Microsoft .NET Framework NGEN v4.0.30319_X86 (clr_optimization_v4.0.30319_32) . (.Microsoft Corporation - .NET Runtime Optimization Service.) - C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\msco rsvw.exe =>.Microsoft Corporation®
                O23 - Service: C:\WINDOWS\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) - C:\WINDOWS\System32\cryptsvc.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\dhcpcsvc.dll (Dhcp) . (.Microsoft Corporation - DHCP Client Service.) - C:\WINDOWS\System32\dhcpcsvc.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - DNS Caching Resolver Service.) - C:\WINDOWS\System32\dnsrslvr.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\ehome\ehstart.dll (ehstart) . (.Microsoft Corporation - Windows Media Center Service Launcher.) - C:\WINDOWS\ehome\ehstart.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\emdmgmt.dll (EMDMgmt) . (.Microsoft Corporation - ReadyBoost Service.) - C:\WINDOWS\System32\emdmgmt.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\wevtsvc.dll (Eventlog) . (.Microsoft Corporation - Host Process for Windows Services.) - C:\WINDOWS\System32\svchost.exe [Unsigned] =>.Microsoft Corporation
                O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\WINDOWS\System32\es.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\FDResPub.dll (FDResPub) . (.Microsoft Corporation - Function Discovery Resource Publication Ser.) - C:\WINDOWS\System32\FDResPub.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Group Policy Client.) - C:\WINDOWS\System32\gpsvc.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: Google Update Service (gupdate) (gupdate) . (.Google Inc. - Google Installer.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
                O23 - Service: HP Health Check Service (HP Health Check Service) . (.Hewlett-Packard - HP Health Check Service.) - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [Unsigned] =>.Hewlett-Packard
                O23 - Service: C:\WINDOWS\System32\IKEEXT.DLL (IKEEXT) . (.Microsoft Corporation - IKE extension.) - C:\WINDOWS\System32\IKEEXT.DLL [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) - C:\WINDOWS\System32\iphlpsvc.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: @comres.dll,-2946 (KtmRm) . (.Microsoft Corporation - MS DTCOLE Transactions KTM Resource Manager.) - C:\WINDOWS\System32\msdtckrm.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) - C:\WINDOWS\System32\srvsvc.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) - C:\WINDOWS\System32\wkssvc.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company - LightScribe Service.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe [Unsigned] =>.Hewlett-Packard Company
                O23 - Service: C:\WINDOWS\System32\lmhsvc.dll (lmhosts) . (.Microsoft Corporation - TCPIP NetBios Transport Services DLL.) - C:\WINDOWS\System32\lmhsvc.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\mmcss.dll (MMCSS) . (.Microsoft Corporation - Multimedia Class Scheduler Service.) - C:\WINDOWS\System32\mmcss.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\FirewallAPI.dll (MpsSvc) . (.Microsoft Corporation - Microsoft Protection Service.) - C:\WINDOWS\System32\MPSSVC.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\netprof.dll (netprofm) . (.Microsoft Corporation - Network List Manager.) - C:\WINDOWS\System32\netprofm.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Network Location Awareness 2.) - C:\WINDOWS\System32\nlasvc.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Network Store Interface RPC server.) - C:\WINDOWS\System32\nsisvc.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\pcasvc.dll (PcaSvc) . (.Microsoft Corporation - Program Compatibility Assistant Service.) - C:\WINDOWS\System32\pcasvc.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\umpnpmgr.dll (PlugPlay) . (.Microsoft Corporation - User-mode Plug-and-Play Service.) - C:\WINDOWS\System32\umpnpmgr.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\polstore.dll (PolicyAgent) . (.Microsoft Corporation - Windows IPsec SPD Server DLL.) - C:\WINDOWS\System32\IPSECSVC.DLL [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\WINDOWS\System32\profsvc.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: @oleres.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\WINDOWS\System32\rpcss.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Task Scheduler Service.) - C:\WINDOWS\System32\schedsvc.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\seclogon.dll (seclogon) . (.Microsoft Corporation - Secondary Logon Service DLL.) - C:\WINDOWS\System32\seclogon.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\Sens.dll (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) - C:\WINDOWS\System32\Sens.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) - C:\WINDOWS\System32\shsvcs.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\Windows\System32\SLsvc.exe,-101 (slsvc) . (.Microsoft Corporation - Microsoft Software Licensing Service.) - C:\WINDOWS\System32\SLsvc.exe [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\Windows\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Spooler SubSystem App.) - C:\WINDOWS\System32\spoolsv.exe [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\wiaservc.dll (stisvc) . (.Microsoft Corporation - Still Image Devices Service.) - C:\WINDOWS\System32\wiaservc.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\sysmain.dll (SysMain) . (.Microsoft Corporation - Superfetch Service Host.) - C:\WINDOWS\System32\sysmain.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\TabSvc.dll (TabletInputService) . (.Microsoft Corporation - Microsoft Tablet PC Input Service.) - C:\WINDOWS\System32\TabSvc.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\tbssvc.dll (TBS) . (.Microsoft Corporation - TBS Service.) - C:\WINDOWS\System32\tbssvc.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\termsrv.dll (TermService) . (.Microsoft Corporation - Terminal Server Remote Connections Manager.) - C:\WINDOWS\System32\termsrv.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\shsvcs.dll (Themes) . (.Microsoft Corporation - Windows Shell Services Dll.) - C:\WINDOWS\System32\shsvcs.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\upnphost.dll (upnphost) . (.Microsoft Corporation - UPnP Device Host.) - C:\WINDOWS\System32\upnphost.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\Windows\System32\dwm.exe,-2000 (UxSms) . (.Microsoft Corporation - Microsoft User Experience Session Managemen.) - C:\WINDOWS\System32\uxsms.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\w32time.dll (W32Time) . (.Microsoft Corporation - Windows Time Service.) - C:\WINDOWS\System32\w32time.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\WebClnt.dll (WebClient) . (.Microsoft Corporation - Web DAV Service DLL.) - C:\WINDOWS\System32\WebClnt.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\wersvc.dll (WerSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) - C:\WINDOWS\System32\wersvc.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: @%ProgramFiles%\Windows Defender\MsMpRes.dll,-103 (WinDefend) . (.Microsoft Corporation - Service Module.) - C:\Program Files\Windows Defender\MpSvc.dll =>.Microsoft Windows®
                O23 - Service: C:\WINDOWS\System32\wbem\WMIsvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\WINDOWS\System32\wbem\WMIsvc.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\wpdbusenum.dll (WPDBusEnum) . (.Microsoft Corporation - Portable Device Enumerator.) - C:\WINDOWS\System32\wpdbusenum.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) - C:\WINDOWS\System32\wscsvc.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\Windows\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Microsoft Windows Search Indexer.) - C:\WINDOWS\System32\SearchIndexer.exe [Unsigned] =>.Microsoft Corporation
                O23 - Service: C:\WINDOWS\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) - C:\WINDOWS\System32\wuaueng.dll =>.Microsoft Windows Component Publisher®
                O23 - Service: C:\WINDOWS\System32\WUDFSvc.dll (wudfsvc) . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) - C:\WINDOWS\System32\WUDFSvc.dll [Unsigned] =>.Microsoft Corporation
                O23 - Service: XAudioService (XAudioService) . (.Conexant Systems, Inc. - Modem Audio Service.) - C:\WINDOWS\System32\drivers\XAudio.exe [Unsigned] =>.Conexant Systems, Inc.

                —\ Services not Microsoft (SR=Run, SS=Stop) (87) - 71s
                SR - Auto [24/09/2015] [ 81088] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
                SS - Demand [08/12/2020] [ 335416] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe.) - C:\WINDOWS\System32\Macromed\Flash\FlashPlayerUpda teService.exe [Unsigned] =>.Adobe
                SR - Disabl [02/11/2006] [ 420968] (adp94xx) . (.Adaptec, Inc..) - C:\WINDOWS\System32\drivers\adp94xx.sys =>.Microsoft Windows®
                SR - Disabl [02/11/2006] [ 297576] (adpahci) . (.Adaptec, Inc..) - C:\WINDOWS\System32\drivers\adpahci.sys =>.Microsoft Windows®
                SR - Disabl [02/11/2006] [ 98408] (adpu160m) . (.Adaptec, Inc..) - C:\WINDOWS\System32\drivers\adpu160m.sys =>.Microsoft Windows®
                SR - Disabl [02/11/2006] [ 147048] (adpu320) . (.Adaptec, Inc..) - C:\WINDOWS\System32\drivers\adpu320.sys =>.Microsoft Windows®
                SR - Disabl [02/11/2006] [ 71272] (aic78xx) . (.Adaptec, Inc..) - C:\WINDOWS\System32\drivers\djsvs.sys =>.Microsoft Windows®
                SR - Disabl [02/11/2006] [ 14952] (aliide) . (.Acer Laboratories Inc..) - C:\WINDOWS\System32\drivers\aliide.sys =>.Microsoft Windows®
                SR - Disabl [02/11/2006] [ 67688] (arc) . (.Adaptec, Inc..) - C:\WINDOWS\System32\drivers\arc.sys =>.Microsoft Windows®
                SR - Disabl [02/11/2006] [ 67688] (arcsas) . (.Adaptec, Inc..) - C:\WINDOWS\System32\drivers\arcsas.sys =>.Microsoft Windows®
                SR - System [15/12/2022] [ 167480] aswArPot (aswArPot) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswArPot.sys =>.AVAST Software s.r.o.®
                SR - System [15/12/2022] [ 188976] aswbidsdriver (aswbidsdriver) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswbidsdriverx.sys =>.AVAST Software s.r.o.®
                SR - Boot [15/12/2022] [ 165384] aswbidsh (aswbidsh) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswbidshx.sys =>.AVAST Software s.r.o.®
                SR - Boot [15/12/2022] [ 284256] aswblog (aswblog) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswblogx.sys =>.AVAST Software s.r.o.®
                SR - Boot [15/12/2022] [ 57904] aswbuniv (aswbuniv) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswbunivx.sys =>.AVAST Software s.r.o.®
                SR - System [15/12/2022] [ 183176] aswHdsKe (aswHdsKe) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswHdsKe.sys =>.AVAST Software s.r.o.®
                SR - Demand [15/12/2022] [ 42736] aswHwid (aswHwid) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswHwid.sys =>.AVAST Software s.r.o.®
                SR - System [15/12/2022] [ 40688] aswKbd (aswKbd) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswKbd.sys =>.AVAST Software s.r.o.®
                SR - Auto [15/12/2022] [ 135200] aswMonFlt (aswMonFlt) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswMonFlt.sys =>.AVAST Software s.r.o.®
                SR - System [15/12/2022] [ 70640] aswRdr (aswRdr) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswRdr.sys =>.AVAST Software s.r.o.®
                SR - Boot [15/12/2022] [ 72800] aswRvrt (aswRvrt) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswRvrt.sys =>.AVAST Software s.r.o.®
                SR - System [15/12/2022] [ 784552] aswSnx (aswSnx) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswSnx.sys =>.AVAST Software s.r.o.®
                SR - System [15/12/2022] [ 397984] aswSP (aswSP) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswSP.sys =>.AVAST Software s.r.o.®
                SR - Demand [15/12/2022] [ 146584] aswStmXP (aswStmXP) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswStmXP.sys =>.AVAST Software s.r.o.®
                SR - Boot [15/12/2022] [ 310200] aswVmm (aswVmm) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswVmm.sys =>.AVAST Software s.r.o.®
                SR - Auto [15/12/2022] [ 324000] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software s.r.o.®
                SR - Disabl [00/00/0000] [ 0] (blbdrive) . (…) - C:\Windows\System32\drivers\blbdrive.sys (.not file.) [Unsigned]
                SR - Demand [02/11/2006] [ 13568] Brother USB Mass-Storage Lower Filter Driver (BrFiltLo) . (.Brother Industries, Ltd..) - C:\WINDOWS\System32\drivers\BrFiltLo.sys [Unsigned] =>.Brother Industries, Ltd.
                SR - Demand [02/11/2006] [ 5248] Brother USB Mass-Storage Upper Filter Driver (BrFiltUp) . (.Brother Industries, Ltd..) - C:\WINDOWS\System32\drivers\BrFiltUp.sys [Unsigned] =>.Brother Industries, Ltd.
                SR - Disabl [02/11/2006] [ 71808] Brother MFC Serial Port Interface Driver (WDM) (Brserid) . (.Brother Industries Ltd..) - C:\WINDOWS\System32\drivers\BrSerId.sys [Unsigned] =>.Brother Industries Ltd.
                SR - Disabl [02/11/2006] [ 62336] Brother WDM Serial driver (BrSerWdm) . (.Brother Industries Ltd..) - C:\WINDOWS\System32\drivers\BrSerWdm.sys [Unsigned] =>.Brother Industries Ltd.
                SR - Disabl [02/11/2006] [ 12160] Brother MFC USB Fax Only Modem (BrUsbMdm) . (.Brother Industries Ltd..) - C:\WINDOWS\System32\drivers\BrUsbMdm.sys [Unsigned] =>.Brother Industries Ltd.
                SR - Demand [02/11/2006] [ 11904] Brother MFC USB Serial WDM Driver (BrUsbSer) . (.Brother Industries Ltd..) - C:\WINDOWS\System32\drivers\BrUsbSer.sys [Unsigned] =>.Brother Industries Ltd.
                SR - Disabl [02/11/2006] [ 16488] (cmdide) . (.CMD Technology, Inc..) - C:\WINDOWS\System32\drivers\cmdide.sys =>.Microsoft Windows®
                SR - Demand [02/11/2006] [ 117760] Intel(R) PRO/1000 NDIS 6 Adapter Driver (E1G60) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\E1G60I32.sys [Unsigned] =>.Intel Corporation
                SR - Disabl [02/11/2006] [ 316520] (elxstor) . (.Emulex.) - C:\WINDOWS\System32\drivers\elxstor.sys =>.Microsoft Windows®
                SR - Auto [09/08/2017] [ 153168] Google Update Service (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
                SS - Demand [09/08/2017] [ 153168] Google Update Service (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
                SR - Auto [19/09/2007] [ 65536] HP Health Check Service (HP Health Check Service) . (.Hewlett-Packard.) - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [Unsigned] =>.Hewlett-Packard
                SR - Disabl [02/11/2006] [ 37480] (HpCISSs) . (.Hewlett-Packard Company.) - C:\WINDOWS\System32\drivers\HpCISSs.sys =>.Microsoft Windows®
                SR - Demand [08/05/2008] [ 980992] (HSF_DP) . (.Conexant Systems, Inc..) - C:\WINDOWS\System32\drivers\HSX_DP.sys [Unsigned] =>.Conexant Systems, Inc.
                SR - Demand [08/05/2008] [ 266752] (HSXHWBS2) . (.Conexant Systems, Inc..) - C:\WINDOWS\System32\drivers\HSXHWBS2.sys [Unsigned] =>.Conexant Systems, Inc.
                SR - Demand [25/03/2008] [ 2307072] (ialm) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\igdkmd32.sys [Unsigned] =>.Intel Corporation
                SR - Disabl [02/11/2006] [ 232040] Intel RAID Controller Vista (iaStorV) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorV.sys =>.Microsoft Windows®
                SR - Demand [25/03/2008] [ 2307072] (igfx) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\igdkmd32.sys [Unsigned] =>.Intel Corporation
                SR - Disabl [02/11/2006] [ 41576] (iirsp) . (.Intel Corp./ICP vortex GmbH.) - C:\WINDOWS\System32\drivers\iirsp.sys =>.Microsoft Windows®
                SR - Demand [15/01/2008] [ 2047576] Service for Realtek HD Audio (WDM) (IntcAzAudAddService) . (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RTKVHDA.sys =>.Realtek Semiconductor Corp®
                SR - Demand [00/00/0000] [ 0] IP in IP Tunnel Driver (IpInIp) . (…) - C:\Windows\System32\DRIVERS\ipinip.sys (.not file.) [Unsigned]
                SR - Disabl [02/11/2006] [ 35944] ITEATAPI_Service_Install (iteatapi) . (.Integrated Technology Express, Inc..) - C:\WINDOWS\System32\drivers\iteatapi.sys =>.Microsoft Windows®
                SR - Disabl [02/11/2006] [ 35944] ITERAID_Service_Install (iteraid) . (.Integrated Technology Express, Inc..) - C:\WINDOWS\System32\drivers\iteraid.sys =>.Microsoft Windows®
                SR - Auto [17/03/2009] [ 73728] LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe [Unsigned] =>.Hewlett-Packard Company
                SR - Disabl [02/11/2006] [ 65640] (LSI_FC) . (.LSI Logic.) - C:\WINDOWS\System32\drivers\lsi_fc.sys =>.Microsoft Windows®
                SR - Disabl [02/11/2006] [ 65640] (LSI_SAS) . (.LSI Logic.) - C:\WINDOWS\System32\drivers\lsi_sas.sys =>.Microsoft Windows®
                SR - Disabl [02/11/2006] [ 65640] (LSI_SCSI) . (.LSI Logic.) - C:\WINDOWS\System32\drivers\lsi_scsi.sys =>.Microsoft Windows®
                SR - Demand [00/00/0000] [ 0] MBAMSwissArmy (MBAMSwissArmy) . (…) - C:\Windows\System32\Drivers\mbamswissarmy.sys (.not file.) [Unsigned]
                SR - Auto [19/06/2006] [ 12672] (mdmxsdk) . (.Conexant.) - C:\WINDOWS\System32\drivers\mdmxsdk.sys [Unsigned] =>.Conexant
                SR - Disabl [02/11/2006] [ 28776] (megasas) . (.LSI Logic Corporation.) - C:\WINDOWS\System32\drivers\megasas.sys =>.Microsoft Windows®
                SS - Demand [27/06/2018] [ 174032] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
                SR - Disabl [02/11/2006] [ 33384] (Mraid35x) . (.LSI Logic Corporation.) - C:\WINDOWS\System32\drivers\Mraid35x.sys =>.Microsoft Windows®
                SS - Demand [00/00/0000] [ 0] @%SystemRoot%\system32\msimsg.dll,-27 (msiserver) . (…) - C:\Windows\System32\msiexec .msiexec (.not file.) [Unsigned]
                SR - Disabl [02/11/2006] [ 45160] (nfrd960) . (.IBM Corporation.) - C:\WINDOWS\System32\drivers\nfrd960.sys =>.Microsoft Windows®
                SR - Disabl [02/11/2006] [ 20608] N-trig HID Tablet Driver (ntrigdigi) . (.N-trig Innovative Technologies.) - C:\WINDOWS\System32\drivers\ntrigdigi.sys [Unsigned] =>.N-trig Innovative Technologies
                SR - Disabl [02/11/2006] [ 88680] (nvraid) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvraid.sys =>.Microsoft Windows®
                SR - Disabl [02/11/2006] [ 40040] (nvstor) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvstor.sys =>.Microsoft Windows®
                SR - Demand [00/00/0000] [ 0] IPX Traffic Filter Driver (NwlnkFlt) . (…) - C:\Windows\System32\DRIVERS\nwlnkflt.sys (.not file.) [Unsigned]
                SR - Demand [00/00/0000] [ 0] IPX Traffic Forwarder Driver (NwlnkFwd) . (…) - C:\Windows\System32\DRIVERS\nwlnkfwd.sys (.not file.) [Unsigned]
                SR - Disabl [02/11/2006] [ 900712] QLogic Fibre Channel Miniport Driver (ql2300) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\ql2300.sys =>.Microsoft Windows®
                SR - Disabl [02/11/2006] [ 106088] QLogic iSCSI Miniport Driver (ql40xx) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\ql40xx.sys =>.Microsoft Windows®
                SR - Demand [03/08/2007] [ 91648] Realtek 8169 NT Driver (RTL8169) . (.Realtek Corporation.) - C:\WINDOWS\System32\drivers\Rtlh86.sys [Unsigned] =>.Realtek Corporation
                SR - Disabl [02/11/2006] [ 38504] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\WINDOWS\System32\drivers\sisraid2.sys =>.Microsoft Windows®
                SR - Disabl [02/11/2006] [ 71784] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\WINDOWS\System32\drivers\sisraid4.sys =>.Microsoft Windows®
                SR - Disabl [02/11/2006] [ 35944] (Symc8xx) . (.LSI Logic.) - C:\WINDOWS\System32\drivers\symc8xx.sys =>.Microsoft Windows®
                SR - Demand [00/00/0000] [ 0] Symantec Network Security Intermediate Filter Service (SymIM) . (…) - C:\Windows\System32\DRIVERS\SymIM.sys (.not file.) [Unsigned]
                SR - Demand [00/00/0000] [ 0] (SymIMMP) . (…) - C:\Windows\System32\DRIVERS\SymIM.sys (.not file.) [Unsigned]
                SR - Disabl [02/11/2006] [ 31848] (Sym_hi) . (.LSI Logic.) - C:\WINDOWS\System32\drivers\sym_hi.sys =>.Microsoft Windows®
                SR - Disabl [02/11/2006] [ 34920] (Sym_u3) . (.LSI Logic.) - C:\WINDOWS\System32\drivers\sym_u3.sys =>.Microsoft Windows®
                SR - Auto [23/01/2009] [ 44384] Acronis True Image FS Filter (tifsfilter) . (.Acronis.) - C:\WINDOWS\System32\drivers\tifsfilt.sys =>.Acronis, Inc®
                SR - Boot [23/01/2009] [ 441760] Acronis True Image Backup Archive Explorer (timounter) . (.Acronis.) - C:\WINDOWS\System32\drivers\timntr.sys =>.Acronis, Inc®
                SR - Disabl [02/11/2006] [ 235112] (uliahci) . (.ULi Electronics Inc..) - C:\WINDOWS\System32\drivers\uliahci.sys =>.Microsoft Windows®
                SR - Disabl [02/11/2006] [ 98408] (UlSata) . (.Promise Technology, Inc..) - C:\WINDOWS\System32\drivers\ulsata.sys =>.Microsoft Windows®
                SR - Disabl [02/11/2006] [ 115816] (ulsata2) . (.Promise Technology, Inc..) - C:\WINDOWS\System32\drivers\ulsata2.sys =>.Microsoft Windows®
                SR - Disabl [02/11/2006] [ 17512] (viaide) . (.VIA Technologies, Inc..) - C:\WINDOWS\System32\drivers\viaide.sys =>.Microsoft Windows®
                SR - Disabl [02/11/2006] [ 112232] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\WINDOWS\System32\drivers\vsmraid.sys =>.Microsoft Windows®
                SR - Demand [01/11/2006] [ 33588] WAN Miniport (ATW) (wanatw) . (.America Online, Inc..) - C:\WINDOWS\System32\drivers\wanatw4.sys [Unsigned] =>.America Online, Inc.
                SR - Demand [08/05/2008] [ 661504] (winachsf) . (.Conexant Systems, Inc..) - C:\WINDOWS\System32\drivers\HSX_CNXT.sys [Unsigned] =>.Conexant Systems, Inc.
                SR - Auto [18/10/2007] [ 8704] (XAudio) . (.Conexant Systems, Inc..) - C:\WINDOWS\System32\drivers\XAudio.sys [Unsigned] =>.Conexant Systems, Inc.
                SR - Auto [18/10/2007] [ 386560] XAudioService (XAudioService) . (.Conexant Systems, Inc..) - C:\WINDOWS\System32\drivers\XAudio.exe [Unsigned] =>.Conexant Systems, Inc.

