Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

When I launch chrome "malwarebytes malicious website blocked"

malware virus

  • Please log in to reply

#1
Todd1111

Todd1111

    New Member

  • Member
  • Pip
  • 2 posts

When I launch Chrome or Firefox Malwarebytes pops up a warning that it has blocked a malicious website...over and over again.

I have attached the two files created by FRST - perhaps someone can take a look and tell me what might be going on?

Help? Please.

Thanks, Todd


  • 0

Advertisements


#2
RKinner

RKinner

    Malware Expert

  • Expert
  • 19,797 posts
  • MVP
Didn't work.
 
Attaching is a multi step process.
 
First click on More Reply Options
Then scroll down to where you see
Choose File and click on it.  Point it at the file and hit Open.
Now click on Attach this file.

  • 0

#3
Todd1111

Todd1111

    New Member

  • Topic Starter
  • Member
  • Pip
  • 2 posts

Thank you for the heads up on my mistake....Todd

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 07-07-2017
Ran by Todd (administrator) on TODD-PC (08-07-2017 13:22:27)
Running from D:\Downloads
Loaded Profiles: Todd (Available Profiles: Todd & LogMeInRemoteUser)
Platform: Windows 7 Professional Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Logitech Inc.) C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
() C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe
() C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Motorola, Inc.) C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Binary Fortress Software) C:\Program Files (x86)\DisplayFusion\DisplayFusionService.exe
(SEIKO EPSON CORPORATION) C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe
(SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S60RPB.EXE
(Fitbit, Inc.) C:\Program Files (x86)\Fitbit Connect\FitbitConnectService.exe
(Garmin Ltd. or its subsidiaries) C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe
(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\ramaint.exe
(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe
(arvato digital services llc) C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
(Symantec Corporation) C:\Program Files\Symantec.cloud\PlatformAgent\ccSvcHst.exe
(DEVGURU Co., LTD.) C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe
(Dell SonicWALL, Inc.) C:\Program Files\Dell SonicWALL\Global VPN Client\SWGVCSvc.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(TechSmith Corporation) C:\Program Files (x86)\Common Files\TechSmith Shared\Uploader\UploaderService.exe
() C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe
(South River Technologies, Inc.) C:\Program Files\WebDrive\wdService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Motorola, Inc.) C:\Program Files\Motorola\Bluetooth\obexsrv.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Evoluent) C:\Program Files (x86)\Evoluent\Evoluent Mouse Manager\EvoDriverUpdateService.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe
(Symantec Corporation) C:\Program Files\Symantec.cloud\PlatformAgent32\ccSvcHst.exe
(Symantec Corporation) C:\Program Files\Symantec.cloud\AntiVirus\AVAgent.exe
(Flexera Software LLC) C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe
(Symantec Corporation) C:\Program Files\Symantec.cloud\EndpointProtectionAgent\Engine\22.9.3.13\NIS.exe
(Symantec Corporation) C:\Program Files\Symantec.cloud\AntiVirus\ssDVAgent.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Symantec Corporation) C:\Program Files\Symantec.cloud\EndpointProtectionAgent\Engine\22.9.3.13\NIS.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Symantec Corporation) C:\Program Files\Symantec.cloud\PlatformAgent\PAUI.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe
(VIA Technologies, Inc.) C:\Program Files\VIA XHCI UASP Utility\usb3Monitor.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(ACD Systems) C:\Program Files\ACD Systems\ACDSee Pro\10.0\acdIDInTouch2.exe
() C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe
(Motorola, Inc.) C:\Program Files\Motorola\Bluetooth\audiosrv.exe
(Motorola, Inc.) C:\Program Files\Motorola\Bluetooth\btplayerctrl.exe
(Binary Fortress Software) C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe
(South River Technologies, Inc.) C:\Program Files\WebDrive\WebDrive.exe
(Garmin Ltd. or its subsidiaries) C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe
(Symantec Corporation) C:\Program Files\Symantec.cloud\EndpointProtectionAgent\Engine\22.9.3.13\NIS.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Fitbit, Inc.) C:\Program Files (x86)\Fitbit Connect\Fitbit Connect.exe
(hxxp://SteveMiller.net/PureText/) C:\Program Files (x86)\Puretext\PureText.exe
(SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_YATIKPE.EXE
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Siber Systems) C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Doist Ltd.) C:\Users\Todd\AppData\Local\Todoist\WindowsDesktopApp\Todoist.exe
() C:\Program Files (x86)\Medialink\MWN-USB150N\UI.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\Program Files\ACD Systems\ACDSee Pro\10.0\ACDSeeCommanderPro10.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Evoluent) C:\Program Files (x86)\Evoluent\Evoluent Mouse Manager\EvoMouseExec.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(TechSmith Corporation) C:\Program Files (x86)\TechSmith\Snagit 12\Snagit32.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe
(Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe
(Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe
(Microsoft Corporation) C:\Windows\System32\cmd.exe
(Doist Ltd.) C:\Users\Todd\AppData\Local\Todoist\WindowsDesktopApp\Todoist.exe
(Doist Ltd.) C:\Users\Todd\AppData\Local\Todoist\WindowsDesktopApp\Todoist.exe
(TechSmith Corporation) C:\Program Files (x86)\TechSmith\Snagit 12\SnagPriv.exe
(Siber Systems Inc.) C:\Program Files (x86)\Siber Systems\AI RoboForm\Chrome\rf-chrome-nm-host.exe
(Binary Fortress Software) C:\Program Files (x86)\DisplayFusion\DisplayFusionHookAppWIN6064.exe
(Binary Fortress Software) C:\Program Files (x86)\DisplayFusion\DisplayFusionHookAppWIN6032.exe
(TechSmith Corporation) C:\Program Files (x86)\TechSmith\Snagit 12\TscHelp.exe
(TechSmith Corporation) C:\Program Files (x86)\TechSmith\Snagit 12\SnagitEditor.exe
(Samsung Electronics Co. Ltd.) C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
() C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
(Siber Systems) C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon-x64.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office15\OUTLOOK.EXE
(Dropbox, Inc.) C:\Users\Todd\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Dropbox, Inc.) C:\Users\Todd\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Dropbox, Inc.) C:\Users\Todd\AppData\Roaming\Dropbox\bin\Dropbox.exe
() C:\Users\Todd\AppData\Roaming\Dropbox\bin\QtWebEngineProcess.exe
(arvato digital services llc) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Skype Technologies) C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Skype Technologies) C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Ghisler Software GmbH) D:\totalcmd\TOTALCMD.EXE
 
==================== Registry (Whitelisted) ====================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13538376 2013-05-21] (Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-01-07] (Adobe Systems Incorporated)
HKLM\...\Run: [SymantecPaui] => C:\Program Files\Symantec.cloud\PlatformAgent\PAUI.exe [6741984 2017-01-31] (Symantec Corporation)
HKLM\...\Run: [LogMeIn GUI] => C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe [423424 2017-04-02] (LogMeIn, Inc.)
HKLM\...\Run: [VIAxHCUtl] => C:\Program Files\VIA XHCI UASP Utility\usb3Monitor
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files\Motorola\Bluetooth\btmshell.dll",TrayApp
HKLM\...\Run: [ACPW10EN] => C:\Program Files\ACD Systems\ACDSee Pro\10.0\acdIDInTouch2.exe [2152392 2016-09-08] (ACD Systems)
HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [588872 2017-04-10] ()
HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [115048 2011-09-16] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Fitbit Connect] => C:\Program Files (x86)\Fitbit Connect\Fitbit Connect.exe [3414184 2015-09-11] (Fitbit, Inc.)
HKLM-x32\...\Run: [DelaypluginInstall] => C:\ProgramData\Wondershare\Video Converter Ultimate\DelayPluginI.exe [1960336 2015-08-13] ()
HKLM-x32\...\Run: [TrueImageMonitor.exe] => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [4956616 2017-04-10] ()
HKLM-x32\...\Run: [BYRUA_AGENT] => "C:\LGMobileUpgrade\LGMOBILEAX\BYR_Client\VZWUAAgent.exe" -start
HKLM-x32\...\Run: [AcronisTibMounterMonitor] => C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe [425864 2016-11-13] (Acronis International GmbH)
HKLM\...\Policies\Explorer: [NoActiveDesktop] 1 [0 2017-05-12] ()
HKLM\...\Policies\Explorer: [NoActiveDesktopChanges] 1 [0 2017-05-12] ()
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-1963650092-100906850-1094435348-1000\...\Run: [DisplayFusion] => C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe [9167864 2016-10-31] (Binary Fortress Software)
HKU\S-1-5-21-1963650092-100906850-1094435348-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [9364696 2017-03-03] (Piriform Ltd)
HKU\S-1-5-21-1963650092-100906850-1094435348-1000\...\Run: [WebDriveTray] => C:\Program Files\WebDrive\webdrive.exe [7689352 2015-07-29] (South River Technologies, Inc.)
HKU\S-1-5-21-1963650092-100906850-1094435348-1000\...\Run: [Dropbox Update] => C:\Users\Todd\AppData\Local\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-04] (Dropbox, Inc.)
HKU\S-1-5-21-1963650092-100906850-1094435348-1000\...\Run: [GarminExpressTrayApp] => C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [1421736 2017-03-28] (Garmin Ltd. or its subsidiaries)
HKU\S-1-5-21-1963650092-100906850-1094435348-1000\...\Run: [Fitbit Connect] => C:\Program Files (x86)\Fitbit Connect\Fitbit Connect.exe [3414184 2015-09-11] (Fitbit, Inc.)
HKU\S-1-5-21-1963650092-100906850-1094435348-1000\...\Run: [PureText] => C:\Program Files (x86)\Puretext\PureText.exe [84264 2015-10-11] (hxxp://SteveMiller.net/PureText/)
HKU\S-1-5-21-1963650092-100906850-1094435348-1000\...\Run: [EPLTarget\P0000000000000000] => C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIKPE.EXE [298560 2013-09-12] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-1963650092-100906850-1094435348-1000\...\Run: [GoogleChromeAutoLaunch_074FE521E48D2FD943354AD99FDC5BFB] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1143640 2017-05-09] (Google Inc.)
HKU\S-1-5-21-1963650092-100906850-1094435348-1000\...\Run: [RoboForm] => C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [110376 2016-10-22] (Siber Systems)
HKU\S-1-5-21-1963650092-100906850-1094435348-1000\...\Run: [Office Chat] => C:\Users\Todd\AppData\Local\MangoApps\OfficeChat\Office Chat.exe [6141016 2016-07-22] (MangoApps)
HKU\S-1-5-21-1963650092-100906850-1094435348-1000\...\Run: [Todoist] => C:\Users\Todd\AppData\Local\Todoist\WindowsDesktopApp\Todoist.exe [171080 2015-09-29] (Doist Ltd.)
HKU\S-1-5-21-1963650092-100906850-1094435348-1000\...\Run: [Medialink Utilty] => C:\Program Files (x86)\Medialink\MWN-USB150N\UI.exe [2281488 2009-08-21] ()
HKU\S-1-5-21-1963650092-100906850-1094435348-1000\...\Run: [ACDSeeCommanderPro10] => C:\Program Files\ACD Systems\ACDSee Pro\10.0\ACDSeeCommanderPro10.exe [3412936 2016-11-08] ()
HKU\S-1-5-21-1963650092-100906850-1094435348-1000\...\Run: [BYRUA_AGENT] => "C:\LGMobileUpgrade\LGMOBILEAX\BYR_Client\VZWUAAgent.exe" -start
HKU\S-1-5-21-1963650092-100906850-1094435348-1000\...\RunOnce: [Application Restart #2] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1143640 2017-05-09] (Google Inc.)
HKU\S-1-5-21-1963650092-100906850-1094435348-1000\...\MountPoints2: {3f53d884-e9ca-11e6-9c37-00224d508698} - F:\VerizonSWUpgradeAssistantLauncher.exe
HKU\S-1-5-21-1963650092-100906850-1094435348-1000\...\MountPoints2: {41b5961a-e49e-11e4-a856-00224d508698} - O:\VZW_Software_upgrade_assistant.exe
HKU\S-1-5-21-1963650092-100906850-1094435348-1000\...\MountPoints2: {67cf0561-470b-11e5-9d53-00224d508698} - O:\VZW_Software_upgrade_assistant.exe
HKU\S-1-5-21-1963650092-100906850-1094435348-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Program Files (x86)\DisplayFusion\DFSSaver.scr [5300736 2016-10-31] (Binary Fortress Software)
HKU\S-1-5-18\...\Run: [GarminExpressTrayApp] => C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [1421736 2017-03-28] (Garmin Ltd. or its subsidiaries)
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> 
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Evoluent Mouse Manager.lnk [2015-04-13]
ShortcutTarget: Evoluent Mouse Manager.lnk -> C:\Windows\Installer\{933B0FA1-2ECF-4B3F-8153-BEBD8750FF72}\_F419CC1B6A49E8EF5C26A0.exe ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Snagit 12.lnk [2017-05-13]
ShortcutTarget: Snagit 12.lnk -> C:\Program Files (x86)\TechSmith\Snagit 12\Snagit32.exe (TechSmith Corporation)
Startup: C:\Users\Todd\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2017-06-26]
ShortcutTarget: Dropbox.lnk -> C:\Users\Todd\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\Todd\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EvernoteClipper.lnk [2015-04-14]
ShortcutTarget: EvernoteClipper.lnk -> C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
GroupPolicy: Restriction <==== ATTENTION
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings: [ProxySettingsPerUser] 0 <==== ATTENTION (Restriction - ProxySettings)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{573FF570-C982-4068-8DD2-7D93D629C1FD}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{B77D1765-24C4-4992-9484-ACCF04DECA66}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{CFD4C44F-86B1-49E3-81F5-88B285A5B9A1}: [DhcpNameServer] 192.168.0.1
 
Internet Explorer:
==================
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2017-04-11] (Microsoft Corporation)
BHO: Norton Identity Safety -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files\Symantec.cloud\EndpointProtectionAgent\Engine\22.9.3.13\coIEPlg.dll [2017-05-11] (Symantec Corporation)
BHO: RoboForm Toolbar Helper -> {724d43a9-0d85-11d4-9908-00400523e39a} -> C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll [2016-10-22] (Siber Systems Inc.)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2016-04-23] (Adobe Systems Incorporated)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2014-01-21] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2017-02-23] (Microsoft Corporation)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2016-04-23] (Adobe Systems Incorporated)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2017-04-11] (Microsoft Corporation)
BHO-x32: Wondershare Video Converter Ultimate 7.1.0 -> {451C804F-C205-4F03-B48E-537EC94937BF} -> C:\ProgramData\Wondershare\Video Converter Ultimate\WSBrowserAppMgr.dll [2015-08-13] (Wondershare)
BHO-x32: Norton Identity Safety -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files\Symantec.cloud\EndpointProtectionAgent\Engine32\22.9.3.13\coIEPlg.dll [2017-05-11] (Symantec Corporation)
BHO-x32: Norton Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> C:\Program Files\Symantec.cloud\EndpointProtectionAgent\Engine\21.5.0.19\IPS\IPSBHO.DLL => No File
BHO-x32: RoboForm Toolbar Helper -> {724d43a9-0d85-11d4-9908-00400523e39a} -> C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll [2016-10-22] (Siber Systems Inc.)
BHO-x32: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-04-15] (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2017-03-20] (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2016-04-23] (Adobe Systems Incorporated)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2014-01-23] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2017-02-23] (Microsoft Corporation)
BHO-x32: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-04-15] (Oracle Corporation)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2016-04-23] (Adobe Systems Incorporated)
Toolbar: HKLM - &RoboForm Toolbar - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll [2016-10-22] (Siber Systems Inc.)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2016-04-23] (Adobe Systems Incorporated)
Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Symantec.cloud\EndpointProtectionAgent\Engine\22.9.3.13\coIEPlg.dll [2017-05-11] (Symantec Corporation)
Toolbar: HKLM-x32 - &RoboForm Toolbar - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll [2016-10-22] (Siber Systems Inc.)
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2016-04-23] (Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Symantec.cloud\EndpointProtectionAgent\Engine32\22.9.3.13\coIEPlg.dll [2017-05-11] (Symantec Corporation)
Toolbar: HKU\S-1-5-21-1963650092-100906850-1094435348-1000 -> &RoboForm Toolbar - {724D43A0-0D85-11D4-9908-00400523E39A} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll [2016-10-22] (Siber Systems Inc.)
Toolbar: HKU\S-1-5-21-1963650092-100906850-1094435348-1000 -> Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2016-04-23] (Adobe Systems Incorporated)
Toolbar: HKU\S-1-5-21-1963650092-100906850-1094435348-1000 -> Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Symantec.cloud\EndpointProtectionAgent\Engine\22.9.3.13\coIEPlg.dll [2017-05-11] (Symantec Corporation)
Handler: WSWSVCUchrome - {1CA93FF0-A218-44F1 -  No File
 
FireFox:
========
FF DefaultProfile: lbu2lo9y.default
FF ProfilePath: C:\Users\Todd\AppData\Roaming\Mozilla\Firefox\Profiles\lbu2lo9y.default [2017-07-08]
FF DefaultSearchEngine.US: Mozilla\Firefox\Profiles\lbu2lo9y.default -> DuckDuckGo
FF Extension: (Flash Video Downloader - YouTube HD Download [4K]) - C:\Users\Todd\AppData\Roaming\Mozilla\Firefox\Profiles\lbu2lo9y.default\Extensions\[email protected] [2017-04-24]
FF Extension: (LinkDiagnosis 2.3) - C:\Users\Todd\AppData\Roaming\Mozilla\Firefox\Profiles\lbu2lo9y.default\Extensions\[email protected] [2015-10-14] [not signed]
FF Extension: (Cutyfox URL Shortener) - C:\Users\Todd\AppData\Roaming\Mozilla\Firefox\Profiles\lbu2lo9y.default\Extensions\[email protected] [2016-05-04]
FF Extension: (Firebug) - C:\Users\Todd\AppData\Roaming\Mozilla\Firefox\Profiles\lbu2lo9y.default\Extensions\[email protected] [2017-03-01]
FF Extension: (SERPTrends SEO Extension) - C:\Users\Todd\AppData\Roaming\Mozilla\Firefox\Profiles\lbu2lo9y.default\Extensions\[email protected] [2016-03-19]
FF Extension: (SimilarWeb - Site Traffic Sources and Ranking) - C:\Users\Todd\AppData\Roaming\Mozilla\Firefox\Profiles\lbu2lo9y.default\Extensions\[email protected] [2017-02-24]
FF Extension: (IE NetRenderer button) - C:\Users\Todd\AppData\Roaming\Mozilla\Firefox\Profiles\lbu2lo9y.default\Extensions\ie[email protected] [2017-05-28]
FF Extension: (Double-click Image Downloader) - C:\Users\Todd\AppData\Roaming\Mozilla\Firefox\Profiles\lbu2lo9y.default\Extensions\[email protected] [2017-02-28]
FF Extension: (Save Session) - C:\Users\Todd\AppData\Roaming\Mozilla\Firefox\Profiles\lbu2lo9y.default\Extensions\[email protected] [2016-05-04]
FF Extension: (SenSEO) - C:\Users\Todd\AppData\Roaming\Mozilla\Firefox\Profiles\lbu2lo9y.default\Extensions\[email protected] [2016-05-02]
FF Extension: (Similar Site Search) - C:\Users\Todd\AppData\Roaming\Mozilla\Firefox\Profiles\lbu2lo9y.default\Extensions\[email protected] [2016-05-04]
FF Extension: (Session Manager) - C:\Users\Todd\AppData\Roaming\Mozilla\Firefox\Profiles\lbu2lo9y.default\Extensions\{1280606b-2510-4fe0-97ef-9b5a22eafe30}.xpi [2017-02-02]
FF Extension: (View Source Chart) - C:\Users\Todd\AppData\Roaming\Mozilla\Firefox\Profiles\lbu2lo9y.default\Extensions\{68836a21-fc7d-4ea1-a065-7efabd99d414}.xpi [2016-05-04]
FF Extension: (Video DownloadHelper) - C:\Users\Todd\AppData\Roaming\Mozilla\Firefox\Profiles\lbu2lo9y.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2017-05-11]
FF Extension: (Web Developer) - C:\Users\Todd\AppData\Roaming\Mozilla\Firefox\Profiles\lbu2lo9y.default\Extensions\{c45c406e-ab73-11d8-be73-000a95be3b12}.xpi [2017-04-24]
FF Extension: (RightToClick) - C:\Users\Todd\AppData\Roaming\Mozilla\Firefox\Profiles\lbu2lo9y.default\Extensions\{cd617375-6743-4ee8-bac4-fbf10f35729e}.xpi [2015-12-13]
FF Extension: (SEO Site Tools, Site Analysis) - C:\Users\Todd\AppData\Roaming\Mozilla\Firefox\Profiles\lbu2lo9y.default\Extensions\{e30e9060-21d5-11e3-8224-0800200c9a66} [2016-06-06]
FF HKLM\...\Firefox\Extensions: [{C1A2A613-35F1-4FCF-B27F-2840527B6556}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_22.9.3.13\coFFAddon
FF Extension: (Norton Security Toolbar) - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_22.9.3.13\coFFAddon [2017-06-23]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\ProgramData\Wondershare\Video Converter Ultimate\[email protected]
FF Extension: (Wondershare Video Converter Ultimate) - C:\ProgramData\Wondershare\Video Converter Ultimate\[email protected] [2015-10-20] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: (Adobe Acrobat - Create PDF) - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn [2016-07-19]
FF HKLM-x32\...\Firefox\Extensions: [{C1A2A613-35F1-4FCF-B27F-2840527B6556}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_22.9.3.13\coFFAddon
FF HKLM-x32\...\Firefox\Extensions: [{22119944-ED35-4ab1-910B-E619EA06A115}] - C:\Program Files (x86)\Siber Systems\AI RoboForm\Firefox\roboform.xpi
FF Extension: (RoboForm Toolbar) - C:\Program Files (x86)\Siber Systems\AI RoboForm\Firefox\roboform.xpi [2016-10-22]
FF HKU\S-1-5-21-1963650092-100906850-1094435348-1000\...\Firefox\Extensions: [{22119944-ED35-4ab1-910B-E619EA06A115}] - C:\Program Files (x86)\Siber Systems\AI RoboForm\Firefox\roboform.xpi
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_26_0_0_131.dll [2017-06-17] ()
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-07-29] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_26_0_0_131.dll [2017-06-17] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-01-06] ()
FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-04-15] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-04-15] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2017-01-27] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-04-08] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-04-08] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll [2016-06-23] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-07-29] (Adobe Systems)
FF Plugin HKU\S-1-5-21-1963650092-100906850-1094435348-1000: @citrixonline.com/appdetectorplugin -> C:\Users\Todd\AppData\Local\Citrix\Plugins\104\npappdetector.dll [2015-04-17] (Citrix Online)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2017-01-27] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Users\Todd\AppData\Roaming\mozilla\plugins\npatgpc.dll [2015-04-26] (Cisco WebEx LLC)
 
Chrome: 
=======
CHR DefaultProfile: Default
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.quora.com/","hxxp://www.nytimes.com/pages/dining/index.html"
CHR Profile: C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default [2017-07-08]
CHR Extension: (Google Slides) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-04-13]
CHR Extension: (Google Docs) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-04-13]
CHR Extension: (Google Drive) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-20]
CHR Extension: (Sothink Flash Downloader for Chrome) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\biceobciobbhhkplgocbaigojbnepcoi [2015-04-13]
CHR Extension: (Pidoco°) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\bipghjdghdamigamobmcaigdcncbkfof [2015-09-09]
CHR Extension: (YouTube) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24]
CHR Extension: (OneTab) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\chphlpgkkbolifaimnlloiipkdnihall [2017-02-20]
CHR Extension: (Norton Security Toolbar) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjabmdjcfcfdmffimndhafhblfmpjdpe [2017-06-23]
CHR Extension: (Ad-blocker for Gmail™) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\coibnogmjcpbccgjofoiklnfpbbjbapo [2015-04-13]
CHR Extension: (Google Search) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-04]
CHR Extension: (Adobe Acrobat) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-03-05]
CHR Extension: (Mega Button) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehjoabpkbidaaiikahbmfebfabbchoca [2015-04-13]
CHR Extension: (Reditr Web App - The Best Reddit Client) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejmiceoebcclihjdpnmmkdcmcboekibc [2016-09-13]
CHR Extension: (Blur) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\epanfjkfahimkgomnigadpkobaefekcd [2017-06-23]
CHR Extension: (Bit.ly) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\epdgnnildheopikdpdooanjlafgndmmk [2016-11-09]
CHR Extension: (Google Sheets) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-04-13]
CHR Extension: (Full Screen Weather) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkkaebihfmbofclegkcfkkemepfehibg [2015-05-13]
CHR Extension: (Office Editing for Docs, Sheets & Slides) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbkeegbaiigmenfmjfclcdgdpimamgkj [2017-06-23]
CHR Extension: (Google Docs Offline) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-04-03]
CHR Extension: (feedly) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\hipbfijinpcgfogaopmgehiegacbhmob [2016-08-21]
CHR Extension: (AllCast Receiver) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\hjbljnpdahefgnopeohlaeohgkiidnoe [2016-09-18]
CHR Extension: (Terms of Service; Didn’t Read) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\hjdoplcnndgiblooccencgcggcoihigg [2015-06-08]
CHR Extension: (2cloud) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkelgkihphkegiaagbcgglfidabmgkgp [2015-11-22]
CHR Extension: (Google Keep - notes and lists) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmjkmjkepdijhoojdojkdfohbdgmmhki [2017-07-06]
CHR Extension: (Bitly | Unleash the power of the link) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\iabeihobmhlgpkcgjiloemdbofjbdcic [2016-09-13]
CHR Extension: (Pixlr Editor) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmaknaampgiegkcjlimdiidlhopknpk [2015-10-20]
CHR Extension: (Norton Identity Safe) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\iikflkcanblccfahdhdonehdalibjnif [2015-04-15]
CHR Extension: (Up) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\iohgglcbddjknnemakghbjadinmopafl [2015-04-13]
CHR Extension: (Clearly) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\iooicodkiihhpojmmeghjclgihfjdjhj [2015-06-27]
CHR Extension: (Panel View for Keep) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\jccocffecajimkdjgfpjhlpiimcnadhb [2016-05-03]
CHR Extension: (Cisco WebEx Extension) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlhmfgmfgeifomenelglieieghnjghma [2017-04-24]
CHR Extension: (Video Downloader [FVD]) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfmhcpmkbdkbgbmkjoiopeeegenkdikp [2015-05-13]
CHR Extension: (Refresh Monkey) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljngnafhejmefmijjoedbclkadhacebd [2015-04-13]
CHR Extension: (Wikibuy) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\nenlahapcbofgnanklpelkaejcehkggg [2017-06-30]
CHR Extension: (OneDrive) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\nffchahhjecejoiigmnhhicpoabngedk [2015-09-29]
CHR Extension: (Broken Link Checker) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\nibppfobembgfmejpjaaeocbogeonhch [2016-04-02]
CHR Extension: (RSS Subscription Extension (by Google)) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlbjncdgjeocebhnmkbbbdekmmmcbfjd [2015-04-13]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-03-08]
CHR Extension: (Password Alert) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\noondiphcddnnabmjcihcjfbhfklnnep [2017-03-23]
CHR Extension: (WeVideo - Video Editor and Maker) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\okgjbfikepgflmlelgfgecmgjnmnmnnb [2015-10-20]
CHR Extension: (Evernote Web Clipper) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\pioclpoplcdbaefihamjohnefbikjilc [2017-06-23]
CHR Extension: (Gmail) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-13]
CHR Extension: (Google Similar Pages) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjnfggphgdjblhfjaphkjhfpiiekbbej [2016-02-04]
CHR Extension: (Chrome Media Router) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-05-13]
CHR Extension: (RoboForm Password Manager) - C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnlccmojcmeohlpggmfnbbiapkmbliob [2017-06-23]
CHR HKLM\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files\Symantec.cloud\EndpointProtectionAgent\Engine\22.9.3.13\Exts\Chrome.crx [2017-06-23]
CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [pnlccmojcmeohlpggmfnbbiapkmbliob] - C:\Program Files (x86)\Siber Systems\AI RoboForm\Chrome\rf-chrome.crx [2015-04-13]
CHR HKLM-x32\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files\Symantec.cloud\EndpointProtectionAgent\Engine\22.9.3.13\Exts\Chrome.crx [2017-06-23]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2016-06-23]
CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [pnlccmojcmeohlpggmfnbbiapkmbliob] - C:\Program Files (x86)\Siber Systems\AI RoboForm\Chrome\rf-chrome.crx [2015-04-13]
 
==================== Services (Whitelisted) ====================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 AcrSch2Svc; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [1278208 2017-04-10] ()
R2 afcdpsrv; C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe [6086232 2017-04-13] ()
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2246256 2017-05-18] (Adobe Systems, Incorporated)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-05-29] (Apple Inc.)
R2 DisplayFusionService; C:\Program Files (x86)\DisplayFusion\DisplayFusionService.exe [5103640 2016-10-31] (Binary Fortress Software)
R2 EpsonCustomerResearchParticipation; C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe [676336 2015-06-25] (SEIKO EPSON CORPORATION)
R2 EPSON_PM_RPCV4_06; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S60RPB.EXE [152640 2013-04-15] (SEIKO EPSON CORPORATION)
R2 EvoDriverUpdater; C:\Program Files (x86)\Evoluent\Evoluent Mouse Manager\EvoDriverUpdateService.exe [12800 2014-10-21] (Evoluent) [File not signed]
R2 Fitbit Connect; C:\Program Files (x86)\Fitbit Connect\FitbitConnectService.exe [1435304 2015-09-11] (Fitbit, Inc.)
S3 FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [647680 2015-05-17] (Macrovision Europe Ltd.) [File not signed]
R2 Garmin Device Interaction Service; C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe [1099280 2017-03-28] (Garmin Ltd. or its subsidiaries)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe [419304 2017-06-21] (LogMeIn, Inc.)
R2 LMIMaint; C:\Program Files (x86)\LogMeIn\x64\RaMaint.exe [524776 2017-06-21] (LogMeIn, Inc.)
R2 LogMeIn; C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe [407424 2015-02-16] (LogMeIn, Inc.)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1136608 2016-03-10] (Malwarebytes)
R2 mmsminisrv; C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe [4795288 2017-02-13] (Acronis International GmbH)
S3 mobile_backup_server; C:\Program Files (x86)\Common Files\Acronis\MobileBackupServer\mobile_backup_server.exe [2908352 2017-01-06] (Acronis International GmbH)
S3 mobile_backup_status_server; C:\Program Files (x86)\Acronis\TrueImageHome\mobile_backup_status_server.exe [1612400 2017-04-10] ()
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [50688 2014-11-17] (Hewlett-Packard) [File not signed]
R2 NIS; C:\Program Files\Symantec.cloud\EndpointProtectionAgent\Engine\22.9.3.13\NIS.exe [326160 2017-05-30] (Symantec Corporation)
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [66048 2014-11-17] (Hewlett-Packard) [File not signed]
R2 PSI_SVC_2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [277360 2014-04-30] (arvato digital services llc)
R2 PSI_SVC_2_x64; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [337776 2014-04-30] (arvato digital services llc)
R2 SsPaAdm; C:\Program Files\Symantec.cloud\PlatformAgent\ccSvcHst.exe [199464 2016-06-30] (Symantec Corporation)
R2 ssPaSetMgr; C:\Program Files\Symantec.cloud\PlatformAgent32\ccSvcHst.exe [153632 2016-06-30] (Symantec Corporation)
R2 ssSpnAv; C:\Program Files\Symantec.cloud\AntiVirus\AVAgent.exe [460720 2017-06-15] (Symantec Corporation)
R2 ss_conn_service; C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe [743688 2014-10-13] (DEVGURU Co., LTD.)
R2 SWGVCSvc; C:\Program Files\Dell SonicWALL\Global VPN Client\SWGVCSvc.exe [336616 2013-12-03] (Dell SonicWALL, Inc.)
R2 syncagentsrv; C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe [7013704 2016-12-21] ()
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10888944 2017-04-25] (TeamViewer GmbH)
R2 TechSmith Uploader Service; C:\Program Files (x86)\Common Files\TechSmith Shared\Uploader\UploaderService.exe [3408384 2015-01-26] (TechSmith Corporation) [File not signed]
R2 UsbClientService; C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe [248736 2014-02-24] () [File not signed]
R2 WebDriveService; C:\Program Files\WebDrive\wdService.exe [6566536 2015-07-29] (South River Technologies, Inc.)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
S3 WsDrvInst; C:\Program Files (x86)\Wondershare\Dr.Fone for Android\DriverInstall.exe [104248 2015-12-10] (Wondershare)
S3 MozillaMaintenance; "C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe" [X]
 
===================== Drivers (Whitelisted) ======================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R1 BHDrvx64; C:\Program Files\Symantec.cloud\EndpointProtectionAgent\NortonData\22.9.3.13\Definitions\BASHDefs\20170705.001\BHDrvx64.sys [1862816 2017-06-28] (Symantec Corporation)
R1 ccSet_Cloud; C:\Windows\SysWOW64\Drivers\Symantec.cloud\ccSetx64.sys [174328 2016-06-30] (Symantec Corporation)
R1 ccSet_NIS; C:\Windows\system32\drivers\NISx64\1609030.00D\ccSetx64.sys [174232 2017-05-11] (Symantec Corporation)
S3 DIRECTIO; C:\Program Files\PerformanceTest\DirectIo64.sys [31376 2015-03-10] ()
R1 DNE; C:\Windows\System32\DRIVERS\dnelwf64.sys [133456 2013-10-03] (Citrix Systems, Inc.)
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [508032 2017-06-28] (Symantec Corporation)
U3 EraserUtilDrv11720; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilDrv11720.sys [158336 2017-06-28] (Symantec Corporation)
R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [156824 2017-05-10] (Symantec Corporation)
R3 EvoMouseDriverFilterHidUsb; C:\Windows\System32\DRIVERS\EvoMouseDriverFilterHidUsb.sys [18432 2014-10-21] (Evoluent)
R3 EvoMouseDriverMini; C:\Windows\System32\drivers\EvoMouseDriverMini.sys [16896 2014-10-21] (Evoluent)
R0 file_tracker; C:\Windows\System32\DRIVERS\file_tracker.sys [375136 2017-04-13] (Acronis International GmbH)
R1 IDSVia64; C:\Program Files\Symantec.cloud\EndpointProtectionAgent\NortonData\22.9.3.13\Definitions\IPSDefs\20170703.001\IDSvia64.sys [1053824 2017-06-23] (Symantec Corporation)
R2 LMIInfo; C:\Windows\system32\drivers\LMIInfo.sys [30432 2017-01-11] (LogMeIn, Inc.)
S4 LMIRfsClientNP; no ImagePath
R1 mbamchameleon; C:\Windows\system32\drivers\mbamchameleon.sys [140672 2016-03-10] (Malwarebytes)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [192216 2017-07-08] (Malwarebytes)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64896 2016-03-10] (Malwarebytes Corporation)
S3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38032 2015-04-08] (NVIDIA Corporation)
R3 radpms; C:\Windows\System32\DRIVERS\radpms.sys [30928 2017-02-02] (LogMeIn, Inc.)
R3 SRTSP; C:\Windows\System32\Drivers\NISx64\1609030.00D\SRTSP64.SYS [770712 2017-05-11] (Symantec Corporation)
R1 SRTSPX; C:\Windows\system32\drivers\NISx64\1609030.00D\SRTSPX64.SYS [49304 2017-05-11] (Symantec Corporation)
R2 SWIPsec; C:\Windows\system32\Drivers\SWIPsec.sys [110064 2013-12-03] (Dell SonicWALL, Inc.)
R0 SymEFASI; C:\Windows\System32\drivers\NISx64\1609030.00D\SYMEFASI64.SYS [1714328 2017-05-11] (Symantec Corporation)
R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [102608 2017-06-23] (Symantec Corporation)
R1 SymIRON; C:\Windows\system32\drivers\NISx64\1609030.00D\Ironx64.SYS [291480 2017-05-11] (Symantec Corporation)
R1 SymNetS; C:\Windows\System32\Drivers\NISx64\1609030.00D\SYMNETS.SYS [567496 2017-05-11] (Symantec Corporation)
R0 tib; C:\Windows\System32\DRIVERS\tib.sys [1310560 2017-04-13] (Acronis International GmbH)
R2 tib_mounter; C:\Windows\System32\DRIVERS\tib_mounter.sys [214360 2017-04-13] (Acronis International GmbH)
S3 tnd; C:\Windows\System32\DRIVERS\tnd.sys [688864 2017-04-13] (Acronis International GmbH)
R2 virtual_file; C:\Windows\System32\DRIVERS\virtual_file.sys [324448 2017-04-13] (Acronis International GmbH)
S3 vzandnetbus; C:\Windows\System32\DRIVERS\lgvzandnetbus64.sys [29184 2015-04-24] (LG Electronics Inc.)
S3 vzandnetdiag; C:\Windows\System32\DRIVERS\lgvzandnetdiag64.sys [31232 2015-04-24] (LG Electronics Inc.)
S3 vzandnetmodem; C:\Windows\System32\DRIVERS\lgvzandnetmdm64.sys [37888 2015-04-24] (LG Electronics Inc.)
R2 WebDriveFSD; C:\Program Files\WebDrive\wdfsd.sys [92808 2015-07-29] ()
S3 xhcdrv; C:\Windows\System32\DRIVERS\xhcdrv.sys [297472 2014-01-20] (VIA Technologies, Inc.) [File not signed]
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One Month Created files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2017-07-08 00:36 - 2017-07-08 13:22 - 00000000 ____D C:\FRST
2017-07-07 22:23 - 2017-07-07 22:23 - 00000000 ____D C:\Windows\System32\Tasks\Remediation
2017-06-26 15:14 - 2017-06-26 15:14 - 00000000 ____D C:\Users\Todd\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2017-06-25 22:53 - 2017-06-25 22:54 - 00000000 ____D C:\What is it
2017-06-25 21:51 - 2017-06-25 21:51 - 00000000 ____D C:\Gina
2017-06-23 22:06 - 2017-06-23 22:06 - 00000000 ____D C:\Windows\System32\Tasks\Endpoint Protection.cloud
2017-06-23 22:03 - 2017-06-23 22:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Magician
2017-06-23 22:01 - 2017-06-23 22:01 - 00003250 _____ C:\Windows\System32\Tasks\Norton WSC Integration
2017-06-13 16:11 - 2017-06-02 04:28 - 02317824 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2017-06-13 16:11 - 2017-06-02 04:28 - 02222080 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2017-06-13 16:11 - 2017-06-02 04:28 - 00778240 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2017-06-13 16:11 - 2017-06-02 04:28 - 00491520 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2017-06-13 16:11 - 2017-06-02 04:28 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2017-06-13 16:11 - 2017-06-02 04:28 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\mssitlb.dll
2017-06-13 16:11 - 2017-06-02 04:28 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2017-06-13 16:11 - 2017-06-02 04:28 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2017-06-13 16:11 - 2017-06-02 04:28 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\msshooks.dll
2017-06-13 16:11 - 2017-06-02 04:11 - 00591872 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2017-06-13 16:11 - 2017-06-02 04:11 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2017-06-13 16:11 - 2017-06-02 04:10 - 00733696 _____ (Microsoft Corporation) C:\Windows\HelpPane.exe
2017-06-13 16:11 - 2017-06-02 04:10 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2017-06-13 16:11 - 2017-06-02 04:09 - 01549824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2017-06-13 16:11 - 2017-06-02 04:09 - 01400320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2017-06-13 16:11 - 2017-06-02 04:09 - 00666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2017-06-13 16:11 - 2017-06-02 04:09 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2017-06-13 16:11 - 2017-06-02 04:09 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll
2017-06-13 16:11 - 2017-06-02 04:09 - 00104448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssitlb.dll
2017-06-13 16:11 - 2017-06-02 04:09 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
2017-06-13 16:11 - 2017-06-02 04:09 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssprxy.dll
2017-06-13 16:11 - 2017-06-02 03:58 - 00427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2017-06-13 16:11 - 2017-06-02 03:58 - 00164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2017-06-13 16:11 - 2017-06-02 03:57 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2017-06-13 16:11 - 2017-06-02 03:57 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msshooks.dll
2017-06-13 16:11 - 2017-05-21 00:28 - 00154856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2017-06-13 16:11 - 2017-05-21 00:28 - 00095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2017-06-13 16:11 - 2017-05-21 00:24 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2017-06-13 16:11 - 2017-05-21 00:24 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2017-06-13 16:11 - 2017-05-21 00:24 - 00730624 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2017-06-13 16:11 - 2017-05-21 00:24 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2017-06-13 16:11 - 2017-05-21 00:24 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2017-06-13 16:11 - 2017-05-21 00:24 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2017-06-13 16:11 - 2017-05-21 00:24 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2017-06-13 16:11 - 2017-05-21 00:24 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2017-06-13 16:11 - 2017-05-21 00:24 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2017-06-13 16:11 - 2017-05-21 00:24 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2017-06-13 16:11 - 2017-05-21 00:24 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2017-06-13 16:11 - 2017-05-21 00:24 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2017-06-13 16:11 - 2017-05-21 00:24 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2017-06-13 16:11 - 2017-05-21 00:24 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2017-06-13 16:11 - 2017-05-21 00:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2017-06-13 16:11 - 2017-05-21 00:24 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2017-06-13 16:11 - 2017-05-21 00:24 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2017-06-13 16:11 - 2017-05-21 00:24 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2017-06-13 16:11 - 2017-05-21 00:24 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2017-06-13 16:11 - 2017-05-21 00:06 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2017-06-13 16:11 - 2017-05-21 00:06 - 00666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2017-06-13 16:11 - 2017-05-21 00:06 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2017-06-13 16:11 - 2017-05-21 00:06 - 00342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2017-06-13 16:11 - 2017-05-21 00:06 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2017-06-13 16:11 - 2017-05-21 00:06 - 00254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2017-06-13 16:11 - 2017-05-21 00:06 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2017-06-13 16:11 - 2017-05-21 00:06 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2017-06-13 16:11 - 2017-05-21 00:06 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2017-06-13 16:11 - 2017-05-21 00:06 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2017-06-13 16:11 - 2017-05-21 00:06 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2017-06-13 16:11 - 2017-05-21 00:06 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
2017-06-13 16:11 - 2017-05-21 00:06 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2017-06-13 16:11 - 2017-05-21 00:06 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2017-06-13 16:11 - 2017-05-21 00:06 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2017-06-13 16:11 - 2017-05-21 00:06 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2017-06-13 16:11 - 2017-05-20 23:55 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2017-06-13 16:11 - 2017-05-20 23:48 - 00291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2017-06-13 16:11 - 2017-05-20 23:48 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2017-06-13 16:11 - 2017-05-20 23:48 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2017-06-13 16:11 - 2017-05-20 23:47 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2017-06-13 16:11 - 2017-05-20 23:46 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2017-06-13 16:11 - 2017-05-20 23:42 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2017-06-13 16:11 - 2017-05-16 14:19 - 00394448 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2017-06-13 16:11 - 2017-05-16 13:35 - 00346320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2017-06-13 16:11 - 2017-05-14 16:46 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2017-06-13 16:11 - 2017-05-14 16:46 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2017-06-13 16:11 - 2017-05-14 16:28 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2017-06-13 16:11 - 2017-05-14 16:27 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2017-06-13 16:11 - 2017-05-14 16:27 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2017-06-13 16:11 - 2017-05-14 16:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2017-06-13 16:11 - 2017-05-14 16:26 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2017-06-13 16:11 - 2017-05-14 16:24 - 02899456 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2017-06-13 16:11 - 2017-05-14 16:19 - 25738752 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2017-06-13 16:11 - 2017-05-14 16:17 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2017-06-13 16:11 - 2017-05-14 16:16 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2017-06-13 16:11 - 2017-05-14 16:12 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2017-06-13 16:11 - 2017-05-14 16:10 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2017-06-13 16:11 - 2017-05-14 16:10 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2017-06-13 16:11 - 2017-05-14 16:10 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2017-06-13 16:11 - 2017-05-14 16:10 - 00116224 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2017-06-13 16:11 - 2017-05-14 16:01 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2017-06-13 16:11 - 2017-05-14 15:57 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2017-06-13 16:11 - 2017-05-14 15:55 - 05975040 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2017-06-13 16:11 - 2017-05-14 15:48 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2017-06-13 16:11 - 2017-05-14 15:47 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2017-06-13 16:11 - 2017-05-14 15:46 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2017-06-13 16:11 - 2017-05-14 15:42 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2017-06-13 16:11 - 2017-05-14 15:41 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2017-06-13 16:11 - 2017-05-14 15:38 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2017-06-13 16:11 - 2017-05-14 15:37 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2017-06-13 16:11 - 2017-05-14 15:36 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2017-06-13 16:11 - 2017-05-14 15:23 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2017-06-13 16:11 - 2017-05-14 15:23 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2017-06-13 16:11 - 2017-05-14 15:22 - 00499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2017-06-13 16:11 - 2017-05-14 15:22 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2017-06-13 16:11 - 2017-05-14 15:22 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2017-06-13 16:11 - 2017-05-14 15:21 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2017-06-13 16:11 - 2017-05-14 15:20 - 00725504 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2017-06-13 16:11 - 2017-05-14 15:19 - 00806912 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2017-06-13 16:11 - 2017-05-14 15:18 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2017-06-13 16:11 - 2017-05-14 15:17 - 02132992 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2017-06-13 16:11 - 2017-05-14 15:16 - 02290176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2017-06-13 16:11 - 2017-05-14 15:15 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2017-06-13 16:11 - 2017-05-14 15:14 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2017-06-13 16:11 - 2017-05-14 15:12 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2017-06-13 16:11 - 2017-05-14 15:11 - 20274688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2017-06-13 16:11 - 2017-05-14 15:11 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2017-06-13 16:11 - 2017-05-14 15:10 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2017-06-13 16:11 - 2017-05-14 15:10 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2017-06-13 16:11 - 2017-05-14 15:02 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2017-06-13 16:11 - 2017-05-14 14:57 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2017-06-13 16:11 - 2017-05-14 14:57 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2017-06-13 16:11 - 2017-05-14 14:56 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2017-06-13 16:11 - 2017-05-14 14:54 - 15252992 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2017-06-13 16:11 - 2017-05-14 14:53 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2017-06-13 16:11 - 2017-05-14 14:52 - 03240960 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2017-06-13 16:11 - 2017-05-14 14:52 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2017-06-13 16:11 - 2017-05-14 14:50 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2017-06-13 16:11 - 2017-05-14 14:49 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2017-06-13 16:11 - 2017-05-14 14:44 - 04549120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2017-06-13 16:11 - 2017-05-14 14:42 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2017-06-13 16:11 - 2017-05-14 14:40 - 00693248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2017-06-13 16:11 - 2017-05-14 14:39 - 02057216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2017-06-13 16:11 - 2017-05-14 14:38 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2017-06-13 16:11 - 2017-05-14 14:37 - 01544704 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2017-06-13 16:11 - 2017-05-14 14:30 - 13664768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2017-06-13 16:11 - 2017-05-14 14:27 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2017-06-13 16:11 - 2017-05-14 14:15 - 02767872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2017-06-13 16:11 - 2017-05-14 14:11 - 01314816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2017-06-13 16:11 - 2017-05-14 14:11 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2017-06-13 16:11 - 2017-05-12 14:27 - 00631176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2017-06-13 16:11 - 2017-05-12 14:26 - 05547752 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2017-06-13 16:11 - 2017-05-12 14:26 - 00706792 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2017-06-13 16:11 - 2017-05-12 14:26 - 00382696 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2017-06-13 16:11 - 2017-05-12 14:24 - 01732864 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00806912 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:07 - 04001000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2017-06-13 16:11 - 2017-05-12 14:07 - 03945704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2017-06-13 16:11 - 2017-05-12 14:07 - 00308456 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2017-06-13 16:11 - 2017-05-12 14:04 - 01314112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00629760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00313344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 14:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 13:55 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2017-06-13 16:11 - 2017-05-12 13:54 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2017-06-13 16:11 - 2017-05-12 13:54 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2017-06-13 16:11 - 2017-05-12 13:52 - 03222528 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2017-06-13 16:11 - 2017-05-12 13:51 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2017-06-13 16:11 - 2017-05-12 13:50 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2017-06-13 16:11 - 2017-05-12 13:46 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2017-06-13 16:11 - 2017-05-12 13:43 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2017-06-13 16:11 - 2017-05-12 13:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2017-06-13 16:11 - 2017-05-12 13:41 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2017-06-13 16:11 - 2017-05-12 13:41 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2017-06-13 16:11 - 2017-05-12 13:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2017-06-13 16:11 - 2017-05-12 13:40 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 13:40 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 13:40 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 13:40 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2017-06-13 16:11 - 2017-05-12 12:25 - 01251328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2017-06-13 16:11 - 2017-05-12 11:58 - 01648128 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2017-06-13 16:11 - 2017-05-12 11:58 - 01180160 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2017-06-13 16:11 - 2017-05-10 11:33 - 00091368 _____ (Microsoft Corporation) C:\Windows\system32\MigAutoPlay.exe
2017-06-13 16:11 - 2017-05-10 11:29 - 14183936 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2017-06-13 16:11 - 2017-05-10 11:29 - 03165184 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2017-06-13 16:11 - 2017-05-10 11:29 - 01867776 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2017-06-13 16:11 - 2017-05-10 11:29 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2017-06-13 16:11 - 2017-05-10 11:29 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2017-06-13 16:11 - 2017-05-10 11:28 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2017-06-13 16:11 - 2017-05-10 11:16 - 00091368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MigAutoPlay.exe
2017-06-13 16:11 - 2017-05-10 11:14 - 02651136 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2017-06-13 16:11 - 2017-05-10 11:13 - 00709120 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2017-06-13 16:11 - 2017-05-10 11:13 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2017-06-13 16:11 - 2017-05-10 11:13 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2017-06-13 16:11 - 2017-05-10 11:13 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2017-06-13 16:11 - 2017-05-10 11:13 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2017-06-13 16:11 - 2017-05-10 11:13 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2017-06-13 16:11 - 2017-05-10 11:12 - 12880896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2017-06-13 16:11 - 2017-05-10 11:12 - 01499648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2017-06-13 16:11 - 2017-05-10 11:12 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2017-06-13 16:11 - 2017-05-10 11:00 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2017-06-13 16:11 - 2017-05-10 11:00 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2017-06-13 16:11 - 2017-05-10 11:00 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2017-06-13 16:11 - 2017-05-10 11:00 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2017-06-13 16:11 - 2017-05-10 10:52 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2017-06-13 16:11 - 2017-05-09 11:30 - 00757248 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2017-06-13 16:11 - 2017-05-09 11:29 - 00970240 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2017-06-13 16:11 - 2017-05-09 11:15 - 00071680 _____ C:\Windows\system32\PrintBrmUi.exe
2017-06-13 16:11 - 2017-05-09 11:11 - 00497664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2017-06-13 16:11 - 2017-05-07 11:33 - 00094440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2017-06-13 16:11 - 2017-05-07 11:29 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2017-06-13 16:11 - 2017-04-27 18:50 - 03550208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll
2017-06-13 16:11 - 2017-04-12 09:05 - 04296704 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll
2017-06-13 16:11 - 2017-03-30 11:03 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\rundll32.exe
2017-06-13 16:11 - 2017-03-30 10:58 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
2017-06-10 13:25 - 2017-06-10 13:25 - 00001381 _____ C:\Users\Public\Desktop\Gihosoft Free Youtube Downloader.lnk
2017-06-10 13:25 - 2017-06-10 13:25 - 00000000 ____D C:\Users\Todd\Documents\Jihosoft
2017-06-10 13:25 - 2017-06-10 13:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gihosoft Free Youtube Downloader
2017-06-10 13:25 - 2017-06-10 13:25 - 00000000 ____D C:\Program Files (x86)\Gihosoft
2017-06-10 13:22 - 2017-06-10 13:22 - 00000000 ____D C:\Users\Todd\AppData\Local\4kdownload.com
 
==================== One Month Modified files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2017-07-08 13:22 - 2015-04-14 22:00 - 00000000 ____D C:\ProgramData\Symantec.cloud
2017-07-08 13:16 - 2015-04-17 08:56 - 00000000 ____D C:\Users\Todd\AppData\Roaming\Skype
2017-07-08 13:14 - 2015-10-04 15:14 - 00000911 _____ C:\Windows\Tasks\EPSON WF-5190 Series Update {8A2DA38D-148E-435A-B934-81789046876B}.job
2017-07-08 13:14 - 2015-10-04 15:14 - 00000725 _____ C:\Windows\Tasks\EPSON WF-5190 Series Invitation {8A2DA38D-148E-435A-B934-81789046876B}.job
2017-07-08 13:12 - 2015-10-20 13:57 - 00000652 _____ C:\Windows\Tasks\G2MUploadTask-S-1-5-21-1963650092-100906850-1094435348-1000.job
2017-07-08 13:07 - 2016-10-27 14:37 - 00000000 ____D C:\Users\Todd\AppData\Roaming\Office Chat
2017-07-08 13:07 - 2016-05-19 00:29 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2017-07-08 12:55 - 2015-05-16 11:36 - 00000000 ____D C:\Program Files\VIA XHCI UASP Utility
2017-07-08 12:53 - 2015-06-28 18:28 - 00000914 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1963650092-100906850-1094435348-1000UA.job
2017-07-08 12:40 - 2015-10-20 13:57 - 00000556 _____ C:\Windows\Tasks\G2MUpdateTask-S-1-5-21-1963650092-100906850-1094435348-1000.job
2017-07-08 12:33 - 2015-04-13 22:38 - 00000000 ____D C:\ProgramData\LogMeIn
2017-07-08 06:53 - 2015-06-28 18:28 - 00000862 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1963650092-100906850-1094435348-1000Core.job
2017-07-08 04:03 - 2009-07-14 00:45 - 00022096 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-07-08 04:03 - 2009-07-14 00:45 - 00022096 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-07-07 22:38 - 2017-01-27 23:04 - 00000000 ____D C:\Users\Todd\AppData\Roaming\vlc
2017-07-07 22:37 - 2017-01-27 23:04 - 00001066 _____ C:\Users\Public\Desktop\VLC media player.lnk
2017-07-07 20:20 - 2016-12-07 00:21 - 00000000 ____D C:\Users\Todd\AppData\LocalLow\Mozilla
2017-07-05 22:13 - 2017-03-15 22:22 - 00000000 ____D C:\ProgramData\Skype
2017-07-05 22:13 - 2015-05-21 13:03 - 00000000 ___RD C:\Program Files (x86)\Skype
2017-06-26 15:14 - 2015-04-13 22:28 - 00000000 ____D C:\Users\Todd\AppData\Roaming\Dropbox
2017-06-25 22:45 - 2009-07-14 01:13 - 00006214 _____ C:\Windows\system32\PerfStringBackup.INI
2017-06-24 00:27 - 2016-01-14 22:49 - 00000000 ____D C:\Windows\rescache
2017-06-23 22:26 - 2017-01-30 21:22 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-06-23 22:03 - 2016-08-01 18:40 - 00003268 _____ C:\Windows\System32\Tasks\SamsungMagician
2017-06-23 22:03 - 2016-08-01 18:40 - 00001220 _____ C:\Users\Public\Desktop\Samsung Magician.lnk
2017-06-23 22:03 - 2015-04-21 20:14 - 00000000 ____D C:\ProgramData\Samsung
2017-06-23 22:03 - 2015-04-13 21:12 - 00001413 _____ C:\Users\Todd\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2017-06-23 22:02 - 2016-10-27 14:37 - 00000446 _____ C:\Users\Todd\AppData\Roaming\CSharpAnalytics-MeasurementSession
2017-06-23 22:01 - 2015-04-14 22:04 - 00000000 ____D C:\Windows\system32\Drivers\NISx64
2017-06-23 22:00 - 2015-04-15 09:58 - 00000988 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Control Panel.lnk
2017-06-23 22:00 - 2015-04-13 21:51 - 00000000 ____D C:\ProgramData\NVIDIA
2017-06-23 22:00 - 2009-07-14 01:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2017-06-23 22:00 - 2009-07-14 00:45 - 00502712 _____ C:\Windows\system32\FNTCACHE.DAT
2017-06-23 21:55 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\SysWOW64\migwiz
2017-06-23 21:55 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\system32\migwiz
2017-06-23 17:13 - 2015-04-14 22:00 - 00000000 ____D C:\Program Files\Symantec.cloud
2017-06-23 17:12 - 2015-04-14 22:04 - 00102608 _____ (Symantec Corporation) C:\Windows\system32\Drivers\SYMEVENT64x86.SYS
2017-06-23 17:12 - 2015-04-14 22:04 - 00008339 _____ C:\Windows\system32\Drivers\SYMEVENT64x86.CAT
2017-06-23 00:01 - 2015-04-13 22:35 - 00000000 ____D C:\Users\Todd\AppData\Local\LogMeInIgnition
2017-06-22 23:33 - 2015-04-13 22:19 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2017-06-22 23:32 - 2015-04-13 22:29 - 00000000 ____D C:\Windows\system32\MRT
2017-06-22 23:28 - 2015-04-13 22:29 - 133627792 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2017-06-22 23:27 - 2009-07-13 22:34 - 00000478 _____ C:\Windows\win.ini
2017-06-21 07:42 - 2015-04-13 22:28 - 00000000 ____D C:\Users\Todd\AppData\Roaming\TeamViewer
2017-06-21 06:01 - 2015-04-15 09:58 - 00000000 ____D C:\Program Files (x86)\LogMeIn
2017-06-21 06:00 - 2015-04-15 09:58 - 00114688 _____ (LogMeIn, Inc.) C:\Windows\system32\LMIRfsClientNP.dll
2017-06-21 06:00 - 2015-04-15 09:58 - 00109024 _____ (LogMeIn, Inc.) C:\Windows\system32\LMIinit.dll
2017-06-17 06:27 - 2016-09-25 21:45 - 00004312 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2017-06-17 06:27 - 2016-02-03 22:24 - 00803328 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2017-06-17 06:27 - 2016-02-03 22:24 - 00144896 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2017-06-17 06:27 - 2016-02-03 22:24 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2017-06-17 06:27 - 2016-02-03 22:24 - 00000000 ____D C:\Windows\system32\Macromed
2017-06-14 13:45 - 2015-06-28 18:28 - 00000000 ____D C:\Users\Todd\AppData\Local\Dropbox
2017-06-13 17:19 - 2015-04-15 21:50 - 00000000 ____D C:\Users\Todd\AppData\Local\CrashDumps
2017-06-13 06:00 - 2015-04-15 09:58 - 00114688 _____ (LogMeIn, Inc.) C:\Windows\system32\LMIRfsClientNP.dll.001.bak
2017-06-13 06:00 - 2015-04-15 09:58 - 00109024 _____ (LogMeIn, Inc.) C:\Windows\system32\LMIinit.dll.000.bak
2017-06-12 19:14 - 2015-10-20 13:57 - 00003674 _____ C:\Windows\System32\Tasks\G2MUploadTask-S-1-5-21-1963650092-100906850-1094435348-1000
2017-06-12 19:14 - 2015-10-20 13:57 - 00003578 _____ C:\Windows\System32\Tasks\G2MUpdateTask-S-1-5-21-1963650092-100906850-1094435348-1000
2017-06-10 23:00 - 2016-01-08 22:20 - 00000000 ____D C:\Amazon Gift Codes
 
==================== Files in the root of some directories =======
 
2016-07-04 11:01 - 2016-07-04 11:01 - 0000000 _____ () C:\Users\Todd\AppData\Roaming\0670fff8-d7e1-4d06-9e4a-f288f943a676.storage
2017-01-22 23:48 - 2017-01-22 23:48 - 0000000 _____ () C:\Users\Todd\AppData\Roaming\1b709490-e373-428d-812d-4314cc683609.storage
2016-11-30 22:53 - 2016-11-30 22:53 - 0000000 _____ () C:\Users\Todd\AppData\Roaming\817b4c58-3a93-40b6-a64e-02dd2d6ae015.storage
2016-10-27 14:37 - 2017-06-23 22:02 - 0000446 _____ () C:\Users\Todd\AppData\Roaming\CSharpAnalytics-MeasurementSession
2017-04-13 14:13 - 2017-04-13 14:13 - 522576968 _____ () C:\Users\Todd\AppData\Local\AcronisTrueImage2017_is_8041.exe
2017-01-27 22:44 - 2017-01-27 22:44 - 0001889 _____ () C:\Users\Todd\AppData\Local\C60F0D7E192D452aAC6FB3D5EFC3BA56.Layout2.lbx
2016-01-05 23:41 - 2016-01-05 23:41 - 0007605 _____ () C:\Users\Todd\AppData\Local\Resmon.ResmonCfg
2015-04-20 18:52 - 2015-04-20 18:52 - 0000836 _____ () C:\Users\Todd\AppData\Local\RT2870_{573FF570-C982-4068-8DD2-7D93D629C1FD}_prof
2015-04-20 18:52 - 2015-04-20 18:52 - 0000839 _____ () C:\Users\Todd\AppData\Local\RT2870_{573FF570-C982-4068-8DD2-7D93D629C1FD}_sta
2015-04-16 14:21 - 2013-08-17 22:47 - 0010240 _____ () C:\Users\Todd\AppData\Local\[email protected]!-4d33ce22-7610-4c3f-90a6-b59ffa6478c1.tmp
2015-04-16 14:21 - 2013-08-17 22:47 - 0009216 _____ () C:\Users\Todd\AppData\Local\[email protected]!-fb15be1d-c98b-4fbc-8393-63ba25f3d329.tmp
 
Some files in TEMP:
====================
2017-06-10 13:25 - 2016-11-25 10:38 - 41441280 _____ () C:\Users\Todd\AppData\Local\Temp\myFFMpeg.exe
2017-05-19 15:42 - 2017-05-19 15:42 - 14608752 _____ (Samsung Electronics                                         ) C:\Users\Todd\AppData\Local\Temp\Samsung_Magician_Installer.exe
2017-05-25 22:41 - 2017-06-28 18:35 - 58684896 _____ (Skype Technologies S.A.) C:\Users\Todd\AppData\Local\Temp\SkypeSetup.exe
2017-07-07 22:36 - 2017-07-07 22:37 - 30950664 _____ () C:\Users\Todd\AppData\Local\Temp\vlc-2.2.6-win32.exe
2017-06-10 13:25 - 2017-05-11 14:14 - 7735428 _____ () C:\Users\Todd\AppData\Local\Temp\youtubedl.exe
 
==================== Bamital & volsnap ======================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
 
LastRegBack: 2017-07-02 00:14
 
==================== End of FRST.txt ============================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 07-07-2017
Ran by Todd (08-07-2017 13:22:47)
Running from D:\Downloads
Windows 7 Professional Service Pack 1 (X64) (2015-04-14 01:11:45)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
Administrator (S-1-5-21-1963650092-100906850-1094435348-500 - Administrator - Disabled)
Guest (S-1-5-21-1963650092-100906850-1094435348-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1963650092-100906850-1094435348-1002 - Limited - Enabled)
LogMeInRemoteUser (S-1-5-21-1963650092-100906850-1094435348-1003 - Administrator - Enabled) => C:\Users\LogMeInRemoteUser
Todd (S-1-5-21-1963650092-100906850-1094435348-1000 - Administrator - Enabled) => C:\Users\Todd
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Symantec Endpoint Protection.cloud (Enabled - Up to date) {30744133-1E94-7B35-F4A3-82A5AEF1CBAA}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Symantec Endpoint Protection.cloud (Enabled - Up to date) {8B15A0D7-38AE-74BB-CE13-B9D7D5768117}
FW: Symantec Endpoint Protection.cloud (Enabled) {084FC016-54FB-7A6D-DFFC-2B9050228CD1}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
64 Bit HP CIO Components Installer (HKLM\...\{0EBC740B-4363-489B-8C27-98CE0740BA19}) (Version: 18.2.4 - Hewlett-Packard) Hidden
ACA Forms Helper 2016 version 2.0.0.0 (HKLM-x32\...\{EAB1A7E8-3811-47CF-9D69-202DD3729DA7}_is1) (Version: 2.0.0.0 - ADAMS Business Forms)
ACA Forms Helper version 1.0.5.0 (HKLM-x32\...\{539AE5E0-F4BF-4566-867E-C1A3D2B17F14}_is1) (Version: 1.0.5.0 - ADAMS Business Forms)
ACDSee Pro 10 (64-bit) (HKLM\...\{13E67D9D-8F6F-4709-B380-A04EC12343E7}) (Version: 10.1.0.653 - ACD Systems International Inc.)
Acronis True Image (HKLM-x32\...\{EC52AEF1-B059-49B8-95C1-72296732005C}) (Version: 20.0.8041 - Acronis) Hidden
Acronis True Image (HKLM-x32\...\{EC52AEF1-B059-49B8-95C1-72296732005C}Visible) (Version: 20.0.8041 - Acronis)
Adobe Acrobat XI Pro (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-000000000006}) (Version: 11.0.17 - Adobe Systems)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 21.0.0.215 - Adobe Systems Incorporated)
Adobe Flash Player 26 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 26.0.0.131 - Adobe Systems Incorporated)
Adobe Flash Player 26 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 26.0.0.131 - Adobe Systems Incorporated)
Adobe Lightroom (HKLM-x32\...\{8048A5DF-8A70-5BE1-954B-E0FDE1BD0D0D}) (Version: 6.0 - Adobe Systems Incorporated)
Adobe Photoshop Lightroom 5.4 64-bit (HKLM\...\{558B5965-CC1B-4AF1-BA07-5D6832404050}) (Version: 5.4.0 - Adobe Systems Incorporated)
AIM 7 (HKLM-x32\...\AIM_7) (Version:  - )
Amazon Music (HKU\S-1-5-21-1963650092-100906850-1094435348-1000\...\Amazon Amazon Music) (Version: 3.9.5.820 - Amazon Services LLC)
ANT Drivers Installer x64 (HKLM\...\{7664AF65-7B0D-4171-9F0F-50455278B428}) (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden
Apple Application Support (32-bit) (HKLM-x32\...\{7FE25256-B7C1-480D-B736-10A67A833AEA}) (Version: 3.2 - Apple Inc.)
Apple Application Support (64-bit) (HKLM\...\{B255D495-4734-4E9B-B4F5-96702FD4A7B9}) (Version: 3.2 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{5D61F006-168C-4B8B-B7FD-F113C10AE0E4}) (Version: 8.2.1.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Audacity 2.1.2 (HKLM-x32\...\Audacity®_is1) (Version: 2.1.2 - Audacity Team)
Avery Design & Print (HKLM-x32\...\Avery Design & Print 3.0.2) (Version: 3.0.2 - Avery Products Corporation)
BCC Title Studio 10 for Corel VideoStudio X10 (HKLM\...\{8BDC9308-71F1-4C23-A631-820E67B801C6}) (Version: 7.0.1004 - Boris FX, Inc.)
Beats Updater (HKLM-x32\...\{4ECDA1EE-E189-4C62-96FD-3CF8C82618AE}) (Version: 2.1.62.0 - Apple Inc.)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Brother P-touch Editor 5.1 (HKLM-x32\...\{39270390-A851-4E4B-94A9-D5C468216ED3}) (Version: 5.1.1000 - Brother Industries, Ltd.)
CCleaner (HKLM\...\CCleaner) (Version: 5.28 - Piriform)
Cisco WebEx Meetings (HKU\S-1-5-21-1963650092-100906850-1094435348-1000\...\ActiveTouchMeetingClient) (Version:  - Cisco WebEx LLC)
Citrix Online Launcher (HKLM-x32\...\{DB014C85-A264-4BCA-A66F-6DD1FCF8EC36}) (Version: 1.0.335 - Citrix)
CloudBerry S3 Explorer PRO 4.0.8 (HKLM\...\CloudBerry S3 Explorer PRO) (Version: 4.0.8 - CloudBerryLab)
Contents64 (HKLM\...\{C7251103-EA39-4BCD-B5A0-819651AA35ED}) (Version: 20.0.0.137 - Corel Corporation) Hidden
Corel AfterShot 3 - ICA x64 (HKLM\...\{FE875B02-11A1-4D1E-B57A-8DE2C00C0B51}) (Version: 3.2 - Corel Corporation) Hidden
Corel AfterShot 3 - IPM Content x64 (HKLM\...\{3E064BED-C9D8-4BEF-A2EE-8D67E99C3932}) (Version: 3.2 - Corel Corporation) Hidden
Corel AfterShot 3 - IPM x64 (HKLM\...\{5059B47C-4D7B-46E9-9D7A-1E2FCF5DDBED}) (Version: 3.2.0.205 - Corel Corporation) Hidden
Corel AfterShot 3 x64 (HKLM\...\{FB96A937-BCF7-4AD6-B6D2-216FF162A744}) (Version: 3.0 - Corel Corporation) Hidden
Corel AfterShot 3(64-bit) (HKLM\...\_{FE875B02-11A1-4D1E-B57A-8DE2C00C0B51}) (Version: 3.2.0.205 - Corel Corporation)
Corel Update Manager (HKLM\...\{6FA1F197-5EA9-4C48-BEA0-EC8F97AFE8F8}) (Version: 2.3.170 - Corel corporation) Hidden
Corel Update Manager (HKLM\...\{B6C0FB43-0C9B-46E6-93E4-DF171ED80C53}) (Version: 2.3.170 - Corel corporation) Hidden
Corel VideoStudio Ultimate X10 (HKLM-x32\...\_{F66B7119-9BE1-4982-A96D-4DB070A70B81}) (Version: X10.0.0.137 - Corel Corporation)
D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
Data Lifeguard Diagnostic for Windows 1.31 (HKLM-x32\...\{519C4DB6-B53B-4F5C-8297-89B2BE949FA5}_is1) (Version:  - Western Digital Corporation)
DisplayFusion 8.1.1 (HKLM-x32\...\B076073A-5527-4f4f-B46B-B10692277DA2_is1) (Version: 8.1.1.0 - Binary Fortress Software)
Document Metadata Cleaner 3 (HKLM-x32\...\Document Metadata Cleaner 3) (Version: 3 - Pointstone Software, LLC)
Dropbox (HKU\S-1-5-21-1963650092-100906850-1094435348-1000\...\Dropbox) (Version: 29.4.20 - Dropbox, Inc.)
EasyRecovery DataRecovery (HKLM-x32\...\{F1094D39-431E-4FC5-81CF-67DE4CECEE46}) (Version: 6.03.04 - Ontrack Data International, Inc.) Hidden
EasyRecovery DataRecovery (HKLM-x32\...\InstallShield_{F1094D39-431E-4FC5-81CF-67DE4CECEE46}) (Version: 6.03.04 - Ontrack Data International, Inc.)
Elevated Installer (HKLM-x32\...\{1052502B-4C91-43F9-B160-AE39ED57C9F0}) (Version: 5.3.1.0 - Garmin Ltd or its subsidiaries) Hidden
Epson Copy Utility 4 (HKLM-x32\...\{06A7E8AB-2856-4490-BAA9-F338ABE7695A}) (Version: 4.01.0001 - Seiko Epson Corporation)
Epson Customer Research Participation (HKLM\...\{B26449A6-6007-4460-B4FE-C4776115BCEA}) (Version: 1.80.0000 - Seiko Epson Corporation)
EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version:  - Seiko Epson Corporation)
Epson Software Updater (HKLM-x32\...\{7BAC3F7A-B963-468E-982E-B5608A87408D}) (Version: 4.4.4 - SEIKO EPSON CORPORATION)
EPSON WF-5190 Series Printer Uninstall (HKLM\...\EPSON WF-5190 Series) (Version:  - SEIKO EPSON Corporation)
Epson WF-5190 User's Guide version 1.0 (HKLM-x32\...\UsersGuideEpson WF-5190 User's Guide_is1) (Version: 1.0 - )
EpsonNet Print (HKLM\...\{15A0F113-BF2C-4C12-8AA8-42AE0D9AE1C9}) (Version: 3.1.2.0 - SEIKO EPSON Corporation)
Evernote v. 6.5.4 (HKLM-x32\...\{D47E7D82-0D98-11E7-A6D6-005056951CAD}) (Version: 6.5.4.4720 - Evernote Corp.)
Evoluent Mouse Manager (HKLM-x32\...\{933B0FA1-2ECF-4B3F-8153-BEBD8750FF72}) (Version: 5.5.0 - Evoluent)
FastStone Image Viewer 6.0 (HKLM-x32\...\FastStone Image Viewer) (Version: 6.0 - FastStone Soft)
Fitbit Connect (HKLM-x32\...\{F76678F2-2FF6-40D7-9B16-A39B0A820ED2}) (Version: 1.0.3.5512 - Fitbit Inc.)
Foxit PhantomPDF Standard (HKLM-x32\...\{30624678-4C19-4C4A-96B6-1691F964B536}) (Version: 7.2.2.929 - Foxit Software Inc.)
Garmin Express (HKLM-x32\...\{BCC7CA85-E57F-452D-BB44-15A1CE018BD0}) (Version: 5.3.1.0 - Garmin Ltd or its subsidiaries) Hidden
Garmin Express (HKLM-x32\...\{bd8bd200-9a60-4969-b267-6b565f36e3da}) (Version: 5.3.1.0 - Garmin Ltd or its subsidiaries)
Garmin Express Tray (HKLM-x32\...\{DA9C865D-6762-4931-8588-0B13B7A0796B}) (Version: 5.3.1.0 - Garmin Ltd or its subsidiaries) Hidden
Gihosoft Free Youtube Downloader version 1.2.7.0 (HKLM-x32\...\{222ECA2E-17A6-4914-922A-BABE02869072}_is1) (Version: 1.2.7.0 - HONGKONG JIHO CO., LIMITED)
Global VPN Client (HKLM\...\{88C972E7-D7FC-40F3-9FE5-180957F37B45}) (Version: 4.9.0 - Dell SonicWALL)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 59.0.3071.115 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden
GoToMeeting 8.7.0.7155 (HKU\S-1-5-21-1963650092-100906850-1094435348-1000\...\GoToMeeting) (Version: 8.7.0.7155 - CitrixOnline)
Graffiti x64 Corel VideoStudio X10 (HKLM\...\{1ED69DD2-08B0-46D3-9B13-8BC7CAC6D5F5}) (Version: 7.0.1003 - Boris FX, Inc.)
GWX Control Panel (HKLM-x32\...\UltimateOutsider_GwxControlPanel) (Version:  - UltimateOutsider)
Haali Media Splitter (HKLM-x32\...\HaaliMkx) (Version:  - )
ICA (HKLM-x32\...\{F66B7119-9BE1-4982-A96D-4DB070A70B81}) (Version: 20.0.0.137 - Corel Corporation) Hidden
Intel® Chipset Device Software (HKLM-x32\...\{5a6a5d15-d5af-417c-b08f-f7e5eb1f98af}) (Version: 10.0.26 - Intel® Corporation) Hidden
Intel® Desktop Utilities (HKLM-x32\...\{F01CBA59-B5BD-4608-A834-1CBE8C292A71}) (Version: 1.0.0 - Intel Corporation)
Intel® Driver Update Utility 2.0 (HKLM-x32\...\{59DB38EB-F864-4E10-841D-38CFBCF864B0}) (Version: 2.0.0.29 - Intel) Hidden
Intel® Extreme Tuning Utility (HKLM-x32\...\{E8D0E51F-CC46-48DF-9BF2-E6157FC3717E}) (Version: 1.0.0 - Intel Corporation)
Intel® Network Connections 19.1.51.0 (HKLM\...\PROSetDX) (Version: 19.1.51.0 - Intel)
Intel® Driver Update Utility (HKLM-x32\...\{8409c4f7-2340-4933-a304-5d37db4fb48b}) (Version: 2.0.0.29 - Intel)
IPM_VS_Pro64 (HKLM\...\{7735CE89-92C9-4809-B06B-81D3E093E07D}) (Version: 20.0 - Corel Corporation) Hidden
IrfanView 64 (remove only) (HKLM\...\IrfanView64) (Version: 4.42 - Irfan Skiljan)
iTunes (HKLM\...\{4046F74A-28F8-48C6-A5D3-2AFC472574C1}) (Version: 12.2.0.145 - Apple Inc.)
Jasc Paint Shop Pro 9 (HKLM-x32\...\{F843C6A3-224D-4615-94F8-3C461BD9AEA0}) (Version: 9.00.0000 - Jasc Software Inc)
Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation)
LG VZW United Drivers (HKLM-x32\...\{BEEBD17D-FF29-4508-8032-2D1FA66F7B77}) (Version: 2.23.1 - LG Electronics)
LogMeIn (HKLM-x32\...\{A8E20B99-B1A2-4FC0-B38A-A255033D339A}) (Version: 4.1.5022 - LogMeIn, Inc.)
LogMeIn Client (HKLM-x32\...\{26F88B15-E5F0-47D2-8176-1A9312DD44AD}) (Version: 1.3.1648 - LogMeIn, Inc.)
Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Medialink MWN-USB150N (HKLM-x32\...\{34E93A7F-599F-4BBB-B2A1-4FCE77971AB9}) (Version: 1.00.0000 - Medialink)
Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft Access database engine 2010 (English) (HKLM-x32\...\{90140000-00D1-0409-0000-0000000FF1CE}) (Version: 14.0.6029.1000 - Microsoft Corporation)
Microsoft Mouse and Keyboard Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.3.188.0 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM-x32\...\Office15.PROPLUSR) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24210 (HKLM-x32\...\{f144e08f-9cbe-4f09-9a8c-f2b858b7ee7f}) (Version: 14.0.24210.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Motorola Bluetooth (HKLM\...\Motorola Bluetooth_is1) (Version: 3.0.02.272 - Motorola, Inc.)
Movie Maker (HKLM-x32\...\{38F03569-A636-4CF3-BDDE-032C8C251304}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mozilla Firefox 54.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 54.0 (x86 en-US)) (Version: 54.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 51.0.1.6234 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
MyDVD Content Pack 1 (HKLM-x32\...\{ADCF7AE3-8E36-4B80-9460-66B74B56927F}) (Version: 1.00.0000 - Corel Corporation)
MyDVD Content Pack 2 (HKLM-x32\...\{B9987701-F119-46FA-BFF1-A8B593BFAF9E}) (Version: 1.00.0000 - Corel Corporation)
Noise Reduction Plug-in 2.0i (HKLM-x32\...\{DC35AABA-EA0A-41C1-8462-F60A201DFF9B}) (Version: 2.0.455 - Sony)
NVIDIA 3D Vision Controller Driver 349.95 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 349.95 - NVIDIA Corporation)
NVIDIA 3D Vision Driver 350.12 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 350.12 - NVIDIA Corporation)
NVIDIA Graphics Driver 350.12 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 350.12 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.33.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.33.0 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.15.0324 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0324 - NVIDIA Corporation)
Office Chat (HKU\S-1-5-21-1963650092-100906850-1094435348-1000\...\{8b374b24-05a3-4544-ab0c-e07e555d6aca}) (Version: 2.2.0 - MangoApps)
OfficeChat (HKLM-x32\...\{C39AE703-5C6A-4FA9-8E33-07CE87C11FE4}) (Version: 2.2.0 - MangoApps) Hidden
Outils de vérification linguistique 2013 de Microsoft Office - Français (HKLM-x32\...\{90150000-001F-040C-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
PC Magazine WinTidy (HKLM-x32\...\PC Magazine WinTidy_is1) (Version:  - Ziff Davis Publishing)
PDF Password Remover (HKLM-x32\...\{DB150C19-4A8F-4EF7-AC75-96098EACE179}) (Version: 1.0.6 - PDF Technologies)
PerformanceTest v8.0 (HKLM\...\PerformanceTest 8_is1) (Version: 8.0.1047.0 - Passmark Software)
Platform (HKLM-x32\...\{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.42 - VIA Technologies, Inc.) Hidden
proDAD Adorage 3.0 (64bit) (HKLM\...\proDAD-Adorage-3.0) (Version: 3.0.115.1 - proDAD GmbH) Hidden
proDAD Mercalli 2.0 (64bit) (HKLM\...\proDAD-Mercalli-2.0) (Version: 2.0.125 - proDAD GmbH) Hidden
proDAD Route 4.0 (64bit) (HKLM\...\proDAD-HeroglyphRoute-4.0) (Version: 4.0.241.2 - proDAD GmbH) Hidden
proDAD Script 4.0 (64bit) (HKLM\...\proDAD-HeroglyphScript-4.0) (Version: 4.0.241.2 - proDAD GmbH) Hidden
proDAD Vitascene 2.0 (64bit) (HKLM\...\proDAD-Vitascene-2.0) (Version: 2.0.244 - proDAD GmbH) Hidden
Ralink RT2870 Wireless LAN Card (HKLM-x32\...\{28DA7D8B-F9A4-4F18-8AA0-551B1E084D0E}) (Version: 3.1.4.0 - Ralink)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6914 - Realtek Semiconductor Corp.)
Reflector (HKLM\...\{A017FD49-268F-43F2-BFF8-82A84F96E083}) (Version: 1.4.0.0 - Squirrels)
Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.1.28.1 - Renesas Electronics Corporation) Hidden
Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.1.28.1 - Renesas Electronics Corporation)
RoboForm 7-9-22-2 (All Users) (HKLM-x32\...\AI RoboForm) (Version: 7-9-22-2 - Siber Systems)
Samsung Data Migration (HKLM-x32\...\{3B304604-0BF5-488E-AB95-F2F2E31206F3}) (Version: 3.0 - Samsung)
Samsung Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 5.1.0.1120 - Samsung Electronics)
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.49.0 - SAMSUNG Electronics Co., Ltd.)
Screaming Frog SEO Spider (HKLM-x32\...\Screaming Frog SEO Spider) (Version: 5.1 - Screaming Frog Ltd)
SendGuard for Outlook (HKLM-x32\...\{34662221-9631-4A39-BA25-60A4CA04BF10}) (Version: 2.0.5561 - Standss)
Setup (HKLM-x32\...\{DDD6A42C-474B-430A-9B19-7B66403AEE48}) (Version: 20.0.0.137 - Corel Corporation) Hidden
Share64 (HKLM\...\{0A0F09C2-4A6A-4524-BE2D-F0A355AACB45}) (Version: 20.0.0.137 - Corel Corporation) Hidden
ShareFile Desktop (HKLM-x32\...\{5CB45DAB-B28C-4368-A3C0-E071103BB0B9}) (Version: 1.12.166.0 - Citrix) Hidden
ShareFile Desktop (HKU\S-1-5-21-1963650092-100906850-1094435348-1000\...\{a6c2780f-4b43-43ff-ada5-3c75d612c929}) (Version: 1.12.166.0 - Citrix)
ShareFile Desktop Widget (HKLM-x32\...\{90A7D0C1-6CDE-34A9-3E7F-B4188EE08962}) (Version: 2.26.1 - ShareFile, LLC) Hidden
ShareFile Desktop Widget (HKLM-x32\...\ShareFileDesktop.17AF2FD64D6611D25BF6B31FA23B5F4BC1AA06EC.1) (Version: 2.26.1 - ShareFile, LLC)
ShareFile Outlook Plug-in (HKLM-x32\...\{14D2A3A6-0000-40A8-83E8-356E931E6D3D}) (Version: 4.3.978.0 - Citrix Systems, Inc.)
Skype™ 7.37 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.37.103 - Skype Technologies S.A.)
SmartSound Common Data (HKLM-x32\...\{B8A2869E-30CA-40C5-9CF8-BD7354E57EF8}) (Version: 1.2.1 - SmartSound Software Inc.) Hidden
SmartSound Common Data (HKLM-x32\...\InstallShield_{B8A2869E-30CA-40C5-9CF8-BD7354E57EF8}) (Version: 1.2.1 - SmartSound Software Inc.)
SmartSound Sonicfire Pro 6.0 (HKLM-x32\...\{4E8A97A9-B675-4163-82E7-4106C5A59760}) (Version: 6.0.4 - SmartSound Software Inc.) Hidden
SmartSound Sonicfire Pro 6.0 (HKLM-x32\...\InstallShield_{4E8A97A9-B675-4163-82E7-4106C5A59760}) (Version: 6.0.4 - SmartSound Software Inc.)
Snagit 12 (HKLM-x32\...\{4FC332FE-CBE3-4AE0-B531-35048FD81912}) (Version: 12.4.1 - TechSmith Corporation) Hidden
Snagit 12 (HKLM-x32\...\{ec29af82-9c9e-420e-ab18-53821c36ac3c}) (Version: 12.4.1.3036 - TechSmith Corporation)
Sonos Controller (HKLM-x32\...\{7BBA9BF8-05DF-47D8-8880-82A9B99505B9}) (Version: 35.3.39010 - Sonos, Inc.)
Sound Forge Pro 10.0 (HKLM-x32\...\{9660B18F-EC12-11DF-B006-0013D3D69929}) (Version: 10.0.491 - Sony)
Streaming Audio Recorder version 3.4.5 (HKLM-x32\...\{B6D9D06B-4B4D-4B41-B963-C056B627F704}_is1) (Version: 3.4.5 - APOWERSOFT LIMITED)
SUABnR (HKLM-x32\...\{2485354C-6B65-4978-BB91-CCE61442377B}) (Version: 1.1.0.13103_1 - Samsung Electronics Co., Ltd.) Hidden
SUABnR (HKLM-x32\...\InstallShield_{2485354C-6B65-4978-BB91-CCE61442377B}) (Version: 1.1.0.13103_1 - Samsung Electronics Co., Ltd.)
Symantec Endpoint Protection.cloud (HKLM-x32\...\NIS) (Version: 22.9.3.13 - Symantec Corporation) Hidden
Symantec.cloud - Cloud Agent (HKLM\...\{735EF746-77A8-44E8-821F-4C77F038AA90}) (Version: 3.00.10.2737 - Symantec Corporation) Hidden
Symantec.cloud - Endpoint Protection (HKLM\...\{4C89867B-2E80-4B0D-87DB-1BD643D5EF5D}) (Version: 5.10.11.690 - Symantec Corporation) Hidden
Symantec.cloud (HKLM\...\Symantec Hosted Services ARP) (Version: 3.00.10.2737 - Symantec Corporation)
Synology Assistant (remove only) (HKLM-x32\...\Synology Assistant) (Version:  - )
Tax Forms Helper 2015 12.0 (HKLM-x32\...\Tax Forms Helper 2015_is1) (Version:  - )
Tax Forms Helper 2016 12.5 (HKLM-x32\...\Tax Forms Helper 2016_is1) (Version:  - )
TeamViewer 12 (HKLM-x32\...\TeamViewer) (Version: 12.0.77242 - TeamViewer)
TeraCopy 2.3 (HKLM\...\TeraCopy_is1) (Version:  - Code Sector)
Todoist (HKU\S-1-5-21-1963650092-100906850-1094435348-1000\...\{B1B3C79A-FFD9-4B28-A456-62B6E55E2A5C}_is1) (Version: 2.7.6.0 - Doist Ltd.)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.51a - Ghisler Software GmbH)
TreeSize V6.3.6 (64 bit) (HKLM\...\TreeSize_is1) (Version: 6.3.6 - JAM Software)
Verizon Wireless Software Upgrade Assistant - Samsung(ar) (HKLM-x32\...\{43C14360-71AA-490B-BF0F-FE1F1D63479A}) (Version: 2.15.1002 - Samsung Electronics Co., Ltd.)
Verizon Wireless Software Utility Application for Android - Samsung (HKLM-x32\...\{9E835F39-6633-4D1C-92CC-006F4D2F5E08}) (Version: 2.15.1001 - Samsung Electronics Co., Ltd.)
VIA Platform Device Manager (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.42 - VIA Technologies, Inc.)
VideoStudio MyDVD (HKLM\...\{DAFD3107-BB9D-49EA-8CD5-03F056646FAB}) (Version: 2.0.038 - Corel Corporation) Hidden
VideoStudio MyDVD (HKLM-x32\...\{4E8ADFE2-8D92-4ACB-BD36-CCC4D0F43011}) (Version: 2.0 - Corel)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.6 - VideoLAN)
VSClassic64 (HKLM\...\{AAAD0468-D205-4658-9A25-AA19C9DB1E31}) (Version: 20.0.0.137 - Corel Corporation) Hidden
VSUltimate64 (HKLM\...\{339A24A4-4B91-4D75-BEE8-1381F3BEFB19}) (Version: 20.0.0.137 - Corel Corporation) Hidden
WebDrive (HKLM\...\{F08E87FD-F62B-4BAC-A2D6-A94755653F30}) (Version: 12.21.4207 - South River Technologies)
WebEx Document Suite (HKLM-x32\...\{4F17A093-46AA-427F-B470-8B523CF39C06}) (Version: 29.13.10.10170 - Cisco WebEx LLC)
Windows Driver Package - Beats Electronics, LLC (KernelModeUSB) USBDevice  (08/03/2015 11.13.37.619) (HKLM\...\C8D774814AD57905AFADFC0987F6CE54830F5DCD) (Version: 08/03/2015 11.13.37.619 - Beats Electronics, LLC)
Windows Driver Package - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\...\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.)
Windows Driver Package - Evoluent (EvoMouseDriverFilterHidUsb) HIDClass  (09/10/2013 4.0.1.0) (HKLM\...\0419316FF285F35FF53D35BE51866E8B48306CE5) (Version: 09/10/2013 4.0.1.0 - Evoluent)
Windows Driver Package - Evoluent Mouse  (02/22/2013 4.0.1.0) (HKLM\...\8DB874487A94C0B8E6CF1A1B5FF0C060C088E5D9) (Version: 02/22/2013 4.0.1.0 - Evoluent)
Windows Driver Package - Silicon Labs Software (DSI_SiUSBXp_3_1) USB  (02/06/2007 3.1) (HKLM\...\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
Wondershare Dr.Fone for Android(Build 5.6.1.14) (HKLM-x32\...\{1DB91A95-C548-4BA5-9D4C-18C7DEAAC39F}_is1) (Version: 5.6.1.14 - Wondershare Software Co.,Ltd.)
Wondershare Video Converter Ultimate(Build 8.4.0.0) (HKLM-x32\...\Wondershare Video Converter Ultimate_is1) (Version: 8.4.0.0 - Wondershare Software)
Xenu's Link Sleuth (HKLM-x32\...\Xenu's Link Sleuth) (Version: 1.3.8 - Tilman Hausherr)
ZAR X (HKLM\...\{85DA9B81-D7F9-4165-8E62-F776B57213F8}_is1) (Version:  - www.z-a-recovery.com)
 
==================== Custom CLSID (Whitelisted): ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Todd\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{006209D8-A616-3D28-ACF4-497C57F57BE1}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{00E8287C-4501-3D29-B27A-D5F7B5B0D34A}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{00F347B6-BC5C-376A-BE51-76BF7EE73D15}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{0108CBF2-70F6-3B31-8E60-DB513DB2094D}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{016E6FB6-DE93-3DCA-95BB-183EFAAD65CD}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{026A3DC0-9C18-354F-AC88-A39855ADA7F3}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{028407C0-EEC3-3668-BA8E-ACF0365EED07}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{02E03839-4014-3DF2-B47D-A38739E1A7DE}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{0306D469-DFE8-39D7-BC08-CC8EE433AC6C}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{03304DF1-2BAF-37E9-80A3-92EBFBAA0C67}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{03F62A43-E345-3A75-AA7E-94C6A671B286}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{04AF3E55-7805-3E8A-A11B-C197E519A89A}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{05605511-3B28-396D-9DEE-6029CC2459E0}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{0567AA3E-D910-325A-B164-CCDDFBE3E4CA}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{0592937A-571D-31B7-9532-8A4F68E63F13}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{05F2A05A-A014-3D44-B9EA-AB16375A4E63}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{0631D90E-952E-331F-833E-E941A680E956}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{063F1F0B-A867-3C97-AB7E-ED4445630EB4}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{07DFE302-1BA6-3D69-800A-C07907D1D7F8}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{07FDBE17-7AF9-3B46-AB92-634E24017A84}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{0804BD2D-91DE-32C8-9DC8-8B13131F646F}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{0883F67F-5DF9-3E8A-8C46-188D7364AFA7}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{08DD73A8-6D32-381E-BF99-5D77C4212B6F}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{08F79193-8EB8-3049-8B73-9FD24CF2459B}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{09C1C738-C0C3-3552-B660-FDA4502B2A52}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{09C5C85F-1082-3481-97EF-2B871F140E97}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{09DF27E3-C664-3712-AE9C-552C111BEEDB}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{09FE4927-A67E-3D68-978F-D3BAA94C1A48}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{0A0D72A6-302E-39E7-836E-FF00AF561D04}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{0A197D05-ED7D-36F4-8077-218E70CB7DE7}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{0B57DACD-416C-3AE5-B4F3-631C22419238}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{0B6E7FFB-CB38-3FF4-BAB9-6F80DFB507F8}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{0B810029-8270-3B05-8222-5B49186A84EE}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{0B81499D-16AE-3943-93D9-5A66B17AE428}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{0C7E598A-AE7E-3A6F-8EDF-3500EF3C40D3}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{0D3671AA-1AE5-39C2-A7D9-9979C878F423}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{0D5F44C6-9EF2-3150-B64E-66D23E2CD555}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{0D7A650E-8C21-3DE3-B3CD-62022813C892}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{0E7B6700-846A-3D6C-AD53-C2DA10F1F800}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{108DE841-ADCB-3A5A-9487-9F34B667A7A1}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{10B2C932-6616-3DA7-97DC-02AE8CA4FE98}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{126FFE2B-3853-31C0-AD98-A3E3E8E7C62F}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{13049311-6608-3C23-9352-17EC9456743C}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{132F09B3-002D-31D6-8BCD-3F09445D503D}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{133ED99E-715B-3CB8-AA58-136B85310295}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{14296A77-21D7-3F1F-BA33-A0F35974E662}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{148D5D75-EFC1-3ABD-9EF0-B7107E5AFCF2}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{14DA00D7-3F0E-363C-BA7D-6B6119987F0E}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{15D54A5F-D423-3A9A-989F-E734F789FEAA}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{162352BF-2F24-39A4-A1D2-0967111CF00C}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{16901D21-0DA5-3C55-936F-65C7FBA565C8}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{16D047F2-63FC-31BE-A968-82EA67C405E0}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{16EF22D4-6F25-385A-BF4A-3FFE083960F4}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{170AD140-1AD7-3F42-8C67-FEC5680DBAED}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{188CC8AA-D3C5-32FF-A0C7-F89B3BCD1A89}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{18C48228-7510-3C7D-ABF4-6CA8BD8CE7E5}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{18D977FB-1411-3120-821B-C5E8897CB94C}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{19AA8140-159B-3625-A366-4C474440228D}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{19B28CF2-C912-3979-9B3B-4A3C76294277}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{19BB85B6-B11E-3648-A106-FB82326F8EE6}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{1A5726CA-4E6F-329B-8F5F-E2A197ADF3F5}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{1BA1891A-26A6-3A2F-B7B2-F8FE1271EC9A}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{1BF21819-B2A5-3420-8475-5F322DC0BDFD}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{1CC21C9C-9BAE-318F-B122-F20F0DC0A63D}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{1D981D7B-ACA8-35BA-A5C1-7D55867FD065}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{1DF310D4-B377-3E7E-B699-CC8DE16165A0}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{1E56D5DE-4AFA-33D2-856E-DE465BACA522}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{1EA3F7DD-A7FB-366F-A74E-7DB0D9472EE2}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{1F1E9E6D-9925-337B-BBCF-133207B9D4DF}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{21CC0939-56EC-3B64-9070-A4860C53D52F}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{21DB50A2-1A33-311D-B239-BB1CAF2F37BE}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{21DFCA72-036A-3239-BAAB-6A678E3B0F79}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{227430FA-5BB7-3798-A705-6BF9A80C1AAC}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{22BEECE6-70E6-37E4-BA59-42F12CD24261}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{22FE14E8-2319-3C99-880C-69AEA8490E16}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{23669ADB-BADE-38D9-8E31-EF2C87F73AD3}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{23951269-904A-3DA1-9463-936DAB44727E}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{23B7FCBB-CC6A-3725-8324-7D3177EF24BD}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{23F71BE5-8F88-3F16-BAA5-2B7506E91754}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{241921C1-FEFA-3250-84EA-88574F7C1124}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{244AF70C-971D-3254-A45C-0753CD92B043}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{24BF6B62-6FFC-3647-917F-23727AC7C818}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{24C6ED8A-02AC-3914-8E12-304A51A7C976}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{24E30243-3861-3A11-924E-C36250F74E37}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{25B380A7-21E4-3A4E-B04A-A7BD097DD5D6}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{266E038C-352E-3A47-B879-3151383EC182}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{26DFFB76-29AF-3E88-88AF-390732965E28}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{27D125CA-E3CB-3D69-B688-ED2DBB0D4D85}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{2839E08C-5D86-3476-B4ED-2FD7B29F3530}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{28B54CBE-51A3-309F-9323-5B91D2A4DE6D}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{28BDD979-6159-39E7-9FEA-A75C63B13AC1}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{291F1945-294F-3551-9880-F570A5084987}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{29279489-E952-3C19-B03A-A15AAD99C098}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{2AA6A98F-C46A-3B3D-B471-4875225BE2C3}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{2AB859E5-79DC-32D5-A661-7F2DF1CCE02E}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{2B63B289-AF6B-303D-BF13-2CCAE65A7544}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{2BC25DFD-A29D-3ECC-88FC-0D0160C5B4BD}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{2BFB5DD6-3171-3BD1-8542-3D43F9DFBF25}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{2C165426-7F55-302E-89C0-DBC3DAD00275}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{2D23867A-5E14-3575-B348-BA89752E8B70}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{2D6A5496-BE3E-37D5-83BA-A728F2FEB315}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{2DCD47B5-D7BC-3A22-9D14-E57A8189222E}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{2DE41E31-2C8C-3CD3-A7BB-5660BA61B50F}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{2F5FFEFB-6774-3380-AA38-7F04899F57E7}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{2F8A2938-29E9-3C04-9AB3-C47F5461D9AB}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{304E764B-AE5B-3D65-98F7-AC461A5ADFA3}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{30AC9262-4E03-3998-ABCC-049301BC0CE9}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{30F356D4-9C40-33BF-8FA9-817B4712D60B}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{31F714FD-A335-30EE-B6D0-CC3882B5BCA1}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{32F42DD2-BE16-3A2D-BB2C-ED4C8B30908C}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{33693B82-FF60-369D-91E5-E00C57BB3B9E}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{346B6629-309D-3B2A-A6A5-03D62368B9DC}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{34B9C617-9BB6-3C5B-9914-BDEA6C212FEE}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{34C1C0D6-6019-31EC-AC73-F369B62CE71F}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{357D0021-8735-3DC3-BF68-4D7286819210}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{357E75C8-6AAB-3C74-A06E-BAD0A93E3854}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{36D85683-F18B-38DA-B55E-0B5AEB1497F5}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{36FDD07D-CBB0-3C4C-B3D0-ADADCE71D2B1}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{37140082-ECFA-3F90-8C4B-35AD55AD0ECB}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{38AB6337-F4CC-3CB6-BC0A-00DE4717B8B1}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{398CD9D4-C7C3-319D-9E97-E29BF25114DA}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{3A0D3723-956B-393A-A5D1-339BE6920E3D}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{3A9094BF-0342-3FF1-834F-62212099CEED}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{3BA8CE95-7E78-3BB3-8855-67EF8206ED9B}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{3C244E55-7FDC-3D51-B42D-2AB1C2414AEE}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{3C80183E-8C95-357F-84F3-99706471098C}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{3D419593-C5D4-39A3-A6A9-1A2217BBBB29}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{3D729B7A-AFF6-312C-AFFC-8618940679A8}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{3DFC1DF2-53A9-3220-BB3C-58B391CD070C}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{3EE195C9-B271-3390-B0FA-2C5B2695506C}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{3F2A7BDC-F491-34DC-9512-B6C89F4AD804}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{3FC04C87-9611-3960-9F90-18457AABB904}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{3FC5642B-3020-3D2E-99B9-23426FA596F0}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{40832234-42C8-3856-83BA-25915915822F}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{408C80CB-C4B0-303D-88DD-AE0DD4303516}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{4113F86E-0936-301C-9E11-D11067343201}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{419E3A8B-43AB-3D29-9CDF-9B7C384A0093}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{424D2F26-5600-3F1E-B7C3-1E4366F8EFC0}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{42C971AC-81E4-38B5-883D-E5FEC0BEE287}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{44EC3931-8556-306E-A3CA-A27BF196B649}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{4511E446-FD74-3318-BC66-D8679532F3CA}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{466487E5-300C-330C-85D0-F42C53D75C0B}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{46B5566A-21CA-3540-8B0B-AA2B9378A7AB}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{46BD40A9-123F-3292-BBF4-27FCEEA4B804}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{476E1190-578C-35F2-A2D3-A66070C4797E}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{49413179-81C5-39C0-AD9A-54376FEBF71E}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{4A7331DC-49BD-378D-8E4A-FBD489B282B4}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{4B06D0D1-9282-3340-9C23-3E33A391523C}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{4B505852-1858-362E-B39F-E1663DDCDD4A}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{4C86CF52-202D-33B2-ACE9-A673A763A53D}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{4D28BC8F-367D-31C9-982D-704DC480B8BE}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{4DB48CF5-5A08-379F-8B0E-B614E248C40E}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{4DC1FD53-30B6-3745-BFFD-3526017B0DD7}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{4E17E720-820B-3DB5-9020-66FA92ED7F90}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{4E2C80EC-B615-33D3-A82A-47F06E4D9D34}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{4E2CEB39-0DC0-30CD-8CBD-3197C0F89788}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{4F42F75C-44B7-3C0F-8682-D43A7F144968}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{515E9424-C423-3375-9538-D9A3510B94FB}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{52B1936C-F3ED-3397-9B2B-C30EBE4ACA22}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{53C58BDC-8AE8-3FB6-8FF9-F22B1E7A6667}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{54211919-0D9B-30AA-96BA-8E81C31BD3D7}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{54316E82-12F1-3EF5-9EAF-570DA785CFA5}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{54792517-E15A-37EE-9EAD-F54F2BF06686}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{5596D30E-7682-32B3-9F58-F7B1F47AE9A7}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{55AAB6E7-6CD9-3BA7-82F5-5218FE51E6BB}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{55E19628-001B-353F-A281-294B3610EAF6}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{56FF6E53-3E56-3DD8-8373-E7E5EB9D532A}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{570871B0-0BA6-38A5-A09C-92F239602919}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{5744CF47-5BB9-360E-8233-78639D414B78}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{57639AC9-FF02-30D9-8F49-B0BCD6FBCA9E}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{576A4F95-F553-3820-9AD6-5DC34E964011}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{5867CA17-8D15-3E22-8A69-146F21CEEC15}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{587A6830-6BAE-300F-9115-BC6A070D8ABD}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{58A0DAE5-4811-3D64-8066-C3D98020BA9E}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{58C681CE-E322-35A8-BD75-A65060A3C633}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{58E37192-87B9-33D6-98DA-42366C8654D3}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{5A6B07CC-0B65-3F94-BE95-80037CC6E01F}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{5AE02246-2792-3721-B55E-011338494CE7}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{5B405775-D029-3536-AD24-54AA98B6CE12}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{5B6E3915-36CD-3499-87D1-3DDC7DF3C3B2}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{5C0C3C75-621C-3079-AF3D-A70DE127E7B4}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{5C3D3DFD-586C-3FDB-8E72-FA04B9E75F83}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{5D0D728D-5833-3DC8-8D8A-C75708EFFDFE}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{5D932F0F-7C5D-38CC-BE6F-26256D5E952B}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{5D95C806-2F8A-3DB9-B78E-2551A16E9554}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{5F5B3BFB-CF11-35C1-8AFD-0EE06621D4F0}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{5F940B59-7911-3D9E-BCEC-77450E35B58E}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{5FA6E0CA-2AB8-3E51-BF42-307E57DE70C8}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{5FA7B572-20BC-368F-9FB0-D3448FB9CAF6}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{5FF5A065-D0F6-3BBB-A2A1-A24EC91DBCDD}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{600CDCFB-1E19-3EBA-B62E-F18117D68397}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{607E98D5-D243-39FD-90A1-BB3F7796D3D2}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{60A1C933-6E03-3410-BB3E-AF8CA85CA620}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{6121AA2C-37DE-3657-8A21-33761DBE6F6E}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{622B8D01-CB70-34FB-8BA3-1B8842CC77D5}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{6239C122-C405-3E62-8ED5-C4A6977B3E4F}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{62F36256-1EEB-32AA-A0FC-DC10F93CD181}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{6391CE17-4B9F-3AC3-A51F-CE8D2C5473BD}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{63BB1E8A-4352-3EA0-AE4A-7EB5C3DC351C}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{63D4B2EE-6459-3285-B963-9A64655AB0CF}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{6435821E-E15B-3BED-943B-0FD290BCC811}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{64719896-55EA-3372-9568-1579DFD853FE}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{6487A1FB-349D-3A1E-8D29-3C07E574B6E4}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{64F4FDF9-193A-3F72-8EB3-10216A2AAB64}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{65419417-F834-3E08-9BD1-F56878A91BF2}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{679200F3-B648-3A4C-94FB-FFD19E1770B6}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{681BAFCB-E915-3E37-BA51-351117C5F5A9}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{689E5DF6-682A-3AF8-A960-1832D44BBA79}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{690B9F89-3A09-30B1-BC92-A9FC4CB94140}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{69408D7A-EE40-393F-85D0-EC2367551F0B}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{695D9D67-11E7-3412-A873-6B2B30299FFA}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{69BEC8A8-4BF5-3338-9B8A-2F942228A65F}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{6A105135-B271-3A8B-B710-F54D6A522AF6}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{6A7FC6E8-65A4-38F5-A0A3-08E999342812}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{6AEE2132-7DE1-3203-83B8-360EA3CAF92D}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{6B623638-EC6C-33C5-80B9-E1828CB3E353}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{6B8FDAED-754A-3879-9B78-321D06BC939E}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{6C80BBB0-97FD-3DD1-ADE3-EB15ECBBF88F}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{6D396340-F6B8-3523-874E-22B406D2B2B4}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{6EADDA8E-9818-3A71-B7A6-9D5AC0B4E928}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{6F1F0B4F-499E-32BF-95D7-CE77E1409FA0}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{6F75C877-6698-3FEC-A017-229745D150C9}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{70039A3C-136B-3540-ACBA-CA5F34E1124F}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{706A5BDE-BFA0-331F-8321-493EA17DDA36}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{70AB6EB0-31A7-33D8-ADD5-9665900202EE}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{7188A175-D5E9-3990-866B-57DCC47332BC}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{71E7721A-0366-3B94-94C1-4D58A7E3D811}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{72EDC215-9781-38DC-BB3C-C35575B8F3E9}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{73454891-F51E-31CE-A7AB-DEF11C0E63B9}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{74B520D3-1983-3A0F-9255-29F7FD01E4D3}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{76925F55-0749-3058-89E2-9A3A4385FA7E}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{76AE2685-4904-3865-B05D-21FE619FB7F8}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{7705CE4B-849F-3F5C-80F7-29C1B166E1EE}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{77F45013-FFF2-3CBD-95D4-76637EA22391}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{78863B8D-5312-3E9A-985B-1A4DE5ECD5A5}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{790393B4-7EF8-3F38-8B06-17030CACE867}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{791D351E-E272-349D-BE25-D781276AF1B7}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{794B6E22-16EC-3498-976F-7D204FCCB594}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{79F1C0D6-FF34-33FA-ADF8-D1FEC274B986}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{7A47C143-8698-3DFA-9EC1-FDCF98980A59}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{7AD8AE12-EB15-3E38-A540-61DCE8A4A192}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{7B010148-4128-3DF1-8304-5976475E87C7}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{7B1E844F-5C96-337B-9431-B1B665A2F06C}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{7B2F35E2-3A37-3080-828C-99AFD328BE59}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{7B908440-FF55-32D7-AFED-3A6E8322391A}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{7BCCC196-F6C8-357C-A925-CD0F807661C1}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{7C857936-A5DD-38ED-92E2-898286A64E2C}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{7CB67A72-BE23-3134-9F5D-6F300B24630C}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{7D08DFEE-1CCA-3CA8-984F-C3A1153CB9C0}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{7D597DF9-2870-35E4-A517-A80128BCC463}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{7D961F5E-9685-302B-836C-BDDF60977479}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{7DA6DFC9-C06F-373F-A47B-985489CBE7BA}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{7E14E76C-B18D-3698-88B4-083DF420D726}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{7E6A9F47-C968-3C6D-BD16-3BE9FA3CA791}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{7EC20D69-B232-33F7-A7C9-571F1AAE09D2}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{7ED7AC70-6965-3074-8A63-EF4B8D9E57CD}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{7EF13C90-6941-3F39-81CD-AF833C8AB14A}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{7F66ECC0-5812-3A64-9BB2-2416AE4CFE95}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{7F72C741-A2DF-32D4-819E-B797A0C3A7D5}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{7FFFBE1E-A14B-35FD-8CD7-698FBD1A0267}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{80264FCF-617B-346A-9C52-C39A6E4024B9}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{8327F08A-E21B-3C35-9A4A-DD60637AC7E5}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{83A2AC37-0EB0-3B01-8F5E-5D516C415B6B}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{83EFEF02-A9D5-362D-B092-98729BC80CDF}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{83FDA02C-50B6-3DA9-8CAA-85C6D08B590E}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{842F18C0-C6A3-3A64-9EA4-B03B7F9339CD}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{8458ED1E-240F-3388-B94D-A3B31CCAEAB8}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{84624A9B-64D4-3163-93C6-992923425C8E}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{84B5A313-CD5D-4904-8BA2-AFDC81C1B309}\InprocServer32 -> C:\Users\Todd\AppData\Local\Citrix\GoToMeeting\3499\G2MOutlookAddin64.dll => No File
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{85C8A8F2-6771-3FF2-B564-A40B8AB1AFCC}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{85CB5966-E6E1-3AE1-B1BA-A0924B989FB4}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{85FCE21E-8E97-325F-9742-3E1803C49156}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{86021BE3-690C-3EE9-89B5-695A97E8BEC7}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{86465CBD-B3C4-3732-A876-374ADA06E606}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{86EA2180-9227-3306-828F-E116BC2C5A76}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{86FFF485-ABB3-3B1B-B115-0D63B129B935}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{88B79D63-8D3C-32D0-A1DF-BBD2B0AD1D39}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{89101ACF-59F0-3827-B547-E8BBC4A0BB41}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{897705D6-6138-33B8-825B-D39062DE0A76}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{8C0F28FB-9FF0-30CF-A4F0-8F33193DD2EC}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{8C11FBB0-BD2B-3CC2-982A-154A3070215A}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{8CA7E8A9-7ED7-327D-A558-27D6E498E146}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{8D9A02DB-B60D-311D-9300-F067E0225F99}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{8E69F7ED-032F-36C6-ADE7-E04C5C83992B}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{8E976F70-E947-3D14-8A3D-276154B587F9}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{8F36A128-43E2-3E80-B7BE-F0C53088B52C}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{8F4ECF50-9893-3093-BE18-82CF755A29F5}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{8FD708FB-4BEA-3D97-B26E-087B04981DED}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{8FFBC2A1-7E20-3351-AB7D-5BC8FDD99E51}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{901CF45F-2D13-394B-84FD-578DB7008ED1}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{902639E5-B762-3FFB-91C5-9BE004DD3DAE}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{904FD936-A710-36CA-A116-731A670BF012}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{90C67987-49CD-3F77-B648-C1C6A3AEF919}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{90FFA381-55BC-3B63-A60C-8E4A08AD91F1}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{915549E9-262F-33D1-B5A2-D490EF7D6DF2}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{91B557C8-9B2F-3F28-9F87-D5CDE83F7D82}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{91E5E36D-ECA1-3A27-AB64-9F7AEA3C6D12}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{92666FA7-096A-3766-A16F-13519079014A}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{9279A872-5935-35CC-B20D-8C1256CF040F}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{9318076D-6300-3EA3-AA15-06C5F3E84F19}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{9321412F-2862-356E-9BA7-2365D82EC5A2}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{9392B231-6335-3023-91B7-9A70FA80A318}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{943F888F-8D39-38E7-A7EA-D0A6FE375931}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{9485E29C-0ABE-3605-90F1-1117C29C11C6}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{95E2E754-F771-3848-A7FF-E2983BA68C4A}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{967817B9-4DEE-3642-B1F9-4707501296B5}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{96D3B27E-E35F-329B-A7B7-0DFFC6B2C592}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{9787045D-5361-33EF-B576-9D3A5A361391}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{9788AE25-BEC1-385F-BA4E-F46D3552C2C9}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{97D6BA4F-9776-3FAA-B1C6-35DDADAA46F0}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{984A7271-B2A5-3BCB-8DDE-7EA25D6D49CC}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{993FF512-B051-3CA7-8E33-356B6233D496}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{99C3E166-8AAA-3CB0-87EB-C506F79009B2}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{9A1A8B9B-B443-3487-9D87-298085731F63}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{9AC2C28A-52BA-39C6-9997-98270798B714}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{9B18A233-A535-33AC-AEFA-DBBBEDE36162}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{9B7287D9-CF1E-34FB-8D62-8B1E8ACCDD7F}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{9C7E6A63-0FFD-3AE5-AEA6-64FA50ABA1B4}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{9DD45EDF-7990-3002-90DD-6232BAB61CF4}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{9DDF0E10-6538-3DBD-9EE2-3FD09BCFC161}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{9EF487FD-56CE-3EAD-95FA-C1A2C08B2DDC}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{9F314B66-EFB0-3935-8BDA-F0ABA981FE51}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{9F93ED00-2F49-39D6-974F-A80015D539EF}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{9FF95F24-3F54-368A-9CB5-79C1446C2C96}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{A0A70C22-E4FA-3A65-A0F3-1580E55BC3C7}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{A0B206F4-D739-35CB-ADCA-7CA520B81600}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{A121A33F-67E3-3613-B79A-C2538108CE4F}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{A132DC57-C306-3210-918B-8907D1FACD07}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{A1559EBA-22A5-399B-9CD0-7F93F1A984AE}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{A2155EA3-F456-30EE-AD73-0687F352241F}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{A311937E-E362-337B-9F95-1D8A16EC67A7}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{A3192D0F-7DAF-37EE-8394-9DFA74EA091B}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{A3A2987B-D60C-31E7-82A1-A7A25A64F1FF}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{A4066A5E-8CD9-33A1-BEFB-0CFAD54F365D}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{A4297E58-30CE-310C-8E99-7A9FD6468D65}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{A4546A8D-A700-3F78-9076-28537FB21065}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{A46417B7-C6FA-3C2E-880F-2550FF503680}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{A5A2CDC8-143B-3790-B952-F9B1793FEE25}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{A5D8D405-1D50-3EEE-A63C-B3F0CB5A9F46}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{A6173651-1EA0-374C-9DD8-B31857E70DFA}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{A63B3445-5CC4-3745-A579-EC7D83B9FADE}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{A6796FDF-113C-39DE-B205-EBBBAD7ACF23}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{A6A17AF5-DC98-3AFF-B6DF-FAF859D4BE45}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{A71FC3B1-5264-3097-8485-14A3D1271B68}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{A73771CB-F130-3589-8B9B-0203364FB0C0}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{A75A9BA3-5C53-3713-85A5-4E17EBE3B779}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{A75F4631-837B-3043-BD8E-8FAEB47ACEE2}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{A78C7D82-F072-3A23-A18F-1074BE926CBD}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{A8F8EED1-B1AF-343F-8D56-C1E269E6EFD6}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{A9322782-A735-3C4A-95A8-DD4CFCBC12DC}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{A98D139B-330E-3685-99B5-C03267FB60E3}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{AA6348CA-29B2-3B7D-A4F3-D8559F4C885B}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{AAAFB9C4-2B37-336B-B7AB-CCC693290CA5}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{AAC7DBDA-68AB-32F9-9D76-0A629DBC62D0}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{AB011487-9B6E-3D1A-ACC5-7E3E199C4204}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{ABE5C13C-885F-319C-8C47-CE3860E80924}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{AC2ACA09-6F58-3C45-8A93-3DEB38A76961}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{ACD19753-0476-3ECC-B90A-08B6309D0782}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{AD91E334-C390-33BE-B5FF-85977BBE9528}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{AE84C38E-DB6E-316C-89DC-4471229028F5}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{AF22E0AA-C3F4-37A5-81C6-DDDB3887F793}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{AF432DDB-F52A-3F82-ACA4-E4F5E99D72FB}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{AF560D95-C1AA-3E00-A77E-DAD0E36F7C85}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{AFC44DA8-4A95-38BA-BC35-A6D8D3B468DC}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{B06BDEC6-4F10-3331-9BE6-95271223EF97}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{B169F393-5EAC-3A19-94FF-5753332CC13F}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{B176D5BD-7780-3840-B0E5-580F0B2674EB}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{B1F20EBB-1DC6-3AEE-B5BB-40B89ED0A4A9}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{B2815239-D6F0-33D0-A814-F6D469AD0F42}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{B361A251-5D55-3C1E-B703-503AD1F2163C}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{B3746FEC-E283-3687-83A0-593F8B6F5CC1}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{B3A73A73-1CA6-3075-9354-8DECE11C9B81}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{B414CAFF-09E4-3314-A935-086A06C37473}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{B4358C2D-9B7E-3333-8602-AEE0F33C7726}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{B5020F81-491B-388F-B908-FC3AF222E166}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{B6427FA3-D5F1-3AEA-8ED4-C4DE3E421A5A}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{B6753927-3783-3907-8732-01020BE34E6C}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{B6A7B2DC-BD42-3540-AEC7-F8133A631286}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{B7D6C86F-8311-3CD7-8EC2-B5B478F81FAF}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{B7E79A4B-2FF8-30EE-85AE-F7DEDE168047}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{B8DA5567-F92E-37C0-A2C8-D72BF4CF5EA6}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{B96A9620-ACA0-3E26-98AE-777B1C4EAED9}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{B99DA579-9ECF-3B82-B35E-0661C7590BCC}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{B9BE84D4-68C9-32A2-BBD3-5D71CE94906F}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{BA8D3484-B4DA-39F2-9BAD-E781E1C111BA}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{BAF6988B-4BCF-37E6-A5AE-2A2D0E50B2BB}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{BAF72E46-64E6-37BC-BFBD-D96A31FBDD09}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{BB0136E6-7983-3CBC-8CBD-EF1441C70162}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{BC0FBF89-44F4-3007-8DCC-7F6CC5F59A8B}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{BC4E5C72-ED08-3D77-A17E-C1537D790A2A}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{BC50FC90-F96A-3205-A230-3FDFA26F0C6F}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{BDB8E74F-FDAC-3B90-BB94-571AE21F2281}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{BE01759F-8B44-3F7E-9C7B-2DBBB036C6F6}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{BED2FB47-9DA2-3FCF-8A3D-76F1457668FE}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{BF389DCE-7DDB-3E17-B495-A7A646257895}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{BF39A412-8CD0-340F-AC60-6C0960DF1C94}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{BF772CD1-1367-33D1-8885-EE13054FA10F}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{C0828B80-7D01-35CD-94D4-B16A8100D02E}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{C08D7835-B3B6-395D-A5C5-494329D87DDC}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{C0AB6016-3687-3B15-8D2A-E2BEF30A494B}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{C0C7BBD7-38A4-3CD3-A1D2-D34959E70347}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{C1022C60-6A25-35A9-A7D8-9E9A7EFCA0ED}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{C1D1D772-307A-3EA1-BA49-73CD7C0785C6}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{C611BC1F-994F-31A3-A6E9-4352C08AC135}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{C68728E1-4C49-3938-83B1-346FA0DD5CBD}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{C6A883CB-348A-3B26-9228-22C98CD5FF76}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{C70AD9BC-6F55-3C34-881F-856F2DBDACB4}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{C7BE6E2B-F7B3-3D8A-819B-9ED165629F0E}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{C7E318E6-0DA5-3FE7-83B1-24C512C7319B}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{C85A8DE7-5434-3DD0-8C1D-1FF675364970}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{C85C77FC-519D-3DFF-8CE5-D361B9FABA6B}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{C875C7DD-434D-3B6D-BD19-9EB9C9D22D31}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{C8E128AF-85D6-36B8-B07C-74023DC614FE}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{CA3E9052-1F1E-328F-BB3B-946E5FC32FF8}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{CA54C174-FCF2-3ABF-87F5-F1B471DAA29A}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{CA72AC70-A2F4-30E8-A24C-5CD775F6B905}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{CA95090D-6035-3034-808C-F8C797B1688F}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{CB76F6C2-7D08-3A92-AFB9-3C4BFDF914F7}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{CBC29904-C58C-3C25-87FF-B7397177A4D4}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{CBFE72AB-1AD2-3209-B893-B52E24CB2EB4}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{CC528E6D-E957-38DF-B341-F20D24753444}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{CC768E1F-4232-3251-93A1-047EED8F79AD}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{CCDC8838-F58E-3910-AA30-06310BDB44C3}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{CCE6C940-9DC4-3045-A19F-6013542D4F29}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{CD7A8621-C964-3BD1-9394-BEBE75B8133B}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{CD88B40C-7AE3-3EFF-A5C6-6EBAF5531E8E}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{CDEDA51A-B676-3379-BC0F-C747E252DADF}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{CE60CC46-E256-30A0-BB34-BADA9DC5FAC4}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{CEA2142F-E7AB-4B90-9125-AFAF922AD437}\InprocServer32 -> C:\Users\Todd\AppData\Local\ShareFile\OutlookPlugin\adxloader64.Malone.dll ()
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{CF854F20-0F60-3E09-8E99-404CC5E7D053}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{D0530640-C76F-33FB-BCD1-B2FE6FE93BCE}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{D13847D4-7DA4-396D-B071-83E20FA42F84}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{D15EA5CB-279B-3392-ABE5-1A784CDB4754}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{D17C949E-189D-3446-BADC-6E1A38F5871F}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{D2068E3E-4142-3E82-BAE8-4CC954B727C0}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{D2F2DE52-9635-37BF-870F-1CD44AD75EA2}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{D391069C-ACA3-3986-AAE8-0C8D9AC812FF}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{D3B06B3B-8F86-3686-B9F0-88C8DA15B006}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{D3B6BA4D-1EC5-339F-A474-D3EF91D89D4D}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{D3E8386A-48A7-3051-B350-5468B0194ADE}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{D4B6B140-2C46-3028-BAC9-D2EAD0C55BE1}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{D4DA68EF-C2E4-3BE1-A7D7-94AC98E8581F}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{D52F329A-A892-39AF-B792-086051714E98}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{D669AC0D-03FD-399A-BFBB-AE34FD866E39}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{D8CF4475-3490-3C8B-AD73-C26EB57AE7B0}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{D926D1E9-BC98-3EC5-93A1-8FEE0EF01870}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{D9839DAE-14A0-35A3-BF3C-CCB8CEC2BB86}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{DA37EF83-1E23-3449-B77E-3114F9FE253D}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{DA8A4A4F-8456-3D9E-AC6B-70E1B3446163}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{DAE44CA9-85BB-37F6-A8F4-642440017E56}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{DB3C37AF-4E5D-382C-B4D2-0E5883A42BFD}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{DB8E5896-CDC4-388F-AB28-6EB7B7CB1C3D}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{DC42EE0E-74CD-3391-A1B6-05B6CE73C7AA}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{DD77F0BF-8F7E-31C7-AA13-8097807E7484}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{DDA0E46A-5D5A-347F-B23B-CA22EBF6E191}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{DDA5FF05-788D-3D7E-9015-82EF40C11029}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{DE4584D2-115C-37C3-BB77-8E851371A81C}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{DE802EAF-1038-377E-BFE5-35AD077B1A8D}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{DEA4A6A9-D5AF-34F9-8864-B77418A4431F}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{E1CA0A34-5DC9-3AFD-871C-5715C7DD5B68}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{E202F408-FD15-380A-9EB2-7C5B3802A301}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{E37A5EA0-7652-347E-8469-78EA81B451BD}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{E3B44B05-A401-3E3E-B9E4-E85F0053ADC9}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{E47F4679-E7A4-36E0-8A1A-5B88331E3370}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{E5506FBA-5E2B-39B7-8902-AB1531047242}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{E57D4485-97C9-3722-9AD8-FE3D99DADADF}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{E7B96B05-3328-3DBA-BA06-DD7D3565FFF2}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{E81CC31F-60C7-3F23-B2C1-8ED1B93DF485}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{E88DCE28-09E5-313A-A27A-24015A96D3AC}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{E91FACF7-66BC-3281-B13A-F5491F6DEEC5}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{E95CBD12-D09A-372B-BF22-B1D52DC7DF42}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{E9C029ED-52DD-35E0-8614-4A6CCD7E751D}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{E9C1E007-0D10-34F6-8A41-FCA5EC0567C0}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{E9DA0A11-42D4-3402-830D-064D36BD9CDC}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{EA919E0C-5CE0-3D08-BD94-1CD1E67FF8B4}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{EB70649E-283E-36D8-B249-868AF99A26D4}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{EBDF7D3F-1A35-38CE-AD74-4A8EAFBAE751}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{EBFB2A21-EECF-33C8-AE85-D8C662A45685}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{EC738999-6B1F-3493-9A11-7BC4D8CEBC5C}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{EC9DED8A-E5E2-3CAE-B7C0-CD2A6EE6499E}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{ECCDA6C8-3C72-398F-8C6C-8A5F9137D75C}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt64.16.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{ED8A9D2A-6485-3206-8356-F324B1429F78}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{EDADFE35-6DDC-3416-8C0C-EACE2FC86DB0}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{EE1A91E7-5793-399B-92FB-A7D6B8821F2D}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{EE2F9965-7C5B-384E-B123-8AC4778E341B}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{EE530615-D10E-38A8-BED0-83A71B580E74}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{EE6872E0-0515-3DB2-9A2E-11211217975E}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{EF5150DF-D7C9-3E28-B27F-12FE0B9E449D}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{EF6D690F-EFF2-3C8C-9D26-30F0EC72D0A9}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{EFB98D80-35B8-345F-A00A-D8E5D8221C0F}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{F082ADBF-1A47-302F-A0F5-85A313F3FCA9}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{F0A750E3-FE71-3E79-A5BF-3A537F7EF897}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{F0B58E55-F4FF-3684-9DB7-50380462ACCB}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{F0C7E3E8-5502-3DCF-9F54-5E8E4181AC9D}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{F17A2C67-9406-3499-8F8C-F46B49E36721}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{F1B777EE-7BF1-3858-98A8-6F109F13635A}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{F1F15969-3561-3222-B3DA-35DC7A0B76B8}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{F31F0D80-4504-31DE-9CEE-BAF54355BE50}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{F38AC0E2-6C56-3A04-95CA-A14F92CC41AA}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{F42187C8-A167-3776-9F67-4DA7770D76E2}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{F4DD44B9-2C63-397C-9ACA-DD7612B4925E}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{F4FA2E61-FAF5-3158-B982-C8A068CC714B}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{F51D5CEE-1F24-3EBE-8AC7-8C99489993FC}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{F5454433-C961-350B-A50A-D6A141E6FAD0}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{F57185A7-3F98-38CD-8D72-54ED8868A14A}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{F5779A8C-CFD5-35BB-8C0E-C4EFFBA9EFE7}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{F5E72914-396E-3438-B71A-9FCB05B0448C}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{F6613500-CD86-354C-9ED6-0DA9AC236E95}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{F7048828-B49E-3FF6-956A-11AE4D541749}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{F824F7B6-1680-3A51-B767-B3556BDF1E97}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{F8B80B35-D994-38DA-B7E1-A48682D84108}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{F93EC49C-E6E2-3E7E-A949-8EA640D600B3}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{FA88A5C6-4E53-391C-9586-BC72C51E45F6}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{FAF3B17B-08B4-3A51-A566-FFE83EF221BD}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt64.16.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt64.16.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt64.16.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt64.16.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt64.16.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt64.16.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt64.16.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt64.16.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{FB314EE1-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt64.16.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{FB314EE2-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt64.16.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{FB8C19F7-8A40-3104-8AC7-5D8ECF6B8F92}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{FB94ADE4-FBFD-3BF7-970D-2D3E24A0E147}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{FBAE04AA-775E-3AB8-930A-97BDA62DB3FD}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt64.16.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{FC54F339-D8F8-3CDE-815E-F4E65B8ABA6E}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{FCAEA5AA-AF4F-3A4F-973E-C3FD85300A5F}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{FDE7DD89-8AB3-388F-9FD9-BED240A96729}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{FE1289CA-5761-3BCE-8CD2-037487843CFF}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{FE604573-DB85-3F51-B77B-336495395272}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{FF576A92-8B23-3AEC-8BB4-298D01B265D7}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1963650092-100906850-1094435348-1000_Classes\CLSID\{FFDCD848-8640-3584-8654-89F30DF86F15}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
ShellIconOverlayIdentifiers: [     AcronisDrive] -> {5D74FD4B-4EFB-4586-8022-8637BBE40970} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2017-02-10] ()
ShellIconOverlayIdentifiers: [     AcronisSyncError] -> {934BC6C0-FEC2-4df5-A100-961DE2C8A0ED} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2017-02-10] ()
ShellIconOverlayIdentifiers: [     AcronisSyncInProgress] -> {00F848DC-B1D4-4892-9C25-CAADC86A215D} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2017-02-10] ()
ShellIconOverlayIdentifiers: [     AcronisSyncOk] -> {71573297-552E-46fc-BE3D-3DFAF88D47B7} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2017-02-10] ()
ShellIconOverlayIdentifiers: [  OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Symantec.cloud\EndpointProtectionAgent\Engine\22.9.3.13\buShell.dll [2017-05-11] (Symantec Corporation)
ShellIconOverlayIdentifiers: [  OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Symantec.cloud\EndpointProtectionAgent\Engine\22.9.3.13\buShell.dll [2017-05-11] (Symantec Corporation)
ShellIconOverlayIdentifiers: [  OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Symantec.cloud\EndpointProtectionAgent\Engine\22.9.3.13\buShell.dll [2017-05-11] (Symantec Corporation)
ShellIconOverlayIdentifiers: [  WebDrive] -> {37D70BD3-073C-4180-ADD9-C032EA5A7204} => C:\Windows\system32\wdShellExt.dll [2015-07-29] (South River Technologies, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt64.16.0.dll [2017-06-26] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt64.16.0.dll [2017-06-26] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt64.16.0.dll [2017-06-26] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt64.16.0.dll [2017-06-26] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt64.16.0.dll [2017-06-26] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt64.16.0.dll [2017-06-26] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt64.16.0.dll [2017-06-26] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt64.16.0.dll [2017-06-26] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [  OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Symantec.cloud\EndpointProtectionAgent\Engine32\22.9.3.13\buShell.dll [2017-05-11] (Symantec Corporation)
ShellIconOverlayIdentifiers-x32: [  OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Symantec.cloud\EndpointProtectionAgent\Engine32\22.9.3.13\buShell.dll [2017-05-11] (Symantec Corporation)
ShellIconOverlayIdentifiers-x32: [  OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Symantec.cloud\EndpointProtectionAgent\Engine32\22.9.3.13\buShell.dll [2017-05-11] (Symantec Corporation)
ShellIconOverlayIdentifiers-x32: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt.16.0.dll [2017-06-26] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt.16.0.dll [2017-06-26] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt.16.0.dll [2017-06-26] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt.16.0.dll [2017-06-26] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt.16.0.dll [2017-06-26] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt.16.0.dll [2017-06-26] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt.16.0.dll [2017-06-26] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt.16.0.dll [2017-06-26] (Dropbox, Inc.)
ContextMenuHandlers01: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat Elements\ContextMenuShim64.dll [2012-09-23] (Adobe Systems Inc.)
ContextMenuHandlers01: [BTMSentToExt] -> {0A7D34C2-E9DA-48A1-9E34-0CDFC2DE3B44} => C:\Program Files\Motorola\Bluetooth\btmshell.dll [2010-08-24] ()
ContextMenuHandlers01: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C:\Program Files\Symantec.cloud\EndpointProtectionAgent\Engine\22.9.3.13\buShell.dll [2017-05-11] (Symantec Corporation)
ContextMenuHandlers01: [Foxit_ConvertToPDF] -> {C5269811-4A29-4818-A4BB-111F9FC63A5F} => C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\ConvertToPDFShellExtension_x64.dll [2015-08-31] (Foxit Software Inc.)
ContextMenuHandlers01: [PicaViewCtxMenuShlExt] -> {F3CBBA61-EE3F-4D6D-B1C6-B3474E579936} => C:\Program Files\Common Files\ACD Systems\PicaView\ACDSeePV.dll [2015-08-28] (ACD Systems International Inc.)
ContextMenuHandlers01: [SnagItMainShellExt] -> {CF74B903-3389-469c-B3B6-0204D204FCBD} => C:\Program Files (x86)\TechSmith\Snagit 12\DLLx64\SnagitShellExt64.dll [2015-08-14] (TechSmith Corporation)
ContextMenuHandlers01: [Symantec.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Symantec.cloud\EndpointProtectionAgent\Engine\22.9.3.13\NavShExt.dll [2017-05-11] (Symantec Corporation)
ContextMenuHandlers01: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:\Program Files\TeraCopy\TeraCopyExt64.dll [2012-01-20] ()
ContextMenuHandlers01: [WebDrive] -> {04466240-beb3-11d1-be1c-00aa006b77f4} => C:\Windows\system32\wdShellExt.dll [2015-07-29] (South River Technologies, Inc.)
ContextMenuHandlers01: [WondershareVideoConverterFileOpreation] -> {FEB746CA-95C2-485F-B386-C30D4E56D22E} => C:\Windows\SysWOW64\WSCM64.dll [2015-02-27] ()
ContextMenuHandlers02: [Symantec.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Symantec.cloud\EndpointProtectionAgent\Engine\22.9.3.13\NavShExt.dll [2017-05-11] (Symantec Corporation)
ContextMenuHandlers02: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:\Program Files\TeraCopy\TeraCopyExt64.dll [2012-01-20] ()
ContextMenuHandlers02: [WebDrive] -> {04466240-beb3-11d1-be1c-00aa006b77f4} => C:\Windows\system32\wdShellExt.dll [2015-07-29] (South River Technologies, Inc.)
ContextMenuHandlers03: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamext.dll [2016-03-10] (Malwarebytes)
ContextMenuHandlers03: [WebDrive] -> {04466240-beb3-11d1-be1c-00aa006b77f4} => C:\Windows\system32\wdShellExt.dll [2015-07-29] (South River Technologies, Inc.)
ContextMenuHandlers04: [SnagItMainShellExt] -> {CF74B903-3389-469c-B3B6-0204D204FCBD} => C:\Program Files (x86)\TechSmith\Snagit 12\DLLx64\SnagitShellExt64.dll [2015-08-14] (TechSmith Corporation)
ContextMenuHandlers04: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:\Program Files\TeraCopy\TeraCopyExt64.dll [2012-01-20] ()
ContextMenuHandlers05: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2015-04-08] (NVIDIA Corporation)
ContextMenuHandlers06: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat Elements\ContextMenuShim64.dll [2012-09-23] (Adobe Systems Inc.)
ContextMenuHandlers06: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C:\Program Files\Symantec.cloud\EndpointProtectionAgent\Engine\22.9.3.13\buShell.dll [2017-05-11] (Symantec Corporation)
ContextMenuHandlers06: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamext.dll [2016-03-10] (Malwarebytes)
ContextMenuHandlers06: [Symantec.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Symantec.cloud\EndpointProtectionAgent\Engine\22.9.3.13\NavShExt.dll [2017-05-11] (Symantec Corporation)
ContextMenuHandlers06: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:\Program Files\TeraCopy\TeraCopyExt64.dll [2012-01-20] ()
ContextMenuHandlers06: [WebDrive] -> {04466240-beb3-11d1-be1c-00aa006b77f4} => C:\Windows\system32\wdShellExt.dll [2015-07-29] (South River Technologies, Inc.)
ContextMenuHandlers1_S-1-5-21-1963650092-100906850-1094435348-1000: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt64.16.0.dll [2017-06-26] (Dropbox, Inc.)
ContextMenuHandlers4_S-1-5-21-1963650092-100906850-1094435348-1000: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt64.16.0.dll [2017-06-26] (Dropbox, Inc.)
ContextMenuHandlers5_S-1-5-21-1963650092-100906850-1094435348-1000: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Users\Todd\AppData\Roaming\Dropbox\bin\DropboxExt64.16.0.dll [2017-06-26] (Dropbox, Inc.)
 
==================== Scheduled Tasks (Whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {08DC0537-0CAC-49A7-B5CD-81D5A8250224} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-03-03] (Piriform Ltd)
Task: {0DB8A2F1-6C50-4F03-9483-DE8F83328444} - System32\Tasks\Open URL by RoboForm => Rundll32.exe url.dll,FileProtocolHandler "hxxp://www.roboform.com/test-pass.html?aaa=KICMPMNJOJMMKJOMPMKJCNJJNJNMOJCNLMOMLMNJCNHMKJJJIMCNLJOJNJNMPMJMMMLMNMKMPMMJJNJICMIMCNGMCNNMNMFMOMOMCNPMCNGMJMPMPMFMJMCNOMCNIMJMPMOMCNNMJNPICMOMFMEKMICNJJCKFMKMKMIMJNHICMEKMICNJJCKJNBJCMLKAJLJLJJNKJCMJNNICMJNDJCMKJBJJNMJCMLMFMOM (the data entry has 45 more characters).
Task: {0EACD4C4-CA05-4755-8584-33A18D149D52} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-21] (Microsoft Corporation)
Task: {232371AA-BC25-4785-9361-874A665EDA6F} - System32\Tasks\Remediation\AntimalwareMigrationTask => C:\Program Files\Common Files\AV\Symantec Endpoint Protection.cloud\Upgrade.exe [2017-05-11] (Symantec Corporation)
Task: {282C9998-FB17-47A1-B5E0-F35B04B1DE68} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2014-03-19] (Microsoft Corporation)
Task: {2F72A5C9-ACE3-4F9A-8BFC-A66AEC6AC2AA} - System32\Tasks\Endpoint Protection.cloud\Symantec Endpoint Protection.cloud Error Processor => C:\Program Files\Symantec.cloud\EndpointProtectionAgent\Engine\22.9.3.13\SymErr.exe [2017-05-11] (Symantec Corporation)
Task: {3121E9AB-547E-42DD-9336-8EB5C131639F} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-21] (Microsoft Corporation)
Task: {38178023-9FFC-4BC1-8914-8560F53B4147} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-02-02] (Adobe Systems Incorporated)
Task: {47511EB2-2DAE-419A-AB5C-F8BD030E62C6} - System32\Tasks\G2MUpdateTask-S-1-5-21-1963650092-100906850-1094435348-1000 => C:\Users\Todd\AppData\Local\Citrix\GoToMeeting\7155\g2mupdate.exe [2017-06-12] (Citrix Online, a division of Citrix Systems, Inc.)
Task: {54D2B03D-BB5E-4DA8-9180-BA61F13FA2E3} - System32\Tasks\UpdateShareFileOutlookPlugin_S-1-5-21-1963650092-100906850-1094435348-1000 => C:\Users\Todd\AppData\Local\ShareFile\OutlookPlugin\OutlookPluginUpdater.exe
Task: {574FF73A-0C02-4C0A-AAC2-AAC2FFA192CB} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2014-03-19] (Microsoft)
Task: {5E545FD7-0269-4E14-B6F0-21E57183CFD8} - System32\Tasks\Norton WSC Integration => C:\Program Files\Symantec.cloud\EndpointProtectionAgent\Engine\22.9.3.13\WSCStub.exe [2017-05-11] (Symantec Corporation)
Task: {62D47701-DFEC-4E03-B7FB-473CAB47FC50} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe [2017-05-19] (Samsung Electronics Co. Ltd.)
Task: {705A7F61-B185-401E-B438-AAA382C0E8AB} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-13] (Google Inc.)
Task: {74DD0FF9-A219-4A32-B75D-2C3658E42374} - System32\Tasks\Run RoboForm TaskBar Icon => C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [2016-10-22] (Siber Systems)
Task: {751AFAE2-BD46-4DBF-858E-B89BEEE9A499} - System32\Tasks\CorelUpdateHelperTask => C:\Program Files (x86)\Corel\CUH\v2\CUH.exe [2017-05-29] (Corel Corporation)
Task: {858CE6AE-E9B0-4C4D-A44A-1DE75080570A} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2014-03-19] (Microsoft Corporation)
Task: {866450B4-3393-4300-9854-99F83075EB3B} - System32\Tasks\EPSON WF-5190 Series Update {8A2DA38D-148E-435A-B934-81789046876B} => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSKPE.EXE [2013-02-28] (SEIKO EPSON CORPORATION)
Task: {93D2F2F8-E2E4-45F1-8555-27A3743FE658} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1963650092-100906850-1094435348-1000Core => C:\Users\Todd\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2016-11-04] (Dropbox, Inc.)
Task: {9C007B38-CC82-4D33-91B6-C9E7C3B34448} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1963650092-100906850-1094435348-1000UA => C:\Users\Todd\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2016-11-04] (Dropbox, Inc.)
Task: {A5FA0F2F-2B8D-4172-AE7C-27BD04A2207E} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe
Task: {B33990FF-7CCF-469A-9C1B-CE911FCD81FB} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {B69432FF-CABD-4DD7-BEF8-0E99AB43DFFB} - System32\Tasks\CorelUpdateHelperTaskCore => c:\Program Files (x86)\Corel\CUH\v2\CUH.exe [2017-05-29] (Corel Corporation)
Task: {CAF7E08E-B87E-4DCB-8491-079DFE63B67E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-13] (Google Inc.)
Task: {DE55FE29-6829-4D72-A3A4-11F0DFAB101B} - System32\Tasks\OfficeChatUpgrade => C:\Users\Todd\AppData\Local\MangoApps\OfficeChat\Launch Application.exe [2016-06-24] ()
Task: {DF643057-548D-4F28-B268-B59EF515E58D} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2014-03-19] (Microsoft Corporation)
Task: {DFB4C00D-30B9-4BDB-A154-BE4D3BCA73F7} - System32\Tasks\EPSON WF-5190 Series Invitation {8A2DA38D-148E-435A-B934-81789046876B} => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSKPE.EXE [2013-02-28] (SEIKO EPSON CORPORATION)
Task: {E468E91B-6681-4E42-8554-34586EDAE439} - System32\Tasks\G2MUploadTask-S-1-5-21-1963650092-100906850-1094435348-1000 => C:\Users\Todd\AppData\Local\Citrix\GoToMeeting\7155\g2mupload.exe [2017-06-12] (Citrix Online, a division of Citrix Systems, Inc.)
Task: {F0F3BB2C-D64A-46EB-A320-505C1C044EE0} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [2017-03-28] ()
Task: {F42558A4-814B-4330-954A-E4CF947DB6C7} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-06-17] (Adobe Systems Incorporated)
Task: {F50F3D0F-D4FF-496C-9368-0F5092081E69} - System32\Tasks\Endpoint Protection.cloud\Symantec Endpoint Protection.cloud Error Analyzer => C:\Program Files\Symantec.cloud\EndpointProtectionAgent\Engine\22.9.3.13\SymErr.exe [2017-05-11] (Symantec Corporation)
Task: {FE163177-987C-4906-A114-C9C7D5A89F26} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2014-03-19] (Microsoft Corporation)
Task: {FF343AF8-2332-4040-97BA-247D99861B5C} - System32\Tasks\TechSmith Updater => C:\Program Files (x86)\Common Files\TechSmith Shared\Updater\TSCUpdClt.exe [2015-08-11] (TechSmith Corporation)
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1963650092-100906850-1094435348-1000Core.job => C:\Users\Todd\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1963650092-100906850-1094435348-1000UA.job => C:\Users\Todd\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\EPSON WF-5190 Series Invitation {8A2DA38D-148E-435A-B934-81789046876B}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSKPE.EXE
Task: C:\Windows\Tasks\EPSON WF-5190 Series Update {8A2DA38D-148E-435A-B934-81789046876B}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSKPE.EXE:/EXE:{8A2DA38D-148E-435A-B934-81789046876B} /F:UpdateSYSTEMĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi
Task: C:\Windows\Tasks\G2MUpdateTask-S-1-5-21-1963650092-100906850-1094435348-1000.job => C:\Users\Todd\AppData\Local\Citrix\GoToMeeting\7155\g2mupdate.exe
Task: C:\Windows\Tasks\G2MUploadTask-S-1-5-21-1963650092-100906850-1094435348-1000.job => C:\Users\Todd\AppData\Local\Citrix\GoToMeeting\7155\g2mupload.exe
 
==================== Shortcuts & WMI ========================
 
(The entries could be listed to be restored or removed.)
 
 
ShortcutWithArgument: C:\Users\Todd\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_hmjkmjkepdijhoojdojkdfohbdgmmhki\Google Keep - notes and lists.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) ->  --profile-directory=Default --app-id=hmjkmjkepdijhoojdojkdfohbdgmmhki
ShortcutWithArgument: C:\Users\Todd\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\AllCast Receiver.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) ->  --profile-directory=Default --app-id=hjbljnpdahefgnopeohlaeohgkiidnoe
ShortcutWithArgument: C:\Users\Todd\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Keep - notes and lists.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) ->  --profile-directory=Default --app-id=hmjkmjkepdijhoojdojkdfohbdgmmhki
ShortcutWithArgument: C:\Users\Public\Desktop\VideoStudio X10 Training.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> www.studiobacklot.tv/videostudioX10
ShortcutWithArgument: C:\Users\Public\Desktop\VideoStudio X9 Training.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> www.studiobacklot.tv/videostudioX9
 
==================== Loaded Modules (Whitelisted) ==============
 
2017-04-10 21:13 - 2017-04-10 21:13 - 01278208 _____ () C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe
2017-04-13 14:15 - 2017-04-13 14:15 - 06086232 _____ () C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe
2015-05-15 16:26 - 2015-05-15 16:26 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2015-05-15 16:26 - 2015-05-15 16:26 - 01346344 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2014-02-24 21:28 - 2014-02-24 21:28 - 00248736 _____ () C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe
2017-06-13 06:03 - 2017-06-21 06:00 - 02887160 _____ () C:\Program Files (x86)\LogMeIn\x64\ksu.dll
2015-04-13 21:55 - 2015-04-08 17:30 - 00116552 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2017-02-10 15:48 - 2017-02-10 15:48 - 05823600 _____ () C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll
2017-02-23 08:29 - 2017-02-23 08:29 - 08909512 _____ () C:\Program Files\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2015-10-20 13:34 - 2015-02-27 14:38 - 00721263 _____ () C:\Windows\SysWOW64\WSCM64.dll
2015-04-13 22:27 - 2012-01-29 16:55 - 00657920 _____ () C:\Program Files\TeraCopy\TeraCopy64.dll
2015-04-13 22:27 - 2012-01-20 14:55 - 00678400 _____ () C:\Program Files\TeraCopy\TeraCopyExt64.dll
2015-05-17 16:42 - 2010-08-24 19:33 - 16557832 _____ () C:\Program Files\Motorola\Bluetooth\btmshell.dll
2017-04-10 21:01 - 2017-04-10 21:01 - 00588872 _____ () C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe
2016-12-16 16:03 - 2016-12-16 16:03 - 00054488 _____ () C:\Program Files\CCleaner\branding.dll
2015-04-20 18:49 - 2009-08-21 15:44 - 02281488 _____ () C:\Program Files (x86)\Medialink\MWN-USB150N\UI.exe
2016-11-08 03:55 - 2016-11-08 03:55 - 03412936 _____ () C:\Program Files\ACD Systems\ACDSee Pro\10.0\ACDSeeCommanderPro10.exe
2017-04-10 21:51 - 2017-04-10 21:51 - 04956616 _____ () C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe
2016-12-21 15:13 - 2016-12-21 15:13 - 07013704 _____ () C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
2016-02-12 06:55 - 2017-06-26 06:27 - 00018904 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\QtWebEngineProcess.exe
2017-02-14 09:42 - 2017-02-14 09:42 - 00326144 _____ () C:\Program Files (x86)\Garmin\Device Interaction Service\GpsImgWrapper.dll
2017-03-28 15:32 - 2017-03-28 15:32 - 00073216 _____ () C:\Program Files (x86)\Garmin\Device Interaction Service\FixBootSector.dll
2017-04-10 21:46 - 2017-04-10 21:46 - 03632088 _____ () C:\Program Files (x86)\Common Files\Acronis\Infrastructure\atih_mms_addon.dll
2017-04-10 21:45 - 2017-04-10 21:45 - 01315976 _____ () C:\Program Files (x86)\Common Files\Acronis\Infrastructure\services_mms_addon.dll
2016-08-29 21:16 - 2016-08-29 21:16 - 00685488 _____ () C:\Program Files (x86)\Common Files\Acronis\Home\sqlite3.dll
2017-04-10 21:44 - 2017-04-10 21:44 - 20863888 _____ () C:\Program Files (x86)\Acronis\TrueImageHome\ti_managers.dll
2017-04-10 21:01 - 2017-04-10 21:01 - 00396720 _____ () C:\Program Files (x86)\Common Files\Acronis\Home\resource.dll
2016-08-15 12:28 - 2016-08-15 12:28 - 00129968 _____ () C:\Program Files (x86)\Acronis\TrueImageHome\afcdpapi.dll
2016-12-21 15:01 - 2016-12-21 15:01 - 00248240 _____ () C:\Program Files (x86)\Common Files\Acronis\Home\sync_agent_api.dll
2016-11-23 14:41 - 2016-11-23 14:41 - 00160168 _____ () C:\Program Files (x86)\Common Files\Acronis\Home\libevent.dll
2017-02-23 08:29 - 2017-02-23 08:29 - 08909512 _____ () C:\Program Files (x86)\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2016-11-05 15:58 - 2015-09-28 13:04 - 50572288 _____ () C:\Users\Todd\AppData\Local\Todoist\WindowsDesktopApp\libcef.DLL
2015-04-20 18:49 - 2007-12-06 10:24 - 01167360 _____ () C:\Program Files (x86)\Medialink\MWN-USB150N\acAuth.dll
2015-04-20 18:49 - 2009-04-06 15:27 - 00098304 _____ () C:\Program Files (x86)\Medialink\MWN-USB150N\dllPublicFunc.dll
2015-04-20 18:49 - 2009-01-05 20:12 - 00159744 _____ () C:\Program Files (x86)\Medialink\MWN-USB150N\dllCommonCtrl.dll
2015-04-20 18:49 - 2009-04-06 15:27 - 00032768 _____ () C:\Program Files (x86)\Medialink\MWN-USB150N\dllMultiLanguage.dll
2015-08-14 10:57 - 2015-08-14 10:57 - 02099200 _____ () C:\Program Files (x86)\TechSmith\Snagit 12\opencv_core249.dll
2015-08-14 10:57 - 2015-08-14 10:57 - 01914368 _____ () C:\Program Files (x86)\TechSmith\Snagit 12\opencv_imgproc249.dll
2017-04-10 21:00 - 2017-04-10 21:00 - 07781296 _____ () C:\Program Files (x86)\Acronis\TrueImageHome\qt_resources.dll
2017-04-10 21:01 - 2017-04-10 21:01 - 00049584 _____ () C:\Program Files (x86)\Common Files\Acronis\Home\rpc_client.dll
2016-08-29 23:57 - 2016-08-29 23:57 - 00444336 _____ () C:\Program Files (x86)\Common Files\Acronis\Home\ulxmlrpcpp.dll
2016-08-29 21:16 - 2016-08-29 21:16 - 00115632 _____ () C:\Program Files (x86)\Common Files\Acronis\Home\expat.dll
2017-03-20 11:57 - 2017-03-20 11:57 - 00321208 _____ () C:\Program Files (x86)\Evernote\Evernote\libtidy.dll
2016-11-05 15:58 - 2015-09-28 13:04 - 01874944 _____ () C:\Users\Todd\AppData\Local\Todoist\WindowsDesktopApp\libglesv2.dll
2016-11-05 15:58 - 2015-09-28 13:04 - 00075264 _____ () C:\Users\Todd\AppData\Local\Todoist\WindowsDesktopApp\libegl.dll
2017-01-11 09:04 - 2017-01-11 09:04 - 00614008 _____ () C:\Users\Todd\AppData\Local\ShareFile\OutlookPlugin\adxloader.Malone.dll
2015-12-17 18:27 - 2015-12-17 18:27 - 03989216 _____ () C:\Program Files (x86)\Adobe\Acrobat 11.0\PDFMaker\Common\AdobePDFMakerX.dll
2015-02-10 14:13 - 2015-02-10 14:13 - 01754296 _____ () C:\Program Files (x86)\Microsoft Office\Office15\tmpod.dll
2015-10-13 16:07 - 2015-10-13 16:07 - 01032360 _____ () C:\Program Files (x86)\Microsoft Office\Office15\ADDINS\UmOutlookAddin.dll
2017-03-20 11:56 - 2017-03-20 11:56 - 00074424 _____ () C:\Program Files (x86)\Evernote\Evernote\Microsoft.DwayneNeed.Win32.dll
2017-06-26 15:14 - 2017-06-26 06:27 - 00801600 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\dropbox_watchdog.dll
2017-06-26 15:14 - 2017-06-26 06:27 - 01787200 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\dropbox_crashpad.dll
2015-12-13 21:26 - 2017-06-26 06:26 - 00100296 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\_ctypes.pyd
2015-12-13 21:26 - 2017-06-26 06:26 - 00018888 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\select.pyd
2015-12-13 21:26 - 2017-06-26 06:29 - 00019776 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\tornado.speedups.pyd
2015-12-13 21:26 - 2017-06-26 06:26 - 00035792 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\_multiprocessing.pyd
2017-06-26 15:14 - 2017-06-26 06:28 - 00020824 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._constant_time.pyd
2015-12-13 21:26 - 2017-06-26 06:26 - 00123856 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\_cffi_backend.pyd
2015-12-13 21:26 - 2017-06-26 06:26 - 00694224 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\unicodedata.pyd
2017-06-26 15:14 - 2017-06-26 06:29 - 01729360 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._openssl.pyd
2017-06-26 15:14 - 2017-06-26 06:29 - 00020816 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._padding.pyd
2017-06-26 15:14 - 2017-06-26 06:26 - 00145864 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\pyexpat.pyd
2017-06-26 15:14 - 2017-06-26 06:26 - 00019408 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\faulthandler.pyd
2017-06-26 15:14 - 2017-06-26 06:27 - 00116688 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\pywintypes27.dll
2015-12-13 21:26 - 2017-06-26 06:26 - 00105928 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\win32api.pyd
2016-08-17 20:12 - 2017-06-26 06:30 - 00022864 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\winffi.crt.compiled._winffi_crt.pyd
2017-06-26 15:14 - 2017-06-26 06:29 - 00060736 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\psutil._psutil_windows.pyd
2017-06-26 15:14 - 2017-06-26 06:29 - 00038712 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\fastpath.pyd
2015-12-13 21:26 - 2017-06-26 06:26 - 00024528 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\win32event.pyd
2017-06-26 15:14 - 2017-06-26 06:27 - 00392656 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\pythoncom27.dll
2017-06-26 15:14 - 2017-06-26 06:26 - 00020936 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\mmapfile.pyd
2015-12-13 21:26 - 2017-06-26 06:26 - 00116176 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\win32security.pyd
2015-12-13 21:26 - 2017-06-26 06:29 - 00392512 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\win32com.shell.shell.pyd
2015-12-13 21:26 - 2017-06-26 06:26 - 00124880 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\win32file.pyd
2016-08-17 20:12 - 2017-06-26 06:30 - 00026456 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\winffi.kernel32.compiled._winffi_kernel32.pyd
2015-12-13 21:26 - 2017-06-26 06:26 - 00024016 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\win32clipboard.pyd
2015-12-13 21:26 - 2017-06-26 06:26 - 00175560 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\win32gui.pyd
2015-12-13 21:26 - 2017-06-26 06:26 - 00030160 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\win32pipe.pyd
2015-12-13 21:26 - 2017-06-26 06:26 - 00043472 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\win32process.pyd
2015-12-13 21:26 - 2017-06-26 06:26 - 00048592 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\win32service.pyd
2015-12-13 21:26 - 2017-06-26 06:26 - 00057808 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\win32evtlog.pyd
2015-12-13 21:26 - 2017-06-26 06:26 - 00024016 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\win32profile.pyd
2017-06-26 15:14 - 2017-06-26 06:28 - 00022336 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\cpuid.compiled._cpuid.pyd
2017-05-17 13:11 - 2017-06-26 06:30 - 00082264 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\winenumhandles.compiled._WinEnumHandles.pyd
2015-12-13 21:26 - 2017-06-26 06:30 - 00025432 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\winscreenshot.compiled._CaptureScreenshot.pyd
2017-06-26 15:14 - 2017-06-26 06:28 - 00246608 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\breakpad.client.windows.handler.pyd
2017-06-26 15:14 - 2017-06-26 06:29 - 00027488 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\dropbox.infinite.win.compiled._driverinstallation.pyd
2017-06-26 15:14 - 2017-06-26 06:29 - 03928896 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\PyQt5.QtWidgets.pyd
2015-12-13 21:26 - 2017-06-26 06:26 - 00083912 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\sip.pyd
2017-06-26 15:14 - 2017-06-26 06:29 - 01826104 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\PyQt5.QtCore.pyd
2017-06-26 15:14 - 2017-06-26 06:29 - 01972024 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\PyQt5.QtGui.pyd
2015-12-13 21:26 - 2017-06-26 06:26 - 00028616 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\win32ts.pyd
2017-06-26 15:14 - 2017-06-26 06:29 - 00171336 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\PyQt5.QtWebEngineWidgets.pyd
2017-06-26 15:14 - 2017-06-26 06:29 - 00042816 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\PyQt5.QtWebChannel.pyd
2017-06-26 15:14 - 2017-06-26 06:29 - 00531264 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\PyQt5.QtNetwork.pyd
2017-06-26 15:14 - 2017-06-26 06:29 - 00133432 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKit.pyd
2017-06-26 15:14 - 2017-06-26 06:29 - 00224064 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKitWidgets.pyd
2017-06-26 15:14 - 2017-06-26 06:29 - 00207680 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\PyQt5.QtPrintSupport.pyd
2015-12-13 21:26 - 2017-06-26 06:26 - 00060880 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\win32print.pyd
2017-02-24 15:02 - 2017-06-26 06:30 - 00054608 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\winrpcserver.compiled._RPCServer.pyd
2017-01-20 16:19 - 2017-06-26 06:30 - 00022864 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\winffi.user32.compiled._winffi_user32.pyd
2017-01-20 16:19 - 2017-06-26 06:30 - 00022872 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\winffi.iphlpapi.compiled._winffi_iphlpapi.pyd
2017-01-20 16:19 - 2017-06-26 06:30 - 00021848 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\winffi.winerror.compiled._winffi_winerror.pyd
2017-01-20 16:19 - 2017-06-26 06:30 - 00022872 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\winffi.wininet.compiled._winffi_wininet.pyd
2015-12-13 21:26 - 2017-06-26 06:26 - 00349128 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\winxpgui.pyd
2016-02-12 06:55 - 2017-06-26 06:30 - 00023896 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\winverifysignature.compiled._VerifySignature.pyd
2017-06-26 15:14 - 2017-06-26 06:29 - 00025936 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\librsyncffi.compiled._librsyncffi.pyd
2017-06-26 15:14 - 2017-06-26 06:27 - 00036296 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\librsync.dll
2017-06-26 15:14 - 2017-06-26 06:29 - 00084288 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\dropbox_sqlite_ext.DLL
2016-07-11 19:19 - 2017-06-26 06:30 - 00030536 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\wind3d11.compiled._wind3d11.pyd
2017-06-26 15:14 - 2017-06-26 06:27 - 00017864 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\libEGL.dll
2017-06-26 15:14 - 2017-06-26 06:27 - 01631184 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\libGLESv2.dll
2016-08-17 20:12 - 2017-06-26 06:30 - 00026456 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\winffi.winhttp.compiled._winffi_winhttp.pyd
2017-04-07 14:25 - 2017-06-26 06:29 - 00023368 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\wincrashpad.compiled._Crashpad.pyd
2017-06-26 15:14 - 2017-06-26 06:29 - 00546104 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\PyQt5.QtQuick.pyd
2017-06-26 15:14 - 2017-06-26 06:29 - 00357688 _____ () C:\Users\Todd\AppData\Roaming\Dropbox\bin\PyQt5.QtQml.pyd
2017-05-31 11:41 - 2017-05-31 11:41 - 01982976 ____R () C:\Program Files (x86)\Skype\Phone\skypert.dll
2017-02-10 15:43 - 2017-02-10 15:43 - 05245552 _____ () C:\Program Files (x86)\Acronis\TrueImageHome\tishell.dll
2015-04-13 22:27 - 2012-01-20 14:55 - 00427520 _____ () C:\Program Files\TeraCopy\TeraCopyExt.dll
 
==================== Alternate Data Streams (Whitelisted) =========
 
==================== Safe Mode (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
 
==================== Association (Whitelisted) ===============
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
 
 
==================== Internet Explorer trusted/restricted ===============
 
(If an entry is included in the fixlist, it will be removed from the registry.)
 
 
==================== Hosts content: ===============================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2009-07-13 22:34 - 2009-06-10 17:00 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts
 
 
==================== Other Areas ============================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-1963650092-100906850-1094435348-1000\Control Panel\Desktop\\Wallpaper -> 
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
MSCONFIG\startupfolder: C:^Users^Todd^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Verizon Wireless Software Utility Application for Android – Samsung.lnk => C:\Windows\pss\Verizon Wireless Software Utility Application for Android – Samsung.lnk.Startup
MSCONFIG\startupreg: ACDSeeCommanderPro10 => C:\Program Files\ACD Systems\ACDSee Pro\10.0\ACDSeeCommanderPro10.exe
MSCONFIG\startupreg: Acrobat Assistant 8.0 => "C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe"
MSCONFIG\startupreg: Acronis Scheduler2 Service => "C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe"
MSCONFIG\startupreg: AcronisTibMounterMonitor => C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: Amazon Music => "C:\Users\Todd\AppData\Local\Amazon Music\Amazon Music Helper.exe"
MSCONFIG\startupreg: iTunesHelper => "C:\Program Files\iTunes\iTunesHelper.exe"
MSCONFIG\startupreg: TrueImageMonitor.exe => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe
MSCONFIG\startupreg: Wondershare Helper Compact.exe => "C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelperSetup.exe"
 
==================== FirewallRules (Whitelisted) ===============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [{5EED1B97-4DBB-45A3-BF27-42E48BD935CB}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{BC983D0A-499C-43AE-838D-DE2CB196551D}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{54F02E97-0C0F-4659-916E-28A75C8AD11E}] => (Allow) C:\Users\Todd\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{7C91E5DC-A138-4BEB-AD83-A476F0EB1F55}] => (Allow) C:\Users\Todd\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{4E527BF1-ECB1-4543-B17A-A91F0F9726C6}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{B41574EC-B029-4DF7-8F78-79CF2FB29D43}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{DCA86BA3-2693-4B58-85EE-42447F95C7E7}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{E42C8925-27DC-43DC-A576-17BEF7FBD467}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [TCP Query User{92E59F89-E166-44EA-AE9E-AE111BBE4873}C:\users\todd\appdata\local\logmein client\lmiignition.exe] => (Allow) C:\users\todd\appdata\local\logmein client\lmiignition.exe
FirewallRules: [UDP Query User{F49DF28A-26E6-4867-81B5-F8C22C7D9D29}C:\users\todd\appdata\local\logmein client\lmiignition.exe] => (Allow) C:\users\todd\appdata\local\logmein client\lmiignition.exe
FirewallRules: [TCP Query User{6D608A5A-148B-40E6-8EE5-E5D0F960C9F7}C:\users\todd\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\todd\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [UDP Query User{F079C884-E804-4F29-88DF-E9B5EC49D5F4}C:\users\todd\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\todd\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [{E3556719-F1B6-4FDA-B46C-BDE0C1DCA92F}] => (Allow) C:\Program Files (x86)\AIM\aim.exe
FirewallRules: [{F5B3CF21-F0CB-4BDE-886A-9726C867970B}] => (Allow) C:\Program Files (x86)\AIM\aim.exe
FirewallRules: [TCP Query User{DC6BBC34-B19D-4BE6-86F0-01BDEEBE9747}C:\program files\reflector\reflector.exe] => (Allow) C:\program files\reflector\reflector.exe
FirewallRules: [UDP Query User{3898B950-D54F-4B43-B373-4AD9167C78F7}C:\program files\reflector\reflector.exe] => (Allow) C:\program files\reflector\reflector.exe
FirewallRules: [{0FCB74A1-9A3E-45B9-AA6A-3736D3BD065A}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
FirewallRules: [{B24AE38B-CFB7-4054-9D32-7B64E8F68601}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
FirewallRules: [{048D91F0-94F1-4870-9688-20E70FF334C1}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
FirewallRules: [{E8AF770D-C83E-496D-8AD5-79740859C90A}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
FirewallRules: [{622A52DC-1ED9-45CE-A8F2-D909256BB2BE}] => (Allow) C:\Program Files\WebDrive\WebDrive.exe
FirewallRules: [{5BB4A353-CA89-4759-AB61-FE0EA0669E9F}] => (Allow) C:\Program Files\WebDrive\WebDrive.exe
FirewallRules: [{1049686D-727F-4852-9858-94C81763F587}] => (Allow) C:\Program Files\WebDrive\wdService.exe
FirewallRules: [{81859D22-EC5C-4AC6-954C-00C90CC9A8D8}] => (Allow) C:\Program Files\WebDrive\wdService.exe
FirewallRules: [{6A7D7703-B3ED-4C4F-B016-A7A7CF8F4105}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{82B09A15-F207-4A8B-AD28-FC053ADEC079}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{601EF6F8-4E16-40C0-9210-36C74B16F1B0}] => (Allow) LPort=2869
FirewallRules: [{31C06872-9DD8-4D0E-83B8-7CF837350A43}] => (Allow) LPort=1900
FirewallRules: [{43211558-EC72-4A2C-9747-6619CB20A6D4}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{2A7DF580-3FEA-44E5-9695-09C4C18A80E0}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Audio Recorder\Streaming Audio Recorder.exe
FirewallRules: [{05027A2C-61EC-43FC-BDAC-632FF7D849BA}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Audio Recorder\Streaming Audio Recorder.exe
FirewallRules: [{9600A48D-6DAA-4D53-8725-6E71614AA33F}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
FirewallRules: [{4389DED8-3706-45E9-A344-2DB8CE9367A4}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
FirewallRules: [{494D609D-44B6-4A5E-BAA4-207EEE5AB9B8}] => (Allow) C:\Program Files\WebDrive\WebDrive.exe
FirewallRules: [{7DCBDA5A-FD48-4EE2-8B91-5813BF0B464B}] => (Allow) C:\Program Files\WebDrive\WebDrive.exe
FirewallRules: [{09BEE0CB-CC68-420F-A130-6F41B15BF738}] => (Allow) C:\Program Files\WebDrive\wdService.exe
FirewallRules: [{756518E7-95E8-4B76-BA2E-CC5864CDC37E}] => (Allow) C:\Program Files\WebDrive\wdService.exe
FirewallRules: [{82F95F13-7B29-4F60-8A3E-9852252B8703}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{1E760611-0580-4485-BDF8-6B94790BCC56}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{1776FDBE-2580-4C67-BF4D-26C6B6D6A262}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{D013E975-3D53-4151-8428-9932D97029A6}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{FF54F49A-3A0F-4276-B6C4-751720B1258F}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
FirewallRules: [{FF813483-0529-4434-A359-4E7AA05619FB}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe
FirewallRules: [{93B4F5A1-2628-4D51-BA82-F31AE4B29D61}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
FirewallRules: [{73DDB039-F2D8-4C78-A8AE-F11A095D76BA}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe
FirewallRules: [{A36D203F-3DB7-4788-9A1B-E9A29187C6C6}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{794E5609-533E-4FE5-AF29-024BEA18EA33}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{317014C7-B055-419E-BCA0-6B2ADE342CD2}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
FirewallRules: [{1E0BA936-6F95-490A-8D2F-C953B19D48BA}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe
FirewallRules: [{13575B8E-C6E7-4B0A-BE6B-23BCCDE49801}] => (Allow) C:\Program Files (x86)\Sonos\Sonos.exe
FirewallRules: [{A69B303F-8553-4821-B13D-9026B9D79985}] => (Allow) C:\Program Files (x86)\Sonos\Sonos.exe
FirewallRules: [{8D23CCF5-FEE2-42DF-8283-4E14C5BF1B9E}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
FirewallRules: [{AC4F57DB-CB1E-4C11-8A51-B8F7AA752B0C}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe
FirewallRules: [{38DAA474-2AD3-49C8-9515-67693C203487}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\lync.exe
FirewallRules: [{A31AF4AB-05B9-4CBB-A0F8-529569C64C03}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\lync.exe
FirewallRules: [{8C1DAABA-D5FC-43D9-B65B-9BFE42FB4DA4}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{270CD8C4-036F-4BD0-9329-045CAFB25535}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{CF9DD99E-E0C6-4786-92AE-20EB357BC816}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
FirewallRules: [{DC4A4635-EAA4-4F33-B97E-BC269F06EE26}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe
FirewallRules: [{D74FA844-009A-4421-A5AE-7D02B94EF817}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
FirewallRules: [{06518B57-CE84-4361-B198-6CC3F17ED7DA}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe
FirewallRules: [{9C8FB4B0-968E-427E-A219-21D571CDA34A}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\MobileBackupServer\mobile_backup_server.exe
FirewallRules: [{0FAEB35D-2B02-4287-8F30-44957435D3B0}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\mobile_backup_status_server.exe
FirewallRules: [{672A32DB-138A-4236-8DE2-A2318A85AC4A}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
FirewallRules: [{4301AB74-5E23-408B-A65E-A0AB54733797}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe
FirewallRules: [{C57C51C3-4DA4-4A1D-AA21-C42A83404D38}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\MobileBackupServer\mobile_backup_server.exe
FirewallRules: [{E23D29BF-51F2-4A63-B669-A1791100DD79}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\mobile_backup_status_server.exe
FirewallRules: [{F2B20A5D-92EA-4B90-A577-6A9781297FC3}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
FirewallRules: [{48300242-89F8-4DE9-9C51-B0EF91F266C3}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe
FirewallRules: [{26BC3A00-997B-48C4-B2D9-328E618F9558}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\TrueImage.exe
FirewallRules: [{15F661A4-B53A-4809-BBF6-F2720F720C85}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe
FirewallRules: [{589C5F8F-2047-43E0-988D-FB0C060AFBCD}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageTools.exe
FirewallRules: [{91FD2205-7D7F-4119-BA5F-D6E26C67E1E6}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\TrueImageHome\TrueImageHomeService.exe
FirewallRules: [{B43A801C-0CD8-4D3D-BA03-78D1BF44B43E}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\MediaBuilder.exe
FirewallRules: [{8428F9C3-355F-42C3-B82C-D0FA15D66C54}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\SystemReport.exe
FirewallRules: [{0FDF9F11-1350-4014-88EA-47F22A32193F}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\acronis_drive.exe
FirewallRules: [{37F6D6E4-FBFE-4A24-AE7B-86238D3432B0}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\MobileBackupServer\mobile_backup_server.exe
FirewallRules: [{A23A7D52-D8AA-4A69-A70A-9C34728B36F7}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\mobile_backup_status_server.exe
FirewallRules: [{35B7241A-F96C-4C6E-A0F3-02FB3AFD57C9}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{39B97795-8F06-449B-AB5F-BF7ADB7D5A84}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{B40879A4-AA8B-4A61-9067-B90E39881CF6}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{9C08DBAF-5C35-4CFC-85C8-5FD041214738}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{CB65A6A4-FD00-4210-BFE0-F05BF767B544}] => (Allow) LPort=8298
FirewallRules: [{E0175EF6-AD68-4453-9F7D-6952DBE610B4}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 
==================== Restore Points =========================
 
 
==================== Faulty Device Manager Devices =============
 
Name: SonicWALL Virtual NIC
Description: SonicWALL Virtual NIC
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: SonicWALL
Service: SWVNIC
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (07/08/2017 03:59:34 AM) (Source: SideBySide) (EventID: 35) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Microsoft Office\Office15\lync.exe.Manifest".Error in manifest or policy file "C:\Program Files (x86)\Microsoft Office\Office15\UccApi.DLL" on line 1.
Component identity found in manifest does not match the identity of the component requested.
Reference is UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0".
Definition is UccApi,processorArchitecture="x86",type="win32",version="15.0.0.0".
Please use sxstrace.exe for detailed diagnosis.
 
Error: (07/08/2017 03:15:10 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: esu.exe, version: 1.0.0.0, time stamp: 0x58dac8d5
Faulting module name: KERNELBASE.dll, version: 6.1.7601.23807, time stamp: 0x5915f98e
Exception code: 0xe0434352
Fault offset: 0x0000c54f
Faulting process id: 0x43d4
Faulting application start time: 0x01d2f7b9ed780285
Faulting application path: C:\Program Files (x86)\Garmin\Express SelfUpdater\esu.exe
Faulting module path: C:\Windows\syswow64\KERNELBASE.dll
Report Id: 2cf74103-63ad-11e7-aff1-00224d508698
 
Error: (07/08/2017 03:15:08 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Application: esu.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: System.IO.FileNotFoundException
   at Garmin.Omt.Service.Shared.Overrides+<UpdateDatacenterOverridesAsync>d__61.MoveNext()
   at System.Runtime.CompilerServices.AsyncTaskMethodBuilder.Start[[Garmin.Omt.Service.Shared.Overrides+<UpdateDatacenterOverridesAsync>d__61, ExpressSelfUpdater, Version=1.0.0.0, Culture=neutral, PublicKeyToken=null]](<UpdateDatacenterOverridesAsync>d__61 ByRef)
   at Garmin.Omt.Service.Shared.Overrides.UpdateDatacenterOverridesAsync(Boolean)
   at Garmin.Omt.Service.Shared.Overrides..cctor()
 
Exception Info: System.TypeInitializationException
   at Garmin.Omt.Service.Shared.Overrides.get_OmtBaseUrl()
   at Garmin.Omt.Express.SelfUpdater.Program.RealMain()
   at Garmin.Omt.Express.SelfUpdater.Program.Main(System.String[])
 
Error: (07/08/2017 02:41:50 AM) (Source: System Restore) (EventID: 8193) (User: )
Description: Failed to create restore point (Process = C:\Windows\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation; Description = Scheduled Checkpoint; Error = 0x80070422).
 
Error: (07/07/2017 04:45:36 AM) (Source: SideBySide) (EventID: 35) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Microsoft Office\Office15\lync.exe.Manifest".Error in manifest or policy file "C:\Program Files (x86)\Microsoft Office\Office15\UccApi.DLL" on line 1.
Component identity found in manifest does not match the identity of the component requested.
Reference is UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0".
Definition is UccApi,processorArchitecture="x86",type="win32",version="15.0.0.0".
Please use sxstrace.exe for detailed diagnosis.
 
Error: (07/07/2017 04:16:07 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: esu.exe, version: 1.0.0.0, time stamp: 0x58dac8d5
Faulting module name: KERNELBASE.dll, version: 6.1.7601.23807, time stamp: 0x5915f98e
Exception code: 0xe0434352
Fault offset: 0x0000c54f
Faulting process id: 0x41e4
Faulting application start time: 0x01d2f6f947783579
Faulting application path: C:\Program Files (x86)\Garmin\Express SelfUpdater\esu.exe
Faulting module path: C:\Windows\syswow64\KERNELBASE.dll
Report Id: 8648e1e9-62ec-11e7-aff1-00224d508698
 
Error: (07/07/2017 04:16:07 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Application: esu.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: System.IO.FileNotFoundException
   at Garmin.Omt.Service.Shared.Overrides+<UpdateDatacenterOverridesAsync>d__61.MoveNext()
   at System.Runtime.CompilerServices.AsyncTaskMethodBuilder.Start[[Garmin.Omt.Service.Shared.Overrides+<UpdateDatacenterOverridesAsync>d__61, ExpressSelfUpdater, Version=1.0.0.0, Culture=neutral, PublicKeyToken=null]](<UpdateDatacenterOverridesAsync>d__61 ByRef)
   at Garmin.Omt.Service.Shared.Overrides.UpdateDatacenterOverridesAsync(Boolean)
   at Garmin.Omt.Service.Shared.Overrides..cctor()
 
Exception Info: System.TypeInitializationException
   at Garmin.Omt.Service.Shared.Overrides.get_OmtBaseUrl()
   at Garmin.Omt.Express.SelfUpdater.Program.RealMain()
   at Garmin.Omt.Express.SelfUpdater.Program.Main(System.String[])
 
Error: (07/07/2017 12:58:33 AM) (Source: System Restore) (EventID: 8193) (User: )
Description: Failed to create restore point (Process = C:\Windows\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation; Description = Scheduled Checkpoint; Error = 0x80070422).
 
Error: (07/06/2017 03:44:55 AM) (Source: SideBySide) (EventID: 35) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Microsoft Office\Office15\lync.exe.Manifest".Error in manifest or policy file "C:\Program Files (x86)\Microsoft Office\Office15\UccApi.DLL" on line 1.
Component identity found in manifest does not match the identity of the component requested.
Reference is UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0".
Definition is UccApi,processorArchitecture="x86",type="win32",version="15.0.0.0".
Please use sxstrace.exe for detailed diagnosis.
 
Error: (07/06/2017 03:21:59 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: esu.exe, version: 1.0.0.0, time stamp: 0x58dac8d5
Faulting module name: KERNELBASE.dll, version: 6.1.7601.23807, time stamp: 0x5915f98e
Exception code: 0xe0434352
Fault offset: 0x0000c54f
Faulting process id: 0x5df0
Faulting application start time: 0x01d2f6288d10f7c0
Faulting application path: C:\Program Files (x86)\Garmin\Express SelfUpdater\esu.exe
Faulting module path: C:\Windows\syswow64\KERNELBASE.dll
Report Id: cbe4b17b-621b-11e7-aff1-00224d508698
 
 
System errors:
=============
Error: (06/25/2017 10:54:14 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: The server {ED1D0FDF-4414-470A-A56D-CFB68623FC58} did not register with DCOM within the required timeout.
 
Error: (06/25/2017 10:51:06 PM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk8\DR13.
 
Error: (06/25/2017 10:00:52 PM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk7\DR10.
 
Error: (06/25/2017 10:00:52 PM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk7\DR10.
 
Error: (06/25/2017 10:00:51 PM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk7\DR10.
 
Error: (06/25/2017 10:00:51 PM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk7\DR10.
 
Error: (06/25/2017 10:00:50 PM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk7\DR10.
 
Error: (06/25/2017 09:49:49 PM) (Source: Microsoft-Windows-BitLocker-Driver) (EventID: 24620) (User: NT AUTHORITY)
Description: Encrypted volume check: Volume information on  cannot be read.
 
Error: (06/23/2017 05:13:55 PM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: The Service Control Manager tried to take a corrective action (Restart the service) after the unexpected termination of the Symantec.cloud Endpoint Protection service, but this action failed with the following error: 
An instance of the service is already running.
 
Error: (06/23/2017 05:11:55 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Symantec.cloud Endpoint Protection service terminated unexpectedly.  It has done this 2 time(s).  The following corrective action will be taken in 120000 milliseconds: Restart the service.
 
 
CodeIntegrity:
===================================
  Date: 2017-06-23 22:00:41.546
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\xhcdrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2017-06-23 22:00:41.468
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\xhcdrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2017-05-13 10:28:04.047
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\xhcdrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2017-05-13 10:28:03.984
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\xhcdrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2017-05-13 10:23:47.078
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\xhcdrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2017-05-13 10:23:47.016
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\xhcdrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2017-05-13 10:23:03.016
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\xhcdrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2017-05-13 10:23:02.938
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\xhcdrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2017-05-06 18:41:44.452
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\xhcdrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2017-05-06 18:41:44.390
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\xhcdrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
 
==================== Memory info =========================== 
 
Processor: Intel® Core™ i7-2600K CPU @ 3.40GHz
Percentage of memory in use: 38%
Total physical RAM: 32750.18 MB
Available physical RAM: 20109.98 MB
Total Virtual: 65498.54 MB
Available Virtual: 51992.64 MB
 
==================== Drives ================================
 
Drive c: () (Fixed) (Total:476.84 GB) (Free:275.16 GB) NTFS
Drive d: (New DriveD) (Fixed) (Total:476.94 GB) (Free:73.73 GB) NTFS
Drive u: (Public) (Network) (Total:8303.93 GB) (Free:1923.41 GB) NTFS
Drive v: (Photo) (Network) (Total:8303.93 GB) (Free:1923.41 GB) NTFS
Drive w: (Music) (Network) (Total:8303.93 GB) (Free:1923.41 GB) NTFS
Drive x: (Drobo) (Network) (Total:8303.93 GB) (Free:1923.41 GB) NTFS
Drive y: (Clients) (Network) (Total:8303.93 GB) (Free:1923.41 GB) NTFS
Drive z: (Backup) (Network) (Total:8303.93 GB) (Free:1923.41 GB) NTFS
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (Size: 476.9 GB) (Disk ID: 3AFDD6A1)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=476.8 GB) - (Type=07 NTFS)
 
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 476.9 GB) (Disk ID: 989D8508)
Partition 1: (Not Active) - (Size=476.9 GB) - (Type=07 NTFS)
 
==================== End of Addition.txt ============================

Attached Files


  • 0

#4
RKinner

RKinner

    Malware Expert

  • Expert
  • 19,797 posts
  • MVP
 
Download : ADWCleaner to your desktop.  Make sure you get the correct Download button.  Sometimes the ads on BleepingComputer will mimic the real Download button which should say: Download Now @BleepingComputer
 
NOTE: If using Internet Explorer and you get an alert that stops the program downloading, click on the warning and allow the download to complete.
 
Close  all programs, pause your anti-virus and run AdwCleaner (Vista or Win 7 => right click and Run As Administrator).
 
scan-results.jpg
 
Click on Scan  and follow the prompts. Let it run unhindered. When done, click on the Clean button, and follow the prompts. Allow the system to reboot. You will then be presented with the report. Copy & Paste this report on your next reply.
 
The report will be saved in the C:\AdwCleaner folder.
 
 
 
Junkware-Removal-Tool
 
Please download Junkware Removal Tool to your desktop.  Make sure you get the correct Download button.  Sometimes the ads on BleepingComputer will mimic the real Download button which should say: Download Now @Author's site
  • Pause your anti-virus.  Close all browsers.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.
  •  
     
    If you still get the website blocked warning after the above then:

    Let's run Rogue Killer
     
     
    Portable 64 bits  <==Use this one
     
    Download and Save.
     
     
     
    Right click on the downloaded file (RogueKillerX64.exe or RogueKiller.exe)  and Run As admin
     
    Start Scan
    Start Scan
     
    Will take about 20 minutes to complete.
     
    Open Report
    Export TXT (save it to your desktop as rk) Save
     
    Do not let Rogue Killer remove anything until you hear from me.  Leave Rogue Killer up (but minimized) so you won't have to rescan.
     
    Open rk.txt and copy and paste it to your next Reply. 
     

    • 0






    Similar Topics


    Also tagged with one or more of these keywords: malware, virus

    0 user(s) are reading this topic

    0 members, 0 guests, 0 anonymous users

    As Featured On:

    Microsoft Yahoo BBC MSN PC Magazine Washington Post HP