Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

BSoD only when woken from sleep and playing MGSV; sent from tech forum


  • This topic is locked This topic is locked

#31
For the love of sod.

For the love of sod.

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 113 posts

Somehow, as far as I can tell, the first step killed my internet access.  Trying to repair it automatically yielded a message that there was probably an error with the drivers for the local area 4 connexion.  The network centre told me my computer was not connected to a modem or network.

I had to use the restore point that FRST had made before doing the fix.  I'll attach the log, but note that owing to the system restore my system looks as it did right before that log was generated.

And I have not done the second step at-all.

Attached Files


Edited by For the love of sod., 01 October 2015 - 03:30 PM.

  • 0

Advertisements


#32
BrianDrab

BrianDrab

    Trusted Helper

  • Malware Removal
  • 3,591 posts

Sorry that happened but you did very well by going to the restore point. Let's approach the cleanup a little differently.

 

Please download and run the Panda Security removal tool. Reboot if prompted. Let me know if you have any issues.

 

http://www.pandasecu.../card/?Id=82011


  • 0

#33
For the love of sod.

For the love of sod.

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 113 posts

Thanks.  The tool appears to be hanging for a fair twenty minutes now.  Google confirms that this has happened to others.  I think this may be what happened to me the last time I tried to remove it with the tool.


  • 0

#34
BrianDrab

BrianDrab

    Trusted Helper

  • Malware Removal
  • 3,591 posts

Would you mind doing a Clean Boot following the instructions in the article below and then attempting the uninstall again while in a Clean Boot environment?

 

https://support.micr...en-us/kb/929135


  • 0

#35
For the love of sod.

For the love of sod.

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 113 posts

It says I need to reboot the machine before using Generic Uninstaller.  Do note, this is of course after rebooting the machine.


  • 0

#36
BrianDrab

BrianDrab

    Trusted Helper

  • Malware Removal
  • 3,591 posts

OK. Let's skip that for the moment. Please go ahead and do the following.

 

FRST Registry Search
1. Run FRST64 by Right-Clicking on the file and choosing Run as administrator.
2. Copy and paste
ZoneAlarm,Zone Alarm into the Search box and click the Search Registry button.
    Search.JPG
 
3. When the scan is complete a notepad window will open with the results. Please copy and paste the contents in your next reply. If for some reason notepad doesn't open the file should be
    saved on your desktop named Search.txt.


  • 0

#37
For the love of sod.

For the love of sod.

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 113 posts

And here you are, sir:

Farbar Recovery Scan Tool (x64) Version:23-09-2015
Ran by Erik (2015-10-01 20:09:15)
Running from C:\Users\Erik\Desktop
Boot Mode: Normal

================== Search Registry: "ZoneAlarm,Zone Alarm" ===========


====== End of Search ======


  • 0

#38
BrianDrab

BrianDrab

    Trusted Helper

  • Malware Removal
  • 3,591 posts

One more time please. I had a comma instead of a semicolon. My fault.

 

FRST Registry Search
1. Run FRST64 by Right-Clicking on the file and choosing Run as administrator.
2. Copy and paste
ZoneAlarm;Zone Alarm into the Search box and click the Search Registry button.
    Search.JPG
 
3. When the scan is complete a notepad window will open with the results. Please copy and paste the contents in your next reply. If for some reason notepad doesn't open the file should be
    saved on your desktop named Search.txt.


  • 0

#39
For the love of sod.

For the love of sod.

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 113 posts

Ah sure you're grand.  Here it is:

Farbar Recovery Scan Tool (x64) Version:23-09-2015
Ran by Erik (2015-10-01 20:21:14)
Running from C:\Users\Erik\Desktop
Boot Mode: Normal

================== Search Registry: "ZoneAlarm;Zone Alarm" ===========


===================== Search result for "ZoneAlarm" ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\DB2E967B60A830B44969B59901522A6C]
"ZoneAlarm"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\DB2E967B60A830B44969B59901522A6C]
"ProductName"="ZoneAlarm Security"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00A70489854D5A641902FB008E4D8618]
"DB2E967B60A830B44969B59901522A6C"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\zlcomm_loc0c0a.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\061DCC9861F267B41AC1C29475857C35]
"DB2E967B60A830B44969B59901522A6C"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\diagnostics\kave.ini"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFAFF23141ECFF45A98C5CBCC6FD7E4]
"DB2E967B60A830B44969B59901522A6C"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\ZClient.zip.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\14BC9F86F1AD45D43873BA78A76819BD]
"DB2E967B60A830B44969B59901522A6C"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\pyd\_ctypes.pyd"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1BAF6F4DAD1D0574EA37AE1E85F42872]
"0E641459FF949304FA85227505C6D754"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsvault.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1FEF8F5B062BB554291737BBAFFBBD9F]
"DB2E967B60A830B44969B59901522A6C"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\curl-ca-bundle.crt"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\21DACAEC56A90AF42A1891AE87B42461]
"0E641459FF949304FA85227505C6D754"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\ndb.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\223FA682F47F6174A979557583592597]
"DB2E967B60A830B44969B59901522A6C"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsregexp.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2934E1BD93E2E914A99D37BB338DE367]
"DB2E967B60A830B44969B59901522A6C"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmonapi.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\34BEE696B22607D418ABAF7FF0DF91D6]
"0E641459FF949304FA85227505C6D754"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\ZAPrivacyService.exe.config"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\463CADD0A1A748D4D8C8F287E8C87A1A]
"DB2E967B60A830B44969B59901522A6C"="01:\SOFTWARE\CheckPoint\ZoneAlarm\UIState\ShowMonitor"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\46BAC581079409841BF9E919A2D86A51]
"DB2E967B60A830B44969B59901522A6C"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\readme.html"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4B520363CFE931C47BF0BDD9B439BFD2]
"DB2E967B60A830B44969B59901522A6C"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsxml.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4D6DEF2A51FA5C344B7002359BD3A177]
"DB2E967B60A830B44969B59901522A6C"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\zfde.zip.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\51CDF02D10348BF4181C57804C66061F]
"0E641459FF949304FA85227505C6D754"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsvault_loc040c.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5B5B945AADFFECB4696F936C258E5F4B]
"DB2E967B60A830B44969B59901522A6C"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\zlcomm_loc0410.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5F6074F269657104887ED1B50FBC0075]
"DB2E967B60A830B44969B59901522A6C"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\dbghelp.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5FCBF801D99B43645B840DEDCCA704D9]
"DB2E967B60A830B44969B59901522A6C"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\pyd\_socket.pyd"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\61EE1400988BF654F96D5B8EDBE90757]
"DB2E967B60A830B44969B59901522A6C"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsutil_loc040c.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6344971EDDB6E254CBDE0B6DE3BE793C]
"DB2E967B60A830B44969B59901522A6C"="C:\ProgramData\CheckPoint\ZoneAlarm\Data\certs.xml"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\64171660A5BD7C1468BAED8640062F13]
"0E641459FF949304FA85227505C6D754"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\qrbase.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6A05C1BE882BCCC408F78CE6B01D869F]
"0E641459FF949304FA85227505C6D754"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\scheduler_loc040c.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6B89CCF36B260C54A8F37EB7DF28E2A1]
"DB2E967B60A830B44969B59901522A6C"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\zpy.zip.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F0381E444E6AA648B6D5C4C75D29726]
"0E641459FF949304FA85227505C6D754"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsruledb.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\71DC1D91C8E097C4A9BA8E1B1971FA7F]
"0E641459FF949304FA85227505C6D754"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon_loc0410.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\77386F2641568624CA72F0CB8DD7F880]
"0E641459FF949304FA85227505C6D754"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon_loc0c0a.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7A478A4A67DC63F418558AB5CDA4EBCA]
"DB2E967B60A830B44969B59901522A6C"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsinit.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7E9471324BC1E2145845E1637606EF41]
"DB2E967B60A830B44969B59901522A6C"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\zui.zip.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\803BFC11A8D201643AE1BBA6FEB0BAFF]
"0E641459FF949304FA85227505C6D754"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsruledb_loc040c.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\87E5F8B257B97EC40951F40F1BF2135F]
"0E641459FF949304FA85227505C6D754"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsvault_loc0410.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8A9B9DD8917688B46B3F6FA3B6D4F54D]
"DB2E967B60A830B44969B59901522A6C"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\diagnostics\DiagnosticsCaptureTool.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8F284C382B602D7478DA1CEF01118ACC]
"DB2E967B60A830B44969B59901522A6C"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\zdx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\988B24BF74AF5CC41A7C58C29836FE98]
"DB2E967B60A830B44969B59901522A6C"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\zpeng25.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9CF5213E43998654C854B419F0DE2564]
"DB2E967B60A830B44969B59901522A6C"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\fbl.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A089B901B67CE0748AA88C4BD50D57D1]
"DB2E967B60A830B44969B59901522A6C"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\ztv.zip.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A6E483D6F0FD50C40ACCCFA653326EF7]
"DB2E967B60A830B44969B59901522A6C"="02:\SOFTWARE\Zone Labs\ZoneAlarm\Diagnostics\UserDumpPath"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A9D48A1CC619EDC468E3B4D3054DE891]
"0E641459FF949304FA85227505C6D754"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\ffapi.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AECE2176AF5E1864BAC440F0D02CD58A]
"DB2E967B60A830B44969B59901522A6C"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsdata.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B3046214DAEE6A246B8B6E7316B31906]
"0E641459FF949304FA85227505C6D754"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\ZAPrivacyService.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B7027658A0B8E774F91A80F4FCC40224]
"DB2E967B60A830B44969B59901522A6C"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\Help\zahelp.zip"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BE2B910A814CFB341B13B3D3D9BB9F6F]
"0E641459FF949304FA85227505C6D754"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C59542720E53D354A92DDB9A447346B9]
"0E641459FF949304FA85227505C6D754"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsruledb_loc0c0a.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CCFCCC1891E40904899A3566879D171A]
"DB2E967B60A830B44969B59901522A6C"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\diagnostics\cp_ini\za_fulldumps.ini"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D0DFCD17461DFDA41B4E04D271B0FBE5]
"DB2E967B60A830B44969B59901522A6C"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\zlcommdb.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D29A65A3104E2C340BFE40FAE8A91267]
"DB2E967B60A830B44969B59901522A6C"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\diagnostics\vsinit.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D3873A30E6162ED47BA0AB95A3CDDA5F]
"DB2E967B60A830B44969B59901522A6C"="01:\SOFTWARE\Zone Labs\ZoneAlarm\ZoneAlarm Logs"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D60BE5613DFE6AC4C93F1F835DCEE1E2]
"0E641459FF949304FA85227505C6D754"="C:\ProgramData\CheckPoint\ZoneAlarm\Data\vsconfig.tmp"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DEB9571C8E6CC1B4BA6F7D22A9DF81BB]
"0E641459FF949304FA85227505C6D754"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\scheduler_loc0410.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E02821297F70E6F44B20D83CD953476D]
"DB2E967B60A830B44969B59901522A6C"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\zlcomm.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E3C649A9849FBA143943CAA1B6FB6150]
"0E641459FF949304FA85227505C6D754"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\ProdUtils.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ED0F7BCDE5F677D4797D7B485A475F70]
"DB2E967B60A830B44969B59901522A6C"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\diagnostics\cpinfo.ini"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F39C202861CC5394D92BC01541F13711]
"0E641459FF949304FA85227505C6D754"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\Community.CsharpSqlite.SQLiteClient.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA6CDD7CC8A73B242826081F921A23E4]
"0E641459FF949304FA85227505C6D754"="C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsdb.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\0E641459FF949304FA85227505C6D754\InstallProperties]
"DisplayName"="ZoneAlarm Firewall"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\DB2E967B60A830B44969B59901522A6C\InstallProperties]
"DisplayName"="ZoneAlarm Security"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zonealarm-stop.com]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\zonealarm-stop.com]

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\CheckPoint\ZoneAlarm]
"ZALogPath"="C:\ProgramData\CheckPoint\ZoneAlarm\Logs\ZALog.txt"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zonealarm-stop.com]

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\zonealarm-stop.com]

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{B769E2BD-8A06-4B03-9496-5B991025A2C6}]
"DisplayName"="ZoneAlarm Security"

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zonealarm-download-now.com]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\zonealarm-download-now.com]

[HKEY_USERS\S-1-5-21-95435350-4265177964-2103988519-1001\Software\CheckPoint\ZoneAlarm]

[HKEY_USERS\S-1-5-21-95435350-4265177964-2103988519-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zonealarm-stop.com]

[HKEY_USERS\S-1-5-21-95435350-4265177964-2103988519-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\zonealarm-stop.com]

[HKEY_USERS\S-1-5-21-95435350-4265177964-2103988519-1001\Software\Zone Labs\ZoneAlarm]
"ZoneAlarm Desktop"="1"

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zonealarm-download-now.com]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\zonealarm-download-now.com]


===================== Search result for "Zone Alarm" ==========

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_VSDATANT\0000]
"DeviceDesc"="Zone Alarm Firewall Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_VSDATANT\0000]
"DeviceDesc"="Zone Alarm Firewall Driver"

====== End of Search ======


  • 0

#40
BrianDrab

BrianDrab

    Trusted Helper

  • Malware Removal
  • 3,591 posts

Perfect. Please do the following.