                —\ Task Planned Automatically (Register) (8) - 7s
                O38 - TASK: {7C040E69-E581-4AC7-8EB4-91071E0C4223}[\GoogleUpdateTaskMachineCore] - (.Google Inc. - Google Installer.) – C:\Program Files\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc.
                O38 - TASK: {82D27DDD-CDE9-4646-8F0E-62E5BACA334D}[\GoogleUpdateTaskMachineUA] - (.Google Inc. - Google Installer.) – C:\Program Files\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc.
                O38 - TASK: {AB2E9287-6A5A-4902-9415-5286C3725604}[\Avast Emergency Update] - (.AVAST Software - Avast Emergency Update.) – C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2762968] =>.AVAST Software
                O38 - TASK: {C33B7959-E56A-475B-BCD0-562348DC4289}[\Avast Software\Overseer] - (.AVAST Software - Avast Overseer.) – C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1630008] =>.AVAST Software
                C:\Windows\System32\Tasks\GoogleUpdateTaskMachineC ore - (.Google Inc..) – C:\Program Files\Google\Update\GoogleUpdate.exe [/c] =>.Google Inc.
                C:\Windows\System32\Tasks\GoogleUpdateTaskMachineU A - (.Google Inc..) – C:\Program Files\Google\Update\GoogleUpdate.exe [/ua ./ua] =>.Google Inc.
                C:\Windows\System32\Tasks\Avast Emergency Update - (.AVAST Software.) – C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe =>.AVAST Software
                C:\Windows\System32\Tasks\Avast Software\Overseer - (.AVAST Software.) – C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe =>.AVAST Software

                —\ Auto loading programs from Registry and folders (9) - 1s
                O4 - HKLM..\Run: [hpsysdrv] . (.Hewlett-Packard Company - hpsysdrv.) – c:\hp\support\hpsysdrv.exe [Unsigned] =>.Hewlett-Packard Company
                O4 - HKLM..\Run: [OsdMaestro] . (.OsdMaestro - OsdMaestro main program.) – C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe [Unsigned] =>.OsdMaestro
                O4 - HKLM..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) – C:\WINDOWS\System32\hkcmd.exe =>.Intel Corporation®
                O4 - HKLM..\Run: [Persistence] . (.Intel Corporation - persistence Module.) – C:\WINDOWS\System32\igfxpers.exe =>.Intel Corporation®
                O4 - HKLM..\Run: [AvastUI.exe] . (.AVAST Software - AvLaunch component.) – C:\Program Files\AVAST Software\Avast\AvLaunch.exe =>.AVAST Software s.r.o.®
                O4 - HKCU..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) – C:\WINDOWS\ehome\ehtray.exe [Unsigned] =>.Microsoft Corporation
                O4 - HKCU..\Run: [Aim] . (.AOL Inc. - AOL Instant Messenger.) – C:\Program Files\AIM\aim.exe =>.AOL Inc.®
                O4 - HKUS\S-1-5-21-2314338359-2121603862-2684469121-1000..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) – C:\WINDOWS\ehome\ehtray.exe [Unsigned] =>.Microsoft Corporation
                O4 - HKUS\S-1-5-21-2314338359-2121603862-2684469121-1000..\Run: [Aim] . (.AOL Inc. - AOL Instant Messenger.) – C:\Program Files\AIM\aim.exe =>.AOL Inc.®

                —\ Process running (20) - 4s
                [MD5.CD8EC552551810716A60F52B265137D9] - (.AVAST Software - Avast Service.) – C:\Program Files\AVAST Software\Avast\AvastSvc.exe [324000] [PID.1668] =>.AVAST Software s.r.o.®
                [MD5.FC5B75CA6A1DA31EDD4F8D53F5540B98] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) – C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [81088] [PID.1708] =>.Adobe Systems, Incorporated®
                [MD5.DFEFF67508D3A9AEB1A85D7B0F513B24] - (.Hewlett-Packard Company - LightScribe Service.) – C:\Program Files\Common Files\LightScribe\LSSrvc.exe [73728] [PID.1456] [Unsigned] =>.Hewlett-Packard Company
                [MD5.9A4322EE420D6FACD4D4B1FF6CB856B1] - (.Hewlett-Packard Company - hpsysdrv.) – C:\hp\support\hpsysdrv.exe [65536] [PID.980] [Unsigned] =>.Hewlett-Packard Company
                [MD5.B1361669BDC6ED612C35B7C67ADA2240] - (.OsdMaestro - OsdMaestro main program.) – C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe [118784] [PID.1288] [Unsigned] =>.OsdMaestro
                [MD5.361CD47DC5BD83EE24407903233B0D9A] - (.Realtek Semiconductor - HD Audio Control Panel.) – C:\WINDOWS\RtHDVCpl.exe [4874240] [PID.1112] [Unsigned] =>.Realtek Semiconductor
                [MD5.409E5B10053382C9D339BAEAA6584999] - (.Intel Corporation - hkcmd Module.) – C:\WINDOWS\System32\hkcmd.exe [166424] [PID.2056] =>.Intel Corporation®
                [MD5.B76195C8E8845FF2A8FA658709345DE2] - (.Intel Corporation - persistence Module.) – C:\WINDOWS\System32\igfxpers.exe [133656] [PID.2064] =>.Intel Corporation®
                [MD5.1CF370D5C495F52DB8B83346BDF3AE7C] - (.Intel Corporation - igfxsrvc Module.) – C:\WINDOWS\System32\igfxsrvc.exe [256536] [PID.2092] =>.Intel Corporation®
                [MD5.583C79A7128B8604306735975A8BD5DD] - (.AOL Inc. - AOL Instant Messenger.) – C:\Program Files\AIM\aim.exe [4156312] [PID.2260] =>.AOL Inc.®
                [MD5.CD5F291A1161F15896D1A4D63DAFF5DF] - (.Conexant Systems, Inc. - Modem Audio Service.) – C:\WINDOWS\System32\drivers\XAudio.exe [386560] [PID.2620] [Unsigned] =>.Conexant Systems, Inc.
                [MD5.97D8F69DFBD5584A52C1D881E0A7518E] - (.AVAST Software - Avast Antivirus.) – C:\Program Files\AVAST Software\Avast\AvastUI.exe [11193560] [PID.2420] =>.AVAST Software s.r.o.®
                [MD5.EFB5B4E32AC9E2721F79E455CAF8D6DD] - (.AVAST Software - Avast Behavior Shield.) – C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6799632] [PID.3220] =>.AVAST Software s.r.o.®
                [MD5.06FAA58219BF8B6D1BC25C2783763E11] - (.Google Inc. - Google Chrome.) – C:\Program Files\Google\Chrome\Application\chrome.exe [874648] [PID.1168] =>.Google Inc®
                [MD5.06FAA58219BF8B6D1BC25C2783763E11] - (.Google Inc. - Google Chrome.) – C:\Program Files\Google\Chrome\Application\chrome.exe [874648] [PID.1828] =>.Google Inc®
                [MD5.06FAA58219BF8B6D1BC25C2783763E11] - (.Google Inc. - Google Chrome.) – C:\Program Files\Google\Chrome\Application\chrome.exe [874648] [PID.4176] =>.Google Inc®
                [MD5.06FAA58219BF8B6D1BC25C2783763E11] - (.Google Inc. - Google Chrome.) – C:\Program Files\Google\Chrome\Application\chrome.exe [874648] [PID.4336] =>.Google Inc®
                [MD5.FA7346F3C657197C00B20572EC01C61E] - (.Mozilla Corporation - Firefox.) – C:\Program Files\Mozilla Firefox\firefox.exe [517072] [PID.4884] =>.Mozilla Corporation®
                [MD5.FA7346F3C657197C00B20572EC01C61E] - (.Mozilla Corporation - Firefox.) – C:\Program Files\Mozilla Firefox\firefox.exe [517072] [PID.5740] =>.Mozilla Corporation®
                [MD5.2864FE6DD54C1CF9D06B6FD3CFC92040] - (.Nicolas Coolman - ZHPSuite.) – C:\Users\John\AppData\Roaming\ZHP\ZHPSuite.exe [3510472] [PID.4692] [Unsigned] =>.Nicolas Coolman

                —\ Google Chrome, Start,Search,Extensions (9) - 1s
                G2 - GCE: Preference [John][User Data\Default\Extensions] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides}
                G2 - GCE: Preference [John][User Data\Default\Extensions] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs}
                G2 - GCE: Preference [John][User Data\Default\Extensions] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive}
                G2 - GCE: Preference [John][User Data\Default\Extensions] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube}
                G2 - GCE: Preference [John][User Data\Default\Extensions] [felcaaldnbdncclmgdcncolpebgiejap] =>.Google Inc. {Sheets}
                G2 - GCE: Preference [John][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
                G2 - GCE: Preference [John][User Data\Default\Extensions] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet}
                G2 - GCE: Preference [John][User Data\Default\Extensions] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail}
                G2 - GCE: Preference [John][User Data\Default\Local Extension Settings] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}

                —\ Mozilla Firefox,Plugins,Start,Search,Extensions (25) - 6s
                P2 - EXT FILE: (.Avast Software s.r.o.) – C:\Users\John\AppData\Roaming\Mozilla\Firefox\Prof iles\su7k0ty2.default-1670861870862\extensionssp@avast.com.xpi [Unsigned] =>.Avast Software s.r.o
                P2 - EXT FILE: (.Avast Software s.r.o.) – C:\Users\John\AppData\Roaming\Mozilla\Firefox\Prof iles\su7k0ty2.default-1670861870862\extensionswrc@avast.com.xpi [Unsigned] =>.Avast Software s.r.o
                P2 - EXT FILE: (.Macromedia, Inc. - Macromedia Authorware Web Player Netscape p.) – C:\Program Files\Mozilla Firefox\Plugins\np32asw.dll =>.Macromedia, Inc.®
                P2 - EXT FILE: (.AOL LLC - npdnu.) – C:\Program Files\Mozilla Firefox\Plugins\npdnu.dll [Unsigned] =>.AOL LLC
                P2 - EXT FILE: (.AOL LLC - npdnupdater2.) – C:\Program Files\Mozilla Firefox\Plugins\npdnupdater2.dll [Unsigned] =>.AOL LLC
                P2 - EXT FILE: (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape.) – C:\Program Files\Mozilla Firefox\Plugins\nppdf32.dll =>.Adobe Systems, Incorporated®
                P2 - EXT FILE: (.Mozilla - Firefox.) – C:\Program Files\Mozilla Firefox\browser\featuresaushelper@mozilla.org.xpi =>.Mozilla
                P2 - EXT FILE: (.Mozilla - Firefox.) – C:\Program Files\Mozilla Firefox\browser\featurese10srollout@mozilla.org.xpi =>.Mozilla
                P2 - EXT FILE: (.Mozilla Corporation.) – C:\Program Files\Mozilla Firefox\browser\featuresfirefox@getpocket.com.xpi [Unsigned] =>.Mozilla Corporation
                P2 - EXT FILE: (.Mozilla - Firefox.) – C:\Program Files\Mozilla Firefox\browser\featureswebcompat@mozilla.org.xpi =>.Mozilla
                P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe.) – C:\WINDOWS\System32\Macromed\Flash\NPSWF32_32_0_0_ 465.dll =>.Adobe
                C:\Users\John\AppData\Roaming\Mozilla\Firefox\Prof iles\su7k0ty2.default-1670861870862\bookmarkbackups =>Mozilla Corporation
                C:\Users\John\AppData\Roaming\Mozilla\Firefox\Prof iles\su7k0ty2.default-1670861870862\browser-extension-data =>Mozilla Corporation
                C:\Users\John\AppData\Roaming\Mozilla\Firefox\Prof iles\su7k0ty2.default-1670861870862\crashes =>Mozilla Corporation
                C:\Users\John\AppData\Roaming\Mozilla\Firefox\Prof iles\su7k0ty2.default-1670861870862\datareporting =>Mozilla Corporation
                C:\Users\John\AppData\Roaming\Mozilla\Firefox\Prof iles\su7k0ty2.default-1670861870862\extensions =>Mozilla Corporation
                C:\Users\John\AppData\Roaming\Mozilla\Firefox\Prof iles\su7k0ty2.default-1670861870862\features =>Mozilla Corporation
                C:\Users\John\AppData\Roaming\Mozilla\Firefox\Prof iles\su7k0ty2.default-1670861870862\gmp =>Mozilla Corporation
                C:\Users\John\AppData\Roaming\Mozilla\Firefox\Prof iles\su7k0ty2.default-1670861870862\gmp-gmpopenh264 =>Mozilla Corporation
                C:\Users\John\AppData\Roaming\Mozilla\Firefox\Prof iles\su7k0ty2.default-1670861870862\gmp-widevinecdm =>Mozilla Corporation
                C:\Users\John\AppData\Roaming\Mozilla\Firefox\Prof iles\su7k0ty2.default-1670861870862\minidumps =>Mozilla Corporation
                C:\Users\John\AppData\Roaming\Mozilla\Firefox\Prof iles\su7k0ty2.default-1670861870862\saved-telemetry-pings =>Mozilla Corporation
                C:\Users\John\AppData\Roaming\Mozilla\Firefox\Prof iles\su7k0ty2.default-1670861870862\sessionstore-backups =>Mozilla Corporation
                C:\Users\John\AppData\Roaming\Mozilla\Firefox\Prof iles\su7k0ty2.default-1670861870862\storage =>Mozilla Corporation
                C:\Users\John\AppData\Roaming\Mozilla\Firefox\Prof iles\su7k0ty2.default-1670861870862\weave =>Mozilla Corporation

                —\ Internet Explorer Extensions, Start, Search (9) - 0s
                R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ =>.Yahoo! Inc.
                R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ =>.Yahoo! Inc.
                R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://search.yahoo.com/ =>.Yahoo! Inc.
                R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.yahoo.com/ =>.Yahoo! Inc.
                R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://search.yahoo.com/ =>.Yahoo! Inc.
                R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
                R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
                R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab =>.Microsoft Corporation
                R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Internet Explorer.) (8.00.6001.18702 (longhorn_ie8_rtm(wmbla).090308-0339)) – C:\WINDOWS\System32\ieframe.dll =>.Microsoft Corporation

                —\ INTERNET EXPLORER, trusted site and sensitive site (2) - 0s
                ~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad)
                ~ Microsoft Internet Explorer Restricted Site(s) EscDomains: 0(Good) / 0(Bad)

                —\ Internet Explorer, Proxy Management (6) - 0s
                R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyEnable = 0 =>.Default.Value
                R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Int ernet Settings,MigrateProxy = 1 =>.Default.Value
                R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Int ernet Settings,EnableHttp1_1 = 1 =>.Default.Value
                R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyHttp1.1 = 0
                R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Int ernet Settings,AutoConfigProxy = wininet.dll
                R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Para meters\Internet\ManualProxies =>.Microsoft

                —\ Line Analysis, IniFiles, Auto loading programs (3) - 0s
                F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
                F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
                F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL “sysdm.cpl”

                —\ Hosts file redirection (1) - 0s
                ~ Le fichier hôte est sain (The hosts file is clean) (2)

                —\ Browser Helper Object (BHO) (2) - 0s
                O2 - BHO: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java™ Platform SE binary.) – C:\Program Files\Java\jre1.8.0_91\bin\ssv.dll =>.Oracle America, Inc.®
                O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java™ Platform SE binary.) – C:\Program Files\Java\jre1.8.0_91\bin\jp2ssv.dll =>.Oracle America, Inc.®

                —\ Global shortcuts Startup (86) - 14s
                O4 - GS\Desktop [Administrator]: ZHPSuite.lnk . (.Nicolas Coolman - ZHPSuite.) C:\Users\John\AppData\Roaming\ZHP\ZHPSuite.exe =>.Nicolas Coolman
                O4 - GS\Quicklaunch [Administrator]: AIM.lnk . (.AOL Inc. - AOL Instant Messenger.) C:\Program Files\AIM\aim.exe /d locale=en-US =>.AOL Inc.®
                O4 - GS\Quicklaunch [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
                O4 - GS\Quicklaunch [Administrator]: Launch Internet Explorer Browser (2).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
                O4 - GS\Quicklaunch [Administrator]: Mozilla Firefox (2).lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
                O4 - GS\Quicklaunch [Administrator]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
                O4 - GS\Quicklaunch [Administrator]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
                O4 - GS\Programs [Administrator]: CyberLink DVD Suite Deluxe.lnk . (.CyberLink - PowerStarter.) C:\Program Files\CyberLink\DVD Suite Deluxe\PowerStarter.exe =>.CyberLink®
                O4 - GS\Programs [Administrator]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
                O4 - GS\Programs [Administrator]: Windows Mail.lnk . (.Microsoft Corporation - Windows Mail.) C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation
                O4 - GS\Programs [Administrator]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
                O4 - GS\Desktop [Guest]: ZHPSuite.lnk . (.Nicolas Coolman - ZHPSuite.) C:\Users\John\AppData\Roaming\ZHP\ZHPSuite.exe =>.Nicolas Coolman
                O4 - GS\Quicklaunch [Guest]: AIM.lnk . (.AOL Inc. - AOL Instant Messenger.) C:\Program Files\AIM\aim.exe /d locale=en-US =>.AOL Inc.®
                O4 - GS\Quicklaunch [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
                O4 - GS\Quicklaunch [Guest]: Launch Internet Explorer Browser (2).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
                O4 - GS\Quicklaunch [Guest]: Mozilla Firefox (2).lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
                O4 - GS\Quicklaunch [Guest]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
                O4 - GS\Quicklaunch [Guest]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
                O4 - GS\Programs [Guest]: CyberLink DVD Suite Deluxe.lnk . (.CyberLink - PowerStarter.) C:\Program Files\CyberLink\DVD Suite Deluxe\PowerStarter.exe =>.CyberLink®
                O4 - GS\Programs [Guest]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
                O4 - GS\Programs [Guest]: Windows Mail.lnk . (.Microsoft Corporation - Windows Mail.) C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation
                O4 - GS\Programs [Guest]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
                O4 - GS\Desktop [John]: ZHPSuite.lnk . (.Nicolas Coolman - ZHPSuite.) C:\Users\John\AppData\Roaming\ZHP\ZHPSuite.exe =>.Nicolas Coolman
                O4 - GS\Quicklaunch [John]: AIM.lnk . (.AOL Inc. - AOL Instant Messenger.) C:\Program Files\AIM\aim.exe /d locale=en-US =>.AOL Inc.®
                O4 - GS\Quicklaunch [John]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
                O4 - GS\Quicklaunch [John]: Launch Internet Explorer Browser (2).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
                O4 - GS\Quicklaunch [John]: Mozilla Firefox (2).lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
                O4 - GS\Quicklaunch [John]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
                O4 - GS\Quicklaunch [John]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
                O4 - GS\Programs [John]: CyberLink DVD Suite Deluxe.lnk . (.CyberLink - PowerStarter.) C:\Program Files\CyberLink\DVD Suite Deluxe\PowerStarter.exe =>.CyberLink®
                O4 - GS\Programs [John]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
                O4 - GS\Programs [John]: Windows Mail.lnk . (.Microsoft Corporation - Windows Mail.) C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation
                O4 - GS\Programs [John]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
                O4 - GS\CommonDesktop [Public]: Adobe Reader X.lnk . (.Adobe Systems Incorporated - Adobe Reader.) C:\Program Files\Adobe\Reader 10.0\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated®
                O4 - GS\CommonDesktop [Public]: AIM.lnk . (.AOL Inc. - AOL Instant Messenger.) C:\Program Files\AIM\aim.exe /d locale=en-US =>.AOL Inc.®
                O4 - GS\CommonDesktop [Public]: Avast Free Antivirus.lnk . (.AVAST Software - Avast Antivirus.) C:\Program Files\AVAST Software\Avast\AvastUI.exe =>.AVAST Software s.r.o.®
                O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
                O4 - GS\CommonDesktop [Public]: Internet & Digital Services.lnk . (.Hewlett-Packard - HP SDP Application Module.) C:\Program Files\Hewlett-Packard\SDP\HPSdpApp.exe /LaunchPage /eis [Unsigned] =>.Hewlett-Packard
                O4 - GS\CommonDesktop [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
                O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
                O4 - GS\CommonDesktop [Public]: MSN Installer.lnk . (.Microsoft Corp. - Msn Application.) C:\Program Files\MSN\MsnInstaller\msniadm.exe [Unsigned] =>.Microsoft Corp.
                O4 - GS\CommonDesktop [Public]: MSN.lnk . (…) C:\Program Files\Online Services\MSN90\msnsusii.exe [Unsigned]
                O4 - GS\CommonDesktop [Public]: Try Microsoft Office for 60 days.lnk . (…) C:\hp\bin\msoffice\trial.hta [Unsigned]
                O4 - GS\CommonDesktop [Public]: Windows Media Center.lnk . (.Microsoft Corporation - Media Center.) C:\WINDOWS\ehome\ehshell.exe =>.Microsoft Corporation
                O4 - GS\Programs [Public]: CyberLink DVD Suite Deluxe.lnk . (.CyberLink - PowerStarter.) C:\Program Files\CyberLink\DVD Suite Deluxe\PowerStarter.exe =>.CyberLink®
                O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
                O4 - GS\Programs [Public]: Windows Mail.lnk . (.Microsoft Corporation - Windows Mail.) C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation
                O4 - GS\Programs [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
                O4 - GS\Accessories [Public]: Command Prompt.lnk . (.Microsoft Corporation - Windows Command Processor.) C:\WINDOWS\System32\cmd.exe =>.Microsoft Corporation
                O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Notepad.) C:\WINDOWS\System32\notepad.exe =>.Microsoft Corporation
                O4 - GS\Accessories [Public]: Windows Explorer.lnk . (.Microsoft Corporation - Windows Explorer.) C:\WINDOWS\explorer.exe =>.Microsoft Corporation
                O4 - GS\SystemTools [Public]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe -extoff =>.Microsoft Corporation®
                O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Windows Calculator.) C:\WINDOWS\System32\calc.exe =>.Microsoft Corporation
                O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Windows Mobility Center.) C:\WINDOWS\System32\mblctr.exe /open =>.Microsoft Corporation
                O4 - GS\Accessories [Public]: NetworkProjection.lnk . (.Microsoft Corporation - Connect to a Network Projector.) C:\WINDOWS\System32\NetProj.exe =>.Microsoft Corporation
                O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\System32\mspaint.exe =>.Microsoft Corporation
                O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Remote Desktop Connection.) C:\WINDOWS\System32\mstsc.exe =>.Microsoft Corporation
                O4 - GS\Accessories [Public]: Sidebar.lnk . (.Microsoft Corporation - Windows Sidebar.) C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
                O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Snipping Tool.) C:\WINDOWS\System32\SnippingTool.exe =>.Microsoft Corporation
                O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Windows Sound Recorder.) C:\WINDOWS\System32\SoundRecorder.exe =>.Microsoft Corporation
                O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) C:\WINDOWS\System32\mobsync.exe =>.Microsoft Corporation
                O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\control.exe /name Microsoft.WelcomeCenter =>.Microsoft Corporation
                O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Windows Wordpad Application.) C:\Program Files\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
                O4 - GS\SystemTools [Public]: Backup.lnk . (.Microsoft Corporation - Microsoft® Windows Backup.) C:\Windows\System32\sdclt.exe =>.Microsoft Corporation
                O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Character Map.) C:\WINDOWS\System32\charmap.exe =>.Microsoft Corporation
                O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Microsoft® Disk Defragmenter.) C:\WINDOWS\System32\dfrgui.exe =>.Microsoft Corporation
                O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Disk Space Cleanup Manager for Windows.) C:\WINDOWS\System32\cleanmgr.exe =>.Microsoft Corporation
                O4 - GS\SystemTools [Public]: migwiz.lnk . (.Microsoft Corporation - Windows Easy Transfer.) C:\WINDOWS\System32\migwiz\migwiz.exe =>.Microsoft Windows®
                O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - System Information.) C:\WINDOWS\System32\msinfo32.exe =>.Microsoft Corporation
                O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Microsoft® Windows System Restore.) C:\WINDOWS\System32\rstrui.exe =>.Microsoft Corporation
                O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (…) C:\WINDOWS\System32\taskschd.msc /s [Unsigned] =>..Microsoft Corporation
                O4 - GS\ProgramsCommon [Public]: Adobe Reader X.lnk . (…) C:\Windows\Installer{AC76BA86-7AD7-1033-7B44-AA1000000001}\SC_Reader.ico [Unsigned] =>.Adobe Inc.
                O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
                O4 - GS\ProgramsCommon [Public]: HP Advisor.lnk . (.Hewlett-Packard - HP Advisor.) C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe =>.Hewlett-Packard Company®
                O4 - GS\ProgramsCommon [Public]: Media Center.lnk . (.Microsoft Corporation - Media Center.) C:\WINDOWS\ehome\ehshell.exe =>.Microsoft Corporation
                O4 - GS\ProgramsCommon [Public]: Microsoft Office PowerPoint Viewer 2007.lnk . (…) C:\Windows\Installer{95120000-00AF-0409-0000-0000000FF1CE}\ppvwicon.exe =>.Microsoft Corporation®
                O4 - GS\ProgramsCommon [Public]: Microsoft Works Task Launcher.lnk . (.Microsoft® Corporation - Microsoft® Works.) C:\Program Files\Microsoft Works\MSWorks.exe =>.Microsoft Corporation®
                O4 - GS\ProgramsCommon [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
                O4 - GS\ProgramsCommon [Public]: Windows Calendar.lnk . (.Microsoft Corporation - Windows Calendar.) C:\Program Files\Windows Calendar\WinCal.exe =>.Microsoft Corporation
                O4 - GS\ProgramsCommon [Public]: Windows Collaboration.lnk . (.Microsoft Corporation - Windows Meeting Space.) C:\Program Files\Windows Collaboration\WinCollab.exe =>.Microsoft Corporation
                O4 - GS\ProgramsCommon [Public]: Windows Contacts.lnk . (.Microsoft Corporation - Windows Contacts.) C:\Program Files\Windows Mail\wab.exe =>.Microsoft Corporation
                O4 - GS\ProgramsCommon [Public]: Windows Defender.lnk . (.Microsoft Corporation - Windows Defender User Interface.) C:\Program Files\Windows Defender\MSASCui.exe =>.Microsoft Windows®
                O4 - GS\ProgramsCommon [Public]: Windows DVD Maker.lnk . (.Microsoft Corporation - Windows DVD Maker.) C:\Program Files\Movie Maker\DVDMaker.exe =>.Microsoft Corporation
                O4 - GS\ProgramsCommon [Public]: Windows Mail.lnk . (.Microsoft Corporation - Windows Mail.) C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation
                O4 - GS\ProgramsCommon [Public]: Windows Movie Maker.lnk . (.Microsoft Corporation - Windows Movie Maker.) C:\Program Files\Movie Maker\MOVIEMK.exe =>.Microsoft Corporation
                O4 - GS\ProgramsCommon [Public]: Windows Photo Gallery.lnk . (.Microsoft Corporation - Windows Photo Gallery.) C:\Program Files\Windows Photo Gallery\WindowsPhotoGallery.exe =>.Microsoft Corporation

                —\ Lop.com/Domain Hijackers (2) - 0s
                O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 68.105.28.11 68.105.29.11 68.105.28.12 =>.USA Phoenix Cox Communications
                O17 - HKLM\System\CCS\Services\Tcpip..{73B646CC-8C74-4151-84F9-23E4B03FD810}: DhcpNameServer = 68.105.28.11 68.105.29.11 68.105.28.12 =>.USA Phoenix Cox Communications

                —\ Extra protocols (23) - 2s
                O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) – C:\WINDOWS\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
                O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\WINDOWS\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
                O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - ActiveX control for streaming video.) – C:\WINDOWS\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation
                O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\WINDOWS\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
                O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\WINDOWS\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
                O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\WINDOWS\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
                O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\WINDOWS\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
                O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) – C:\WINDOWS\System32\itss.dll [Unsigned] =>.Microsoft Corporation
                O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) – C:\WINDOWS\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
                O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\WINDOWS\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
                O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) – C:\WINDOWS\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
                O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) – C:\WINDOWS\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation
                O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\WINDOWS\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
                O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) – C:\WINDOWS\System32\itss.dll [Unsigned] =>.Microsoft Corporation
                O18 - Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) – C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll =>.Microsoft Corporation®
                O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) – C:\WINDOWS\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
                O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - ActiveX control for streaming video.) – C:\WINDOWS\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation
                O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) – C:\WINDOWS\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
                O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) – C:\WINDOWS\System32\mscoree.dll =>.Microsoft Corporation®
                O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) – C:\WINDOWS\System32\mscoree.dll =>.Microsoft Corporation®
                O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) – C:\WINDOWS\System32\mscoree.dll =>.Microsoft Corporation®
                O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\WINDOWS\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
                O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\WINDOWS\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation

                —\ AppInit_DLLs Registry value Autorun (1) - 0s
                O20 - Winlogon : UserInit . (.Microsoft Corporation - Userinit Logon Application.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation

                —\ ASIC (ActiveSetup Installed Components) (8) - 2s
                O40 - ASIC: Browser Customizations - >{60B49E34-C7CC-11D0-8953-00A0C90347FF} . (.Microsoft Corporation - Windows host process (Rundll32).) – C:\WINDOWS\System32\rundll32.exe [Unsigned] =>.Microsoft Corporation
                O40 - ASIC: Microsoft Windows Media Player 11.0 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) – C:\WINDOWS\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation
                O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - Microsoft(C) Register Server.) – C:\WINDOWS\System32\regsvr32.exe [Unsigned] =>.Microsoft Corporation
                O40 - ASIC: Microsoft Windows Mail 7 - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) – C:\Program Files\Windows Mail\WinMail.exe [Unsigned] =>.Microsoft Corporation
                O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Microsoft Windows Media Player Setup Utilit.) – C:\WINDOWS\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation
                O40 - ASIC: Internet Explorer - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - IE Per-User Initialization Utility.) – C:\WINDOWS\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation
                O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) – C:\WINDOWS\System32\mscories.dll =>.Microsoft Corporation®
                O40 - ASIC: Adobe Flash Player - {D27CDB6E-AE6D-11CF-96B8-444553540000} . (.Adobe - Adobe Flash Player 32.0 r0.) – C:\WINDOWS\System32\Macromed\Flash\Flash32_32_0_0_ 465.ocx [Unsigned] =>.Adobe

                —\ Software installed (54) - 19s
                O42 - Logiciel: Adobe Flash Player 32 ActiveX - (.Adobe.) [HKLM] – Adobe Flash Player ActiveX [Unsigned] =>.Adobe
                O42 - Logiciel: Adobe Flash Player 32 NPAPI - (.Adobe.) [HKLM] – Adobe Flash Player NPAPI [Unsigned] =>.Adobe
                O42 - Logiciel: Adobe Reader X (10.1.16) - (.Adobe Systems Incorporated.) [HKLM] – {AC76BA86-7AD7-1033-7B44-AA1000000001} [Unsigned] =>.Adobe Systems Incorporated
                O42 - Logiciel: AIM 7 - (..) [HKLM] – AIM_7 [Unsigned]
                O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM] – Avast Antivirus =>.AVAST Software s.r.o.®
                O42 - Logiciel: Avast Update Helper - (.AVAST Software.) [HKLM] – {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} [Unsigned] =>.AVAST Software (Hidden)
                O42 - Logiciel: Cards_Calendar_OrderGift_DoMorePlugout - (.Hewlett-Packard.) [HKLM] – {4CACFCD9-F71B-413A-8DF5-1A6419D5CDC6} [Unsigned] =>.Hewlett-Packard (Hidden)
                O42 - Logiciel: Compatibility Pack for the 2007 Office system - (.Microsoft Corporation.) [HKLM] – {90120000-0020-0409-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation
                O42 - Logiciel: CyberLink DVD Suite Deluxe - (.CyberLink Corp..) [HKLM] – {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} =>.CyberLink®
                O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] – Google Chrome =>.Google Inc®
                O42 - Logiciel: Hewlett-Packard Active Check - (.Hewlett-Packard.) [HKLM] – {254C37AA-6B72-4300-84F6-98A82419187E} [Unsigned] =>.Hewlett-Packard (Hidden)
                O42 - Logiciel: Hewlett-Packard Asset Agent for Health Check - (.HP.) [HKLM] – {669D4A35-146B-4314-89F1-1AC3D7B88367} [Unsigned] =>.HP (Hidden)
                O42 - Logiciel: HP Active Support Library - (.Hewlett-Packard.) [HKLM] – {11BB336F-0E58-4977-B866-F24FA334616B} [Unsigned] =>.Hewlett-Packard
                O42 - Logiciel: HP Advisor - (.Hewlett-Packard.) [HKLM] – {73A43E42-3658-4DD9-8551-FACDA3632538} [Unsigned] =>.Hewlett-Packard
                O42 - Logiciel: HP Customer Feedback - (.Hewlett-Packard.) [HKLM] – {9DBA770F-BF73-4D39-B1DF-6035D95268FC} [Unsigned] =>.Hewlett-Packard (Hidden)
                O42 - Logiciel: HP Easy Setup - Frontend - (.Hewlett-Packard.) [HKLM] – {9885A11E-60E4-417C-B58B-8B31B21C0B8A} [Unsigned] =>.Hewlett-Packard
                O42 - Logiciel: HP On-Screen Cap/Num/Scroll Lock Indicator - (.Hewlett-Packard.) [HKLM] – OsdMaestro [Unsigned] =>.Hewlett-Packard
                O42 - Logiciel: HP Photosmart Essential 2.5 - (.Hewlett-Packard.) [HKLM] – {BAD0FA60-09CF-4411-AE6A-C2844C8812FA} [Unsigned] =>.Hewlett-Packard (Hidden)
                O42 - Logiciel: HP Photosmart Essential 2.5 - (.HP.) [HKLM] – HP Photosmart Essential =>.Hewlett Packard®
                O42 - Logiciel: HPPhotoSmartPhotobookWebPack1 - (.Hewlett-Packard.) [HKLM] – {12A76360-388E-4B27-ABEB-D5FC5378DD2A} [Unsigned] =>.Hewlett-Packard (Hidden)
                O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] – HDMI =>.Intel Corporation®
                O42 - Logiciel: Java 8 Update 91 - (.Oracle Corporation.) [HKLM] – {26A24AE4-039D-4CA4-87B4-2F83218091F0} [Unsigned] =>.Oracle Corporation
                O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM] – {4A03706F-666A-4037-7777-5F2748764D10} [Unsigned] =>.Oracle Corporation (Hidden)
                O42 - Logiciel: K-Lite Codec Pack 10.6.5 Basic - (.KLite Inc.) [HKLM] – KLiteCodecPack_is1 [Unsigned] =>.KLite Inc
                O42 - Logiciel: LabelPrint - (.CyberLink Corp..) [HKLM] – {C59C179C-668D-49A9-B6EA-0121CCFC1243} =>.CyberLink®
                O42 - Logiciel: LightScribe System Software - (.LightScribe.) [HKLM] – {7F10292C-A190-4176-A665-A1ED3478DF86} [Unsigned] =>.LightScribe
                O42 - Logiciel: LightScribe Template Labeler - (.LightScribe.) [HKLM] – {3EBA6E7C-3DF6-48AE-B87B-4CAFB2C1C3F7} [Unsigned] =>.LightScribe
                O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] – {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} [Unsigned] =>.Microsoft Corporation (Hidden)
                O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] – Microsoft .NET Framework 3.5 SP1 =>.Microsoft Corporation®
                O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] – {3C3901C5-3455-3E0A-A214-0B093A5070A6} [Unsigned] =>.Microsoft Corporation (Hidden)
                O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] – Microsoft .NET Framework 4 Client Profile =>.Microsoft Corporation®
                O42 - Logiciel: Microsoft Office Home and Student 60 day trial - (..) [HKLM] – OfficeTrial [Unsigned]
                O42 - Logiciel: Microsoft Office PowerPoint Viewer 2007 (English) - (.Microsoft Corporation.) [HKLM] – {95120000-00AF-0409-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation
                O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] – {7299052b-02a4-4627-81f2-1818da5d550d} [Unsigned] =>.Microsoft Corporation
                O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] – {A49F249F-0C91-497F-86DF-B2585E8E76B7} [Unsigned] =>.Microsoft Corporation
                O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] – {1F1C2DFC-2D24-3E06-BCB8-725134ADF989} [Unsigned] =>.Microsoft Corporation
                O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] – {15BC8CD0-A65B-47D0-A2DD-90A824590FA8} [Unsigned] =>.Microsoft Corporation
                O42 - Logiciel: Mozilla Firefox 52.9.0 ESR (x86 en-US) - (.Mozilla.) [HKLM] – Mozilla Firefox 52.9.0 ESR (x86 en-US) =>.Mozilla Corporation®
                O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] – MozillaMaintenanceService [Unsigned] =>.Mozilla
                O42 - Logiciel: MSN - (..) [HKLM] – MSNINST [Unsigned]
                O42 - Logiciel: muvee autoProducer 6.1 - (.muvee Technologies.) [HKLM] – {E8C2622C-9FF1-4F60-8008-A0208154F9F3} [Unsigned] =>.muvee Technologies
                O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM] – {40BF1E83-20EB-11D8-97C5-0009C5020658} =>.CyberLink®
                O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM] – {CB099890-1D5F-11D5-9EA9-0050BAE317E1} [Unsigned] =>.CyberLink Corp. (Hidden)
                O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM] – InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1} =>.CyberLink®
                O42 - Logiciel: PSSWCORE - (.Hewlett-Packard.) [HKLM] – {34BFB099-07B2-4E95-A673-7362D60866A2} [Unsigned] =>.Hewlett-Packard (Hidden)
                O42 - Logiciel: Python 2.5 - (.Martin v. Löwis.) [HKLM] – {0A2C5854-557E-48C8-835A-3B9F074BDCAA} [Unsigned] =>.Martin v. Löwis
                O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] – {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} [Unsigned] =>.Realtek Semiconductor Corp.
                O42 - Logiciel: RTC Client API v1.2 - (.Microsoft.) [HKLM] – {44CDBD1B-89FB-4E02-8319-2A4C550F664A} [Unsigned] =>.Microsoft
                O42 - Logiciel: Snapfish Picture Mover - (.HP Snapfish.) [HKLM] – {029B5901-1F27-4347-9923-E8ACC8F54E15} [Unsigned]
                O42 - Logiciel: Soft Data Fax Modem with SmartCP - (.Conexant Systems.) [HKLM] – CNXT_MODEM_PCI_VEN_14F1&DEV_2F20&SUBSYS_200C14F1 [Unsigned] =>.Conexant Systems
                O42 - Logiciel: Update for Microsoft .NET Framework 3.5 SP1 (KB963707) - (.Microsoft Corporation.) [HKLM] – {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707 [Unsigned] =>.Microsoft Corporation
                O42 - Logiciel: VideoToolkit01 - (.Hewlett-Packard.) [HKLM] – {E08DC77E-D09A-4e36-8067-D6DBBCC5F8DC} [Unsigned] =>.Hewlett-Packard (Hidden)
                O42 - Logiciel: Visual Studio 2012 x86 Redistributables - (.AVG Technologies CZ, s.r.o..) [HKLM] – {98EFF19A-30AB-4E4B-B943-F06B1C63EBF8} [Unsigned] =>.AVG Technologies CZ, s.r.o.
                O42 - Logiciel: WeatherBug Gadget - (.AWS Convergence Technologies.) [HKLM] – {209CDA54-D390-46A2-A97C-7BF61734418D} [Unsigned] =>PUP.Optional.WeatherBug (Hidden)

                —\ HKCU & HKLM Software Keys (119) - 19s
                HKLM\SOFTWARE\Acronis =>.Acronis
                HKLM\SOFTWARE\Adobe =>.Adobe
                HKLM\SOFTWARE\America Online =>.America Online
                HKLM\SOFTWARE\AOL =>.America On Line Inc.
                HKLM\SOFTWARE\Avast =>.Avast Software s.r.o
                HKLM\SOFTWARE\AVAST Software =>.AVAST Software
                HKLM\SOFTWARE\AVG =>.AVG Software
                HKLM\SOFTWARE\Conexant Systems =>.Conexant Systems, Inc.
                HKLM\SOFTWARE\Conexant Systems Inc =>.Conexant Systems, Inc.
                HKLM\SOFTWARE\CXT =>.CXT Software
                HKLM\SOFTWARE\CyberLink =>.CyberLink Corporation
                HKLM\SOFTWARE\Debug =>.Legitimate
                HKLM\SOFTWARE\Google =>.Google
                HKLM\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
                HKLM\SOFTWARE\HP =>.HP
                HKLM\SOFTWARE\Icaros =>.Icaros
                HKLM\SOFTWARE\InstallShield =>.InstallShield
                HKLM\SOFTWARE\Intel =>.Intel
                HKLM\SOFTWARE\JavaSoft =>.JavaSoft
                HKLM\SOFTWARE\JreMetrics =>.JreMetrics
                HKLM\SOFTWARE\KLCodecPack =>.KLite Inc
                HKLM\SOFTWARE\LAV =>.LAV Inc
                HKLM\SOFTWARE\LightScribe =>.LightScribe
                HKLM\SOFTWARE\LightScribeTemplateLabeler
                HKLM\SOFTWARE\Macromedia =>.Macromedia
                HKLM\SOFTWARE\Malwarebytes’ Anti-Malware =>.Malwarebytes’ Anti-Malware
                HKLM\SOFTWARE\Malwarebytes’ Anti-Malware (Trial) =>.Malwarebytes
                HKLM\SOFTWARE\Mozilla =>.Mozilla
                HKLM\SOFTWARE\mozilla.org =>.mozilla.org
                HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
                HKLM\SOFTWARE\muvee Technologies =>.muvee Technologies
                HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
                HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
                HKLM\SOFTWARE\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp.
                HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
                HKLM\SOFTWARE\Software =>.Unknown
                HKLM\SOFTWARE\Sonic =>.Sonic
                HKLM\SOFTWARE\SRS Labs =>.SRS Labs
                HKLM\SOFTWARE\Symantec =>.Symantec
                HKLM\SOFTWARE\Volatile =>.Microsoft Corporation
                HKLM\SOFTWARE\Wilson WindowWare =>.Wilson WindowWare
                HKLM\SOFTWARE\Windows =>.Microsoft Corporation
                HKLM\SOFTWARE\Wow6432Node =>.Microsoft Corporation
                HKLM\SOFTWARE\Yahoo =>.Yahoo! Inc.
                HKCU\SOFTWARE\Acronis =>.Acronis
                HKCU\SOFTWARE\Adobe =>.Adobe
                HKCU\SOFTWARE\America Online =>.America Online
                HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
                HKCU\SOFTWARE\AusLogics =>SUP.Optional.Auslogics
                HKCU\SOFTWARE\Avast Software =>.AVAST Software
                HKCU\SOFTWARE\Avg =>.AVG Software
                HKCU\SOFTWARE\AVG SafePrice =>.AVG Software
                HKCU\SOFTWARE\AVG Web TuneUp =>.AVG Web TuneUp
                HKCU\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o
                HKCU\SOFTWARE\Chromium =>.Chromium
                HKCU\SOFTWARE\Google =>.Google
                HKCU\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
                HKCU\SOFTWARE\HP Guide
                HKCU\SOFTWARE\Icaros =>.Icaros
                HKCU\SOFTWARE\Intel =>.Intel
                HKCU\SOFTWARE\JavaSoft =>.JavaSoft
                HKCU\SOFTWARE\Licenses =>.Microsoft Corporation
                HKCU\SOFTWARE\Macromedia =>.Macromedia
                HKCU\SOFTWARE\MainConcept =>.MainConcept AG
                HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes
                HKCU\SOFTWARE\Malwarebytes’ Anti-Malware =>.Malwarebytes’ Anti-Malware
                HKCU\SOFTWARE\McAfee =>.McAfee Inc.
                HKCU\SOFTWARE\Mozilla =>.Mozilla
                HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins
                HKCU\SOFTWARE\Netscape =>.Netscape
                HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
                HKCU\SOFTWARE\Sammsoft
                HKCU\SOFTWARE\Snapfish =>.Snapfish
                HKCU\SOFTWARE\Softthinks =>.SoftThinks
                HKCU\SOFTWARE\Wintertree =>.Wintertree Software
                HKCU\SOFTWARE\Yahoo =>.Yahoo! Inc.
                HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
                HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
                HKCU\SOFTWARE\AppDataLow\Software\JavaSoft =>.JavaSoft
                HKCU\SOFTWARE\AppDataLow\Software\Yahoo =>.Yahoo! Inc.
                HKU.DEFAULT\SOFTWARE\Avast Software =>.AVAST Software
                HKU.DEFAULT\SOFTWARE\Avg Secure Update =>.AVG Software
                HKU.DEFAULT\SOFTWARE\AVG Web TuneUp =>.AVG Web TuneUp
                HKU.DEFAULT\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o
                HKU.DEFAULT\SOFTWARE\JavaSoft =>.JavaSoft
                HKU.DEFAULT\SOFTWARE\Malwarebytes’ Anti-Malware =>.Malwarebytes’ Anti-Malware
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Acronis =>.Acronis
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Adobe =>.Adobe
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\America Online =>.America Online
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\AppDataLow =>.Microsoft Corporation
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\AusLogics =>SUP.Optional.Auslogics
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Avast Software =>.AVAST Software
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Avg =>.AVG Software
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\AVG SafePrice =>.AVG Software
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\AVG Web TuneUp =>.AVG Web TuneUp
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Chromium =>.Chromium
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Google =>.Google
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\HP Guide
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Icaros =>.Icaros
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Intel =>.Intel
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\JavaSoft =>.JavaSoft
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Licenses =>.Microsoft Corporation
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Macromedia =>.Macromedia
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\MainConcept =>.MainConcept AG
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Malwarebytes =>.Malwarebytes
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Malwarebytes’ Anti-Malware =>.Malwarebytes’ Anti-Malware
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\McAfee =>.McAfee Inc.
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Mozilla =>.Mozilla
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\MozillaPlugins =>.MozillaPlugins
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Netscape =>.Netscape
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Sammsoft
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Snapfish =>.Snapfish
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Softthinks =>.SoftThinks
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Wintertree =>.Wintertree Software
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\Yahoo =>.Yahoo! Inc.
                HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\SOFTWARE\ZHP =>.Nicolas Coolman

                —\ Contents of the Common Files folders (207) - 14s
                O43 - CFD: 17/10/2013 - D – C:\Program Files\Adobe =>.Adobe Systems, Incorporated®
                O43 - CFD: 25/03/2017 - D – C:\Program Files\AIM =>.AOL Inc.®
                O43 - CFD: 23/01/2009 - D – C:\Program Files\AIM Toolbar =>.AOL LLC®
                O43 - CFD: 23/01/2009 - D – C:\Program Files\Auslogics =>SUP.Optional.Auslogics
                O43 - CFD: 15/12/2022 - D – C:\Program Files\AVAST Software =>.AVAST Software s.r.o.®
                O43 - CFD: 04/02/2017 - D – C:\Program Files\AVG =>.AVG Software
                O43 - CFD: 18/11/2007 - D – C:\Program Files\AWS =>.Amazon Corporation
                O43 - CFD: 15/12/2022 - D – C:\Program Files\Common Files =>.Microsoft Corporation
                O43 - CFD: 18/11/2007 - D – C:\Program Files\CONEXANT =>.Conexant Systems, Inc.
                O43 - CFD: 18/11/2007 - D – C:\Program Files\CyberLink =>.CyberLink Corporation
                O43 - CFD: 18/11/2007 - D – C:\Program Files\earthlink totalaccess {5B2FD02E944AD78D4D06F59814E14714}.
                O43 - CFD: 20/12/2022 - D – C:\Program Files\Google =>.Google Inc®
                O43 - CFD: 21/10/2010 - D – C:\Program Files\Hewlett-Packard =>.Hewlett-Packard
                O43 - CFD: 14/05/2011 - D – C:\Program Files\HP =>.Hewlett-Packard
                O43 - CFD: 15/12/2022 - HD – C:\Program Files\InstallShield Installation Information =>.InstallShield
                O43 - CFD: 13/05/2012 - D – C:\Program Files\Internet Explorer =>.Microsoft Corporation
                O43 - CFD: 10/05/2016 - D – C:\Program Files\Java =>.Oracle
                O43 - CFD: 26/08/2014 - D – C:\Program Files\K-Lite Codec Pack =>.KLite Inc
                O43 - CFD: 18/11/2007 - D – C:\Program Files\LightScribeTemplateLabeler [Unsigned]
                O43 - CFD: 15/12/2022 - D – C:\Program Files\Malwarebytes =>.Malwarebytes
                O43 - CFD: 02/11/2006 - D – C:\Program Files\Microsoft Games =>.Microsoft Corporation
                O43 - CFD: 18/11/2007 - D – C:\Program Files\Microsoft Office =>.Microsoft Corporation
                O43 - CFD: 18/11/2007 - D – C:\Program Files\Microsoft Works =>.Microsoft Corporation
                O43 - CFD: 17/05/2012 - D – C:\Program Files\Microsoft.NET =>.Microsoft Corporation
                O43 - CFD: 10/05/2012 - D – C:\Program Files\Movie Maker =>.Microsoft Corporation
                O43 - CFD: 27/06/2018 - D – C:\Program Files\Mozilla Firefox =>.Mozilla
                O43 - CFD: 01/09/2016 - D – C:\Program Files\Mozilla Firefox(117) =>.Mozilla Corporation
                O43 - CFD: 28/09/2016 - D – C:\Program Files\Mozilla Firefox(174) =>.Mozilla Corporation
                O43 - CFD: 24/09/2016 - D – C:\Program Files\Mozilla Firefox(69) =>.Mozilla Corporation
                O43 - CFD: 03/10/2015 - D – C:\Program Files\Mozilla Firefox(9) =>.Mozilla Corporation
                O43 - CFD: 27/06/2018 - D – C:\Program Files\Mozilla Maintenance Service =>.Mozilla
                O43 - CFD: 02/11/2006 - D – C:\Program Files\MSBuild =>.Microsoft Corporation
                O43 - CFD: 01/02/2010 - D – C:\Program Files\MSN =>.Microsoft Corporation
                O43 - CFD: 18/11/2007 - D – C:\Program Files\muvee Technologies [Unsigned] =>.muvee Technologies
                O43 - CFD: 18/11/2007 - D – C:\Program Files\Online Services =>.Hewlett-Packard
                O43 - CFD: 14/08/2012 - D – C:\Program Files\Oracle =>.Oracle
                O43 - CFD: 18/11/2007 - D – C:\Program Files\Realtek =>.Realtek
                O43 - CFD: 02/11/2006 - D – C:\Program Files\Reference Assemblies =>.Microsoft Corporation
                O43 - CFD: 18/11/2007 - D – C:\Program Files\Snapfish Picture Mover [Unsigned]
                O43 - CFD: 02/11/2006 - [0] HD – C:\Program Files\Uninstall Information =>.Microsoft Corporation
                O43 - CFD: 10/05/2012 - D – C:\Program Files\Windows Calendar =>.Microsoft Corporation
                O43 - CFD: 10/05/2012 - D – C:\Program Files\Windows Collaboration =>.Microsoft Corporation
                O43 - CFD: 10/05/2012 - D – C:\Program Files\Windows Defender =>.Microsoft Corporation
                O43 - CFD: 10/05/2012 - D – C:\Program Files\Windows Journal =>.Microsoft Corporation
                O43 - CFD: 10/05/2012 - D – C:\Program Files\Windows Mail =>.Microsoft Corporation
                O43 - CFD: 10/05/2012 - D – C:\Program Files\Windows Media Player =>.Microsoft Corporation
                O43 - CFD: 02/11/2006 - D – C:\Program Files\Windows NT =>.Microsoft Corporation
                O43 - CFD: 10/05/2012 - D – C:\Program Files\Windows Photo Gallery =>.Microsoft Corporation
                O43 - CFD: 08/06/2016 - D – C:\Program Files\Windows Sidebar =>.Microsoft Corporation
                O43 - CFD: 15/12/2022 - D – C:\Program Files\Yahoo! =>.Yahoo!
                O43 - CFD: 10/05/2012 - RD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
                O43 - CFD: 10/05/2012 - RD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
                O43 - CFD: 25/03/2017 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AIM
                O43 - CFD: 23/04/2009 - [0] D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOL =>.AOL
                O43 - CFD: 15/12/2022 - [0] D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics =>SUP.Optional.Auslogics
                O43 - CFD: 15/12/2022 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software =>.AVAST Software
                O43 - CFD: 10/05/2012 - RD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Extras and Upgrades =>.Legitimate
                O43 - CFD: 15/12/2022 - RD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
                O43 - CFD: 21/10/2010 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hewlett-Packard =>.Hewlett-Packard
                O43 - CFD: 15/12/2022 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP =>.Hewlett-Packard
                O43 - CFD: 10/05/2016 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle
                O43 - CFD: 09/05/2016 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java(50) =>.Sun Microsystems
                O43 - CFD: 26/08/2014 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack =>.KLite Inc
                O43 - CFD: 29/07/2009 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LightScribe Direct Disc Labeling =>.LightScribe
                O43 - CFD: 02/11/2006 - RD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
                O43 - CFD: 18/11/2007 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works =>.Microsoft Corporation
                O43 - CFD: 18/11/2007 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\muvee =>.muvee
                O43 - CFD: 28/05/2008 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Online Services =>.Hewlett-Packard
                O43 - CFD: 15/12/2022 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Help & Tools =>.Hewlett-Packard
                O43 - CFD: 18/11/2007 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Snapfish Picture Mover
                O43 - CFD: 22/08/2012 - RD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
                O43 - CFD: 02/11/2006 - RHD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC =>.Wacom Technology
                O43 - CFD: 18/11/2007 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\User Guides =>.Unknown
                O43 - CFD: 23/01/2009 - D – C:\ProgramData\acccore
                O43 - CFD: 23/01/2009 - D – C:\ProgramData\Acronis =>.Acronis
                O43 - CFD: 21/11/2013 - D – C:\ProgramData\Adobe =>.Adobe
                O43 - CFD: 17/06/2010 - D – C:\ProgramData\AIM
                O43 - CFD: 23/01/2009 - D – C:\ProgramData\AIM Toolbar
                O43 - CFD: 17/06/2010 - D – C:\ProgramData\AOL =>.AOL
                O43 - CFD: 23/01/2009 - D – C:\ProgramData\AOL OCP =>.America On Line Inc.
                O43 - CFD: 28/05/2008 - [0] SHD – C:\ProgramData\Application Data =>.Microsoft Corporation
                O43 - CFD: 15/12/2022 - D – C:\ProgramData\AVAST Software =>.AVAST Software
                O43 - CFD: 04/02/2017 - D – C:\ProgramData\Avg =>.AVG Software
                O43 - CFD: 08/07/2016 - HD – C:\ProgramData\Common Files =>.Microsoft Corporation
                O43 - CFD: 28/05/2008 - [0] SHD – C:\ProgramData\Desktop =>.Microsoft Corporation
                O43 - CFD: 28/05/2008 - [0] SHD – C:\ProgramData\Documents =>.Microsoft Corporation
                O43 - CFD: 28/05/2008 - [0] SHD – C:\ProgramData\Favorites =>.Microsoft Corporation
                O43 - CFD: 28/05/2008 - D – C:\ProgramData\Hewlett-Packard =>.Hewlett-Packard
                O43 - CFD: 18/11/2007 - D – C:\ProgramData\HP =>.Hewlett-Packard
                O43 - CFD: 28/05/2008 - D – C:\ProgramData\Macromedia =>.Macromedia
                O43 - CFD: 15/12/2022 - D – C:\ProgramData\Malwarebytes =>.Malwarebytes
                O43 - CFD: 15/12/2022 - D – C:\ProgramData\MB2Migration
                O43 - CFD: 14/08/2012 - D – C:\ProgramData\McAfee =>.McAfee
                O43 - CFD: 03/02/2017 - D – C:\ProgramData\MFAData =>.AVG Software
                O43 - CFD: 03/07/2008 - SD – C:\ProgramData\Microsoft =>.Microsoft Corporation
                O43 - CFD: 07/06/2012 - D – C:\ProgramData\Mozilla =>.Mozilla Corporation
                O43 - CFD: 18/11/2007 - D – C:\ProgramData\muvee Technologies =>.muvee Technologies
                O43 - CFD: 14/09/2010 - D – C:\ProgramData\NOS
                O43 - CFD: 09/05/2016 - D – C:\ProgramData\Oracle =>.Oracle
                O43 - CFD: 28/05/2008 - [0] SHD – C:\ProgramData\Start Menu =>.Microsoft Corporation
                O43 - CFD: 28/06/2010 - D – C:\ProgramData\Sun =>.Oracle
                O43 - CFD: 28/05/2008 - D – C:\ProgramData\Symantec =>.Symantec
                O43 - CFD: 28/05/2008 - [0] SHD – C:\ProgramData\Templates =>.Microsoft Corporation
                O43 - CFD: 15/12/2022 - D – C:\ProgramData\WildTangent =>.WildTangent
                O43 - CFD: 13/11/2014 - D – C:\ProgramData\WindowsSearch =>.Microsoft Corporation
                O43 - CFD: 25/01/2009 - D – C:\ProgramData\Yahoo! =>.Yahoo!
                O43 - CFD: 23/01/2009 - D – C:\Program Files\Common Files\Acronis =>.Acronis
                O43 - CFD: 05/12/2015 - D – C:\Program Files\Common Files\Adobe =>.Adobe
                O43 - CFD: 23/04/2009 - D – C:\Program Files\Common Files\aol =>.AOL
                O43 - CFD: 28/05/2008 - D – C:\Program Files\Common Files\aolback
                O43 - CFD: 06/12/2017 - D – C:\Program Files\Common Files\Avast Software =>.AVAST Software
                O43 - CFD: 18/11/2007 - D – C:\Program Files\Common Files\HP =>.Hewlett-Packard
                O43 - CFD: 18/11/2007 - D – C:\Program Files\Common Files\InstallShield =>.InstallShield
                O43 - CFD: 23/11/2012 - D – C:\Program Files\Common Files\Java =>.Oracle
                O43 - CFD: 29/07/2009 - AD – C:\Program Files\Common Files\LightScribe =>.LightScribe
                O43 - CFD: 18/11/2007 - AD – C:\Program Files\Common Files\LS Getting Started =>.LightScribe
                O43 - CFD: 18/11/2007 - D – C:\Program Files\Common Files\microsoft shared =>.Microsoft Corporation
                O43 - CFD: 18/11/2007 - D – C:\Program Files\Common Files\muvee Technologies =>.muvee Technologies
                O43 - CFD: 28/05/2008 - D – C:\Program Files\Common Files\Nullsoft =>.Nullsoft
                O43 - CFD: 02/11/2006 - D – C:\Program Files\Common Files\Services =>.Microsoft Corporation
                O43 - CFD: 02/11/2006 - D – C:\Program Files\Common Files\SpeechEngines =>.Microsoft Corporation
                O43 - CFD: 28/05/2008 - D – C:\Program Files\Common Files\Symantec Shared =>.Symantec Corporation
                O43 - CFD: 10/05/2012 - D – C:\Program Files\Common Files\System =>.Microsoft Corporation
                O43 - CFD: 23/01/2009 - D – C:\Users\John\AppData\Roaming\acccore
                O43 - CFD: 23/01/2009 - D – C:\Users\John\AppData\Roaming\Acronis =>.Acronis
                O43 - CFD: 21/11/2013 - D – C:\Users\John\AppData\Roaming\Adobe =>.Adobe
                O43 - CFD: 23/04/2009 - [0] D – C:\Users\John\AppData\Roaming\AOL =>.AOL
                O43 - CFD: 30/01/2017 - [0] D – C:\Users\John\AppData\Roaming\Auslogics =>SUP.Optional.Auslogics
                O43 - CFD: 15/12/2022 - D – C:\Users\John\AppData\Roaming\AVAST Software =>.AVAST Software
                O43 - CFD: 31/01/2017 - D – C:\Users\John\AppData\Roaming\AVG =>.AVG Software
                O43 - CFD: 15/12/2022 - D – C:\Users\John\AppData\Roaming\Crystal Security
                O43 - CFD: 28/05/2008 - D – C:\Users\John\AppData\Roaming\Hewlett-Packard =>.Hewlett-Packard
                O43 - CFD: 09/12/2022 - D – C:\Users\John\AppData\Roaming\HpUpdate =>.Hewlett-Packard
                O43 - CFD: 28/05/2008 - D – C:\Users\John\AppData\Roaming\Identities =>.Microsoft Corporation
                O43 - CFD: 10/03/2011 - D – C:\Users\John\AppData\Roaming\Macromedia =>.Macromedia
                O43 - CFD: 30/09/2015 - [0] D – C:\Users\John\AppData\Roaming\Malwarebytes =>.Malwarebytes
                O43 - CFD: 02/11/2006 - [0] D – C:\Users\John\AppData\Roaming\Media Center Programs =>.Microsoft Corporation
                O43 - CFD: 21/11/2013 - SD – C:\Users\John\AppData\Roaming\Microsoft =>.Microsoft Corporation
                O43 - CFD: 23/04/2009 - D – C:\Users\John\AppData\Roaming\Mozilla =>.Mozilla Corporation
                O43 - CFD: 01/02/2010 - D – C:\Users\John\AppData\Roaming\MSNInstaller =>.Microsoft Corporation
                O43 - CFD: 28/05/2008 - D – C:\Users\John\AppData\Roaming\Snapfish =>.Snapfish
                O43 - CFD: 09/05/2016 - D – C:\Users\John\AppData\Roaming\Sun =>.Oracle
                O43 - CFD: 28/05/2008 - D – C:\Users\John\AppData\Roaming\Symantec =>.Symantec
                O43 - CFD: 23/10/2010 - D – C:\Users\John\AppData\Roaming\Template =>.Microsoft Corporation
                O43 - CFD: 08/07/2016 - D – C:\Users\John\AppData\Roaming\TuneUp Software =>.TuneUp Software
                O43 - CFD: 29/01/2009 - D – C:\Users\John\AppData\Roaming\WinBatch =>.winbatch.com
                O43 - CFD: 15/12/2022 - [0] D – C:\Users\John\AppData\Roaming\Yahoo! =>.Yahoo!
                O43 - CFD: 20/12/2022 - D – C:\Users\John\AppData\Roaming\ZHP =>.Nicolas Coolman
                O43 - CFD: 17/10/2013 - D – C:\Users\John\AppData\Local\Adobe =>.Adobe
                O43 - CFD: 25/03/2017 - D – C:\Users\John\AppData\Local\AIM
                O43 - CFD: 23/01/2009 - D – C:\Users\John\AppData\Local\AIM Toolbar
                O43 - CFD: 23/01/2009 - D – C:\Users\John\AppData\Local\AOL =>.AOL
                O43 - CFD: 23/01/2009 - D – C:\Users\John\AppData\Local\AOL OCP =>.America On Line Inc.
                O43 - CFD: 28/05/2008 - [0] SHD – C:\Users\John\AppData\Local\Application Data =>.Microsoft Corporation
                O43 - CFD: 24/04/2012 - D – C:\Users\John\AppData\Local\Apps =>.Microsoft Corporation
                O43 - CFD: 19/12/2022 - D – C:\Users\John\AppData\Local\AVAST Software =>.AVAST Software
                O43 - CFD: 31/01/2017 - D – C:\Users\John\AppData\Local\Avg =>.AVG Software
                O43 - CFD: 04/02/2017 - D – C:\Users\John\AppData\Local\AvgSetupLog =>.AVG Software
                O43 - CFD: 28/11/2016 - D – C:\Users\John\AppData\Local\CEF =>.CEF
                O43 - CFD: 27/07/2017 - [0] D – C:\Users\John\AppData\Local\Deployment =>.Microsoft Corporation
                O43 - CFD: 27/01/2013 - D – C:\Users\John\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation
                O43 - CFD: 09/08/2017 - D – C:\Users\John\AppData\Local\Google =>.Google
                O43 - CFD: 28/05/2008 - D – C:\Users\John\AppData\Local\Hewlett-Packard =>.Hewlett-Packard
                O43 - CFD: 28/05/2008 - [0] SHD – C:\Users\John\AppData\Local\History =>.Microsoft Corporation
                O43 - CFD: 17/03/2016 - D – C:\Users\John\AppData\Local\Macromedia =>.Macromedia
                O43 - CFD: 31/01/2017 - D – C:\Users\John\AppData\Local\MFAData =>.AVG Software
                O43 - CFD: 18/04/2014 - D – C:\Users\John\AppData\Local\Microsoft =>.Microsoft Corporation
                O43 - CFD: 19/08/2012 - [0] D – C:\Users\John\AppData\Local\MigWiz =>.MigWiz
                O43 - CFD: 23/04/2009 - D – C:\Users\John\AppData\Local\Mozilla =>.Mozilla Corporation
                O43 - CFD: 30/11/2011 - D – C:\Users\John\AppData\Local\Solid State Networks =>.Solid State Networks
                O43 - CFD: 20/12/2022 - D – C:\Users\John\AppData\Local\Temp =>.Microsoft Corporation
                O43 - CFD: 28/05/2008 - [0] SHD – C:\Users\John\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
                O43 - CFD: 03/08/2009 - D – C:\Users\John\AppData\Local\VirtualStore =>.Microsoft Corporation
                O43 - CFD: 15/12/2022 - [0] D – C:\Users\John\AppData\Local\Yahoo
                O43 - CFD: 19/12/2022 - D – C:\Users\John\AppData\Local\ZHP =>.Nicolas Coolman
                O43 - CFD: 21/11/2013 - D – C:\Users\John\AppData\LocalLow\Adobe =>.Adobe
                O43 - CFD: 21/11/2013 - SD – C:\Users\John\AppData\LocalLow\Microsoft =>.Microsoft Corporation
                O43 - CFD: 19/12/2022 - D – C:\Users\John\AppData\LocalLow\Mozilla =>.Mozilla Corporation
                O43 - CFD: 14/08/2012 - D – C:\Users\John\AppData\LocalLow\Oracle =>.Oracle
                O43 - CFD: 28/05/2008 - D – C:\Users\John\AppData\LocalLow\Sun =>.Oracle
                O43 - CFD: 13/12/2022 - [0] SD – C:\Users\John\AppData\LocalLow\Temp =>.Microsoft Corporation
                O43 - CFD: 23/04/2009 - D – C:\Users\John\Desktop\AOL Saved PFC
                O43 - CFD: 18/12/2022 - RD – C:\Users\John\Desktop\downloads
                O43 - CFD: 12/12/2022 - D – C:\Users\John\Desktop\Old Firefox Data
                O43 - CFD: 31/01/2017 - RD – C:\Users\John\AppData\Roaming\Microsoft\Windows\St art Menu\Programs\Accessories =>.Microsoft Corporation
                O43 - CFD: 31/01/2017 - RD – C:\Users\John\AppData\Roaming\Microsoft\Windows\St art Menu\Programs\Administrative Tools =>.Administrative Tools
                O43 - CFD: 31/01/2017 - RD – C:\Users\John\AppData\Roaming\Microsoft\Windows\St art Menu\Programs\Maintenance =>.Microsoft Corporation
                O43 - CFD: 31/01/2017 - RD – C:\Users\John\AppData\Roaming\Microsoft\Windows\St art Menu\Programs\Startup =>.Microsoft Corporation
                O43 - CFD: 28/05/2008 - [0] SHD – C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
                O43 - CFD: 28/05/2008 - [0] SHD – C:\Users\Default\AppData\Local\History =>.Microsoft Corporation
                O43 - CFD: 02/11/2006 - D – C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
                O43 - CFD: 02/11/2006 - [0] D – C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
                O43 - CFD: 28/05/2008 - [0] SHD – C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
                O43 - CFD: 28/05/2008 - [0] SHD – C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
                O43 - CFD: 28/05/2008 - [0] SHD – C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation
                O43 - CFD: 02/11/2006 - D – C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
                O43 - CFD: 02/11/2006 - [0] D – C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation
                O43 - CFD: 28/05/2008 - [0] SHD – C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
                O43 - CFD: 23/01/2009 - D – C:\Windows\System32\Config\systemprofile\AppData\L ocal\AOL =>.AOL
                O43 - CFD: 04/02/2017 - D – C:\Windows\System32\Config\systemprofile\AppData\L ocal\Avg =>.AVG Software
                O43 - CFD: 02/02/2017 - D – C:\Windows\System32\Config\systemprofile\AppData\L ocal\AvgSetupLog =>.AVG Software
                O43 - CFD: 31/01/2017 - D – C:\Windows\System32\Config\systemprofile\AppData\L ocal\Google =>.Google
                O43 - CFD: 18/11/2007 - D – C:\Windows\System32\Config\systemprofile\AppData\L ocal\Microsoft =>.Microsoft Corporation
                O43 - CFD: 23/01/2009 - D – C:\Windows\System32\Config\systemprofile\AppData\R oaming\Acronis =>.Acronis
                O43 - CFD: 31/01/2017 - D – C:\Windows\System32\Config\systemprofile\AppData\R oaming\AVG =>.AVG Software
                O43 - CFD: 11/10/2017 - D – C:\Windows\System32\Config\systemprofile\AppData\R oaming\Macromedia =>.Macromedia
                O43 - CFD: 31/01/2017 - SD – C:\Windows\System32\Config\systemprofile\AppData\R oaming\Microsoft =>.Microsoft Corporation

                —\ ShellIconOverlayIdentifiers (SIOI) (1) - 0s
                O106 - SIOI: avast [00asw] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - Avast Shell Extension.) – C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software s.r.o.®

                —\ Search Context Menu Handlers (SCMH) (15) - 2s
                O108 - CMH1: avast - {472083B0-C522-11CF-8763-00608CC02F24} . (.AVAST Software - Avast Shell Extension.) – C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software s.r.o.®
                O108 - CMH1: BriefcaseMenu - {85BBD920-42A0-1069-A2E4-08002B30309D} . (…) – syncui.dll (.not file.)
                O108 - CMH1: Open With - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - Windows Shell Common Dll.) – C:\WINDOWS\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
                O108 - CMH1: Open With EncryptionMenu - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - Windows Shell Common Dll.) – C:\WINDOWS\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
                O108 - CMH1: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (…) – ntshrui.dll (.not file.)
                O108 - CMH2: OpenContainingFolderMenu - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - Windows Shell Common Dll.) – C:\WINDOWS\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
                O108 - CMH3: 00asw - {472083B0-C522-11CF-8763-00608CC02F24} . (.AVAST Software - Avast Shell Extension.) – C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software s.r.o.®
                O108 - CMH3: CopyAsPathMenu - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - Windows Shell Common Dll.) – C:\WINDOWS\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
                O108 - CMH3: Send To - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - Windows Shell Common Dll.) – C:\WINDOWS\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
                O108 - CMH4: EncryptionMenu - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - Windows Shell Common Dll.) – C:\WINDOWS\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
                O108 - CMH4: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (…) – ntshrui.dll (.not file.)
                O108 - CMH5: New - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - Windows Shell Common Dll.) – C:\WINDOWS\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
                O108 - CMH6: avast - {472083B0-C522-11CF-8763-00608CC02F24} . (.AVAST Software - Avast Shell Extension.) – C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software s.r.o.®
                O108 - CMH6: BriefcaseMenu - {85BBD920-42A0-1069-A2E4-08002B30309D} . (…) – syncui.dll (.not file.)
                O108 - CMH7: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (…) – ntshrui.dll (.not file.)

                —\ Image File Execution Options (1) - 0s
                O50 - IFEO:C:\WINDOWS\System32\FlashPlayerApp.exe - (.Adobe - Adobe Flash Player Control Panel Applet.) [DisableExceptionChainValidation\0] [Unsigned] =>.Adobe

                —\ ShareTools MSconfig StartupReg (2) - 0s
                O53 - SMSR:HKLM...\startupreg\HP Health Check Scheduler [Key] . (…) – [ProgramFilesFolder]Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe (.not file.)
                O53 - SMSR:HKLM...\startupreg\HPADVISOR [Key] . (.Hewlett-Packard - HP Advisor.) – C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe =>.Hewlett-Packard

                —\ System Drivers List (294) - 25s
                O58 - SDL:2006/11/02 03:55:12 A . (.Microsoft Corporation - 1394 Bus Device Driver.) – C:\Windows\System32\drivers\1394bus.sys [53376] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 02:43:03 A . (.Microsoft Corporation - ACPI Driver for NT.) – C:\Windows\System32\drivers\acpi.sys [266808] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:51:38 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) – C:\Windows\System32\drivers\adp94xx.sys [420968] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:51:32 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) – C:\Windows\System32\drivers\adpahci.sys [297576] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:50:35 A . (.Adaptec, Inc. - Adaptec LH Ultra160 Driver (x86).) – C:\Windows\System32\drivers\adpu160m.sys [98408] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:51:00 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) – C:\Windows\System32\drivers\adpu320.sys [147048] =>.Microsoft Windows®
                O58 - SDL:2011/04/21 08:16:42 A . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) – C:\Windows\System32\drivers\afd.sys [273408] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 04:49:52 A . (.Microsoft Corporation - 440 NT AGP Filter.) – C:\Windows\System32\drivers\AGP440.sys [53864] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:49:20 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) – C:\Windows\System32\drivers\aliide.sys [14952] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:49:59 A . (.Microsoft Corporation - AMD NT AGP Filter.) – C:\Windows\System32\drivers\AMDAGP.SYS [54888] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:49:26 A . (.Microsoft Corporation - AMD IDE Driver.) – C:\Windows\System32\drivers\amdide.sys [15464] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 03:30:18 A . (.Microsoft Corporation - Processor Device Driver.) – C:\Windows\System32\drivers\amdk7.sys [38912] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 03:30:18 A . (.Microsoft Corporation - Processor Device Driver.) – C:\Windows\System32\drivers\amdk8.sys [40960] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 04:50:09 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) – C:\Windows\System32\drivers\arc.sys [67688] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:50:10 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) – C:\Windows\System32\drivers\arcsas.sys [67688] =>.Microsoft Windows®
                O58 - SDL:2022/12/15 22:44:27 A . (.AVAST Software - Avast anti rootkit.) – C:\Windows\System32\drivers\aswArPot.sys [167480] =>.AVAST Software s.r.o.®
                O58 - SDL:2022/12/15 22:44:04 A . (.AVAST Software - IDS Application Activity Monitor Driver..) – C:\Windows\System32\drivers\aswbidsdriverx.sys [188976] =>.AVAST Software s.r.o.®
                O58 - SDL:2022/12/15 22:44:04 A . (.AVAST Software - Application Activity Monitor Helper Driver.) – C:\Windows\System32\drivers\aswbidshx.sys [165384] =>.AVAST Software s.r.o.®
                O58 - SDL:2022/12/15 22:44:05 A . (.AVAST Software - Logging Driver.) – C:\Windows\System32\drivers\aswblogx.sys [284256] =>.AVAST Software s.r.o.®
                O58 - SDL:2022/12/15 22:44:05 A . (.AVAST Software - Universal Driver.) – C:\Windows\System32\drivers\aswbunivx.sys [57904] =>.AVAST Software s.r.o.®
                O58 - SDL:2022/12/15 23:06:07 A . (.AVAST Software - Home Network Security.) – C:\Windows\System32\drivers\aswHdsKe.sys [183176] =>.AVAST Software s.r.o.®
                O58 - SDL:2022/12/15 22:44:27 A . (.AVAST Software - Avast HWID.) – C:\Windows\System32\drivers\aswHwid.sys [42736] =>.AVAST Software s.r.o.® (Avast Software s.r.o)
                O58 - SDL:2022/12/15 22:44:21 A . (.AVAST Software - Avast Keyboard Filter Driver.) – C:\Windows\System32\drivers\aswKbd.sys [40688] =>.AVAST Software s.r.o.®
                O58 - SDL:2022/12/15 23:06:18 A . (.AVAST Software - Avast File System Minifilter for Windows 20.) – C:\Windows\System32\drivers\aswMonFlt.sys [135200] =>.AVAST Software s.r.o.®
                O58 - SDL:2022/12/15 22:44:26 A . (.AVAST Software - Avast TDI Redirect Driver.) – C:\Windows\System32\drivers\aswRdr.sys [70640] =>.AVAST Software s.r.o.®
                O58 - SDL:2022/12/15 22:44:27 A . (.AVAST Software - Avast Revert.) – C:\Windows\System32\drivers\aswRvrt.sys [72800] =>.AVAST Software s.r.o.® (Avast Software s.r.o)
                O58 - SDL:2022/12/15 23:06:19 A . (.AVAST Software - Avast Virtualization Driver.) – C:\Windows\System32\drivers\aswSnx.sys [784552] =>.AVAST Software s.r.o.®
                O58 - SDL:2022/12/15 23:06:19 A . (.AVAST Software - Avast self protection module.) – C:\Windows\System32\drivers\aswSP.sys [397984] =>.AVAST Software s.r.o.®
                O58 - SDL:2022/12/15 22:44:28 A . (.AVAST Software - Avast Stream Filter.) – C:\Windows\System32\drivers\aswStmXP.sys [146584] =>.AVAST Software s.r.o.®
                O58 - SDL:2022/12/15 22:44:27 A . (.AVAST Software - Avast VM Monitor.) – C:\Windows\System32\drivers\aswVmm.sys [310200] =>.AVAST Software s.r.o.® (Avast Software s.r.o)
                O58 - SDL:2008/01/19 00:56:29 A . (.Microsoft Corporation - MS Remote Access serial network driver.) – C:\Windows\System32\drivers\asyncmac.sys [17408] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 02:41:30 A . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) – C:\Windows\System32\drivers\atapi.sys [21560] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 02:43:06 A . (.Microsoft Corporation - ATAPI Driver Extension.) – C:\Windows\System32\drivers\ataport.sys [110136] =>.Microsoft Windows®
                O58 - SDL:2006/11/09 18:36:04 A . (.America Online - ATW Protocol Driver.) – C:\Windows\System32\drivers\atwpkt2.sys [25136] =>.AOL LLC®
                O58 - SDL:2006/11/09 18:36:19 A . (.America Online - ATW Protocol Driver.) – C:\Windows\System32\drivers\atwpkt264.sys [33592] =>.AOL LLC®
                O58 - SDL:2006/11/02 04:49:47 A . (.Microsoft Corporation - Battery Class Driver.) – C:\Windows\System32\drivers\battc.sys [25192] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 00:53:30 A . (.Microsoft Corporation - Microsoft BDA Driver Support Library.) – C:\Windows\System32\drivers\bdasup.sys [12288] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:49:10 A . (.Microsoft Corporation - BEEP Driver.) – C:\Windows\System32\drivers\beep.sys [6144] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2011/02/22 07:51:51 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) – C:\Windows\System32\drivers\bowser.sys [69632] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 03:24:45 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) – C:\Windows\System32\drivers\BrFiltLo.sys [13568] [Unsigned] =>.Brother Industries, Ltd.
                O58 - SDL:2006/11/02 03:24:46 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) – C:\Windows\System32\drivers\BrFiltUp.sys [5248] [Unsigned] =>.Brother Industries, Ltd.
                O58 - SDL:2008/01/19 01:58:26 A . (.Microsoft Corporation - MAC Bridge Driver.) – C:\Windows\System32\drivers\bridge.sys [93696] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 03:25:24 A . (.Brother Industries Ltd. - Brotehr Serial I/F Driver (WDM).) – C:\Windows\System32\drivers\BrSerId.sys [71808] [Unsigned] =>.Brother Industries Ltd.
                O58 - SDL:2006/11/02 03:24:44 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) – C:\Windows\System32\drivers\BrSerWdm.sys [62336] [Unsigned] =>.Brother Industries Ltd.
                O58 - SDL:2006/11/02 03:24:44 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) – C:\Windows\System32\drivers\BrUsbMdm.sys [12160] [Unsigned] =>.Brother Industries Ltd.
                O58 - SDL:2006/11/02 03:24:47 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) – C:\Windows\System32\drivers\BrUsbSer.sys [11904] [Unsigned] =>.Brother Industries Ltd.
                O58 - SDL:2006/11/02 03:55:23 A . (.Microsoft Corporation - Bluetooth Communications Driver.) – C:\Windows\System32\drivers\bthmodem.sys [39936] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:28:02 A . (.Microsoft Corporation - CD-ROM File System Driver.) – C:\Windows\System32\drivers\cdfs.sys [70144] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:49:51 A . (.Microsoft Corporation - SCSI CD-ROM Driver.) – C:\Windows\System32\drivers\cdrom.sys [67072] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 03:55:08 A . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) – C:\Windows\System32\drivers\circlass.sys [35328] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 02:43:13 A . (.Microsoft Corporation - SCSI Class System Dll.) – C:\Windows\System32\drivers\Classpnp.sys [127544] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:49:28 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) – C:\Windows\System32\drivers\cmdide.sys [16488] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:49:32 A . (.Microsoft Corporation - Composite Battery Driver.) – C:\Windows\System32\drivers\compbatt.sys [18280] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 02:41:58 A . (.Microsoft Corporation - Crash Dump Driver.) – C:\Windows\System32\drivers\crashdmp.sys [36408] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:49:43 A . (.Microsoft Corporation - Disk Block Verification Filter Driver.) – C:\Windows\System32\drivers\crcdisk.sys [22632] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 03:30:18 A . (.Microsoft Corporation - Processor Device Driver.) – C:\Windows\System32\drivers\crusoe.sys [38912] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2011/04/14 09:24:14 A . (.Microsoft Corporation - DFS Namespace Client Driver.) – C:\Windows\System32\drivers\dfsc.sys [75264] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 02:42:20 A . (.Microsoft Corporation - PnP Disk Driver.) – C:\Windows\System32\drivers\disk.sys [55352] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 00:49:43 A . (.Microsoft Corporation - Crash Dump Disk Driver.) – C:\Windows\System32\drivers\Diskdump.sys [19968] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 04:50:11 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) – C:\Windows\System32\drivers\djsvs.sys [71272] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 01:53:03 A . (.Microsoft Corporation - Microsoft Kernel DRM Descrambler Filter.) – C:\Windows\System32\drivers\drmk.sys [130048] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:53:16 A . (.Microsoft Corporation - Microsoft Kernel DRM Audio Descrambler Filt.) – C:\Windows\System32\drivers\drmkaud.sys [5632] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 02:41:40 A . (.Microsoft Corporation - ATAPI Dump Driver.) – C:\Windows\System32\drivers\Dumpata.sys [29240] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 00:36:12 A . (.Microsoft Corporation - DirectX API Driver.) – C:\Windows\System32\drivers\dxapi.sys [13312] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:36:12 A . (.Microsoft Corporation - DirectX Graphics Driver.) – C:\Windows\System32\drivers\dxg.sys [76288] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/08/01 20:01:23 A . (.Microsoft Corporation - DirectX Graphics Kernel.) – C:\Windows\System32\drivers\dxgkrnl.sys [625152] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 02:30:54 A . (.Intel Corporation - Intel(R) PRO/1000 Adapter NDIS 6 deserializ.) – C:\Windows\System32\drivers\E1G60I32.sys [117760] [Unsigned] =>.Intel Corporation
                O58 - SDL:2008/01/19 02:42:11 A . (.Microsoft Corporation - Special Memory Device Cache.) – C:\Windows\System32\drivers\ecache.sys [143416] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:51:34 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) – C:\Windows\System32\drivers\elxstor.sys [316520] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 00:28:01 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) – C:\Windows\System32\drivers\exfat.sys [136192] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:28:01 A . (.Microsoft Corporation - Fast FAT File System Driver.) – C:\Windows\System32\drivers\fastfat.sys [143360] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 03:51:33 A . (.Microsoft Corporation - Floppy Disk Controller Driver.) – C:\Windows\System32\drivers\fdc.sys [25088] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 02:42:31 A . (.Microsoft Corporation - FileInfo Filter Driver.) – C:\Windows\System32\drivers\fileinfo.sys [58936] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 00:30:23 A . (.Microsoft Corporation - File Trace Filter Driver.) – C:\Windows\System32\drivers\filetrace.sys [27648] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 03:51:32 A . (.Microsoft Corporation - Floppy Driver.) – C:\Windows\System32\drivers\flpydisk.sys [20480] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 02:42:38 A . (.Microsoft Corporation - Microsoft Filesystem Filter Manager.) – C:\Windows\System32\drivers\fltMgr.sys [192056] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 00:27:57 A . (.Microsoft Corporation - File System Recognizer Driver.) – C:\Windows\System32\drivers\fs_rec.sys [12800] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 02:43:01 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) – C:\Windows\System32\drivers\FWPKCLNT.SYS [101432] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:50:04 A . (.Microsoft Corporation - MS Generic AGPv3.0 Filter for K8/9 Processo.) – C:\Windows\System32\drivers\GAGP30KX.SYS [58984] =>.Microsoft Windows®
                O58 - SDL:2008/01/18 23:30:49 A . (.Microsoft Corporation - High Definition Audio Bus Driver.) – C:\Windows\System32\drivers\hdaudbus.sys [53760] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 02:36:49 A . (.Microsoft Corporation - High Definition Audio Function Driver.) – C:\Windows\System32\drivers\HdAudio.sys [235520] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 03:55:22 A . (.Microsoft Corporation - Bluetooth Miniport Driver for HID Devices.) – C:\Windows\System32\drivers\hidbth.sys [29184] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 03:55:01 A . (.Microsoft Corporation - Hid Class Library.) – C:\Windows\System32\drivers\hidclass.sys [38912] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 03:55:01 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) – C:\Windows\System32\drivers\hidir.sys [21504] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 03:55:00 A . (.Microsoft Corporation - Hid Parsing Library.) – C:\Windows\System32\drivers\hidparse.sys [25472] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 03:55:01 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) – C:\Windows\System32\drivers\hidusb.sys [12288] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 04:50:10 A . (.Hewlett-Packard Company - Smart Array Storport Driver.) – C:\Windows\System32\drivers\HpCISSs.sys [37480] =>.Microsoft Windows®
                O58 - SDL:2008/05/08 04:05:18 A . (.Conexant Systems, Inc. - HSF_HWB2 WDM driver.) – C:\Windows\System32\drivers\HSXHWBS2.sys [266752] [Unsigned] =>.Conexant Systems, Inc.
                O58 - SDL:2008/05/08 04:04:16 A . (.Conexant Systems, Inc. - HSF_CNXT driver.) – C:\Windows\System32\drivers\HSX_CNXT.sys [661504] [Unsigned] =>.Conexant Systems, Inc.
                O58 - SDL:2008/05/08 04:03:18 A . (.Conexant Systems, Inc. - HSF_DP driver.) – C:\Windows\System32\drivers\HSX_DP.sys [980992] [Unsigned] =>.Conexant Systems, Inc.
                O58 - SDL:2010/02/20 16:18:40 A . (.Microsoft Corporation - HTTP Protocol Stack.) – C:\Windows\System32\drivers\http.sys [411136] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 04:49:25 A . (.Microsoft Corporation - I2O Utility Filter.) – C:\Windows\System32\drivers\i2omgmt.sys [16488] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:49:49 A . (.Microsoft Corporation - I2O Miniport Driver.) – C:\Windows\System32\drivers\i2omp.sys [27752] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 00:49:18 A . (.Microsoft Corporation - i8042 Port Driver.) – C:\Windows\System32\drivers\i8042prt.sys [54784] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 04:51:25 A . (.Intel Corporation - Intel Matrix Storage Manager driver (base).) – C:\Windows\System32\drivers\iaStorV.sys [232040] =>.Microsoft Windows®
                O58 - SDL:2008/03/25 15:44:24 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) – C:\Windows\System32\drivers\igdkmd32.sys [2307072] [Unsigned] =>.Intel Corporation
                O58 - SDL:2006/11/02 04:50:17 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) – C:\Windows\System32\drivers\iirsp.sys [41576] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 02:41:20 A . (.Microsoft Corporation - Intel PCI IDE Driver.) – C:\Windows\System32\drivers\intelide.sys [17976] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 00:27:21 A . (.Microsoft Corporation - Processor Device Driver.) – C:\Windows\System32\drivers\intelppm.sys [41472] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:56:23 A . (.Microsoft Corporation - IP FILTER DRIVER.) – C:\Windows\System32\drivers\ipfltdrv.sys [47616] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 03:42:03 A . (.Microsoft Corporation - WMI IPMI DRIVER.) – C:\Windows\System32\drivers\IPMIDrv.sys [65536] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:56:28 A . (.Microsoft Corporation - IP Network Address Translator.) – C:\Windows\System32\drivers\ipnat.sys [100864] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:55:26 A . (.Microsoft Corporation - IRDA Protocol Driver.) – C:\Windows\System32\drivers\irda.sys [95744] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:55:19 A . (.Microsoft Corporation - Infra-Red Bus Enumerator.) – C:\Windows\System32\drivers\irenum.sys [13312] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 04:50:24 A . (.Microsoft Corporation - PNP ISA Bus Driver.) – C:\Windows\System32\drivers\isapnp.sys [47208] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:50:07 A . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) – C:\Windows\System32\drivers\iteatapi.sys [35944] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:50:09 A . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) – C:\Windows\System32\drivers\iteraid.sys [35944] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 02:41:52 A . (.Microsoft Corporation - Keyboard Class Driver.) – C:\Windows\System32\drivers\kbdclass.sys [35384] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 03:51:12 A . (.Microsoft Corporation - HID Keyboard Filter Driver.) – C:\Windows\System32\drivers\kbdhid.sys [15872] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:49:22 A . (.Microsoft Corporation - Kernel CSA Library.) – C:\Windows\System32\drivers\ks.sys [148992] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2009/06/15 13:20:59 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) – C:\Windows\System32\drivers\ksecdd.sys [439896] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 00:55:03 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) – C:\Windows\System32\drivers\lltdio.sys [47104] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 04:50:04 A . (.LSI Logic - LSI Logic Fusion-MPT FC Driver (StorPort).) – C:\Windows\System32\drivers\lsi_fc.sys [65640] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:50:05 A . (.LSI Logic - LSI Logic Fusion-MPT SAS Driver (StorPort).) – C:\Windows\System32\drivers\lsi_sas.sys [65640] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:50:10 A . (.LSI Logic - LSI Logic Fusion-MPT SCSI Driver (StorPort).) – C:\Windows\System32\drivers\lsi_scsi.sys [65640] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 00:30:36 A . (.Microsoft Corporation - LUA File Virtualization Filter Driver.) – C:\Windows\System32\drivers\luafv.sys [84480] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:49:59 A . (.Microsoft Corporation - Medium changer class driver.) – C:\Windows\System32\drivers\mcd.sys [18944] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/06/19 09:26:58 A . (.Conexant - Diagnostic Interface x86 Driver.) – C:\Windows\System32\drivers\mdmxsdk.sys [12672] [Unsigned] =>.Conexant
                O58 - SDL:2006/11/02 04:49:53 A . (.LSI Logic Corporation - MEGASAS RAID Controller Driver for Windows.) – C:\Windows\System32\drivers\megasas.sys [28776] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 00:57:16 A . (.Microsoft Corporation - Modem Device Driver.) – C:\Windows\System32\drivers\modem.sys [31744] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:52:19 A . (.Microsoft Corporation - Monitor Driver.) – C:\Windows\System32\drivers\monitor.sys [41984] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 02:41:52 A . (.Microsoft Corporation - Mouse Class Driver.) – C:\Windows\System32\drivers\mouclass.sys [34360] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 03:51:12 A . (.Microsoft Corporation - HID Mouse Filter Driver.) – C:\Windows\System32\drivers\mouhid.sys [15872] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 02:42:28 A . (.Microsoft Corporation - Mount Point Manager.) – C:\Windows\System32\drivers\mountmgr.sys [57400] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:50:16 A . (.Microsoft Corporation - MultiPath Support Bus-Driver.) – C:\Windows\System32\drivers\mpio.sys [78952] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 00:54:46 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) – C:\Windows\System32\drivers\mpsdrv.sys [64000] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 04:49:59 A . (.LSI Logic Corporation - MegaRAID RAID Controller Driver for Windows.) – C:\Windows\System32\drivers\Mraid35x.sys [33384] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 00:28:45 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) – C:\Windows\System32\drivers\mrxdav.sys [110080] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2011/04/29 07:49:35 A . (.Microsoft Corporation - Windows NT SMB Minirdr.) – C:\Windows\System32\drivers\mrxsmb.sys [105984] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2011/07/06 09:56:47 A . (.Microsoft Corporation - Longhorn SMB Downlevel SubRdr.) – C:\Windows\System32\drivers\mrxsmb10.sys [213504] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2011/04/29 07:49:44 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) – C:\Windows\System32\drivers\mrxsmb20.sys [79360] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 04:49:44 A . (.Microsoft Corporation - MS AHCI 1.0 Standard Driver.) – C:\Windows\System32\drivers\msahci.sys [23144] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:50:17 A . (.Microsoft Corporation - Microsoft Device Specific Module.) – C:\Windows\System32\drivers\msdsm.sys [80488] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 00:28:09 A . (.Microsoft Corporation - Mailslot driver.) – C:\Windows\System32\drivers\msfs.sys [22528] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 02:41:14 A . (.Microsoft Corporation - ISA Driver.) – C:\Windows\System32\drivers\msisadrv.sys [16440] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 02:42:35 A . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) – C:\Windows\System32\drivers\msiscsi.sys [181304] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 00:49:20 A . (.Microsoft Corporation - MS KS Server.) – C:\Windows\System32\drivers\mskssrv.sys [8192] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:49:18 A . (.Microsoft Corporation - MS Proxy Clock.) – C:\Windows\System32\drivers\mspclock.sys [5888] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:49:18 A . (.Microsoft Corporation - MS Proxy Quality Manager.) – C:\Windows\System32\drivers\mspqm.sys [5504] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 02:42:29 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) – C:\Windows\System32\drivers\msrpc.sys [163384] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 02:41:49 A . (.Microsoft Corporation - System Management BIOS Driver.) – C:\Windows\System32\drivers\mssmbios.sys [31288] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 00:49:19 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) – C:\Windows\System32\drivers\mstee.sys [6016] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 02:42:14 A . (.Microsoft Corporation - Multiple UNC Provider driver.) – C:\Windows\System32\drivers\mup.sys [49720] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 02:43:31 A . (.Microsoft Corporation - NDIS 6.0 wrapper driver.) – C:\Windows\System32\drivers\ndis.sys [529464] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 00:56:24 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) – C:\Windows\System32\drivers\ndistapi.sys [20992] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:55:40 A . (.Microsoft Corporation - NDIS User mode I/O driver.) – C:\Windows\System32\drivers\ndisuio.sys [16896] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:56:33 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) – C:\Windows\System32\drivers\ndiswan.sys [121344] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:56:28 A . (.Microsoft Corporation - NDIS Proxy.) – C:\Windows\System32\drivers\ndproxy.sys [49664] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:55:45 A . (.Microsoft Corporation - NetBIOS interface driver.) – C:\Windows\System32\drivers\netbios.sys [35840] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:55:35 A . (.Microsoft Corporation - MBT Transport driver.) – C:\Windows\System32\drivers\netbt.sys [184320] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 02:42:44 A . (.Microsoft Corporation - Network I/O Subsystem.) – C:\Windows\System32\drivers\netio.sys [223288] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:50:19 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) – C:\Windows\System32\drivers\nfrd960.sys [45160] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 00:28:10 A . (.Microsoft Corporation - NPFS Driver.) – C:\Windows\System32\drivers\npfs.sys [34816] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:55:50 A . (.Microsoft Corporation - NSI Proxy.) – C:\Windows\System32\drivers\nsiproxy.sys [16384] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 02:43:40 A . (.Microsoft Corporation - NT File System Driver.) – C:\Windows\System32\drivers\ntfs.sys [1081912] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 02:36:50 A . (.N-trig Innovative Technologies - N-trig tablet digitizer in-box driver.) – C:\Windows\System32\drivers\ntrigdigi.sys [20608] [Unsigned] =>.N-trig Innovative Technologies
                O58 - SDL:2008/01/19 00:49:12 A . (.Microsoft Corporation - NULL Driver.) – C:\Windows\System32\drivers\null.sys [4608] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 04:50:24 A . (.NVIDIA Corporation - NVIDIA® nForce™ RAID Driver.) – C:\Windows\System32\drivers\nvraid.sys [88680] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:50:13 A . (.NVIDIA Corporation - NVIDIA® nForce™ Sata Performance Driver.) – C:\Windows\System32\drivers\nvstor.sys [40040] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:50:40 A . (.Microsoft Corporation - NForce NT AGP Filter.) – C:\Windows\System32\drivers\NV_AGP.SYS [106600] =>.Microsoft Windows®
                O58 - SDL:2008/05/19 21:07:31 A . (.Microsoft Corporation - NativeWiFi Miniport Driver.) – C:\Windows\System32\drivers\nwifi.sys [148480] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 03:55:16 A . (.Microsoft Corporation - 1394 OpenHCI Port Driver.) – C:\Windows\System32\drivers\ohci1394.sys [62080] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/04/04 20:21:42 A . (.Microsoft Corporation - QoS Packet Scheduler.) – C:\Windows\System32\drivers\pacer.sys [72192] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 03:51:30 A . (.Microsoft Corporation - Parallel Port Driver.) – C:\Windows\System32\drivers\parport.sys [79360] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 02:42:23 A . (.Microsoft Corporation - Partition Management Driver.) – C:\Windows\System32\drivers\partmgr.sys [56376] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 03:51:23 A . (.Microsoft Corporation - VDM Parallel Driver.) – C:\Windows\System32\drivers\parvdm.sys [8704] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 02:42:20 A . (.Microsoft Corporation - NT Plug and Play PCI Enumerator.) – C:\Windows\System32\drivers\pci.sys [151096] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:49:20 A . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) – C:\Windows\System32\drivers\pciide.sys [13416] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 02:42:10 A . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) – C:\Windows\System32\drivers\pciidex.sys [45112] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:51:12 A . (.Microsoft Corporation - PCMCIA Bus Driver.) – C:\Windows\System32\drivers\pcmcia.sys [167528] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:04:35 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) – C:\Windows\System32\drivers\PEAuth.sys [878080] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:53:19 A . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) – C:\Windows\System32\drivers\portcls.sys [167936] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 03:30:18 A . (.Microsoft Corporation - Processor Device Driver.) – C:\Windows\System32\drivers\processr.sys [38400] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 04:51:45 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) – C:\Windows\System32\drivers\ql2300.sys [900712] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:50:35 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) – C:\Windows\System32\drivers\ql40xx.sys [106088] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 00:56:07 A . (.Microsoft Corporation - Microsoft Quality Windows Audio Video Exper.) – C:\Windows\System32\drivers\qwavedrv.sys [31232] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:56:31 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) – C:\Windows\System32\drivers\rasacd.sys [11776] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:56:34 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) – C:\Windows\System32\drivers\rasl2tp.sys [76288] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:56:33 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) – C:\Windows\System32\drivers\raspppoe.sys [41472] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:56:34 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) – C:\Windows\System32\drivers\raspptp.sys [62976] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:56:43 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) – C:\Windows\System32\drivers\rassstp.sys [69120] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:28:37 A . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) – C:\Windows\System32\drivers\rdbss.sys [224768] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 01:01:08 A . (.Microsoft Corporation - RDP Miniport.) – C:\Windows\System32\drivers\RDPCDD.sys [6144] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 04:03:00 A . (.Microsoft Corporation - Microsoft RDP Device redirector.) – C:\Windows\System32\drivers\rdpdr.sys [242688] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 01:01:09 A . (.Microsoft Corporation - RDP Miniport.) – C:\Windows\System32\drivers\RDPENCDD.sys [6144] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 01:01:21 A . (.Microsoft Corporation - RDP Terminal Stack Driver.) – C:\Windows\System32\drivers\rdpwd.sys [181248] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/05/09 20:33:10 A . (.Microsoft Corporation - Reliable Multicast Transport.) – C:\Windows\System32\drivers\rmcast.sys [113664] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:56:07 A . (.Microsoft Corporation - Remote NDIS Miniport.) – C:\Windows\System32\drivers\RNDISMP.sys [33280] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:57:15 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) – C:\Windows\System32\drivers\rootmdm.sys [8192] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:55:03 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) – C:\Windows\System32\drivers\rspndr.sys [60416] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/15 19:19:04 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) – C:\Windows\System32\drivers\RTKVHDA.sys [2047576] =>.Realtek Semiconductor Corp®
                O58 - SDL:2007/08/03 05:44:00 A . (.Realtek Corporation - Realtek 8101E/8168/8169 NDIS6 32-bit Driver.) – C:\Windows\System32\drivers\Rtlh86.sys [91648] [Unsigned] =>.Realtek Corporation
                O58 - SDL:2006/11/02 04:50:16 A . (.Microsoft Corporation - SBP-2 Protocol Driver.) – C:\Windows\System32\drivers\sbp2port.sys [76392] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 02:42:10 A . (.Microsoft Corporation - SCSI Port Driver.) – C:\Windows\System32\drivers\scsiport.sys [142904] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 01:37:21 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) – C:\Windows\System32\drivers\secdrv.sys [20480] [Unsigned] =>.Rovi Corporation
                O58 - SDL:2006/11/02 03:51:25 A . (.Microsoft Corporation - Serial Port Enumerator.) – C:\Windows\System32\drivers\serenum.sys [17920] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 03:51:30 A . (.Microsoft Corporation - Serial Device Driver.) – C:\Windows\System32\drivers\serial.sys [83456] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:49:16 A . (.Microsoft Corporation - Serial Mouse Filter Driver.) – C:\Windows\System32\drivers\sermouse.sys [19968] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2007/11/18 21:08:10 A . (.Microsoft Corporation - Small Form Factor Disk Driver.) – C:\Windows\System32\drivers\sffdisk.sys [13312] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2007/11/18 21:08:10 A . (.Microsoft Corporation - Small Form Factor MMC Protocol Driver.) – C:\Windows\System32\drivers\sffp_mmc.sys [12800] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2007/11/18 21:08:10 A . (.Microsoft Corporation - Small Form Factor SD Protocol Driver.) – C:\Windows\System32\drivers\sffp_sd.sys [12800] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 03:51:40 A . (.Microsoft Corporation - SCSI Floppy Driver.) – C:\Windows\System32\drivers\sfloppy.sys [13312] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 04:49:51 A . (.Microsoft Corporation - SIS NT AGP Filter.) – C:\Windows\System32\drivers\SISAGP.SYS [53352] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:50:10 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) – C:\Windows\System32\drivers\sisraid2.sys [38504] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:50:16 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) – C:\Windows\System32\drivers\sisraid4.sys [71784] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 00:55:27 A . (.Microsoft Corporation - SMB Transport driver.) – C:\Windows\System32\drivers\smb.sys [66560] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:49:30 A . (.Microsoft Corporation - Smard Card Driver Library.) – C:\Windows\System32\drivers\smclib.sys [17408] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2009/01/23 18:52:50 A . (.Acronis - Acronis Snapshot API.) – C:\Windows\System32\drivers\snapman.sys [132224] =>.Acronis, Inc®
                O58 - SDL:2008/01/19 02:41:30 A . (.Microsoft Corporation - loader for security processor.) – C:\Windows\System32\drivers\spldr.sys [21048] =>.Microsoft Windows®
                O58 - SDL:2008/01/18 23:10:35 A . (.Microsoft Corporation - security processor.) – C:\Windows\System32\drivers\spsys.sys [681984] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2011/02/18 08:31:24 A . (.Microsoft Corporation - Server driver.) – C:\Windows\System32\drivers\srv.sys [304640] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2011/04/29 07:49:57 A . (.Microsoft Corporation - Smb 2.0 Server driver.) – C:\Windows\System32\drivers\srv2.sys [146432] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2011/04/29 07:49:55 A . (.Microsoft Corporation - Server Network driver.) – C:\Windows\System32\drivers\srvnet.sys [102400] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 02:43:12 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) – C:\Windows\System32\drivers\Storport.sys [123960] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 00:53:16 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) – C:\Windows\System32\drivers\stream.sys [52992] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 02:41:14 A . (.Microsoft Corporation - Plug and Play Software Device Enumerator.) – C:\Windows\System32\drivers\swenum.sys [15288] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:50:05 A . (.LSI Logic - LSI Logic 8XX SCSI Miniport Driver.) – C:\Windows\System32\drivers\symc8xx.sys [35944] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:49:56 A . (.LSI Logic - LSI Logic Hi-Perf SCSI Miniport Driver.) – C:\Windows\System32\drivers\sym_hi.sys [31848] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:50:03 A . (.LSI Logic - LSI Logic Ultra160 SCSI Miniport Driver.) – C:\Windows\System32\drivers\sym_u3.sys [34920] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 00:49:56 A . (.Microsoft Corporation - SCSI Tape Class Driver.) – C:\Windows\System32\drivers\tape.sys [24576] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2010/06/16 10:59:54 A . (.Microsoft Corporation - TCP/IP Driver.) – C:\Windows\System32\drivers\tcpip.sys [898952] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 00:56:07 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) – C:\Windows\System32\drivers\tcpipreg.sys [30208] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:57:10 A . (.Microsoft Corporation - TDI Wrapper.) – C:\Windows\System32\drivers\tdi.sys [20992] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 01:01:07 A . (.Microsoft Corporation - Named Pipe Transport Driver.) – C:\Windows\System32\drivers\tdpipe.sys [17920] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2009/01/23 18:52:48 A . (.Acronis - Acronis Try&Decide and Restore Points Volum.) – C:\Windows\System32\drivers\tdrpman.sys [368480] =>.Acronis, Inc®
                O58 - SDL:2008/01/19 01:01:08 A . (.Microsoft Corporation - TCP Transport Driver.) – C:\Windows\System32\drivers\tdtcp.sys [29184] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:55:58 A . (.Microsoft Corporation - TDI Translation Driver.) – C:\Windows\System32\drivers\tdx.sys [71680] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 02:42:19 A . (.Microsoft Corporation - Terminal Server Driver.) – C:\Windows\System32\drivers\termdd.sys [54328] =>.Microsoft Windows®
                O58 - SDL:2009/01/23 18:52:53 A . (.Acronis - Acronis True Image File System Filter.) – C:\Windows\System32\drivers\tifsfilt.sys [44384] =>.Acronis, Inc®
                O58 - SDL:2009/01/23 18:52:53 A . (.Acronis - Acronis True Image Backup Archive Explorer.) – C:\Windows\System32\drivers\timntr.sys [441760] =>.Acronis, Inc®
                O58 - SDL:2008/01/19 01:01:15 A . (.Microsoft Corporation - TS Security Filter Driver.) – C:\Windows\System32\drivers\tssecsrv.sys [23552] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:55:41 A . (.Microsoft Corporation - Microsoft Tunnel Interface Driver.) – C:\Windows\System32\drivers\TUNMP.SYS [15360] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2010/02/18 06:52:00 A . (.Microsoft Corporation - Microsoft Tunnel Interface Driver.) – C:\Windows\System32\drivers\tunnel.sys [25088] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 04:49:59 A . (.Microsoft Corporation - MS AGPv3.5 Filter.) – C:\Windows\System32\drivers\UAGP35.SYS [56936] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 00:28:08 A . (.Microsoft Corporation - UDF File System Driver.) – C:\Windows\System32\drivers\udfs.sys [226816] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 04:50:04 A . (.Microsoft Corporation - ULi AGPv3.0 Filter for K8/9 Processor Platf.) – C:\Windows\System32\drivers\ULIAGPKX.SYS [58472] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:51:25 A . (.ULi Electronics Inc. - ULi SATA Controller Driver.) – C:\Windows\System32\drivers\uliahci.sys [235112] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:50:35 A . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win200.) – C:\Windows\System32\drivers\ulsata.sys [98408] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:50:45 A . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) – C:\Windows\System32\drivers\ulsata2.sys [115816] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 00:53:40 A . (.Microsoft Corporation - User-Mode Bus Enumerator.) – C:\Windows\System32\drivers\umbus.sys [34816] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:53:39 A . (.Microsoft Corporation - Generic pass-through driver.) – C:\Windows\System32\drivers\umpass.sys [7680] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:56:08 A . (.Microsoft Corporation - Remote NDIS USB Driver.) – C:\Windows\System32\drivers\usb8023.sys [15872] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:53:23 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) – C:\Windows\System32\drivers\USBCAMD.sys [25728] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:53:23 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) – C:\Windows\System32\drivers\USBCAMD2.sys [25728] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 03:55:11 A . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) – C:\Windows\System32\drivers\usbccgp.sys [73216] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 03:55:09 A . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) – C:\Windows\System32\drivers\usbcir.sys [68608] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:53:17 A . (.Microsoft Corporation - Universal Serial Bus Driver.) – C:\Windows\System32\drivers\usbd.sys [5888] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:53:21 A . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) – C:\Windows\System32\drivers\usbehci.sys [39424] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:53:42 A . (.Microsoft Corporation - Default Hub Driver for USB.) – C:\Windows\System32\drivers\usbhub.sys [194560] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 03:55:05 A . (.Microsoft Corporation - OHCI USB Miniport Driver.) – C:\Windows\System32\drivers\usbohci.sys [19456] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:53:25 A . (.Microsoft Corporation - USB 1.1 & 2.0 Port Driver.) – C:\Windows\System32\drivers\usbport.sys [226304] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 04:14:58 A . (.Microsoft Corporation - USB Printer driver.) – C:\Windows\System32\drivers\usbprint.sys [18944] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:53:22 A . (.Microsoft Corporation - USB Mass Storage Class Driver.) – C:\Windows\System32\drivers\USBSTOR.SYS [55296] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:53:20 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) – C:\Windows\System32\drivers\usbuhci.sys [23552] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:52:06 A . (.Microsoft Corporation - VGA/Super VGA Video Driver.) – C:\Windows\System32\drivers\vga.sys [25088] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 03:53:56 A . (.Microsoft Corporation - VGA/Super VGA Video Driver.) – C:\Windows\System32\drivers\vgapnp.sys [26112] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 04:49:52 A . (.Microsoft Corporation - VIA NT AGP Filter.) – C:\Windows\System32\drivers\VIAAGP.SYS [54376] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 03:30:19 A . (.Microsoft Corporation - Processor Device Driver.) – C:\Windows\System32\drivers\viac7.sys [39424] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 04:49:30 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) – C:\Windows\System32\drivers\viaide.sys [17512] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 00:52:12 A . (.Microsoft Corporation - Video Port Driver.) – C:\Windows\System32\drivers\videoprt.sys [110080] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 02:42:18 A . (.Microsoft Corporation - Volume Manager Driver.) – C:\Windows\System32\drivers\volmgr.sys [52792] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 02:43:03 A . (.Microsoft Corporation - Volume Manager Extension Driver.) – C:\Windows\System32\drivers\volmgrx.sys [294456] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 02:42:48 A . (.Microsoft Corporation - Volume Shadow Copy Driver.) – C:\Windows\System32\drivers\volsnap.sys [227896] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 04:50:41 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR X86-32.) – C:\Windows\System32\drivers\vsmraid.sys [112232] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 03:52:52 A . (.Microsoft Corporation - Wacom Serial Pen Tablet HID Driver.) – C:\Windows\System32\drivers\wacompen.sys [20608] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:56:31 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) – C:\Windows\System32\drivers\wanarp.sys [62464] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/01 15:18:15 A . (.America Online, Inc. - Wan Miniport (ATW).) – C:\Windows\System32\drivers\wanatw4.sys [33588] [Unsigned] =>.America Online, Inc.
                O58 - SDL:2008/01/19 00:35:30 A . (.Microsoft Corporation - Watchdog Driver.) – C:\Windows\System32\drivers\watchdog.sys [32768] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 04:49:38 A . (.Microsoft Corporation - Microsoft Watchdog Timer Driver.) – C:\Windows\System32\drivers\wd.sys [19560] =>.Microsoft Windows®
                O58 - SDL:2009/07/14 12:45:07 A . (.Microsoft Corporation - Kernel Mode Driver Framework Runtime.) – C:\Windows\System32\drivers\Wdf01000.sys [445008] =>.Microsoft Windows®
                O58 - SDL:2009/07/14 12:45:07 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) – C:\Windows\System32\drivers\WdfLdr.sys [38480] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 03:35:03 A . (.Microsoft Corporation - Windows Management Interface for ACPI.) – C:\Windows\System32\drivers\wmiacpi.sys [11264] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 02:41:20 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) – C:\Windows\System32\drivers\wmilib.sys [17976] =>.Microsoft Windows®
                O58 - SDL:2008/01/19 00:56:49 A . (.Microsoft Corporation - Winsock2 IFS Layer.) – C:\Windows\System32\drivers\ws2ifsl.sys [15872] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:52:50 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) – C:\Windows\System32\drivers\WUDFPf.sys [51200] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 00:53:04 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) – C:\Windows\System32\drivers\WUDFRd.sys [83328] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2007/10/18 06:36:54 A . (.Conexant Systems, Inc. - Modem Audio Device Driver.) – C:\Windows\System32\drivers\XAudio.sys [8704] [Unsigned] =>.Conexant Systems, Inc.
                O58 - SDL:2006/11/02 02:09:42 A . (…) – C:\Windows\System32\ANSI.SYS [9029] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2008/01/19 02:42:58 A . (.Microsoft Corporation - Common Log File System Driver.) – C:\Windows\System32\clfs.sys [247352] =>.Microsoft Windows®
                O58 - SDL:2006/11/02 02:09:45 A . (…) – C:\Windows\System32\country.sys [27097] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 02:09:41 A . (…) – C:\Windows\System32\HIMEM.SYS [4768] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 02:09:44 A . (…) – C:\Windows\System32\KEY01.SYS [42809] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 02:09:44 A . (…) – C:\Windows\System32\KEYBOARD.SYS [42537] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 02:09:29 A . (…) – C:\Windows\System32\NTDOS.SYS [27866] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 02:09:35 A . (…) – C:\Windows\System32\NTDOS404.SYS [29146] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 02:09:38 A . (…) – C:\Windows\System32\NTDOS411.SYS [29370] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 02:09:40 A . (…) – C:\Windows\System32\NTDOS412.SYS [29274] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 02:09:31 A . (…) – C:\Windows\System32\NTDOS804.SYS [29146] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 02:09:20 A . (…) – C:\Windows\System32\NTIO.SYS [33952] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 02:09:23 A . (…) – C:\Windows\System32\NTIO404.SYS [34672] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 02:09:24 A . (…) – C:\Windows\System32\NTIO411.SYS [35776] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 02:09:26 A . (…) – C:\Windows\System32\NTIO412.SYS [35536] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2006/11/02 02:09:22 A . (…) – C:\Windows\System32\NTIO804.SYS [34672] [Unsigned] =>.Microsoft Corporation
                O58 - SDL:2011/06/02 07:59:29 A . (.Microsoft Corporation - Multi-User Win32 Driver.) – C:\Windows\System32\win32k.sys [2042368] [Unsigned] =>.Microsoft Corporation

