SECURITY SCAN REPORT

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • tammie.m247
    PCHF Member
    • Apr 2023
    • 7

    #1

    SECURITY SCAN REPORT

    I had a fishing email and McAffe ran a report and this is what I got back:
    1. TINY BANKER TROJAN (VIRUS)
    2. 72 HACKERS
    3. SECURITY DAMAGE 92.07%
    4. BAD LIMIT $4567.89
      ================================================== ==
      BLOCK 72 HACKERS REDUCE BAD LIMIT $4567.89
      ONLINE / OFFLINE : NO ONLINE SECURITY
      OFFLINE SECURITY : SECURITY CARD
      ANTI-HACKING CARDS /
  • Malnutrition
    PCHF Moderator
    • Jul 2016
    • 7045

    #2
    @tammie.m247 Please read these instructions, and post the requested logs.

    Comment

    • tammie.m247
      PCHF Member
      • Apr 2023
      • 7

      #3
      Thank you. Please see the text files below.

      Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 06-04-2023
      Ran by Tammie (administrator) on DESKTOP-GRCHUA0 (HP HP Pavilion x360 Convertible 15-cr0xxx) (08-04-2023 19:21:36)
      Running from C:\Users\Tammie\OneDrive\Desktop
      Loaded Profiles: Tammie
      Platform: Microsoft Windows 11 Home Version 22H2 22621.1413 (X64) Language: English (United States)
      Default browser: Edge
      Boot Mode: Normal

      ==================== Processes (Whitelisted) =================

      (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

      (C:\Program Files (x86)\Citrix\ICA Client\concentr.exe ->) (Citrix Systems, Inc. → Cloud Software Group, Inc.) C:\Program Files (x86)\Citrix\ICA Client\Receiver\Receiver.exe
      (C:\Program Files (x86)\Citrix\ICA Client\Receiver\Receiver.exe ->) (Citrix Systems, Inc. → Cloud Software Group, Inc.) C:\Program Files (x86)\Citrix\ICA Client\SelfServicePlugin\SelfServicePlugin.exe
      (C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe ->) (McAfee, LLC → McAfee, LLC) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHOST.exe
      (C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe ->) (McAfee, LLC → McAfee, LLC) C:\Program Files\Common Files\McAfee\ModuleCore\ProtectedModuleHost.exe
      (C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe ->) (McAfee, LLC → McAfee, LLC) C:\Program Files\McAfee\MfeAV\MfeAVSvc.exe
      (C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe ->) (MUSARUBRA US LLC → McAfee LLC.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
      (C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe ->) (MUSARUBRA US LLC → Trellix US LLC.) C:\Windows\System32\mfevtps.exe
      (C:\Program Files\WindowsApps\MicrosoftTeams_23062.1103.1944.2 725_x64__8wekyb3d8bbwe\msteams.exe ->) (Microsoft Corporation → Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\111.0.1661 .62\msedgewebview2.exe <12>
      (Citrix Systems, Inc. → Citrix Systems, Inc.) C:\Program Files (x86)\Citrix\ICA Client\concentr.exe
      (Citrix Systems, Inc. → Citrix Systems, Inc.) C:\Program Files (x86)\Citrix\ICA Client\Receiver\AnalyticsSrv.exe
      (Citrix Systems, Inc. → Citrix Systems, Inc.) C:\Program Files (x86)\Citrix\ICA Client\redirector.exe
      (DriverStore\FileRepository\cui_dch.inf_amd64_dc2a 57d591329a30\igfxCUIService.exe ->) (Intel(R) pGFX 2020 → Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui _dch.inf_amd64_dc2a57d591329a30\igfxEM.exe
      (DriverStore\FileRepository\hpanalyticscomp.inf_am d64_f23fc423d26e5d79\x64\TouchpointAnalyticsClient Service.exe ->) (HP Inc. → HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpa nalyticscomp.inf_amd64_f23fc423d26e5d79\x64\Touchp ointGpuInfo.exe
      (DriverStore\FileRepository\hpcustomcapcomp.inf_am d64_d04f01dd16ecf753\x64\SysInfoCap.exe ->) (HP Inc. → HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpc ustomcapcomp.inf_amd64_d04f01dd16ecf753\x64\Bridge Communication.exe <2>
      (ED346674-0FA1-4272-85CE-3187C9C86E26 → ) C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_1. 3.2.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSyst emEventUtilityHost.exe
      (ETDCtrl.exe ->) (ELAN Microelectronics Corporation → ELAN Microelectronics Corp.) C:\Windows\System32\ETDTouch.exe
      (ETDService.exe ->) (ELAN Microelectronics Corporation → ELAN Microelectronics Corp.) C:\Windows\System32\ETDCtrl.exe
      (ETDService.exe ->) (ELAN Microelectronics Corporation → ELAN Microelectronics Corp.) C:\Windows\System32\ETDCtrlHelper.exe
      (explorer.exe ->) (ELAN Microelectronics Corporation → ELAN) [File not signed] C:\Program Files\ELAN\EzTiltPen\EzTiltPenAgent.exe
      (explorer.exe ->) (Google LLC → Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <12>
      (explorer.exe ->) (Microsoft Corporation → Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5>
      (explorer.exe ->) (Microsoft Corporation → Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe
      (explorer.exe ->) (Realtek Semiconductor Corp. → Realtek) C:\Program Files (x86)\Realtek\PCIE Wireless LAN\RtlS5Wake\RtlS5Wake.exe
      (Google LLC → Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler. exe
      (Google LLC → Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler6 4.exe
      (McAfee, LLC → McAfee, LLC) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe
      (services.exe ->) (Cisco WebEx LLC → Cisco WebEx LLC) C:\Windows\SysWOW64\atashost.exe
      (services.exe ->) (Citrix Systems, Inc. → Citrix Systems, Inc.) C:\Program Files (x86)\Citrix\ICA Client\appprotection.exe
      (services.exe ->) (Citrix Systems, Inc. → Cloud Software Group, Inc.) C:\Program Files (x86)\Citrix\ICA Client\Receiver\UpdaterService.exe
      (services.exe ->) (ELAN Microelectronics Corporation → ELAN Microelectronics Corp.) C:\Windows\System32\ETDService.exe
      (services.exe ->) (HP Inc. → HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe
      (services.exe ->) (HP Inc. → HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.e xe
      (services.exe ->) (HP Inc. → HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpa nalyticscomp.inf_amd64_f23fc423d26e5d79\x64\Touchp ointAnalyticsClientService.exe
      (services.exe ->) (HP Inc. → HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpc ustomcapcomp.inf_amd64_d04f01dd16ecf753\x64\AppHel perCap.exe
      (services.exe ->) (HP Inc. → HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpc ustomcapcomp.inf_amd64_d04f01dd16ecf753\x64\DiagsC ap.exe
      (services.exe ->) (HP Inc. → HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpc ustomcapcomp.inf_amd64_d04f01dd16ecf753\x64\Networ kCap.exe
      (services.exe ->) (HP Inc. → HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpc ustomcapcomp.inf_amd64_d04f01dd16ecf753\x64\SysInf oCap.exe
      (services.exe ->) (Intel Corporation → Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaa hcic.inf_amd64_3de4831720bb2934\RstMwService.exe
      (services.exe ->) (Intel Corporation → Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms .inf_amd64_fddb643595e0b8d0\LMS.exe
      (services.exe ->) (Intel Corporation → Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\sgx _psw.inf_amd64_b117548b2e075ba1\aesm_service.exe
      (services.exe ->) (Intel Corporation → Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
      (services.exe ->) (Intel Corporation → Intel(R) Corporation) C:\Windows\SysWOW64\XtuService.exe
      (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group → Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal .inf_amd64_5acc9ca73ae7cf4c\jhi_service.exe
      (services.exe ->) (Intel(R) pGFX 2020 → ) C:\Windows\System32\DriverStore\FileRepository\igc c_dch.inf_amd64_dc7a0fe3ada1cbf5\OneApp.IGCC.WinSe rvice.exe
      (services.exe ->) (Intel(R) pGFX 2020 → Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui _dch.inf_amd64_dc2a57d591329a30\igfxCUIService.exe
      (services.exe ->) (Intel(R) pGFX 2020 → Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iig d_dch.inf_amd64_87a05f372b04db63\IntelCpHDCPSvc.ex e
      (services.exe ->) (Intel(R) pGFX 2020 → Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iig d_dch.inf_amd64_87a05f372b04db63\IntelCpHeciSvc.ex e
      (services.exe ->) (Intel(R) Rapid Storage Technology → Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
      (services.exe ->) (Intel(R) Trust Services → Intel(R) Corporation) C:\Windows\System32\DriverStore\FileRepository\icl sclient.inf_amd64_e936ad8266d026ce\lib\SocketHeciS erver.exe
      (services.exe ->) (McAfee, LLC → McAfee, LLC) C:\Program Files\Common Files\McAfee\CSP\5.5.107.0\McCSPServiceHost.exe
      (services.exe ->) (McAfee, LLC → McAfee, LLC) C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe <3>
      (services.exe ->) (McAfee, LLC → McAfee, LLC) C:\Program Files\Common Files\McAfee\PEF\CORE\PEFService.exe
      (services.exe ->) (McAfee, LLC → McAfee, LLC) C:\Program Files\Common Files\McAfee\VSCore_22_12\mcapexe.exe
      (services.exe ->) (Microsoft Corporation → Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
      (services.exe ->) (Microsoft Corporation → Microsoft Corporation) C:\Program Files\Microsoft OneDrive\23.061.0319.0003\FileSyncHelper.exe
      (services.exe ->) (Microsoft Windows → Microsoft Corporation) C:\Windows\System32\vds.exe
      (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher → Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
      (services.exe ->) (MUSARUBRA US LLC → Trellix US LLC.) C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe
      (services.exe ->) (philandro Software GmbH → ) C:\Program Files (x86)\AnyDesk-7832783c\AnyDesk-7832783c.exe
      (services.exe ->) (Realtek Semiconductor Corp. → Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
      (services.exe ->) (Star Tech Alliance Inc → ) C:\Program Files (x86)\Common Files\Updater\updateservice.exe
      (services.exe ->) (Star Tech Alliance Inc → Class IT Outsourcing) C:\Program Files (x86)\OptimumDesk\ODService.exe
      (services.exe ->) (WildTangent, Inc. → ) C:\Program Files (x86)\WildTangent Games\Integration\WildTangentHelperService.exe
      (svchost.exe ->) (Citrix Systems, Inc. → Citrix Systems, Inc.) C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe
      (svchost.exe ->) (ED346674-0FA1-4272-85CE-3187C9C86E26 → ) C:\Program Files\WindowsApps\AD2F1837.HPJumpStarts_1.10.1627. 0_x64__v10z8vjag6ke6\HP.JumpStarts.exe
      (svchost.exe ->) (HP Inc. → HP Inc.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe
      (svchost.exe ->) (Microsoft Corporation → ) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.1 3303.0_x64__8wekyb3d8bbwe\Cortana.exe
      (svchost.exe ->) (Microsoft Corporation → ) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.23022.140. 0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe
      (svchost.exe ->) (Microsoft Corporation → Microsoft Corporation) C:\Program Files\Microsoft OneDrive\23.061.0319.0003\FileCoAuth.exe
      (svchost.exe ->) (Microsoft Windows → ) C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExper ience_423.8900.0.0_x64__cw5n1h2txyewy\Dashboard\Wi dgetService.exe
      (svchost.exe ->) (Microsoft Windows → Microsoft Corporation) C:\Windows\System32\CastSrv.exe
      (svchost.exe ->) (Microsoft Windows → Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
      (svchost.exe ->) (Microsoft Windows → Microsoft Corporation) C:\Windows\System32\LocationNotificationWindows.ex e
      (svchost.exe ->) (Microsoft Windows → Microsoft Corporation) C:\Windows\System32\printfilterpipelinesvc.exe
      (svchost.exe ->) (Microsoft Windows → Microsoft Corporation) C:\Windows\System32\smartscreen.exe
      (svchost.exe ->) (Microsoft Windows → Microsoft Corporation) C:\Windows\System32\wlanext.exe
      (svchost.exe ->) (Microsoft Windows → Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.Chx App_cw5n1h2txyewy\CHXSmartScreen.exe
      (svchost.exe ->) (Realtek Semiconductor Corp. → Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
      (svchost.exe ->) (Star Tech Alliance Inc → Class IT Outsourcing) C:\Program Files (x86)\OptimumDesk\OptimumDesk.exe

      ==================== Registry (Whitelisted) ===================

      (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

      HKLM...\Run: [EzTiltPenSrvc] => C:\Program Files\ELAN\EzTiltPen\EzTiltPenAgent.exe [238280 2019-04-22] (ELAN Microelectronics Corporation → ELAN) [File not signed]
      HKLM...\Run: [RtlS5Wake] => C:\Program Files (x86)\Realtek\PCIE Wireless LAN\RtlS5Wake\RtlS5Wake.exe [2097600 2018-04-17] (Realtek Semiconductor Corp. → Realtek)
      HKLM...\Run: [OptimumDesk] => C:\Program Files (x86)\OptimumDesk\OptimumDesk.exe [7037464 2019-10-17] (Star Tech Alliance Inc → Class IT Outsourcing)
      HKLM...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3831808 2021-08-30] (Microsoft Windows Hardware Compatibility Publisher → Logitech)
      HKLM-x32...\Run: [InstallHelper] => C:\Program Files (x86)\Citrix\Citrix WorkSpace 2302\InstallHelper.exe [410544 2023-02-07] (Citrix Systems, Inc. → Cloud Software Group, Inc.)
      HKLM-x32...\Run: [AnalyticsSrv] => C:\Program Files (x86)\Citrix\ICA Client\Receiver\AnalyticsSrv.exe [2644072 2023-02-07] (Citrix Systems, Inc. → Citrix Systems, Inc.)
      HKLM-x32...\Run: [ConnectionCenter] => C:\Program Files (x86)\Citrix\ICA Client\concentr.exe [2974600 2023-01-13] (Citrix Systems, Inc. → Citrix Systems, Inc.)
      HKLM-x32...\Run: [Redirector] => C:\Program Files (x86)\Citrix\ICA Client\redirector.exe [562056 2023-01-13] (Citrix Systems, Inc. → Citrix Systems, Inc.)
      HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
      HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
      HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUp date: Restriction <==== ATTENTION
      HKU\S-1-5-21-3117569381-3242891862-2655254670-1001...\Run: [HPSEU_Host_Launcher] => C:\System.sav\util\HpseuHostLauncher.exe [536152 2022-08-15] (HP Inc. → HP Inc.)
      HKU\S-1-5-21-3117569381-3242891862-2655254670-1001...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2631048 2023-04-03] (Microsoft Corporation → Microsoft Corporation)
      HKU\S-1-5-21-3117569381-3242891862-2655254670-1001...\Run: [CiscoMeetingDaemon] => C:\Users\Tammie\AppData\Local\WebEx\ciscowebexstar t.exe [4937544 2021-11-05] (Cisco WebEx LLC → Cisco Webex LLC)
      HKU\S-1-5-21-3117569381-3242891862-2655254670-1001...\Run: [MicrosoftEdgeAutoLaunch_E95C1CD5D49D3D783DE56243E1 FC3BA6] => “C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe” --no-startup-window --win-session-start /prefetch:5 [4140496 2023-04-06] (Microsoft Corporation → Microsoft Corporation)
      HKLM\Software...\AppCompatFlags\Custom\AuthManSvr. exe: [{dcdaa2fd-eaac-4ab0-9ece-f3df127a6c45}.sdb] → Citrix Workspace
      HKLM\Software...\AppCompatFlags\Custom\Browser.exe : [{dcdaa2fd-eaac-4ab0-9ece-f3df127a6c45}.sdb] → Citrix Workspace
      HKLM\Software...\AppCompatFlags\Custom\CDViewer.ex e: [{dcdaa2fd-eaac-4ab0-9ece-f3df127a6c45}.sdb] → Citrix Workspace
      HKLM\Software...\AppCompatFlags\Custom\CtxWebBrows er.exe: [{dcdaa2fd-eaac-4ab0-9ece-f3df127a6c45}.sdb] → Citrix Workspace
      HKLM\Software...\AppCompatFlags\Custom\SelfService .exe: [{dcdaa2fd-eaac-4ab0-9ece-f3df127a6c45}.sdb] → Citrix Workspace
      HKLM\Software...\AppCompatFlags\Custom\wfica32.exe : [{dcdaa2fd-eaac-4ab0-9ece-f3df127a6c45}.sdb] → Citrix Workspace
      HKLM\Software...\AppCompatFlags\InstalledSDB{dcdaa 2fd-eaac-4ab0-9ece-f3df127a6c45}: [DatabasePath] → C:\WINDOWS\AppPatch\CustomSDB{dcdaa2fd-eaac-4ab0-9ece-f3df127a6c45}.sdb [2023-01-17]
      HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] → C:\Program Files (x86)\Google\Chrome\Application\111.0.5563.148\Ins taller\chrmstp.exe [2023-04-06] (Google LLC → Google LLC)
      HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{60f15951-e7ef-11ea-b28e-c4b301b9ed33}] → C:\Program Files (x86)\Citrix\ICA Client\CitrixEnterpriseBrowser\108.1.1.97\Installe r\chrmstp.exe [2023-03-02] (Citrix Systems, Inc. → Citrix Systems, Inc.)
      HKLM\Software...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] →
      Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AnyDesk EaseeRemote.lnk [2020-01-27]
      ShortcutTarget: AnyDesk EaseeRemote.lnk → C:\Windows\Installer{F55827A8-2ECB-42B9-8905-EEBEAEACA0A3}\AnyDesk.ico (philandro Software GmbH → )

      ==================== Scheduled Tasks (Whitelisted) ============

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      Task: {02431CE8-98B5-469B-9AB0-D9FF7555623A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPSFReport.exe [138328 2023-04-04] (HP Inc. → HP Inc.)
      Task: {05E68997-92B8-4A32-8903-6448495EC201} - System32\Tasks\McAfee Remediation (Prepare) => C:\Program Files\Common Files\AV\McAfee VirusScan\upgrade.exe [4564016 2023-01-16] (McAfee, LLC → McAfee, LLC)
      Task: {099DCDF0-0020-49DE-A8A1-532D26F67A0C} - System32\Tasks\ODS => net [Argument = start ODService]
      Task: {11D94FCB-CA39-4317-BFD2-1FAB95928DB6} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChec ker.exe [1135128 2023-04-04] (HP Inc. → HP Inc.)
      Task: {126DC508-167E-44A2-9C20-8F56DE5F77AD} - System32\Tasks\McAfee\McAfee Auto Maintenance Task Agent => {ABCECA3B-EA5A-496B-A021-5C6BAB365E5C} C:\Program Files\Common Files\McAfee\TaskScheduler\McAMTaskAgent.exe [931056 2023-02-20] (McAfee, LLC → McAfee, LLC)
      Task: {2BE60232-8006-4B5A-AD81-BF72CE95C7F7} - System32\Tasks\ODA => C:\Program Files (x86)\OptimumDesk\OptimumDesk.exe [7037464 2019-10-17] (Star Tech Alliance Inc → Class IT Outsourcing)
      Task: {37C0E695-D2C9-4C2D-833C-70AC48723D66} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-01-27] (Google LLC → Google LLC)
      Task: {388351D0-56DC-4F5B-A8C2-E8BA2FDCC681} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3117569381-3242891862-2655254670-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4196728 2023-04-03] (Microsoft Corporation → Microsoft Corporation)
      Task: {4A7888E9-E509-46EE-AC6E-1940C4E8813C} - System32\Tasks\HPAudioSwitch => C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe [1644984 2018-07-18] (HP Inc. → HP Inc.)
      Task: {5B91D359-A7F8-4FE8-91F2-2EACA23AB91C} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9277528 2019-12-12] (Realtek Semiconductor Corp. → Realtek Semiconductor)
      “C:\Windows\System32\Tasks\McAfee\McAfee Idle Detection Task” could not be unlocked. <==== ATTENTION
      Task: {5C90024C-E20B-4233-8079-4D64D543C634} - System32\Tasks\McAfee\McAfee Idle Detection Task
      Task: {62985103-703E-439F-8869-8E44567B135E} - System32\Tasks\Microsoft\Windows\UpdateOrchestrato r\Reboot_Battery => C:\WINDOWS\system32\MusNotification.exe /RunOnBattery RebootDialog (No File)
      Task: {62E14302-C1B9-443E-8888-BA5931C5D4E6} - System32\Tasks\Updater => net [Argument = start UpdaterService]
      Task: {682C8B31-9369-4E7A-9F9B-C0FAB0706B09} - System32\Tasks\G2MUploadTask-S-1-5-21-3117569381-3242891862-2655254670-1001 => C:\Users\Tammie\AppData\Local\GoToMeeting\19950\g2 mupload.exe [33456 2023-01-25] (LogMeIn, Inc. → LogMeIn, Inc.)
      Task: {73CCD0E2-5E42-4F0E-8B47-B9E3FE484A0D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_TH9C9BF1JT => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChec ker.exe [1135128 2023-04-04] (HP Inc. → HP Inc.)
      Task: {74E8A66A-DA95-4547-BCEF-10511103C2B1} - System32\Tasks\HP\Consent Manager Launcher => sc start hptouchpointanalyticsservice
      Task: {7A2566A0-3C0D-4C6B-98C9-FDAC4B014B03} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChec ker.exe [1135128 2023-04-04] (HP Inc. → HP Inc.)
      Task: {84746511-A1A0-4C50-9543-9033B1CF68B5} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144272 2023-04-07] (Microsoft Corporation → Microsoft Corporation)
      Task: {862646EF-AE01-4890-A109-6D6471C435A6} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [948752 2023-04-07] (Microsoft Corporation → Microsoft Corporation)
      Task: {8FDB72F5-2085-48F6-A013-4BEE5DBBCCEB} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HPPrinterLowInk => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPPrinterLowInk\HPPrinterLowIn k.exe [228888 2023-04-04] (HP Inc. → HP Inc.)
      Task: {94B3EC29-B548-4E4F-A70E-A94091986EA3} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_TH05SFW004 => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChec ker.exe [1135128 2023-04-04] (HP Inc. → HP Inc.)
      Task: {9647B735-B76C-43D0-9330-52D2E3CD5173} - System32\Tasks\McAfee\McAfee DAT Built in test => C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\1.0. 12.663\mcdatrep.exe [1889696 2021-01-07] (McAfee, Inc. → McAfee, LLC.)
      Task: {AB90CB28-7C0E-4C1A-A67F-AB0D881FEEB6} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [168880 2023-04-01] (Microsoft Corporation → Microsoft Corporation)
      Task: {AE6059BD-C603-4A3B-9E62-67224D238CF3} - System32\Tasks\G2MUpdateTask-S-1-5-21-3117569381-3242891862-2655254670-1001 => C:\Users\Tammie\AppData\Local\GoToMeeting\19950\g2 mupdate.exe [33456 2023-01-25] (LogMeIn, Inc. → LogMeIn, Inc.)
      Task: {B58C426D-FC2B-4496-AC90-C97E380C9532} - System32\Tasks\McAfeeLogon => C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe [768288 2022-03-24] (McAfee, LLC → McAfee, LLC)
      Task: {B5E34F70-DE96-4E64-8C18-A5939E4C4F8E} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4196728 2023-04-03] (Microsoft Corporation → Microsoft Corporation)
      Task: {CB2B18D7-903D-48B2-B032-E97EB8757B58} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26409896 2023-04-07] (Microsoft Corporation → Microsoft Corporation)
      Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\WINDOWS\System32\MbaeParserTask.exe (No File)
      Task: {D8A6BD23-6231-480B-94FC-E6F4B7873F92} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26409896 2023-04-07] (Microsoft Corporation → Microsoft Corporation)
      Task: {DBDFBA8D-BCF3-459D-BA66-D98050596AA1} - System32\Tasks\Microsoft\Windows\UpdateOrchestrato r\Reboot_AC => C:\WINDOWS\system32\MusNotification.exe /RunOnAC RebootDialog (No File)
      Task: {E0D2AE2D-A9BC-4B08-B7B5-5E618A080930} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144272 2023-04-07] (Microsoft Corporation → Microsoft Corporation)
      Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrato r\USO_UxBroker => C:\WINDOWS\system32\MusNotification.exe (No File)
      Task: {E7E75C4E-5C53-4C85-BFF3-74912C093046} - System32\Tasks\McAfee\DAD.Execute.Updates => C:\Program Files\Common Files\McAfee\DynamicAppDownloader\DADUpdater.exe [4094568 2023-02-17] (McAfee, LLC → McAfee, LLC)
      Task: {EF47D82B-2997-43EF-A61B-8B143D46D04F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-01-27] (Google LLC → Google LLC)
      Task: {F7D20811-569E-4D84-B664-A368F4652148} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Update Notice => C:\Program Files (x86)\HP\HP Support Framework\Resources\BingPopup\BingPopup.exe [847392 2023-04-04] (HP Inc. → HP Inc.)