 

Step#1 - FRST Fix
NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system
1. Download attached file and save it to the Desktop. Attached File  fixlist.txt   66.19KB   224 downloads
Note. It's important that both files, FRST64 and fixlist.txt are in the same location or the fix will not work (in this case...the desktop).
2. Run FRST64 by Right-Clicking on the file and choosing Run as administrator.
3. Press the Fix button just once and wait. If for some reason the tool needs a restart, please make sure you let the system restart normally. After that let the tool complete its run.
4. When finished FRST64 will generate a log on the Desktop (Fixlog.txt). Please post the contents of it in your reply.


  • 0

Advertisements


#41
For the love of sod.

For the love of sod.

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 113 posts

Fix result of Farbar Recovery Scan Tool (x64) Version:23-09-2015
Ran by Erik (2015-10-01 20:42:01) Run:3
Running from C:\Users\Erik\Desktop
Loaded Profiles: Erik (Available Profiles: Erik & Guest)
Boot Mode: Normal
==============================================

fixlist content:
*****************
CreateRestorePoint:
C:\Program Files (x86)\CheckPoint
C:\ProgramData\CheckPoint
HKLM-x32\...\Run: [] => [X]
Winlogon\Notify\igfxcui: igfxdev.dll [X]
ShortcutTarget: Dell Dock First Run.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (No File)
ShortcutTarget: Dell Dock First Run.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (No File)
ShortcutTarget: Dell Dock.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (No File)
RemoveProxy:
CHR Extension: (Skype Click to Call) - C:\Users\Erik\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-03-28]
2015-10-01 10:14 - 2015-10-01 10:14 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking
2015-10-01 10:14 - 2015-10-01 10:14 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking
2015-10-01 10:16 - 2012-08-10 01:35 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2015-09-25 10:35 - 2014-06-15 20:08 - 1006665521 _____ C:\Windows\MEMORY.DMP
CustomCLSID: HKU\S-1-5-21-95435350-4265177964-2103988519-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Erik\AppData\Roaming\Dropbox\bin\Dropbox.exe /autoplay No File
CustomCLSID: HKU\S-1-5-21-95435350-4265177964-2103988519-1001_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\Erik\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-95435350-4265177964-2103988519-1001_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\Erik\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-95435350-4265177964-2103988519-1001_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}\InprocServer32 -> C:\Users\Erik\AppData\Local\Google\Update\1.3.28.1\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-95435350-4265177964-2103988519-1001_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98}\InprocServer32 -> C:\Users\Erik\AppData\Local\Google\Update\1.3.28.13\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-95435350-4265177964-2103988519-1001_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Erik\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-95435350-4265177964-2103988519-1001_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\Erik\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-95435350-4265177964-2103988519-1001_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\Erik\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll No File
Task: C:\Windows\Tasks\Check for updates (Spybot - Search & Destroy).job => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe
Task: C:\Windows\Tasks\Refresh immunization (Spybot - Search & Destroy).job => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe
Task: C:\Windows\Tasks\Scan the system (Spybot - Search & Destroy).job => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe
AlternateDataStreams: C:\ProgramData:482EE99B1E21CE8C
AlternateDataStreams: C:\Windows\notepad.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\acmigration.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\adtschema.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\advapi32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\aeinv.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\aelupsvc.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\aepdu.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\aepic.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\aitstatic.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-eventing-provider-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\apisetschema.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\apphelp.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\appidapi.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\appidcertstorecheck.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\appidpolicyconverter.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\appidsvc.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\appinfo.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\appraiser.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\appverif.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\atmfd.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\atmlib.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\audiodg.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\AudioEng.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\AUDIOKSE.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\AudioSes.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\audiosrv.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\auditpol.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\authui.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\basesrv.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\blackbox.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\certcli.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\cewmdm.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\charmap.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\ci.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\clfs.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\clfsw32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\comctl32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\CompatTelRunner.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\conhost.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\consent.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\credssp.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\crypt32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\cryptbase.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\cryptnet.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\cryptsp.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\cryptsvc.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\cryptui.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\csrsrv.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\d3d10warp.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\D3DCompiler_33.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\D3DCompiler_34.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\D3DCompiler_35.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\D3DCompiler_36.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\D3DCompiler_37.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\D3DCompiler_38.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\D3DCompiler_39.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\D3DCompiler_40.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\D3DCompiler_41.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\D3DCompiler_42.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\D3DCompiler_43.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\d3dcsx_42.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\d3dcsx_43.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\d3dx10.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\d3dx10_33.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\d3dx10_34.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\d3dx10_35.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\d3dx10_36.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\d3dx10_37.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\d3dx10_38.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\d3dx10_39.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\d3dx10_40.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\d3dx10_41.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\d3dx10_43.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\d3dx11_42.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\d3dx11_43.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\d3dx9_24.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\d3dx9_25.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\d3dx9_26.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\d3dx9_27.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\d3dx9_28.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\d3dx9_29.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\d3dx9_30.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\d3dx9_31.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\d3dx9_33.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\d3dx9_34.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\d3dx9_35.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\d3dx9_36.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\D3DX9_37.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\D3DX9_38.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\D3DX9_39.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\D3DX9_40.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\D3DX9_41.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\D3DX9_42.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\D3DX9_43.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\d3dxof.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\davclnt.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\dciman32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\devinv.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\dfshim.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\diagtrack.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\diskperf.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\drmmgrtn.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\drmv2clt.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\dwmapi.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\dwmcore.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\DWrite.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\dxcap.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\dxcpl.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\dxmasf.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\dxtmsft.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\dxtrans.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\EncDump.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\evr.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\FntCache.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\fontsub.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\gdi32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\generaltel.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\ieframe.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\iertutil.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\ieui.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\ieUnatt.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\IMJP10K.DLL:$CmdTcID
AlternateDataStreams: C:\Windows\system32\inetcpl.cpl:$CmdTcID
AlternateDataStreams: C:\Windows\system32\InkEd.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\invagent.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\jnwmon.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\jscript.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\jscript9.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\jsproxy.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\KBDBASH.DLL:$CmdTcID
AlternateDataStreams: C:\Windows\system32\KBDRU.DLL:$CmdTcID
AlternateDataStreams: C:\Windows\system32\KBDRU1.DLL:$CmdTcID
AlternateDataStreams: C:\Windows\system32\KBDTAT.DLL:$CmdTcID
AlternateDataStreams: C:\Windows\system32\KBDYAK.DLL:$CmdTcID
AlternateDataStreams: C:\Windows\system32\kerberos.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\kernel32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\KernelBase.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\logman.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\lpk.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\lsasrv.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\lsass.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\mf.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\mfc110.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\mferror.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\mfplat.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\mfpmp.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\mfps.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\microsoft.windows.softwarelogo.showdesktop.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\MpSigStub.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\MRT.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msaudite.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\mscorier.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\mscories.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msctf.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msdxm.ocx:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msfeeds.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msfeedsbs.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msfeedssync.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\mshta.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\mshtml.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\mshtmled.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msi.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msiexec.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msihnd.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msimsg.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msmmsp.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msmpeg2vdec.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msnetobj.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msobjs.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msscp.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\mstscax.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msv1_0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msxml3.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msxml3r.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msxml6.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msxml6r.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\ncrypt.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\nlasvc.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\notepad.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\ntdll.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\ntoskrnl.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\ntvdm64.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\ole32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\oleaut32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\OpenAL32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\osk.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\packager.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\pcadm.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\pcaevts.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\pcalua.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\pcasvc.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\pcawrk.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\pku2u.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\poqexec.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\profsvc.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\qdvd.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\quartz.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\rastls.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\rdpcorekmts.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\rdvidcrl.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\relog.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\rpcrt4.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\rrinstaller.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\rstrui.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\scesrv.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\schannel.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\schedsvc.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\sdbinst.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\sechost.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\secur32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\services.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\setbcdlocale.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\shell32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\shimeng.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\smss.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\spwmp.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\srclient.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\srcore.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\sspicli.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\sspisrv.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\sysmain.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\tdh.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\termsrv.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\tracerpt.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\tsgqec.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\TSpkg.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\TSWbPrxy.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\TSWorkspace.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\typeperf.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\tzres.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\ucrtbase.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\url.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\urlmon.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\UtcResources.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\vbscript.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\vsgraphicsremoteengine.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\vsjitdebugger.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\WdfCoInstaller01009.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wdigest.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\win32k.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\WindowsCodecs.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wininet.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\winload.efi:$CmdTcID
AlternateDataStreams: C:\Windows\system32\winload.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\winlogon.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\winresume.efi:$CmdTcID
AlternateDataStreams: C:\Windows\system32\winresume.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\WinSetupUI.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\winsrv.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\winsta.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wintrust.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wksprt.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wmdrmsdk.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wmp.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\WMPhoto.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wmploc.DLL:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wow64.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wow64cpu.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wow64win.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wpdshext.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wrap_oal.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\WSManHTTPConfig.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\WSManMigrationPlugin.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\WsmAuto.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\WsmSvc.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\WsmWmiPl.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wu.upgrade.ps.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wuapi.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wuapp.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wuauclt.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wuaueng.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wucltux.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wudriver.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wups.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wups2.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wuwebv.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\x3daudio1_0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\x3daudio1_1.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\X3DAudio1_2.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\X3DAudio1_3.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\X3DAudio1_4.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\X3DAudio1_5.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\X3DAudio1_6.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\X3DAudio1_7.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\xactengine2_0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\xactengine2_1.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\xactengine2_10.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\xactengine2_2.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\xactengine2_3.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\xactengine2_4.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\xactengine2_5.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\xactengine2_6.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\xactengine2_7.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\xactengine2_8.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\xactengine2_9.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\xactengine3_0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\xactengine3_1.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\xactengine3_2.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\xactengine3_3.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\xactengine3_4.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\xactengine3_5.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\xactengine3_6.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\xactengine3_7.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\XAPOFX1_0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\XAPOFX1_1.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\XAPOFX1_2.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\XAPOFX1_3.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\XAPOFX1_4.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\XAPOFX1_5.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\XAudio2_0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\XAudio2_1.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\XAudio2_2.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\XAudio2_3.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\XAudio2_4.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\XAudio2_5.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\XAudio2_6.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\XAudio2_7.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\xinput1_1.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\xinput1_2.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\xinput1_3.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\xvid.ax:$CmdTcID