                —\ Last modified or created user files (1) - 134s
                O61 - LFC: 2022/12/16 09:21:31 A . (. Malwarebytes.) – C:\Users\John\Desktop\downloads\mb-support-1.8.7.918.exe [13471344] [Unsigned]

                —\ File Associations Shell Spawning (10) - 0s
                O67 - Shell Spawning: <.bat> [HKLM..\open\Command] (…) – “%1” %* =>.Default.Value
                O67 - Shell Spawning: <.cpl> [HKLM..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) – C:\WINDOWS\System32\control.exe [Unsigned] =>.Microsoft Corporation
                O67 - Shell Spawning: <.cmd> [HKLM..\open\Command] (…) – “%1” %* =>.Default.Value
                O67 - Shell Spawning: <.com> [HKLM..\open\Command] (…) – “%1” %* =>.Default.Value
                O67 - Shell Spawning: <.evt> [HKLM..\open\Command] (.Microsoft Corporation - Event Viewer Snapin Launcher.) – C:\WINDOWS\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation
                O67 - Shell Spawning: <.exe> [HKLM..\open\Command] (…) – “%1” %* =>.Default.Value
                O67 - Shell Spawning: <.html> [HKLM..\open\Command] (.Google Inc. - Google Chrome.) – C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
                O67 - Shell Spawning: <.js> [HKLM..\open\Command] (…) – C:\Windows\System32\WScript.exe “%1” %* =>.Default.Value
                O67 - Shell Spawning: <.reg> [HKLM..\open\Command] (.Microsoft Corporation - Registry Editor.) – C:\WINDOWS\regedit.exe [Unsigned] =>.Microsoft Corporation
                O67 - Shell Spawning: <.scr> [HKLM..\open\Command] (…) – “%1” /S =>.Default.Value

                —\ Start Menu Internet (12) - 1s
                O68 - StartMenuInternet: <FIREFOX.EXE> [HKLM..\Shell\open\Command] (.Mozilla Corporation - Firefox.) – C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
                O68 - StartMenuInternet: [HKLM..\Shell\open\Command] (.Google Inc. - Google Chrome.) – C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
                O68 - StartMenuInternet: <IEXPLORE.EXE> [HKLM..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) – C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
                O68 - StartMenuInternet: <FIREFOX.EXE> [HKLM..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) – C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
                O68 - StartMenuInternet: [HKLM..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) – C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc.
                O68 - StartMenuInternet: <IEXPLORE.EXE> [HKLM..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) – C:\WINDOWS\System32\ie4uinit.exe =>.Microsoft Corporation
                O68 - StartMenuInternet: <FIREFOX.EXE> [HKLM..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) – C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
                O68 - StartMenuInternet: [HKLM..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) – C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc.
                O68 - StartMenuInternet: <IEXPLORE.EXE> [HKLM..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) – C:\WINDOWS\System32\ie4uinit.exe =>.Microsoft Corporation
                O68 - StartMenuInternet: <FIREFOX.EXE> [HKLM..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) – C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
                O68 - StartMenuInternet: [HKLM..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) – C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc.
                O68 - StartMenuInternet: <IEXPLORE.EXE> [HKLM..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) – C:\WINDOWS\System32\ie4uinit.exe =>.Microsoft Corporation

                —\ Search Browser Infection (8) - 12s
                O69 - SBI: SearchScopes [HKCU]{0B4A10D1-FBD6-451d-BFDA-F03252B05984} - (AIM Search) - http://slirsredirect.search.aol.com/ =>.America On Line Inc.
                O69 - SBI: SearchScopes [HKCU]{55C1D719-5274-4281-A484-D799AE2BA7E5} - (Yahoo! Search) - http://search.yahoo.com/ =>.Yahoo! Inc.
                O69 - SBI: SearchScopes [HKCU]{8f6ecace-7280-4a70-834a-38c6fca77ee7} - (AOL Search) - http://slirsredirect.search.aol.com/ =>.America On Line Inc.
                O69 - SBI: SearchScopes [HKCU]{9CB96984-43C3-4D44-90EF-01466EFCF7BB} [DefaultScope] - (Yahoo! (Avast)) - http://search.yahoo.com/ =>.Yahoo! Inc.
                O69 - SBI: SearchScopes [HKLM]{0B4A10D1-FBD6-451d-BFDA-F03252B05984} - (AIM Search) - http://slirsredirect.search.aol.com/ =>.America On Line Inc.
                O69 - SBI: SearchScopes [HKLM]{55C1D719-5274-4281-A484-D799AE2BA7E5} - (Yahoo! Search) - http://search.yahoo.com/ =>.Yahoo! Inc.
                O69 - SBI: SearchScopes [HKLM]{6FFC5051-438A-4405-9F3C-54DFE9532F52} - (Ask.com) - http://www.ask.com/ =>Toolbar.Ask
                O69 - SBI: SearchScopes [HKLM]{9CB96984-43C3-4D44-90EF-01466EFCF7BB} [DefaultScope] - (Yahoo! (Avast)) - http://search.yahoo.com/ =>.Yahoo! Inc.

                —\ Search Svchost Services (31) - 2s
                O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Application Experience Service.) – C:\WINDOWS\System32\aelupsvc.dll [24576] [Unsigned] =>.Microsoft Corporation
                O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Problem Reports and Solutions.) – C:\WINDOWS\System32\wercplsupport.dll [62976] [Unsigned] =>.Microsoft Corporation
                O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Windows Shell Services Dll.) – C:\WINDOWS\System32\shsvcs.dll [247808] [Unsigned] =>.Microsoft Corporation
                O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) – C:\WINDOWS\System32\certprop.dll [40448] [Unsigned] =>.Microsoft Corporation
                O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) – C:\WINDOWS\System32\certprop.dll [40448] [Unsigned] =>.Microsoft Corporation
                O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - Server Service DLL.) – C:\WINDOWS\System32\srvsvc.dll [125952] [Unsigned] =>.Microsoft Corporation
                O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Group Policy Client.) – C:\WINDOWS\System32\gpsvc.dll [574464] [Unsigned] =>.Microsoft Corporation
                O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - IKE extension.) – C:\WINDOWS\System32\IKEEXT.DLL [438272] [Unsigned] =>.Microsoft Corporation
                O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) – C:\WINDOWS\System32\audiosrv.dll [314368] [Unsigned] =>.Microsoft Corporation
                O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) – C:\WINDOWS\System32\rasauto.dll [90624] [Unsigned] =>.Microsoft Corporation
                O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) – C:\WINDOWS\System32\rasmans.dll [260608] [Unsigned] =>.Microsoft Corporation
                O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) – C:\WINDOWS\System32\mprdim.dll [68608] [Unsigned] =>.Microsoft Corporation
                O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) – C:\WINDOWS\System32\Sens.dll [47104] [Unsigned] =>.Microsoft Corporation
                O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Microsoft NAT Helper Components.) – C:\WINDOWS\System32\ipnathlp.dll [288256] [Unsigned] =>.Microsoft Corporation
                O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Microsoft® Windows™ Telephony Server.) – C:\WINDOWS\System32\tapisrv.dll [242688] [Unsigned] =>.Microsoft Corporation
                O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Terminal Server Remote Connections Manager.) – C:\WINDOWS\System32\termsrv.dll [448512] [Unsigned] =>.Microsoft Corporation
                O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) – C:\WINDOWS\System32\wuaueng.dll [1929952] =>.Microsoft Windows Component Publisher®
                O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) – C:\WINDOWS\System32\qmgr.dll [758272] [Unsigned] =>.Microsoft Corporation
                O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) – C:\WINDOWS\System32\shsvcs.dll [247808] [Unsigned] =>.Microsoft Corporation
                O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) – C:\WINDOWS\System32\iphlpsvc.dll [190464] [Unsigned] =>.Microsoft Corporation
                O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - Secondary Logon Service DLL.) – C:\WINDOWS\System32\seclogon.dll [19968] [Unsigned] =>.Microsoft Corporation
                O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Application Information Service.) – C:\WINDOWS\System32\appinfo.dll [33280] [Unsigned] =>.Microsoft Corporation
                O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - iSCSI Discovery service.) – C:\WINDOWS\System32\iscsiexe.dll [111616] [Unsigned] =>.Microsoft Corporation
                O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Multimedia Class Scheduler Service.) – C:\WINDOWS\System32\mmcss.dll [45056] [Unsigned] =>.Microsoft Corporation
                O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) – C:\WINDOWS\System32\profsvc.dll [153600] [Unsigned] =>.Microsoft Corporation
                O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Microsoft EAPHost service.) – C:\WINDOWS\System32\eapsvc.dll [57344] [Unsigned] =>.Microsoft Corporation
                O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) – C:\WINDOWS\System32\wbem\WMIsvc.dll [161792] [Unsigned] =>.Microsoft Corporation
                O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Task Scheduler Service.) – C:\WINDOWS\System32\schedsvc.dll [603648] [Unsigned] =>.Microsoft Corporation
                O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Terminal Services Configuration service.) – C:\WINDOWS\System32\SessEnv.dll [84992] [Unsigned] =>.Microsoft Corporation
                O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - Computer Browser Service DLL.) – C:\WINDOWS\System32\browser.dll [81920] [Unsigned] =>.Microsoft Corporation
                O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Key Management Service.) – C:\WINDOWS\System32\KMSVC.DLL [68096] [Unsigned] =>.Microsoft Corporation

                —\ Firewall Active Exception List (24) - 4s
                O87 - FAEL: “{E8483AA0-B6A2-4E65-8E1A-487AF1D60F96}” [In-None-P6-TRUE] .(.CyberLink Corp. - PowerDirector.) – c:\Program Files\Cyberlink\PowerDirector\PDR.EXE =>.CyberLink®
                O87 - FAEL: “{FF70F5DB-A77F-4995-82F4-F392FE088383}” [In-None-P6-TRUE] .(…) – C:\Program Files\earthlink totalaccess\TaskPanl.exe {5B2FD02E944AD78D4D06F59814E14714}.
                O87 - FAEL: “{7CA489F2-040E-4A14-B3CE-841374A39D14}” [In-None-P17-TRUE] .(…) – C:\Program Files\earthlink totalaccess\TaskPanl.exe {5B2FD02E944AD78D4D06F59814E14714}.
                O87 - FAEL: “{6C9B8201-7929-4920-92D0-FBF369AB8F02}” [In-None-P6-TRUE] .(…) – C:\Program Files\earthlink totalaccess\TaskPanl.exe {5B2FD02E944AD78D4D06F59814E14714}.
                O87 - FAEL: “{793C14E1-E9F1-43A0-81E3-5990CECA9272}” [In-None-P17-TRUE] .(…) – C:\Program Files\earthlink totalaccess\TaskPanl.exe {5B2FD02E944AD78D4D06F59814E14714}.
                O87 - FAEL: “{409E208E-3A8E-4C91-A4EA-CF32EC792BE1}” [In-None-P6-TRUE] .(…) – C:\Program Files\earthlink totalaccess\TaskPanl.exe {5B2FD02E944AD78D4D06F59814E14714}.
                O87 - FAEL: “{32E8602A-B424-4804-8652-6DD5FCE87884}” [In-None-P17-TRUE] .(…) – C:\Program Files\earthlink totalaccess\TaskPanl.exe {5B2FD02E944AD78D4D06F59814E14714}.
                O87 - FAEL: “{D2DFA983-1E8D-460E-89CB-0352F1AB2BA8}” [In-None-P6-TRUE] .(.AOL Inc. - AOL Loader.) – C:\Program Files\Common Files\aol\Loader\aolload.exe =>.AOL Inc.®
                O87 - FAEL: “{32AFA6F4-899C-4C3C-9130-749E79257543}” [In-None-P17-TRUE] .(.AOL Inc. - AOL Loader.) – C:\Program Files\Common Files\aol\Loader\aolload.exe =>.AOL Inc.®
                O87 - FAEL: “{B862DD3D-630A-478D-9901-8D589C31EB1C}” [In-None-P6-TRUE] .(.AOL Inc. - AOL Loader.) – C:\Program Files\Common Files\aol\Loader\aolload.exe =>.AOL Inc.®
                O87 - FAEL: “{18954565-0C09-4879-942F-5DD029B03AB8}” [In-None-P17-TRUE] .(.AOL Inc. - AOL Loader.) – C:\Program Files\Common Files\aol\Loader\aolload.exe =>.AOL Inc.®
                O87 - FAEL: “{60D32775-8659-4D06-B54C-3B6171048679}” [In-None-P6-TRUE] .(…) – C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe [Unsigned] (.not file.) =>.SUP.Orphan
                O87 - FAEL: “{8B1743DE-136A-4409-90EC-8BBACEFEAF0A}” [In-None-P17-TRUE] .(…) – C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe [Unsigned] (.not file.) =>.SUP.Orphan
                O87 - FAEL: “{4F87DBE6-6356-42F1-824B-BDCF6BDFBB9F}” [In-None-P6-TRUE] .(.AOL Inc. - AOL Instant Messenger.) – C:\Program Files\AIM\aim.exe =>.AOL Inc.®
                O87 - FAEL: “{98E15AFD-DED9-4FE8-B9CF-D50DE8A89A1E}” [In-None-P17-TRUE] .(.AOL Inc. - AOL Instant Messenger.) – C:\Program Files\AIM\aim.exe =>.AOL Inc.®
                O87 - FAEL: “{2F1C4541-2B64-4B4A-8EA8-0F3ED7B890C0}” [In-None-P6-TRUE] .(.Mozilla Corporation - Firefox.) – C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
                O87 - FAEL: “{6D78CD1A-7F6A-4A87-A8AE-46A55023C5E5}” [In-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) – C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
                O87 - FAEL: “TCP Query User{A5E60A3B-4561-424E-8A18-174F42E21003}C:\program files\mozilla firefox\firefox.exe” [In-None-P6-TRUE] .(.Mozilla Corporation - Firefox.) – C:\program files\mozilla firefox\firefox.exe =>.Mozilla Corporation®
                O87 - FAEL: “UDP Query User{EB8C3515-5A35-4A71-A72B-F5E61F7E2008}C:\program files\mozilla firefox\firefox.exe” [In-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) – C:\program files\mozilla firefox\firefox.exe =>.Mozilla Corporation®
                O87 - FAEL: “{2F134E04-97DC-49A8-B255-2B36AE9A218C}” [In-None-P6-TRUE] .(.Mozilla Corporation - Firefox.) – C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
                O87 - FAEL: “{65921389-A4FF-4AF2-B28E-9A38485FE263}” [In-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) – C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
                O87 - FAEL: “{9DCEE7C7-A0AC-48AD-83A9-C1055C5ABA0D}” [In-None-P17-TRUE] .(.Google Inc. - Google Chrome.) – C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
                O87 - FAEL: “{7CFFBEFF-43DB-4A1C-8833-27560307053A}” [In-None-P6-TRUE] .(.AVAST Software - Avast Emergency Update.) – C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe =>.AVAST Software s.r.o.®
                O87 - FAEL: “{2F3596B0-FED9-43BD-A9A0-AD47A640FA32}” [In-None-P17-TRUE] .(.AVAST Software - Avast Emergency Update.) – C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe =>.AVAST Software s.r.o.®

