ContextMenuHandlers1: [Fix-It Menu] -> {F1C709E4-B1E5-4F1C-A034-DC4F6124C8FF} => C:\Program Files (x86)\Avanquest\Fix-It\mxctxMnu64.dll -> No File ContextMenuHandlers2: [Fix-It Menu] -> {F1C709E4-B1E5-4F1C-A034-DC4F6124C8FF} => C:\Program Files (x86)\Avanquest\Fix-It\mxctxMnu64.dll -> No File ContextMenuHandlers4: [Fix-It Menu] -> {F1C709E4-B1E5-4F1C-A034-DC4F6124C8FF} => C:\Program Files (x86)\Avanquest\Fix-It\mxctxMnu64.dll -> No File FirewallRules: [{8B1EF3E7-EDA2-488F-AC78-9BBDF3AFE14B}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD14Agent.exe => No File FirewallRules: [{C5B109DB-A4DA-409D-A49D-83B287BD8FAA}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\Kernel\DMS\CLMSServerPDVD14.exe => No File FirewallRules: [{F80157A6-5134-42FE-BEE5-0393B9A05BEE}] => (Allow) C:\Program Files (x86)\Common Files\Mcafee\MMSSHost\MMSSHost.exe => No File FirewallRules: [{4A4BEB17-5908-4241-96F9-FAFD1A3646C9}] => (Allow) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHost.exe => No File FirewallRules: [{19672D66-F5AF-46BE-872F-2B25F642A803}] => (Allow) C:\Users\Bill\AppData\Local\Temp\7zS3B65\HP.EasyStart.exe => No File FirewallRules: [{8325C4CD-D605-45E3-B810-60DB5FEF1A9B}] => (Allow) C:\Program Files\iTunes\iTunes.exe => No File FirewallRules: [{628F320B-28EF-413A-8893-78C1CA07EC57}] => (Allow) C:\Users\Bill\AppData\Roaming\Zoom\bin\Zoom.exe => No File FirewallRules: [{86D86FB5-E6A7-4867-BDA2-482BCCB36E87}] => (Allow) C:\Users\Bill\AppData\Roaming\Zoom\bin\airhost.exe => No File FirewallRules: [{583C044D-FAC7-4C72-B48A-D855C382F52C}] => (Allow) C:\Users\Bill\AppData\Roaming\Zoom\bin\airhost.exe => No File FirewallRules: [TCP Query User{66827E1B-2A0D-408D-8053-7645861F7781}C:\users\bill\appdata\local\programs\opera\71.0.3770.228\opera.exe] => (Block) C:\users\bill\appdata\local\programs\opera\71.0.3770.228\opera.exe => No File FirewallRules: [UDP Query User{880AD327-6878-4A84-8FED-C21AE2DF5AAB}C:\users\bill\appdata\local\programs\opera\71.0.3770.228\opera.exe] => (Block) C:\users\bill\appdata\local\programs\opera\71.0.3770.228\opera.exe => No File FirewallRules: [TCP Query User{D610A114-0B6B-4381-911A-0DCB28BDAC66}C:\users\bill\appdata\local\programs\opera\72.0.3815.186\opera.exe] => (Allow) C:\users\bill\appdata\local\programs\opera\72.0.3815.186\opera.exe => No File FirewallRules: [UDP Query User{10AD39FE-4A63-4AF1-9B8C-1CD7975FB806}C:\users\bill\appdata\local\programs\opera\72.0.3815.186\opera.exe] => (Allow) C:\users\bill\appdata\local\programs\opera\72.0.3815.186\opera.exe => No File FirewallRules: [TCP Query User{FF198961-A67F-465C-94A5-231F0563E650}C:\users\bill\appdata\local\programs\opera\72.0.3815.320\opera.exe] => (Allow) C:\users\bill\appdata\local\programs\opera\72.0.3815.320\opera.exe => No File FirewallRules: [UDP Query User{5CC25685-D18C-47AB-B82E-A12D907D761A}C:\users\bill\appdata\local\programs\opera\72.0.3815.320\opera.exe] => (Allow) C:\users\bill\appdata\local\programs\opera\72.0.3815.320\opera.exe => No File FirewallRules: [{B6E12C10-2D94-48F7-8449-0A7594209AC9}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\Kernel\DMS\CLMSServerPDVD14.exe => No File FirewallRules: [{F8F0D5E5-2ABF-42B5-8C5B-DD45CC27C11A}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD14Agent.exe => No File CMD: mkdir C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer CMD: mkdir C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database CMD: DISM /Online /Cleanup-Image /RestoreHealth CMD: SFC /scannow CMD: findstr /c:"[SR]" \windows\logs\cbs\cbs.log CMD: FOR /F "usebackq delims==" %i IN (`wevtutil el`) DO wevtutil cl "%i" Reboot: