start closeprocesses: emptytemp: HKU\S-1-5-21-874095036-555551615-2773281345-1001\...\Run: [ContentAgent] => C:\Users\Michael\AppData\Local\ContentAgent.exe HKU\S-1-5-21-874095036-555551615-2773281345-1001\...\Run: [ContentFinder] => C:\Users\Michael\AppData\Local\ContentFinder.exe [107520 2014-11-12] (ContentFinder Company) HKU\S-1-5-21-874095036-555551615-2773281345-1001\...\Run: [ContentSinder] => C:\Users\Michael\AppData\Local\ContentSinder.exe [176640 2014-11-12] (ContentSinder Company) C:\Users\Michael\AppData\Local\ContentAgent.exe C:\Users\Michael\AppData\Local\ContentFinder.exe C:\Users\Michael\AppData\Local\ContentSinder.exe ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION ProxyServer: [S-1-5-21-874095036-555551615-2773281345-1001] => http=127.0.0.1:52451;https=127.0.0.1:52451 SearchScopes: HKU\S-1-5-21-874095036-555551615-2773281345-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = Toolbar: HKU\S-1-5-21-874095036-555551615-2773281345-1001 -> No Name - {8CB26F89-C950-4CC2-9100-69635A8E721D} - No File 2014-12-12 13:01 - 2014-12-12 13:01 - 00001613 _____ () C:\Users\Michael\Desktop\ContentSinder - Shortcut.lnk 2014-12-12 13:01 - 2014-12-12 13:01 - 00001613 _____ () C:\Users\Michael\Desktop\ContentFinder - Shortcut.lnk 2014-12-09 21:10 - 2014-12-12 19:11 - 00413055 _____ () C:\Users\Michael\AppData\Local\viewer.txt 2014-12-09 21:10 - 2014-12-12 19:11 - 00268330 _____ () C:\Users\Michael\AppData\Local\sinder.txt C:\ProgramData\SetStretch.exe C:\ProgramData\SetStretch.VBS C:\ProgramData\uninstall3333134.exe C:\ProgramData\uninstall913173.exe Task: {1938AD97-B038-4195-B65B-0B8BD1416D2E} - \RocketTab Update Task No Task File <==== ATTENTION Task: {E6CAA22F-AC8A-407C-85AA-7F780E0DA5BE} - \RocketTab No Task File <==== ATTENTION end