                —\ Product Upgrade Codes (28) - 1s
                O90 - PUC: “00002109020090400000000000F01FEC” [HKLM] . (.Compatibility Pack for the 2007 Office system.) – C:\Windows\Installer{90120000-0020-0409-0000-0000000FF1CE}\O12ConvIcon.exe
                O90 - PUC: “00002159FA0090400000000000F01FEC” [HKLM] . (.Microsoft Office PowerPoint Viewer 2007 (English).) – C:\Windows\Installer{95120000-00AF-0409-0000-0000000FF1CE}\ppvwicon.exe,0 =>.Microsoft Corporation
                O90 - PUC: “06367A21E88372B4BABE5DCF3587DDA2” [HKLM] . (.HPPhotoSmartPhotobookWebPack1.) =>.EBP Informatique
                O90 - PUC: “06AF0DABFC901144EAA62C48C48821AF” [HKLM] . (.HP Photosmart Essential 2.5.) – C:\Windows\Installer{BAD0FA60-09CF-4411-AE6A-C2844C8812FA}\ARPPRODUCTICON.exe =>.Hewlett-Packard
                O90 - PUC: “098990BCF5D15D11E99A0005AB3E711E” [HKLM] . (.PowerDirector.) – c:\Windows\Installer{CB099890-1D5F-11D5-9EA9-0050BAE317E1}\ARPPRODUCTICON.exe =>.CyberLink Corporation
                O90 - PUC: “0DC8CB51B56A0D742ADD098A4295F08A” [HKLM] . (.Microsoft Works.) – C:\Windows\Installer{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}\MSWorks.exe =>.Microsoft Corporation
                O90 - PUC: “1095B92072F1743499328ECA8C5FE451” [HKLM] . (.Snapfish Picture Mover.) – C:\Windows\Installer{029B5901-1F27-4347-9923-E8ACC8F54E15}\ARPPRODUCTICON.exe
                O90 - PUC: “24E34A3785639DD45815AFDC3A365283” [HKLM] . (.HP Advisor.) – C:\Windows\Installer{73A43E42-3658-4DD9-8551-FACDA3632538}\ARPPRODUCTICON.exe =>.Hewlett-Packard
                O90 - PUC: “26DDC2EC4210AC63483DF9D4FCC5B59D” [HKLM] . (.Microsoft .NET Framework 3.5 SP1.) =>.Microsoft Corporation
                O90 - PUC: “4EA42A62D9304AC4784BF2381208190F” [HKLM] . (.Java 8 Update 91.) – C:\Program Files\Java\jre1.8.0_91\bin\javaws.exe =>.Sun Microsystems
                O90 - PUC: “53A4D966B6414134981FA13C7D8B3876” [HKLM] . (.Hewlett-Packard Asset Agent for Health Check.) =>.Hewlett-Packard
                O90 - PUC: “5C1093C35543A0E32A41B090A305076A” [HKLM] . (.Microsoft .NET Framework 4 Client Profile.) =>.Microsoft Corporation
                O90 - PUC: “68AB67CA7DA73301B744AA0100000010” [HKLM] . (.Adobe Reader X (10.1.16).) – C:\Windows\Installer{AC76BA86-7AD7-1033-7B44-AA1000000001}\SC_Reader.ico =>.Adobe Inc.
                O90 - PUC: “93BAD29AC2E44034A96BCB446EB8552E” [HKLM] . (.Avast Update Helper.) =>.Avast Software s.r.o
                O90 - PUC: “990BFB432B7059E46A3737266D80662A” [HKLM] . (.PSSWCORE.) – C:\Windows\Installer{34BFB099-07B2-4E95-A673-7362D60866A2}\ARPPRODUCTICON.exe
                O90 - PUC: “9DCFCAC4B17FA314D85FA146915DDC6C” [HKLM] . (.Cards_Calendar_OrderGift_DoMorePlugout.)
                O90 - PUC: “A91FFE89BA03B4E49B340FB6C136BE8F” [HKLM] . (.Visual Studio 2012 x86 Redistributables.) =>.bl.org
                O90 - PUC: “AA73C45227B60034486F898A429181E7” [HKLM] . (.Hewlett-Packard Active Check.) =>.Hewlett-Packard
                O90 - PUC: “B1DBDC44BF9820E43891A2C455F066A4” [HKLM] . (.RTC Client API v1.2.)
                O90 - PUC: “b25099274a207264182f8181add555d0” [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org
                O90 - PUC: “C29201F7091A67146A561ADE4387FD68” [HKLM] . (.LightScribe System Software.) – C:\Windows\Installer{7F10292C-A190-4176-A665-A1ED3478DF86}\ARPPRODUCTICON.exe =>.Hewlett-Packard
                O90 - PUC: “C7E6ABE36FD3EA848BB7C4FA2B1C3C7F” [HKLM] . (.LightScribe Template Labeler.) – C:\Windows\Installer{3EBA6E7C-3DF6-48AE-B87B-4CAFB2C1C3F7}\ARPPRODUCTICON.exe =>.Hewlett-Packard
                O90 - PUC: “CFD2C1F142D260E3CB8B271543DA9F98” [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148.) =>.bl.org
                O90 - PUC: “E77CD80EA90D63e408766DBDCB5C8FCD” [HKLM] . (.VideoToolkit01.)
                O90 - PUC: “F077ABD937FB93D41BFD06539D2586CF” [HKLM] . (.HP Customer Feedback.) =>.Hewlett-Packard
                O90 - PUC: “F60730A4A66673047777F5728467D401” [HKLM] . (.Java Auto Updater.) =>.Sun Microsystems
                O90 - PUC: “F633BB1185E077948B662FF43A4316B6” [HKLM] . (.HP Active Support Library.) – c:\Windows\Installer{11BB336F-0E58-4977-B866-F24FA334616B}\ARPPRODUCTICON.exe =>.Hewlett-Packard
                O90 - PUC: “F942F94A19C0F79468FD2B85E5E8677B” [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org

                —\ Windows Installer Scan (24) - 6s
                [MD5.85029662BA6B6FFFB6C84759A9C3274D] [WIS][2012/08/14 19:16:21] (.Oracle - Java™ SE Runtime Environment 7.0.) – C:\Windows\Installer\130e10.msi [17379840] =>.Oracle
                [MD5.0217C79886B2686F99B6D364082D678E] [WIS][2016/05/10 20:55:34] (.Oracle Corporation - Java SE Runtime Environment 8 Update 91.) – C:\Windows\Installer\147c27.msi [1306624] =>.Oracle Corporation
                [MD5.C87B804D90D3A0637CDC3D964F247FD2] [WIS][2016/05/10 20:57:30] (.Oracle Corporation - Java Auto Updater.) – C:\Windows\Installer\147c2d.msi [231424] =>.Oracle Corporation
                [MD5.E3A7FC9BE2D9592B823C386172F22F1B] [WIS][2013/10/17 06:52:24] (.Adobe Systems Incorporated - ADOBER~1.0Adobe Reader X (10.0.1).) – C:\Windows\Installer\16827a.msi [2295808] =>.Adobe Systems Incorporated
                [MD5.3B69E8EF444F48E137C86014D2680A14] [WIS][2016/10/18 21:11:40] (.AVG Technologies - AVG.) – C:\Windows\Installer\1893ca9.msi [6787072] =>.AVG Technologies
                [MD5.89E92309B078B34480D59E161A3129CE] [WIS][2007/11/18 21:46:02] (.Hewlett-Packard - HP Active Support Library.) – C:\Windows\Installer\2a517.msi [398848] =>.Hewlett-Packard
                [MD5.DA2300999D6284E794F7B8693C818562] [WIS][2007/11/18 21:46:04] (.Hewlett-Packard - Hewlett-Packard Asset Agent.) – C:\Windows\Installer\2a51d.msi [180224] =>.Hewlett-Packard
                [MD5.8D53DEA3E20161227F791E5C95D987BB] [WIS][2007/11/18 21:46:05] (.Hewlett-Packard - HP ActiveCheck Local Mode.) – C:\Windows\Installer\2a523.msi [280064] =>.Hewlett-Packard
                [MD5.F43816F713EE7C02A533D588D8E3475F] [WIS][2007/11/18 21:48:57] (..) – C:\Windows\Installer\2a52a.msi [988160]
                [MD5.F7AFDB93688145574098F87FCB5A7DAA] [WIS][2007/11/18 21:49:04] (. - .) – C:\Windows\Installer\2a530.msi [510976]
                [MD5.28AB9AE1AE6D4F5E0CE8DD7830716054] [WIS][2007/11/18 21:49:07] (. - .) – C:\Windows\Installer\2a536.msi [312320]
                [MD5.3E2436C058B31DC3E6DCB3DF4316CA7D] [WIS][2007/11/18 21:49:08] (. - .) – C:\Windows\Installer\2a53c.msi [211968]
                [MD5.F0D360FCED7CABC2B40C9B73F41AED36] [WIS][2007/11/18 21:49:09] (. - Cards_Calendar_OrderGift_DoMorePlugout.) – C:\Windows\Installer\2a543.msi [623616]
                [MD5.EAAF74C5B8798462667566D2841E6EA3] [WIS][2007/11/18 21:55:16] (.CyberLink Corp..) – C:\Windows\Installer\2a547.msi [6644224] =>.CyberLink Corp.
                [MD5.A8C8D7D7B4BD4B468670C3588066D108] [WIS][2007/11/18 21:58:22] (.LightScribe - LightScribe Template Labeler.) – C:\Windows\Installer\2a554.msi [2616832] =>.LightScribe
                [MD5.C122EE33DD8C73C850ED8F9526128CFB] [WIS][2007/11/18 22:00:36] (.InstallShield Software Corporation.) – C:\Windows\Installer\2a564.msi [820736] =>.InstallShield Software Corporation
                [MD5.A1461B9FF5763039B60ADF1E69BAECC9] [WIS][2007/11/18 22:03:50] (.Hewlett-Packard.) – C:\Windows\Installer\2a585.msi [321024] =>.Hewlett-Packard
                [MD5.7C255DAD4E42E8D5D964C7CB4103488B] [WIS][2010/10/21 05:06:28] (.Hewlett-Packard - HP Advisor.) – C:\Windows\Installer\2bbb02.msi [5035008] =>.Hewlett-Packard
                [MD5.639F7B0C1218A39B6B5E36BE08111D42] [WIS][2018/06/21 06:25:18] (.AVAST Software - Avast Update Helper.) – C:\Windows\Installer\8ef03.msi [16896] =>.AVAST Software
                [MD5.AA3113833CF15E490182454C1B2E929A] [WIS][2016/07/08 22:45:27] (.AVG Technologies CZ, s.r.o. - Visual Studio 2012 x86 Redistributables.) – C:\Windows\Installer\b06a7.msi [27136] =>.AVG Technologies CZ, s.r.o.
                [MD5.4E9A435CA621220FFCB1A2C5158C0874] [WIS][2009/07/29 20:30:34] (.Hewlett-Packard Company - LS_HSI.) – C:\Windows\Installer\e9ab17.msi [1809920] =>.Hewlett-Packard Company
                [MD5.39A573338A47038E9AC75E7D257BDC48] [WIS][2012/07/27 20:20:54] (.Adobe Systems, Incorporated.) – C:\Windows\Installer\16827b.msp [13123584] =>.SUP.Obsolete.Adobe
                [MD5.765E81508D7A084A970E249E22D754F3] [WIS][2015/10/12 23:18:03] (.Adobe Systems, Incorporated.) – C:\Windows\Installer\70de7.msp [20824064] =>.SUP.Obsolete.Adobe

                —\ FEATURE CONTROL. (108) - 0s
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPUR POSEDETECTION]:PresentationHost.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEM ENT]:wmplayer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:msn6.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:ehExtHost.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJ ECT]:PresentationHost.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCR IPT]:PresentationHost.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGAC Y_COMPRESSION]:PresentationHost.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PR OTOCOL]:explorer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PR OTOCOL]:iexplore.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PR OTOCOL]:SAPfewgsrv.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PR OTOCOL]:SAPGuiIT.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PR OTOCOL]:SAPGUI.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PR OTOCOL]:SAPLgPad.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PR OTOCOL]:SAPLOGON.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PR OTOCOL]:Scale_for_R3.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PR OTOCOL]:wmplayer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PR OTOCOL]:ehExtHost.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_U PLOAD_FOR_APP]:ieuser.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_U PLOAD_FOR_APP]:iexplore.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNE T_PROTOCOL]:PresentationHost.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICO DE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT _PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT _PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT _PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT _PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AN D_STATUS]:PresentationHost.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HIGH_CONTRAST _BACKGROUND_IMAGES]:sidebar.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME _PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME _PASSWORD_DISABLE]:ehExtHost.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PR OLOG]:msiexec.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_A RT]:waol.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_A RT]:cs.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_A RT]:wm.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHEL L_FOLDERS]:iexplore.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPA RAMS]:helppane.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONT ROL_BEHAVIORS]:wlmail.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_ LOCKDOWN]:explorer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_ LOCKDOWN]:iexplore.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_ LOCKDOWN]:wmplayer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_ LOCKDOWN]:PresentationHost.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTION SPER1_0SERVER]:explorer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTION SPERSERVER]:explorer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:ehExtHost.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:ehExtHost.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLO AD_IEFRAME]utlook.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLO AD_IEFRAME]:sidebar.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLO AD_IEFRAME]:mshta.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHIN G]:explorer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHIN G]:iexplore.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHIN G]:wmplayer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHIN G]:ehExtHost.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCK DOWN]:explorer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCK DOWN]:iexplore.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCK DOWN]:wmplayer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCK DOWN]:ehExtHost.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLB ACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOU T_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTI VEXINSTALL]:wmplayer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILE DOWNLOAD]:msimn.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILE DOWNLOAD]:winmail.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILE DOWNLOAD]:wmplayer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJE CT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_ TO_LMZ]:PresentationHost.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOB JECT]:explorer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOB JECT]:iexplore.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOB JECT]:wmplayer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOB JECT]:ehExtHost.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROT OCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_L OCKDOWN]utlook.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_L OCKDOWN]:winmail.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_L OCKDOWN]:msimn.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILE CHECK]:wmplayer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILE CHECK]:ehExtHost.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDS ELECTCONTROL]:excel.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDS ELECTCONTROL]:infopath.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDS ELECTCONTROL]owerpnt.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDS ELECTCONTROL]:winword.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVI GATE_URL]:wmplayer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVI GATE_URL]:ehExtHost.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WARN_ON_SEC_C ERT_REV_FAILED]:mbam.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZ ECHILD]:msn6.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZ ECHILD]:msn.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMA NAGEMENT]:explorer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMA NAGEMENT]:iexplore.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMA NAGEMENT]:wmplayer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRI CTIONS]:explorer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRI CTIONS]:iexplore.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRI CTIONS]:wmplayer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATIO N]:explorer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATIO N]:iexplore.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATIO N]:wmplayer.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATIO N]:ehExtHost.exe =>.Legitimate
                [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATIO N]:PresentationHost.exe =>.Legitimate

                —\ Observer Of Events (50) - 60s

                Application.Warning: Microsoft-Windows-CAPI2 (1877)
                ~Numéro: 333556
                ~Date: 12/20/2022 07:47:16 AM
                ~ID: 6
                ~Description: 5060
                ~Suggestion: Aucune

                Application.Error: Application Error (18)
                ~Numéro: 333493
                ~Date: 12/19/2022 11:20:33 PM
                ~ID: 1000
                ~Description: Faulting application %1, version %2, time stamp 0x%3, faulting module %4, version %5, time stamp 0x%6, exception code 0x%7, fault offset 0x%8, process id 0x%9, application start time 0x%10.
                ~Suggestion: Réparer ou réinstaller l’application.

                Application.Error: Windows Search Service (285)
                ~Numéro: 333476
                ~Date: 12/19/2022 08:21:19 PM
                ~ID: 3013
                ~Description: The entry <%2> in the hash map cannot be updated.Context: Application, SystemIndex CatalogDetails: A device attached to the system is not functioning. (0x8007001f)

                Application.Warning: profsvc (24)
                ~Numéro: 333357
                ~Date: 12/18/2022 10:08:51 AM
                ~ID: 1530
                ~Description: Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 2 user registry handl

                Application.Warning: Microsoft-Windows-RestartManager (1)
                ~Numéro: 332857
                ~Date: 12/15/2022 10:33:40 PM
                ~ID: 10010
                ~Description: 12088C:\Program Files\Crystal Security\Crystal Security.exeCrystal Security001671088651
                ~Suggestion: Redémarrer manuellement l’application ou le service

                Application.Error: VSS (3)
                ~Numéro: 332787
                ~Date: 12/15/2022 09:39:32 PM
                ~ID: 8194
                ~Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface. hr = %1. This is often caused by incorrect security settings in either the writer or requestor process. Operation: Gathering Writer DataContext: Wr
                ~Suggestion: Localiser les enregistreurs VSS qui se trompent et changer le compte sous lequel ils s’exécutent du service réseau au système local. Ajuster les autorisations d’activation du service COM par défaut

                Application.Error: Application Hang (31)
                ~Numéro: 332511
                ~Date: 12/14/2022 12:36:09 PM
                ~ID: 1002
                ~Description: The program %1 version %2 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Problem Reports and Solutions control panel. Process ID: dbc Start Time: 01d90fe11d
                ~Suggestion: Essayer les commandes suivantes ipconfig /release et ipconfig / renew.

                Application.Warning: ESENT (1)
                ~Numéro: 331654
                ~Date: 12/03/2022 04:29:22 AM
                ~ID: 507
                ~Description: %1 (%2) %3A request to read from the file “%4” at offset %5 for %6 bytes succeeded, but took an abnormally long time (%7 seconds) to be serviced by the OS. This problem is likely due to faulty hardware. Please contact your hardware vendor for further

                Application.Warning: Wlclntfy (3)
                ~Numéro: 331285
                ~Date: 11/30/2022 08:15:41 PM
                ~ID: 6000
                ~Description: The winlogon notification subscriber <%1> was unavailable to handle a notification event.

                —\ Additional Scan (O88) (1020) - 56s
                HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\Curren tVersion\Uninstall{209CDA54-D390-46A2-A97C-7BF61734418D} =>PUP.Optional.WeatherBug
                HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uni nstall{209CDA54-D390-46A2-A97C-7BF61734418D} =>PUP.Optional.WeatherBug
                C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics =>SUP.Optional.Auslogics
                C:\Users\John\AppData\Roaming\Auslogics =>SUP.Optional.Auslogics
                HKLM\Software\Classes*\ShellEx\ContextMenuHandlers \BriefcaseMenu =>.SUP.Orphan
                HKLM\Software\Classes\CLSID{85BBD920-42A0-1069-A2E4-08002B30309D} =>.SUP.Orphan
                HKLM\Software\Wow6432Node\Classes\CLSID{85BBD920-42A0-1069-A2E4-08002B30309D} =>.SUP.Orphan
                HKLM\Software\Classes*\ShellEx\ContextMenuHandlers \Sharing =>.SUP.Orphan
                HKLM\Software\Classes\CLSID{f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} =>.SUP.Orphan
                HKLM\Software\Wow6432Node\Classes\CLSID{f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} =>.SUP.Orphan
                HKLM\Software\Classes\Directory\ShellEx\ContextMen uHandlers\Sharing =>.SUP.Orphan
                HKLM\Software\Classes\Folder\ShellEx\ContextMenuHa ndlers\BriefcaseMenu =>.SUP.Orphan
                HKLM\Software\Classes\Drive\shellex\ContextMenuHan dlers\Sharing =>.SUP.Orphan
                HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes{6FFC5051-438A-4405-9F3C-54DFE9532F52} =>Toolbar.Ask
                C:\Windows\Installer\16827b.msp =>.SUP.Obsolete.Adobe
                C:\Windows\Installer\70de7.msp =>.SUP.Obsolete.Adobe
                C:\Users\John\AppData\Local\Temp\tmp-40s.xpi =>.SUP.Temporary.Firefox
                C:\Users\John\AppData\Local\Temp\tmp-pzj.xpi =>.SUP.Temporary.Firefox
                C:\Users\John\AppData\Local\Temp\tmp-rwm.xpi =>.SUP.Temporary.Firefox
                C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\001 =>.SUP.Temporary.Chrome
                C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\002 =>.SUP.Temporary.Chrome
                C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\005 =>.SUP.Temporary.Chrome
                C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\006 =>.SUP.Temporary.Chrome
                C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\007 =>.SUP.Temporary.Chrome
                C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\008 =>.SUP.Temporary.Chrome
                C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\009 =>.SUP.Temporary.Chrome
                C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\010 =>.SUP.Temporary.Chrome
                C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\012 =>.SUP.Temporary.Chrome
                C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\014 =>.SUP.Temporary.Chrome
                C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\015 =>.SUP.Temporary.Chrome
                C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\017 =>.SUP.Temporary.Chrome
                C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\019 =>.SUP.Temporary.Chrome
                C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\020 =>.SUP.Temporary.Chrome
                C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\021 =>.SUP.Temporary.Chrome
                C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\022 =>.SUP.Temporary.Chrome
                C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\023 =>.SUP.Temporary.Chrome
                C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\024 =>.SUP.Temporary.Chrome
                C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\025 =>.SUP.Temporary.Chrome
                C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\026 =>.SUP.Temporary.Chrome
                C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\027 =>.SUP.Temporary.Chrome
                C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\028 =>.SUP.Temporary.Chrome
                C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\030 =>.SUP.Temporary.Chrome
                C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\031 =>.SUP.Temporary.Chrome
                C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\032 =>.SUP.Temporary.Chrome
                C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\033 =>.SUP.Temporary.Chrome
                C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\034 =>.SUP.Temporary.Chrome
                C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\035 =>.SUP.Temporary.Chrome
                C:\Users\John\AppData\Local\Google\Chrome\User Data\Default\File System\036 =>.SUP.Temporary.Chrome
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@sstpsvc.dll,-35001 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netlogon.dll,-1010 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@snmptrap.exe,-3 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@PlaSrv.exe,-10005 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\explorer.exe,-7024 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\dfrgui.exe,-103 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\ie4uinit.exe,-21 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\ie4uinit.exe,-20 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\System32\ie4uinit.exe,-733 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\unregmp2.exe,-4 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Program Files\Windows Photo Gallery\ImagingDevices.exe,-101 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\appwiz.cpl,-156 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Program Files\Windows Sidebar\sidebar.exe,-11003 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\appwiz.cpl,-1070 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\FirewallSettings.exe,-12122 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mblctr.exe,-1002 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\System32\ie4uinit.exe,-731 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\System32\hdwwiz.cpl,-1000 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\appwiz.cpl,-159 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Program Files\Windows Calendar\wincal.exe,-200 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Program Files\Movie Maker\DVDMaker.exe,-61403 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Program Files\Windows Mail\WinMail.exe,-225 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\explorer.exe,-6006 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\colorcpl.exe,-6 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\explorer.exe,-7021 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\explorer.exe,-7023 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\HP\HP Software Update\hpwucli.exe =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\PC-Doctor 5 for Windows\pcdr5cuiw32.exe =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%SystemRoot%\system32\werfault.exe,-100 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%SystemRoot%\system32\werfault.exe,-101 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%SystemRoot%\system32\werfault.exe,-102 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%SystemRoot%\system32\werfault.exe,-103 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@wmploc.dll,-102 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\notepad.exe,-469 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@zipfldr.dll,-10148 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@sendmail.dll,-21 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@sendmail.dll,-4 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%systemroot%\system32\Dfrgui.exe,-172 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\PROGRA~1\WI0FCF~1\Journal.exe,-40145 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mblctr.exe,-1008 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Program Files\Windows Sidebar\sidebar.exe,-1005 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mstsc.exe,-4000 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\SoundRecorder.exe,-100 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\SnippingTool.exe,-15051 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Program Files\windows journal\journal.exe,-62005 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%SystemRoot%\System32\SnippingTool.exe,-15052 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\System32\ie4uinit.exe,-737 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\MdSched.exe,-4001 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\msconfig.exe,-126 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\explorer.exe,-6000 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\explorer.exe,-6004 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Program Files\Microsoft Games\inkball\InkBall.exe,-15051 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\wercon.exe,-350 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\msra.exe,-100 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\Speech\SpeechUX\sapi.cpl,-5555 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\sdclt.exe,-100 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\msinfo32.exe,-100 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\rstrui.exe,-100 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\StikyNot.exe,-551 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Program Files\Windows Journal\Journal.exe,-3074 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\WindowsPowerShell\v1.0\power shell.exe,-101 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5856 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5824 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5825 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@ieframe.dll,-10323 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5826 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5827 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5828 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5829 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5830 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5858 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5832 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5837 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5833 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5834 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5835 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5836 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5839 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5840 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5841 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5842 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@ieframe.dll,-10324 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5843 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5845 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5846 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5847 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5848 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5849 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5852 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5853 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5859 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5854 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@ieframe.dll,-10321 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@ieframe.dll,-10325 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5831 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@ieframe.dll,-17315 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@ieframe.dll,-10322 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@ieframe.dll,-10320 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@ieframe.dll,-12513 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@ieframe.dll,-10326 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\System32\speech\speechux\sapi.cpl,-5566 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\System32\speech\speechux\sapi.cpl,-5563 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\System32\speech\speechux\sapi.cpl,-5562 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\System32\speech\speechux\sapi.cpl,-5564 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\System32\speech\speechux\sapi.cpl,-5561 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\System32\speech\speechux\sapi.cpl,-5565 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-700 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-701 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-702 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-703 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-704 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-705 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-706 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-707 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-708 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\Speech\SpeechUX\sapi.cpl,-5581 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\Speech\SpeechUX\sapi.cpl,-5580 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\Speech\SpeechUX\sapi.cpl,-5578 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\Speech\SpeechUX\sapi.cpl,-5577 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\Speech\SpeechUX\sapi.cpl,-5579 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-710 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-711 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-712 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-713 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-714 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-715 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-716 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-717 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-718 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-719 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-720 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-721 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-722 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-736 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-723 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-724 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-725 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-726 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-734 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-727 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-737 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-728 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-729 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-730 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-731 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-732 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-733 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-735 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-738 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-800 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-801 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Program Files\Windows Photo Gallery\ImagingDevices.exe,-102 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\appwiz.cpl,-160 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@systemcpl.dll,-1 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%windir%\explorer.exe,-6007 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%ProgramFiles%\Windows Mail\WinMail.exe,-226 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\unregmp2.exe,-155 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%ProgramFiles%\Windows Sidebar\sidebar.exe,-1012 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%systemroot%\system32\rstrui.exe,-102 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%systemroot%\system32\Msinfo32.exe,-130 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%systemroot%\system32\sdclt.exe,-101 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@networkexplorer.dll,-1005 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@networkexplorer.dll,-1006 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@networkexplorer.dll,-1029 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@networkexplorer.dll,-1040 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@networkexplorer.dll,-1028 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@networkexplorer.dll,-1039 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@networkexplorer.dll,-1041 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@networkexplorer.dll,-1042 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@networkexplorer.dll,-1050 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@networkexplorer.dll,-1051 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\FirewallSettings.exe,-12123 =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@van.dll,-7205 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-12026 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-12027 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-12002 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-12003 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-12016 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-12017 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-12023 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-12007 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-12004 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-12006 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-12008 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@van.dll,-7204 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-1700 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-1712 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-1530 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-1535 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-1565 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-1570 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-1540 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-1550 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-1555 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-1560 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-1575 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netcfgx.dll,-50002 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%SystemRoot%\System32\drivers\pacer.sys,-100 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netcfgx.dll,-50003 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@tcpipcfg.dll,-50002 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@appwiz.cpl,-165 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@appwiz.cpl,-166 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@appwiz.cpl,-167 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@appwiz.cpl,-168 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@appwiz.cpl,-169 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@appwiz.cpl,-170 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@appwiz.cpl,-171 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@appwiz.cpl,-172 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%SystemRoot%\system32\oobefldr,-33057 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%SystemRoot%\system32\SoundRecorder.exe,-32790 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%windir%\explorer.exe,-7003 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%systemroot%\system32\Mstsc.exe,-4001 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@usercpl.dll,-45 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@explorer.exe,-7003 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@explorer.exe,-7004 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@explorer.exe,-7001 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@sud.dll,-1 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%systemroot%\system32\msconfig.exe,-1601 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\K-Lite Codec Pack\Tools\CodecTweakTool.exe =>.Unsigned
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@explorer.exe,-8243 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Malwarebytes Anti-Malware\mbam.exe =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\adwcleaner.exe =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST.exe =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST(1).exe =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%windir%\explorer.exe,-7001 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%windir%\explorer.exe,-304 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%windir%\explorer.exe,-307 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%ProgramFiles%\Windows Calendar\wincal.exe,-204 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%ProgramFiles%\Movie Maker\DVDMaker.exe,-63385 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST(2).exe =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Desktop\adwcleaner.exe =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\kprm_2.10.0.exe =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST(3).exe =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST(4).exe =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\adwcleaner_7.4.2.exe =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\PROGRA~1\Yahoo!\MESSEN~1\UNWISE.EXE =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp\is-BMB94.tmp\mb3-setup-legacywos-3.5.1.2522-1.0.365-1.0.5292.tmp =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp\is-5MNM0.tmp\mb3-setup-legacywos-3.5.1.2522-1.0.365-1.0.5292.tmp =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Malwarebytes Anti-Malware\unins000.exe =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp_iu14D2N.tmp =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp~nsu.tmp\Au_.exe =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Crystal Security\Crystal Security.exe =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\WINDOWS\Temp\asw.bdd5f65ebeeff25d\avast_free_a ntivirus_setup_online.exe =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Malwarebytes\Anti-Malware\unins000.exe =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\mb-support-1.8.7.918.exe =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp\7zS330B.tmp\mbst ub.exe =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\KVRT.exe =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28502 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28545 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28547 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28543 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28539 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28542 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28535 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28538 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28527 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28530 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28519 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28522 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28511 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28514 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28503 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28506 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32752 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32817 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32818 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32813 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32814 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32809 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32810 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32801 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32804 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32785 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32788 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32777 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32780 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32769 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32772 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32761 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32764 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32753 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32756 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@sstpsvc.dll,-35002 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@sstpsvc.dll,-35003 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@snmptrap.exe,-7 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@snmptrap.exe,-8 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netlogon.dll,-1003 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netlogon.dll,-1006 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25000 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25351 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25357 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25326 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25332 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25301 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25303 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25376 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25382 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25251 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25257 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25082 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25088 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25075 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25081 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25068 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25074 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25061 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25067 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-26106 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25011 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25012 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25018 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25026 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25032 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25019 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25025 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25116 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25118 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25113 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25115 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25001 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25007 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25110 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25112 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31752 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31773 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31774 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31769 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31770 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31761 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31764 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31753 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31756 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30502 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30515 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30518 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30507 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30510 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33752 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33765 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33768 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33753 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33756 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30252 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@WsmRes.dll,-52 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33002 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33027 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33030 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33019 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33022 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33003 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33006 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33035 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33036 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33011 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33014 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33502 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33513 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33514 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33511 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33512 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33503 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33506 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33252 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33257 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33260 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33253 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33256 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28252 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28274 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28277 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28270 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28273 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28262 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28265 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28254 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28257 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30002 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30007 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30010 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30003 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30006 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29502 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29515 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29518 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29507 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29510 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29503 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29506 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29252 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29265 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29268 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29257 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29260 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29253 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29256 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34002 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34007 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34008 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34003 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34004 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34251 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34256 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34257 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34254 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34255 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34252 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34253 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34501 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34506 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34507 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34504 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34505 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34502 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34503 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32002 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32027 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32030 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32019 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32022 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32011 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32014 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32003 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32006 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29002 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29003 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29006 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29752 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29765 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29768 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29757 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29760 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29753 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29756 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32252 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32277 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32280 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32269 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32272 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32261 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32264 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32253 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32256 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30752 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30801 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30804 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30793 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30796 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30785 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30788 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30777 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30780 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30769 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30772 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30761 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30764 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30753 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30756 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31252 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31313 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31316 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31305 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31308 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31293 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31296 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31285 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31288 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31277 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31280 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31269 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31272 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31261 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31264 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31253 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31256 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31002 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31003 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31006 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@PlaSrv.exe,-10002 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@PlaSrv.exe,-10003 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@PlaSrv.exe,-10000 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@PlaSrv.exe,-10001 =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Desktop\kprm_2.10.0.exe =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Desktop\ZHPSuite.exe =>.SUP.Orphan.MUICache
                [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%SystemRoot%\system32\mblctr.exe,-1004 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@sstpsvc.dll,-35001 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netlogon.dll,-1010 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@snmptrap.exe,-3 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@PlaSrv.exe,-10005 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\explorer.exe,-7024 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\dfrgui.exe,-103 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\ie4uinit.exe,-21 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\ie4uinit.exe,-20 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\System32\ie4uinit.exe,-733 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\unregmp2.exe,-4 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Program Files\Windows Photo Gallery\ImagingDevices.exe,-101 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\appwiz.cpl,-156 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Program Files\Windows Sidebar\sidebar.exe,-11003 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\appwiz.cpl,-1070 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\FirewallSettings.exe,-12122 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mblctr.exe,-1002 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\System32\ie4uinit.exe,-731 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\System32\hdwwiz.cpl,-1000 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\appwiz.cpl,-159 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Program Files\Windows Calendar\wincal.exe,-200 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Program Files\Movie Maker\DVDMaker.exe,-61403 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Program Files\Windows Mail\WinMail.exe,-225 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\explorer.exe,-6006 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\colorcpl.exe,-6 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\explorer.exe,-7021 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\explorer.exe,-7023 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\HP\HP Software Update\hpwucli.exe =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\PC-Doctor 5 for Windows\pcdr5cuiw32.exe =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%SystemRoot%\system32\werfault.exe,-100 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%SystemRoot%\system32\werfault.exe,-101 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%SystemRoot%\system32\werfault.exe,-102 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%SystemRoot%\system32\werfault.exe,-103 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@wmploc.dll,-102 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\notepad.exe,-469 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@zipfldr.dll,-10148 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@sendmail.dll,-21 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@sendmail.dll,-4 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%systemroot%\system32\Dfrgui.exe,-172 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\PROGRA~1\WI0FCF~1\Journal.exe,-40145 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mblctr.exe,-1008 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Program Files\Windows Sidebar\sidebar.exe,-1005 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mstsc.exe,-4000 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\SoundRecorder.exe,-100 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\SnippingTool.exe,-15051 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Program Files\windows journal\journal.exe,-62005 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%SystemRoot%\System32\SnippingTool.exe,-15052 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\System32\ie4uinit.exe,-737 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\MdSched.exe,-4001 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\msconfig.exe,-126 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\explorer.exe,-6000 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\explorer.exe,-6004 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Program Files\Microsoft Games\inkball\InkBall.exe,-15051 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\wercon.exe,-350 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\msra.exe,-100 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\Speech\SpeechUX\sapi.cpl,-5555 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\sdclt.exe,-100 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\msinfo32.exe,-100 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\rstrui.exe,-100 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\StikyNot.exe,-551 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Program Files\Windows Journal\Journal.exe,-3074 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\WindowsPowerShell\v1.0\power shell.exe,-101 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5856 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5824 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5825 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@ieframe.dll,-10323 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5826 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5827 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5828 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5829 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5830 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5858 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5832 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5837 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5833 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5834 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5835 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5836 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5839 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5840 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5841 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5842 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@ieframe.dll,-10324 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5843 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5845 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5846 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5847 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5848 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5849 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5852 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5853 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5859 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5854 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@ieframe.dll,-10321 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@ieframe.dll,-10325 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-5831 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@ieframe.dll,-17315 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@ieframe.dll,-10322 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@ieframe.dll,-10320 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@ieframe.dll,-12513 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@ieframe.dll,-10326 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\System32\speech\speechux\sapi.cpl,-5566 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\System32\speech\speechux\sapi.cpl,-5563 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\System32\speech\speechux\sapi.cpl,-5562 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\System32\speech\speechux\sapi.cpl,-5564 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\System32\speech\speechux\sapi.cpl,-5561 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\System32\speech\speechux\sapi.cpl,-5565 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-700 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-701 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-702 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-703 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-704 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-705 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-706 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-707 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-708 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\Speech\SpeechUX\sapi.cpl,-5581 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\Speech\SpeechUX\sapi.cpl,-5580 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\Speech\SpeechUX\sapi.cpl,-5578 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\Speech\SpeechUX\sapi.cpl,-5577 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\Speech\SpeechUX\sapi.cpl,-5579 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-710 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-711 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-712 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-713 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-714 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-715 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-716 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-717 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-718 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-719 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-720 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-721 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-722 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-736 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-723 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-724 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-725 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-726 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-734 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-727 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-737 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-728 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-729 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-730 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-731 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-732 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-733 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-735 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\mmsys.cpl,-738 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-800 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@mmsys.cpl,-801 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Program Files\Windows Photo Gallery\ImagingDevices.exe,-102 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\appwiz.cpl,-160 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@systemcpl.dll,-1 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%windir%\explorer.exe,-6007 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%ProgramFiles%\Windows Mail\WinMail.exe,-226 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\unregmp2.exe,-155 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%ProgramFiles%\Windows Sidebar\sidebar.exe,-1012 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%systemroot%\system32\rstrui.exe,-102 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%systemroot%\system32\Msinfo32.exe,-130 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%systemroot%\system32\sdclt.exe,-101 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@networkexplorer.dll,-1005 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@networkexplorer.dll,-1006 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@networkexplorer.dll,-1029 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@networkexplorer.dll,-1040 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@networkexplorer.dll,-1028 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@networkexplorer.dll,-1039 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@networkexplorer.dll,-1041 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@networkexplorer.dll,-1042 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@networkexplorer.dll,-1050 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@networkexplorer.dll,-1051 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@C:\Windows\system32\FirewallSettings.exe,-12123 =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@van.dll,-7205 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-12026 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-12027 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-12002 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-12003 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-12016 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-12017 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-12023 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-12007 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-12004 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-12006 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-12008 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@van.dll,-7204 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-1700 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-1712 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-1530 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-1535 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-1565 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-1570 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-1540 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-1550 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-1555 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-1560 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netshell.dll,-1575 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netcfgx.dll,-50002 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%SystemRoot%\System32\drivers\pacer.sys,-100 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netcfgx.dll,-50003 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@tcpipcfg.dll,-50002 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@appwiz.cpl,-165 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@appwiz.cpl,-166 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@appwiz.cpl,-167 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@appwiz.cpl,-168 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@appwiz.cpl,-169 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@appwiz.cpl,-170 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@appwiz.cpl,-171 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@appwiz.cpl,-172 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%SystemRoot%\system32\oobefldr,-33057 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%SystemRoot%\system32\SoundRecorder.exe,-32790 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%windir%\explorer.exe,-7003 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%systemroot%\system32\Mstsc.exe,-4001 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@usercpl.dll,-45 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@explorer.exe,-7003 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@explorer.exe,-7004 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@explorer.exe,-7001 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@sud.dll,-1 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%systemroot%\system32\msconfig.exe,-1601 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\K-Lite Codec Pack\Tools\CodecTweakTool.exe =>.Unsigned
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@explorer.exe,-8243 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Malwarebytes Anti-Malware\mbam.exe =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\adwcleaner.exe =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST.exe =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST(1).exe =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%windir%\explorer.exe,-7001 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%windir%\explorer.exe,-304 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%windir%\explorer.exe,-307 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%ProgramFiles%\Windows Calendar\wincal.exe,-204 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%ProgramFiles%\Movie Maker\DVDMaker.exe,-63385 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST(2).exe =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Desktop\adwcleaner.exe =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\kprm_2.10.0.exe =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST(3).exe =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\FRST(4).exe =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\adwcleaner_7.4.2.exe =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\PROGRA~1\Yahoo!\MESSEN~1\UNWISE.EXE =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp\is-BMB94.tmp\mb3-setup-legacywos-3.5.1.2522-1.0.365-1.0.5292.tmp =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp\is-5MNM0.tmp\mb3-setup-legacywos-3.5.1.2522-1.0.365-1.0.5292.tmp =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Malwarebytes Anti-Malware\unins000.exe =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp_iu14D2N.tmp =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp~nsu.tmp\Au_.exe =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Crystal Security\Crystal Security.exe =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\WINDOWS\Temp\asw.bdd5f65ebeeff25d\avast_free_a ntivirus_setup_online.exe =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Malwarebytes\Anti-Malware\unins000.exe =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\mb-support-1.8.7.918.exe =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\AppData\Local\Temp\7zS330B.tmp\mbst ub.exe =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Downloads\KVRT.exe =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28502 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28545 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28547 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28543 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28539 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28542 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28535 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28538 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28527 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28530 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28519 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28522 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28511 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28514 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28503 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28506 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32752 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32817 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32818 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32813 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32814 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32809 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32810 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32801 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32804 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32785 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32788 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32777 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32780 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32769 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32772 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32761 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32764 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32753 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32756 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@sstpsvc.dll,-35002 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@sstpsvc.dll,-35003 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@snmptrap.exe,-7 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@snmptrap.exe,-8 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netlogon.dll,-1003 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@netlogon.dll,-1006 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25000 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25351 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25357 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25326 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25332 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25301 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25303 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25376 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25382 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25251 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25257 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25082 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25088 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25075 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25081 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25068 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25074 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25061 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25067 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-26106 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25011 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25012 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25018 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25026 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25032 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25019 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25025 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25116 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25118 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25113 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25115 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25001 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25007 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25110 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-25112 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31752 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31773 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31774 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31769 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31770 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31761 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31764 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31753 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31756 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30502 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30515 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30518 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30507 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30510 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33752 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33765 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33768 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33753 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33756 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30252 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@WsmRes.dll,-52 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33002 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33027 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33030 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33019 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33022 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33003 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33006 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33035 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33036 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33011 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33014 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33502 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33513 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33514 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33511 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33512 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33503 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33506 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33252 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33257 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33260 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33253 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-33256 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28252 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28274 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28277 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28270 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28273 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28262 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28265 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28254 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-28257 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30002 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30007 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30010 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30003 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30006 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29502 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29515 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29518 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29507 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29510 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29503 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29506 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29252 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29265 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29268 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29257 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29260 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29253 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29256 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34002 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34007 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34008 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34003 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34004 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34251 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34256 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34257 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34254 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34255 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34252 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34253 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34501 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34506 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34507 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34504 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34505 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34502 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-34503 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32002 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32027 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32030 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32019 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32022 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32011 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32014 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32003 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32006 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29002 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29003 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29006 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29752 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29765 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29768 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29757 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29760 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29753 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-29756 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32252 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32277 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32280 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32269 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32272 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32261 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32264 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32253 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-32256 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30752 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30801 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30804 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30793 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30796 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30785 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30788 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30777 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30780 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30769 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30772 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30761 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30764 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30753 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-30756 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31252 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31313 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31316 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31305 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31308 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31293 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31296 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31285 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31288 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31277 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31280 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31269 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31272 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31261 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31264 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31253 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31256 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31002 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31003 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@FirewallAPI.dll,-31006 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@PlaSrv.exe,-10002 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@PlaSrv.exe,-10003 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@PlaSrv.exe,-10000 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@PlaSrv.exe,-10001 =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Desktop\kprm_2.10.0.exe =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\John\Desktop\ZHPSuite.exe =>.SUP.Orphan.MUICache
                [HKU\S-1-5-21-2314338359-2121603862-2684469121-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:@%SystemRoot%\system32\mblctr.exe,-1004 =>.SUP.Orphan.MUICache

                —\ Summary of the elements found (10) - 0s
                ZHPDiag et l'analyse S.M.A.R.T. des disques durs - ZAM => SMART Information
                Zone Anti-Malware - ZAM =>PUP.Optional.WeatherBug
                Zone Anti-Malware - ZAM =>SUP.Optional.Auslogics
                Zone Anti-Malware - ZAM =>.SUP.Orphan
                Zone Anti-Malware - ZAM =>Toolbar.Ask
                Zone Anti-Malware - ZAM =>.SUP.Obsolete.Adobe
                Zone Anti-Malware - ZAM =>Warning.EventLogApp
                Zone Anti-Malware - ZAM =>.SUP.Temporary.Firefox
                Zone Anti-Malware - ZAM =>.SUP.Temporary.Chrome
                Zone Anti-Malware - ZAM =>.SUP.Orphan.MUICache

                —\ Serial Number
                [0091D9A0840B6CB065F7409ED429F976E2] [25/10/2008] (.Auslogics Software.) - C:\Program Files\Auslogics\AusLogics Disk Defrag\cdefrag.exe =>SUP.Optional.Auslogics
                [044E3BF58976880FFD074448A8F7A058] [15/12/2022] (.Malwarebytes Corporation.) - C:\Users\John\Desktop\downloads\mb3-setup-legacywos-3.5.1.2522-1.0.365-1.0.5292.exe =>.Malwarebytes Corporation
                [06572D4762FC6C6AB0C32E862C302B8F] [23/01/2009] (.Acronis, Inc.) - C:\Windows\System32\drivers\snapman.sys =>.Acronis, Inc
                [06572D4762FC6C6AB0C32E862C302B8F] [23/01/2009] (.Acronis, Inc.) - C:\Windows\System32\drivers\tdrpman.sys =>.Acronis, Inc
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/11/2018] (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\setup\instup.exe =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\ashQuick.exe =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\aswidsagent.exe =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\AvastUI.exe =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\AvLaunch.exe =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Users\John\AppData\Local\Temp_av_iup.tm~a00820\ HTMLayout.dll =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Users\John\AppData\Local\Temp_av_iup.tm~a00820\ Instup.dll =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Users\John\AppData\Local\Temp_av_iup.tm~a00820\ Instup.exe =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Users\John\AppData\Local\Temp_av_iup.tm~a00820\ New_12080934\aswOfferTool.exe =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Users\John\AppData\Local\Temp_av_iup.tm~a00820\ New_12080934\avBugReport.exe =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Users\John\AppData\Local\Temp_av_iup.tm~a00820\ New_12080934\AvDump32.exe =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Users\John\AppData\Local\Temp_av_iup.tm~a00820\ New_12080934\AvDump64.exe =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\Users\John\AppData\Local\Temp_av_iup.tm~a00820\ New_12080934\sbr.exe =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswArPot.sys =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswbidsdriverx.sys =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswbidshx.sys =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswblogx.sys =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswbunivx.sys =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswHdsKe.sys =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswHwid.sys =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswKbd.sys =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswMonFlt.sys =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswRdr.sys =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswRvrt.sys =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswSnx.sys =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswSP.sys =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswStmXP.sys =>.AVAST Software s.r.o.
                [07C70F7CAB145BC1ED385FBE69FA3130] [15/12/2022] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswVmm.sys =>.AVAST Software s.r.o.
                [08994531FDF1B2EBB8C7821BF650FDCF] [05/08/2009] (.Hewlett-Packard Company.) - C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe =>.Hewlett-Packard Company
                [0C5396DCB2949C70FAC48AB08A07338E] [27/06/2018] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation
                [0C5396DCB2949C70FAC48AB08A07338E] [27/06/2018] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
                [0C5396DCB2949C70FAC48AB08A07338E] [27/06/2018] (.Mozilla Corporation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation
                [0FDFA25000B6ED9763BFEC89AB3F513C] [06/01/2010] (.AOL Inc..) - C:\Program Files\Common Files\aol\Loader\aolload.exe =>.AOL Inc.
                [12F0277E0F233B39F9419B06E8CDE352] [10/05/2016] (.Oracle America, Inc..) - C:\Program Files\Java\jre1.8.0_91\bin\jp2ssv.dll =>.Oracle America, Inc.
                [12F0277E0F233B39F9419B06E8CDE352] [10/05/2016] (.Oracle America, Inc..) - C:\Program Files\Java\jre1.8.0_91\bin\ssv.dll =>.Oracle America, Inc.
                [14F8FDD167F92402B1570B5DC495C815] [09/08/2017] (.Google Inc.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc
                [28D202398DA929FCDEFA15A53CD0D780] [20/08/2007] (.Hewlett Packard.) - C:\Program Files\HP\Digital Imaging\PhotoSmartEssential\hpzscr01.exe =>.Hewlett Packard
                [43406AA9B82DE87E572C9C12F952C2C1] [02/07/2004] (.Macromedia, Inc..) - C:\Program Files\Mozilla Firefox\Plugins\np32asw.dll =>.Macromedia, Inc.
                [4B619B840AE7449CC9C35C4C1CAD5183] [09/11/2006] (.AOL LLC.) - C:\Windows\System32\drivers\atwpkt264.sys =>.AOL LLC
                [4C40DBA5F988FAE57A57D6457495F98B] [06/04/2016] (.Google Inc.) - C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc
                [4C40DBA5F988FAE57A57D6457495F98B] [23/03/2022] (.Google Inc.) - C:\Program Files\Google\Chrome\Application\49.0.2623.112\Inst aller\setup.exe =>.Google Inc
                [57D50A48CDF681BB93C28879633A4452] [23/01/2009] (.Acronis, Inc.) - C:\WINDOWS\System32\drivers\tifsfilt.sys =>.Acronis, Inc
                [57D50A48CDF681BB93C28879633A4452] [23/01/2009] (.Acronis, Inc.) - C:\WINDOWS\System32\drivers\timntr.sys =>.Acronis, Inc
                [5B2FD02E944AD78D4D06F59814E14714] [30/08/2006] (.EarthLink.) - C:\Program Files\earthlink totalaccess\TaskPanl.exe =>.Not verified
                [5E6DDC87375082845814F442D1D82A25] [15/01/2008] (.Realtek Semiconductor Corp.) - C:\WINDOWS\System32\drivers\RTKVHDA.sys =>.Realtek Semiconductor Corp
                [68FED17FDBADC3E2F6FC678D984470A9] [09/11/2006] (.AOL LLC.) - C:\Windows\System32\drivers\atwpkt2.sys =>.AOL LLC
                [6D467C9A4514B23549EC613CAF3A9DDB] [07/10/2008] (.AOL LLC.) - C:\Program Files\AIM Toolbar\aimtbServer.exe =>.AOL LLC
                [75FB51C8768EF6927BF41DA1A234A1D9] [24/09/2015] (.Adobe Systems, Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated
                [772C5535FC3A40E39F632C599AB6631D] [24/09/2015] (.Adobe Systems, Incorporated.) - C:\Program Files\Adobe\Reader 10.0\Reader\AcroBroker.exe =>.Adobe Systems, Incorporated
                [772C5535FC3A40E39F632C599AB6631D] [24/09/2015] (.Adobe Systems, Incorporated.) - C:\Program Files\Adobe\Reader 10.0\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated
                [772C5535FC3A40E39F632C599AB6631D] [24/09/2015] (.Adobe Systems, Incorporated.) - C:\Program Files\Mozilla Firefox\Plugins\nppdf32.dll =>.Adobe Systems, Incorporated
                [77BA6D53EE5B4344000000005565FB42] [23/02/2017] (.AOL Inc..) - C:\Program Files\AIM\aim.exe =>.AOL Inc.
                [79E299006F7AE25E062B1A7A067FC548] [01/06/2007] (.CyberLink.) - C:\Program Files\InstallShield Installation Information{CB099890-1D5F-11D5-9EA9-0050BAE317E1}\setup.exe =>.CyberLink
                [79E299006F7AE25E062B1A7A067FC548] [10/10/2007] (.CyberLink.) - c:\Program Files\Cyberlink\PowerDirector\PDR.EXE =>.CyberLink
                [79E299006F7AE25E062B1A7A067FC548] [19/10/2007] (.CyberLink.) - C:\Program Files\CyberLink\DVD Suite Deluxe\PowerStarter.exe =>.CyberLink
                [79E299006F7AE25E062B1A7A067FC548] [19/12/2006] (.CyberLink.) - C:\Program Files\InstallShield Installation Information{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}\Setup.exe =>.CyberLink
                [79E299006F7AE25E062B1A7A067FC548] [19/12/2006] (.CyberLink.) - C:\Program Files\InstallShield Installation Information{40BF1E83-20EB-11D8-97C5-0009C5020658}\Setup.exe =>.CyberLink
                [79E299006F7AE25E062B1A7A067FC548] [19/12/2006] (.CyberLink.) - C:\Program Files\InstallShield Installation Information{C59C179C-668D-49A9-B6EA-0121CCFC1243}\Setup.exe =>.CyberLink

                ~ Unselected Options: O82,
                ~ End of the scan, 8983 items in 07mn56s (2648)(0)

                Comment

                • jxdama
                  PCHF Member
                  • Dec 2022
                  • 666

                  #248
                  I think thats from before

                  Comment

                  • jxdama
                    PCHF Member
                    • Dec 2022
                    • 666

                    #249
                    I can highlite the script in the box but it simply wont copy and paste.

                    Comment

                    • Malnutrition
                      PCHF Moderator
                      • Jul 2016
                      • 7041

                      #250
                      Copy it. Then follow instructions to paste a script.

                      Comment

                      • jxdama
                        PCHF Member
                        • Dec 2022
                        • 666

                        #251
                        Originally posted by Malnutrition
                        Copy it. Then follow instructions to paste a script.
                        Im not sure what you are saying. copy and paste doesnt work.

                        Comment

                        • jxdama
                          PCHF Member
                          • Dec 2022
                          • 666

                          #252
                          Am i supposed to be copying all that stuff with all the mad faces in it?

                          Comment

                          • jxdama
                            PCHF Member
                            • Dec 2022
                            • 666

                            #253
                            I dont understand what you are saying. After it finishes scanning i hit repair. There is nothing in the box when i hit repair. When i then hit step 1 you talk about then stuff pops up in the box. When i hit number 2 it says incompatible text. see tutorial.

                            Comment

                            • jxdama
                              PCHF Member
                              • Dec 2022
                              • 666

                              #254
                              what am i supposed to be copying?

                              Comment

                              • jxdama
                                PCHF Member
                                • Dec 2022
                                • 666

                                #255
                                I meant noncompliant script

                                Comment

                                Working...