AlternateDataStreams: C:\Windows\system32\xvidcore.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\xvidvfw.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\zlib.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\adtschema.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\advapi32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-file-l1-2-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-file-l2-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-localization-l1-2-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-synch-l1-2-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-eventing-provider-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\apisetschema.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\apphelp.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\appidapi.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\appverif.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\atmfd.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\atmlib.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\AudioEng.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\AUDIOKSE.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\AudioSes.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\auditpol.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\authui.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\blackbox.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\certcli.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\cewmdm.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\charmap.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\clfsw32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\comctl32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\credssp.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\crypt32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\cryptbase.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\cryptnet.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\cryptsp.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\cryptsvc.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\cryptui.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\d3d10warp.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\D3DCompiler_33.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\D3DCompiler_34.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\D3DCompiler_35.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\D3DCompiler_36.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\D3DCompiler_37.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\D3DCompiler_38.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\D3DCompiler_39.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\D3DCompiler_40.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\D3DCompiler_42.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\D3DCompiler_43.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\d3dcsx_42.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\d3dcsx_43.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\d3dx10.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\d3dx10_33.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\d3dx10_34.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\d3dx10_35.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\d3dx10_36.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\d3dx10_37.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\d3dx10_38.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\d3dx10_39.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\d3dx10_40.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\d3dx10_43.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\d3dx11_42.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\d3dx11_43.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\d3dx9_24.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\d3dx9_25.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\d3dx9_26.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\d3dx9_27.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\d3dx9_28.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\d3dx9_29.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\d3dx9_30.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\d3dx9_31.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\d3dx9_33.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\d3dx9_34.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\d3dx9_35.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\d3dx9_36.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\D3DX9_37.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\D3DX9_38.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\D3DX9_39.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\D3DX9_40.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\D3DX9_41.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\D3DX9_42.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\D3DX9_43.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\davclnt.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\dciman32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\dfshim.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\diskperf.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\drmmgrtn.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\drmv2clt.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\dwmapi.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\dwmcore.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\DWrite.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\dxcap.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\dxcpl.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\dxmasf.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\dxtmsft.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\dxtrans.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\evr.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\fontsub.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\gdi32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\HTMLWH.DLL:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\ieframe.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\iertutil.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\ieui.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\ieUnatt.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\IMJP10K.DLL:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\inetcpl.cpl:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\INETWH32.DLL:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\InkEd.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\instnm.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\javaws.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\jscript.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\jscript9.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\jsproxy.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\KBDBASH.DLL:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\KBDRU.DLL:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\KBDRU1.DLL:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\KBDTAT.DLL:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\KBDYAK.DLL:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\kerberos.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\kernel32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\KernelBase.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\logman.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\lpk.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\mf.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\mferror.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\mfplat.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\mfpmp.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\mfps.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msaudite.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\mscorier.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\mscories.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msctf.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msdxm.ocx:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msfeeds.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msfeedsbs.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msfeedssync.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\mshta.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\mshtml.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\mshtmled.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msi.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msiexec.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msihnd.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msimsg.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msmpeg2vdec.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msnetobj.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msobjs.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msscp.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\mstscax.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msv1_0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msxml3.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msxml3r.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msxml6.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msxml6r.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\ncrypt.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\ncsi.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\nlaapi.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\notepad.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\ntdll.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\ntkrnlpa.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\ntoskrnl.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\ntvdm64.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\ole32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\oleaut32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\OpenAL32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\osk.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\packager.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\pku2u.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\poqexec.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\qdvd.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\quartz.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\rastls.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\rdvidcrl.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\relog.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\ROBOEX32.DLL:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\rpcrt4.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\rrinstaller.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\scesrv.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\schannel.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\sdbinst.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\sechost.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\secur32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\setup16.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\shell32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\shimeng.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\spwmp.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\srclient.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\sspicli.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\tdh.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\tracerpt.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\tsgqec.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\TSpkg.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\TSWorkspace.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\typeperf.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\tzres.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\ucrtbase.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\url.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\urlmon.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\user.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\vbscript.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\vcamp140.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\vsd3dwarpdebug.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\vsgraphicsremoteengine.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\vsjitdebugger.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\wdigest.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\WebClnt.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\WindowsCodecs.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\wininet.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\winsta.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\wintrust.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\wmdrmsdk.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\wmp.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\WMPhoto.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\wmploc.DLL:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\wow32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\wpdshext.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\wrap_oal.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\WSManHTTPConfig.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\WSManMigrationPlugin.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\WsmAuto.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\WsmSvc.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\WsmWmiPl.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\wuapi.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\wuapp.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\wudriver.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\wups.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\wuwebv.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\x3daudio1_0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\x3daudio1_1.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\X3DAudio1_2.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\X3DAudio1_3.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\X3DAudio1_4.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\X3DAudio1_5.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\X3DAudio1_6.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\X3DAudio1_7.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\xactengine2_0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\xactengine2_1.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\xactengine2_10.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\xactengine2_2.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\xactengine2_3.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\xactengine2_4.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\xactengine2_5.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\xactengine2_6.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\xactengine2_7.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\xactengine2_8.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\xactengine2_9.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\xactengine3_0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\xactengine3_1.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\xactengine3_2.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\xactengine3_3.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\xactengine3_4.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\xactengine3_5.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\xactengine3_6.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\xactengine3_7.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\XAPOFX1_0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\XAPOFX1_1.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\XAPOFX1_2.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\XAPOFX1_4.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\XAPOFX1_5.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\XAudio2_0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\XAudio2_1.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\XAudio2_2.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\XAudio2_3.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\XAudio2_4.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\XAudio2_6.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\XAudio2_7.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\xinput1_1.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\xinput1_2.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\xliveinstallhost.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\xvid.ax:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\xvidcore.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\xvidvfw.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\afd.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\appid.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\cng.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\dxgkrnl.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\http.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\ksecdd.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\ksecpkg.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\mbam.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\mbamchameleon.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\mountmgr.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\mrxdav.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\mrxsmb.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\mrxsmb10.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\mrxsmb20.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\mwac.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\PEAuth.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\rdpwd.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\ScreamingBAudio64.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\Sftfslh.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\Sftplaylh.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\Sftredirlh.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\Sftvollh.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\stream.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\tdx.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\tssecsrv.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\wdcsam64.sys:$CmdTcID
AlternateDataStreams: C:\Users\All Users:482EE99B1E21CE8C
AlternateDataStreams: C:\ProgramData\Application Data:482EE99B1E21CE8C
AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxldtlfudivq`qsp`26hfm
AlternateDataStreams: C:\ProgramData\TEMP:30FD0CBD
AlternateDataStreams: C:\ProgramData\TEMP:C8B8CEBD
AlternateDataStreams: C:\Users\Erik\Cookies:iAbYWnLo4E0biseBTur5Hfa
AlternateDataStreams: C:\Users\Erik\Cookies:OZC7l67cDbfZPHuZBwh
AlternateDataStreams: C:\Users\Erik\Local Settings:4EUhZg4kRrP3RyMxteBnNq
AlternateDataStreams: C:\Users\Erik\Downloads\270536745794.jpg:$CmdZnID
AlternateDataStreams: C:\Users\Erik\Downloads\28c4b98ba3c859c4bc34da57b0a5a7ac.jpg:$CmdZnID
AlternateDataStreams: C:\Users\Erik\Downloads\347.52-desktop-win8-win7-winvista-64bit-international-whql.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\355.60-desktop-win8-win7-winvista-64bit-international-whql.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\asioconfig.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\Beauty and the Beast STORY (revisions)(1).doc:$CmdZnID
AlternateDataStreams: C:\Users\Erik\Downloads\ccsetup509.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\Clock(1).fbx:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\Clock(1).fbx:$CmdZnID
AlternateDataStreams: C:\Users\Erik\Downloads\clockface.jpg:$CmdZnID
AlternateDataStreams: C:\Users\Erik\Downloads\Cold_Fear_Downloader.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\cpu-z_1.73-en.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\CreepyKey.fbx:$CmdZnID
AlternateDataStreams: C:\Users\Erik\Downloads\dm log collector.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\dpclat.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\drivercleaning1.71.bat:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\DriverSweeper_3.2.0.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\form.loan.discharge.false.certification.disqualifying.status.pdf:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\form.loan.discharge.false.certification.disqualifying.status.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Erik\Downloads\FreemakeVideoConverterSetup.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\Geekbench-3.3.2-WindowsSetup.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\gfwlivesetup.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\gimp-2.8.14-setup-1.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\GitHubSetup.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\Handle.fbx:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\Handle.fbx:$CmdZnID
AlternateDataStreams: C:\Users\Erik\Downloads\Handle2.fbx:$CmdZnID
AlternateDataStreams: C:\Users\Erik\Downloads\hwmonitor_1.27.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\hwmonitor_1.28.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\ImageMagick-6.9.1-1-Q16-x64-dll.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\instspeedfan451.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\iZotope_Vinyl_Setup_v1_73b.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\jxpiinstall.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\LionNormal.png:$CmdZnID
AlternateDataStreams: C:\Users\Erik\Downloads\MaPZone2_2_6_1a.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\MiniToolBox.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\MorphVOXJunior_Install-1.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\OBS_0_638b_Installer.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\open3mod_1_1_setup.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\p4vinst64.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\patch_among_the_sleep_2.1.2.8.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\pc-decrapifier-3.0.0.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\perforce64.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\Prepros-Windows-5.9.3.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\reaper478_x64-install.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\reaper501_x64-install.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\reaper50_x64-install.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\SeaToolsforWindowsSetup.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\setup-lightshot.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\setup_among_the_sleep_2.1.0.6.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\setup_downfall_2.0.0.5.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\setup_the_cat_lady_2.2.0.6.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\Setup_WinThruster_2015.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\shexview_setup.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\Shotgun.fbx:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\Shotgun.fbx:$CmdZnID
AlternateDataStreams: C:\Users\Erik\Downloads\SketchUpMake-en-x64.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\SkypeSetupFull.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\SlackSetup.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\spsetup127.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\spsetup128.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\tumblr_mcj9658Nd61qcej2y.jpg:$CmdZnID
AlternateDataStreams: C:\Users\Erik\Downloads\tweaking.com_windows_repair_aio_setup.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\UNi Xonar 1822 v1.75a r2.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\vs_community.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\vs_community2013.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\windirstat1_1_2_setup.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\x64_okino_nugraf_and_polytrans_full_demo_2014-g8.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\x64_okino_plugins_superinstaller_demo_2015_r1_vc10.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\Downloads\xnormal_3.18.10_installer.exe:$CmdTcID
AlternateDataStreams: C:\Users\Erik\AppData\Local:4EUhZg4kRrP3RyMxteBnNq
AlternateDataStreams: C:\Users\Erik\AppData\Local\Application Data:4EUhZg4kRrP3RyMxteBnNq
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\DB2E967B60A830B44969B59901522A6C]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00A70489854D5A641902FB008E4D8618]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\061DCC9861F267B41AC1C29475857C35]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFAFF23141ECFF45A98C5CBCC6FD7E4]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\14BC9F86F1AD45D43873BA78A76819BD]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1BAF6F4DAD1D0574EA37AE1E85F42872]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1FEF8F5B062BB554291737BBAFFBBD9F]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\21DACAEC56A90AF42A1891AE87B42461]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\223FA682F47F6174A979557583592597]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2934E1BD93E2E914A99D37BB338DE367]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\34BEE696B22607D418ABAF7FF0DF91D6]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\463CADD0A1A748D4D8C8F287E8C87A1A]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\46BAC581079409841BF9E919A2D86A51]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4B520363CFE931C47BF0BDD9B439BFD2]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4D6DEF2A51FA5C344B7002359BD3A177]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\51CDF02D10348BF4181C57804C66061F]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5B5B945AADFFECB4696F936C258E5F4B]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5F6074F269657104887ED1B50FBC0075]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5FCBF801D99B43645B840DEDCCA704D9]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\61EE1400988BF654F96D5B8EDBE90757]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6344971EDDB6E254CBDE0B6DE3BE793C]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\64171660A5BD7C1468BAED8640062F13]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6A05C1BE882BCCC408F78CE6B01D869F]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6B89CCF36B260C54A8F37EB7DF28E2A1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F0381E444E6AA648B6D5C4C75D29726]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\71DC1D91C8E097C4A9BA8E1B1971FA7F]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\77386F2641568624CA72F0CB8DD7F880]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7A478A4A67DC63F418558AB5CDA4EBCA]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7E9471324BC1E2145845E1637606EF41]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\803BFC11A8D201643AE1BBA6FEB0BAFF]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\87E5F8B257B97EC40951F40F1BF2135F]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8A9B9DD8917688B46B3F6FA3B6D4F54D]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8F284C382B602D7478DA1CEF01118ACC]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\988B24BF74AF5CC41A7C58C29836FE98]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9CF5213E43998654C854B419F0DE2564]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A089B901B67CE0748AA88C4BD50D57D1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A6E483D6F0FD50C40ACCCFA653326EF7]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A9D48A1CC619EDC468E3B4D3054DE891]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AECE2176AF5E1864BAC440F0D02CD58A]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B3046214DAEE6A246B8B6E7316B31906]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B7027658A0B8E774F91A80F4FCC40224]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BE2B910A814CFB341B13B3D3D9BB9F6F]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C59542720E53D354A92DDB9A447346B9]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CCFCCC1891E40904899A3566879D171A]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D0DFCD17461DFDA41B4E04D271B0FBE5]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D29A65A3104E2C340BFE40FAE8A91267]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D3873A30E6162ED47BA0AB95A3CDDA5F]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D60BE5613DFE6AC4C93F1F835DCEE1E2]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DEB9571C8E6CC1B4BA6F7D22A9DF81BB]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E02821297F70E6F44B20D83CD953476D]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E3C649A9849FBA143943CAA1B6FB6150]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ED0F7BCDE5F677D4797D7B485A475F70]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F39C202861CC5394D92BC01541F13711]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA6CDD7CC8A73B242826081F921A23E4]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\0E641459FF949304FA85227505C6D754]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\DB2E967B60A830B44969B59901522A6C]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zonealarm-stop.com]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\zonealarm-stop.com]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\CheckPoint\ZoneAlarm]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zonealarm-stop.com]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\zonealarm-stop.com]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{B769E2BD-8A06-4B03-9496-5B991025A2C6}]
[-HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zonealarm-download-now.com]
[-HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\zonealarm-download-now.com]
[-HKEY_USERS\S-1-5-21-95435350-4265177964-2103988519-1001\Software\CheckPoint]
[-HKEY_USERS\S-1-5-21-95435350-4265177964-2103988519-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zonealarm-stop.com]
[-HKEY_USERS\S-1-5-21-95435350-4265177964-2103988519-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\zonealarm-stop.com]
[-HKEY_USERS\S-1-5-21-95435350-4265177964-2103988519-1001\Software\Zone Labs]
[-HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zonealarm-download-now.com]
[-HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\zonealarm-download-now.com]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_VSDATANT]
EmptyTemp:
*****************

Restore point was successfully created.
"C:\Program Files (x86)\CheckPoint" => File/Folder not found.
C:\ProgramData\CheckPoint => moved successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui" => key removed successfully
C:\Program Files\Dell\DellDock\DellDock.exe => not found.
C:\Program Files\Dell\DellDock\DellDock.exe => not found.
C:\Program Files\Dell\DellDock\DellDock.exe => not found.

========= RemoveProxy: =========

HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable => value removed successfully
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully
HKU\S-1-5-21-95435350-4265177964-2103988519-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully
HKU\S-1-5-21-95435350-4265177964-2103988519-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully


========= End of RemoveProxy: =========

C:\Users\Erik\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl => not found
"C:\Windows\System32\Tasks\Safer-Networking" => File/Folder not found.
"C:\Windows\System32\Tasks\Safer-Networking" => File/Folder not found.
"C:\ProgramData\Spybot - Search & Destroy" => File/Folder not found.
C:\Windows\MEMORY.DMP => moved successfully
"HKU\S-1-5-21-95435350-4265177964-2103988519-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}" => key removed successfully
"HKU\S-1-5-21-95435350-4265177964-2103988519-1001_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}" => key removed successfully
"HKU\S-1-5-21-95435350-4265177964-2103988519-1001_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}" => key removed successfully
"HKU\S-1-5-21-95435350-4265177964-2103988519-1001_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}" => key removed successfully
"HKU\S-1-5-21-95435350-4265177964-2103988519-1001_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98}" => key removed successfully
"HKU\S-1-5-21-95435350-4265177964-2103988519-1001_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}" => key removed successfully
"HKU\S-1-5-21-95435350-4265177964-2103988519-1001_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}" => key removed successfully
"HKU\S-1-5-21-95435350-4265177964-2103988519-1001_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}" => key removed successfully
C:\Windows\Tasks\Check for updates (Spybot - Search & Destroy).job => moved successfully
C:\Windows\Tasks\Refresh immunization (Spybot - Search & Destroy).job => moved successfully
C:\Windows\Tasks\Scan the system (Spybot - Search & Destroy).job => moved successfully
C:\ProgramData => ":482EE99B1E21CE8C" ADS removed successfully.
C:\Windows\notepad.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\acmigration.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\adtschema.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\advapi32.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\aeinv.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\aelupsvc.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\aepdu.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\aepic.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\aitstatic.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-eventing-provider-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\apisetschema.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\apphelp.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\appidapi.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\appidcertstorecheck.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\appidpolicyconverter.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\appidsvc.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\appinfo.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\appraiser.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\appverif.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\atmfd.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\atmlib.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\audiodg.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\AudioEng.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\AUDIOKSE.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\AudioSes.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\audiosrv.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\auditpol.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\authui.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\basesrv.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\blackbox.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\certcli.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\cewmdm.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\charmap.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\ci.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\clfs.sys => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\clfsw32.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\comctl32.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\CompatTelRunner.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\conhost.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\consent.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\credssp.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\crypt32.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\cryptbase.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\cryptnet.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\cryptsp.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\cryptsvc.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\cryptui.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\csrsrv.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\d3d10warp.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\D3DCompiler_33.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\D3DCompiler_34.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\D3DCompiler_35.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\D3DCompiler_36.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\D3DCompiler_37.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\D3DCompiler_38.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\D3DCompiler_39.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\D3DCompiler_40.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\D3DCompiler_41.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\D3DCompiler_42.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\D3DCompiler_43.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\d3dcsx_42.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\d3dcsx_43.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\d3dx10.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\d3dx10_33.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\d3dx10_34.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\d3dx10_35.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\d3dx10_36.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\d3dx10_37.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\d3dx10_38.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\d3dx10_39.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\d3dx10_40.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\d3dx10_41.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\d3dx10_43.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\d3dx11_42.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\d3dx11_43.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\d3dx9_24.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\d3dx9_25.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\d3dx9_26.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\d3dx9_27.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\d3dx9_28.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\d3dx9_29.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\d3dx9_30.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\d3dx9_31.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\d3dx9_33.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\d3dx9_34.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\d3dx9_35.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\d3dx9_36.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\D3DX9_37.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\D3DX9_38.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\D3DX9_39.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\D3DX9_40.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\D3DX9_41.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\D3DX9_42.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\D3DX9_43.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\d3dxof.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\davclnt.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\dciman32.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\devinv.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\dfshim.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\diagtrack.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\diskperf.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\drmmgrtn.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\drmv2clt.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\dwmapi.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\dwmcore.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\DWrite.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\dxcap.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\dxcpl.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\dxmasf.dll => ":$CmdTcID" ADS removed successfully.
"C:\Windows\system32\dxtmsft.dll" => ":$CmdTcID" ADS not found.
"C:\Windows\system32\dxtrans.dll" => ":$CmdTcID" ADS not found.
C:\Windows\system32\EncDump.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\evr.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\FntCache.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\fontsub.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\gdi32.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\generaltel.dll => ":$CmdTcID" ADS removed successfully.
"C:\Windows\system32\ieframe.dll" => ":$CmdTcID" ADS not found.
"C:\Windows\system32\iertutil.dll" => ":$CmdTcID" ADS not found.
"C:\Windows\system32\ieui.dll" => ":$CmdTcID" ADS not found.
"C:\Windows\system32\ieUnatt.exe" => ":$CmdTcID" ADS not found.
C:\Windows\system32\IMJP10K.DLL => ":$CmdTcID" ADS removed successfully.
"C:\Windows\system32\inetcpl.cpl" => ":$CmdTcID" ADS not found.
C:\Windows\system32\InkEd.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\invagent.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\jnwmon.dll => ":$CmdTcID" ADS removed successfully.
"C:\Windows\system32\jscript.dll" => ":$CmdTcID" ADS not found.
"C:\Windows\system32\jscript9.dll" => ":$CmdTcID" ADS not found.
"C:\Windows\system32\jsproxy.dll" => ":$CmdTcID" ADS not found.
C:\Windows\system32\KBDBASH.DLL => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\KBDRU.DLL => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\KBDRU1.DLL => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\KBDTAT.DLL => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\KBDYAK.DLL => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\kerberos.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\kernel32.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\KernelBase.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\logman.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\lpk.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\lsasrv.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\lsass.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\mf.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\mfc110.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\mferror.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\mfplat.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\mfpmp.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\mfps.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\microsoft.windows.softwarelogo.showdesktop.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\MpSigStub.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\MRT.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\msaudite.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\mscorier.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\mscories.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\msctf.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\msdxm.ocx => ":$CmdTcID" ADS removed successfully.
"C:\Windows\system32\msfeeds.dll" => ":$CmdTcID" ADS not found.
"C:\Windows\system32\msfeedsbs.dll" => ":$CmdTcID" ADS not found.
"C:\Windows\system32\msfeedssync.exe" => ":$CmdTcID" ADS not found.
"C:\Windows\system32\mshta.exe" => ":$CmdTcID" ADS not found.
"C:\Windows\system32\mshtml.dll" => ":$CmdTcID" ADS not found.
"C:\Windows\system32\mshtmled.dll" => ":$CmdTcID" ADS not found.
C:\Windows\system32\msi.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\msiexec.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\msihnd.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\msimsg.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\msmmsp.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\msmpeg2vdec.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\msnetobj.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\msobjs.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\msscp.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\mstscax.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\msv1_0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\msxml3.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\msxml3r.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\msxml6.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\msxml6r.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\ncrypt.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\nlasvc.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\notepad.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\ntdll.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\ntoskrnl.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\ntvdm64.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\ole32.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\oleaut32.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\OpenAL32.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\osk.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\packager.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\pcadm.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\pcaevts.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\pcalua.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\pcasvc.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\pcawrk.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\pku2u.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\poqexec.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\profsvc.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\qdvd.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\quartz.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\rastls.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\rdpcorekmts.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\rdvidcrl.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\relog.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\rpcrt4.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\rrinstaller.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\rstrui.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\scesrv.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\schannel.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\schedsvc.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\sdbinst.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\sechost.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\secur32.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\services.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\setbcdlocale.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\shell32.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\shimeng.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\smss.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\spwmp.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\srclient.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\srcore.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\sspicli.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\sspisrv.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\sysmain.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\tdh.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\termsrv.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\tracerpt.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\tsgqec.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\TSpkg.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\TSWbPrxy.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\TSWorkspace.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\typeperf.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\tzres.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\ucrtbase.dll => ":$CmdTcID" ADS removed successfully.
"C:\Windows\system32\url.dll" => ":$CmdTcID" ADS not found.
"C:\Windows\system32\urlmon.dll" => ":$CmdTcID" ADS not found.
C:\Windows\system32\UtcResources.dll => ":$CmdTcID" ADS removed successfully.
"C:\Windows\system32\vbscript.dll" => ":$CmdTcID" ADS not found.
C:\Windows\system32\vsgraphicsremoteengine.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\vsjitdebugger.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\WdfCoInstaller01009.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\wdigest.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\win32k.sys => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\WindowsCodecs.dll => ":$CmdTcID" ADS removed successfully.
"C:\Windows\system32\wininet.dll" => ":$CmdTcID" ADS not found.
C:\Windows\system32\winload.efi => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\winload.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\winlogon.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\winresume.efi => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\winresume.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\WinSetupUI.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\winsrv.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\winsta.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\wintrust.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\wksprt.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\wmdrmsdk.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\wmp.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\WMPhoto.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\wmploc.DLL => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\wow64.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\wow64cpu.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\wow64win.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\wpdshext.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\wrap_oal.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\WSManHTTPConfig.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\WSManMigrationPlugin.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\WsmAuto.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\WsmSvc.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\WsmWmiPl.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\wu.upgrade.ps.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\wuapi.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\wuapp.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\wuauclt.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\wuaueng.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\wucltux.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\wudriver.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\wups.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\wups2.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\wuwebv.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\x3daudio1_0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\x3daudio1_1.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\X3DAudio1_2.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\X3DAudio1_3.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\X3DAudio1_4.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\X3DAudio1_5.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\X3DAudio1_6.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\X3DAudio1_7.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\xactengine2_0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\xactengine2_1.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\xactengine2_10.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\xactengine2_2.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\xactengine2_3.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\xactengine2_4.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\xactengine2_5.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\xactengine2_6.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\xactengine2_7.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\xactengine2_8.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\xactengine2_9.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\xactengine3_0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\xactengine3_1.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\xactengine3_2.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\xactengine3_3.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\xactengine3_4.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\xactengine3_5.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\xactengine3_6.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\xactengine3_7.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\XAPOFX1_0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\XAPOFX1_1.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\XAPOFX1_2.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\XAPOFX1_3.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\XAPOFX1_4.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\XAPOFX1_5.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\XAudio2_0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\XAudio2_1.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\XAudio2_2.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\XAudio2_3.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\XAudio2_4.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\XAudio2_5.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\XAudio2_6.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\XAudio2_7.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\xinput1_1.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\xinput1_2.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\xinput1_3.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\xvid.ax => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\xvidcore.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\xvidvfw.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\zlib.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\adtschema.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\advapi32.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-file-l1-2-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-file-l2-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-localization-l1-2-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-synch-l1-2-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-eventing-provider-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\apisetschema.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\apphelp.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\appidapi.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\appverif.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\atmfd.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\atmlib.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\AudioEng.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\AUDIOKSE.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\AudioSes.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\auditpol.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\authui.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\blackbox.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\certcli.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\cewmdm.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\charmap.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\clfsw32.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\comctl32.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\credssp.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\crypt32.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\cryptbase.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\cryptnet.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\cryptsp.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\cryptsvc.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\cryptui.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\d3d10warp.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\D3DCompiler_33.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\D3DCompiler_34.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\D3DCompiler_35.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\D3DCompiler_36.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\D3DCompiler_37.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\D3DCompiler_38.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\D3DCompiler_39.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\D3DCompiler_40.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\D3DCompiler_42.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\D3DCompiler_43.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\d3dcsx_42.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\d3dcsx_43.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\d3dx10.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\d3dx10_33.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\d3dx10_34.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\d3dx10_35.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\d3dx10_36.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\d3dx10_37.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\d3dx10_38.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\d3dx10_39.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\d3dx10_40.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\d3dx10_43.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\d3dx11_42.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\d3dx11_43.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\d3dx9_24.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\d3dx9_25.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\d3dx9_26.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\d3dx9_27.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\d3dx9_28.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\d3dx9_29.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\d3dx9_30.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\d3dx9_31.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\d3dx9_33.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\d3dx9_34.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\d3dx9_35.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\d3dx9_36.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\D3DX9_37.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\D3DX9_38.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\D3DX9_39.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\D3DX9_40.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\D3DX9_41.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\D3DX9_42.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\D3DX9_43.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\davclnt.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\dciman32.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\dfshim.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\diskperf.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\drmmgrtn.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\drmv2clt.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\dwmapi.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\dwmcore.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\DWrite.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\dxcap.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\dxcpl.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\dxmasf.dll => ":$CmdTcID" ADS removed successfully.
"C:\Windows\SysWOW64\dxtmsft.dll" => ":$CmdTcID" ADS not found.
"C:\Windows\SysWOW64\dxtrans.dll" => ":$CmdTcID" ADS not found.
C:\Windows\SysWOW64\evr.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\fontsub.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\gdi32.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\HTMLWH.DLL => ":$CmdTcID" ADS removed successfully.
"C:\Windows\SysWOW64\ieframe.dll" => ":$CmdTcID" ADS not found.
"C:\Windows\SysWOW64\iertutil.dll" => ":$CmdTcID" ADS not found.
"C:\Windows\SysWOW64\ieui.dll" => ":$CmdTcID" ADS not found.
"C:\Windows\SysWOW64\ieUnatt.exe" => ":$CmdTcID" ADS not found.
C:\Windows\SysWOW64\IMJP10K.DLL => ":$CmdTcID" ADS removed successfully.
"C:\Windows\SysWOW64\inetcpl.cpl" => ":$CmdTcID" ADS not found.
C:\Windows\SysWOW64\INETWH32.DLL => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\InkEd.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\instnm.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\javaws.exe => ":$CmdTcID" ADS removed successfully.
"C:\Windows\SysWOW64\jscript.dll" => ":$CmdTcID" ADS not found.
"C:\Windows\SysWOW64\jscript9.dll" => ":$CmdTcID" ADS not found.
"C:\Windows\SysWOW64\jsproxy.dll" => ":$CmdTcID" ADS not found.
C:\Windows\SysWOW64\KBDBASH.DLL => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\KBDRU.DLL => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\KBDRU1.DLL => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\KBDTAT.DLL => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\KBDYAK.DLL => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\kerberos.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\kernel32.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\KernelBase.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\logman.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\lpk.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\mf.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\mferror.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\mfplat.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\mfpmp.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\mfps.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\msaudite.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\mscorier.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\mscories.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\msctf.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\msdxm.ocx => ":$CmdTcID" ADS removed successfully.
"C:\Windows\SysWOW64\msfeeds.dll" => ":$CmdTcID" ADS not found.
"C:\Windows\SysWOW64\msfeedsbs.dll" => ":$CmdTcID" ADS not found.
"C:\Windows\SysWOW64\msfeedssync.exe" => ":$CmdTcID" ADS not found.
"C:\Windows\SysWOW64\mshta.exe" => ":$CmdTcID" ADS not found.
"C:\Windows\SysWOW64\mshtml.dll" => ":$CmdTcID" ADS not found.
"C:\Windows\SysWOW64\mshtmled.dll" => ":$CmdTcID" ADS not found.
C:\Windows\SysWOW64\msi.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\msiexec.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\msihnd.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\msimsg.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\msmpeg2vdec.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\msnetobj.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\msobjs.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\msscp.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\mstscax.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\msv1_0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\msxml3.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\msxml3r.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\msxml6.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\msxml6r.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\ncrypt.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\ncsi.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\nlaapi.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\notepad.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\ntdll.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\ntkrnlpa.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\ntoskrnl.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\ntvdm64.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\ole32.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\oleaut32.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\OpenAL32.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\osk.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\packager.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\pku2u.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\poqexec.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\qdvd.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\quartz.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\rastls.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\rdvidcrl.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\relog.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\ROBOEX32.DLL => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\rpcrt4.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\rrinstaller.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\scesrv.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\schannel.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\sdbinst.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\sechost.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\secur32.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\setup16.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\shell32.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\shimeng.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\spwmp.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\srclient.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\sspicli.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\tdh.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\tracerpt.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\tsgqec.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\TSpkg.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\TSWorkspace.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\typeperf.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\tzres.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\ucrtbase.dll => ":$CmdTcID" ADS removed successfully.
"C:\Windows\SysWOW64\url.dll" => ":$CmdTcID" ADS not found.
"C:\Windows\SysWOW64\urlmon.dll" => ":$CmdTcID" ADS not found.
C:\Windows\SysWOW64\user.exe => ":$CmdTcID" ADS removed successfully.
"C:\Windows\SysWOW64\vbscript.dll" => ":$CmdTcID" ADS not found.
C:\Windows\SysWOW64\vcamp140.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\vsd3dwarpdebug.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\vsgraphicsremoteengine.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\vsjitdebugger.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\wdigest.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\WebClnt.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\WindowsCodecs.dll => ":$CmdTcID" ADS removed successfully.
"C:\Windows\SysWOW64\wininet.dll" => ":$CmdTcID" ADS not found.
C:\Windows\SysWOW64\winsta.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\wintrust.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\wmdrmsdk.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\wmp.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\WMPhoto.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\wmploc.DLL => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\wow32.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\wpdshext.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\wrap_oal.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\WSManHTTPConfig.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\WSManMigrationPlugin.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\WsmAuto.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\WsmSvc.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\WsmWmiPl.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\wuapi.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\wuapp.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\wudriver.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\wups.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\wuwebv.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\x3daudio1_0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\x3daudio1_1.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\X3DAudio1_2.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\X3DAudio1_3.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\X3DAudio1_4.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\X3DAudio1_5.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\X3DAudio1_6.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\X3DAudio1_7.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\xactengine2_0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\xactengine2_1.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\xactengine2_10.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\xactengine2_2.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\xactengine2_3.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\xactengine2_4.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\xactengine2_5.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\xactengine2_6.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\xactengine2_7.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\xactengine2_8.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\xactengine2_9.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\xactengine3_0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\xactengine3_1.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\xactengine3_2.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\xactengine3_3.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\xactengine3_4.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\xactengine3_5.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\xactengine3_6.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\xactengine3_7.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\XAPOFX1_0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\XAPOFX1_1.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\XAPOFX1_2.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\XAPOFX1_4.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\XAPOFX1_5.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\XAudio2_0.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\XAudio2_1.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\XAudio2_2.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\XAudio2_3.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\XAudio2_4.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\XAudio2_6.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\XAudio2_7.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\xinput1_1.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\xinput1_2.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\xliveinstallhost.exe => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\xvid.ax => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\xvidcore.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\SysWOW64\xvidvfw.dll => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\Drivers\afd.sys => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\Drivers\appid.sys => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\Drivers\cng.sys => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\Drivers\dxgkrnl.sys => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\Drivers\http.sys => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\Drivers\ksecdd.sys => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\Drivers\ksecpkg.sys => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\Drivers\mbam.sys => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\Drivers\mbamchameleon.sys => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\Drivers\mountmgr.sys => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\Drivers\mrxdav.sys => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\Drivers\mrxsmb.sys => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\Drivers\mrxsmb10.sys => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\Drivers\mrxsmb20.sys => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\Drivers\mwac.sys => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\Drivers\PEAuth.sys => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\Drivers\rdpwd.sys => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\Drivers\ScreamingBAudio64.sys => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\Drivers\Sftfslh.sys => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\Drivers\Sftplaylh.sys => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\Drivers\Sftredirlh.sys => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\Drivers\Sftvollh.sys => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\Drivers\stream.sys => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\Drivers\tdx.sys => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\Drivers\tssecsrv.sys => ":$CmdTcID" ADS removed successfully.
C:\Windows\system32\Drivers\wdcsam64.sys => ":$CmdTcID" ADS removed successfully.
"C:\Users\All Users" => ":482EE99B1E21CE8C" ADS not found.
"C:\ProgramData\Application Data" => ":482EE99B1E21CE8C" ADS not found.
"C:\ProgramData\Reprise" => ":wupeogjxldtlfudivq`qsp`26hfm" ADS not found.
"C:\ProgramData\TEMP" => ":30FD0CBD" ADS not found.
"C:\ProgramData\TEMP" => ":C8B8CEBD" ADS not found.
"C:\Users\Erik\Cookies" => ":iAbYWnLo4E0biseBTur5Hfa" ADS not found.
"C:\Users\Erik\Cookies" => ":OZC7l67cDbfZPHuZBwh" ADS not found.
"C:\Users\Erik\Local Settings" => ":4EUhZg4kRrP3RyMxteBnNq" ADS not found.
"C:\Users\Erik\Downloads\270536745794.jpg" => ":$CmdZnID" ADS not found.
"C:\Users\Erik\Downloads\28c4b98ba3c859c4bc34da57b0a5a7ac.jpg" => ":$CmdZnID" ADS not found.
C:\Users\Erik\Downloads\347.52-desktop-win8-win7-winvista-64bit-international-whql.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\355.60-desktop-win8-win7-winvista-64bit-international-whql.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\asioconfig.exe => ":$CmdTcID" ADS removed successfully.
"C:\Users\Erik\Downloads\Beauty and the Beast STORY (revisions)(1).doc" => ":$CmdZnID" ADS not found.
C:\Users\Erik\Downloads\ccsetup509.exe => ":$CmdTcID" ADS removed successfully.
"C:\Users\Erik\Downloads\Clock(1).fbx" => ":$CmdTcID" ADS not found.
"C:\Users\Erik\Downloads\Clock(1).fbx" => ":$CmdZnID" ADS not found.
"C:\Users\Erik\Downloads\clockface.jpg" => ":$CmdZnID" ADS not found.
C:\Users\Erik\Downloads\Cold_Fear_Downloader.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\cpu-z_1.73-en.exe => ":$CmdTcID" ADS removed successfully.
"C:\Users\Erik\Downloads\CreepyKey.fbx" => ":$CmdZnID" ADS not found.
C:\Users\Erik\Downloads\dm log collector.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\dpclat.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\drivercleaning1.71.bat => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\DriverSweeper_3.2.0.exe => ":$CmdTcID" ADS removed successfully.
"C:\Users\Erik\Downloads\form.loan.discharge.false.certification.disqualifying.status.pdf" => ":$CmdTcID" ADS not found.
"C:\Users\Erik\Downloads\form.loan.discharge.false.certification.disqualifying.status.pdf" => ":$CmdZnID" ADS not found.
C:\Users\Erik\Downloads\FreemakeVideoConverterSetup.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\Geekbench-3.3.2-WindowsSetup.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\gfwlivesetup.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\gimp-2.8.14-setup-1.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\GitHubSetup.exe => ":$CmdTcID" ADS removed successfully.
"C:\Users\Erik\Downloads\Handle.fbx" => ":$CmdTcID" ADS not found.
"C:\Users\Erik\Downloads\Handle.fbx" => ":$CmdZnID" ADS not found.
"C:\Users\Erik\Downloads\Handle2.fbx" => ":$CmdZnID" ADS not found.
C:\Users\Erik\Downloads\hwmonitor_1.27.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\hwmonitor_1.28.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\ImageMagick-6.9.1-1-Q16-x64-dll.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\instspeedfan451.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\iZotope_Vinyl_Setup_v1_73b.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\jxpiinstall.exe => ":$CmdTcID" ADS removed successfully.
"C:\Users\Erik\Downloads\LionNormal.png" => ":$CmdZnID" ADS not found.
C:\Users\Erik\Downloads\MaPZone2_2_6_1a.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\MiniToolBox.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\MorphVOXJunior_Install-1.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\OBS_0_638b_Installer.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\open3mod_1_1_setup.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\p4vinst64.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\patch_among_the_sleep_2.1.2.8.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\pc-decrapifier-3.0.0.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\perforce64.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\Prepros-Windows-5.9.3.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\reaper478_x64-install.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\reaper501_x64-install.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\reaper50_x64-install.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\SeaToolsforWindowsSetup.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\setup-lightshot.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\setup_among_the_sleep_2.1.0.6.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\setup_downfall_2.0.0.5.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\setup_the_cat_lady_2.2.0.6.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\Setup_WinThruster_2015.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\shexview_setup.exe => ":$CmdTcID" ADS removed successfully.
"C:\Users\Erik\Downloads\Shotgun.fbx" => ":$CmdTcID" ADS not found.
"C:\Users\Erik\Downloads\Shotgun.fbx" => ":$CmdZnID" ADS not found.
C:\Users\Erik\Downloads\SketchUpMake-en-x64.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\SkypeSetupFull.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\SlackSetup.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\spsetup127.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\spsetup128.exe => ":$CmdTcID" ADS removed successfully.
"C:\Users\Erik\Downloads\tumblr_mcj9658Nd61qcej2y.jpg" => ":$CmdZnID" ADS not found.
C:\Users\Erik\Downloads\tweaking.com_windows_repair_aio_setup.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\UNi Xonar 1822 v1.75a r2.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\vs_community.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\vs_community2013.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\windirstat1_1_2_setup.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\x64_okino_nugraf_and_polytrans_full_demo_2014-g8.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\x64_okino_plugins_superinstaller_demo_2015_r1_vc10.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\Downloads\xnormal_3.18.10_installer.exe => ":$CmdTcID" ADS removed successfully.
C:\Users\Erik\AppData\Local => ":4EUhZg4kRrP3RyMxteBnNq" ADS removed successfully.
"C:\Users\Erik\AppData\Local\Application Data" => ":4EUhZg4kRrP3RyMxteBnNq" ADS not found.
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\DB2E967B60A830B44969B59901522A6C => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00A70489854D5A641902FB008E4D8618 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\061DCC9861F267B41AC1C29475857C35 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFAFF23141ECFF45A98C5CBCC6FD7E4 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\14BC9F86F1AD45D43873BA78A76819BD => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1BAF6F4DAD1D0574EA37AE1E85F42872 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1FEF8F5B062BB554291737BBAFFBBD9F => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\21DACAEC56A90AF42A1891AE87B42461 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\223FA682F47F6174A979557583592597 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2934E1BD93E2E914A99D37BB338DE367 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\34BEE696B22607D418ABAF7FF0DF91D6 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\463CADD0A1A748D4D8C8F287E8C87A1A => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\46BAC581079409841BF9E919A2D86A51 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4B520363CFE931C47BF0BDD9B439BFD2 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4D6DEF2A51FA5C344B7002359BD3A177 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\51CDF02D10348BF4181C57804C66061F => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5B5B945AADFFECB4696F936C258E5F4B => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5F6074F269657104887ED1B50FBC0075 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5FCBF801D99B43645B840DEDCCA704D9 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\61EE1400988BF654F96D5B8EDBE90757 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6344971EDDB6E254CBDE0B6DE3BE793C => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\64171660A5BD7C1468BAED8640062F13 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6A05C1BE882BCCC408F78CE6B01D869F => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6B89CCF36B260C54A8F37EB7DF28E2A1 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F0381E444E6AA648B6D5C4C75D29726 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\71DC1D91C8E097C4A9BA8E1B1971FA7F => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\77386F2641568624CA72F0CB8DD7F880 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7A478A4A67DC63F418558AB5CDA4EBCA => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7E9471324BC1E2145845E1637606EF41 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\803BFC11A8D201643AE1BBA6FEB0BAFF => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\87E5F8B257B97EC40951F40F1BF2135F => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8A9B9DD8917688B46B3F6FA3B6D4F54D => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8F284C382B602D7478DA1CEF01118ACC => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\988B24BF74AF5CC41A7C58C29836FE98 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9CF5213E43998654C854B419F0DE2564 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A089B901B67CE0748AA88C4BD50D57D1 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A6E483D6F0FD50C40ACCCFA653326EF7 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A9D48A1CC619EDC468E3B4D3054DE891 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AECE2176AF5E1864BAC440F0D02CD58A => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B3046214DAEE6A246B8B6E7316B31906 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B7027658A0B8E774F91A80F4FCC40224 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BE2B910A814CFB341B13B3D3D9BB9F6F => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C59542720E53D354A92DDB9A447346B9 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CCFCCC1891E40904899A3566879D171A => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D0DFCD17461DFDA41B4E04D271B0FBE5 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D29A65A3104E2C340BFE40FAE8A91267 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D3873A30E6162ED47BA0AB95A3CDDA5F => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D60BE5613DFE6AC4C93F1F835DCEE1E2 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DEB9571C8E6CC1B4BA6F7D22A9DF81BB => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E02821297F70E6F44B20D83CD953476D => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E3C649A9849FBA143943CAA1B6FB6150 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ED0F7BCDE5F677D4797D7B485A475F70 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F39C202861CC5394D92BC01541F13711 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA6CDD7CC8A73B242826081F921A23E4 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\0E641459FF949304FA85227505C6D754 => could not remove at first attempt (ErrorCode: C0000121), see next line.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\0E641459FF949304FA85227505C6D754 => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\DB2E967B60A830B44969B59901522A6C => could not remove at first attempt (ErrorCode: C0000121), see next line.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\DB2E967B60A830B44969B59901522A6C => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zonealarm-stop.com => could not remove at first attempt (ErrorCode: C0000121), see next line.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zonealarm-stop.com => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\zonealarm-stop.com => could not remove at first attempt (ErrorCode: C0000121), see next line.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\zonealarm-stop.com => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\CheckPoint\ZoneAlarm => could not remove at first attempt (ErrorCode: C0000121), see next line.
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\CheckPoint\ZoneAlarm => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zonealarm-stop.com => could not remove at first attempt (ErrorCode: C0000121), see next line.
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zonealarm-stop.com => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\zonealarm-stop.com => could not remove at first attempt (ErrorCode: C0000121), see next line.
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\zonealarm-stop.com => key removed successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{B769E2BD-8A06-4B03-9496-5B991025A2C6} => key removed successfully
HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zonealarm-download-now.com => could not remove at first attempt (ErrorCode: C0000121), see next line.
HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zonealarm-download-now.com => key removed successfully
HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\zonealarm-download-now.com => could not remove at first attempt (ErrorCode: C0000121), see next line.
HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\zonealarm-download-now.com => key removed successfully
HKEY_USERS\S-1-5-21-95435350-4265177964-2103988519-1001\Software\CheckPoint => could not remove at first attempt (ErrorCode: C0000121), see next line.
HKEY_USERS\S-1-5-21-95435350-4265177964-2103988519-1001\Software\CheckPoint => key removed successfully
HKEY_USERS\S-1-5-21-95435350-4265177964-2103988519-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zonealarm-stop.com => could not remove at first attempt (ErrorCode: C0000121), see next line.
HKEY_USERS\S-1-5-21-95435350-4265177964-2103988519-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zonealarm-stop.com => key removed successfully
HKEY_USERS\S-1-5-21-95435350-4265177964-2103988519-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\zonealarm-stop.com => could not remove at first attempt (ErrorCode: C0000121), see next line.
HKEY_USERS\S-1-5-21-95435350-4265177964-2103988519-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\zonealarm-stop.com => key removed successfully
HKEY_USERS\S-1-5-21-95435350-4265177964-2103988519-1001\Software\Zone Labs => could not remove at first attempt (ErrorCode: C0000121), see next line.
HKEY_USERS\S-1-5-21-95435350-4265177964-2103988519-1001\Software\Zone Labs => key removed successfully
HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\zonealarm-download-now.com => key not found.
HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\zonealarm-download-now.com => key not found.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_VSDATANT => could not remove at first attempt (ErrorCode: C0000121), see next line.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_VSDATANT => key removed successfully
EmptyTemp: => 181.7 MB temporary data Removed.


The system needed a reboot..

==== End of Fixlog 20:43:08 ====


  • 0

#42
BrianDrab

BrianDrab

    Trusted Helper

  • Malware Removal
  • 3,591 posts

Excellent. Now please do the following.

 

FRST Registry Search
1. Run FRST64 by Right-Clicking on the file and choosing Run as administrator.
2. Copy and paste
Panda into the Search box and click the Search Registry button.
    Search.JPG
 
3. When the scan is complete a notepad window will open with the results. Please copy and paste the contents in your next reply. If for some reason notepad doesn't open the file should be
    saved on your desktop named Search.txt.


  • 0

#43
For the love of sod.

For the love of sod.

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 113 posts

Farbar Recovery Scan Tool (x64) Version:23-09-2015
Ran by Erik (2015-10-01 21:00:15)
Running from C:\Users\Erik\Desktop
Boot Mode: Normal

================== Search Registry: "Panda" ===========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\ProgramData\Panda Security\"="1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00777A39F2A4E0B4FB37FF9CEB56D14F]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\NdkApi.Prl.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00AAD182647690D4193AA8A411AF3316]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\psenagent.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0150AB41D69BCC449B3C13FA5067A615]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANModProactive.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\019CE167336FF2A4AB1FA6F698BD09B9]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Data\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\01D5AA132A5747E438CFB2DDBCE04D3A]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAConfigMgr.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0252EF01065A20746B8C5CBF831D01D1]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANLicense.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\04667EA8FC55DE744AC5A93C7C65BCBB]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pskfcmp.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\077A2B82E6958D746ABF058145293504]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\NdkApi.Notification.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\07D1C55A98D2F224DABC0C40C33A951C]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSINPrSg.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08745D8476E0B064E9386434383FD475]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\cc3290mt.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08E917BF2EA403744BE97D6E3C23F6C1]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSENSRF.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0A7DEC6148115B346AA35B3EEE21947E]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\NdkApi.License.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0B04803656B9FF54EB418C4EC3A9FCDD]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANMinReqUpg.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0BA46CA2E7C59324C9093B81D4BC57F0]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\NdkApi.Update.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0C72C7F7E063F97499DAA5AF528656ED]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0D0C760EA5F766C4DA1000C032142BEA]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUNMain.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0DD013EC443CADD4FA06EE6248D2A2E9]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANModADM.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0F1EF21EFA170E04CA9420AC8419354F]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSNMuid.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0F4D1E644CECA7B4DB2029387407B4EE]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Lang\rus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\102512761C307E94D9987006D25307B5]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1107B7FFDECF787419009C8A5D854E7D]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANLang.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\11521DB6A780254469CE5FD0D6F05410]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\12BB0F1F388522F46BBFA8095E4472CE]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUNMsg.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1346A1E58F5D5FB44AB0F53041E5618F]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANPackageRegistry.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1348869982AEE6B4B8FF485E7BF9DDED]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pskcoord.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1367B04FD1818194BAF81CB1CB6A1AD8]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Lang\dut\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1396373AD5B128D4AA2970318C968A3E]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAApi.tlb"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\14BC50277C6A3004FBA2B1C7BEC64C4B]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\DG\PGUse.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\153B65F5376DEB14EBD5FCF96F799A9A]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Lang\tur\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\15A6E2E6E5E17324A887EEA08E22AEC9]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSNCGP64.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1607725B0BF9D2240B7A6CDC8DE23C76]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pskglk.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\166522FBC8CF8734E8700BAF19077D10]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pkncmp.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\16D2DC13D58A14B46A8F68C128F8CDB7]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pknplg.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\18C6E2FBC23EA00499D37B0B563E1197]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANModScheduler.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\19572BA6EF7989B4A8147BDFB27F3340]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSENIExAg.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1AAD9105AF2D32B4D8FEA392C8DA2A40]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pknaccess.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1AE1790BE3C9C6D42BD41C1EEBB66DAA]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Quarantine\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1C50E8A756BDC3140800AEA7D868B86E]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANStatsSend.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1C6854B881EBC7B46AD36AACAE178C4C]
"6AF87AB8718EC454D923D80E444011E9"="C?\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSNCSysAction.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1E8BDE009908B284DA07AC9AE3C45891]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANModBLA.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1EA97B1ED2F4C3D488B7F31DA52DFD16]
"6AF87AB8718EC454D923D80E444011E9"="C:\ProgramData\Panda Security\Panda Cloud Antivirus\UAData\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1EF75433227832E45ABA9FFAC2FF5EB6]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSNWSC.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1FDB4403C065B0A43BBF127AE04B6E9F]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\21439687A4C48A24B97681489C20C9D8]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\NConv.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\22B88AEA87094D14E99FD411F0117CD2]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAAlerts.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\239887925BEE2E046818F13093CE7208]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\NdkApi.Communication.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\23E7CD2BE0F418B428F8F6F779D081D2]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\ApplicationRule.PRL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\252B775875AD91E4D8360C3CDC6BE467]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\psenhash.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\25BA70CC5D652A44FB2812F849B67BF0]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\LostandFound\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\260F335501CB0154A9A47AF96B898387]
"6AF87AB8718EC454D923D80E444011E9"="C:\ProgramData\Panda Security\Panda Cloud Antivirus\Download\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\27B2426AFFB3755428D992988C3C27AB]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUNScan.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\298F42E9E37EB684BBC859A8CCF7E0F2]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSINEvAg.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29ABEB7FD2EBDEA4EB197D554CDE2CFC]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pkncomiexm.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29AF908384DBDAD4AB76613E14F80050]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANModUSBVac.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2A634BE28E16B6F43853D511941BD487]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\NdkApi.Analysis.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2A6E04FA2B7AFC84B982A0C8805448B3]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSNCDSEX.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2AA8210FE420D5840BE698379AE3D267]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pskalloc.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B05FEDE996C3C346839DC43F5FB724F]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSKMADLL.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2D6CCDB83EED35343B04BDC1DC85497C]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\NdkApi.UsbVaccine.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2EAFDF65921F59B4EAA04F9C4EA63514]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSNCGP.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2FF79B2B2055DFF598BA23D55344F7BE]
"716E2883F91A0D83E89DF6D0CB43A843"="C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\Extensions\Microsoft\Web Tools\External\bower\node_modules\rx\src\core\backpressure\stopandawait.js"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\301F2D8A5E9285B419EA199A3E435852]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\30803A96E53E310489A2BEF707DFC764]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pskxs.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\309B7632C011B1844AD8DA6B4005EA74]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Pavsddl.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\30B8A01BA7058384797F970A5297C598]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\NdkApi.Quarantine.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\35832ABEF87CF364A8B827664CEB9C8C]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSNCUpdMgr.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\35E5E14DF0D48A64CBE0749E5ED194DA]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\NNSStGen.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3662E0BD84E8BEF4E8078B6C40879628]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\36EE68849D8E36B4EAA361CBD459F6AC]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PrlTypes.tlb"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3834B89EE2D3B264395FD5ECC877D248]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pknrbt.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\383893CF98AEE824F8ED9A719AA4E830]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\psenuser.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3A24D7E42EF73C841B67633E0061355D]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANModLive.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3B368B42D3DE1FF4BA182A65FB3AE0A0]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAMain.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3D76790F458DBAF4BA650DD738F44E20]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\DG\qrvD.krn"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3EA326EF7BC920D4C9354BF013F203CD]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Drivers\NNSNahsL\nnsnahsl.inf"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\400AF002B414C174FB133D1E87DD058C]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSNCSysInfo.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\40DAE571C22F7CC489C6982AD1C293D8]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\41867332E62F95C4D946CECE42C29804]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Tools\PandaSecurityTb.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\41EE9FE369CB4FE4FB4D05490E5BC56B]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Lang\ger\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\41EF0FD99011C334CB8A900B31A108AA]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUNFwConfig.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\43D5AB6EF4172FF43A06FC914EBF1171]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4400286D95C6C3C4397FCFD46819BD4E]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4540B7C0F190ACF4CB7AF80DE742BB7B]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\SystemRule.PRL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4997DE6F4F48B1B4DB80B070D6BD2960]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSINUNC.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4A07C058C0F87884E82C553D7EF36926]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANSoapActivation.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4A8FF3674E935854DBF094B50F5C65CF]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSNReg.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4B439DF54EE4D0D48AD554469304B864]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANModAV.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4D7B5EF16757A4345A4BBA3F4C614A6D]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Lang\gre\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4EE00D4E878D01849B1E3834623DA4F4]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANModShield.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4F0BC9A6D3F770044A51816B59285639]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pskras.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\503CCFE7C4BA767409F09A82E0B7DC8B]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pskmad.sys"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\507CF4DE7DC51CB408DD0019F7500D4E]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\DG\PAV2WSC.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\50A27F9E86AA1B640933D1201289184A]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\USBVacineDLL.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\51045B97E6646DA47A8A4C6C89D5A1B1]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\513AD23D39E462F4BA1882FB445986E1]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Lang\por\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\520AD4899973E3444BBE79F1F0467022]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUNSuspects.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\522AA73AC1CCE8541A6E68E83A803073]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\psenutil.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5287E3E8228EAD041A570A60A32FD3CF]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAServiceManager.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\532CE02EDFAD35D4AA0A0FB897121FB0]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\DG\MsiZap.Exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\536953158DA0C7F45A0BF8C9B3114E15]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Lang\fre\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5390BA9F561582A4B9A8B8B5DD4067F2]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\psenobsr.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5495F2404CBDA884BBCC9BA0B3D9DAF4]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\57E780EF7DDD8644DB38299FD4D35F8F]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSNCSA.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\59A9B35D6E8776348BE68F6DEBA3829F]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAShell.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\59D74B329D59F7841B4CCBBE780E977C]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANUpgMgr.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5A22A17978F619742818BC2E6067BD1F]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Lang\hun\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5A4859CFE13EF2C4E98D343DCD99A23A]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5AFF41BF1DE66A84D8DF7BA3FC208AE2]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\atl80.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5B3BD7B4CC842744291C1BE94FD92F05]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUASysTray.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D134DB897DA8A94D8E1732632460F6E]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pknproc.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D96EDB012A11C841A727A231F2CDC02]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\psksrf.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5DB2B157DE1F2C94BA68B1FCA6117E90]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5EAFD2BAF151F0849AB8E94DE0F7A18E]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANModProcMon.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\60BD9510F291B7E479EB033E324328D2]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Lang\ita\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\617AE2275384F524FBBBE18CCDDCCBF1]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\622CA805E425A404B81FB1CCF245CA6A]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\psenfilter.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6344226967EE9874DB99FA71980DE5B5]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Data\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\65E887696B952524EAA592917E498167]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\borlndmm.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\66E00921D67D3AD41A619A9855763A1B]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\67BB081ECCE31704A9D139978644C4A6]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAError.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\683DE93B220EA8A4AA3DF33A243456E1]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSINEnAg.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\68D68ED8525C3EF488D026A061697FC3]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6A0D52BE0CA9EC049A6C930D16B5146F]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSBoot.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA456A10FC32F747B77FC370A65D67D]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Lang\slo\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6C31CD00EBEC4A3478DE113A36E26208]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANCU.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6CF746C68C322D04A8170BA39DF31985]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\psenlog.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6EB6A3DA75076D24184CC472736061B0]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANModAdiag.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\703408CAD72ED4249A12EFDFC096F9BE]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Lang\por-br\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7065D74D9DD97674CBBD8051D0F77235]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSNCCfgMgr.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\723533D8605953844AE1BB3B98F1969E]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\NdkApi.Reports.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7258D461A7BDEB34CBE83AAF3D0CAEC7]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PKNComms.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\72757BCB7C21C7446808D4DDE2191D83]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANMSrvc.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\74AC5F01A4781484A935488C00FF61B2]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSNCrypt.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\74DD2026C054744408AC32C7C6C3D8D5]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSNCCfgStore.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\75546DA0258507C4C91648CD7F158BF3]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\76110D6326B39174D9C13E30C0885A96]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pskisig.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\774169719C5B20347AF3542BB270A333]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\778C5824FCBC3B146814F15CC9816AB5]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSENQMem.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\78C556F23BE0DE54F8C442E13A5EBA3C]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\NdkApi.Service.Control.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7999AC5CC5AC3AB4099210175D08C060]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Setup.dat"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\79DDE7814EE3CC048A6D9D17B001464B]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7C3F2430F73BBDB4DBE2B90EA2DB8BF0]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAADiag.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7C6F101F1F577A54F82DB7EEE8691233]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Lang\nor\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7D5C5C343E83CED4D9B54F756C2D1C82]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSNFiles.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7EA961BC1BFA14443A2D086261601984]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\DG\SMCLPav.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7EB4D71490C75AA448C70E69CE4F2DD8]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Lang\chi\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\852E96862F6D14C4B86F3A62AD2C4367]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pknsysmw.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\894F0B2EB2039DB48BA191F883E815CE]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\psendsig.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\89E05CFA2723AF44C94B3A9DE546E1A6]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pkndisk.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8A1EBD6622966034F870EFF55BE2DFCF]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\atl100.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8B5FF788D5F3B0A4A820B2D551A77A11]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSNCIPC64.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8B8C6494A8DF12E49B1584190C7DC796]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\msvcp80.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8C03635F742AC5E45B9055622E94326D]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\msvcr80.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8CDFBF0070288A64F8AE9C27C2649252]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PskTmp\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8CFD4D0B69E565B46965E40B23BA8E6D]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\psensfl.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8E8A9FAFA5EF5B444AB38732EFF486F4]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAResourcesEx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8F2255071741488409818A826EB28092]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\SetupUI.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\92DD8F91D270FD44D924EF7F1D9EB74F]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pskcrt.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\938B839814040EA458E328397A9EE9B1]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\psksys.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\93EEDCFED13E45D4B918039C46DEAC03]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\94D1E0DB3D41AF5428556F7ADF6A5649]
