CloseProcesses: CreateRestorePoint: HKLM-x32\...\Run: [] => [X] SearchScopes: HKU\S-1-5-21-1159969180-2088883839-793877200-1001 -> DefaultScope {D81070C9-013F-4537-8541-9ACB6A5E5310} URL = SearchScopes: HKU\S-1-5-21-1159969180-2088883839-793877200-1001 -> {D81070C9-013F-4537-8541-9ACB6A5E5310} URL = CHR HKLM-x32\...\Chrome\Extension: [fmgckcapmffomaifonnhgkfdgljnkpgi] - 2015-07-15 18:14 - 2015-07-15 18:14 - 6420480 _____ () C:\Program Files (x86)\GUT168.tmp Task: {0BB941A3-0BAA-46D5-83AF-27ED5810DFF1} - \Titanium BTC -> No File <==== ATTENTION Task: {477FE3C4-0AD9-40CA-B1F5-1E3AAAD4C2A4} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION Task: {47A951FC-1232-4732-807C-DF2F6F714DCF} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION Task: {59396DCA-C661-43B9-A384-245AE90CA8EC} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION Task: {84047F62-0433-4932-ABBF-E1636AD95C10} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION Task: {8D5779B4-1EE1-48F0-80CA-0DE079A30E2B} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION Task: {8FD157D1-AF6A-4981-99A1-9D6FE6DFAE6F} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION Task: {BC958DFE-ECEC-4AAD-B762-FD0D9B165496} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION Task: {D105DE7E-55C3-424A-BBB0-D43A6FA740EA} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION Task: {E86645AA-FE0B-4F0F-8104-2FD8E22885C9} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION Task: {EB4810A6-C9F1-48AB-87FA-9B6AE2D90703} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION Task: {F1EE4AFD-A681-4F6F-AFDB-1E197040C9DF} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION EmptyTemp: CMD: bitsadmin /reset /allusers cmd: netsh advfirewall reset cmd: netsh advfirewall set allprofiles state on Reg: Reg Delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\StartupApproved" /F Reg: Reg Add "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\StartupApproved" /F Reg: Reg Delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg" /F Reg: Reg Add "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg" /F CMD: netsh advfirewall reset CMD: netsh advfirewall set allprofiles state ON CMD: ipconfig /flushdns CMD: netsh winsock reset catalog CMD: netsh int ip reset c:\resetlog.txt CMD: ipconfig /release CMD: ipconfig /renew CMD: netsh int ipv4 reset CMD: netsh int ipv6 reset