      (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

      Task: C:\WINDOWS\Tasks\G2MUpdateTask-S-1-5-21-3117569381-3242891862-2655254670-1001.job => C:\Users\Tammie\AppData\Local\GoToMeeting\19950\g2 mupdate.exe
      Task: C:\WINDOWS\Tasks\G2MUploadTask-S-1-5-21-3117569381-3242891862-2655254670-1001.job => C:\Users\Tammie\AppData\Local\GoToMeeting\19950\g2 mupload.exe

      ==================== Internet (Whitelisted) ====================

      (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

      Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
      Tcpip..\Interfaces{83d33e38-e62b-4159-9cb4-9378b7140431}: [DhcpNameServer] 192.168.1.1
      [HEADING=1]Edge:[/HEADING]
      Edge Extension: (No Name) → AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wek yb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
      Edge Extension: (No Name) → BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wek yb3d8bbwe\Assets\BookViewer [not found]
      Edge Extension: (No Name) → LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wek yb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
      Edge Extension: (No Name) → PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wek yb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
      Edge Profile: C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default [2023-04-08]
      Edge HomePage: Default → hxxp://homepage-web.com/?s=lenovo&m=home
      Edge StartupUrls: Default → “hxxp://homepage-web.com/?s=lenovo&m=start”
      Edge DefaultSearchURL: Default → hxxps://www.safety-center-search.net/search/?category=web&vert=safe&s=g5ds&q={searchTerms}
      Edge DefaultSearchKeyword: Default → safe
      Edge DefaultSuggestURL: Default → hxxps://sug.safety-center-search.net/search/index_sg.php?q={searchTerms}
      Edge Extension: (Grammarly: Grammar Checker and Writing App) - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\cnlefmmeadmemmdciolhbnfeac pdfbkd [2023-04-05]
      Edge Extension: (Cisco Webex Extension) - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ikdddppdhmjcdfgilpnbkdeggo iicjgo [2022-07-22]
      Edge Extension: (Edge relevant text changes) - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkg hcpiha [2023-04-06]
      Edge Extension: (Safety Search by Safely) - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mdfhkikdjdnoambdbgehaghcei pnpmlo [2022-03-09]
      [HEADING=1]FireFox:[/HEADING]
      FF Plugin: @mcafee.com/MSC,version=10 → C:\Program Files\McAfee\MSC\npMcSnFFPl64.dll [2023-03-01] (McAfee, LLC → )
      FF Plugin: @microsoft.com/SharePoint,version=14.0 → C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-11-01] (Microsoft Corporation → Microsoft Corporation)
      FF Plugin-x32: @mcafee.com/MSC,version=10 → C:\Program Files (x86)\McAfee\MSC\npMcSnFFPl.dll [2023-03-01] (McAfee, LLC → )
      FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 → C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-11-01] (Microsoft Corporation → Microsoft Corporation)
      FF Plugin ProgramFiles/Appdata: C:\Users\Tammie\AppData\Roaming\mozilla\plugins\np atgpc.dll [2020-08-31]
      [HEADING=1]Chrome:[/HEADING]
      CHR DefaultProfile: Default
      CHR Profile: C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default [2023-04-08]
      CHR HomePage: Default → hxxp://homepage-web.com/?s=lenovo&m=home
      CHR StartupUrls: Default → “hxxp://homepage-web.com/?s=lenovo&m=start”
      CHR DefaultSearchURL: Default → hxxp://pdfsrch.com/?q={searchTerms}
      CHR DefaultSearchKeyword: Default → pds
      CHR DefaultSuggestURL: Default → hxxp://srch.bar/?s={searchTerms}
      CHR Extension: (ViewPDF) - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Extensions\dipecofobdcjnpffbkmfkdbfmj fjfgmn [2020-01-27]
      CHR Extension: (Google Docs Offline) - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdl olhkhi [2023-04-04]
      CHR Extension: (Cisco Webex Extension) - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlhmfgmfgeifomenelglieiegh njghma [2022-07-23]
      CHR Extension: (Grammarly: Grammar Checker and Writing App) - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbfnbcaeplbcioakkpcpgfkobk ghlhen [2023-04-08]
      CHR Extension: (Zoom Scheduler) - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Extensions\kgjfgplpablkjnlkjmjdecgdpf ankdle [2023-04-04]
      CHR Extension: (Safety Search by Safely) - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdfhkikdjdnoambdbgehaghcei pnpmlo [2020-03-19]
      CHR Extension: (Chrome Web Store Payments) - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccm gmieda [2021-01-29]
      CHR Profile: C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Guest Profile [2021-07-10]
      CHR Profile: C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\System Profile [2021-07-10]

      ==================== Services (Whitelisted) ===================

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      S2 0219721680822349mcinstcleanup; C:\ProgramData\McInstTemp0219721680822349\McInst.e xe [927896 2023-03-07] (McAfee, LLC → McAfee, LLC)
      R2 AnyDesk-7832783c; C:\Program Files (x86)\AnyDesk-7832783c\AnyDesk-7832783c.exe [1810904 2017-09-20] (philandro Software GmbH → )
      R2 appprotectionsvc; C:\Program Files (x86)\Citrix\ICA Client\appprotection.exe [520624 2023-01-17] (Citrix Systems, Inc. → Citrix Systems, Inc.)
      R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12634544 2023-04-07] (Microsoft Corporation → Microsoft Corporation)
      R2 CWAUpdaterService; C:\Program Files (x86)\Citrix\ICA Client\Receiver\UpdaterService.exe [66480 2023-02-07] (Citrix Systems, Inc. → Cloud Software Group, Inc.)
      R3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\23.061.0319.0003\FileSyncHelper.exe [3416968 2023-04-03] (Microsoft Corporation → Microsoft Corporation)
      R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [1321096 2018-09-28] (HP Inc. → HP Inc.)
      R2 HPAppHelperCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpc ustomcapcomp.inf_amd64_d04f01dd16ecf753\x64\AppHel perCap.exe [858064 2023-02-28] (HP Inc. → HP Inc.)
      R2 HPDiagsCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpc ustomcapcomp.inf_amd64_d04f01dd16ecf753\x64\DiagsC ap.exe [857032 2023-02-28] (HP Inc. → HP Inc.)
      R2 HPNetworkCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpc ustomcapcomp.inf_amd64_d04f01dd16ecf753\x64\Networ kCap.exe [853920 2023-02-28] (HP Inc. → HP Inc.)
      R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.e xe [229328 2023-04-08] (HP Inc. → HP Inc.)
      R2 HPSysInfoCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpc ustomcapcomp.inf_amd64_d04f01dd16ecf753\x64\SysInf oCap.exe [857032 2023-02-28] (HP Inc. → HP Inc.)
      R2 HpTouchpointAnalyticsService; C:\WINDOWS\System32\DriverStore\FileRepository\hpa nalyticscomp.inf_amd64_f23fc423d26e5d79\x64\Touchp ointAnalyticsClientService.exe [493712 2022-12-19] (HP Inc. → HP Inc.)
      R2 McAPExe; C:\Program Files\Common Files\McAfee\VSCore_22_12\McApExe.exe [815376 2023-03-07] (McAfee, LLC → McAfee, LLC)
      R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\5.5.107.0\McCSPServiceHost.exe [3384472 ] (McAfee, LLC → McAfee, LLC)
      S3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [1401824 2022-11-08] (MUSARUBRA US LLC → Trellix US LLC.)
      R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [1401824 2022-11-08] (MUSARUBRA US LLC → Trellix US LLC.)
      R3 mfevtp; C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [1401824 2022-11-08] (MUSARUBRA US LLC → Trellix US LLC.)
      R2 ModuleCoreService; C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe [1570496 2023-02-17] (McAfee, LLC → McAfee, LLC)
      R2 ODService; C:\Program Files (x86)\OptimumDesk\ODService.exe [2563608 2019-10-17] (Star Tech Alliance Inc → Class IT Outsourcing)
      S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\23.061.0319.0003\OneDriveUpdaterService.e xe [3801464 2023-04-03] (Microsoft Corporation → Microsoft Corporation)
      R2 PEFService; C:\Program Files\Common Files\McAfee\PEF\CORE\PEFService.exe [4248712 2022-10-14] (McAfee, LLC → McAfee, LLC)
      R2 UpdaterService; C:\Program Files (x86)\Common Files\Updater\updateservice.exe [54808 2019-07-25] (Star Tech Alliance Inc → )
      S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [2909208 2022-05-07] (Microsoft Windows Publisher → Microsoft Corporation)
      R2 WildTangentHelper; C:\Program Files (x86)\WildTangent Games\Integration\WildTangentHelperService.exe [1685312 2023-02-09] (WildTangent, Inc. → )
      S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [128376 2022-05-07] (Microsoft Windows Publisher → Microsoft Corporation)

      ===================== Drivers (Whitelisted) ===================

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 → Apple Inc.)
      R3 cfwids; C:\WINDOWS\System32\drivers\cfwids.sys [70880 2022-11-22] (Microsoft Windows Hardware Compatibility Publisher → Trellix US LLC.)
      R2 ctxusbm; C:\WINDOWS\system32\DRIVERS\ctxusbmon.sys [156072 2022-12-14] (Citrix Systems, Inc. → Citrix Systems, Inc.)
      R2 entryprotectdrv; C:\Program Files (x86)\Citrix\ICA Client\entryprotect.sys [72064 2023-01-17] (Citrix Systems, Inc. → Citrix Systems, Inc.)
      R1 epinject6; C:\Program Files (x86)\Citrix\ICA Client\epinject.sys [161832 2023-01-17] (Citrix Systems, Inc. → )
      R3 epusbfilter; C:\Program Files (x86)\Citrix\ICA Client\epusbfilter.sys [43904 2023-01-17] (Citrix Systems, Inc. → Citrix Systems, Inc.)
      R3 HPCustomCapDriver; C:\WINDOWS\System32\DriverStore\FileRepository\hpc ustomcapdriver.inf_amd64_a955fa431e522f5e\x64\hpcu stomcapdriver.sys [25592 2021-09-16] (HP Inc. → HP Inc.)
      S3 mfeaack; C:\WINDOWS\System32\drivers\mfeaack.sys [491232 2022-11-22] (Microsoft Windows Hardware Compatibility Publisher → Trellix US LLC.)
      U3 mfeaack01; no ImagePath
      R3 mfeavfk; C:\WINDOWS\System32\drivers\mfeavfk.sys [354016 2022-11-22] (Microsoft Windows Hardware Compatibility Publisher → Trellix US LLC.)
      U3 mfeavfk01; no ImagePath
      S0 mfeelamk; C:\WINDOWS\System32\drivers\mfeelamk.sys [85456 2022-11-22] (Microsoft Windows Early Launch Anti-malware Publisher → Trellix US LLC.)
      R3 mfefirek; C:\WINDOWS\System32\drivers\mfefirek.sys [464080 2022-11-22] (Microsoft Windows Hardware Compatibility Publisher → Trellix US LLC.)
      R0 mfehidk; C:\WINDOWS\System32\drivers\mfehidk.sys [949472 2022-11-22] (Microsoft Windows Hardware Compatibility Publisher → Trellix US LLC.)
      U3 mfehidk01; no ImagePath
      R3 mfencbdc; C:\WINDOWS\System32\DRIVERS\mfencbdc.sys [714600 2022-11-15] (Musarubra US LLC → Trellix US LLC.)
      U3 mfencbdc01; no ImagePath
      U3 mfencbdc02; no ImagePath
      S3 mfencrk; C:\WINDOWS\System32\DRIVERS\mfencrk.sys [135024 2022-11-15] (Musarubra US LLC → Trellix US LLC.)
      R3 mfeplk; C:\WINDOWS\System32\drivers\mfeplk.sys [106720 2022-11-22] (Microsoft Windows Hardware Compatibility Publisher → Trellix US LLC.)
      R0 mfewfpk; C:\WINDOWS\System32\drivers\mfewfpk.sys [233176 2022-11-22] (Microsoft Windows Hardware Compatibility Publisher → Trellix US LLC.)
      R1 vbdenum; C:\WINDOWS\System32\drivers\vbdenum.sys [119432 2020-04-14] (Citrix Systems, Inc. → Citrix Systems, Inc.)
      S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [48536 2022-05-07] (Microsoft Windows Early Launch Anti-malware Publisher → Microsoft Corporation)
      S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [438544 2022-05-07] (Microsoft Windows → Microsoft Corporation)
      S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [90384 2022-05-07] (Microsoft Windows → Microsoft Corporation)
      R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64 .sys [40104 2022-06-17] (HP Inc. → HP)
      S1 WinSetupMon; system32\DRIVERS\WinSetupMon.sys

      ==================== NetSvcs (Whitelisted) ===================

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      ==================== One month (created) (Whitelisted) =========

      (If an entry is included in the fixlist, the file/folder will be moved.)

      2023-04-08 19:21 - 2023-04-08 19:22 - 000000000 ____D C:\FRST
      2023-04-08 19:07 - 2023-04-08 19:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
      2023-04-06 18:10 - 2023-04-06 18:10 - 000002066 _____ C:\Users\Public\Desktop\McAfee®.lnk
      2023-04-06 18:05 - 2023-04-06 18:05 - 000000000 ____D C:\ProgramData\McInstTemp0219721680822349
      2023-04-06 18:04 - 2023-04-06 18:05 - 000000000 ____D C:\ProgramData\McInstTemp0217201680822272
      2023-04-05 10:58 - 2023-04-05 10:58 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
      2023-04-05 10:56 - 2023-04-05 10:56 - 000000020 ___SH C:\Users\Tammie\ntuser.ini
      2023-04-04 17:14 - 2023-04-05 10:56 - 000000000 ____D C:\Windows.old
      2023-04-04 17:12 - 2023-04-04 17:14 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
      2023-04-04 17:10 - 2023-04-04 17:12 - 000000000 ____D C:\WINDOWS\ServiceProfiles
      2023-04-04 17:10 - 2023-04-04 17:10 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
      2023-04-04 17:04 - 2023-04-05 11:14 - 000000000 ____D C:\WINDOWS\HoloShell
      2023-04-04 17:04 - 2023-04-04 17:04 - 000000000 ____D C:\WINDOWS\TextInput
      2023-04-04 17:03 - 2023-04-04 17:03 - 000000002 _____ C:\WINDOWS\system32\hologramcompositor.lock
      2023-04-04 17:03 - 2023-04-04 17:03 - 000000000 ____D C:\WINDOWS\SysWOW64\FxsTmp
      2023-04-04 17:03 - 2023-04-04 17:03 - 000000000 ____D C:\WINDOWS\system32\FxsTmp
      2023-04-04 17:03 - 2023-04-04 17:03 - 000000000 ____D C:\WINDOWS\addins
      2023-04-04 14:21 - 2023-04-08 19:05 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP
      2023-04-04 14:21 - 2023-04-08 19:05 - 000000000 ____D C:\WINDOWS\system32\Tasks\Hewlett-Packard
      2023-04-04 14:21 - 2023-04-08 17:37 - 000000000 ____D C:\WINDOWS\system32\Tasks\McAfee
      2023-04-04 14:21 - 2023-04-06 18:07 - 000003316 _____ C:\WINDOWS\system32\Tasks\McAfeeLogon
      2023-04-04 14:21 - 2023-04-05 10:56 - 000003468 _____ C:\WINDOWS\system32\Tasks\ODA
      2023-04-04 14:21 - 2023-04-05 10:56 - 000003418 _____ C:\WINDOWS\system32\Tasks\Updater
      2023-04-04 14:21 - 2023-04-05 10:56 - 000003400 _____ C:\WINDOWS\system32\Tasks\ODS
      2023-04-04 14:21 - 2023-04-05 10:55 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
      2023-04-04 14:21 - 2023-04-04 14:21 - 000003464 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskM achineUA
      2023-04-04 14:21 - 2023-04-04 14:21 - 000003348 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineU A
      2023-04-04 14:21 - 2023-04-04 14:21 - 000003270 _____ C:\WINDOWS\system32\Tasks\G2MUploadTask-S-1-5-21-3117569381-3242891862-2655254670-1001
      2023-04-04 14:21 - 2023-04-04 14:21 - 000003240 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskM achineCore
      2023-04-04 14:21 - 2023-04-04 14:21 - 000003174 _____ C:\WINDOWS\system32\Tasks\G2MUpdateTask-S-1-5-21-3117569381-3242891862-2655254670-1001
      2023-04-04 14:21 - 2023-04-04 14:21 - 000003124 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineC ore
      2023-04-04 14:21 - 2023-04-04 14:21 - 000003070 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3117569381-3242891862-2655254670-1001
      2023-04-04 14:21 - 2023-04-04 14:21 - 000002766 _____ C:\WINDOWS\system32\Tasks\HPAudioSwitch
      2023-04-04 14:21 - 2023-04-04 14:21 - 000002716 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
      2023-04-04 14:21 - 2023-04-04 14:21 - 000002646 _____ C:\WINDOWS\system32\Tasks\McAfee Remediation (Prepare)
      2023-04-04 14:21 - 2023-04-04 14:21 - 000002280 _____ C:\WINDOWS\system32\Tasks\RTKCPL
      2023-04-04 14:21 - 2023-04-04 14:21 - 000000000 ____D C:\WINDOWS\system32\Tasks\Intel
      2023-04-04 14:21 - 2023-04-04 14:21 - 000000000 ____D C:\WINDOWS\system32\Tasks\Agent Activation Runtime
      2023-04-04 14:21 - 2019-11-26 00:54 - 000002856 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1217258412-3642444870-1118739199-500
      2023-04-04 14:21 - 2019-05-08 04:59 - 000002856 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-4072176178-3469097637-1128494553-500
      2023-04-04 14:21 - 2019-04-15 10:41 - 000003390 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-913737145-1433743232-4147240673-500
      2023-04-04 14:20 - 2023-04-04 14:21 - 000011433 _____ C:\WINDOWS\diagwrn.xml
      2023-04-04 14:20 - 2023-04-04 14:21 - 000011433 _____ C:\WINDOWS\diagerr.xml
      2023-04-04 14:18 - 2023-04-05 11:04 - 000857786 _____ C:\WINDOWS\system32\PerfStringBackup.INI
      2023-04-04 14:15 - 2023-04-05 10:56 - 000000000 ____D C:\Users\Tammie
      2023-04-04 14:15 - 2023-04-04 14:15 - 000002081 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\B&O Play Audio Control.lnk
      2023-04-04 14:15 - 2023-04-04 14:15 - 000000000 ____D C:\WINDOWS\system32\config\BFS
      2023-04-04 14:14 - 2023-04-08 17:31 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
      2023-04-04 14:14 - 2023-04-04 14:14 - 000498968 _____ C:\WINDOWS\system32\FNTCACHE.DAT
      2023-04-04 13:52 - 2023-04-04 13:52 - 000000328 _____ C:\Users\Tammie\SECURITY SCAN REPORT.txt
      2023-04-04 13:18 - 2023-04-04 13:21 - 000000000 ____D C:\Users\Tammie\AppData\Roaming\AnyDesk
      2023-04-04 13:18 - 2023-04-04 13:18 - 004037192 _____ (AnyDesk Software GmbH) C:\Users\Tammie\Downloads\AnyDesk.exe
      2023-04-04 13:09 - 2023-04-04 13:09 - 000000000 ____D C:\Users\Tammie\AppData\Roaming\McAfee
      2023-04-03 22:49 - 2023-04-05 10:56 - 000000000 ___DC C:\WINDOWS\Panther
      2023-03-20 14:36 - 2023-03-20 14:36 - 000133365 _____ C:\Users\Tammie\Downloads\7. FY22, Charity Info for Spindletop Contributions.pdf
      2023-03-20 14:36 - 2023-03-20 14:36 - 000089141 _____ C:\Users\Tammie\Downloads\8. FY22, Spindletop Contribution Summary - as of 11.7.22.pdf
      2023-03-20 11:14 - 2023-03-20 12:25 - 000018741 _____ C:\Users\Tammie\Downloads\ELSC23, HCC ABNS (2.25.23) - Volunteers.xlsx
      2023-03-17 11:42 - 2023-03-17 11:42 - 000109565 _____ C:\Users\Tammie\Downloads\Temporary_driverlicense_ or_id.pdf
      2023-03-16 13:51 - 2023-03-20 11:13 - 000022814 _____ C:\Users\Tammie\Downloads\ELSC22, Unity in Community - Volunteer List.xlsx
      2023-03-15 11:30 - 2023-03-15 11:30 - 000000000 ___HD C:$WinREAgent
      2023-03-14 11:50 - 2023-03-14 15:38 - 000016124 _____ C:\Users\Tammie\Downloads\FY22, Ad Sales - Sponsors List (1).xlsx
      2023-03-13 11:19 - 2023-03-13 11:19 - 001070347 _____ C:\Users\Tammie\Downloads\Letter of Recommendation (1).pdf
      2023-03-12 10:09 - 2023-03-12 10:09 - 001070347 _____ C:\Users\Tammie\Downloads\Letter of Recommendation.pdf

      ==================== One month (modified) ==================

      (If an entry is included in the fixlist, the file/folder will be moved.)

      2023-04-08 19:16 - 2020-01-27 22:26 - 000000000 ____D C:\Program Files (x86)\Google
      2023-04-08 19:10 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\SystemTemp
      2023-04-08 19:10 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\AppReadiness
      2023-04-08 19:07 - 2021-05-11 15:17 - 000000000 ____D C:\Program Files\HPPrintScanDoctor
      2023-04-08 19:05 - 2020-01-28 00:22 - 000000000 ___RD C:\Users\Tammie\OneDrive
      2023-04-08 19:05 - 2020-01-28 00:20 - 000000000 __SHD C:\Users\Tammie\IntelGraphicsProfiles
      2023-04-08 17:43 - 2022-05-07 00:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
      2023-04-08 17:35 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\system32\WebThreatDefSvc
      2023-04-08 17:34 - 2022-05-07 00:24 - 000000000 ___HD C:\Program Files\WindowsApps
      2023-04-07 23:48 - 2020-07-21 17:44 - 000002445 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
      2023-04-07 23:48 - 2020-07-21 17:44 - 000002283 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
      2023-04-07 23:47 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
      2023-04-07 23:47 - 2022-05-07 00:17 - 000000000 ____D C:\WINDOWS\CbsTemp
      2023-04-07 23:47 - 2020-10-01 13:59 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
      2023-04-07 12:17 - 2019-05-08 05:08 - 000000000 ____D C:\Program Files\Microsoft Office
      2023-04-06 18:08 - 2020-03-04 10:06 - 000000000 ____D C:\Program Files\Common Files\McAfee
      2023-04-06 18:05 - 2022-05-07 00:24 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
      2023-04-06 18:05 - 2022-05-07 00:22 - 000000000 ____D C:\WINDOWS\INF
      2023-04-06 18:04 - 2020-03-04 10:07 - 000000000 ____D C:\Program Files (x86)\McAfee
      2023-04-06 11:45 - 2020-01-27 22:27 - 000002308 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
      2023-04-06 11:45 - 2020-01-27 22:27 - 000002267 _____ C:\Users\Public\Desktop\Google Chrome.lnk
      2023-04-05 11:42 - 2020-01-27 16:34 - 000000000 ____D C:\Users\Tammie\AppData\Local\PlaceholderTileLogoF older
      2023-04-05 11:14 - 2020-01-28 00:19 - 000000000 ____D C:\Users\Tammie\AppData\Local\Packages
      2023-04-05 11:14 - 2019-11-26 02:06 - 000000000 ____D C:\ProgramData\Packages
      2023-04-05 11:13 - 2022-05-07 00:24 - 000000000 ___RD C:\WINDOWS\PrintDialog
      2023-04-05 11:00 - 2020-01-27 16:49 - 000000000 ____D C:\Users\Tammie\AppData\Local\D3DSCache
      2023-04-05 10:58 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\appcompat
      2023-04-05 10:56 - 2022-05-07 00:24 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
      2023-04-05 10:56 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\system32\oobe
      2023-04-05 10:56 - 2022-05-07 00:17 - 000008192 _____ C:\WINDOWS\system32\config\ELAM
      2023-04-05 10:56 - 2020-01-27 16:47 - 000000000 ____D C:\Program Files (x86)\OptimumDesk
      2023-04-05 10:56 - 2019-04-15 10:39 - 000000000 __RHD C:\Users\Public\AccountPictures
      2023-04-05 10:55 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\ServiceState
      2023-04-05 10:55 - 2021-02-21 16:06 - 000012288 ___SH C:\DumpStack.log.tmp
      2023-04-04 17:14 - 2022-05-07 00:28 - 000000000 ____D C:\WINDOWS\Setup
      2023-04-04 17:14 - 2022-05-07 00:24 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
      2023-04-04 17:14 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
      2023-04-04 17:14 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\system32\spool
      2023-04-04 17:14 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\system32\SecurityHealth
      2023-04-04 17:14 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\system32\NDF
      2023-04-04 17:14 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\LiveKernelReports
      2023-04-04 17:14 - 2022-05-07 00:24 - 000000000 ____D C:\ProgramData\USOPrivate
      2023-04-04 17:14 - 2022-05-07 00:24 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
      2023-04-04 17:14 - 2021-06-05 07:10 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
      2023-04-04 17:14 - 2020-07-06 17:58 - 000000000 ____D C:\Program Files\UNP
      2023-04-04 17:14 - 2020-01-27 16:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AnyDesk EaseeRemote
      2023-04-04 17:14 - 2019-11-26 02:16 - 000000000 ____D C:\WINDOWS\SysWOW64\WildTangent
      2023-04-04 17:14 - 2019-11-26 02:06 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WildTangent Games
      2023-04-04 17:14 - 2019-11-26 02:03 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
      2023-04-04 17:14 - 2019-11-26 01:58 - 000000000 ____D C:\Program Files\Intel
      2023-04-04 17:14 - 2019-05-08 05:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools
      2023-04-04 17:14 - 2019-05-08 05:06 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
      2023-04-04 17:14 - 2019-03-18 23:52 - 000000000 ____D C:\WINDOWS\system32\MsDtc
      2023-04-04 17:13 - 2022-05-07 00:24 - 000000000 __RHD C:\Users\Public\Libraries
      2023-04-04 17:12 - 2022-01-23 16:10 - 000000000 ____D C:\WINDOWS\system32\Intel
      2023-04-04 17:12 - 2019-11-26 02:00 - 000000000 ____D C:\WINDOWS\system32\SRSLabs
      2023-04-04 17:12 - 2019-11-26 02:00 - 000000000 ____D C:\Program Files\Realtek
      2023-04-04 17:09 - 2022-05-07 00:25 - 000209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
      2023-04-04 17:09 - 2022-05-07 00:25 - 000076800 _____ (Khronos Group) C:\WINDOWS\SysWOW64\opencl.dll
      2023-04-04 17:09 - 2022-05-07 00:24 - 000249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
      2023-04-04 17:09 - 2022-05-07 00:24 - 000118784 _____ (Khronos Group) C:\WINDOWS\system32\opencl.dll
      2023-04-04 17:09 - 2022-05-07 00:24 - 000000000 ___SD C:\WINDOWS\system32\UNP
      2023-04-04 17:09 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\UUS
      2023-04-04 17:09 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
      2023-04-04 17:09 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
      2023-04-04 17:09 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
      2023-04-04 17:09 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
      2023-04-04 17:09 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\SystemResources
      2023-04-04 17:09 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\SystemApps
      2023-04-04 17:09 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
      2023-04-04 17:09 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
      2023-04-04 17:09 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
      2023-04-04 17:09 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\system32\Sgrm
      2023-04-04 17:09 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\system32\setup
      2023-04-04 17:09 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
      2023-04-04 17:09 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\system32\es-MX
      2023-04-04 17:09 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\system32\Dism
      2023-04-04 17:09 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\system32\appraiser
      2023-04-04 17:09 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\ShellExperiences
      2023-04-04 17:09 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\ShellComponents
      2023-04-04 17:09 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\Provisioning
      2023-04-04 17:09 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
      2023-04-04 17:09 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\Globalization
      2023-04-04 17:09 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\bcastdvr
      2023-04-04 17:09 - 2022-05-07 00:24 - 000000000 ____D C:\Program Files\Common Files\System
      2023-04-04 17:04 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
      2023-04-04 17:04 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
      2023-04-04 17:04 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
      2023-04-04 17:04 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
      2023-04-04 17:04 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\system32\lv-LV
      2023-04-04 17:04 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\system32\lt-LT
      2023-04-04 17:04 - 2022-05-07 00:24 - 000000000 ____D C:\WINDOWS\system32\et-EE
      2023-04-04 14:16 - 2022-08-16 11:23 - 000000000 ____D C:\Users\Tammie\AppData\Roaming\Microsoft\Windows\ Start Menu\Programs\Zoom
      2023-04-04 14:16 - 2022-05-07 00:17 - 000524288 _____ C:\WINDOWS\system32\config\BBI
      2023-04-04 14:16 - 2019-11-26 02:09 - 000000000 ____D C:\Users\Default\AppData\Local\Packages
      2023-04-04 14:15 - 2022-05-08 11:29 - 000000000 ____D C:\WINDOWS\Firmware
      2023-04-04 14:15 - 2019-11-26 02:00 - 003849378 _____ C:\WINDOWS\system32\Drivers\rtkhdasetting.zip
      2023-04-04 14:15 - 2019-11-26 02:00 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
      2023-04-03 23:48 - 2021-09-05 16:04 - 000000000 ____D C:\Program Files\Microsoft OneDrive
      2023-04-03 23:48 - 2020-04-07 17:40 - 000002139 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
      2023-03-19 14:21 - 2023-01-25 15:00 - 000000000 ____D C:\Users\Tammie\AppData\Local\GoToMeeting
      2023-03-15 11:39 - 2020-01-27 18:06 - 000000000 ____D C:\WINDOWS\system32\MRT
      2023-03-15 11:36 - 2020-01-27 18:06 - 153620824 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
      2023-03-14 13:08 - 2023-03-08 18:16 - 000031658 _____ C:\Users\Tammie\Downloads\HB22, Sponsorship List.xlsx

      ==================== SigCheck ============================

      (There is no automatic fix for files that do not pass verification.)

      ==================== End of FRST.txt ========================
      [HEADING=1]Additional scan result of Farbar Recovery Scan Tool (x64) Version: 06-04-2023
      Ran by Tammie (08-04-2023 19:24:05)
      Running from C:\Users\Tammie\OneDrive\Desktop
      Microsoft Windows 11 Home Version 22H2 22621.1413 (X64) (2023-04-05 15:56:12)
      Boot Mode: Normal[/HEADING]
      ==================== Accounts: =============================

      (If an entry is included in the fixlist, it will be removed.)

      Administrator (S-1-5-21-3117569381-3242891862-2655254670-500 - Administrator - Disabled)
      DefaultAccount (S-1-5-21-3117569381-3242891862-2655254670-503 - Limited - Disabled)
      Guest (S-1-5-21-3117569381-3242891862-2655254670-501 - Limited - Disabled)
      Mailloux.Tammie (S-1-5-21-3117569381-3242891862-2655254670-1002 - Limited - Enabled)
      Tammie (S-1-5-21-3117569381-3242891862-2655254670-1001 - Administrator - Enabled) => C:\Users\Tammie
      WDAGUtilityAccount (S-1-5-21-3117569381-3242891862-2655254670-504 - Limited - Disabled)

      ==================== Security Center ========================

      (If an entry is included in the fixlist, it will be removed.)

      AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
      AV: McAfee VirusScan (Enabled - Up to date) {FE987762-0FB6-6BB6-1BF1-73F8ED8566FA}
      FW: McAfee Firewall (Enabled) {C6A3F647-45D9-6AEE-30AE-DACD13562181}

      ==================== Installed Programs ======================

      (Only the adware programs with “Hidden” flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

      AnyDesk EaseeRemote (HKLM-x32...{F55827A8-2ECB-42B9-8905-EEBEAEACA0A3}) (Version: 3.6.1 - philandro Software GmbH)
      BCR Plug-in (HKLM-x32...{EC812286-929D-4402-AE5B-0C7CE548FF35}) (Version: 23.2.0.9 - Citrix Systems, Inc.) Hidden
      Cisco Webex Meetings (HKU\S-1-5-21-3117569381-3242891862-2655254670-1001...\ActiveTouchMeetingClient) (Version: 41.9.5 - Cisco Webex LLC)
      Citrix Authentication Manager (HKLM-x32...{05050F9C-B6C7-446C-B2B9-4C03DB2E79E2}) (Version: 23.3.0.5 - Cloud Software Group, Inc.) Hidden
      Citrix Screen Casting for Windows (HKLM-x32...{4D46B3A6-67F5-4385-86D2-8E769EA07827}) (Version: 19.11.100.48 - Citrix Systems, Inc) Hidden
      Citrix Web Helper (HKLM-x32...{6D00D7E5-31A3-4122-82E8-32791FF475A3}) (Version: 23.2.0.21 - Cloud Software Group, Inc.) Hidden
      Citrix Workspace (HKLM...{dcdaa2fd-eaac-4ab0-9ece-f3df127a6c45}.sdb) (Version: - )
      Citrix Workspace 2302 (HKLM-x32...\CitrixOnlinePluginPackWeb) (Version: 23.2.0.38 - Cloud Software Group, Inc.)
      Citrix Workspace Inside (HKLM-x32...{ABAB33DE-1F6B-431A-B72B-0E1E31AD1E2A}) (Version: 23.2.0.15 - Citrix Systems, Inc.) Hidden
      Citrix Workspace(DV) (HKLM-x32...{441545C8-A190-41FC-8E3D-51E7F1CF4D84}) (Version: 23.2.0.9 - Citrix Systems, Inc.) Hidden
      Citrix Workspace(USB) (HKLM-x32...{DEA5B549-F222-4B4D-9044-035534FB4A60}) (Version: 23.2.0.9 - Citrix Systems, Inc.) Hidden
      EzTiltPen (HKLM...{359DAC8D-CE33-4729-84E9-22D3367A44A9}_is1) (Version: 1.0.0.25 - ELAN microelectronics Crop.)
      Google Chrome (HKLM-x32...\Google Chrome) (Version: 111.0.5563.148 - Google LLC)
      GoTo Opener (HKLM-x32...{7659273F-0EB6-4ECB-BC7D-5889F3FD3075}) (Version: 1.0.562 - LogMeIn, Inc.)
      GoToMeeting 10.19.0.19950 (HKU\S-1-5-21-3117569381-3242891862-2655254670-1001...\GoToMeeting) (Version: 10.19.0.19950 - LogMeIn, Inc.)
      HP Audio Switch (HKLM-x32...{20A40E7C-E470-4E9F-9B5C-DDB2C205E856}) (Version: 1.0.154.0 - HP Inc.)
      HP Connection Optimizer (HKLM-x32...{6468C4A5-E47E-405F-B675-A70A70983EA6}) (Version: 2.0.15.0 - HP Inc.)
      HP Documentation (HKLM...\HP_Documentation) (Version: 1.0.0.1 - HP Inc.)
      Intel(R) Chipset Device Software (HKLM...{D4DC16D3-5547-4A3B-A9EB-FF9B4C2EA4A1}) (Version: 10.1.17969.8134 - Intel Corporation) Hidden
      Intel(R) Chipset Device Software (HKLM-x32...{3d2240de-3c21-4e14-84b3-1c6cd02bfab4}) (Version: 10.1.17969.8134 - Intel(R) Corporation)
      Intel(R) Management Engine Components (HKLM...{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 1845.12.0.1171 - Intel Corporation)
      Intel(R) Management Engine Components (HKLM...{6E4B7B87-896C-493E-ACD2-FDD579D49595}) (Version: 1.0.0.0 - Intel Corporation) Hidden
      Intel(R) Management Engine Components (HKLM...{C14E928B-61A4-4EAC-B46B-2197214DFAEA}) (Version: 1.0.0.0 - Intel Corporation) Hidden
      Intel(R) Management Engine Driver (HKLM...{DAB3D5DC-6A25-4207-AAC1-47111A5286E4}) (Version: 1.0.0.0 - Intel Corporation) Hidden
      Intel(R) Rapid Storage Technology (HKLM...{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 17.2.0.1009 - Intel Corporation)
      Intel(R) Rapid Storage Technology (HKLM...{8B93CAC3-6008-4C17-9FB0-B4F6F90FF316}) (Version: 17.2.0.1009 - Intel Corporation) Hidden
      Intel(R) Trusted Connect Service Client x64 (HKLM...{C9552825-7BF2-4344-BA91-D3CD46F4C442}) (Version: 1.50.638.1 - Intel Corporation) Hidden
      Intel(R) Trusted Connect Service Client x86 (HKLM-x32...{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.50.638.1 - Intel Corporation) Hidden
      Intel(R) Trusted Connect Services Client (HKLM-x32...{99ee3c29-c7cd-450f-8db9-d43cc49de1c7}) (Version: 1.50.638.1 - Intel Corporation) Hidden
      McAfee® (HKLM-x32...\MSC) (Version: 16.0 R51 - McAfee, LLC)
      Microsoft 365 - en-us (HKLM...\O365HomePremRetail - en-us) (Version: 16.0.16227.20258 - Microsoft Corporation)
      Microsoft Edge (HKLM-x32...\Microsoft Edge) (Version: 112.0.1722.34 - Microsoft Corporation)
      Microsoft Edge WebView2 Runtime (HKLM-x32...\Microsoft EdgeWebView) (Version: 111.0.1661.62 - Microsoft Corporation)
      Microsoft OneDrive (HKLM...\OneDriveSetup.exe) (Version: 23.061.0319.0003 - Microsoft Corporation)
      Microsoft Teams (HKU\S-1-5-21-3117569381-3242891862-2655254670-1001...\Teams) (Version: 1.4.00.35564 - Microsoft Corporation)
      Microsoft Update Health Tools (HKLM...{EF9EBC42-6969-45CE-A8D2-B9249B00C838}) (Version: 5.69.0.0 - Microsoft Corporation)
      Microsoft VC++ redistributables repacked. (HKLM...{E5AB1F15-344F-44C7-AE48-DA5568C0C29B}) (Version: 12.0.0.0 - Intel Corporation) Hidden
      Microsoft VC++ redistributables repacked. (HKLM-x32...{0C14DBCA-A0AF-44A2-94D3-4408D1A1F9C3}) (Version: 12.0.0.0 - Intel Corporation) Hidden
      Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.30.30704 (HKLM-x32...{57a73df6-4ba9-4c1d-bbbb-517289ff6c13}) (Version: 14.30.30704.0 - Microsoft Corporation)
      Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.30.30704 (HKLM-x32...{4d8dcf8c-a72a-43e1-9833-c12724db736e}) (Version: 14.30.30704.0 - Microsoft Corporation)
      Microsoft Visual C++ 2022 X64 Additional Runtime - 14.30.30704 (HKLM...{6DB765A8-05AF-49A1-A71D-6F645EE3CE41}) (Version: 14.30.30704 - Microsoft Corporation) Hidden
      Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.30.30704 (HKLM...{662A0088-6FCD-45DD-9EA7-68674058AED5}) (Version: 14.30.30704 - Microsoft Corporation) Hidden
      Microsoft Visual C++ 2022 X86 Additional Runtime - 14.30.30704 (HKLM-x32...{BF08E976-B92E-4336-B56F-2171179476C4}) (Version: 14.30.30704 - Microsoft Corporation) Hidden
      Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.30.30704 (HKLM-x32...{F6080405-9FA8-4CAA-9982-14E95D1A3DAC}) (Version: 14.30.30704 - Microsoft Corporation) Hidden
      Office 16 Click-to-Run Extensibility Component (HKLM...{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.16130.20218 - Microsoft Corporation) Hidden
      Office 16 Click-to-Run Licensing Component (HKLM...{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.16227.20204 - Microsoft Corporation) Hidden
      Office 16 Click-to-Run Localization Component (HKLM...{90160000-008C-0409-1000-0000000FF1CE}) (Version: 16.0.14131.20278 - Microsoft Corporation) Hidden
      Online Plug-in (HKLM-x32...{C3C2A5FB-4828-4A5C-A926-52541D2FF33E}) (Version: 23.2.0.9 - Citrix Systems, Inc.) Hidden
      Realtek High Definition Audio Driver (HKLM-x32...{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.8791.1 - Realtek Semiconductor Corp.)
      Self-service Plug-in (HKLM-x32...{E8019414-F222-40FF-8131-B02FC64BC67D}) (Version: 23.2.0.21 - Cloud Software Group, Inc.) Hidden
      WildTangent Games (HKLM-x32...\WildTangent wildgames Master Uninstall) (Version: 1.1.1.47 - WildTangent)
      WildTangent Helper (HKLM-x32...{A39303AB-4898-4F12-BAA0-0B8630F86DB4}) (Version: 5.0.0.331 - WildTangent) Hidden
      WildTangent ShortcutProvider (HKLM-x32...{80831F60-19D7-43B3-A60C-5CAF8C478DF6}) (Version: 6.0.0.59 - WildTangent) Hidden
      Windows PC Health Check (HKLM...{B1E7D0FD-7CFE-4E0C-A5DA-0F676499DB91}) (Version: 3.2.2110.14001 - Microsoft Corporation)
      Zoom (HKU\S-1-5-21-3117569381-3242891862-2655254670-1001...\ZoomUMX) (Version: 5.11.1 (6602) - Zoom Video Communications, Inc.)
      [HEADING=1]Packages:[/HEADING]
      Candy Crush Friends → C:\Program Files\WindowsApps\king.com.CandyCrushFriends_1.98. 2.0_x64__kgqvnymyfvs32 [2023-04-08] (king.com)
      Dropbox promotion → C:\Program Files\WindowsApps\C27EB4BA.DropboxOEM_23.4.11.0_x6 4__xbfy0k16fey96 [2023-04-03] (Dropbox Inc.)
      ELAN Touchpad Setting → C:\Program Files\WindowsApps\ELANMicroelectronicsCorpo.ELANTo uchpadSetting_11.2.63.0_x64__stws0m115j6hg [2023-04-05] (ELAN Microelectronics Corporation)
      Energy Star → C:\Program Files\WindowsApps\AD2F1837.HPInc.EnergyStar_1.2.0. 0_x64__v10z8vjag6ke6 [2023-04-08] (HP Inc.)
      Farm Heroes Saga → C:\Program Files\WindowsApps\king.com.FarmHeroesSaga_6.11.3.0 _x64__kgqvnymyfvs32 [2023-04-08] (king.com)
      HP CoolSense → C:\Program Files\WindowsApps\AD2F1837.HPCoolSense_1.0.6.0_x64 __v10z8vjag6ke6 [2019-11-26] (HP Inc.)
      HP Impreza Pen → C:\Program Files\WindowsApps\9FDF1AF1.HPImprezaPen_1.1.12.0_x 64__g70az3e2cx9m2 [2020-01-27] (ELAN MICROELECTRONICS CORP.) [Startup Task]
      HP JumpStarts → C:\Program Files\WindowsApps\AD2F1837.HPJumpStarts_1.10.1627. 0_x64__v10z8vjag6ke6 [2021-05-25] (HP Inc.)
      HP PC Hardware Diagnostics Windows → C:\Program Files\WindowsApps\AD2F1837.HPPCHardwareDiagnostics Windows_2.1.0.0_x64__v10z8vjag6ke6 [2023-01-16] (HP Inc.)
      HP Privacy Settings → C:\Program Files\WindowsApps\AD2F1837.HPPrivacySettings_1.2.7 4.0_x64__v10z8vjag6ke6 [2023-04-03] (HP Inc.)
      HP Smart → C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_144.1. 1068.0_x64__v10z8vjag6ke6 [2023-04-08] (HP Inc.)
      HP Support Assistant → C:\Program Files\WindowsApps\AD2F1837.HPSupportAssistant_9.25 .18.0_x64__v10z8vjag6ke6 [2023-04-08] (HP Inc.)
      HP System Event Utility → C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_1. 3.2.0_x64__v10z8vjag6ke6 [2022-08-15] (HP Inc.)
      Intel® Graphics Command Center → C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1. 100.4628.0_x64__8j3eq9eme6ctt [2023-03-09] (INTEL CORP) [Startup Task]
      Intel® Graphics Control Panel → C:\Program Files\WindowsApps\AppUp.IntelGraphicsControlPanel_ 3.3.0.0_x64__8j3eq9eme6ctt [2022-01-24] (INTEL CORP)
      Intel® Optane™ Memory and Storage Management → C:\Program Files\WindowsApps\AppUp.IntelOptaneMemoryandStorag eManagement_18.1.1037.0_x64__8j3eq9eme6ctt [2023-04-05] (INTEL CORP)
      McAfee® Personal Security → C:\Program Files\WindowsApps\5A894077.McAfeeSecurity_2.1.68.0 _x64__wafk5atnkzcwy [2021-11-21] (McAfee LLC.)
      Microsoft Advertising SDK for XAML → C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.18 11.1.0_x64__8wekyb3d8bbwe [2022-01-23] (Microsoft Corporation) [MS Ad]
      Microsoft Advertising SDK for XAML → C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.18 11.1.0_x86__8wekyb3d8bbwe [2022-01-23] (Microsoft Corporation) [MS Ad]
      Microsoft Defender → C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2302 .13004.0_x64__8wekyb3d8bbwe [2023-04-03] (Microsoft Corporation) [Startup Task]
      Microsoft Family → C:\Program Files\WindowsApps\MicrosoftCorporationII.Microsoft Family_0.2.39.0_x64__8wekyb3d8bbwe [2023-04-08] (Microsoft Corp.)
      Microsoft Office Outlook Desktop Integration → C:\Program Files\WindowsApps\Microsoft.OutlookDesktopIntegrat ionServices_16009.11426.10000.0_x64__8wekyb3d8bbwe [2020-01-27] (Microsoft Corporation)
      Netflix → C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.98.1805.0_x64 __mcm4njqhnhss8 [2022-02-18] (Netflix, Inc.)
      Photos Media Engine Add-on → C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_ 1.0.0.0_x64__8wekyb3d8bbwe [2020-09-01] (Microsoft Corporation)
      Simple Solitaire → C:\Program Files\WindowsApps\26720RandomSaladGamesLLC.SimpleS olitaire_7.4.14.0_x64__kx24dqmazqk8j [2023-04-08] (Random Salad Games LLC)
      Solitaire & Casual Games → C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireColl ection_4.16.3140.0_x64__8wekyb3d8bbwe [2023-03-19] (Microsoft Studios) [MS Ad]
      WildTangent Games → C:\Program Files\WindowsApps\WildTangentGames.63435CFB65F55_2 .0.84.0_x64__qt5r5pa5dyg8m [2023-04-08] (WildTangent Games)

      ==================== Custom CLSID (Whitelisted): ==============

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      CustomCLSID: HKU\S-1-5-21-3117569381-3242891862-2655254670-1001_Classes\CLSID{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 → C:\Users\Tammie\AppData\Local\Microsoft\TeamsMeeti ngAddin\1.0.21328.1\x64\Microsoft.Teams.AddinLoade r.dll (Microsoft Corporation → Microsoft Corporation)
      CustomCLSID: HKU\S-1-5-21-3117569381-3242891862-2655254670-1001_Classes\CLSID{84B5A313-CD5D-4904-8BA2-AFDC81C1B309}\InprocServer32 → C:\Users\Tammie\AppData\Local\GoToMeeting\19950\G2 MOutlookAddin64.dll (LogMeIn, Inc. → LogMeIn, Inc.)
      CustomCLSID: HKU\S-1-5-21-3117569381-3242891862-2655254670-1001_Classes\CLSID{d1b22d3d-8585-53a6-acb3-0e803c7e8d2a}\localserver32 → C:\Users\Tammie\AppData\Local\Microsoft\Teams\curr ent\Teams.exe (Microsoft Corporation → Microsoft Corporation)
      ShellIconOverlayIdentifiers: [ OneDrive1] → {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\23.061.0319.0003\FileSyncShell64.dll [2023-04-03] (Microsoft Corporation → Microsoft Corporation)
      ShellIconOverlayIdentifiers: [ OneDrive2] → {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\23.061.0319.0003\FileSyncShell64.dll [2023-04-03] (Microsoft Corporation → Microsoft Corporation)
      ShellIconOverlayIdentifiers: [ OneDrive3] → {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\23.061.0319.0003\FileSyncShell64.dll [2023-04-03] (Microsoft Corporation → Microsoft Corporation)
      ShellIconOverlayIdentifiers: [ OneDrive4] → {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\23.061.0319.0003\FileSyncShell64.dll [2023-04-03] (Microsoft Corporation → Microsoft Corporation)
      ShellIconOverlayIdentifiers: [ OneDrive5] → {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\23.061.0319.0003\FileSyncShell64.dll [2023-04-03] (Microsoft Corporation → Microsoft Corporation)
      ShellIconOverlayIdentifiers: [ OneDrive6] → {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\23.061.0319.0003\FileSyncShell64.dll [2023-04-03] (Microsoft Corporation → Microsoft Corporation)
      ShellIconOverlayIdentifiers: [ OneDrive7] → {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\23.061.0319.0003\FileSyncShell64.dll [2023-04-03] (Microsoft Corporation → Microsoft Corporation)
      ShellIconOverlayIdentifiers-x32: [ OneDrive1] → {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\23.061.0319.0003\FileSyncShell64.dll [2023-04-03] (Microsoft Corporation → Microsoft Corporation)
      ShellIconOverlayIdentifiers-x32: [ OneDrive2] → {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\23.061.0319.0003\FileSyncShell64.dll [2023-04-03] (Microsoft Corporation → Microsoft Corporation)
      ShellIconOverlayIdentifiers-x32: [ OneDrive3] → {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\23.061.0319.0003\FileSyncShell64.dll [2023-04-03] (Microsoft Corporation → Microsoft Corporation)
      ShellIconOverlayIdentifiers-x32: [ OneDrive4] → {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\23.061.0319.0003\FileSyncShell64.dll [2023-04-03] (Microsoft Corporation → Microsoft Corporation)
      ShellIconOverlayIdentifiers-x32: [ OneDrive5] → {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\23.061.0319.0003\FileSyncShell64.dll [2023-04-03] (Microsoft Corporation → Microsoft Corporation)
      ShellIconOverlayIdentifiers-x32: [ OneDrive6] → {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\23.061.0319.0003\FileSyncShell64.dll [2023-04-03] (Microsoft Corporation → Microsoft Corporation)
      ShellIconOverlayIdentifiers-x32: [ OneDrive7] → {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\23.061.0319.0003\FileSyncShell64.dll [2023-04-03] (Microsoft Corporation → Microsoft Corporation)
      ContextMenuHandlers1: [ FileSyncEx] → {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\23.061.0319.0003\FileSyncShell64.dll [2023-04-03] (Microsoft Corporation → Microsoft Corporation)
      ContextMenuHandlers1: [McCtxMenuFrmWrk] → {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} => C:\Program Files\McAfee\MSC\McCtxMenuFrmWrk.dll [2023-03-01] (McAfee, LLC → McAfee, LLC)
      ContextMenuHandlers4: [ FileSyncEx] → {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\23.061.0319.0003\FileSyncShell64.dll [2023-04-03] (Microsoft Corporation → Microsoft Corporation)
      ContextMenuHandlers5: [ FileSyncEx] → {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\23.061.0319.0003\FileSyncShell64.dll [2023-04-03] (Microsoft Corporation → Microsoft Corporation)
      ContextMenuHandlers6: [McCtxMenuFrmWrk] → {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} => C:\Program Files\McAfee\MSC\McCtxMenuFrmWrk.dll [2023-03-01] (McAfee, LLC → McAfee, LLC)

      ==================== Codecs (Whitelisted) ====================

      ==================== Shortcuts & WMI ========================

      ==================== Loaded Modules (Whitelisted) =============

      2023-02-07 00:23 - 2023-02-07 00:23 - 000512000 _____ (Cloud Software Group, Inc.) [File not signed] C:\Program Files (x86)\Citrix\ICA Client\SelfServicePlugin\Shims.dll

      ==================== Alternate Data Streams (Whitelisted) ========

      ==================== Safe Mode (Whitelisted) ==================

      (If an entry is included in the fixlist, it will be removed from the registry. The “AlternateShell” will be restored.)

      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Min imal\MCODS => “”=“Service”
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Min imal\mcpltsvc => “”=“”
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Min imal\ModuleCoreService => “”=“Service”
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Net work\mcapexe => “”=“”
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Net work\McMPFSvc => “”=“Service”
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Net work\MCODS => “”=“Service”
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Net work\mcpltsvc => “”=“”
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Net work\mfeaack => “”=“Service”
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Net work\mfeaack.sys => “”=“Driver”
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Net work\mfeavfk => “”=“Service”
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Net work\mfeavfk.sys => “”=“Driver”
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Net work\mfefire => “”=“Service”
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Net work\mfefirek => “”=“Service”
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Net work\mfefirek.sys => “”=“Driver”
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Net work\mfehidk => “”=“Service”
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Net work\mfehidk.sys => “”=“Driver”
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Net work\mfemms => “”=“Service”
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Net work\mfeplk => “”=“Service”
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Net work\mfeplk.sys => “”=“Driver”
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Net work\mfetdi2k => “”=“Service”
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Net work\mfetdi2k.sys => “”=“Driver”
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Net work\mfevtp => “”=“Service”
      HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Net work\ModuleCoreService => “”=“Service”

      ==================== Association (Whitelisted) =================

      ==================== Internet Explorer (Whitelisted) ==========

      HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp17win10.msn.com/?pc=HCTE
      HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
      HKU\S-1-5-21-3117569381-3242891862-2655254670-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp17win10.msn.com/?pc=HCTE
      HKU\S-1-5-21-3117569381-3242891862-2655254670-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
      SearchScopes: HKLM → {5ED1A30C-0CC2-469B-A16A-4B5B457949DE} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us2-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
      SearchScopes: HKLM-x32 → {5ED1A30C-0CC2-469B-A16A-4B5B457949DE} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us2-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
      SearchScopes: HKU\S-1-5-21-3117569381-3242891862-2655254670-1001 → {5ED1A30C-0CC2-469B-A16A-4B5B457949DE} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us2-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
      BHO: HP Network Check Helper → {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} → C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckP luginx64.dll [2023-04-04] (HP Inc. → HP Inc.)
      BHO-x32: Skype for Business Browser Helper → {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} → C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2023-03-06] (Microsoft Corporation → Microsoft Corporation)
      BHO-x32: HP Network Check Helper → {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} → C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckP lugin.dll [2023-04-04] (HP Inc. → HP Inc.)
      Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-04-01] (Microsoft Corporation → Microsoft Corporation)
      Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-04-01] (Microsoft Corporation → Microsoft Corporation)
      Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-04-01] (Microsoft Corporation → Microsoft Corporation)
      Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-04-01] (Microsoft Corporation → Microsoft Corporation)
      Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-04-01] (Microsoft Corporation → Microsoft Corporation)
      Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-04-01] (Microsoft Corporation → Microsoft Corporation)
      Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-04-01] (Microsoft Corporation → Microsoft Corporation)
      Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-04-01] (Microsoft Corporation → Microsoft Corporation)
      Filter-x32: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2023-01-13] (Citrix Systems, Inc. → Citrix Systems, Inc.)
      Filter-x32: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2023-01-13] (Citrix Systems, Inc. → Citrix Systems, Inc.)
      Filter-x32: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2023-01-13] (Citrix Systems, Inc. → Citrix Systems, Inc.)
      Filter-x32: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2023-01-13] (Citrix Systems, Inc. → Citrix Systems, Inc.)
      Filter-x32: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2023-01-13] (Citrix Systems, Inc. → Citrix Systems, Inc.)
      Filter-x32: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2023-01-13] (Citrix Systems, Inc. → Citrix Systems, Inc.)
      Filter-x32: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2023-01-13] (Citrix Systems, Inc. → Citrix Systems, Inc.)
      Filter-x32: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2023-01-13] (Citrix Systems, Inc. → Citrix Systems, Inc.)
      Filter-x32: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2023-01-13] (Citrix Systems, Inc. → Citrix Systems, Inc.)
      Filter-x32: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2023-01-13] (Citrix Systems, Inc. → Citrix Systems, Inc.)
      Filter-x32: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2023-01-13] (Citrix Systems, Inc. → Citrix Systems, Inc.)
      Filter-x32: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2023-01-13] (Citrix Systems, Inc. → Citrix Systems, Inc.)
      Filter-x32: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2023-01-13] (Citrix Systems, Inc. → Citrix Systems, Inc.)
      Filter-x32: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2023-01-13] (Citrix Systems, Inc. → Citrix Systems, Inc.)
      Filter-x32: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2023-01-13] (Citrix Systems, Inc. → Citrix Systems, Inc.)
      Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files\McAfee\MSC\McSnIePl64.dll [2023-03-01] (McAfee, LLC → McAfee, LLC)
      Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files (x86)\McAfee\MSC\McSnIePl.dll [2023-03-01] (McAfee, LLC → McAfee, LLC)
      Filter-x32: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2023-01-13] (Citrix Systems, Inc. → Citrix Systems, Inc.)

      ==================== Hosts content: =========================

      (If needed Hosts: directive could be included in the fixlist to reset Hosts.)

      2019-03-18 23:49 - 2019-03-18 23:49 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

      ==================== Other Areas ===========================

      (Currently there is no automatic fix for this section.)

      HKU\S-1-5-21-3117569381-3242891862-2655254670-1001\Control Panel\Desktop\Wallpaper → C:\Users\Tammie\OneDrive\Pictures\241298828_102298 45357103895_9090631330729640803_n.jpg
      DNS Servers: 192.168.1.1
      HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Pol icies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
      Windows Firewall is enabled.

      ==================== MSCONFIG/TASK MANAGER disabled items ==

      (If an entry is included in the fixlist, it will be removed.)

      HKLM...\StartupApproved\StartupFolder: => “AnyDesk EaseeRemote.lnk”
      HKLM...\StartupApproved\Run: => “OptimumDesk”
      HKU\S-1-5-21-3117569381-3242891862-2655254670-1001...\StartupApproved\Run: => “HPSEU_Host_Launcher”

      ==================== FirewallRules (Whitelisted) ================

      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      FirewallRules: [{FAD2A80D-5B47-4CEB-A33B-B1879669F5E3}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_ x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl → )
      FirewallRules: [{6620BDDB-7105-4BD2-B647-BECA58F68444}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_ x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl → )
      FirewallRules: [{20FF085C-444E-42FD-9B53-99C1FA276F80}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_ x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl → )
      FirewallRules: [{F82B18C7-7365-4016-B06C-DF53ABFC8712}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_ x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl → )
      FirewallRules: [{CEB1B3A7-48AF-4E91-BD27-439EE7F3E379}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\111.0.1661 .62\msedgewebview2.exe (Microsoft Corporation → Microsoft Corporation)
      FirewallRules: [{6C3D9CC2-1ED1-4379-A191-AFF91B47E7DE}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_23062.1103.1944.2 725_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation → )
      FirewallRules: [{3038776D-1BB6-48E3-AFA7-74505F7758EC}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_23062.1103.1944.2 725_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation → )
      FirewallRules: [{6CC03295-3E3F-46B6-A408-9279A2C19174}] => (Allow) C:\Program Files (x86)\Citrix\ICA Client\CitrixEnterpriseBrowser\CitrixEnterpriseBro wser.exe (Citrix Systems, Inc. → Citrix Systems, Inc.)
      FirewallRules: [{6EB1C1C1-173F-4806-92D5-AFE2A453A8A7}] => (Allow) C:\Users\Tammie\AppData\Roaming\Zoom\bin\airhost.e xe (Zoom Video Communications, Inc. → Zoom Video Communications, Inc.)
      FirewallRules: [{D13F5FEC-277D-490E-8C0C-029B68C5E2D1}] => (Allow) C:\Users\Tammie\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. → Zoom Video Communications, Inc.)
      FirewallRules: [{2C8EDB20-FC80-472B-8E95-5A95DE2AB05A}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe => No File
      FirewallRules: [{3426BBFF-3925-4F52-A87C-958680E5DA2E}] => (Allow) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHost.exe (McAfee, LLC → McAfee, LLC)
      FirewallRules: [{297A5742-6288-49E7-BFF1-46E5C46E692F}] => (Allow) C:\Program Files (x86)\Common Files\McAfee\MMSSHost\MMSSHost.exe (McAfee, LLC → McAfee, LLC)
      FirewallRules: [{D8D17259-9AA6-4AFC-8CD3-CBCB81EE95C6}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation → Microsoft Corporation)
      FirewallRules: [{B3F158AA-C945-45F8-9401-6541BF441AC0}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_23062.1103.1944.2 725_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation → )
      FirewallRules: [{728C0B36-1A08-4E34-8666-14B7C5B23ADC}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_23062.1103.1944.2 725_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation → )
      FirewallRules: [{A027851F-CD9E-4494-861C-8A5B91BF44AB}] => (Allow) C:\Program Files (x86)\AnyDesk-7832783c\AnyDesk-7832783c.exe (philandro Software GmbH → )
      FirewallRules: [{4695F0D3-CFD4-4410-AB10-AE269250AF0F}] => (Allow) C:\Program Files (x86)\AnyDesk-7832783c\AnyDesk-7832783c.exe (philandro Software GmbH → )
      FirewallRules: [{4A24BD6F-A9EF-42ED-AA89-3BD9740FDA71}] => (Allow) C:\Program Files (x86)\AnyDesk-7832783c\AnyDesk-7832783c.exe (philandro Software GmbH → )
      FirewallRules: [{69F379E2-FCF6-437C-8517-22B8C5DE5327}] => (Allow) C:\Program Files (x86)\AnyDesk-7832783c\AnyDesk-7832783c.exe (philandro Software GmbH → )
      FirewallRules: [{2AEFCB42-58FB-4B70-8582-3703AC9775C9}] => (Allow) C:\Program Files (x86)\AnyDesk-7832783c\AnyDesk-7832783c.exe (philandro Software GmbH → )
      FirewallRules: [{83F43844-B5C9-46AC-B9A9-9F38DDE81534}] => (Allow) C:\Program Files (x86)\AnyDesk-7832783c\AnyDesk-7832783c.exe (philandro Software GmbH → )
      FirewallRules: [{3B16BD4E-D6A6-4938-8235-BC406DD68DD5}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC → Google LLC)

      ==================== Restore Points =========================

      06-04-2023 00:03:49 Windows Modules Installer

      ==================== Faulty Device Manager Devices ============

      ==================== Event log errors: ========================
      [HEADING=1]Application errors:[/HEADING]
      Error: (04/07/2023 11:47:41 PM) (Source: System Restore) (EventID: 8193) (User: )
      Description: Failed to create restore point (Process = C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.22621.1344_no ne_e953938a42d5ff76\TiWorker.exe -Embedding; Description = Windows Modules Installer; Error = 0x80042319).

      Error: (04/07/2023 11:47:41 PM) (Source: SPP) (EventID: 16387) (User: )
      Description: Writer MSSearch Service Writer experienced some error during snapshot creation.

      More info: .

      Error: (04/06/2023 07:30:19 PM) (Source: HP Comm Recovery) (EventID: 0) (User: )
      Description: Failed in handling the PowerEvent. The error that occurred was: System.IO.IOException: The process cannot access the file ‘C:\Windows\Temp\signtool.exe’ because it is being used by another process.
      at System.IO.__Error.WinIOError(Int32 errorCode, String maybeFullPath)
      at System.IO.FileStream.Init(String path, FileMode mode, FileAccess access, Int32 rights, Boolean useRights, FileShare share, Int32 bufferSize, FileOptions options, SECURITY_ATTRIBUTES secAttrs, String msgPath, Boolean bFromProxy, Boolean useLongPath, Boolean checkHost)
      at System.IO.FileStream..ctor(String path, FileMode mode, FileAccess access, FileShare share, Int32 bufferSize, FileOptions options, String msgPath, Boolean bFromProxy)
      at System.IO.FileStream..ctor(String path, FileMode mode)
      at _HPCommRecovery.Tools.Signtool.ExtractSignTool()
      at _HPCommRecovery.Tools.Signtool.Verify(String arg)
      at _HPCommRecovery.HPAHAgent.CallAgent()
      at _HPCommRecovery.AppSession..ctor(DateTime Current, String LogPath)
      at _HPCommRecovery.HPAHLogger.NewSession()
      at _HPCommRecovery…

      Error: (04/06/2023 07:30:17 PM) (Source: HP Comm Recovery) (EventID: 0) (User: )
      Description: Failed in handling the PowerEvent. The error that occurred was: System.IO.IOException: The process cannot access the file ‘C:\Windows\Temp\signtool.exe’ because it is being used by another process.
      at System.IO.__Error.WinIOError(Int32 errorCode, String maybeFullPath)
      at System.IO.FileStream.Init(String path, FileMode mode, FileAccess access, Int32 rights, Boolean useRights, FileShare share, Int32 bufferSize, FileOptions options, SECURITY_ATTRIBUTES secAttrs, String msgPath, Boolean bFromProxy, Boolean useLongPath, Boolean checkHost)
      at System.IO.FileStream..ctor(String path, FileMode mode, FileAccess access, FileShare share, Int32 bufferSize, FileOptions options, String msgPath, Boolean bFromProxy)
      at System.IO.FileStream..ctor(String path, FileMode mode)
      at _HPCommRecovery.Tools.Signtool.ExtractSignTool()
      at _HPCommRecovery.Tools.Signtool.Verify(String arg)
      at _HPCommRecovery.HPAHAgent.CallAgent()
      at _HPCommRecovery.AppSession..ctor(DateTime Current, String LogPath)
      at _HPCommRecovery.HPAHLogger.NewSession()
      at _HPCommRecovery…

      Error: (04/06/2023 12:03:18 AM) (Source: HP Comm Recovery) (EventID: 0) (User: )
      Description: Failed in handling the PowerEvent. The error that occurred was: System.IO.IOException: The process cannot access the file ‘C:\Windows\Temp\signtool.exe’ because it is being used by another process.
      at System.IO.__Error.WinIOError(Int32 errorCode, String maybeFullPath)
      at System.IO.FileStream.Init(String path, FileMode mode, FileAccess access, Int32 rights, Boolean useRights, FileShare share, Int32 bufferSize, FileOptions options, SECURITY_ATTRIBUTES secAttrs, String msgPath, Boolean bFromProxy, Boolean useLongPath, Boolean checkHost)
      at System.IO.FileStream..ctor(String path, FileMode mode, FileAccess access, FileShare share, Int32 bufferSize, FileOptions options, String msgPath, Boolean bFromProxy)
      at System.IO.FileStream..ctor(String path, FileMode mode)
      at _HPCommRecovery.Tools.Signtool.ExtractSignTool()
      at _HPCommRecovery.Tools.Signtool.Verify(String arg)
      at _HPCommRecovery.HPAHAgent.CallAgent()
      at _HPCommRecovery.AppSession..ctor(DateTime Current, String LogPath)
      at _HPCommRecovery.HPAHLogger.NewSession()
      at _HPCommRecovery…

      Error: (04/04/2023 02:20:02 PM) (Source: MSDTC Client 2) (EventID: 4104) (User: )
      Description: Failed trying to get the state of the cluster node: .The error code returned: 0x8007085A

      Error: (04/04/2023 02:18:01 PM) (Source: MSDTC Client 2) (EventID: 4104) (User: )
      Description: Failed trying to get the state of the cluster node: .The error code returned: 0x8007085A
      [HEADING=1]System errors:[/HEADING]
      Error: (04/08/2023 07:07:49 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-GRCHUA0)
      Description: The server {8CFC164F-4BE5-4FDD-94E9-E2AF73ED4A19} did not register with DCOM within the required timeout.