"6AF87AB8718EC454D923D80E444011E9"="C:\ProgramData\Panda Security\Panda Cloud Antivirus\NPS\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9715EB96A31A82443BD9382185ADB133]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANModRol.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\983029D9F075F834A915B1E11C2A1E6D]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\05001000.dat"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\99051DF0ED02AF641AF3964E33229679]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANModNotification.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A136D4C10A491B4E8BEF8D76C677D91]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANStatsReader.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9ADF13FE67159BE4EBB958DCFB937539]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Drivers\NNSNahsL\NNSNAHSL.sys"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9BA9DAD851625A0419F3A940C27DF215]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\msvcp100.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9CA2E25CC431C15468B751285140729F]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSNEvts.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9CACC08D3166A8647893C071E6AB0EDD]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pskstr.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9CF5992AE3B62A547AA1CC455B0912C0]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D6A13FA054BD034E91FCA7FE3C832F2]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUNUtils.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9E402FA3D11AB6946B36519E088FBC8B]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\NDKCoreApi.tlb"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9ED174B4ED761614BAF363BFCAC051DD]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\DG\PAVSMCL.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9F3B13A1C505F474191D54599A62D1CA]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAAction.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9F7DCD021FE5C3649BE81C52E17DE43A]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\msvcr100.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9FA8412AA62FE964382EAEE36F94B9DF]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSNCIPC.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A088FE522AD04C942BF5606211726412]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pkndtl.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A19D1AE324ACF9F43981E293C6CF22BF]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A319FB79EC41E3443A76C9D0BB1C5C00]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAResources.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A319FB79EC41E3443A76C9D0BB1C5C00]
"00000000000000000000000000000000"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAResources.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A353EF10B369A5049AB68E8B639456E4]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANModCtrlCfg.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A37B71533CED74C4A988A7D63618596E]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Lang\chi-tw\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A48FAA55F96641140837804182D8CB68]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSKSQLT.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A51A1B1782932BF4C9024D034836CA6D]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSNXml.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A65661B6C16541349A58F5D41446D8D2]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\MiniCrypto.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A729C76608DA85543A79FACF3CD0D12E]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\NdkApi.Configuration.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A7CCAB5C5F308784BBC51B2F40076E3D]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\psenprtglk.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A80DF33663F9B8B4AB1CD3991F2C1D1E]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\DG\DGNano.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A843D302CCD314841BA01316FB07DC99]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUNConsole.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ABF76887771E84342916330FEAF91D3F]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANModRep.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AC740632698CF0545A9894797B4A74BB]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANUpgSI.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AD5AC53889B166B4DA5B518AD6FD90AD]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANHost.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AE2481B1CA1980A4CBA58E1B32B6BEF4]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AF186B78779FCB842B497C2B38953F64]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\psenplgb.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AF8DFA4F13D35174C9F0E3E6ABED9B0C]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANModStats.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B28E5D90AF1177348B7D11EE45D2EE70]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAService.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B351E95FB4E00AA428292F5FEB5FBEC4]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pskxml.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B3D974C87C4AB3B47AB21086237F7D06]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUNPnlConfig.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B3E2C6807F4903140A2B88A3C8152A3B]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAWatchdog.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B425BA55EFB96864E86E8F363F5F74FE]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pknfile.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B4AA00EBACDDEB341BB0C7A6B7B82CA2]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Microsoft.VC80.CRT.manifest"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B6251FEFCAA81BC4C99F4ED8C65B11A3]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSENPrx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B87D17859EBA93F4180E5DBC2563C369]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSNCTaskSch.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B8DB02B40D97A1D478A7C7A294EF0C5F]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSNTypeReflection.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B93C7F28D1149F946B45C6A8CDC478AE]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUNProcMonMng.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BC202FC0FAD62FF4A8BB90D83B2EF272]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\puturar.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BD16D52DB56D4B04EAD0090F463A3A4B]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAInfo.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BD3CD086FE077554C8D047F91C93E10F]
"6AF87AB8718EC454D923D80E444011E9"="C?\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUALegacyExt.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BF490915417835343B0706D4C1EF591F]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\psendecs.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C04F512896DD8BD4F9A43B635D963A30]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C211155A7CA32894FB7D5F6EF9BF755D]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PAV2WSC.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C269BF99890617D4BA8AB84007861A27]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Lang\pol\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C2D59C90B1B0641499B118AF7E1641A0]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\psenlc.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C4130CEEAE9DD1B45B724444507B4926]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSENSFN.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C43495B7466E4854EA13FB66D85CD070]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pknComCtrl.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C436BCC881075594D88E40A17EFAAD6A]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Lang\swe\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C560FB3411BEE5641A2F34D00645F9E0]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pknreg.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C5BEE5CEAC9ED594A8A320B697286733]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pknact.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C72E0B9C423B82E4CB4916FFE6979AA0]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C8EF09D354D8C5E44A0C056385FF07A9]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSENRAM.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA56F97C097A87D46B34D186DFED5036]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CB5AD6C55EC90D14FB7AA353FD2C204A]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pknheu.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CBCA742A6EC56024F9203BEA04291E87]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pkndtr.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CCAD22E2DF0A04B40A206966BE4ED934]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Setup.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CCE8EF6CE930F2144850E01D8681684E]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\FWConsole.dat"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CCEE2609D82C10F4A9011973E8B61741]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\NdkApi.Service.Info.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CD1AFB41FA132BE489E3E82F8CE506F2]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSINanoRun.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CEA0D97CD49E97E42BA50AC3010DDA86]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\RKPavProc64.sys"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CEA7A7EC9513F8446900D59524D7C2CA]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pknedt.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CF78FA2440E66D643952A55743051373]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pskutil.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D01231D1A2AA59046AEE6DADC5196BDF]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUNProcMon.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D0FEF3389021E2A4B80B69987C377C5F]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Microsoft.VC80.ATL.manifest"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D6FBBD3AAB4614944A2B7E95F57F3912]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAFirewall.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DC41B224D399AD0498B9E36E9930A022]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSBoot.sys"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DC7FC07F7B7426240A69CBCCE1F93E36]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pknboot.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DCC6FFDDF348B834D985EAA3E3F3ADBE]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSENMgrb.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DE3B68A1BD9A1944C94BBB8F687A00CC]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Lang\jpn\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DE7CC8C8F249F8B4A87C66D10201EBB8]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANLiveMan.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DF6B000E9249515438857E6171481D59]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pknMDT.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E34D4165204CF8245A836544BB1C1C23]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSNComms.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E5288B442B9DD724EA20DABE6203590E]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANModBrowser.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E5A67059EF80B51428E68B029B79FE86]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAConsole.dat"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E78955D9AB3224045B89AEAC188D336D]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUNConfigStore.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E91262F9EE2613E429A3FAF4BCBD2958]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANPlugAvCatalogAnalysis.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E9FA65911E11E134090AA32B6244D829]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pknDTLT.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EA72B4C26A426434BBE795B3095D2F6D]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANLiveDownloader.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EAB8A9165857CAE4393C05855BF11079]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pskcrypt.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EADC29F41DD85B3448073228B2FB4221]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANModCfg.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EC1FABFDA94777645B050D7DA0F96FBB]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAGUIAlertsManager.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EC586DE8536EA6C4BBA93B92951A9F44]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Lang\spa\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EC62900209759B2439643B4C95FBFAB8]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\bspatch.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ECEFCFA85F6E6104DB3F618DB7D21D63]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Lang\fin\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF0AEDB3FA9C4144F916CB9A03D6C103]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\psenkrnl.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F01844281B94C524BBEE0D6823625C99]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F0F57DFCC04B5C141969A52AC7AD9855]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSCCGUIUtils.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F118ED187317A94448C2F7FB05EA340F]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F13B4BDE4C42FAD4BA75ECAB884EF022]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUNResources.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F2076B36BB0016940A2DF57B4AC68A3A]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F20F2BFF6CC82944B94AEADECE047F9F]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F4C26CA9610AD3A499106911ED5F0526]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F4C5DB54A48D1F04590BF1C7F4C87EAE]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\NdkApi.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F538A57C4C930234987059D1A05D216C]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\pknQrt.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F77422D264F4A7940A2846CA2A0ABF76]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSINApAg.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F8E881B7133A8D94F9F5A162C36DA9CF]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSNCNotifMgr.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F930616B210FC6948B4FDF480F0717BA]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUNReports.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F9FED8FD9BEA8074681DAE06222B730B]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANModFirewall.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FAD71A297BA865D4DA9C2A6ACB306029]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\NdkApi.Common.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FB6CD289166B33B4F926F13A5B2EF34B]
"6AF87AB8718EC454D923D80E444011E9"="C?\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAUtils.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FBCE40FC0E25CF243A3DF4173A853572]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\DG\SMCLpav.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FC0F15D13E0C2034591C2093B58C9F38]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\putuzip.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FC220A3A4EC0F644CA517EF254E0067C]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANStatsFormat.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FC452786FEE2F2943A15D5705FE3B269]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PrlTranslator.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FCD073FB318F4424EA8DC751B39FBBB6]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\putsig.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FCD382B2C6E8E444E911CC4CC73B595A]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\msvcm80.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FD48B6404AA4FAD4083429E19CA2B5BA]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\Lang\eng\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FE188DC92C2391D4588FF20EFBD88E86]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUATranslator.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FE25E62178B053340A3C9A647404CFCF]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\putczip.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FE2FB73AAE482F84896DC837EA78EDE3]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSNCDSVF.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FEB68FEDDC62D52479064A53299247E2]
"6AF87AB8718EC454D923D80E444011E9"="C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUASystrayObject.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\panda-hq.com]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pandaantivirus-2007.com]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pandadownload-now.com]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\panda-hq.com]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\pandaantivirus-2007.com]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\pandadownload-now.com]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\Panda Security Toolbar uninstall_RASAPI32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\Panda Security Toolbar uninstall_RASMANCS]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\Panda Security URL Filtering uninstall_RASAPI32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\Panda Security URL Filtering uninstall_RASMANCS]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\PandaSecurityTb_RASAPI32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\PandaSecurityTb_RASMANCS]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\PandaURLFiltering_2_RASAPI32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\PandaURLFiltering_2_RASMANCS]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\Panda_URL_Filtering_RASAPI32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\Panda_URL_Filtering_RASMANCS]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\panda-hq.com]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pandaantivirus-2007.com]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pandadownload-now.com]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\panda-hq.com]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\pandaantivirus-2007.com]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\pandadownload-now.com]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Panda Security]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Panda Software]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_PSBOOT\0000]
"DeviceDesc"="Panda boot driver"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_PSBOOT\0000]
"DeviceDesc"="Panda boot driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_PSBOOT\0000]
"DeviceDesc"="Panda boot driver"
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\panda-hq.com]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pandaantivirus-2007.com]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pandadownload-now.com]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\panda-hq.com]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\pandaantivirus-2007.com]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\pandadownload-now.com]
[HKEY_USERS\S-1-5-21-95435350-4265177964-2103988519-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\panda-hq.com]
[HKEY_USERS\S-1-5-21-95435350-4265177964-2103988519-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pandaantivirus-2007.com]
[HKEY_USERS\S-1-5-21-95435350-4265177964-2103988519-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pandadownload-now.com]
[HKEY_USERS\S-1-5-21-95435350-4265177964-2103988519-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\panda-hq.com]
[HKEY_USERS\S-1-5-21-95435350-4265177964-2103988519-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\pandaantivirus-2007.com]
[HKEY_USERS\S-1-5-21-95435350-4265177964-2103988519-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\pandadownload-now.com]
[HKEY_USERS\S-1-5-21-95435350-4265177964-2103988519-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]
"C:\SMCLpav\SMCLpav.exe"="Panda generic uninstaller"
[HKEY_USERS\S-1-5-21-95435350-4265177964-2103988519-1001_Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]
"C:\SMCLpav\SMCLpav.exe"="Panda generic uninstaller"
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\panda-hq.com]
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pandaantivirus-2007.com]
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\pandadownload-now.com]
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\panda-hq.com]
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\pandaantivirus-2007.com]
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\pandadownload-now.com]

====== End of Search ======


  • 0

#44
BrianDrab

BrianDrab

    Trusted Helper

  • Malware Removal
  • 3,591 posts

Thanks. Please do the following.

 

Step#1 - FRST Fix
NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system
1. Download attached file and save it to the Desktop. Attached File  fixlist.txt   42.56KB   175 downloads
Note. It's important that both files, FRST64 and fixlist.txt are in the same location or the fix will not work (in this case...the desktop).
2. Run FRST64 by Right-Clicking on the file and choosing Run as administrator.
3. Press the Fix button just once and wait. If for some reason the tool needs a restart, please make sure you let the system restart normally. After that let the tool complete its run.
4. When finished FRST64 will generate a log on the Desktop (Fixlog.txt). Please post the contents of it in your reply.


  • 0

#45
For the love of sod.

For the love of sod.

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 113 posts

It's already going for nearly an hour.  Now the others were only a few minutes, so I imagine something's not right here.


  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP