Unlock: C:\Windows\system32\wuaueng.dll File: C:\Windows\system32\wuaueng.dll CMD: sc start wuauserv HKLM\...\Run: [BdVpnApp] => C:\Program Files\Bitdefender\Bitdefender VPN\BdVpnApp.exe HKLM\...\Run: [CL-25-786B446E-275C-4A7F-BE5E-29564044FED2] => "C:\Program Files\Common Files\Bitdefender\SetupInformation\CL-25-786B446E-275C-4A7F-BE5E-29564044FED2\setuplauncher.exe" /run:Installer.exe /args:"/setup-folder:"CL-25-786B446E-275C-4A7F-BE5E-2956404 (the data entry has 7 more characters). HKLM\...\Policies\Explorer: [HideSCAHealth] 1 REG: reg query "HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender" /s HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION HKU\S-1-5-21-412816286-677371127-1562832458-1001\...\Run: [GoogleChromeAutoLaunch_8463E4E6F536B8D8D1FC6B6ADD3BC0C5] => "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5 HKU\S-1-5-21-412816286-677371127-1562832458-1001\...\Run: [GoogleChromeAutoLaunch_2952BC569372D1E14E2D5D2EA119F0E6] => "C:\Users\Nasir York\AppData\Local\Google\Chrome SxS\Application\chrome.exe" --no-startup-window /prefetch:5 HKU\S-1-5-21-412816286-677371127-1562832458-1001\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\85.0.4183.102\Installer\chrmstp.exe [2020-09-10] (Google LLC -> Google LLC) GroupPolicy: Restriction ? <==== ATTENTION Task: {02443D27-8E80-4036-88C2-C765BD59F9A1} - \ASUS\ASUSUpdateTaskMachineCore -> No File <==== ATTENTION Task: {0655C164-67DD-46E8-9494-0915AAED1236} - \NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} -> No File <==== ATTENTION Task: {08C3CC1F-48C9-42DF-B888-4414684FE749} - \ASUS\RemoteWakeAgent Execute -> No File <==== ATTENTION Task: {0F9798BF-5AD7-4145-8065-E9C87E7D5B1D} - \Opera scheduled Autoupdate 1576754873 -> No File <==== ATTENTION Task: {1046BEF6-BCDB-4CCE-9A6C-9B0B657FE595} - \Adobe Acrobat Update Task -> No File <==== ATTENTION Task: {12111E5C-16BF-4CEB-A23B-03466FBF7E22} - \DropboxUpdateTaskMachineCore -> No File <==== ATTENTION Task: {1DC5A62F-7688-4FC3-87B8-508877D16A16} - \AdobeAAMUpdater-1.0-MicrosoftAccount-ceejust@hotmail.com -> No File <==== ATTENTION Task: {21C57211-8792-45F4-9398-13A7B2FD1E4D} - \ASUS\ASUS DIPAwayMode -> No File <==== ATTENTION Task: {2574549F-267F-4613-9974-0E92A70C89F7} - \ASUS\ASUSUpdateTaskMachineUA -> No File <==== ATTENTION Task: {2595D41E-4D2C-4ACF-8984-2E535BE5A10D} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION Task: {27EE5F7B-7516-41FF-A235-0EBFE77A4717} - \USER_ESRV_SVC_QUEENCREEK -> No File <==== ATTENTION Task: {36C947FD-22FE-4786-B7B8-D242C0AA4979} - \Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 -> No File <==== ATTENTION Task: {3A597984-D942-4829-BD3F-2068AA05D3AC} - \Apple\AppleSoftwareUpdate -> No File <==== ATTENTION Task: {41B1704B-7AF7-46B8-ACC7-03C0EDB7AABA} - \GoogleUpdateTaskUserS-1-5-21-412816286-677371127-1562832458-1001Core -> No File <==== ATTENTION Task: {42DEACA5-BF42-46F6-AFD9-815592BAD50E} - \Adobe Uninstaller -> No File <==== ATTENTION Task: {439948FD-38DD-41C9-A515-EE39BD2D521E} - \BlueStacksHelper -> No File <==== ATTENTION Task: {47DFA091-12DF-4E94-824E-57428ED0BCCA} - \GoogleUpdateTaskUserS-1-5-21-412816286-677371127-1562832458-1001UA -> No File <==== ATTENTION Task: {4A51E577-D219-4FD7-9638-A1A3D182297A} - \ASUS\P508PowerAgent_sdk -> No File <==== ATTENTION Task: {4D71BF85-19BF-4A05-A66B-BC11461B1536} - \User_Feed_Synchronization-{B290DBA9-18E3-4ED0-9D2F-E1631691DB35} -> No File <==== ATTENTION Task: {4EF358B1-FF38-4429-868B-5089880C39D9} - \Avira_Security_Update -> No File <==== ATTENTION Task: {4F4A521E-3784-4E7C-A54B-73BD8B8C235D} - \OneDrive Standalone Update Task-S-1-5-21-412816286-677371127-1562832458-1010 -> No File <==== ATTENTION Task: {50D8A60A-B2DF-4623-A543-D5D53683C9B7} - \avast! Windows 10 Start Menu helper -> No File <==== ATTENTION Task: {593F6AF6-E1E9-450B-9EF7-13ED11849B77} - \CAM -> No File <==== ATTENTION Task: {5BB75B78-3DEC-4A08-B9D4-AEB479CE0BCA} - \ASUS\Ez Update -> No File <==== ATTENTION Task: {5BFC000C-E4A5-4544-BF8E-41937419FE3D} - \ASUS\USB 3.0 Boost Service -> No File <==== ATTENTION Task: {5CE6B8BB-BDE1-4C17-A87C-A756BEAEB0F8} - \ASUS\ArmourySocketServer -> No File <==== ATTENTION Task: {5E32FA34-B9F7-4ACF-944F-FE651626415B} - \NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} -> No File <==== ATTENTION Task: {65F2B608-9B5D-4064-9E65-D83DF0787E9E} - \NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} -> No File <==== ATTENTION Task: {678E46CB-7C8E-41E6-8A95-95C9F8D4488D} - \GyazoUpdateTaskMachine -> No File <==== ATTENTION Task: {6AEB6C3A-46A8-4622-9463-C2F30EE6ABB3} - \ASUS\Framework Service -> No File <==== ATTENTION Task: {6DABF057-4641-49C1-9899-B8754988137F} - \AdobeAAMUpdater-1.0-DESKTOP-DTOHOOC-Nasir York -> No File <==== ATTENTION Task: {714CB444-815B-4337-A258-0405BDFC4269} - \GyazoUpdateTaskMachineDaily -> No File <==== ATTENTION Task: {71F857FB-3485-4959-8BF0-5F837AF27086} - \DropboxUpdateTaskMachineUA -> No File <==== ATTENTION Task: {77C644E1-D8E4-4A70-B10C-57779DBE9916} - \NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} -> No File <==== ATTENTION Task: {7CA2624A-CCD2-4501-A4F2-50A8DCC2E767} - \NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} -> No File <==== ATTENTION Task: {9C841347-84DC-43E1-A316-61D9A8C64918} - \NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} -> No File <==== ATTENTION Task: {A2229CF2-762D-44BC-9F0C-6F0BF66A8005} - \ASUS\GpuFanHelper -> No File <==== ATTENTION Task: {ACC8B202-AEF5-46D9-9947-C1F0CB2C12DB} - \NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} -> No File <==== ATTENTION Task: {AFD54B92-18E3-4D56-853B-7C439EEBA02E} - \ASUS\Push Notice Server Execute -> No File <==== ATTENTION Task: {B656939C-E37D-4A40-9AC6-EB2AA7EC9C15} - \NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} -> No File <==== ATTENTION Task: {C161F3F9-3343-4892-A82B-B233761AE765} - \ASUS\ASUS Media Streamer DMR -> No File <==== ATTENTION Task: {C64A0226-933F-4386-AA98-A4F73D3B5D74} - \AVG_SYS_TASK_0615piz -> No File <==== ATTENTION Task: {C790CDD9-3C0B-4E8A-AF45-E1E67A7D36E0} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {C792B4C1-8EFA-4F9B-8E95-575080A6F7DF} - \Adobe Flash Player PPAPI Notifier -> No File <==== ATTENTION Task: {C7CC324F-D821-4C23-866C-4FD39AC85EF9} - \ASUS\ASUS AISuiteIII -> No File <==== ATTENTION Task: {C8DA042E-9920-4547-A363-7490216C8566} - \NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} -> No File <==== ATTENTION Task: {C90D22C1-31D4-47CD-AE57-D05F3C8FD951} - \MicrosoftEdgeUpdateTaskMachineCore -> No File <==== ATTENTION Task: {CA03C619-D818-485E-A0BA-BF0B0A789496} - \NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} -> No File <==== ATTENTION Task: {D319C04D-CA23-48D1-819C-E3B3F41768E8} - \AviraSystemSpeedupUpdate -> No File <==== ATTENTION Task: {D857C645-CDC5-467A-B8D4-21FBEAB54349} - \AVG_SYS_TASK_0615piz_DELETE -> No File <==== ATTENTION Task: {DDC035AF-43C1-4204-A507-DD7EC9271BEC} - \{1260EC0B-316C-479A-A0F7-D86CBFD9E973} -> No File <==== ATTENTION Task: {DE71B6B2-6239-41B6-B984-19C5E4A9E9EB} - \AdobeGCInvoker-1.0 -> No File <==== ATTENTION Task: {DFEECB4B-3CAF-40A9-A70B-A2BFF0E48726} - \Adobe Flash Player Updater -> No File <==== ATTENTION Task: {E2937634-206E-448C-9988-C9D8D66527A6} - \Intel\Intel Telemetry 2 -> No File <==== ATTENTION Task: {E33DBBCB-F6CA-4B54-BD54-5A66EE74E3C7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2016-09-15] (Google Inc -> Google Inc.) Task: {E5B46CDB-D1A7-41E2-B6FA-F516A06828DB} - \ProtonVPN Update -> No File <==== ATTENTION Task: {E7062269-51BE-44AA-85FA-64D519E0F7E0} - System32\Tasks\Microsoft\Windows\Application Experience\StartupCheckLibrary => rundll32.exe StartupCheckLibrary.dll,DllMainRunLibrary <==== ATTENTION Task: {E7CE0E71-48BC-4B4F-BDAD-DC4518533D75} - \AsushomeCloudStart -> No File <==== ATTENTION Task: {E85D5E25-2002-4CD1-8EA0-15C28378B806} - \MSIAfterburner -> No File <==== ATTENTION Task: {EDC3AFFA-C7AB-4945-9E0B-DE19277669C9} - \Opera scheduled assistant Autoupdate 1576754934 -> No File <==== ATTENTION Task: {F25A667C-8EE0-45EB-AA6B-BEFE29FADF6E} - \S-1-5-21-412816286-677371127-1562832458-1001\DataSenseLiveTileTask -> No File <==== ATTENTION Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = BHO: Bitdefender Trackers Blocking -> {159ff5d5-55f1-4d2f-b706-767a55f77abb} -> C:\Program Files\Bitdefender\Bitdefender Security\bdtbie.dll => No File BHO: Bitdefender Wallet -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender Security\pmbxie.dll => No File BHO-x32: Bitdefender Trackers Blocking -> {159ff5d5-55f1-4d2f-b706-767a55f77abb} -> C:\Program Files\Bitdefender\Bitdefender Security\antispam32\bdtbie.dll => No File BHO-x32: Bitdefender Wallet -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender Security\Antispam32\pmbxie.dll => No File BHO-x32: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\ssv.dll [2017-12-23] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\jp2ssv.dll [2017-12-23] (Oracle America, Inc. -> Oracle Corporation) Toolbar: HKLM - Bitdefender Wallet - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender Security\pmbxie.dll No File Toolbar: HKLM-x32 - Bitdefender Wallet - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender Security\Antispam32\pmbxie.dll No File FF HKLM\...\Firefox\Extensions: [bdwtwe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff.xpi => not found FF HKLM\...\Firefox\Extensions: [bdtbe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi => not found FF HKLM-x32\...\Firefox\Extensions: [bdwtwe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff.xpi => not found FF HKLM-x32\...\Firefox\Extensions: [bdtbe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi => not found FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> F:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [No File] FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> F:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [No File] S2 BDAuxSrv; "C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe" "settings/services/configs/bdauxsrv_config.json" [X] S2 BDProtSrv; "C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe" "settings\services\configs\bdprotsrv_config.json" [X] S2 BdVpnService; "C:\Program Files\Bitdefender\Bitdefender VPN\bdvpnservice.exe" "service" [X] S2 ProductAgentService; "C:\Program Files\Bitdefender Agent\ProductAgentService.exe" [X] S2 UPDATESRV; "C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe" /service [X] S2 VSSERV; "C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe" "settings/services/configs/bdshieldsrv_config.json" [X] R1 atc; C:\WINDOWS\System32\DRIVERS\atc.sys [2113184 2020-06-18] (Bitdefender SRL -> Bitdefender S.R.L. Bucharest, ROMANIA) S2 BdDci; \SystemRoot\system32\DRIVERS\bddci.sys [X] S0 Gemma; system32\DRIVERS\gemma.sys [X] U4 napagent; no ImagePath S3 VBAudioVMVAIOMME; \SystemRoot\System32\drivers\vbaudio_vmvaio64_win10.sys [X] 2020-09-11 19:04 - 2020-09-11 19:04 - 000121408 _____ C:\ProgramData\agent.1599865464.bdinstall.v2.bin 2020-09-11 19:04 - 2020-09-11 19:04 - 000000000 ____D C:\Program Files\Bitdefender Agent 2020-09-11 19:03 - 2020-09-11 19:03 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job 2020-09-11 16:40 - 2020-09-11 16:40 - 012444368 _____ C:\Users\Nasir York\Downloads\bitdefender_online (2).exe 2020-09-11 16:40 - 2020-09-11 16:40 - 012444368 _____ C:\Users\Nasir York\Downloads\bitdefender_online (1).exe 2020-09-11 16:17 - 2020-09-11 16:17 - 000402788 _____ C:\ProgramData\cl.uninstall.1599855423.bdinstall.v2.bin 2020-09-11 16:12 - 2020-09-11 16:12 - 012444368 _____ C:\Users\Nasir York\Downloads\bitdefender_online.exe 2020-09-11 16:12 - 2020-07-28 14:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender VPN AV: Bitdefender Antivirus (Enabled - Up to date) {0E17DB7D-A20F-62CE-B95B-17DB0CDFE318} FW: Bitdefender Firewall (Disabled) {362C5A58-E860-6396-9204-BEEEF20CA463} Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.13231.20126 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.13231.20126 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0409-1000-0000000FF1CE}) (Version: 16.0.13231.20126 - Microsoft Corporation) Hidden CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{0215A4C0-5431-4FD0-9B06-46589B5C4939}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{048ED0E0-12CF-4C0F-9FFA-947C2FBE8C8E}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{071339A1-1946-44B2-B63E-50459B15DB86}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{073CB204-6B29-46FC-AB98-451F1D068741}\InprocServer32 -> F:\Program Files\Autodesk\Inventor 2019\Bin\TestServer.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{08A60FF7-BB37-44F4-9759-0ADA6C7B9CC9}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{0B38CACA-3D3C-48EA-BEB5-7D95F4F6EE15}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{0C3393F8-94F5-4B79-8C01-49A2D0CC0FE9}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{0D555CE0-304A-47A6-858B-B145209A3982}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{12545889-6D32-4424-9967-1E1D7BD1F809}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{13009989-EFB5-48C9-8BD2-943E0392BD71}\InprocServer32 -> F:\Program Files\Autodesk\Inventor 2019\Bin\RxAppCtrl.Ocx => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{14679E3B-C952-4998-8E13-4B1286E6DD99}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{1481B385-759A-4B00-9257-E96357563999}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{162EF0A1-5A33-46F2-ACCF-CA388B084A09}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Nasir York\AppData\Local\Microsoft\OneDrive\19.232.1124.0005\amd64\FileSyncShell64.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{1D625598-C876-4C51-8EF5-F9D8F96F62AA}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{1D6DFD6A-9E16-435A-9327-6FFEC6BA372F}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{1E5724EA-3423-4BD3-ABD6-46E650D2DC66}\InprocServer32 -> AcETransmit.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{1E8A29BA-827D-4031-A4A3-AE7999B402F6}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{1EA072EE-57FD-495E-889C-8243C3BDBDBC}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{1FD7F53F-7ED5-439C-9A77-A3821CD09E98}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{20E47D5B-529A-45BD-8E77-BF1A3064A008}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{2709544A-5B24-4F9F-A5DA-CEC7297D3A4E}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{2BCA857B-A18B-4AFA-B183-CC0E49C12058}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{2C74F89E-7421-46B4-BA54-F86F1BD9F237}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{2C7D1157-7D50-4A88-9777-5EBBA3189AB8}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{3497C2EC-5684-4B21-AF74-F6760E0221DC}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{38C8B14E-7879-4DA9-8C3F-8CAAC359293A}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{3FC94EB5-AEBD-4f3f-A2A4-B6CE57113C01}\InprocServer32 -> F:\Program Files\Autodesk\Inventor 2019\Bin\RxAppDocView.