      Error: (04/08/2023 05:33:37 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
      Description: Installation Failure: Windows failed to install the following update with error 0x80073d02: 9MV0B5HZVK9Z-Microsoft.GamingApp.

      Error: (04/08/2023 12:18:08 PM) (Source: NETLOGON) (EventID: 3095) (User: )
      Description: This computer is configured as a member of a workgroup, not as
      a member of a domain. The Netlogon service does not need to run in this
      configuration.

      Error: (04/06/2023 07:55:44 PM) (Source: NETLOGON) (EventID: 3095) (User: )
      Description: This computer is configured as a member of a workgroup, not as
      a member of a domain. The Netlogon service does not need to run in this
      configuration.

      Error: (04/06/2023 06:00:27 PM) (Source: NETLOGON) (EventID: 3095) (User: )
      Description: This computer is configured as a member of a workgroup, not as
      a member of a domain. The Netlogon service does not need to run in this
      configuration.

      Error: (04/06/2023 11:41:02 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-GRCHUA0)
      Description: The server microsoft.windowscommunicationsapps_16005.14326.21 374.0_x64__8wekyb3d8bbwe!microsoft.windowslive.cal endar.AppXwkn9j84yh1kvnt49k5r8h6y1ecsv09hs.mca did not register with DCOM within the required timeout.

      Error: (04/05/2023 12:00:49 PM) (Source: NETLOGON) (EventID: 3095) (User: )
      Description: This computer is configured as a member of a workgroup, not as
      a member of a domain. The Netlogon service does not need to run in this
      configuration.

      Error: (04/05/2023 11:20:42 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-GRCHUA0)
      Description: The server {8CFC164F-4BE5-4FDD-94E9-E2AF73ED4A19} did not register with DCOM within the required timeout.
      [HEADING=1]CodeIntegrity:[/HEADING]
      Date: 2023-04-08 19:05:53
      Description:
      Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\CastSrv. exe) attempted to load \Device\HarddiskVolume3\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Microsoft signing level requirements.

      ==================== Memory info ===========================

      BIOS: Insyde F.23 04/29/2019
      Motherboard: HP 8488
      Processor: Intel(R) Core™ i5-8250U CPU @ 1.60GHz
      Percentage of memory in use: 69%
      Total physical RAM: 8026.16 MB
      Available physical RAM: 2411.21 MB
      Total Virtual: 9562.16 MB
      Available Virtual: 2872.93 MB

      ==================== Drives ================================

      Drive c: (Windows) (Fixed) (Total:237.57 GB) (Free:155.42 GB) (Model: SK hynix BC501 HFM256GDJTNG-8310A) NTFS

      \?\Volume{d272f646-f273-41f2-8150-a8027fc24424}\ () (Fixed) (Total:0.63 GB) (Free:0.08 GB) NTFS
      \?\Volume{dad593b3-da23-4d63-b145-0231d000d07a}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.19 GB) FAT32

      ==================== MBR & Partition Table ====================

      ================================================== ========
      Disk: 0 (Size: 238.5 GB) (Disk ID: A50E1C7D)

      Partition: GPT.

      ==================== End of Addition.txt =======================

      Comment

      • Malnutrition
        PCHF Moderator
        • Jul 2016
        • 7045

        #4
        Ok, these logs take a few to look over, I’ll have a rely for you in an hour or so.

        Comment

        • Malnutrition
          PCHF Moderator
          • Jul 2016
          • 7045

          #5
          Adware Cleaner

          [ul]
          [li]Download AdwCleaner and save it to your Desktop[/li][li]Right-click on AdwCleaner.exeand select, Run as Administrator[/li][li]Accept the EULA (I accept), then click on Scan Now[/li][li]Let the scan complete[/li][li]Once the scan completes, make sure that every item listed in the different tabs is checked and click on the Quarantine and delete.[/li][li]Once the cleaning process is complete, AdwCleaner will ask you to restart your computer[/li][li]Close all other open windows and allow it to restart[/li][li]After the restart, Notepad will open with the AdwCleaner cleaning log[/li][li]Please Attach the contents of that log into your next reply to me[/li][/ul]


          Download Malwarebytes v.4 . Install and run.
          [ul]
          [li]Once the MBAM dashboard opens, click on Settings (gear icon).[/li][li]Click on Security tab and make sure that all four Scan options are enabled.[/li][li]Close Settings and click on the Scan button on the dashboard.[/li][li]Once the scan is completed make sure you have it quarantine any detections it finds.[/li][li]If no detections were found click on the Save results drop-down, then the Export to TXT button and save the file as a Text file to your desktop.[/li][li]If there were detections then once the quarantine has completed click on the View report button, then click the Export drop-down, then the Export to TXT button, and save the file as a Text file to your desktop or other location you can find and attach that log on your next reply.[/li][li]If the computer restarted to quarantine you can access the logs from the Detection History, then the History tab. Highlight the most recent scan and double-click to open it. Then click the Export drop-down, then the Export to TXT button, and save the file as a Text file to your desktop or other location you can find and include that log on your next reply.[/li][/ul]

          Comment

          • Malnutrition
            PCHF Moderator
            • Jul 2016
            • 7045

            #6
            There will be a new zip file created on your desktop, please attach it.

            Seems to be no malware that I am seeing, this fix will remove some rubbish, and send a couple files to virus total for checking.

            Copy the content of the code box below.
            Do not copy the word code!!!
            Right Click FRST and run as Administrator.
            Click Fix once (!) and wait. The program will create a log file (Fixlog.txt).
            Attach it to your next message.
            Code:
            Start::
            CloseProcesses:
            SystemRestore: On
            CreateRestorePoint:
            RemoveProxy:
            HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] ->
            Task: {62985103-703E-439F-8869-8E44567B135E} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => C:\WINDOWS\system32\MusNotification.exe /RunOnBattery RebootDialog (No File)
            Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\WINDOWS\System32\MbaeParserTask.exe (No File)
            Task: {DBDFBA8D-BCF3-459D-BA66-D98050596AA1} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => C:\WINDOWS\system32\MusNotification.exe /RunOnAC RebootDialog (No File)
            Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => C:\WINDOWS\system32\MusNotification.exe (No File)
            S1 WinSetupMon; system32\DRIVERS\WinSetupMon.sys [X]
            Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
            Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
            Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
            Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
            CHR DefaultSuggestURL: Default -> hxxp://srch.bar/?s={searchTerms}
            C:\WINDOWS\system32\drivers\etc\hosts
            hosts:
            FirewallRules: [{2C8EDB20-FC80-472B-8E95-5A95DE2AB05A}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe => No File
            VirusTotal: C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
            VirusTotal: C:\Program Files (x86)\Common Files\Updater\updateservice.exe
            Zip: C:\WINDOWS\system32\Drivers\rtkhdasetting.zip
            CMD: del /f /s /q %windir%\prefetch\*.*
            CMD: del /s /q C:\Windows\SoftwareDistribution\download\*.*
            CMD: del /s /q "%userprofile%\AppData\Local\Google\Chrome\User Data\Default\Cache\*.*"
            cmd: del /s /q "%userprofile%\AppData\Local\Microsoft\Edge\User Data\Default\Cache\*.*"
            cmd: del /s /q "%userprofile%\AppData\Local\Opera Software\Opera Stable\Cache\Cache_Data\*.*"
            CMD: del /s /q "%userprofile%\AppData\Local\temp\*.*"
            CMD: ipconfig /flushdns
            C:\Windows\Temp\*.*
            C:\WINDOWS\system32\*.tmp
            C:\WINDOWS\syswow64\*.tmp
            emptytemp:
            Reboot:
            End::

            Comment

            • tammie.m247
              PCHF Member
              • Apr 2023
              • 7

              #7
              Attached are the adware cleaner and malwarebytes txt files.

              Comment

              • tammie.m247
                PCHF Member
                • Apr 2023
                • 7

                #8
                I’m confused - what is the zip file that should be attached to my desktop? There is none - what is it supposed to be? I’m holding off on copying the code for now.

                Comment

                • Malnutrition
                  PCHF Moderator
                  • Jul 2016
                  • 7045

                  #9
                  With the command below. Via FRST, this will move a zipped copy of this folder to your desktop. I find it highly strange that there is a zip file in your drivers folder, that is part of the malware removal process, is to spot the anomalies

                  Zip: C:\WINDOWS\system32\Drivers\rtkhdasetting.zip

                  Also, with this command in the FRST fix, I am sending the realtech driver to virus total, due to the above standing out.

                  VirusTotal: C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe

                  If you put that folder there then there is no issue.

                  Comment

                  • tammie.m247
                    PCHF Member
                    • Apr 2023
                    • 7

                    #10
                    Strange - my message from yesterday didn’t post. Anyway, I’m still confused - can you simplify? I’m not sure what you’re saying about the command in the FRST fix. Do you want me to move the zip file from Zip: C:\WINDOWS\system32\Drivers\rtkhdasetting.zip to my desktop? And then run the exe file?

                    Comment

                    • Malnutrition
                      PCHF Moderator
                      • Jul 2016
                      • 7045

                      #11
                      @tammie.m247 FRST will do all the work for you, the script is automated, after you copy the code box and paste it as instructed.

                      Comment

                      • tammie.m247
                        PCHF Member
                        • Apr 2023
                        • 7

                        #12
                        Ok, here you go…
                        [HEADING=1]Fix result of Farbar Recovery Scan Tool (x64) Version: 14-04-2023
                        Ran by Tammie (15-04-2023 08:01:22) Run:1
                        Running from C:\Users\Tammie\OneDrive\Desktop
                        Loaded Profiles: Tammie
                        Boot Mode: Normal[/HEADING]
                        fixlist content:


                        Start::
                        CloseProcesses:
                        SystemRestore: On
                        CreateRestorePoint:
                        RemoveProxy:
                        HKLM\Software...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] →
                        Task: {62985103-703E-439F-8869-8E44567B135E} - System32\Tasks\Microsoft\Windows\UpdateOrchestrato r\Reboot_Battery => C:\WINDOWS\system32\MusNotification.exe /RunOnBattery RebootDialog (No File)
                        Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\WINDOWS\System32\MbaeParserTask.exe (No File)
                        Task: {DBDFBA8D-BCF3-459D-BA66-D98050596AA1} - System32\Tasks\Microsoft\Windows\UpdateOrchestrato r\Reboot_AC => C:\WINDOWS\system32\MusNotification.exe /RunOnAC RebootDialog (No File)
                        Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrato r\USO_UxBroker => C:\WINDOWS\system32\MusNotification.exe (No File)
                        S1 WinSetupMon; system32\DRIVERS\WinSetupMon.sys
                        Edge Extension: (No Name) → AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wek yb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
                        Edge Extension: (No Name) → BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wek yb3d8bbwe\Assets\BookViewer [not found]
                        Edge Extension: (No Name) → LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wek yb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
                        Edge Extension: (No Name) → PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wek yb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
                        CHR DefaultSuggestURL: Default → hxxp://srch.bar/?s={searchTerms}
                        C:\WINDOWS\system32\drivers\etc\hosts
                        hosts:
                        FirewallRules: [{2C8EDB20-FC80-472B-8E95-5A95DE2AB05A}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe => No File
                        VirusTotal: C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
                        VirusTotal: C:\Program Files (x86)\Common Files\Updater\updateservice.exe
                        Zip: C:\WINDOWS\system32\Drivers\rtkhdasetting.zip
                        CMD: del /f /s /q %windir%\prefetch*.*
                        CMD: del /s /q C:\Windows\SoftwareDistribution\download*.*
                        CMD: del /s /q “%userprofile%\AppData\Local\Google\Chrome\User Data\Default\Cache*."
                        cmd: del /s /q "%userprofile%\AppData\Local\Microsoft\Edge\Us er Data\Default\Cache*.

                        cmd: del /s /q “%userprofile%\AppData\Local\Opera Software\Opera Stable\Cache\Cache_Data*."
                        CMD: del /s /q "%userprofile%\AppData\Local\temp*.

                        CMD: ipconfig /flushdns
                        C:\Windows\Temp*.*
                        C:\WINDOWS\system32*.tmp
                        C:\WINDOWS\syswow64*.tmp
                        emptytemp:
                        Reboot:
                        End::


                        Processes closed successfully.
                        SystemRestore: On => completed
                        Restore point was successfully created.

                        ========= RemoveProxy: =========

                        HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer => removed successfully
                        “HKU.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVer sion\Internet Settings\Connections\DefaultConnectionSettings” => removed successfully
                        “HKU.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVer sion\Internet Settings\Connections\SavedLegacySettings” => removed successfully
                        “HKU\S-1-5-21-3117569381-3242891862-2655254670-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Int ernet Settings\Connections\DefaultConnectionSettings” => removed successfully
                        “HKU\S-1-5-21-3117569381-3242891862-2655254670-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Int ernet Settings\Connections\SavedLegacySettings” => removed successfully

                        ========= End of RemoveProxy: =========

                        HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Aut hentication\Credential Providers{C885AA15-1764-4293-B82A-0586ADD46B35} => removed successfully
                        “HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{6298510 3-703E-439F-8869-8E44567B135E}” => removed successfully
                        “HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{6298510 3-703E-439F-8869-8E44567B135E}” => removed successfully
                        C:\WINDOWS\System32\Tasks\Microsoft\Windows\Update Orchestrator\Reboot_Battery => moved successfully
                        “HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsof t\Windows\UpdateOrchestrator\Reboot_Battery” => removed successfully
                        “HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{CCDFC0B 8-01A3-4E74-A820-4F13F51D269E}” => removed successfully
                        “HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{CCDFC0B 8-01A3-4E74-A820-4F13F51D269E}” => removed successfully
                        C:\WINDOWS\System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => moved successfully
                        “HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsof t\Windows\Mobile Broadband Accounts\MNO Metadata Parser” => removed successfully
                        “HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{DBDFBA8 D-BCF3-459D-BA66-D98050596AA1}” => removed successfully
                        “HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{DBDFBA8 D-BCF3-459D-BA66-D98050596AA1}” => removed successfully
                        C:\WINDOWS\System32\Tasks\Microsoft\Windows\Update Orchestrator\Reboot_AC => moved successfully
                        “HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsof t\Windows\UpdateOrchestrator\Reboot_AC” => removed successfully
                        “HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain{E0F10DC F-44AD-40E8-9370-FB5DA59F93FB}” => removed successfully
                        “HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{E0F10DC F-44AD-40E8-9370-FB5DA59F93FB}” => removed successfully
                        C:\WINDOWS\System32\Tasks\Microsoft\Windows\Update Orchestrator\USO_UxBroker => moved successfully
                        “HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsof t\Windows\UpdateOrchestrator\USO_UxBroker” => removed successfully
                        HKLM\System\CurrentControlSet\Services\WinSetupMon => removed successfully
                        WinSetupMon => service removed successfully
                        HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion \AppContainer\Storage\microsoft.microsoftedge_8wek yb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\ Config\AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE 08 => removed successfully
                        HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion \AppContainer\Storage\microsoft.microsoftedge_8wek yb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\ Config\BookReader_B171F20233094AC88D05A8EF7B9763E8 => removed successfully
                        HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion \AppContainer\Storage\microsoft.microsoftedge_8wek yb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\ Config\LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => removed successfully
                        HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion \AppContainer\Storage\microsoft.microsoftedge_8wek yb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\ Config\PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => removed successfully
                        “Chrome DefaultSuggestURL” => not found
                        C:\WINDOWS\system32\drivers\etc\hosts => moved successfully
                        Hosts restored successfully.
                        “HKLM\SYSTEM\CurrentControlSet\services\SharedAcce ss\Parameters\FirewallPolicy\FirewallRules\{2C8EDB 20-FC80-472B-8E95-5A95DE2AB05A}” => removed successfully
                        VirusTotal: C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe => VirusTotal
                        VirusTotal: C:\Program Files (x86)\Common Files\Updater\updateservice.exe => VirusTotal
                        ================== Zip: ===================
                        C:\WINDOWS\system32\Drivers\rtkhdasetting.zip → copied successfully to C:\Users\Tammie\OneDrive\Desktop\15.04.2023_08.01. 47.zip
                        =========== Zip: End ===========

                        ========= del /f /s /q %windir%\prefetch*.* =========

                        Deleted file - C:\WINDOWS\prefetch\111.0.5563.149_111.0.5563.148-4B3D84E4.pf
                        Deleted file - C:\WINDOWS\prefetch\ACTIVEHEALTHAPPANALYTICS.EXE-3A6BBA82.pf
                        Deleted file - C:\WINDOWS\prefetch\ADWCLEANER.EXE-EDDBD7F3.pf
                        Deleted file - C:\WINDOWS\prefetch\AESM_SERVICE.EXE-8D0F13E5.pf
                        Deleted file - C:\WINDOWS\prefetch\ANALYTICSSRV.EXE-603AEA39.pf
                        Deleted file - C:\WINDOWS\prefetch\ANYDESK-7832783C.EXE-D9F70768.pf
                        Deleted file - C:\WINDOWS\prefetch\APPHELPERCAP.EXE-D744C6D3.pf
                        Deleted file - C:\WINDOWS\prefetch\APPLICATIONFRAMEHOST.EXE-8CE9A1EE.pf
                        Deleted file - C:\WINDOWS\prefetch\APPVSHNOTIFY.EXE-FB3C42F5.pf
                        Deleted file - C:\WINDOWS\prefetch\AUDIODG.EXE-AB22E9A6.pf
                        Deleted file - C:\WINDOWS\prefetch\AUTHMANSVR.EXE-4BB39017.pf
                        Deleted file - C:\WINDOWS\prefetch\BACKGROUNDTASKHOST.EXE-3424F1D7.pf
                        Deleted file - C:\WINDOWS\prefetch\BACKGROUNDTASKHOST.EXE-6D58042C.pf
                        Deleted file - C:\WINDOWS\prefetch\BACKGROUNDTASKHOST.EXE-8E140A98.pf
                        Deleted file - C:\WINDOWS\prefetch\BACKGROUNDTRANSFERHOST.EXE-008F63EF.pf
                        Deleted file - C:\WINDOWS\prefetch\BACKGROUNDTRANSFERHOST.EXE-2D3EC24B.pf
                        Deleted file - C:\WINDOWS\prefetch\BATTERYTEST.EXE-F3BA3B26.pf
                        Deleted file - C:\WINDOWS\prefetch\BITSADMIN.EXE-61856B04.pf
                        Deleted file - C:\WINDOWS\prefetch\BRIDGECOMMUNICATION.EXE-A2B0FDF9.pf
                        Deleted file - C:\WINDOWS\prefetch\CACLS.EXE-8712205B.pf
                        Deleted file - C:\WINDOWS\prefetch\cadrespri.7db
                        Deleted file - C:\WINDOWS\prefetch\CALCULATORAPP.EXE-BD3622F6.pf
                        Deleted file - C:\WINDOWS\prefetch\CHROME.EXE-5349D2D7.pf
                        Deleted file - C:\WINDOWS\prefetch\CHROME.EXE-5349D2D8.pf
                        Deleted file - C:\WINDOWS\prefetch\CHROME.EXE-5349D2D9.pf
                        Deleted file - C:\WINDOWS\prefetch\CHROME.EXE-5349D2DE.pf
                        Deleted file - C:\WINDOWS\prefetch\CHROME.EXE-5349D2DF.pf
                        Deleted file - C:\WINDOWS\prefetch\CHXSMARTSCREEN.EXE-2D9D9C45.pf
                        Deleted file - C:\WINDOWS\prefetch\CISCOWEBEXSTART.EXE-A8A7BD4A.pf
                        Deleted file - C:\WINDOWS\prefetch\CMD.EXE-0BD30981.pf
                        Deleted file - C:\WINDOWS\prefetch\CMDHELPER.EXE-BD06B70D.pf
                        Deleted file - C:\WINDOWS\prefetch\COMPATTELRUNNER.EXE-B7A68ECC.pf
                        Deleted file - C:\WINDOWS\prefetch\COMPPKGSRV.EXE-4780F0C1.pf
                        Deleted file - C:\WINDOWS\prefetch\CONCENTR.EXE-161221B1.pf
                        Deleted file - C:\WINDOWS\prefetch\CONHOST.EXE-0C6456FB.pf
                        Deleted file - C:\WINDOWS\prefetch\CONSENT.EXE-40419367.pf
                        Deleted file - C:\WINDOWS\prefetch\CORTANA.EXE-13352F43.pf
                        Deleted file - C:\WINDOWS\prefetch\CREDENTIALUIBROKER.EXE-8CEDA3EB.pf
                        Deleted file - C:\WINDOWS\prefetch\CSRSS.EXE-F3C368CB.pf
                        Deleted file - C:\WINDOWS\prefetch\CTFMON.EXE-795F8130.pf
                        Deleted file - C:\WINDOWS\prefetch\CWAFEATUREFLAGUPDATER.EXE-445E33E2.pf
                        Deleted file - C:\WINDOWS\prefetch\DASHOST.EXE-4B84F273.pf
                        Deleted file - C:\WINDOWS\prefetch\DEFRAG.EXE-3D9E8D72.pf
                        Deleted file - C:\WINDOWS\prefetch\DISKPART.EXE-BF032DAF.pf
                        Deleted file - C:\WINDOWS\prefetch\DLLHOST.EXE-13FED723.pf
                        Deleted file - C:\WINDOWS\prefetch\DLLHOST.EXE-1BAE06BB.pf
                        Deleted file - C:\WINDOWS\prefetch\DLLHOST.EXE-236AEA34.pf
                        Deleted file - C:\WINDOWS\prefetch\DLLHOST.EXE-47BE07DC.pf
                        Deleted file - C:\WINDOWS\prefetch\DLLHOST.EXE-49130AC6.pf
                        Deleted file - C:\WINDOWS\prefetch\DLLHOST.EXE-4BBB60F5.pf
                        Deleted file - C:\WINDOWS\prefetch\DLLHOST.EXE-6F625E57.pf
                        Deleted file - C:\WINDOWS\prefetch\DLLHOST.EXE-7D5CE0CA.pf
                        Deleted file - C:\WINDOWS\prefetch\DLLHOST.EXE-D200FEC3.pf
                        Deleted file - C:\WINDOWS\prefetch\DLLHOST.EXE-D52C49C5.pf
                        Deleted file - C:\WINDOWS\prefetch\DWM.EXE-314E93C5.pf
                        Deleted file - C:\WINDOWS\prefetch\dynrespri.7db
                        Deleted file - C:\WINDOWS\prefetch\ELEVATION_SERVICE.EXE-8FC83684.pf
                        Deleted file - C:\WINDOWS\prefetch\ELEVATION_SERVICE.EXE-B7DDCA99.pf
                        Deleted file - C:\WINDOWS\prefetch\ETDCTRL.EXE-3CF22AC7.pf
                        Deleted file - C:\WINDOWS\prefetch\ETDCTRLHELPER.EXE-9DBFB74F.pf
                        Deleted file - C:\WINDOWS\prefetch\ETD_GETSMART.EXE-6B8EFF36.pf
                        Deleted file - C:\WINDOWS\prefetch\EXCEL.EXE-FE860005.pf
                        Deleted file - C:\WINDOWS\prefetch\EXPLORER.EXE-D5E97654.pf
                        Deleted file - C:\WINDOWS\prefetch\EZTILTPENAGENT.EXE-CA5400E0.pf
                        Deleted file - C:\WINDOWS\prefetch\FILECOAUTH.EXE-71F7A764.pf
                        Deleted file - C:\WINDOWS\prefetch\FONTDRVHOST.EXE-8152304A.pf
                        Deleted file - C:\WINDOWS\prefetch\FRST64.EXE-4D75D00A.pf
                        Deleted file - C:\WINDOWS\prefetch\G2MUPDATE.EXE-73AF6D74.pf
                        Deleted file - C:\WINDOWS\prefetch\G2MUPLOAD.EXE-9BFBB3B6.pf
                        Deleted file - C:\WINDOWS\prefetch\GAMEBAR.EXE-32D7E1C0.pf
                        Deleted file - C:\WINDOWS\prefetch\GAMEBARFTSERVER.EXE-794ABEDF.pf
                        Deleted file - C:\WINDOWS\prefetch\GFXDOWNLOADWRAPPER.EXE-2BCC345F.pf
                        Deleted file - C:\WINDOWS\prefetch\GOOGLECRASHHANDLER.EXE-AC8EBCB9.pf
                        Deleted file - C:\WINDOWS\prefetch\GOOGLECRASHHANDLER64.EXE-65D1330B.pf
                        Deleted file - C:\WINDOWS\prefetch\GOOGLEUPDATE.EXE-0E1E7B82.pf
                        Deleted file - C:\WINDOWS\prefetch\GOOGLEUPDATEONDEMAND.EXE-D3A4EC83.pf
                        Deleted file - C:\WINDOWS\prefetch\HPDCSETUP.EXE-BABFB2AA.pf
                        Deleted file - C:\WINDOWS\prefetch\HPSAAPPLAUNCHER.EXE-050E8A9F.pf
                        Deleted file - C:\WINDOWS\prefetch\HPSAAPPLAUNCHER.EXE-F93E1FA4.pf
                        Deleted file - C:\WINDOWS\prefetch\HPSALAUNCHER.EXE-979DF08A.pf
                        Deleted file - C:\WINDOWS\prefetch\HPSUPD-WIN32EXE.EXE-58D7F742.pf
                        Deleted file - C:\WINDOWS\prefetch\HPSYSTEMEVENTUTILITYBACKGROUN-8C9C51E1.pf
                        Deleted file - C:\WINDOWS\prefetch\HPSYSTEMEVENTUTILITYHOST.EXE-2B53C9A5.pf
                        Deleted file - C:\WINDOWS\prefetch\HPUPDATE.EXE-BE6E0626.pf
                        Deleted file - C:\WINDOWS\prefetch\HWUPDCHK.EXE-D91D03E3.pf
                        Deleted file - C:\WINDOWS\prefetch\HXTSR.EXE-5201269F.pf
                        Deleted file - C:\WINDOWS\prefetch\IASTORDATAMGRSVC.EXE-83A63459.pf
                        Deleted file - C:\WINDOWS\prefetch\IDENTITY_HELPER.EXE-3DC6435D.pf
                        Deleted file - C:\WINDOWS\prefetch\IDENTITY_HELPER.EXE-96981A57.pf
                        Deleted file - C:\WINDOWS\prefetch\IDENTITY_HELPER.EXE-AA102611.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-0.EXE-7F50B692.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-1.EXE-92A67117.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-10.EXE-B582B86F.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-11.EXE-C8D872F4.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-12.EXE-DC2E2D79.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-13.EXE-EF83E7FE.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-14.EXE-02D9A283.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-15.EXE-162F5D08.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-16.EXE-2985178D.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-17.EXE-3CDAD212.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-18.EXE-50308C97.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-19.EXE-6386471C.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-2.EXE-A5FC2B9C.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-20.EXE-1AF529AC.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-21.EXE-2E4AE431.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-22.EXE-41A09EB6.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-23.EXE-54F6593B.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-24.EXE-684C13C0.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-25.EXE-7BA1CE45.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-26.EXE-8EF788CA.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-27.EXE-A24D434F.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-28.EXE-B5A2FDD4.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-29.EXE-C8F8B859.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-3.EXE-B951E621.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-30.EXE-80679AE9.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-31.EXE-93BD556E.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-32.EXE-A7130FF3.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-33.EXE-BA68CA78.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-34.EXE-CDBE84FD.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-35.EXE-E1143F82.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-36.EXE-F469FA07.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-37.EXE-07BFB48C.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-38.EXE-1B156F11.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-39.EXE-2E6B2996.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-4.EXE-CCA7A0A6.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-40.EXE-E5DA0C26.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-41.EXE-F92FC6AB.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-42.EXE-0C858130.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-43.EXE-1FDB3BB5.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-44.EXE-3330F63A.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-45.EXE-4686B0BF.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-46.EXE-59DC6B44.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-47.EXE-6D3225C9.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-48.EXE-8087E04E.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-49.EXE-93DD9AD3.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-5.EXE-DFFD5B2B.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-6.EXE-F35315B0.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-7.EXE-06A8D035.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-8.EXE-19FE8ABA.pf
                        Deleted file - C:\WINDOWS\prefetch\IG-9.EXE-2D54453F.pf
                        Deleted file - C:\WINDOWS\prefetch\IG.EXE-B773B179.pf
                        Deleted file - C:\WINDOWS\prefetch\INSTALLHELPER.EXE-1587F719.pf
                        Deleted file - C:\WINDOWS\prefetch\INTEGRATOR.EXE-873C4A60.pf
                        Deleted file - C:\WINDOWS\prefetch\JHI_SERVICE.EXE-68546703.pf
                        Deleted file - C:\WINDOWS\prefetch\LAUNCH.EXE-1B621CBE.pf
                        Deleted file - C:\WINDOWS\prefetch\Layout.ini
                        Deleted file - C:\WINDOWS\prefetch\LOCKAPP.EXE-3013E0AC.pf
                        Deleted file - C:\WINDOWS\prefetch\LOGONUI.EXE-F639BD7E.pf
                        Deleted file - C:\WINDOWS\prefetch\MAKECAB.EXE-FC3CBE21.pf
                        Deleted file - C:\WINDOWS\prefetch\MANAGE-BDE.EXE-5D45B44A.pf
                        Deleted file - C:\WINDOWS\prefetch\MBAM.EXE-728D2E12.pf
                        Deleted file - C:\WINDOWS\prefetch\MBAMSERVICE.EXE-1DD79AE7.pf
                        Deleted file - C:\WINDOWS\prefetch\MBAMWSC.EXE-2DADCD3B.pf
                        Deleted file - C:\WINDOWS\prefetch\MBSETUP.EXE-23EE46EA.pf
                        Deleted file - C:\WINDOWS\prefetch\MBUPDATRV5.EXE-889B13E5.pf
                        Deleted file - C:\WINDOWS\prefetch\MBUPDATRV5.EXE-A91AC400.pf
                        Deleted file - C:\WINDOWS\prefetch\MCAFEE-SECURITY-FT.EXE-BCD081D5.pf
                        Deleted file - C:\WINDOWS\prefetch\MCAGENT.EXE-E4C61513.pf
                        Deleted file - C:\WINDOWS\prefetch\MCAMTASKAGENT.EXE-C0AE07E6.pf
                        Deleted file - C:\WINDOWS\prefetch\MCCBENTANDINSTRU.EXE-BD45A7F2.pf
                        Deleted file - C:\WINDOWS\prefetch\MCCSPSERVICEHOST.EXE-B1FAF853.pf
                        Deleted file - C:\WINDOWS\prefetch\MCDATREP.EXE-889BCB6E.pf
                        Deleted file - C:\WINDOWS\prefetch\MCHOST.EXE-80DC0554.pf
                        Deleted file - C:\WINDOWS\prefetch\MCINFO.EXE-6C8252E7.pf
                        Deleted file - C:\WINDOWS\prefetch\MCINSTRU.EXE-2A42CDBC.pf
                        Deleted file - C:\WINDOWS\prefetch\MCOCROLLBACK.EXE-859500FC.pf
                        Deleted file - C:\WINDOWS\prefetch\MCSVRCNT.EXE-4914669B.pf
                        Deleted file - C:\WINDOWS\prefetch\MCSYNC.EXE-9D7C7E1C.pf
                        Deleted file - C:\WINDOWS\prefetch\MCUICNT.EXE-98D75864.pf
                        Deleted file - C:\WINDOWS\prefetch\MCUPDATE.EXE-8E5BB827.pf
                        Deleted file - C:\WINDOWS\prefetch\MCUPDATEMGR.EXE-AF0E678C.pf
                        Deleted file - C:\WINDOWS\prefetch\MCUPDUTL.EXE-39E1FDAD.pf
                        Deleted file - C:\WINDOWS\prefetch\MICROSOFTEDGEUPDATE.EXE-7A595326.pf
                        Deleted file - C:\WINDOWS\prefetch\MICROSOFTEDGE_X64_112.0.1722.-4C89E7F6.pf
                        Deleted file - C:\WINDOWS\prefetch\MICROSOFTEDGE_X64_112.0.1722.-712D8FC3.pf
                        Deleted file - C:\WINDOWS\prefetch\MICROSOFTEDGE_X64_112.0.1722.-BE92D800.pf
                        Deleted file - C:\WINDOWS\prefetch\MODULECORESERVICE.EXE-9D318627.pf
                        Deleted file - C:\WINDOWS\prefetch\MONOTIFICATIONUX.EXE-23180524.pf
                        Deleted file - C:\WINDOWS\prefetch\MOUSOCOREWORKER.EXE-3EF8346A.pf
                        Deleted file - C:\WINDOWS\prefetch\MPCMDRUN.EXE-2C9109F9.pf
                        Deleted file - C:\WINDOWS\prefetch\MRT.EXE-46668014.pf
                        Deleted file - C:\WINDOWS\prefetch\MSCORSVW.EXE-16B291C4.pf
                        Deleted file - C:\WINDOWS\prefetch\MSCORSVW.EXE-8CE1A322.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGE.EXE-37D25F9A.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGE.EXE-37D25F9B.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGE.EXE-37D25F9C.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGE.EXE-37D25F9D.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGE.EXE-37D25F9F.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGE.EXE-37D25FA1.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGE.EXE-37D25FA2.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGEWEBVIEW2.EXE-00C011B9.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGEWEBVIEW2.EXE-122A4FA7.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGEWEBVIEW2.EXE-122A4FA8.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGEWEBVIEW2.EXE-122A4FA9.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGEWEBVIEW2.EXE-122A4FAA.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGEWEBVIEW2.EXE-122A4FAE.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGEWEBVIEW2.EXE-122A4FAF.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGEWEBVIEW2.EXE-24B65C4E.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGEWEBVIEW2.EXE-24B65C4F.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGEWEBVIEW2.EXE-24B65C50.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGEWEBVIEW2.EXE-24B65C51.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGEWEBVIEW2.EXE-24B65C55.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGEWEBVIEW2.EXE-24B65C56.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGEWEBVIEW2.EXE-314A0468.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGEWEBVIEW2.EXE-314A046A.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGEWEBVIEW2.EXE-314A046B.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGEWEBVIEW2.EXE-314A046F.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGEWEBVIEW2.EXE-314A0470.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGEWEBVIEW2.EXE-436D3868.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGEWEBVIEW2.EXE-436D386E.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGEWEBVIEW2.EXE-43D6110F.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGEWEBVIEW2.EXE-43D61111.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGEWEBVIEW2.EXE-43D61116.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGEWEBVIEW2.EXE-43D61117.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGEWEBVIEW2.EXE-B19F5C73.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGEWEBVIEW2.EXE-B19F5C74.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGEWEBVIEW2.EXE-B19F5C75.pf
                        Deleted file - C:\WINDOWS\prefetch\MSEDGEWEBVIEW2.EXE-B19F5C7A.pf
                        Deleted file - C:\WINDOWS\prefetch\MSGRUNNER.EXE-9C910406.pf
                        Deleted file - C:\WINDOWS\prefetch\MSIEXEC.EXE-8FFB1633.pf
                        Deleted file - C:\WINDOWS\prefetch\MSIEXEC.EXE-CDBFC0F7.pf
                        Deleted file - C:\WINDOWS\prefetch\MSINFO32.EXE-C3C668DA.pf
                        Deleted file - C:\WINDOWS\prefetch\MSTEAMS.EXE-71625B84.pf
                        Deleted file - C:\WINDOWS\prefetch\MSTEAMSUPDATE.EXE-84DE68F4.pf
                        Deleted file - C:\WINDOWS\prefetch\MSTEAMSUPDATE.EXE-9526988B.pf
                        Deleted file - C:\WINDOWS\prefetch\MSTEAMSUPDATE.EXE-D58EF43C.pf
                        Deleted file - C:\WINDOWS\prefetch\MSTEAMSUPDATE.EXE-E5D723D3.pf
                        Deleted file - C:\WINDOWS\prefetch\MSTEAMS_AUTOSTARTER.EXE-2EF71ACD.pf
                        Deleted file - C:\WINDOWS\prefetch\NETSH.EXE-A596235F.pf
                        Deleted file - C:\WINDOWS\prefetch\NGEN.EXE-4A8DA13E.pf
                        Deleted file - C:\WINDOWS\prefetch\NGEN.EXE-734C6620.pf
                        Deleted file - C:\WINDOWS\prefetch\NGENTASK.EXE-0E6CEC17.pf
                        Deleted file - C:\WINDOWS\prefetch\NGENTASK.EXE-849BFD75.pf
                        Deleted file - C:\WINDOWS\prefetch\NOTEPAD.EXE-94C7E837.pf
                        Deleted file - C:\WINDOWS\prefetch\NSB3429.TMP.EXE-9FBCD465.pf
                        Deleted file - C:\WINDOWS\prefetch\NSI63FA.TMP.EXE-801DD286.pf
                        Deleted file - C:\WINDOWS\prefetch\NSJBA41.TMP.EXE-B7EC5C33.pf
                        Deleted file - C:\WINDOWS\prefetch\NSS2420.TMP.EXE-22948820.pf
                        Deleted file - C:\WINDOWS\prefetch\NSS3AF6.TMP.EXE-60CCD820.pf
                        Deleted file - C:\WINDOWS\prefetch\NSV2805.TMP.EXE-93103382.pf
                        Deleted file - C:\WINDOWS\prefetch\NSVF059.TMP.EXE-A452D983.pf
                        Deleted file - C:\WINDOWS\prefetch\NSXC05D.TMP.EXE-73F67E7D.pf
                        Deleted file - C:\WINDOWS\prefetch\ODSERVICE.EXE-E5E29754.pf
                        Deleted file - C:\WINDOWS\prefetch\OFFICECLICKTORUN.EXE-21CD6F29.pf
                        Deleted file - C:\WINDOWS\prefetch\OFFICECLICKTORUN.EXE-F5CCE208.pf
                        Deleted file - C:\WINDOWS\prefetch\ONEDRIVE.EXE-B657FF91.pf
                        Deleted file - C:\WINDOWS\prefetch\Op-MSEDGE.EXE-37D25F9A-00000001.pf
                        Deleted file - C:\WINDOWS\prefetch\Op-MSEDGEWEBVIEW2.EX-122A4FA7-00000001.pf
                        Deleted file - C:\WINDOWS\prefetch\Op-MSEDGEWEBVIEW2.EX-314A0468-00000001.pf
                        Deleted file - C:\WINDOWS\prefetch\OPENWITH.EXE-8B50D58B.pf
                        Deleted file - C:\WINDOWS\prefetch\PCOSCANNER.EXE-D6F0A4F4.pf
                        Deleted file - C:\WINDOWS\prefetch\PERFBOOST.EXE-D7CAB4F4.pf
                        Deleted file - C:\WINDOWS\prefetch\PfPre_24b6bbe6.mkd
                        Deleted file - C:\WINDOWS\prefetch\PHONEEXPERIENCEHOST.EXE-7AA564F7.pf
                        Deleted file - C:\WINDOWS\prefetch\PICKERHOST.EXE-DE4B8E61.pf
                        Deleted file - C:\WINDOWS\prefetch\POQEXEC.EXE-567EE1A6.pf
                        Deleted file - C:\WINDOWS\prefetch\POWERCFG.EXE-954C9186.pf
                        Deleted file - C:\WINDOWS\prefetch\PRINTFILTERPIPELINESVC.EXE-4DF504E6.pf
                        Deleted file - C:\WINDOWS\prefetch\PROCINFO.EXE-950EBDD0.pf
                        Deleted file - C:\WINDOWS\prefetch\QCSHM.EXE-78D5C34D.pf
                        Deleted file - C:\WINDOWS\prefetch\RASDIAL.EXE-0870CD35.pf
                        Deleted file - C:\WINDOWS\prefetch\RECEIVER.EXE-E5A7D0A3.pf
                        Deleted file - C:\WINDOWS\prefetch\REDIRECTOR.EXE-21C03AC4.pf
                        Deleted file - C:\WINDOWS\prefetch\REG.EXE-A93A1343.pf
                        Deleted file - C:\WINDOWS\prefetch\ResPriHMStaticDb.ebd
                        Deleted file - C:\WINDOWS\prefetch\ROUTE.EXE-121C5018.pf
                        Deleted file - C:\WINDOWS\prefetch\RTKNGUI64.EXE-DFCC4DD4.pf
                        Deleted file - C:\WINDOWS\prefetch\RTLS5WAKE.EXE-F830FB2C.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNDLL32.EXE-75313621.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNDLL32.EXE-C0159C27.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNONCE.EXE-FB4EF753.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNTIMEBROKER.EXE-03636B1A.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNTIMEBROKER.EXE-05954480.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNTIMEBROKER.EXE-07DB3B68.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNTIMEBROKER.EXE-095D009D.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNTIMEBROKER.EXE-0A464D42.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNTIMEBROKER.EXE-26AF719D.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNTIMEBROKER.EXE-2D7161DE.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNTIMEBROKER.EXE-31E338F1.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNTIMEBROKER.EXE-37F1061D.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNTIMEBROKER.EXE-4551A062.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNTIMEBROKER.EXE-4A8A4DD0.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNTIMEBROKER.EXE-720246DC.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNTIMEBROKER.EXE-773965BC.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNTIMEBROKER.EXE-89C256D8.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNTIMEBROKER.EXE-99A9175C.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNTIMEBROKER.EXE-A814A4FB.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNTIMEBROKER.EXE-A8B94BEA.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNTIMEBROKER.EXE-A9A57961.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNTIMEBROKER.EXE-C067E8CF.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNTIMEBROKER.EXE-C48FE058.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNTIMEBROKER.EXE-CB930E3B.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNTIMEBROKER.EXE-CEE04A22.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNTIMEBROKER.EXE-CF34640F.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNTIMEBROKER.EXE-D17D6C09.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNTIMEBROKER.EXE-E06CA4DC.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNTIMEBROKER.EXE-F14B7851.pf
                        Deleted file - C:\WINDOWS\prefetch\RUNTIMEBROKER.EXE-F8426C97.pf
                        Deleted file - C:\WINDOWS\prefetch\SC.EXE-6C4D4413.pf
                        Deleted file - C:\WINDOWS\prefetch\SCHTASKS.EXE-8B6144A9.pf
                        Deleted file - C:\WINDOWS\prefetch\SDBINST.EXE-49E8B208.pf
                        Deleted file - C:\WINDOWS\prefetch\SDIAGNHOST.EXE-B3171AA1.pf
                        Deleted file - C:\WINDOWS\prefetch\SDXHELPER.EXE-832215EB.pf
                        Deleted file - C:\WINDOWS\prefetch\SEARCHFILTERHOST.EXE-44162447.pf
                        Deleted file - C:\WINDOWS\prefetch\SEARCHHOST.EXE-08219353.pf
                        Deleted file - C:\WINDOWS\prefetch\SEARCHHOST.EXE-7FE3D3C3.pf
                        Deleted file - C:\WINDOWS\prefetch\SEARCHINDEXER.EXE-1CF42BC6.pf
                        Deleted file - C:\WINDOWS\prefetch\SEARCHPROTOCOLHOST.EXE-69C456C3.pf
                        Deleted file - C:\WINDOWS\prefetch\SECURITYHEALTHSYSTRAY.EXE-E527A4AE.pf
                        Deleted file - C:\WINDOWS\prefetch\SELFSERVICE.EXE-91654112.pf
                        Deleted file - C:\WINDOWS\prefetch\SELFSERVICEPLUGIN.EXE-A595E48D.pf
                        Deleted file - C:\WINDOWS\prefetch\SETUP.EXE-1E43F9E0.pf
                        Deleted file - C:\WINDOWS\prefetch\SETUP.EXE-3C2F92E2.pf
                        Deleted file - C:\WINDOWS\prefetch\SETUP.EXE-6FDD0745.pf
                        Deleted file - C:\WINDOWS\prefetch\SETUP.EXE-6FDD074C.pf
                        Deleted file - C:\WINDOWS\prefetch\SETUP.EXE-B992F34A.pf
                        Deleted file - C:\WINDOWS\prefetch\SETUP.EXE-B992F351.pf
                        Deleted file - C:\WINDOWS\prefetch\SGRMBROKER.EXE-0546FB8C.pf
                        Deleted file - C:\WINDOWS\prefetch\SHELLEXPERIENCEHOST.EXE-A2664E28.pf
                        Deleted file - C:\WINDOWS\prefetch\SIGNTOOL.EXE-A70CF6B4.pf
                        Deleted file - C:\WINDOWS\prefetch\SIHCLIENT.EXE-98C47F6C.pf
                        Deleted file - C:\WINDOWS\prefetch\SIHOST.EXE-115B507F.pf
                        Deleted file - C:\WINDOWS\prefetch\SMARTSCREEN.EXE-EACC1250.pf
                        Deleted file - C:\WINDOWS\prefetch\SMSS.EXE-B5B810DB.pf
                        Deleted file - C:\WINDOWS\prefetch\SOCKETHECISERVER.EXE-FE4DEC73.pf
                        Deleted file - C:\WINDOWS\prefetch\SPPSVC.EXE-96070FE0.pf
                        Deleted file - C:\WINDOWS\prefetch\SRTASKS.EXE-3C9D2EEC.pf
                        Deleted file - C:\WINDOWS\prefetch\STARTMENUEXPERIENCEHOST.EXE-1C8F8566.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-117C4441.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-19B557B1.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-1B73F444.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-2F9E5F3D.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-39447866.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-3D497EFC.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-3FD4846C.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-41084AF7.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-4B98D760.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-4BD0A607.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-4E79CC0D.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-529F9AC1.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-55013EA5.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-59780EBF.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-5F87ABED.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-62105D0D.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-6867B1E5.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-6A4A44E7.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-73D024B2.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-77C41F85.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-7AAD9645.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-84F32335.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-852EC587.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-8CE690C0.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-8E554B3D.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-90F35320.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-952637C2.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-9A28EB78.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-9D041ABC.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-B18C213B.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-B6F285B2.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-BE3D0421.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-C2DA4F6F.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-C4B64CAF.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-C625B657.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-CAEF0A6A.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-D5481872.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-D8C907E1.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-E07629C6.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-E8870FF5.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-EA9BB143.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-EBBF67E6.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-F1E39519.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-F952D9A9.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-FA38241C.pf
                        Deleted file - C:\WINDOWS\prefetch\SVCHOST.EXE-FC46CD61.pf
                        Deleted file - C:\WINDOWS\prefetch\SYSTEMSETTINGS.EXE-084BB8F9.pf
                        Deleted file - C:\WINDOWS\prefetch\TABTIP.EXE-9740CA06.pf
                        Deleted file - C:\WINDOWS\prefetch\TASKHOSTW.EXE-2E5D4B75.pf
                        Deleted file - C:\WINDOWS\prefetch\TEXTINPUTHOST.EXE-765F8035.pf
                        Deleted file - C:\WINDOWS\prefetch\TIWORKER.EXE-59F9BA6A.pf
                        Deleted file - C:\WINDOWS\prefetch\TIWORKER.EXE-991391F8.pf
                        Deleted file - C:\WINDOWS\prefetch\TOUCHPOINTANALYTICSCLIENT.EXE-95DBD31F.pf
                        Deleted file - C:\WINDOWS\prefetch\TOUCHPOINTGPUINFO.EXE-3583D2D4.pf
                        Deleted file - C:\WINDOWS\prefetch\TRUSTEDINSTALLER.EXE-766EFF52.pf
                        Deleted file - C:\WINDOWS\prefetch\UNIFIEDIOLAUNCHER.EXE-DA0CEA4F.pf
                        Deleted file - C:\WINDOWS\prefetch\UPFC.EXE-89D4FAEB.pf
                        Deleted file - C:\WINDOWS\prefetch\USEROOBEBROKER.EXE-65584ADF.pf
                        Deleted file - C:\WINDOWS\prefetch\USOCLIENT.EXE-4ADC110B.pf
                        Deleted file - C:\WINDOWS\prefetch\VDS.EXE-2FCA9D16.pf
                        Deleted file - C:\WINDOWS\prefetch\VDSLDR.EXE-50179B50.pf
                        Deleted file - C:\WINDOWS\prefetch\VSSVC.EXE-6C8F0C66.pf
                        Deleted file - C:\WINDOWS\prefetch\W32TM.EXE-C4E0F88E.pf
                        Deleted file - C:\WINDOWS\prefetch\WACNOTIFICATIONS.EXE-01870642.pf
                        Deleted file - C:\WINDOWS\prefetch\WARRANTYOBJECTCHECKER.EXE-5ED5E0A6.pf
                        Deleted file - C:\WINDOWS\prefetch\WERFAULT.EXE-155C56CF.pf
                        Deleted file - C:\WINDOWS\prefetch\WEVTUTIL.EXE-1E154F39.pf
                        Deleted file - C:\WINDOWS\prefetch\WFCRUN32.EXE-EDD18577.pf
                        Deleted file - C:\WINDOWS\prefetch\WHATSNEW.STORE.EXE-0B58A213.pf
                        Deleted file - C:\WINDOWS\prefetch\WIDGETS.EXE-6E4E6F4E.pf
                        Deleted file - C:\WINDOWS\prefetch\WIDGETSERVICE.EXE-BFED2E6A.pf
                        Deleted file - C:\WINDOWS\prefetch\WIN32BRIDGE.SERVER.EXE-BFFC89D4.pf
                        Deleted file - C:\WINDOWS\prefetch\WINDOWS-KB890830-X64-V5.112.E-61AC4AA7.pf
                        Deleted file - C:\WINDOWS\prefetch\WINLOGON.EXE-DEDDC9B6.pf
                        Deleted file - C:\WINDOWS\prefetch\WINWORD.EXE-AB6EC2FA.pf
                        Deleted file - C:\WINDOWS\prefetch\WIREGUARD.EXE-B4AB2EE1.pf
                        Deleted file - C:\WINDOWS\prefetch\WLANEXT.EXE-BFF495D4.pf
                        Deleted file - C:\WINDOWS\prefetch\WLRMDR.EXE-A7C36FDD.pf
                        Deleted file - C:\WINDOWS\prefetch\WMIADAP.EXE-BB21CD77.pf
                        Deleted file - C:\WINDOWS\prefetch\WMIAPSRV.EXE-FC8436DD.pf
                        Deleted file - C:\WINDOWS\prefetch\WMIPRVSE.EXE-E8B8DD29.pf
                        Deleted file - C:\WINDOWS\prefetch\WUAUCLT.EXE-E320B10D.pf

                        ========= End of CMD: =========

                        ========= del /s /q C:\Windows\SoftwareDistribution\download*.* =========

                        Deleted file - C:\Windows\SoftwareDistribution\download\078055ff2 cc8d6dea813b8ac94caa8e0\ActionList.xml
                        Deleted file - C:\Windows\SoftwareDistribution\download\078055ff2 cc8d6dea813b8ac94caa8e0\compdb.xml.cab
                        Deleted file - C:\Windows\SoftwareDistribution\download\078055ff2 cc8d6dea813b8ac94caa8e0\DownloadList.xml
                        Deleted file - C:\Windows\SoftwareDistribution\download\078055ff2 cc8d6dea813b8ac94caa8e0\DownloadList_old.xml
                        Deleted file - C:\Windows\SoftwareDistribution\download\078055ff2 cc8d6dea813b8ac94caa8e0\ExeUpdateAgentDeployment.c ab
                        Deleted file - C:\Windows\SoftwareDistribution\download\078055ff2 cc8d6dea813b8ac94caa8e0\unifiedinstaller.exe
                        Deleted file - C:\Windows\SoftwareDistribution\download\078055ff2 cc8d6dea813b8ac94caa8e0\UpdHealthTools.cab
                        Deleted file - C:\Windows\SoftwareDistribution\download\078055ff2 cc8d6dea813b8ac94caa8e0\windlp.state-old.xml
                        Deleted file - C:\Windows\SoftwareDistribution\download\078055ff2 cc8d6dea813b8ac94caa8e0\windlp.state.xml
                        Deleted file - C:\Windows\SoftwareDistribution\download\078055ff2 cc8d6dea813b8ac94caa8e0\Logs\CapsulePublishRemedia tion.001.etl
                        Deleted file - C:\Windows\SoftwareDistribution\download\078055ff2 cc8d6dea813b8ac94caa8e0\Metadata\compdb.xml
                        Deleted file - C:\Windows\SoftwareDistribution\download\078055ff2 cc8d6dea813b8ac94caa8e0\Metadata\compdb.xml.cab
                        Deleted file - C:\Windows\SoftwareDistribution\download\078055ff2 cc8d6dea813b8ac94caa8e0\Metadata\DeviceInventory.x ml
                        Deleted file - C:\Windows\SoftwareDistribution\download\078055ff2 cc8d6dea813b8ac94caa8e0\Metadata\Dpx.dll
                        Deleted file - C:\Windows\SoftwareDistribution\download\078055ff2 cc8d6dea813b8ac94caa8e0\Metadata\ExeUpdateAgent.dl l
                        Deleted file - C:\Windows\SoftwareDistribution\download\078055ff2 cc8d6dea813b8ac94caa8e0\Metadata\Mitigation.dll
                        Deleted file - C:\Windows\SoftwareDistribution\download\078055ff2 cc8d6dea813b8ac94caa8e0\Metadata\UAOneSettings.dll
                        Deleted file - C:\Windows\SoftwareDistribution\download\078055ff2 cc8d6dea813b8ac94caa8e0\Metadata\UpdateAgent.dll
                        Deleted file - C:\Windows\SoftwareDistribution\download\SharedFil eCache\36591364bef76bbbf4098f6e3dae9743e8d947fc50a f169fad8c02d06a6b1114
                        Deleted file - C:\Windows\SoftwareDistribution\download\SharedFil eCache\bac6c6a847d26b9aa0ce726c0be0ec5ba59e7e15570 930b6b81f7e770c2ed3c2

                        ========= End of CMD: =========

                        ========= del /s /q “%userprofile%\AppData\Local\Google\Chrome\User Data\Default\Cache*.*” =========

                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\data_0
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\data_1
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\data_2
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\data_3
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000d0
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000d1
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000d2
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000d3
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000d5
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000d7
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000d8
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000d9
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000da
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000db
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000dc
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000dd
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000de
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000e1
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000e2
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000e3
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000e4
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000e5
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000e6
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000e7
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000e8
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000e9
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000ea
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000eb
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000ec
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000ed
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000ee
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000ef
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000f0
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000f1
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000f2
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000f3
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000f4
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000f5
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000f6
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000f7
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000f8
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000f9
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000fa
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000fb
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000fc
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000fd
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000fe
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000ff
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000100
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000101
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000102
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000103
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000104
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000106
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000107
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000109
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00010a
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00010b
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00010d
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00010e
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00010f
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000110
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000111
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000112
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000113
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000114
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000115
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000116
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000117
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000118
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000119
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00011a
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00011b
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00011c
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00011d
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00011e
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00011f
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000120
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000121
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000122
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000123
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000124
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000126
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000127
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000128
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000129
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00012a
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00012b
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00012c
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00012d
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00012e
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00012f
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000130
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000131
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000132
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000133
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000134
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000135
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000136
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000137
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000138
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000139
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00013a
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00013b
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00013c
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00013d
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00013e
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00013f
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000140
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000141
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000142
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000143
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000144
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000145
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000146
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000147
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000148
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000149
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00014a
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00014b
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00014c
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00014d
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00014e
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00014f
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000150
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000151
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000152
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000153
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000154
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000155
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000156
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000157
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000158
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000159
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00015a
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00015b
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00015c
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00015d
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00015f
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000160
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000161
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000162
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000163
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000164
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000165
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000166
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000167
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000168
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000169
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00016a
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00016b
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00016c
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00016d
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00016e
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00016f
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000170
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000171
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000172
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000173
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000174
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000175
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000176
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000177
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000178
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000179
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00017a
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00017b
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00017c
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00017d
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00017e
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00017f
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000180
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000181
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000182
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000183
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000184
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000185
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000186
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000187
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000188
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000189
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00018a
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00018b
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00018c
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00018d
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00018e
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00018f
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000190
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000191
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000192
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000193
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000194
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000195
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000196
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000197
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000198
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000199
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00019a
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00019b
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00019c
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00019d
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00019e
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00019f
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001a0
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001a1
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001a2
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001a3
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001a4
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001a5
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001a6
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001a7
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001a8
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001a9
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001aa
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001ab
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001ac
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001ad
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001ae
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001af
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001b0
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001b1
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001b2
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001b3
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001b4
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001b5
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001b6
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001b7
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001b8
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001b9
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001ba
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001bb
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001bc
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001bd
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001be
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001bf
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001c0
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001c1
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001c2
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001c4
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001c5
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001c6
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001c7
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001c8
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001c9
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001ca
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001cb
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001cc
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001cd
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001ce
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001cf
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001d0
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001d1
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001d2
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001d3
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001d4
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001d5
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001d6
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001d7
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001d8
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001d9
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001da
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001db
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001dc
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001dd
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001de
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001df
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001e0
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001e1
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001e2
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001e3
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001e4
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001e5
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001e6
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001e7
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001e8
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001e9
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001ea
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001eb
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001ec
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001ed
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001ee
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001ef
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001f0
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001f1
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001f2
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001f3
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001f4
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001f5
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001f6
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001f7
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001f8
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001f9
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001fa
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001fb
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001fc
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001fd
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001fe
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001ff
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000200
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000201
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000202
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000203
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000204
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000205
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000206
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000207
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000208
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00020c
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00020d
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00020e
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00020f
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000210
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000211
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000213
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000214
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000215
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000216
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000217
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000218
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000219
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00021a
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00021b
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00021c
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00021d
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00021e
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00021f
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000220
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000221
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000222
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000223
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000224
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000225
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00022a
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00023a
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00023c
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00023d
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00023e
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00023f
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000240
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000241
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000242
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000243
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000245
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000247
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000248
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00024a
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00024b
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00024c
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00024d
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00024e
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00024f
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000250
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000251
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000252
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000253
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000254
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000255
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000256
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000258
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000259
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00025a
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00025c
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00025d
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00025e
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00025f
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000260
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000261
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000262
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000263
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000264
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000265
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000266
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000267
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000268
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000269
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00026a
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00026b
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00026c
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00026d
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00026e
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00026f
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000270
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000271
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000272
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000273
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000274
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000275
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000276
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000277
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000278
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000279
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00027a
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00027b
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00027c
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00027d
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00027e
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00027f
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000280
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000281
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000282
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000283
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000284
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000285
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000286
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000287
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000288
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000289
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00028a
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00028b
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00028c
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00028d
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000290
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000292
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002a0
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002a4
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002a9
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002ab
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002ac
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002ad
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002b0
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002b1
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002b2
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002b3
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002b4
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002b5
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002b6
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002b8
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002b9
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002ba
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002bc
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002bd
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002be
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002bf
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002c0
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002c1
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002c2
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002c3
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002c4
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002c5
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002c6
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002cc
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002cd
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002ce
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002cf
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002d0
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002d1
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002d2
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002d3
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002d4
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002d5
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002d6
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002d8
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002d9
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002da
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002db
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002dc
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002dd
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002de
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002df
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002e0
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002e1
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002e2
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002e3
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002e4
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002e5
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002e6
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002e7
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002e8
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002e9
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002ea
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002eb
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002ec
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002ed
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002ee
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002ef
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002f0
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002f1
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002f3
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002f4
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002f5
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002f6
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002f9
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002fa
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002fb
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002fc
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002fd
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002fe
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002ff
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000300
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000301
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000302
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000303
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000304
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000305
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000306
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000307
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000308
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000309
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00030a
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00030b
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00030d
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00030e
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00030f
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000310
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000311
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000312
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000313
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000314
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000315
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000316
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000317
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000318
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000319
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00031a
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00031b
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00031c
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00031d
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00031e
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00031f
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000320
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000321
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000322
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000325
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000326
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000327
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000328
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00032a
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00032b
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00032d
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00032e
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00032f
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000330
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000331
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000332
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000334
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000335
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000336
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000338
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00033b
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00033d
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000349
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00034a
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00034b
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000353
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000354
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000355
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000356
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000359
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00035d
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000373
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000374
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000375
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000376
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000377
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000378
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00037f
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000380
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000381
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000383
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000384
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000385
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000386
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000387
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000388
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000389
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00038a
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00038b
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00038c
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00038d
                        Deleted file - C:\Users\Tammie\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\index

                        ========= End of CMD: =========

                        ========= del /s /q “%userprofile%\AppData\Local\Microsoft\Edge\User Data\Default\Cache*.*” =========

                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\data_0
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\data_1
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\data_2
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\data_3
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000002
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000003
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000004
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000005
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000006
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000007
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000008
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000009
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_00000a
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_00000b
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_00000c
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_00000d
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000010
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000011
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000012
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000013
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000014
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000015
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000016
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000017
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000018
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000019
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_00001a
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_00001f
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000021
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000022
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000027
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_00002a
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_00002c
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_00002d
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_00002e
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000031
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000037
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000038
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000039
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_00003b
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_00003e
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000040
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000041
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000044
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000045
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000046
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000047
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000048
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000049
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_00004b
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_00004c
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_00004d
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_00004e
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_00004f
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000050
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000051
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000052
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000053
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000054
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000055
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000056
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000057
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000058
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000059
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_00005a
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_00005b
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_00005c
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_00005d
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_00005e
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_00005f
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000060
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000061
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000062
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000063
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000064
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000065
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000066
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000067
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000068
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000069
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_00006a
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_00006b
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_00006c
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_00006d
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_00006e
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_00006f
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000070
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\f_000071
                        Deleted file - C:\Users\Tammie\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data\index

                        ========= End of CMD: =========

                        ========= del /s /q “%userprofile%\AppData\Local\Opera Software\Opera Stable\Cache\Cache_Data*.*” =========

                        The system cannot find the path specified.

                        ========= End of CMD: =========

                        ========= del /s /q “%userprofile%\AppData\Local\temp*.*” =========

                        Deleted file - C:\Users\Tammie\AppData\Local\temp.ses
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\bc3902d8132f43e 3ae086a009979fa88.db
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\bc3902d8132f43e 3ae086a009979fa88.db-shm
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\bc3902d8132f43e 3ae086a009979fa88.db-wal
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\bc3902d8132f43e 3ae086a009979fa88.db.ses
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\CitrixAutoUpdat e.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\cv_debug.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\dat48F6.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\dat4916.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\dat4917.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\dat4ACE.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\dat4ACF.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\dat4ADF.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\dat4AF0.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\dat6D39.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\dat6D59.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\dat6D5A.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\dat6EB3.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\dat6EB4.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\dat6EC5.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\dat6EC6.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-101704.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-103188.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-116980.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-11816.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-11992.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-120816.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-12084.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-132464.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-13416.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-140116.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-14780.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-149668.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-156400.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-16396.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-1660.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-17604.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-18296.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-18404.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-18420.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-19040.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-19236.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-19384.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-19460.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-20028.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-20464.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-20696.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-21028.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-21708.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-23248.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-23352.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-23808.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-24936.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-25132.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-25296.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-27348.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-27604.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-2768.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-29080.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-3264.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-32672.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-33688.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-3504.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-3844.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-4020.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-4652.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-47160.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-47736.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-48768.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-57948.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-60596.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-6896.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-75516.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-78244.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-78728.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-81004.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-81444.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-87192.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-8748.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-87548.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-8976.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-94484.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-95120.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mat-debug-9636.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mbsetup.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\NotifyIconGener atedAumid_2179384583597489560.png
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\preferences00
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\prep_59f896e1b3 c33a57b997e212ff3a_PackageResources_index_win32_bu ndle_V8_perf.cache
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\prep_foundation _win32_bundle_V8_perf.cache
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\prep_ui_win32_b undle_V8_perf.cache
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\prep___Program Files_Microsoft Office_root_Office16_AugLoop_bundle_js_V8_perf.cac he
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\StructuredQuery .log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\wbxtra_04112023 _125342.wbt
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\wbxtra_04112023 _201225.wbt
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\wbxtra_04122023 _071405.wbt
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\wbxtra_04122023 _181114.wbt
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\wbxtra_04132023 _035614.wbt
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\wct238.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\wct28B9.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\wct2983.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\wct325.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\wct450A.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\wct46BF.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\wct46C0.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\wct78BE.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\wct81BD.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\wct81EF.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\wct81FF.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\wct8727.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\wct87C0.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\wct9550.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\wctAA84.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\wctAA8C.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\wctC4D1.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\wctD7E1.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\wctEE30.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\wctFF7F.tmp
                        Deleted file - C:\Users\Tammie\AppData\Local\temp{0D395CB9-C560-4A4E-9D0F-B8CF76A9C62D} - OProcSessId.dat
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\CTXReceiverLogs \1\Receiver.exe-20230411-201237-1-20280-1.etl
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\CTXReceiverLogs \1\Receiver.exe-20230413-035632-1-11588-1.etl
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\CTXReceiverLogs \1\SelfService.exe-20230411-202250-1-21108-1.etl
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\CTXReceiverLogs \1\SelfService.exe-20230413-042213-1-22612-1.etl
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\CTXReceiverLogs \1\SelfServicePlugin.exe-20230411-201239-1-21600-1.etl
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\CTXReceiverLogs \1\SelfServicePlugin.exe-20230413-035642-1-3816-1.etl
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\CTXReceiverLogs \1\wfcrun32.exe-20230411-201238-1-21632-1.etl
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\CTXReceiverLogs \1\wfcrun32.exe-20230413-035643-1-20504-1.etl
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\CTXReceiverLogs \2\Receiver.exe-20230410-125011-2-15216-1.etl
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\CTXReceiverLogs \2\Receiver.exe-20230412-071413-2-20004-1.etl
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\CTXReceiverLogs \2\SelfService.exe-20230410-125642-2-18512-1.etl
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\CTXReceiverLogs \2\SelfServicePlugin.exe-20230410-125013-2-2056-1.etl
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\CTXReceiverLogs \2\SelfServicePlugin.exe-20230412-071416-2-4088-1.etl
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\CTXReceiverLogs \2\wfcrun32.exe-20230410-125012-2-16300-1.etl
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\CTXReceiverLogs \2\wfcrun32.exe-20230412-071420-2-5784-1.etl
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\CTXReceiverLogs \3\Receiver.exe-20230411-125401-3-25420-1.etl
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\CTXReceiverLogs \3\Receiver.exe-20230412-181134-3-2008-1.etl
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\CTXReceiverLogs \3\SelfService.exe-20230411-133916-3-31424-1.etl
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\CTXReceiverLogs \3\SelfService.exe-20230412-182803-3-23292-1.etl
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\CTXReceiverLogs \3\SelfServicePlugin.exe-20230411-125403-3-18960-1.etl
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\CTXReceiverLogs \3\SelfServicePlugin.exe-20230412-181137-3-5600-1.etl
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\CTXReceiverLogs \3\wfcrun32.exe-20230411-125402-3-31080-1.etl
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\CTXReceiverLogs \3\wfcrun32.exe-20230412-181137-3-23580-1.etl
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\Diagnostics\EXC EL\App1681229951268330400_39D26ED2-194E-4A19-A79B-7539F3CA0910.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\Diagnostics\EXC EL\App1681232412145771900_0EBB233B-1F0B-42E0-85C8-DF55549BD6D6.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\Diagnostics\EXC EL\App1681232578601387000_3BE3CEF6-6874-4C87-A4A1-4FEB63585DB1.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\Diagnostics\EXC EL\App1681232826616582200_FA2DD76F-FABF-4C33-A907-22DFFAD72B99.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\Diagnostics\EXC EL\App1681232960046965100_F5D7AB6B-F84B-4D76-8C9A-469FBD886473.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\Diagnostics\EXC EL\App1681241218796410100_4BC36B43-D884-4B1F-B2CD-24BD0A63EC8A.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\Diagnostics\EXC EL\App1681241634693180500_83D37D86-7226-4501-8A81-8FDA6DBF7016.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\Diagnostics\EXC EL\App1681241634693811200_83D37D86-7226-4501-8A81-8FDA6DBF7016.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\Diagnostics\WIN WORD\App1681151452218022300_E560BB1B-6F6D-485E-B570-170CF2FFB40E.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\Diagnostics\WIN WORD\App1681240518532343700_91F4376C-4103-4CC3-90AD-007EBAA096E4.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\Diagnostics\WIN WORD\App1681241479180190600_0D395CB9-C560-4A4E-9D0F-B8CF76A9C62D.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\Diagnostics\WIN WORD\App1681241479180973700_0D395CB9-C560-4A4E-9D0F-B8CF76A9C62D.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\LogMeInLogs\GoT oMeeting\G2MUpdate.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\LogMeInLogs\GoT oMeeting\G2MUpload.log
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mbam\qt-jl-icons\17980147720.ico
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mbam\qt-jl-icons\17980147830.ico
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mbam\qt-jl-icons\17980147850.ico
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mbam\qt-jl-icons\179801478f0.ico
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mbam\qt-jl-icons\179801479f0.ico
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mbam\qt-jl-icons\17980147a00.ico
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mbam\qt-jl-icons\17980147d00.ico
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mbam\qt-jl-icons\17980147d50.ico
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\mbam\qt-jl-icons\17980147dc0.ico
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\msohtmlclip1\01 \clip_colorschememapping.xml
                        Deleted file - C:\Users\Tammie\AppData\Local\temp\msohtmlclip1\01 \clip_themedata.thmx

                        ========= End of CMD: =========

                        ========= ipconfig /flushdns =========

                        Windows IP Configuration

                        Successfully flushed the DNS Resolver Cache.

                        ========= End of CMD: =========

                        =========== “C:\Windows\Temp*.*” ==========

                        C:\Windows\Temp.ses => moved successfully
                        C:\Windows\Temp\39CDDD4.tmp => moved successfully
                        C:\Windows\Temp\Application_12BAA6D7-67D7-0001-7717-DD12D767D901.evtx => moved successfully
                        C:\Windows\Temp\Application_12BAA6D7-67D7-0005-176B-C112D767D901.evtx => moved successfully
                        C:\Windows\Temp\AppxErrorReport_12BAA6D7-67D7-0001-7717-DD12D767D901.txt => moved successfully
                        C:\Windows\Temp\AppxErrorReport_12BAA6D7-67D7-0005-176B-C112D767D901.txt => moved successfully
                        C:\Windows\Temp\chrome_installer.log => moved successfully
                        C:\Windows\Temp\CSPInstall.log => moved successfully
                        C:\Windows\Temp\CSPUninstall.log => moved successfully
                        C:\Windows\Temp\dba00e65-7c7c-47f8-b93c-f9bc11b0a2ba.tmp => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230404-1417.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230405-1056.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230405-1101.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230405-1102.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230405-1102a.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230405-1152.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230405-1155.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230405-1204.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230405-1206.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230405-1336.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230406-1140.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230406-1146.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230406-1159.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230406-1551.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230406-1556.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230406-1807.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230406-1828.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230406-2011.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230406-2019.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230406-2021.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230407-1207.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230407-1213.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230407-1213a.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230407-1214.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230407-1217.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230407-2347.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230407-2347a.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230408-1210.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230408-1216.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230408-1216a.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230408-1216b.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230408-1744.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230408-1910.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230408-1949.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230410-0925.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230410-0930.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230410-0936.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230410-0937.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230410-1012.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230410-1254.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230410-1346.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230411-1118.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230411-1124.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230411-1124a.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230411-1129.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230411-1217.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230411-1258.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230411-1303.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230411-1409.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230411-1441.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230411-1540.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230411-1601.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230411-1633.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230411-1639.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230411-1717.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230411-2008.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230411-2011.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230411-2016.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230411-2036.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230411-2056.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230411-2140.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230412-0713.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230412-0718.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230412-1815.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230412-1821.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230412-1838.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230412-2052.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230412-2055.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230412-2103.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230412-2109.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230412-2120.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230412-2136.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230413-0007.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230413-0211.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230413-0354.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230413-0357.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230413-0400.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230413-0400a.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230413-0404.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230413-2021.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230413-2025.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230413-2025a.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230413-2032.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230413-2033.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230413-2036.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230413-2105.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230413-2205.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230414-2149.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230415-0751.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230415-0751a.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230415-0751b.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230415-0755.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230415-0756.log => moved successfully
                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230415-0756a.log => moved successfully
                        Could not move “C:\Windows\Temp\DESKTOP-GRCHUA0-20230415-0801.log” => Scheduled to move on reboot.
                        C:\Windows\Temp\FusionRestarter-expand.log => moved successfully
                        Could not move “C:\Windows\Temp\FXSAPIDebugLogFile.txt” => Scheduled to move on reboot.
                        Could not move “C:\Windows\Temp\FXSTIFFDebugLogFile.txt” => Scheduled to move on reboot.
                        C:\Windows\Temp\mbamiservice.log => moved successfully
                        C:\Windows\Temp\mb_errors999.log => moved successfully
                        C:\Windows\Temp\Microsoft-Windows-AppReadiness_Admin_12BAA6D7-67D7-0001-7717-DD12D767D901.evtx => moved successfully
                        C:\Windows\Temp\Microsoft-Windows-AppReadiness_Admin_12BAA6D7-67D7-0005-176B-C112D767D901.evtx => moved successfully
                        C:\Windows\Temp\Microsoft-Windows-AppReadiness_Operational_12BAA6D7-67D7-0001-7717-DD12D767D901.evtx => moved successfully
                        C:\Windows\Temp\Microsoft-Windows-AppReadiness_Operational_12BAA6D7-67D7-0005-176B-C112D767D901.evtx => moved successfully
                        C:\Windows\Temp\Microsoft-Windows-AppXDeploymentServer_Operational_12BAA6D7-67D7-0001-7717-DD12D767D901.evtx => moved successfully
                        C:\Windows\Temp\Microsoft-Windows-AppXDeploymentServer_Operational_12BAA6D7-67D7-0005-176B-C112D767D901.evtx => moved successfully
                        C:\Windows\Temp\Microsoft-Windows-AppXPackaging_Operational_12BAA6D7-67D7-0001-7717-DD12D767D901.evtx => moved successfully
                        C:\Windows\Temp\Microsoft-Windows-AppXPackaging_Operational_12BAA6D7-67D7-0005-176B-C112D767D901.evtx => moved successfully
                        C:\Windows\Temp\Microsoft-Windows-SettingSync_Debug_12BAA6D7-67D7-0001-7717-DD12D767D901.evtx => moved successfully
                        C:\Windows\Temp\Microsoft-Windows-SettingSync_Debug_12BAA6D7-67D7-0005-176B-C112D767D901.evtx => moved successfully
                        C:\Windows\Temp\Microsoft-Windows-SettingSync_Operational_12BAA6D7-67D7-0001-7717-DD12D767D901.evtx => moved successfully
                        C:\Windows\Temp\Microsoft-Windows-SettingSync_Operational_12BAA6D7-67D7-0005-176B-C112D767D901.evtx => moved successfully
                        C:\Windows\Temp\Microsoft-Windows-StateRepository_Operational_12BAA6D7-67D7-0001-7717-DD12D767D901.evtx => moved successfully
                        C:\Windows\Temp\Microsoft-Windows-StateRepository_Operational_12BAA6D7-67D7-0005-176B-C112D767D901.evtx => moved successfully
                        C:\Windows\Temp\Microsoft-Windows-Store_Operational_12BAA6D7-67D7-0001-7717-DD12D767D901.evtx => moved successfully
                        C:\Windows\Temp\Microsoft-Windows-Store_Operational_12BAA6D7-67D7-0005-176B-C112D767D901.evtx => moved successfully
                        C:\Windows\Temp\Microsoft-Windows-WindowsUpdateClient_Operational_12BAA6D7-67D7-0001-7717-DD12D767D901.evtx => moved successfully
                        C:\Windows\Temp\Microsoft-Windows-WindowsUpdateClient_Operational_12BAA6D7-67D7-0005-176B-C112D767D901.evtx => moved successfully
                        C:\Windows\Temp\msedge_installer.log => moved successfully
                        C:\Windows\Temp\nsa2EE8.tmp => moved successfully
                        C:\Windows\Temp\nsa2EE8.tmp.exe => moved successfully
                        C:\Windows\Temp\nsa469C.tmp => moved successfully
                        C:\Windows\Temp\nsa469C.tmp.exe => moved successfully
                        C:\Windows\Temp\nsb340D.tmp => moved successfully
                        C:\Windows\Temp\nsb340D.tmp.exe => moved successfully
                        C:\Windows\Temp\nsb3429.tmp => moved successfully
                        C:\Windows\Temp\nsb3429.tmp.exe => moved successfully
                        C:\Windows\Temp\nsd68B5.tmp => moved successfully
                        C:\Windows\Temp\nsd68B5.tmp.exe => moved successfully
                        C:\Windows\Temp\nsdB48F.tmp.exe => moved successfully
                        C:\Windows\Temp\nsdD1A5.tmp => moved successfully
                        C:\Windows\Temp\nsdD1A5.tmp.exe => moved successfully
                        C:\Windows\Temp\nse2B1A.tmp.exe => moved successfully
                        C:\Windows\Temp\nsf1EB.tmp => moved successfully
                        C:\Windows\Temp\nsf1EB.tmp.exe => moved successfully
                        C:\Windows\Temp\nsg198E.tmp.exe => moved successfully
                        C:\Windows\Temp\nsgB2D2.tmp => moved successfully
                        C:\Windows\Temp\nsgB2D2.tmp.exe => moved successfully
                        C:\Windows\Temp\nsi63FA.tmp => moved successfully
                        C:\Windows\Temp\nsi63FA.tmp.exe => moved successfully
                        C:\Windows\Temp\nsiF44E.tmp.exe => moved successfully
                        C:\Windows\Temp\nsjB54D.tmp => moved successfully
                        C:\Windows\Temp\nsjB54D.tmp.exe => moved successfully
                        C:\Windows\Temp\nsjBA41.tmp => moved successfully
                        C:\Windows\Temp\nsjBA41.tmp.exe => moved successfully
                        C:\Windows\Temp\nskDD7E.tmp => moved successfully
                        C:\Windows\Temp\nskDD7E.tmp.exe => moved successfully
                        C:\Windows\Temp\nslE49B.tmp => moved successfully
                        C:\Windows\Temp\nslE49B.tmp.exe => moved successfully
                        C:\Windows\Temp\nsn922B.tmp.exe => moved successfully
                        C:\Windows\Temp\nso3BDC.tmp => moved successfully
                        C:\Windows\Temp\nso3BDC.tmp.exe => moved successfully
                        C:\Windows\Temp\nsp960F.tmp => moved successfully
                        C:\Windows\Temp\nsp960F.tmp.exe => moved successfully
                        C:\Windows\Temp\nsq88EA.tmp => moved successfully
                        C:\Windows\Temp\nsq88EA.tmp.exe => moved successfully
                        C:\Windows\Temp\nsq96C6.tmp => moved successfully
                        C:\Windows\Temp\nsq96C6.tmp.exe => moved successfully
                        C:\Windows\Temp\nsr8CFD.tmp.exe => moved successfully
                        C:\Windows\Temp\nsrCF.tmp => moved successfully
                        C:\Windows\Temp\nsrCF.tmp.exe => moved successfully
                        C:\Windows\Temp\nss2420.tmp => moved successfully
                        C:\Windows\Temp\nss2420.tmp.exe => moved successfully
                        C:\Windows\Temp\nss3AF6.tmp => moved successfully
                        C:\Windows\Temp\nss3AF6.tmp.exe => moved successfully
                        C:\Windows\Temp\nst2177.tmp.exe => moved successfully
                        C:\Windows\Temp\nsu5156.tmp.exe => moved successfully
                        C:\Windows\Temp\nsuF91A.tmp => moved successfully
                        C:\Windows\Temp\nsuF91A.tmp.exe => moved successfully
                        C:\Windows\Temp\nsv2805.tmp => moved successfully
                        C:\Windows\Temp\nsv2805.tmp.exe => moved successfully
                        C:\Windows\Temp\nsvF059.tmp => moved successfully
                        C:\Windows\Temp\nsvF059.tmp.exe => moved successfully
                        C:\Windows\Temp\nsw1CDC.tmp => moved successfully
                        C:\Windows\Temp\nsw1CDC.tmp.exe => moved successfully
                        C:\Windows\Temp\nsw8C7E.tmp.exe => moved successfully
                        C:\Windows\Temp\nswB1D0.tmp => moved successfully
                        C:\Windows\Temp\nswB1D0.tmp.exe => moved successfully
                        C:\Windows\Temp\nsx7C09.tmp.exe => moved successfully
                        C:\Windows\Temp\nsxC05D.tmp => moved successfully
                        C:\Windows\Temp\nsxC05D.tmp.exe => moved successfully
                        C:\Windows\Temp\nsy61C6.tmp => moved successfully
                        C:\Windows\Temp\nsy61C6.tmp.exe => moved successfully
                        C:\Windows\Temp\nsy7744.tmp.exe => moved successfully
                        C:\Windows\Temp\nsyF2D6.tmp.exe => moved successfully
                        C:\Windows\Temp\nsz47FD.tmp => moved successfully
                        C:\Windows\Temp\nsz47FD.tmp.exe => moved successfully
                        C:\Windows\Temp\officeclicktorun.exe_streamserver( 202304071216567194).log => moved successfully
                        C:\Windows\Temp\officeclicktorun.exe_streamserver( 2023041009300714CC).log => moved successfully
                        C:\Windows\Temp\officeclicktorun.exe_streamserver( 20230415075536183FC).log => moved successfully
                        Could not move “C:\Windows\Temp\officeclicktorun.exe_streamserver (20230415080128142EC).log” => Scheduled to move on reboot.
                        C:\Windows\Temp\perfboost.exe_c2rdll(2023040712170 63844).log => moved successfully
                        C:\Windows\Temp\perfboost.exe_c2rdll(2023041320322 413710).log => moved successfully
                        C:\Windows\Temp\perfboost.exe_c2rdll(2023041507555 417A98).log => moved successfully
                        C:\Windows\Temp\System_12BAA6D7-67D7-0001-7717-DD12D767D901.evtx => moved successfully
                        C:\Windows\Temp\System_12BAA6D7-67D7-0005-176B-C112D767D901.evtx => moved successfully
                        C:\Windows\Temp\TS_A2B8.tmp => moved successfully
                        C:\Windows\Temp\TS_A2D8.tmp => moved successfully
                        C:\Windows\Temp\wbxtra_04102023_093006.wbt => moved successfully
                        C:\Windows\Temp\wbxtra_04112023_201141.wbt => moved successfully
                        C:\Windows\Temp\wbxtra_04132023_035420.wbt => moved successfully
                        C:\Windows\Temp\wct10C.tmp => moved successfully
                        C:\Windows\Temp\wct1D10.tmp => moved successfully
                        C:\Windows\Temp\wct25CC.tmp => moved successfully
                        C:\Windows\Temp\wct26A7.tmp => moved successfully
                        C:\Windows\Temp\wct43BD.tmp => moved successfully
                        C:\Windows\Temp\wct48F5.tmp => moved successfully
                        C:\Windows\Temp\wct4B32.tmp => moved successfully
                        C:\Windows\Temp\wct4B38.tmp => moved successfully
                        C:\Windows\Temp\wct4EB4.tmp => moved successfully
                        C:\Windows\Temp\wct4EFB.tmp => moved successfully
                        C:\Windows\Temp\wct543D.tmp => moved successfully
                        C:\Windows\Temp\wct7053.tmp => moved successfully
                        C:\Windows\Temp\wct78DD.tmp => moved successfully
                        C:\Windows\Temp\wct7F4.tmp => moved successfully
                        C:\Windows\Temp\wct8293.tmp => moved successfully
                        C:\Windows\Temp\wct893F.tmp => moved successfully
                        C:\Windows\Temp\wct94AB.tmp => moved successfully
                        C:\Windows\Temp\wctB02B.tmp => moved successfully
                        C:\Windows\Temp\wctC490.tmp => moved successfully
                        C:\Windows\Temp\wctD144.tmp => moved successfully
                        C:\Windows\Temp\wctD8F.tmp => moved successfully
                        C:\Windows\Temp\wctD998.tmp => moved successfully
                        C:\Windows\Temp\wctE031.tmp => moved successfully

                        ========= End → “C:\Windows\Temp*.*” ========

                        =========== “C:\WINDOWS\system32*.tmp” ==========

                        not found

                        ========= End → “C:\WINDOWS\system32*.tmp” ========

                        =========== “C:\WINDOWS\syswow64*.tmp” ==========

                        not found

                        ========= End → “C:\WINDOWS\syswow64*.tmp” ========

                        =========== EmptyTemp: ==========

                        FlushDNS => completed
                        BITS transfer queue => 1310720 B
                        DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 9511392 B
                        Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B
                        Windows/system/drivers => 411688 B
                        Edge => 5886831 B
                        Chrome => 24572510 B
                        Firefox => 0 B
                        Opera => 0 B

                        Temp, IE cache, history, cookies, recent:
                        Default => 0 B
                        ProgramData => 0 B
                        Public => 0 B
                        systemprofile => 0 B
                        systemprofile32 => 0 B
                        LocalService => 681648 B
                        NetworkService => 681648 B
                        Tammie => 12223907 B

                        RecycleBin => 0 B
                        EmptyTemp: => 52.7 MB temporary data Removed.

                        ================================

                        Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 15-04-2023 08:08:51)

                        C:\Windows\Temp\DESKTOP-GRCHUA0-20230415-0801.log => Is moved successfully
                        C:\Windows\Temp\FXSAPIDebugLogFile.txt => Could not move
                        C:\Windows\Temp\FXSTIFFDebugLogFile.txt => Could not move
                        C:\Windows\Temp\officeclicktorun.exe_streamserver( 20230415080128142EC).log => Is moved successfully

                        ==== End of Fixlog 08:08:51 ====

                        Comment

                        • Malnutrition
                          PCHF Moderator
                          • Jul 2016
                          • 7045

                          #13
                          I am not seeing anything of concern really, so let’s check with one last tool.

                          Make sure and save this tool to your desktop!! [COLOR=rgb(184, 49, 47)]Make certain and disable McaFee prior to this scan!!

                          Download Kaspersky Virus Removal Tool B[/B] and save it to your Desktop.
                          Very important to save this to your desktop!!

                          Select the Windows Key and R Key together, the Run box should open.
                          Copy and paste the following into the run box.
                          Code:
                                 C:\Users\Tammie\Desktop[B]\KVRT.exe -dontencrypt     [/B]
                          Select „Ok“ in the Run box.
                          If the „Windows protected your PC“ window opens, select „More info“. A new windows will open, select „Run anyway“.
                          An EULA window from KVRT will open, tick all confirmation boxes then select “Accept”.
                          A window from KVRT will open, select “Change Parameters”.
                          In the new window ensure the following boxes are ticked:

                          [ul]
                          [li]System memory[/li][li]Startup objects[/li][li]Boot sectors[/li][li]System drive[/li][/ul]
                          Then select “OK” and „Start scan“.
                          When completed: If entries are found, there will be options to choose. If “Cure” is offered, leave as it is. For any other options change to “Delete”, then select “Continue”.
                          Usually, your system needs a reboot to finish the removal process.
                          Logfiles can be found on your systemdrive (usually C: ), similar like this:

                          C:\KVRT2020_Data\Reports\report__.klr

                          Right click direct onto those reports, select > open with > Notepad.
                          Save the files and attach them with your next reply.[/COLOR]

                          Comment

                          • tammie.m247
                            PCHF Member
                            • Apr 2023
                            • 7

                            #14
                            I did not get a prompt to reboot. There were three items found that I deleted. Attached is the notepad file, although it seems gibberish. I’ll reboot and see if it changes.

                            Comment

                            • Malnutrition
                              PCHF Moderator
                              • Jul 2016
                              • 7045

                              #15
                              That is definitely gibberish. Which indicates The tool was ran without the instructions provided to not encrypt. Because of this, there will be no log of what was detected. Not the end of the world…

                              Can you remember what items were detected? Also, are there anymore issues to speak of?
                              Let’s take a look at things with one last tool.

                              ZHP Diag Scanner.

                              Download ZHP Suite to your desktop.
                              Right Click Run as admin.
                              Hit the scanner button.
                              Once it is complete a file name ZHPdiag.txt will be on your desktop.
                              Attach it.

                              Comment

                              Working...