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{3FCEB42C-9B98-486A-BED7-FD7F3ADB7291}\InprocServer32 -> AcETransmit.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{40770568-0D5E-49D4-BE47-BC47A4F0B0A4}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{44A52280-AE56-490D-890C-89FB7279ED6B}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{46C56738-39C6-4240-8B9B-008CCD769A84}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{47179DDE-10AC-4737-97C9-8CE5379343EA}\InprocServer32 -> AcETransmit.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{475C7B4A-6964-4F9E-9708-05A16EAC31D0}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{48270F9E-CCF6-4C79-B6FF-267C960E6425}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{48FEFCD7-5D7C-4E4A-9F11-60E69A31D4B1}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{49998808-648A-4A9C-A7A5-B1672775D9AB}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{4A756F5F-CBA4-428B-B17F-AF80C0C8502D}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{4B40437B-8972-4444-BBE3-1588FF55F203}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{4BD03680-3C0F-4501-AFF7-3D008586917F}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{4C80573A-9150-11d2-B772-0060B0F159EF}\InprocServer32 -> F:\Program Files\Autodesk\Inventor 2019\Bin\RxAppDocView.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{4E6F2E83-E7F0-4333-9772-875EB733C820}\InprocServer32 -> F:\Program Files\Autodesk\Inventor 2019\Bin\RxTest.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{5544903C-2CCC-487C-91BB-F310B72A8E9B}\InprocServer32 -> AcETransmit.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{59A224A2-BEF8-4C89-96E0-83A5411ABB6C}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{622F6193-E4DD-46E6-BC66-2ED88E9FD28D}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{6451051B-AD22-4C6A-ACCE-013A0E1DDBC3}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{64B99FDB-1D85-447F-98C7-569DBDA723DB}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{6BCE6F6E-C050-4F39-BD98-E2743949F724}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{6F56D7C9-18DD-4C15-9FA8-C54E3610EC40}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{6FDE7A70-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> F:\Program Files\Autodesk\Inventor 2019\Bin\DtBridge.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{6FDE7A71-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> F:\Program Files\Autodesk\Inventor 2019\Bin\DtBridge.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{6FDE7A72-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> F:\Program Files\Autodesk\Inventor 2019\Bin\DtBridge.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{6FDE7A73-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> F:\Program Files\Autodesk\Inventor 2019\Bin\DtBridge.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{6FDE7A74-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> F:\Program Files\Autodesk\Inventor 2019\Bin\DtBridge.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{6FDE7A77-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> F:\Program Files\Autodesk\Inventor 2019\Bin\DtCp.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{70DBCAE8-8C2B-450C-9E1D-43E4686C6512}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{713C0E8A-5AE8-4695-B442-5ED6C4FE5C42}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{7293E009-3015-4AD3-96EC-D42C36B5FCE3}\InprocServer32 -> AcETransmit.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{72EFC580-D085-4B81-8C55-26A79E445338}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{750AEC19-2E4C-4ED9-9B9F-F9CAFCD060F3}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{794199C5-827C-41C8-8CB2-3A1EA056AF5E}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{798391FE-4AF2-4851-9DDA-1F0D70C02A9E}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Nasir York\AppData\Local\Microsoft\OneDrive\19.232.1124.0005\amd64\FileSyncShell64.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{7BA16B3F-1AB3-4BD7-B959-52C4B8504EE9}\InprocServer32 -> AcInetUI.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{7C239DAB-BC87-45F3-B7B1-FCC1541A235B}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{81D07C3D-0350-11D3-B7C2-0060B0EC020B}\InprocServer32 -> F:\Program Files\Autodesk\Inventor 2019\Bin\RxAppCtrl.Ocx => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Nasir York\AppData\Local\Microsoft\OneDrive\19.232.1124.0005\amd64\FileSyncShell64.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{834CE679-2E47-49DE-9E41-FEC87E9192EB}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{846217D0-8954-11D2-8DCD-0060B0C32531}\InprocServer32 -> F:\Program Files\Autodesk\Inventor 2019\Bin\UCxTextBtn.Ocx => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{846217D1-8954-11D2-8DCD-0060B0C32531}\InprocServer32 -> F:\Program Files\Autodesk\Inventor 2019\Bin\UCxTextBtn.Ocx => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{849AFB5B-D6C9-4924-A712-F7118FF9611F}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{85452F88-5071-492E-B850-2E3C586DCBD8}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{87F5CF8F-A06D-498F-A05F-E520E6B570DB}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{89F0FC31-3B1D-494B-A75B-6BD4FA527B8A}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{8AA16DFC-DFC6-4B51-8FA2-A5D812BE33BF}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{8C23B656-4E6E-4B45-9920-9617168D39A3}\InprocServer32 -> F:\Program Files\Autodesk\Inventor 2019\Bin\TestServer.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{8ED07FEF-E1B0-4CC3-B2BA-D354828AB952}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{988F4102-E6E3-4282-ACAC-55270827F2A8}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{9906CDFC-DB2C-4126-9422-13139B148495}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{9A21C6C5-27FC-4442-8590-575E7AFD73BB}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{9ECF83FB-23C5-43B6-83DE-93CFBDD74D4A}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{A58F47CC-FF65-4152-B0B1-666C643A5BFC}\InprocServer32 -> AcETransmit.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{A6A3D586-44CF-44C2-A92C-620BB713B4F2}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{ABBE3F83-D585-4A50-9B69-198B0F566F2E}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{AC5CECFA-F03A-41D2-A89C-704C44935941}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{B1560245-190E-4BBD-81DF-9B642D0E5325}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{B2A579E0-A797-40B1-8AEE-A8F6404719F8}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{B47196BC-D4AB-41BB-A771-543D67CFC9F5}\InprocServer32 -> AcETransmit.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{B53CEF4B-1A13-49DE-BBC5-A7100FB2F38C}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{B5EE2B68-9A23-4BCD-BB77-FEA6DFB24DD6}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{B6B5DC40-96E3-11d2-B774-0060B0F159EF}\localserver32 -> F:\Program Files\Autodesk\Inventor 2019\Bin\Inventor.exe /Automation => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{B80687F9-FA4C-4735-9DC4-E5715F2BC698}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{BAE5802A-CF21-4F9C-AE04-D98F4036AC31}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{BBF6A206-CB04-479D-96AE-349E1E83319A}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{BC71DEA1-D6FB-48B8-AB06-D151C81BBCDD}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{BF224DC3-B602-4EEE-BFE9-9E4E0AED6837}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{BF4CC07E-E9BB-40D6-873F-855B211033B9}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{C061C82C-D041-4214-BB07-B608107CEFCB}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{C2D4ACCC-A3D1-4A0A-AD59-0DD8BA3D5EE1}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{C343ED84-A129-11d3-B799-0060B0F159EF}\InprocServer32 -> F:\Program Files\Autodesk\Inventor 2019\Bin\RxApprenticeServer.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{C8C18F89-794D-466B-8B97-95634D9890EF}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{C8EC7647-1E79-4F13-81D7-2EED803D0D22}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{C92F8F8C-8B2C-11d4-B872-0060B0EC020B}\InprocServer32 -> F:\Program Files\Autodesk\Inventor 2019\Bin\DtBridge.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{CC23CA32-9892-4FBA-A108-FE31CA0F35A6}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{CD865713-70D6-4E15-BB7B-9B99AD9DEB85}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{D56F5AB3-9C4D-4F1A-A851-A671D9FE8C22}\InprocServer32 -> AcETransmit.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{D66873EA-AAE5-41CC-8DD2-8CE3228E9F89}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{D86B6C47-11F2-4D95-B635-EA575F0892FC}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{DA1F437C-9BD9-11d4-B87C-0060B0EC020B}\InprocServer32 -> F:\Program Files\Autodesk\Inventor 2019\Bin\DtBridge.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{DB207560-8449-4FAF-BDC2-61676EB012D4}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{DB5D476B-3FF4-4E9D-A606-1E2B473BE571}\InprocServer32 -> F:\Program Files\Autodesk\Inventor 2019\Bin\AcInetUI.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{DE74F5AD-DA2F-429F-BAF9-850A2808D585}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{DF6525C2-6358-4B07-813D-708120C5FE1A}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{E177A457-9EAA-43C3-A3CE-84874A28F6CA}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{E1C85E9F-60B2-4007-80C3-2C5E09474C3B}\InprocServer32 -> F:\Program Files\Autodesk\Inventor 2019\Bin\RxInventorUtilities.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{E29F6C45-6927-4508-8F3F-34105FD3FC5F}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{E4222C78-3670-4BB1-9AD4-7D8F3E581F2D}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{E5B0515D-48D2-4F04-906D-0192ED65A2DD}\InprocServer32 -> F:\Program Files\Autodesk\Inventor 2019\Bin\TestServer.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{E70DE962-842A-4488-9481-1D0FD72A020F}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{E9C07CEC-7B82-49E4-BBA2-7533B88E9D64}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{EA34A0C0-5CE7-4701-A6FA-117D25CD5EBB}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{EF01D98A-747B-4522-AD70-991B90855DBF}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{F196F03F-651A-43AF-BE34-D11942F24445}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{F2D4F4E5-EEA1-46FF-A83B-A270C92DAE4B}\InprocServer32 -> F:\Program Files\Autodesk\Inventor 2019\Bin\DTInterop.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{F2DB0EE3-7137-4CB0-8349-483C4FF2143A}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{F40E2FF0-4D77-40B2-9A44-A3AEECCE8EFF}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{F5522F0C-962A-48AC-9992-E81B07628F1F}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{F61064CC-DBFB-47ee-9BC8-CA5A1CBDF0DA}\InprocServer32 -> F:\Program Files\Autodesk\Inventor 2019\Bin\InvResc.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{F78DCF7C-043D-45FC-9D21-676FC307BA3F}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{F868EAEC-1B73-4F5E-BA73-90EBA94E75BE}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{FA97F7A7-FD19-4D55-ABF2-CFEFFF777426}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{FB469644-3F14-4403-ACCA-6B13486FF7BD}\localserver32 -> F:\Program Files\Autodesk\Inventor 2019\Bin\InvTXTStack.exe /Automation => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{FD51ED8A-D518-4554-B236-B6E9D234FD03}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{FD703B01-4362-423E-9BDB-91BDCB16C1C9}\InprocServer32 -> F:\Program Files\Autodesk\Inventor 2019\Bin\DTInterop.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{FE054BB2-AF94-40AC-88AA-2F59F7018B1D}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{FE317223-8EDE-4684-B424-E48B9EA90220}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-412816286-677371127-1562832458-1001_Classes\CLSID\{FE718E8F-C3AA-4F30-9103-432450CF1DA1}\InprocServer32 -> axdb.dll => No File ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => -> No File ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => -> No File ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => -> No File ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => -> No File ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => -> No File ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => -> No File ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> No File ContextMenuHandlers3: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> No File ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> No File ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => -> No File ContextMenuHandlers6_S-1-5-21-412816286-677371127-1562832458-1001: [InventorMenu] -> {6FDE7A70-351B-11d6-988B-0010B57A8BB7} => F:\Program Files\Autodesk\Inventor 2019\Bin\DtBridge.dll -> No File AlternateDataStreams: C:\ProgramData\Reprise:jhqduwvxlctbqqijsf`usjbm`pgyjhinhqhifh [0] AlternateDataStreams: C:\ProgramData\Reprise:jhqduwvxlctbqqijsf`usjbm`pgyjhiqhnhm [0] AlternateDataStreams: C:\ProgramData\Reprise:jhqduwvxlctbqqijsf`usjbm`pgyjhjhhlik [0] AlternateDataStreams: C:\Users\Nasir York\Application Data:00e481b5e22dbe1f649fcddd505d3eb7 [394] AlternateDataStreams: C:\Users\Nasir York\Desktop\Twitch.lnk:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\Nasir York\Downloads\OriginThinSetup.exe:SmartScreen [7] AlternateDataStreams: C:\Users\Nasir York\AppData\Roaming:00e481b5e22dbe1f649fcddd505d3eb7 [394] HKU\S-1-5-21-412816286-677371127-1562832458-1001\Software\Classes\regfile: regedit.exe "%1" <==== ATTENTION HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" FirewallRules: [{6C85886A-C2D2-4451-89A6-D9DD8491538E}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe => No File FirewallRules: [{3E7FAE9A-D542-4EC4-BFC8-BA127B08C939}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe => No File FirewallRules: [{6AD53E49-3B21-4776-B54B-02E8F608C385}] => (Allow) F:\Program Files (x86)\Tom Clancy's Rainbow Six Siege\RainbowSix.exe => No File FirewallRules: [{19157D2D-30EA-497C-8431-3E0A839758D9}] => (Allow) F:\Program Files (x86)\Tom Clancy's Rainbow Six Siege\RainbowSix.exe => No File FirewallRules: [{7317925F-42FC-4612-9F6A-579C7A97F732}] => (Allow) F:\Program Files (x86)\Tom Clancy's Rainbow Six Siege\RainbowSixGame.exe => No File FirewallRules: [{671D1596-419B-4F3C-8BF9-187799E11ED1}] => (Allow) F:\Program Files (x86)\Tom Clancy's Rainbow Six Siege\RainbowSixGame.exe => No File CMD: mkdir C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer CMD: mkdir C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database CMD: DISM /Online /Cleanup-Image /RestoreHealth CMD: SFC /scannow CMD: findstr /c:"[SR]" \windows\logs\cbs\cbs.log CMD: FOR /F "usebackq delims==" %i IN (`wevtutil el`) DO wevtutil cl "%i" Reboot: