Jump to content

Ran Malwarebytes and quarantined the list, but now the internet won't run


Recommended Posts

  • Replies 68
  • Created
  • Last Reply

Top Posters In This Topic

Hello and post-32477-1261866970.gif

 

P2P/Piracy Warning:

 

If you're using Peer 2 Peer software such as uTorrent, BitTorrent or similar you must either fully uninstall them or completely disable them from running while being assisted here.Failure to remove or disable such software will result in your topic being closed and no further assistance being provided.If you have illegal/cracked software, cracks, keygens etc. on the system, please remove or uninstall them now and read the policy on Piracy.

 

Post the recent log from Malwarebytes:

 


Open Malwarebytes
Click on the History tab > Application Logs.
Double click on the scan log which shows the Date and time of the scan just performed.
Click 'Copy to Clipboard'
Paste the contents of the clipboard into your reply.

 

Next,

 

Download Farbar Recovery Scan Tool and save it to your desktop.

 

Note: You need to run the version compatible with your system (32 bit or 64 bit). If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.


Double-click to run it. When the tool opens click Yes to disclaimer.
Press Scan button.
It will make a log (FRST.txt) in the same directory the tool is run. Please copy and paste it to your reply.
The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.

 

Kevin...

Link to post
Share on other sites

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 9/16/2014
Scan Time: 10:14:22 PM
Logfile:
Administrator: Yes

Version: 2.00.2.1012
Malware Database: v2014.09.17.01
Rootkit Database: v2014.09.15.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Self-protection: Disabled

OS: Windows 8.1
CPU: x64
File System: NTFS
User: Jonathan

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 773173
Time Elapsed: 50 min, 38 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 3
PUP.Optional.Amonetize, C:\Windows\Microsoft\SystemUpdatekb70007\WindowsUpdater.exe, 2748, Delete-on-Reboot, [ad0844aaa2d9f73f8b35019cb948a15f]
PUP.Optional.MultiPlug.A, C:\ProgramData\Excellent4App\SN.Booster\SN.Booster.exe, 4688, Delete-on-Reboot, [c1f4ec02f487f44214f04df51fe25ea2]
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\privoxy.exe, 3576, Delete-on-Reboot, [cce9915d6d0efc3ae4224a9b30d29d63]

Modules: 1
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\mgwz.dll, Delete-on-Reboot, [cce9915d6d0efc3ae4224a9b30d29d63],

Registry Keys: 9
PUP.Optional.Amonetize, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SystemUpdatekb70007, Quarantined, [ad0844aaa2d9f73f8b35019cb948a15f],
PUP.Optional.Sanbreel.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{2c976a7f-dbdc-4756-870f-f6d183fe7a7e}Gw64, Quarantined, [13a241add5a648ee21863bcf3fc41ae6],
PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}, Quarantined, [387d03eb710a2c0a65d9ab65c63db14f],
PUP.Optional.Amonetize, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{AEB719FD-EDB0-43E9-B524-90F97C1E6499}, Quarantined, [85300fdf4338af871e79a464966d619f],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{D995FDFE-8B4E-0DAF-A99F-88D7D08A338A}, Quarantined, [d8dd6589572496a099578d78897cb34d],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\CLSID\{D995FDFE-8B4E-0DAF-A99F-88D7D08A338A}, Quarantined, [d8dd6589572496a099578d78897cb34d],
PUP.Optional.MultiPlug.A, HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{D995FDFE-8B4E-0DAF-A99F-88D7D08A338A}, Quarantined, [d8dd6589572496a099578d78897cb34d],
PUP.Optional.MultiPlug.A, HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{D995FDFE-8B4E-0DAF-A99F-88D7D08A338A}, Quarantined, [d8dd6589572496a099578d78897cb34d],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{D995FDFE-8B4E-0DAF-A99F-88D7D08A338A}, Quarantined, [d8dd6589572496a099578d78897cb34d],

Registry Values: 16
PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}, Mysearchdial, Quarantined, [387d03eb710a2c0a65d9ab65c63db14f]
PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY|AppPath, C:\Program Files (x86)\Mysearchdial\1.8.29.0\, Quarantined, [4b6aec02205bb482e4486dfd70945ea2]
PUP.Optional.FirstSeenToday.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|fst_us_90, Quarantined, [9d18e30ba8d3ee4841f35ec3b44fb749],
PUM.Bad.Proxy, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|ProxyServer, http=127.0.0.1:8118;https=127.0.0.1:8118, Quarantined, [f2c397574e2ded49adeb18f0df2405fb]
PUM.Bad.Proxy, HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|ProxyServer, http=127.0.0.1:8118;https=127.0.0.1:8118, Quarantined, [7c3924ca0f6c0432534533d54db61ae6]
PUM.Bad.Proxy, HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|ProxyServer, http=127.0.0.1:8118;https=127.0.0.1:8118, Quarantined, [268fffefe09b62d4a7f13acea3602dd3]
PUM.Bad.Proxy, HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|ProxyServer, http=127.0.0.1:8118;https=127.0.0.1:8118, Quarantined, [f9bc5b933942a78f7a1e8286fa09ae52]
PUP.Optional.QuickStart.A, HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MOZILLA\EXTENDS|appid, quick_start@gmail.com, Quarantined, [07ae5797770439fdbd1b987acc37fa06]
PUM.Bad.Proxy, HKU\S-1-5-21-1222004918-1017807200-348020018-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|ProxyServer, http=127.0.0.1:8118;https=127.0.0.1:8118, Quarantined, [c0f5ea044e2d1c1a35639078cf347c84]
PUM.Bad.Proxy, HKU\S-1-5-21-1222004918-1017807200-348020018-1006-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|ProxyServer, http=127.0.0.1:8118;https=127.0.0.1:8118, Quarantined, [783d638ba2d93ef811878088d330b749]
PUM.Bad.Proxy, HKU\S-1-5-21-1222004918-1017807200-348020018-1007-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|ProxyServer, http=127.0.0.1:8118;https=127.0.0.1:8118, Quarantined, [4a6b40ae3942c96d494fb751808349b7]
PUM.Bad.Proxy, HKU\S-1-5-21-1222004918-1017807200-348020018-1008-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|ProxyServer, http=127.0.0.1:8118;https=127.0.0.1:8118, Quarantined, [8b2acd21d8a3d165bddb30d8e51e34cc]
PUM.Bad.Proxy, HKU\S-1-5-21-1222004918-1017807200-348020018-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|ProxyServer, http=127.0.0.1:8118;https=127.0.0.1:8118, Quarantined, [1b9ada14304bfe383464f315020157a9]
PUM.Bad.Proxy, HKU\S-1-5-21-1222004918-1017807200-348020018-1010-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|ProxyServer, http=127.0.0.1:8118;https=127.0.0.1:8118, Quarantined, [516405e9a1da1125b4e4b15718eb2ad6]
PUM.Bad.Proxy, HKU\S-1-5-21-1222004918-1017807200-348020018-1011-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|ProxyServer, http=127.0.0.1:8118;https=127.0.0.1:8118, Quarantined, [3184be3036455ed8bedac444cf3420e0]
PUM.Bad.Proxy, HKU\S-1-5-21-1222004918-1017807200-348020018-1013-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|ProxyServer, http=127.0.0.1:8118;https=127.0.0.1:8118, Quarantined, [3085e5092f4caa8c9efa927639ca9967]

Registry Data: 1
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Good: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Bad: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Replaced,[8134d11d8bf088ae10b7c040cd38de22]

Folders: 9
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy, Delete-on-Reboot, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\developer-manual, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\faq, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\images, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\templates, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.SNBooster.A, C:\ProgramData\Excellent4App\SN.Booster, Delete-on-Reboot, [d3e24ba3d4a79b9b332e33b67a88837d],
PUP.Optional.SNBooster.A, C:\ProgramData\Excellent4App\SN.Booster\86014281, Quarantined, [d3e24ba3d4a79b9b332e33b67a88837d],

Files: 83
PUP.Optional.Amonetize, C:\Windows\Microsoft\SystemUpdatekb70007\WindowsUpdater.exe, Delete-on-Reboot, [ad0844aaa2d9f73f8b35019cb948a15f],
PUP.Optional.MultiPlug.A, C:\ProgramData\Excellent4App\SN.Booster\SN.Booster.exe, Delete-on-Reboot, [c1f4ec02f487f44214f04df51fe25ea2],
Trojan.SProtector, C:\Program Files (x86)\SN_x64.Booster, Quarantined, [10a58d61344751e5bb64c4e6ae538c74],
PUP.Optional.Excellent4App, C:\$Recycle.Bin\S-1-5-21-1222004918-1017807200-348020018-1002\$RTEO7QU.exe, Quarantined, [9d18ec02f6855adc7add444a7d8439c7],
PUP.Optional.Amonetize, C:\Users\Jonathan\AppData\Local\Temp\MsiToExe.SetupExtension.msi, Quarantined, [a411ae400972d363c9f7e8b521e07888],
PUP.Optional.WiseEnhance.A, C:\Users\Jonathan\AppData\Local\Temp\is478594152\108735018_stp\setup_wiseenhance.exe, Quarantined, [bcf9e30bdd9e2214348613cc9f6543bd],
PUP.Optional.Amonetize, C:\Users\Jonathan\Downloads\Backyard Soccer   Backyard Bas Downloader__3687_i844958192_il4063704.exe, Quarantined, [02b3db13215a95a1c01b4e5f0ff202fe],
PUP.Optional.Softonic.A, C:\Users\Jonathan\Downloads\SoftonicDownloader_for_harry-potter-and-the-half-blood-prince.exe, Quarantined, [773efef07b0073c3d85ccc64e819b24e],
PUP.Optional.MaxSetup, C:\Users\Jonathan\Downloads\CR_Downloader_for_1964.exe, Quarantined, [0baa2ec09cdf191d0f4d3da2f41058a8],
PUP.Optional.MaxSetup, C:\Users\Jonathan\Downloads\CR_Downloader_for_mario-party.exe, Quarantined, [b401b5395a217db93824c01fa262e51b],
PUP.Optional.MaxSetup, C:\Users\Jonathan\Downloads\CR_Downloader_for_super-mario-world.exe, Quarantined, [704511ddbcbfc4721f3d538c15efc838],
PUP.Optional.Amonetize, C:\Users\Jonathan\Downloads\Game Setup File__2774_il5.exe, Quarantined, [8e277876c1baa492eb120134d0313bc5],
PUP.Optional.Amonetize, C:\Users\Jonathan\Downloads\FIFA.14.Origin.Key.Generator__6629_i850346023_il10738.exe, Quarantined, [dadba14d1962c175409b3d70ae53f40c],
PUP.Optional.Amonetize, C:\Windows\Installer\4a4866ed.msi, Quarantined, [eacbd21c473439fd5b65851838c9ec14],
PUP.Optional.Sanbreel.A, C:\Windows\System32\drivers\{2c976a7f-dbdc-4756-870f-f6d183fe7a7e}Gw64.sys, Quarantined, [13a241add5a648ee21863bcf3fc41ae6],
PUP.Optional.Superfish.A, C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage, Quarantined, [1d985797c5b67abc95e3eb315da6fc04],
PUP.Optional.Superfish.A, C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage-journal, Quarantined, [ecc96f7f225953e39edaf725659e15eb],
PUP.Optional.V9.A, C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.v9.com_0.localstorage, Quarantined, [684d07e7a2d93df9f1a853ca22e17f81],
PUP.Optional.V9.A, C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.v9.com_0.localstorage-journal, Quarantined, [45707f6fe19a64d274252feee51e48b8],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\AUTHORS.txt, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\config.txt, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\default.action, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\default.filter, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\LICENSE.txt, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\match-all.action, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\mgwz.dll, Delete-on-Reboot, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\privoxy.exe, Delete-on-Reboot, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\privoxy.log, Delete-on-Reboot, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\privoxy_uninstall.exe, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\README.txt, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\trust.txt, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\user.action, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\user.action_empty, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\user.filter, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\user.filter_old, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\p_doc.css, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\developer-manual\coding.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\developer-manual\cvs.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\developer-manual\documentation.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\developer-manual\index.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\developer-manual\introduction.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\developer-manual\newrelease.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\developer-manual\testing.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\developer-manual\webserver-update.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\faq\configuration.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\faq\contact.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\faq\copyright.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\faq\general.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\faq\index.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\faq\installation.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\faq\misc.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\faq\trouble.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\images\files-in-use.jpg, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\images\proxy_setup.jpg, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\actions-file.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\appendix.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\config.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\configuration.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\contact.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\copyright.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\files-in-use.jpg, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\filter-file.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\index.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\installation.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\introduction.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\proxy2.jpg, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\proxy_setup.jpg, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\p_doc.css, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\quickstart.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\seealso.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\startup.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\templates.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\whatsnew.html, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\templates\cgi-style.css, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\templates\connect-failed, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\templates\mod-local-help, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\templates\mod-support-and-service, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\templates\mod-title, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\templates\mod-unstable-warning, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\templates\no-such-domain, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\templates\url-info-osd.xml, Quarantined, [cce9915d6d0efc3ae4224a9b30d29d63],
PUP.Optional.SNBooster.A, C:\ProgramData\Excellent4App\SN.Booster\86014281.ini, Quarantined, [d3e24ba3d4a79b9b332e33b67a88837d],
PUP.Optional.MySearchDial.A, C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Preferences, Good: (), Bad: (      "startup_urls": [ ""http://www.v9.com/?type=hp&ts=1402632544&from=amt&uid=3219913727_198339_36817BAA&i=psd&t=34408bdc1", "http://www.v9.com/?type=hppp&ts=1402682395&from=amt&uid=3219913727_198339_36817BAA&i=psd&t=34410590e", "http://www.v9.com/?type=hppp&ts=1403101065&from=amt&uid=3219913727_198339_36817BAA&i=psd&t=344503b5b", "http://www.v9.com/?type=hppp&ts=1404312443&from=amt&uid=3219913727_198339_36817BAA&i=psd&t=3450912d4", "http://www.v9.com/?type=hppp&ts=1404401240&from=amt&uid=3219913727_198339_36817BAA&i=psd&t=345169f70", "http://www.v9.com/?type=hppp&ts=1404420304&from=amt&uid=3219913727_198339_36817BAA&i=psd&t=345198822", "http://www.v9.com/?type=hppp&ts=1405307440&from=amt&uid=3219913727_198339_36817BAA&i=psd&t=345a0e5e8" ],), Replaced,[d9dc48a68cef40f6bad76ec62adb2ad6]

Physical Sectors: 0
(No malicious items detected)


(end)

Link to post
Share on other sites

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 12-09-2014
Ran by Jonathan (administrator) on CRACKER on 17-09-2014 10:20:05
Running from C:\Users\Jonathan\Downloads
Platform: Windows 8.1 (X64) OS Language: English (United States)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(HP) C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\35.0.1916.52\remoting_host.exe
(SEIKO EPSON CORPORATION) C:\Program Files\EPSON\EpsonCustomerParticipation\EPCP.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\35.0.1916.52\remoting_host.exe
(Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(HP) C:\Windows\System32\HPSIsvc.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe
(Nero AG) C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
(Intel® Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Windows\SysWOW64\irstrtsv.exe
() C:\Program Files\Intel\Intel® Smart Connect Technology Agent\iSCTAgent.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
() C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
() C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
(Intel® Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
() C:\Windows\Microsoft\SystemUpdatekb70007\WindowsUpdater.exe
(The Privoxy team - www.privoxy.org) C:\Program Files (x86)\MSR\Privoxy\privoxy.exe
(Validity Sensors, Inc.) C:\Windows\System32\valWBFPolicyService.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Intel) C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
() C:\Program Files (x86)\HTC\HTC Sync Manager\HTC Sync\adb.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20605_x64__8wekyb3d8bbwe\livecomm.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
() C:\Program Files (x86)\HP SimplePass\IEWebSiteLogon.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Intel) C:\Program Files (x86)\Intel\irstrt\RapidStartConfig.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Update\GoogleUpdate.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Intel Corporation) C:\Program Files\Intel\Intel® Smart Connect Technology Agent\iSCTsysTray8.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OFFICE15\CSISYNCCLIENT.EXE
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerSt.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE
(Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe
(RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
(Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\Jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(Intel Corporation) C:\Windows\Temp\irstrtsv\scrncap.exe
(Microsoft Corporation) C:\Windows\System32\backgroundTaskHost.exe
(AuthenTec Inc.) C:\Program Files (x86)\HP SimplePass\TouchControl.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17200_none_fa7026dd9b04586e\TiWorker.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Users\Jonathan\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe
(Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
(Microsoft Corporation) C:\Windows\System32\CompatTel\wicainventory.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [sysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1703424 2013-10-29] (IDT, Inc.)
HKLM\...\Run: [Nvtmru] => "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"
HKLM\...\Run: [shadowPlay] => C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2352072 2014-05-29] (NVIDIA Corporation)
HKLM\...\Run: [bTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1058880 2013-03-28] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [AccelerometerSysTrayApplet] => C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe [77088 2013-07-24] (Hewlett-Packard Company)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [1985824 2013-07-25] (Wondershare)
HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [1045304 2013-12-25] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [TkBellExe] => C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe [295512 2014-05-22] (RealNetworks, Inc.)
HKLM-x32\...\Run: [fst_us_90] => [X]
HKLM\...\RunOnce: [NCPluginUpdater] => C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [21720 2014-05-27] (Hewlett-Packard)
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
HKU\.DEFAULT\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATILAE.EXE [297024 2013-01-24] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-1222004918-1017807200-348020018-1002\...\Run: [Google Update] => C:\Users\Jonathan\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2013-08-01] (Google Inc.)
HKU\S-1-5-21-1222004918-1017807200-348020018-1002\...\Run: [MusicManager] => C:\Users\Jonathan\AppData\Local\Programs\Google\MusicManager\MusicManager.exe [7631872 2014-04-23] (Google Inc.)
HKU\S-1-5-21-1222004918-1017807200-348020018-1002\...\Run: [skyDrive] => C:\Users\Jonathan\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe [251080 2014-06-20] (Microsoft Corporation)
HKU\S-1-5-21-1222004918-1017807200-348020018-1002\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [22415552 2014-04-25] (Google)
HKU\S-1-5-21-1222004918-1017807200-348020018-1002\...\Run: [spotify Web Helper] => C:\Users\Jonathan\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1178168 2014-07-22] (Spotify Ltd)
HKU\S-1-5-21-1222004918-1017807200-348020018-1002\...\Run: [GoogleChromeAutoLaunch_67B49362D3A8C1AAF36B88B38FC33840] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [860488 2014-05-13] (Google Inc.)
HKU\S-1-5-21-1222004918-1017807200-348020018-1002\...\MountPoints2: {3fba3bdb-9336-11e3-bea5-6817296bc212} - "E:\HTC_Sync_Manager_PC.exe"
HKU\S-1-5-21-1222004918-1017807200-348020018-1002\...\MountPoints2: {675698ee-f748-11e3-bec1-6817296bc212} - "E:\SISetup.exe"
HKU\S-1-5-21-1222004918-1017807200-348020018-1002\...\MountPoints2: {8e20cb98-9c44-11e3-beaa-6817296bc212} - "E:\HTC_Sync_Manager_PC.exe"
HKU\S-1-5-21-1222004918-1017807200-348020018-1002\...\MountPoints2: {a82a09bc-b4e6-11e3-beb4-6817296bc212} - "F:\HTC_Sync_Manager_PC.exe"
HKU\S-1-5-21-1222004918-1017807200-348020018-1002\...\MountPoints2: {a82a09e4-b4e6-11e3-beb4-6817296bc212} - "E:\HTC_Sync_Manager_PC.exe"
HKU\S-1-5-21-1222004918-1017807200-348020018-1002\...\MountPoints2: {de09e36f-39a4-11e3-be82-6817296bc212} - "E:\HTC_Sync_Manager_PC.exe"
HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Google Update] => C:\Users\Jonathan\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2013-08-01] (Google Inc.)
HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [MusicManager] => C:\Users\Jonathan\AppData\Local\Programs\Google\MusicManager\MusicManager.exe [7631872 2014-04-23] (Google Inc.)
HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [skyDrive] => C:\Users\Jonathan\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe [251080 2014-06-20] (Microsoft Corporation)
HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [22415552 2014-04-25] (Google)
HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [spotify Web Helper] => C:\Users\Jonathan\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1178168 2014-07-22] (Spotify Ltd)
HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [GoogleChromeAutoLaunch_67B49362D3A8C1AAF36B88B38FC33840] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [860488 2014-05-13] (Google Inc.)
HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {3fba3bdb-9336-11e3-bea5-6817296bc212} - "E:\HTC_Sync_Manager_PC.exe"
HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {675698ee-f748-11e3-bec1-6817296bc212} - "E:\SISetup.exe"
HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {8e20cb98-9c44-11e3-beaa-6817296bc212} - "E:\HTC_Sync_Manager_PC.exe"
HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {a82a09bc-b4e6-11e3-beb4-6817296bc212} - "F:\HTC_Sync_Manager_PC.exe"
HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {a82a09e4-b4e6-11e3-beb4-6817296bc212} - "E:\HTC_Sync_Manager_PC.exe"
HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {de09e36f-39a4-11e3-be82-6817296bc212} - "E:\HTC_Sync_Manager_PC.exe"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\iSCTsysTray.lnk
ShortcutTarget: iSCTsysTray.lnk -> C:\Program Files\Intel\Intel® Smart Connect Technology Agent\iSCTsysTray8.exe (Intel Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
Startup: C:\Users\Jonathan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Launch Jawbone Updater.lnk
ShortcutTarget: Launch Jawbone Updater.lnk -> C:\Program Files (x86)\Jawbone\LaunchJU.exe ()
Startup: C:\Users\Jonathan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Send to OneNote.lnk
ShortcutTarget: Send to OneNote.lnk -> C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE (Microsoft Corporation)
ShellIconOverlayIdentifiers:  SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  No File
ShellIconOverlayIdentifiers:  SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  No File
ShellIconOverlayIdentifiers:  SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  No File
ShellIconOverlayIdentifiers-x32:  SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  No File
ShellIconOverlayIdentifiers-x32:  SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  No File
ShellIconOverlayIdentifiers-x32:  SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  No File

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

ProxyEnable: Internet Explorer proxy is enabled.
ProxyServer: http=127.0.0.1:8118;https=127.0.0.1:8118
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKLM - {0633EE93-D776-472F-A0FF-E1416B8B2E3A} URL = http://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=ir_14_18_ch&cd=2XzuyEtN2Y1L1Qzu0FtDzytBtC0CyE0FtAzzyEtCyB0B0A0AtN0D0Tzu0SzzyDtDtN1L2XzutBtFtBtDtFyCtFtDtN1L1CzutCyEtDtAtDyD1V1PtN1L1G1B1V1N2Y1L1Qzu2StByEtDyEtD0EtAtCtGzyzy0E0BtGyDzz0ByCtG0A0AyC0EtGyCyDzz0FyByEyD0FtB0Dzy0D2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyEtAtCyDzy0FyCtBtGtCtCyCyCtG0AtDtB0DtG0BtD0C0BtGtDzzzy0B0B0DtDtD0DtCtD0D2Q&cr=565464229&ir=
SearchScopes: HKLM - {9620C47F-A8B9-43FB-BDE1-0E4B19A880DA} URL = http://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us2-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.com/rover/1/711-154371-11896-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKLM-x32 - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.com/rover/1/711-154371-11896-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL =
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: YoutubeAdblocker -> {370436D4-6C22-00A5-5B63-233D824ACD43} -> C:\Program Files (x86)\YoutubeAdblocker\zqITRVX1.x64.dll No File
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO: sAve Net -> {D995FDFE-8B4E-0DAF-A99F-88D7D08A338A} -> C:\Program Files (x86)\sAve Net\1.x64.dll No File
BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} -  No File
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1

FireFox:
========
FF ProfilePath: C:\Users\Jonathan\AppData\Roaming\Mozilla\Firefox\Profiles\qc3ar943.default-1406507739396
FF Homepage: hxxp://games.espn.go.com/ffl/leagueoffice?leagueId=889760&teamId=1&seasonId=2014
FF NetworkProxy: "http", "127.0.0.1"
FF NetworkProxy: "http_port", 8118
FF NetworkProxy: "ssl", "127.0.0.1"
FF NetworkProxy: "ssl_port", 8118
FF NetworkProxy: "type", 1
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\windows\SysWOW64\Adobe\Director\np32dsw_1166636.dll (Adobe Systems, Inc.)
FF Plugin-x32: @authentec.com/ffwloplugin -> C:\Program Files (x86)\HP SimplePass\npffwloplugin.dll ( HP)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.0.72 -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @real.com/nppl3260;version=16.0.3.51 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlchromebrowserrecordext;version=1.3.3 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlhtml5videoshim;version=1.3.3 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlpepperflashvideoshim;version=1.3.3 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpplugin;version=16.0.3.51 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpplugin.dll (RealPlayer)
FF Plugin-x32: @realnetworks.com/npdlplugin;version=1 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\1\NP_wtapp.dll ()
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @talk.google.com/GoogleTalkPlugin -> C:\Users\Jonathan\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin HKCU: @talk.google.com/O1DPlugin -> C:\Users\Jonathan\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 -> C:\Users\Jonathan\AppData\Local\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 -> C:\Users\Jonathan\AppData\Local\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Jonathan\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin HKCU: electronicarts.com/GameFacePlugin -> C:\Users\Jonathan\AppData\Roaming\Electronic Arts\Game Face\npGameFacePlugin.dll (Electronic Arts)
FF Plugin HKCU: pokki.com/PokkiDownloadHelper -> C:\Users\Jonathan\AppData\Local\Pokki\Download Helper\npPokkiDownloadHelper.1.2.0.78.dll (Pokki)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppl3260.dll (RealNetworks, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nprpplugin.dll (RealPlayer)
FF Plugin ProgramFiles/Appdata: C:\Users\Jonathan\AppData\Roaming\mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin ProgramFiles/Appdata: C:\Users\Jonathan\AppData\Roaming\mozilla\plugins\npo1d.dll (Google)
FF Extension: Adblock Plus - C:\Users\Jonathan\AppData\Roaming\Mozilla\Firefox\Profiles\qc3ar943.default-1406507739396\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-07-27]
FF Extension: Hotspot Shield Extension - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\afproxy@anchorfree.com [2014-06-13]
FF Extension: TrueSuite Website Logon - C:\Program Files (x86)\Mozilla Firefox\distribution\bundles\websitelogon@truesuite.com [2014-06-13]
FF HKLM-x32\...\Firefox\Extensions: [{DF153AFF-6948-45d7-AC98-4FC4AF8A08E2}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2014-05-22]
FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF HKCU\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: No Name - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]

Chrome:
=======
CHR HomePage: Default -> hxxp://www.georgiadogs.com/
CHR StartupUrls: Default -> "hxxp://start.mysearchdial.com/?f=1&a=ir_14_18_ch&cd=2XzuyEtN2Y1L1Qzu0FtDzytBtC0CyE0FtAzzyEtCyB0B0A0AtN0D0Tzu0SzzyDtDtN1L2XzutBtFtBtDtFyCtFtDtN1L1CzutCyEtDtAtDyD1V1PtN1L1G1B1V1N2Y1L1Qzu2StByEtDyEtD0EtAtCtGzyzy0E0BtGyDzz0ByCtG0A0AyC0EtGyCyDzz0FyByEyD0FtB0Dzy0D2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyEtAtCyDzy0FyCtBtGtCtCyCyCtG0AtDtB0DtG0BtD0C0BtGtDzzzy0B0B0DtDtD0DtCtD0D2Q&cr=565464229&ir=", "hxxp://www.v9.com/?type=hp&ts=1402632544&from=amt&uid=3219913727_198339_36817BAA&i=psd&t=34408bdc1", "hxxp://www.v9.com/?type=hppp&ts=1402682395&from=amt&uid=3219913727_198339_36817BAA&i=psd&t=34410590e", "hxxp://www.v9.com/?type=hppp&ts=1403101065&from=amt&uid=3219913727_198339_36817BAA&i=psd&t=344503b5b", "hxxp://www.v9.com/?type=hppp&ts=1404312443&from=amt&uid=3219913727_198339_36817BAA&i=psd&t=3450912d4", "hxxp://www.v9.com/?type=hppp&ts=1404401240&from=amt&uid=3219913727_198339_36817BAA&i=psd&t=345169f70", "hxxp://www.v9.com/?type=hppp&ts=1404420304&from=amt&uid=3219913727_198339_36817BAA&i=psd&t=345198822", "hxxp://www.v9.com/?type=hppp&ts=1405307440&from=amt&uid=3219913727_198339_36817BAA&i=psd&t=345a0e5e8"
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter}
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\pdf.dll ()
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll No File
CHR Plugin: (Simple Pass) - C:\Program Files (x86)\HP SimplePass\npffwloplugin.dll ( HP)
CHR Plugin: (         "name": "",) - C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
CHR Plugin: (         "name": "",) - C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
CHR Plugin: (WildTangent Games App V2 Presence Detector) - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll No File
CHR Plugin: (Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Shockwave for Director) - C:\windows\SysWOW64\Adobe\Director\np32dsw_1166636.dll (Adobe Systems, Inc.)
CHR Profile: C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-08-01]
CHR Extension: (Google Drive) - C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-08-01]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-05-25]
CHR Extension: (YouTube) - C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-08-01]
CHR Extension: (Google Cast) - C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\boadgeojelhgndaghljhdicfkmllpafd [2014-04-11]
CHR Extension: (Adblock Plus) - C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-06-02]
CHR Extension: (Google Search) - C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-08-01]
CHR Extension: (Chrome Remote Desktop) - C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2014-04-25]
CHR Extension: (Website Logon) - C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmbkhknacohfhbmmpnmbkgdffdbildof [2013-08-01]
CHR Extension: (History Calendar) - C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilfjhacjjbcdmimjeaakpnlhdcloijcg [2014-07-02]
CHR Extension: (Stormcloud) - C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\jjpfchnjhjfiildkeelmdbkfkegkgehh [2014-07-03]
CHR Extension: (Hangouts) - C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nckgahadagoaajjgafhacjanaoiihapd [2013-08-02]
CHR Extension: (Google Wallet) - C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-22]
CHR Extension: (Gmail) - C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-08-01]
CHR HKLM-x32\...\Chrome\Extension: [aaaakabcghbhlohjjnonbaadlhlkhaob] - C:\ProgramData\AskPartnerNetwork\Toolbar\EPNV64\CRX\ToolbarCR.crx []
CHR HKLM-x32\...\Chrome\Extension: [hmbkhknacohfhbmmpnmbkgdffdbildof] - C:\Program Files (x86)\HP SimplePass\tschrome.crx [2012-12-13]
CHR HKLM-x32\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx [2013-08-14]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 BrcmSetSecurity; C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe [101536 2013-04-16] (Intel)
R3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [321024 2013-08-22] (Microsoft Corporation)
R2 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\35.0.1916.52\remoting_host.exe [51016 2014-04-17] (Google Inc.)
R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [144560 2012-05-17] (Seiko Epson Corporation)
R2 FPLService; C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe [1641768 2013-02-07] (HP)
R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [86528 2012-09-27] (Hewlett-Packard Company) [File not signed]
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe [49464 2014-05-21] (Hewlett-Packard Company)
R2 HPWMISVC; c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [1039160 2013-12-25] (Hewlett-Packard Development Company, L.P.)
R2 HTCMonitorService; C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe [87368 2013-11-18] (Nero AG)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-30] (Intel Corporation)
R2 Intel® Bluetooth Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [160712 2013-03-11] (Intel Corporation)
R2 Intel® Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [732160 2012-12-10] (Intel® Corporation) [File not signed]
S3 Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [803872 2012-12-10] (Intel® Corporation)
R2 Intel® ME Service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe [129848 2013-02-22] (Intel Corporation)
R2 irstrtsv; C:\Windows\SysWOW64\irstrtsv.exe [668984 2013-02-07] (Intel Corporation)
R2 ISCTAgent; C:\Program Files\Intel\Intel® Smart Connect Technology Agent\iSCTAgent.exe [180200 2013-02-13] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [167736 2013-02-22] (Intel Corporation)
S3 KeyIso; C:\Windows\SysWOW64\keyiso.dll [44032 2013-08-21] (Microsoft Corporation)
S3 lfsvc; C:\Windows\SysWOW64\GeofenceMonitorService.dll [357376 2014-03-14] (Microsoft Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1809720 2014-05-12] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [860472 2014-05-12] (Malwarebytes Corporation)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273136 2013-06-13] ()
S3 Netlogon; C:\Windows\SysWOW64\netlogon.dll [688640 2014-03-06] (Microsoft Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1631008 2014-05-29] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21055432 2014-05-29] (NVIDIA Corporation)
R2 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [166912 2013-10-17] () [File not signed]
R2 RealNetworks Downloader Resolver Service; C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-08-14] ()
S3 smphost; C:\Windows\SysWOW64\smphost.dll [11776 2013-08-21] (Microsoft Corporation)
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [339456 2013-10-29] (IDT, Inc.) [File not signed]
S3 StorSvc; C:\Windows\SysWOW64\storsvc.dll [18944 2013-08-21] (Microsoft Corporation)
R2 SystemUpdatekb70007; C:\WINDOWS\Microsoft\SystemUpdatekb70007\WindowsUpdater.exe [18944 2014-09-16] () [File not signed]
S3 TrueService; C:\Program Files\Common Files\AuthenTec\TrueService.exe [401856 2013-01-08] (AuthenTec, Inc.)
R2 valWBFPolicyService; C:\WINDOWS\system32\valWBFPolicyService.exe [32768 2013-08-01] (Validity Sensors, Inc.) [File not signed]
S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [76800 2013-10-30] (Microsoft Corporation)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-23] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-23] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3376880 2013-06-13] (Intel® Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R3 BthA2DP; C:\Windows\system32\drivers\BthA2DP.sys [131584 2013-08-22] (Microsoft Corporation)
R3 BthHFAud; C:\Windows\system32\DRIVERS\BthHfAud.sys [32640 2013-08-22] (Microsoft Corporation)
S3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation)
R3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [132408 2013-01-21] (Motorola Solutions, Inc.)
R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1362232 2013-02-14] (Motorola Solutions, Inc.)
S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows ® Win 7 DDK provider)
S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows ® Win 7 DDK provider)
R1 HssDRV6; C:\Windows\system32\DRIVERS\hssdrv6.sys [44744 2014-01-14] (AnchorFree Inc.)
S3 HtcVCom32; C:\Windows\system32\DRIVERS\HtcVComV64.sys [121800 2010-03-08] (QUALCOMM Incorporated)
R3 ikbevent; C:\Windows\system32\DRIVERS\ikbevent.sys [21048 2013-02-13] ()
R3 imsevent; C:\Windows\system32\DRIVERS\imsevent.sys [21048 2013-02-13] ()
R3 irstrtdv; C:\Windows\System32\drivers\irstrtdv.sys [43800 2012-12-12] (Intel Corporation)
R3 ISCT; C:\Windows\System32\drivers\ISCTD64.sys [46568 2013-02-13] ()
S3 libusb0; C:\Windows\system32\DRIVERS\libusb0.sys [52320 2014-01-06] (http://libusb-win32.sourceforge.net)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2014-05-12] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [122584 2014-09-17] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2014-05-12] (Malwarebytes Corporation)
S3 mvusbews; C:\Windows\System32\Drivers\mvusbews.sys [20480 2012-12-24] (Marvell Semiconductor, Inc.)
R3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew00.sys [3345376 2013-09-04] (Intel Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-05-29] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [429272 2013-11-12] (Realsil Semiconductor Corporation)
S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [29424 2013-04-24] (Synaptics Incorporated)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-11-01] (Synaptics Incorporated)
R3 taphss6; C:\Windows\system32\DRIVERS\taphss6.sys [42184 2014-01-14] (Anchorfree Inc.)
R3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [207768 2013-04-16] (Windows ® Win 7 DDK provider)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-23] (Microsoft Corporation)
R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20800 2012-08-31] (Hewlett-Packard Development Company, L.P.)
R3 WPRO_41_2001; C:\Windows\System32\drivers\WPRO_41_2001.sys [34752 2014-09-16] ()
R1 {2c976a7f-dbdc-4756-870f-f6d183fe7a7e}Gw64; C:\Windows\System32\drivers\{2c976a7f-dbdc-4756-870f-f6d183fe7a7e}Gw64.sys [61120 2014-09-16] (StdLib)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-17 10:20 - 2014-09-17 10:20 - 00039376 _____ () C:\Users\Jonathan\Downloads\FRST.txt
2014-09-17 10:19 - 2014-09-17 10:20 - 00000000 ____D () C:\FRST
2014-09-17 10:19 - 2014-09-17 10:19 - 02105856 _____ (Farbar) C:\Users\Jonathan\Downloads\FRST64.exe
2014-09-16 23:23 - 2014-09-16 23:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bluetooth Devices
2014-09-16 23:21 - 2014-09-16 23:21 - 04210176 _____ () C:\Program Files (x86)\SN_x64.Booster
2014-09-16 23:21 - 2014-09-16 23:21 - 00617384 _____ ( ) C:\Users\Jonathan\Downloads\CR_Downloader_for_super-mario-world.exe
2014-09-16 23:21 - 2014-09-16 23:21 - 00617384 _____ ( ) C:\Users\Jonathan\Downloads\CR_Downloader_for_mario-party.exe
2014-09-16 23:21 - 2014-09-16 23:21 - 00617384 _____ ( ) C:\Users\Jonathan\Downloads\CR_Downloader_for_1964.exe
2014-09-16 23:21 - 2014-09-16 23:21 - 00360832 _____ (Softonic) C:\Users\Jonathan\Downloads\SoftonicDownloader_for_harry-potter-and-the-half-blood-prince.exe
2014-09-16 23:21 - 2014-09-16 23:21 - 00346144 _____ () C:\Users\Jonathan\Downloads\FIFA.14.Origin.Key.Generator__6629_i850346023_il10738.exe
2014-09-16 23:21 - 2014-09-16 23:21 - 00346144 _____ () C:\Users\Jonathan\Downloads\Backyard Soccer   Backyard Bas Downloader__3687_i844958192_il4063704.exe
2014-09-16 23:21 - 2014-09-16 23:21 - 00151584 _____ (Amonetizé Ltd) C:\Users\Jonathan\Downloads\Game Setup File__2774_il5.exe
2014-09-16 23:21 - 2014-09-16 23:21 - 00061120 _____ (StdLib) C:\WINDOWS\system32\Drivers\{2c976a7f-dbdc-4756-870f-f6d183fe7a7e}Gw64.sys
2014-09-16 23:06 - 2014-09-16 23:23 - 00094656 _____ (CACE Technologies) C:\WINDOWS\system32\WPRO_41_2001woem.tmp
2014-09-16 22:14 - 2014-09-17 10:15 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2014-09-16 22:13 - 2014-09-16 22:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-09-16 22:13 - 2014-09-16 22:13 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-09-16 22:13 - 2014-09-16 22:13 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-09-16 22:13 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2014-09-16 22:13 - 2014-05-12 07:26 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2014-09-16 22:13 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2014-09-16 22:11 - 2014-09-16 22:12 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Jonathan\Downloads\mbam-setup-2.0.2.1012.exe
2014-09-16 21:30 - 2014-09-16 21:30 - 00000000 ____D () C:\Users\johnnysanders94\AppData\Local\CyberLink
2014-09-16 21:29 - 2014-09-16 21:29 - 00001449 _____ () C:\Users\johnnysanders94\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-09-16 21:29 - 2014-09-16 21:29 - 00000020 ___SH () C:\Users\johnnysanders94\ntuser.ini
2014-09-16 21:29 - 2014-09-16 21:29 - 00000000 ____D () C:\Users\johnnysanders94\AppData\Roaming\Synaptics
2014-09-16 21:29 - 2014-09-16 21:29 - 00000000 ____D () C:\Users\johnnysanders94\AppData\Roaming\Real
2014-09-16 21:29 - 2014-09-16 21:29 - 00000000 ____D () C:\Users\johnnysanders94\AppData\Roaming\Intel
2014-09-16 21:29 - 2014-09-16 21:29 - 00000000 ____D () C:\Users\johnnysanders94\AppData\Roaming\Epson
2014-09-16 21:29 - 2014-09-16 21:29 - 00000000 ____D () C:\Users\johnnysanders94\AppData\Roaming\Adobe
2014-09-16 21:29 - 2014-09-16 21:29 - 00000000 ____D () C:\Users\johnnysanders94\AppData\Local\Wondershare
2014-09-16 21:29 - 2014-09-16 21:29 - 00000000 ____D () C:\Users\johnnysanders94\AppData\Local\VirtualStore
2014-09-16 21:29 - 2014-09-16 21:29 - 00000000 ____D () C:\Users\johnnysanders94\AppData\Local\Packages
2014-09-16 21:29 - 2014-09-16 21:29 - 00000000 ____D () C:\Users\johnnysanders94\AppData\Local\NVIDIA Corporation
2014-09-16 21:29 - 2014-09-16 21:29 - 00000000 ____D () C:\Users\johnnysanders94\AppData\Local\NVIDIA
2014-09-16 21:29 - 2014-09-16 21:29 - 00000000 ____D () C:\Users\johnnysanders94\AppData\Local\Hewlett-Packard
2014-09-16 21:29 - 2014-09-16 21:29 - 00000000 ____D () C:\Users\johnnysanders94\AppData\Local\Google
2014-09-16 21:29 - 2014-09-16 21:29 - 00000000 ____D () C:\Users\johnnysanders94
2014-09-16 21:29 - 2014-07-13 23:08 - 00000000 ___RD () C:\Users\johnnysanders94\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-09-16 21:29 - 2014-05-16 01:27 - 00000000 ___RD () C:\Users\johnnysanders94\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-09-16 21:29 - 2014-02-22 00:37 - 00000369 _____ () C:\Users\johnnysanders94\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2014-09-16 21:29 - 2014-02-22 00:37 - 00000369 _____ () C:\Users\johnnysanders94\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2014-09-16 21:29 - 2013-10-29 21:15 - 00000000 ____D () C:\Users\johnnysanders94\AppData\Local\Microsoft Help
2014-09-16 21:29 - 2013-08-22 11:36 - 00000000 ___RD () C:\Users\johnnysanders94\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-09-16 21:29 - 2013-08-22 11:36 - 00000000 ____D () C:\Users\johnnysanders94\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-09-09 19:15 - 2014-08-15 22:40 - 23591424 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-09-09 19:15 - 2014-08-15 22:04 - 17455104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-09-09 19:15 - 2014-08-15 22:00 - 05833728 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2014-09-09 19:15 - 2014-08-15 22:00 - 02793984 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-09-09 19:15 - 2014-08-15 21:56 - 00547328 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2014-09-09 19:15 - 2014-08-15 21:54 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2014-09-09 19:15 - 2014-08-15 21:45 - 04232704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2014-09-09 19:15 - 2014-08-15 21:43 - 00758272 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2014-09-09 19:15 - 2014-08-15 21:32 - 00446464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2014-09-09 19:15 - 2014-08-15 21:25 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\JavaScriptCollectionAgent.dll
2014-09-09 19:15 - 2014-08-15 21:22 - 00454656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2014-09-09 19:15 - 2014-08-15 21:20 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2014-09-09 19:15 - 2014-08-15 21:19 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-09-09 19:15 - 2014-08-15 21:18 - 02185728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2014-09-09 19:15 - 2014-08-15 21:18 - 00289280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2014-09-09 19:15 - 2014-08-15 21:11 - 00597504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2014-09-09 19:15 - 2014-08-15 21:06 - 00359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2014-09-09 19:15 - 2014-08-15 21:05 - 00727040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-09-09 19:15 - 2014-08-15 21:05 - 00707072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-09-09 19:15 - 2014-08-15 21:03 - 02104832 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2014-09-09 19:15 - 2014-08-15 21:03 - 00365056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2014-09-09 19:15 - 2014-08-15 20:58 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JavaScriptCollectionAgent.dll
2014-09-09 19:15 - 2014-08-15 20:56 - 02310656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-09-09 19:15 - 2014-08-15 20:53 - 13588480 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-09-09 19:15 - 2014-08-15 20:53 - 00243200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2014-09-09 19:15 - 2014-08-15 20:53 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2014-09-09 19:15 - 2014-08-15 20:51 - 11769856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2014-09-09 19:15 - 2014-08-15 20:45 - 00603136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2014-09-09 19:15 - 2014-08-15 20:44 - 02014208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2014-09-09 19:15 - 2014-08-15 20:44 - 00312320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2014-09-09 19:15 - 2014-08-15 20:34 - 01447424 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-09-09 19:15 - 2014-08-15 20:20 - 01812992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2014-09-09 19:15 - 2014-08-15 20:18 - 00775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2014-09-09 19:15 - 2014-08-15 20:14 - 01190400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2014-09-09 19:15 - 2014-08-15 20:12 - 00678400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-09-09 18:43 - 2014-09-04 22:36 - 00097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2014-09-09 18:43 - 2014-09-04 22:31 - 00527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2014-09-09 18:43 - 2014-09-04 20:48 - 00738816 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2014-09-09 18:43 - 2014-08-01 20:18 - 01212928 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2014-09-09 18:42 - 2014-07-23 23:20 - 00875688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr120_clr0400.dll
2014-09-09 18:42 - 2014-07-23 23:20 - 00869544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr120_clr0400.dll
2014-09-09 15:43 - 2014-09-09 15:43 - 00189069 _____ () C:\Users\Jonathan\Pictures\Documents\Untitled.wma
2014-08-31 23:27 - 2014-08-31 23:27 - 00000000 ____D () C:\Users\johnnyboysanders\AppData\Roaming\Real
2014-08-31 23:27 - 2014-08-31 23:27 - 00000000 ____D () C:\Users\johnnyboysanders\AppData\Roaming\Epson
2014-08-31 23:27 - 2014-08-31 23:27 - 00000000 ____D () C:\Users\johnnyboysanders\AppData\Local\Wondershare
2014-08-31 23:27 - 2014-08-31 23:27 - 00000000 ____D () C:\Users\johnnyboysanders\AppData\Local\Hewlett-Packard
2014-08-31 23:27 - 2014-08-31 23:27 - 00000000 ____D () C:\Users\johnnyboysanders\AppData\Local\CyberLink
2014-08-31 23:26 - 2014-08-31 23:27 - 00000000 ____D () C:\Users\johnnyboysanders\AppData\Local\Packages
2014-08-31 23:26 - 2014-08-31 23:27 - 00000000 ____D () C:\Users\johnnyboysanders\AppData\Local\NVIDIA Corporation
2014-08-31 23:26 - 2014-08-31 23:26 - 00001449 _____ () C:\Users\johnnyboysanders\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-08-31 23:26 - 2014-08-31 23:26 - 00000020 ___SH () C:\Users\johnnyboysanders\ntuser.ini
2014-08-31 23:26 - 2014-08-31 23:26 - 00000000 ____D () C:\Users\johnnyboysanders\AppData\Roaming\Synaptics
2014-08-31 23:26 - 2014-08-31 23:26 - 00000000 ____D () C:\Users\johnnyboysanders\AppData\Roaming\Intel
2014-08-31 23:26 - 2014-08-31 23:26 - 00000000 ____D () C:\Users\johnnyboysanders\AppData\Roaming\Adobe
2014-08-31 23:26 - 2014-08-31 23:26 - 00000000 ____D () C:\Users\johnnyboysanders\AppData\Local\VirtualStore
2014-08-31 23:26 - 2014-08-31 23:26 - 00000000 ____D () C:\Users\johnnyboysanders\AppData\Local\NVIDIA
2014-08-31 23:26 - 2014-08-31 23:26 - 00000000 ____D () C:\Users\johnnyboysanders\AppData\Local\Google
2014-08-31 23:26 - 2014-08-31 23:26 - 00000000 ____D () C:\Users\johnnyboysanders
2014-08-31 23:26 - 2014-07-13 23:08 - 00000000 ___RD () C:\Users\johnnyboysanders\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-08-31 23:26 - 2014-05-16 01:27 - 00000000 ___RD () C:\Users\johnnyboysanders\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-08-31 23:26 - 2014-02-22 00:37 - 00000369 _____ () C:\Users\johnnyboysanders\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2014-08-31 23:26 - 2014-02-22 00:37 - 00000369 _____ () C:\Users\johnnyboysanders\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2014-08-31 23:26 - 2013-10-29 21:15 - 00000000 ____D () C:\Users\johnnyboysanders\AppData\Local\Microsoft Help
2014-08-31 23:26 - 2013-08-22 11:36 - 00000000 ___RD () C:\Users\johnnyboysanders\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-08-31 23:26 - 2013-08-22 11:36 - 00000000 ____D () C:\Users\johnnyboysanders\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-08-28 16:22 - 2014-09-11 17:51 - 00000000 ____D () C:\Users\Jonathan\Pictures\Documents\Picks
2014-08-28 09:34 - 2014-08-22 20:42 - 04148224 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2014-08-28 09:34 - 2014-08-06 22:12 - 01336624 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2014-08-28 09:34 - 2014-08-01 23:56 - 01064448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2014-08-25 15:19 - 2014-08-29 23:09 - 00000000 ____D () C:\Users\Jonathan\Pictures\Documents\DudeYouCrazy Articles
2014-08-18 15:00 - 2014-08-18 15:02 - 154965096 _____ (Hewlett-Packard ) C:\Users\Jonathan\Downloads\sp63417(5).exe

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-17 10:20 - 2014-09-17 10:20 - 00039376 _____ () C:\Users\Jonathan\Downloads\FRST.txt
2014-09-17 10:20 - 2014-09-17 10:19 - 00000000 ____D () C:\FRST
2014-09-17 10:19 - 2014-09-17 10:19 - 02105856 _____ (Farbar) C:\Users\Jonathan\Downloads\FRST64.exe
2014-09-17 10:18 - 2013-08-01 15:05 - 00003934 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{4E400304-057F-416F-82C6-4BDA5CD2AE46}
2014-09-17 10:15 - 2014-09-16 22:14 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2014-09-17 10:14 - 2013-10-29 21:09 - 01369836 _____ () C:\WINDOWS\WindowsUpdate.log
2014-09-17 10:14 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2014-09-16 23:47 - 2013-08-01 15:13 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1222004918-1017807200-348020018-1002
2014-09-16 23:45 - 2013-09-11 21:45 - 00000935 _____ () C:\WINDOWS\Tasks\EPSON XP-410 Series Update {F2F87F9F-568D-4F44-8B56-360226D5D59E}.job
2014-09-16 23:45 - 2013-09-11 21:45 - 00000749 _____ () C:\WINDOWS\Tasks\EPSON XP-410 Series Invitation {F2F87F9F-568D-4F44-8B56-360226D5D59E}.job
2014-09-16 23:45 - 2013-08-01 15:15 - 00000918 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-09-16 23:43 - 2014-06-13 14:00 - 00004964 _____ () C:\WINDOWS\System32\Tasks\Microsoft Office 15 Sync Maintenance for CRACKER-Jonathan Cracker
2014-09-16 23:35 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2014-09-16 23:30 - 2013-09-30 00:04 - 00958356 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-09-16 23:26 - 2012-07-26 03:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2014-09-16 23:25 - 2013-08-22 10:46 - 00378196 _____ () C:\WINDOWS\setupact.log
2014-09-16 23:25 - 2013-07-23 03:46 - 00002990 _____ () C:\WINDOWS\System32\Tasks\Synaptics TouchPad Enhancements
2014-09-16 23:25 - 2013-07-23 03:46 - 00001324 _____ () C:\WINDOWS\Synaptics.log
2014-09-16 23:25 - 2013-07-23 03:43 - 00202848 _____ () C:\WINDOWS\DPINST.LOG
2014-09-16 23:24 - 2013-08-02 19:49 - 00000000 ____D () C:\Users\Jonathan\Pictures\Documents\Youcam
2014-09-16 23:24 - 2013-08-01 16:54 - 00000936 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1222004918-1017807200-348020018-1002UA.job
2014-09-16 23:23 - 2014-09-16 23:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bluetooth Devices
2014-09-16 23:23 - 2014-09-16 23:06 - 00094656 _____ (CACE Technologies) C:\WINDOWS\system32\WPRO_41_2001woem.tmp
2014-09-16 23:23 - 2014-05-22 00:43 - 00003366 _____ () C:\WINDOWS\System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-1222004918-1017807200-348020018-1002
2014-09-16 23:23 - 2014-05-22 00:43 - 00003312 _____ () C:\WINDOWS\System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-1222004918-1017807200-348020018-1002
2014-09-16 23:23 - 2014-05-22 00:33 - 00000478 ____H () C:\WINDOWS\Tasks\SN.Booster-S-86014281.job
2014-09-16 23:23 - 2014-03-28 15:48 - 00000000 ____D () C:\Users\Jonathan\AppData\Local\HTC MediaHub
2014-09-16 23:23 - 2014-03-12 09:02 - 00003278 _____ () C:\WINDOWS\System32\Tasks\Intel® Rapid Start Technology Manager
2014-09-16 23:23 - 2014-02-04 17:21 - 00000000 ___DO () C:\Users\Jonathan\SkyDrive
2014-09-16 23:23 - 2013-08-01 21:22 - 00000000 ___RD () C:\Users\Jonathan\Google Drive
2014-09-16 23:23 - 2013-08-01 15:15 - 00002210 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-09-16 23:23 - 2013-08-01 15:15 - 00000914 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-09-16 23:23 - 2013-07-23 03:49 - 00034752 _____ () C:\WINDOWS\system32\Drivers\WPRO_41_2001.sys
2014-09-16 23:22 - 2013-09-29 23:55 - 00820834 _____ () C:\WINDOWS\PFRO.log
2014-09-16 23:22 - 2013-08-22 10:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-09-16 23:22 - 2013-08-22 09:25 - 00524288 ___SH () C:\WINDOWS\system32\config\BBI
2014-09-16 23:21 - 2014-09-16 23:21 - 04210176 _____ () C:\Program Files (x86)\SN_x64.Booster
2014-09-16 23:21 - 2014-09-16 23:21 - 00617384 _____ ( ) C:\Users\Jonathan\Downloads\CR_Downloader_for_super-mario-world.exe
2014-09-16 23:21 - 2014-09-16 23:21 - 00617384 _____ ( ) C:\Users\Jonathan\Downloads\CR_Downloader_for_mario-party.exe
2014-09-16 23:21 - 2014-09-16 23:21 - 00617384 _____ ( ) C:\Users\Jonathan\Downloads\CR_Downloader_for_1964.exe
2014-09-16 23:21 - 2014-09-16 23:21 - 00360832 _____ (Softonic) C:\Users\Jonathan\Downloads\SoftonicDownloader_for_harry-potter-and-the-half-blood-prince.exe
2014-09-16 23:21 - 2014-09-16 23:21 - 00346144 _____ () C:\Users\Jonathan\Downloads\FIFA.14.Origin.Key.Generator__6629_i850346023_il10738.exe
2014-09-16 23:21 - 2014-09-16 23:21 - 00346144 _____ () C:\Users\Jonathan\Downloads\Backyard Soccer   Backyard Bas Downloader__3687_i844958192_il4063704.exe
2014-09-16 23:21 - 2014-09-16 23:21 - 00151584 _____ (Amonetizé Ltd) C:\Users\Jonathan\Downloads\Game Setup File__2774_il5.exe
2014-09-16 23:21 - 2014-09-16 23:21 - 00061120 _____ (StdLib) C:\WINDOWS\system32\Drivers\{2c976a7f-dbdc-4756-870f-f6d183fe7a7e}Gw64.sys
2014-09-16 23:21 - 2014-07-20 14:12 - 00000000 ____D () C:\Program Files (x86)\MSR
2014-09-16 23:21 - 2014-05-22 00:33 - 00000000 ____D () C:\ProgramData\Excellent4App
2014-09-16 23:09 - 2014-02-11 17:02 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-09-16 23:06 - 2014-05-22 00:40 - 00003344 _____ () C:\WINDOWS\System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1222004918-1017807200-348020018-1002
2014-09-16 23:06 - 2014-05-22 00:40 - 00003290 _____ () C:\WINDOWS\System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1222004918-1017807200-348020018-1002
2014-09-16 23:05 - 2013-09-09 16:30 - 00000000 ____D () C:\Users\Jonathan\AppData\Roaming\Spotify
2014-09-16 23:03 - 2013-08-01 19:16 - 00000830 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-09-16 22:17 - 2013-09-09 16:30 - 00000000 ____D () C:\Users\Jonathan\AppData\Local\Spotify
2014-09-16 22:13 - 2014-09-16 22:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-09-16 22:13 - 2014-09-16 22:13 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-09-16 22:13 - 2014-09-16 22:13 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-09-16 22:12 - 2014-09-16 22:11 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Jonathan\Downloads\mbam-setup-2.0.2.1012.exe
2014-09-16 21:54 - 2013-08-01 15:04 - 00000000 ____D () C:\Users\Jonathan\AppData\Local\Packages
2014-09-16 21:30 - 2014-09-16 21:30 - 00000000 ____D () C:\Users\johnnysanders94\AppData\Local\CyberLink
2014-09-16 21:29 - 2014-09-16 21:29 - 00001449 _____ () C:\Users\johnnysanders94\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-09-16 21:29 - 2014-09-16 21:29 - 00000020 ___SH () C:\Users\johnnysanders94\ntuser.ini
2014-09-16 21:29 - 2014-09-16 21:29 - 00000000 ____D () C:\Users\johnnysanders94\AppData\Roaming\Synaptics
2014-09-16 21:29 - 2014-09-16 21:29 - 00000000 ____D () C:\Users\johnnysanders94\AppData\Roaming\Real
2014-09-16 21:29 - 2014-09-16 21:29 - 00000000 ____D () C:\Users\johnnysanders94\AppData\Roaming\Intel
2014-09-16 21:29 - 2014-09-16 21:29 - 00000000 ____D () C:\Users\johnnysanders94\AppData\Roaming\Epson
2014-09-16 21:29 - 2014-09-16 21:29 - 00000000 ____D () C:\Users\johnnysanders94\AppData\Roaming\Adobe
2014-09-16 21:29 - 2014-09-16 21:29 - 00000000 ____D () C:\Users\johnnysanders94\AppData\Local\Wondershare
2014-09-16 21:29 - 2014-09-16 21:29 - 00000000 ____D () C:\Users\johnnysanders94\AppData\Local\VirtualStore
2014-09-16 21:29 - 2014-09-16 21:29 - 00000000 ____D () C:\Users\johnnysanders94\AppData\Local\Packages
2014-09-16 21:29 - 2014-09-16 21:29 - 00000000 ____D () C:\Users\johnnysanders94\AppData\Local\NVIDIA Corporation
2014-09-16 21:29 - 2014-09-16 21:29 - 00000000 ____D () C:\Users\johnnysanders94\AppData\Local\NVIDIA
2014-09-16 21:29 - 2014-09-16 21:29 - 00000000 ____D () C:\Users\johnnysanders94\AppData\Local\Hewlett-Packard
2014-09-16 21:29 - 2014-09-16 21:29 - 00000000 ____D () C:\Users\johnnysanders94\AppData\Local\Google
2014-09-16 21:29 - 2014-09-16 21:29 - 00000000 ____D () C:\Users\johnnysanders94
2014-09-16 21:29 - 2013-08-01 15:06 - 00000000 ____D () C:\WINDOWS\System32\Tasks\WPD
2014-09-16 15:24 - 2013-08-01 16:54 - 00000884 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1222004918-1017807200-348020018-1002Core.job
2014-09-15 14:23 - 2014-04-25 13:11 - 00003180 _____ () C:\WINDOWS\System32\Tasks\HPCeeScheduleForJonathan
2014-09-15 14:23 - 2014-04-25 13:11 - 00000360 _____ () C:\WINDOWS\Tasks\HPCeeScheduleForJonathan.job
2014-09-12 14:45 - 2013-08-02 19:21 - 00000052 _____ () C:\WINDOWS\SysWOW64\DOErrors.log
2014-09-12 14:44 - 2013-08-02 19:21 - 00000000 _____ () C:\WINDOWS\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-09-11 17:51 - 2014-08-28 16:22 - 00000000 ____D () C:\Users\Jonathan\Pictures\Documents\Picks
2014-09-11 17:39 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\system32\NDF
2014-09-09 22:00 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\rescache
2014-09-09 19:47 - 2014-07-13 23:07 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2014-09-09 19:20 - 2013-08-01 16:08 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2014-09-09 19:20 - 2013-08-01 16:06 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-09-09 19:15 - 2014-06-12 19:20 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll
2014-09-09 19:15 - 2014-06-12 19:20 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2014-09-09 19:15 - 2014-06-12 10:22 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll
2014-09-09 19:15 - 2014-06-12 10:22 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll
2014-09-09 19:15 - 2014-06-12 10:22 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe
2014-09-09 19:15 - 2014-06-12 10:22 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe
2014-09-09 19:15 - 2014-06-12 10:22 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe
2014-09-09 19:15 - 2014-06-12 10:22 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2014-09-09 19:15 - 2014-06-12 10:22 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll
2014-09-09 19:15 - 2014-06-12 10:22 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll
2014-09-09 19:15 - 2014-06-12 10:22 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2014-09-09 19:15 - 2014-06-12 10:22 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2014-09-09 19:15 - 2014-06-12 10:22 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll
2014-09-09 19:15 - 2014-06-12 10:22 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll
2014-09-09 19:15 - 2014-05-02 19:14 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2014-09-09 19:15 - 2014-05-02 19:14 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2014-09-09 19:15 - 2013-08-18 01:28 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-09-09 19:10 - 2013-08-04 11:46 - 101694776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-09-09 15:43 - 2014-09-09 15:43 - 00189069 _____ () C:\Users\Jonathan\Pictures\Documents\Untitled.wma
2014-09-09 15:03 - 2013-08-01 19:16 - 00003718 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2014-09-07 23:02 - 2014-06-08 16:43 - 00000000 ____D () C:\Users\Jonathan\Pictures\Documents\Resume Stuff
2014-09-04 22:36 - 2014-09-09 18:43 - 00097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2014-09-04 22:31 - 2014-09-09 18:43 - 00527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2014-09-04 20:48 - 2014-09-09 18:43 - 00738816 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2014-09-02 16:06 - 2013-08-22 11:38 - 00706016 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2014-09-02 16:06 - 2013-08-22 11:38 - 00105440 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2014-08-31 23:27 - 2014-08-31 23:27 - 00000000 ____D () C:\Users\johnnyboysanders\AppData\Roaming\Real
2014-08-31 23:27 - 2014-08-31 23:27 - 00000000 ____D () C:\Users\johnnyboysanders\AppData\Roaming\Epson
2014-08-31 23:27 - 2014-08-31 23:27 - 00000000 ____D () C:\Users\johnnyboysanders\AppData\Local\Wondershare
2014-08-31 23:27 - 2014-08-31 23:27 - 00000000 ____D () C:\Users\johnnyboysanders\AppData\Local\Hewlett-Packard
2014-08-31 23:27 - 2014-08-31 23:27 - 00000000 ____D () C:\Users\johnnyboysanders\AppData\Local\CyberLink
2014-08-31 23:27 - 2014-08-31 23:26 - 00000000 ____D () C:\Users\johnnyboysanders\AppData\Local\Packages
2014-08-31 23:27 - 2014-08-31 23:26 - 00000000 ____D () C:\Users\johnnyboysanders\AppData\Local\NVIDIA Corporation
2014-08-31 23:26 - 2014-08-31 23:26 - 00001449 _____ () C:\Users\johnnyboysanders\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-08-31 23:26 - 2014-08-31 23:26 - 00000020 ___SH () C:\Users\johnnyboysanders\ntuser.ini
2014-08-31 23:26 - 2014-08-31 23:26 - 00000000 ____D () C:\Users\johnnyboysanders\AppData\Roaming\Synaptics
2014-08-31 23:26 - 2014-08-31 23:26 - 00000000 ____D () C:\Users\johnnyboysanders\AppData\Roaming\Intel
2014-08-31 23:26 - 2014-08-31 23:26 - 00000000 ____D () C:\Users\johnnyboysanders\AppData\Roaming\Adobe
2014-08-31 23:26 - 2014-08-31 23:26 - 00000000 ____D () C:\Users\johnnyboysanders\AppData\Local\VirtualStore
2014-08-31 23:26 - 2014-08-31 23:26 - 00000000 ____D () C:\Users\johnnyboysanders\AppData\Local\NVIDIA
2014-08-31 23:26 - 2014-08-31 23:26 - 00000000 ____D () C:\Users\johnnyboysanders\AppData\Local\Google
2014-08-31 23:26 - 2014-08-31 23:26 - 00000000 ____D () C:\Users\johnnyboysanders
2014-08-31 00:30 - 2013-08-22 10:44 - 00494888 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-08-29 23:09 - 2014-08-25 15:19 - 00000000 ____D () C:\Users\Jonathan\Pictures\Documents\DudeYouCrazy Articles
2014-08-24 22:27 - 2013-10-29 21:12 - 00000000 ____D () C:\Users\Jonathan
2014-08-22 20:42 - 2014-08-28 09:34 - 04148224 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2014-08-18 15:02 - 2014-08-18 15:00 - 154965096 _____ (Hewlett-Packard ) C:\Users\Jonathan\Downloads\sp63417(5).exe
2014-08-18 14:59 - 2013-11-10 19:13 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-08-18 14:59 - 2013-11-10 19:13 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-08-18 14:58 - 2013-08-22 11:36 - 00000000 ___RD () C:\WINDOWS\ToastData
2014-08-18 14:58 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\PolicyDefinitions
2014-08-18 14:58 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\MediaViewer
2014-08-18 14:58 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\FileManager
2014-08-18 14:58 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\Camera

Some content of TEMP:
====================
C:\Users\Jonathan\AppData\Local\Temp\ConsumerInputSetup.exe
C:\Users\Jonathan\AppData\Local\Temp\Extract.exe
C:\Users\Jonathan\AppData\Local\Temp\HPConnectedMusicInstaller_100100071.exe
C:\Users\Jonathan\AppData\Local\Temp\HPConnectedMusicInstaller_100100087.exe
C:\Users\Jonathan\AppData\Local\Temp\lowproc.exe
C:\Users\Jonathan\AppData\Local\Temp\prefetch.exe
C:\Users\Jonathan\AppData\Local\Temp\Quarantine.exe
C:\Users\Jonathan\AppData\Local\Temp\setupm.exe
C:\Users\Jonathan\AppData\Local\Temp\SHSetup.exe
C:\Users\Jonathan\AppData\Local\Temp\siinst.exe
C:\Users\Jonathan\AppData\Local\Temp\SP60492.exe
C:\Users\Jonathan\AppData\Local\Temp\SP62765.exe
C:\Users\Jonathan\AppData\Local\Temp\SP62976.exe
C:\Users\Jonathan\AppData\Local\Temp\SP63065.exe
C:\Users\Jonathan\AppData\Local\Temp\SP63408.exe
C:\Users\Jonathan\AppData\Local\Temp\SP63415.exe
C:\Users\Jonathan\AppData\Local\Temp\SP63417.exe
C:\Users\Jonathan\AppData\Local\Temp\SP63554.exe
C:\Users\Jonathan\AppData\Local\Temp\SP63555.exe
C:\Users\Jonathan\AppData\Local\Temp\SP63599.exe
C:\Users\Jonathan\AppData\Local\Temp\SP63752.exe
C:\Users\Jonathan\AppData\Local\Temp\SP63785.exe
C:\Users\Jonathan\AppData\Local\Temp\SP63786.exe
C:\Users\Jonathan\AppData\Local\Temp\SP63805.exe
C:\Users\Jonathan\AppData\Local\Temp\SP64655.exe
C:\Users\Jonathan\AppData\Local\Temp\SP64726.exe
C:\Users\Jonathan\AppData\Local\Temp\SP64739.exe
C:\Users\Jonathan\AppData\Local\Temp\SP64853.exe
C:\Users\Jonathan\AppData\Local\Temp\SP65000.exe
C:\Users\Jonathan\AppData\Local\Temp\SP65654.exe
C:\Users\Jonathan\AppData\Local\Temp\SP65782.exe
C:\Users\Jonathan\AppData\Local\Temp\SP65792.exe
C:\Users\Jonathan\AppData\Local\Temp\strings.dll
C:\Users\Jonathan\AppData\Local\Temp\stubhelper.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-09-16 23:47

==================== End Of Log ============================

Link to post
Share on other sites

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12-09-2014
Ran by Jonathan at 2014-09-17 10:20:52
Running from C:\Users\Jonathan\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.152 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.09) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.09 - Adobe Systems Incorporated)
Adobe Shockwave Player 11.6 (HKLM-x32\...\Adobe Shockwave Player) (Version: 11.6.6.636 - Adobe Systems, Inc.)
Apple Application Support (HKLM-x32\...\{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}) (Version: 2.3.4 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Ask Toolbar for Epson (HKLM-x32\...\{45504E56-3634-006A-76A7-A758B70C0A06}) (Version: 12.10.6.5363 - APN, LLC) <==== ATTENTION
AuthenTec TrueAPI 64-bit (Version: 1.6.0.87 - AuthenTec, Inc.) Hidden
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Chrome Remote Desktop Host (HKLM-x32\...\{7027908B-573C-4C77-84D4-C488679BCD6F}) (Version: 35.0.1916.52 - Google Inc.)
Cyberlink PhotoDirector (HKLM-x32\...\InstallShield_{39337565-330E-4ab6-A9AE-AC81E0720B10}) (Version: 3.0.4.4824 - CyberLink Corp.)
Cyberlink PhotoDirector (x32 Version: 3.0.4.4824 - CyberLink Corp.) Hidden
CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.5.3304 - CyberLink Corp.)
CyberLink PowerDirector 10 (x32 Version: 10.0.5.3304 - CyberLink Corp.) Hidden
CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 5.0.2.3603 - CyberLink Corp.)
CyberLink YouCam (x32 Version: 5.0.2.3603 - CyberLink Corp.) Hidden
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Definition Update for Microsoft Office 2013 (KB2760587) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{9719DFA1-7CB0-422E-98AE-C77FD3426BE8}) (Version:  - Microsoft)
EA SPORTS Game Face Browser Plugin 1.8.0.0 (HKCU\...\EA SPORTS Game Face Browser Plugin) (Version: 1.8.0.0 - Electronic Arts)
EA Sports™ FIFA World (HKLM-x32\...\{8F9AC744-EEF6-43DB-A4B6-FA1A18F1C640}) (Version: 6.1.0.42598 - Electronic Arts, Inc.)
Epson Customer Participation (HKLM\...\{814FA673-A085-403C-9545-747FC1495069}) (Version: 1.6.0.0 - SEIKO EPSON CORPORATION)
Epson Event Manager (HKLM-x32\...\{2970697F-2A11-4588-8B7F-97322D1CCF3C}) (Version: 3.10.0017 - Seiko Epson Corporation)
EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version:  - Seiko Epson Corporation)
EPSON XP-410 Series Printer Uninstall (HKLM\...\EPSON XP-410 Series) (Version:  - SEIKO EPSON Corporation)
EpsonNet Print (HKLM-x32\...\{3E31400D-274E-4647-916C-2CACC3741799}) (Version: 2.6.0 - SEIKO EPSON CORPORATION)
FIFA 14 Demo (HKLM-x32\...\{7A6577E7-F341-430F-9173-91E14E2DE270}) (Version: 1.0.0.0 - Electronic Arts)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 35.0.1916.114 - Google Inc.)
Google Drive (HKLM-x32\...\{418BAAD1-754D-48B4-B078-46EF4F25AF42}) (Version: 1.15.6556.8063 - Google, Inc.)
Google Talk Plugin (HKLM-x32\...\{217CEB43-6D22-3E1F-A311-DC0D7BFEE0A2}) (Version: 5.4.1.18709 - Google)
Hewlett-Packard ACLM.NET v1.2.1.1 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
HP 3D DriveGuard (HKLM-x32\...\{07F6DC37-0857-4B68-A675-4E35989E85E3}) (Version: 6.0.15.1 - Hewlett-Packard Company)
HP Connected Music (Meridian - installer) (HKLM-x32\...\StartHPConnectedMusic) (Version: 1.0 - Meridian Audio Ltd)
HP Connected Music (Meridian - player) (HKCU\...\HPConnectedMusic) (Version: 1.1 (build 87) hp - Meridian Audio Ltd)
HP CoolSense (HKLM-x32\...\{59F8C5AA-91BD-423D-BF05-09A80F39898F}) (Version: 2.10.62 - Hewlett-Packard Company)
HP Customer Experience Enhancements (x32 Version: 6.0.1.7 - Hewlett-Packard) Hidden
HP Documentation (HKLM-x32\...\{0FEE0C28-850D-4AC0-92E7-57D214134102}) (Version: 1.2.0.0 - Hewlett-Packard)
HP LaserJet Professional P1100-P1560-P1600 Series (HKLM\...\HP LaserJet Professional P1100-P1560-P1600 Series) (Version:  - )
HP MyRoom (HKLM-x32\...\{9C35EDE5-4B0F-45E7-A438-314BA889948E}) (Version: 9.0.0.0 - Hewlett-Packard Company)
HP Postscript Converter (Version: 4.0.4100 - Hewlett-Packard) Hidden
HP Quick Start (HKLM-x32\...\{574F0207-8E98-46CD-8F79-318348C98C46}) (Version: 1.0.4660.30220 - Hewlett-Packard)
HP Recovery Manager (x32 Version: 9.00 - Hewlett-Packard) Hidden
HP Registration Service (HKLM\...\{D1E8F2D7-7794-4245-B286-87ED86C1893C}) (Version: 1.2.6317.4309 - Hewlett-Packard)
HP SimplePass (HKLM-x32\...\{34C821CA-6B55-44A0-8A9B-2EF471D6019E}) (Version: 6.0.100.272 - Hewlett-Packard)
HP Support Assistant (HKLM-x32\...\{EE202411-2C26-49E8-9784-1BC1DBF7DE96}) (Version: 7.0.39.15 - Hewlett-Packard Company)
HP Support Solutions Framework (HKLM-x32\...\{D2F04839-0AD0-4F06-A6B5-6DFF05E27B67}) (Version: 11.50.0019 - Hewlett-Packard Company)
HP System Event Utility (HKLM-x32\...\{F35EE4BC-95E1-4417-BA36-7C32FF24A59A}) (Version: 1.0.11 - Hewlett-Packard Company)
HP Utility Center (HKLM\...\{73237EBB-B26F-4628-8754-4EFE563D72E9}) (Version: 2.1.5 - Hewlett-Packard Company)
HP Wireless Button Driver (HKLM-x32\...\{30B2D1D8-0A07-4B71-9553-0710C5D31E35}) (Version: 1.1.2.1 - Hewlett-Packard Company)
HTC Driver Installer (HKLM-x32\...\{4CEEE5D0-F905-4688-B9F9-ECC710507796}) (Version: 4.10.0.001 - HTC Corporation)
HTC Sync Manager (HKLM-x32\...\{231D0C79-98A6-4693-A366-36DE7D7346EC}) (Version: 3.0.52.0 - HTC)
IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6491.0 - IDT)
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.0.0.1310 - Intel Corporation)
Intel® PRO/Wireless Driver (Version: 16.01.0000.0480 - Intel Corporation) Hidden
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3379 - Intel Corporation)
Intel® PROSet/Wireless Software for Bluetooth® Technology (HKLM\...\{302600C1-6BDF-4FD1-1303-148929CC1385}) (Version: 3.0.1303.0326 - Intel Corporation)
Intel® Rapid Start Technology (HKLM-x32\...\{3D073343-CEEB-4ce7-85AC-A69A7631B5D6}) (Version: 3.0.0.1008 - Intel Corporation)
Intel® Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.2.1000 - Intel Corporation)
Intel® Rapid Storage Technology (Version: 12.8.2.1000 - Intel Corporation) Hidden
Intel® SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 3.0.0.63463 - Intel Corporation)
Intel® Smart Connect Technology 4.0 x64 (HKLM\...\{5D1D65C3-E6D3-4751-AEFD-CAB4E3EB85F2}) (Version: 4.0.41.2072 - Intel)
Intel® Update Manager (x32 Version: 1.6.0.56 - Intel Corporation) Hidden
Intel® WiDi (HKLM\...\{C605440F-2748-435F-9F29-EB1C8134856F}) (Version: 4.1.17.0 - Intel Corporation)
Intel® PROSet/Wireless Software (HKLM-x32\...\{702b0b5f-bcbb-44fc-b613-e96f2a3006ed}) (Version: 16.1.0 - Intel Corporation)
Intel® PROSet/Wireless Software (HKLM-x32\...\{fad118b4-798f-4755-9e67-a622eec95b62}) (Version: 15.6.1 - Intel Corporation)
Intel® PROSet/Wireless WiFi Software (Version: 16.01.0000.0213 - Intel Corporation) Hidden
Intel® Trusted Connect Service Client (Version: 1.27.757.1 - Intel Corporation) Hidden
IPTInstaller (HKLM-x32\...\{08208143-777D-4A06-BB54-71BF0AD1BB70}) (Version: 4.0.9 - HTC)
Jawbone Updater (HKLM-x32\...\Jawbone Updater) (Version: 0.1 - Jawbone)
Malwarebytes Anti-Malware version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation)
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.8.150.1 - McAfee, Inc.)
Microsoft Access MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Access Setup Metadata MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Age of Empires II Trial Version (HKLM-x32\...\Age of Empires II Trial) (Version:  - )
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft DCF MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Excel MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Groove MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft InfoPath MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Lync MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office 32-bit Components 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM UX MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUSR) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - English (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - Español (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared 32-bit MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared Setup Metadata MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKCU\...\OneDriveSetup.exe) (Version: 17.3.1165.0612 - Microsoft Corporation)
Microsoft OneNote MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Outlook MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft PowerPoint MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Publisher MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Word MUI (English) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Mozilla Firefox 30.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 30.0 (x86 en-US)) (Version: 30.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0 - Mozilla)
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden
MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden
Music Manager (HKCU\...\MusicManager) (Version:  - Google, Inc.)
NVIDIA Control Panel 337.88 (Version: 337.88 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 2.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1 - NVIDIA Corporation)
NVIDIA Graphics Driver 337.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 337.88 - NVIDIA Corporation)
NVIDIA Install Application (Version: 2.1002.157.1165 - NVIDIA Corporation) Hidden
NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden
NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden
NVIDIA Optimus Update 14.6.22 (Version: 14.6.22 - NVIDIA Corporation) Hidden
NVIDIA PhysX (x32 Version: 9.13.1220 - NVIDIA Corporation) Hidden
NVIDIA PhysX System Software 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation)
NVIDIA ShadowPlay 14.6.22 (Version: 14.6.22 - NVIDIA Corporation) Hidden
NVIDIA Update 14.6.22 (Version: 14.6.22 - NVIDIA Corporation) Hidden
NVIDIA Update Core (Version: 14.6.22 - NVIDIA Corporation) Hidden
NVIDIA Virtual Audio 1.2.23 (Version: 1.2.23 - NVIDIA Corporation) Hidden
Origin (HKLM-x32\...\Origin) (Version: 9.4.7.2799 - Electronic Arts, Inc.)
Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Photo Gallery (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Pokki (HKCU\...\Pokki) (Version: 0.266.1.155 - Pokki)
Pokki Download Helper (HKCU\...\PokkiDownloadHelper) (Version: 1.3.1.282 - Pokki)
RealDownloader (x32 Version: 1.3.3 - RealNetworks, Inc.) Hidden
RealNetworks - Microsoft Visual C++ 2008 Runtime (x32 Version: 9.0 - RealNetworks, Inc) Hidden
RealNetworks - Microsoft Visual C++ 2010 Runtime (x32 Version: 10.0 - RealNetworks, Inc) Hidden
RealPlayer (HKLM-x32\...\RealPlayer 16.0) (Version: 16.0.3 - RealNetworks)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9200.21239 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.10.1226.2012 - Realtek)
RealUpgrade 1.1 (x32 Version: 1.1.0 - RealNetworks, Inc.) Hidden
Secure Download Manager (HKLM-x32\...\{7682DFED-23C6-44C9-B9FD-109E0B630277}) (Version: 3.1.10 - Kivuto Solutions Inc.)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version:  - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (Version:  - Microsoft) Hidden
SHIELD Streaming (Version: 2.1.214 - NVIDIA Corporation) Hidden
Skype™ 6.14 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.14.104 - Skype Technologies S.A.)
Software Updater (HKLM-x32\...\{A737E18A-5171-40D0-8034-7DD243420081}) (Version: 4.1.1 - SEIKO EPSON CORPORATION)
Spotify (HKCU\...\Spotify) (Version: 0.9.11.27.g2b1a638c - Spotify AB)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Synaptics ClickPad Driver (HKLM\...\SynTPDeinstKey) (Version: 17.0.8.0 - Synaptics Incorporated)
System Update kb70007 (x32 Version: 1.0.0 - MSR) Hidden <==== ATTENTION
Unity Web Player (HKCU\...\UnityWebPlayer) (Version:  - Unity Technologies ApS)
Update for Microsoft Excel 2013 (KB2889861) 64-Bit Edition (HKLM\...\{90150000-0016-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6A34D28A-A780-405D-BF1A-F054542A37C8}) (Version:  - Microsoft)
Update for Microsoft Excel 2013 (KB2889861) 64-Bit Edition (HKLM\...\{90150000-0018-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6A34D28A-A780-405D-BF1A-F054542A37C8}) (Version:  - Microsoft)
Update for Microsoft Excel 2013 (KB2889861) 64-Bit Edition (HKLM\...\{90150000-001B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6A34D28A-A780-405D-BF1A-F054542A37C8}) (Version:  - Microsoft)
Update for Microsoft Excel 2013 (KB2889861) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{6A34D28A-A780-405D-BF1A-F054542A37C8}) (Version:  - Microsoft)
Update for Microsoft Lync 2013 (KB2881083) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{8260F0BF-F234-41FC-AB11-218A9925F77B}) (Version:  - Microsoft)
Update for Microsoft Lync 2013 (KB2889860) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{75FECCEB-66B8-4376-8A25-6137D30D3C93}) (Version:  - Microsoft)
Update for Microsoft Lync 2013 (KB2889860) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{75FECCEB-66B8-4376-8A25-6137D30D3C93}) (Version:  - Microsoft)
Update for Microsoft Lync 2013 (KB2889860) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{75FECCEB-66B8-4376-8A25-6137D30D3C93}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2760249) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{7A4AB8E1-C091-4BD3-B308-844BA6EE752A}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2760344) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{EF77B4A6-DFEC-4010-A87D-9B6BF87FABEC}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2760544) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{62857CDD-2985-4939-91BA-19ED0B0031A5}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2768012) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{0814662C-FD28-4DE0-ACE5-EE50D1D6C8FB}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2817302) 64-Bit Edition (HKLM\...\{90150000-0016-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{E79EFFDB-192A-4D9E-A2DB-C0F774E6EC32}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2817302) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{E79EFFDB-192A-4D9E-A2DB-C0F774E6EC32}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2837644) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{D692E9FF-84BF-4F44-A0EA-D58ECE0D538E}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2863843) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{290D80DE-03AB-47EC-9402-108AF4CE4F66}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2880462) 64-Bit Edition (HKLM\...\{90150000-006E-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{24584DD4-C680-4FEB-A464-D760C7A5B041}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2880462) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{24584DD4-C680-4FEB-A464-D760C7A5B041}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2880462) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{24584DD4-C680-4FEB-A464-D760C7A5B041}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2880478) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{8116ED50-F1E7-49E1-9D8D-421497D34B0F}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2881001) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{DF1B7B95-4A86-4605-A628-556394B5580A}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2881009) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{3033838D-15E0-4199-8CBD-A7F2057AE653}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2881035) 64-Bit Edition (HKLM\...\{90150000-0016-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{885C981B-F1E3-430A-A099-31CA9D28C251}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2881035) 64-Bit Edition (HKLM\...\{90150000-0090-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{885C981B-F1E3-430A-A099-31CA9D28C251}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2881035) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{885C981B-F1E3-430A-A099-31CA9D28C251}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2881039) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{C675FC43-E413-49A7-B3DC-44967B4FE22D}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2881081) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{3BE27413-9FFE-4AB1-9013-344E111E718F}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2883036) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{E919ACF4-A1D7-4CAA-A103-5EB115563721}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2883049) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{39D9DAC1-16A7-430A-B2F3-4D3D000454D0}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2883052) 64-Bit Edition (HKLM\...\{90150000-006E-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{FA74B1B8-D3F4-4B4A-88DE-41CB8CEDAC3F}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2883052) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{FA74B1B8-D3F4-4B4A-88DE-41CB8CEDAC3F}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2883052) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{FA74B1B8-D3F4-4B4A-88DE-41CB8CEDAC3F}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2883060) 64-Bit Edition (HKLM\...\{90150000-001F-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{F9C35D99-CA8E-4D17-B785-66AC654D5664}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2883060) 64-Bit Edition (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}_Office15.PROPLUSR_{18C53DCB-FA98-4A7B-BC2E-6DA30D4E4901}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2883060) 64-Bit Edition (HKLM\...\{90150000-001F-0C0A-1000-0000000FF1CE}_Office15.PROPLUSR_{6E2862B8-C10A-4FD0-9B82-8D9761301AAA}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2889862) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{CC0535B0-340B-4740-A63D-DBBE389DC83A}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2889862) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{CC0535B0-340B-4740-A63D-DBBE389DC83A}) (Version:  - Microsoft)
Update for Microsoft OneDrive for Business (KB2889866) 64-Bit Edition (HKLM\...\{90150000-00BA-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6666C6C6-4AC6-4475-887E-5874B69EB414}) (Version:  - Microsoft)
Update for Microsoft OneDrive for Business (KB2889866) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{6666C6C6-4AC6-4475-887E-5874B69EB414}) (Version:  - Microsoft)
Update for Microsoft OneDrive for Business (KB2889866) 64-Bit Edition (HKLM\...\{90150000-00C1-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6666C6C6-4AC6-4475-887E-5874B69EB414}) (Version:  - Microsoft)
Update for Microsoft OneDrive for Business (KB2889866) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{6666C6C6-4AC6-4475-887E-5874B69EB414}) (Version:  - Microsoft)
Update for Microsoft OneNote 2013 (KB2881082) 64-Bit Edition (HKLM\...\{90150000-00A1-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{BFD66A5D-F608-441E-9282-41E13F5E7412}) (Version:  - Microsoft)
Update for Microsoft OneNote 2013 (KB2881082) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{BFD66A5D-F608-441E-9282-41E13F5E7412}) (Version:  - Microsoft)
Update for Microsoft OneNote 2013 (KB2881082) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{BFD66A5D-F608-441E-9282-41E13F5E7412}) (Version:  - Microsoft)
Update for Microsoft Outlook 2013 (KB2880470) 64-Bit Edition (HKLM\...\{90150000-001A-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{34A169EC-990A-4DAE-AC65-9F981158B7DB}) (Version:  - Microsoft)
Update for Microsoft Outlook 2013 (KB2880470) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{34A169EC-990A-4DAE-AC65-9F981158B7DB}) (Version:  - Microsoft)
Update for Microsoft PowerPoint 2013 (KB2889847) 64-Bit Edition (HKLM\...\{90150000-0018-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{7F1008C2-8C87-497F-B6D8-56B53DA0FAB3}) (Version:  - Microsoft)
Update for Microsoft PowerPoint 2013 (KB2889847) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{7F1008C2-8C87-497F-B6D8-56B53DA0FAB3}) (Version:  - Microsoft)
Update for Microsoft Publisher 2013 (KB2880999) 64-Bit Edition (HKLM\...\{90150000-0019-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{C07147B9-CC0B-4CC1-A107-A705889A54F2}) (Version:  - Microsoft)
Update for Microsoft Publisher 2013 (KB2880999) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{C07147B9-CC0B-4CC1-A107-A705889A54F2}) (Version:  - Microsoft)
Update for Microsoft Visio Viewer 2013 (KB2817301) 64-Bit Edition (HKLM\...\{90150000-006E-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{8E5CD68A-CDF8-4930-88DF-B7778B1871A9}) (Version:  - Microsoft)
Update for Microsoft Visio Viewer 2013 (KB2817301) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{8E5CD68A-CDF8-4930-88DF-B7778B1871A9}) (Version:  - Microsoft)
Update for Microsoft Word 2013 (KB2878319) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{BC51FE30-3A56-4802-8D9E-E9BC05B56B49}) (Version:  - Microsoft)
Update for Microsoft Word 2013 (KB2883058) 64-Bit Edition (HKLM\...\{90150000-001A-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{650D4F00-56F1-4E8F-ABFD-7C842253C96A}) (Version:  - Microsoft)
Update for Microsoft Word 2013 (KB2883058) 64-Bit Edition (HKLM\...\{90150000-001B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{650D4F00-56F1-4E8F-ABFD-7C842253C96A}) (Version:  - Microsoft)
Update for Microsoft Word 2013 (KB2883058) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{650D4F00-56F1-4E8F-ABFD-7C842253C96A}) (Version:  - Microsoft)
Update for Microsoft Word 2013 (KB2883058) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{650D4F00-56F1-4E8F-ABFD-7C842253C96A}) (Version:  - Microsoft)
Update Installer for WildTangent Games App (x32 Version:  - WildTangent) Hidden
Validity WBF DDK (HKLM\...\{21498212-1146-4540-8A81-6A1328BA19F2}) (Version: 4.5.228.0 - Validity Sensors, Inc.)
Windows Live Communications Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live UX Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-1222004918-1017807200-348020018-1002_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\Jonathan\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-1222004918-1017807200-348020018-1002_Classes\CLSID\{73CE5602-6DCC-46CD-AF30-0017B80383E0}\InprocServer32 -> %LOCALAPPDATA%\Pokki\ocdeskband_1.dll No File
CustomCLSID: HKU\S-1-5-21-1222004918-1017807200-348020018-1002_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Jonathan\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1222004918-1017807200-348020018-1002_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Jonathan\AppData\Local\Microsoft\SkyDrive\17.3.1165.0612\amd64\FileSyncApi64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1222004918-1017807200-348020018-1002_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\Jonathan\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll (Google Inc.)

==================== Restore Points  =========================

28-08-2014 13:59:05 Windows Update
04-09-2014 21:34:39 Scheduled Checkpoint
09-09-2014 23:09:10 Windows Update

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 09:25 - 2013-08-22 09:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask
Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
Task: {230595A8-BF81-4542-A2FB-07005CB497CE} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network => Sc.exe start wuauserv
Task: {25B1BE77-FE26-46BA-AAF0-E684FC9FEEF7} - System32\Tasks\EPSON XP-410 Series Update {F2F87F9F-568D-4F44-8B56-360226D5D59E} => C:\Windows\system32\spool\DRIVERS\x64\3\E_ITSLAE.EXE [2013-02-28] (SEIKO EPSON CORPORATION)
Task: {2C981ECD-2CF8-4916-AFAD-C27B9886139B} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\Windows\system32\cleanmgr.exe [2014-02-22] (Microsoft Corporation)
Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate
Task: {32A9D436-7E25-4548-8B43-8E2DE2853FD9} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2013-12-12] (Hewlett-Packard Company)
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation)
Task: {3976D10B-A987-4BFA-8619-60FD026B320E} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1222004918-1017807200-348020018-1002UA => C:\Users\Jonathan\AppData\Local\Google\Update\GoogleUpdate.exe [2013-08-01] (Google Inc.)
Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation)
Task: {40043980-1B56-412C-ACDC-F2D061D2A1BC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-08-01] (Google Inc.)
Task: {4638B363-BAB3-40D9-BB15-73B2BB829E10} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {48E7407A-5E00-4170-946F-54E6E3D7C1DA} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_CN343BQJ54 => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2014-03-21] (Hewlett-Packard)
Task: {49199FFE-84C6-4DC1-8378-5FFF13FE0569} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-1222004918-1017807200-348020018-1002 => %localappdata%\Microsoft\SkyDrive\SkyDrive.exe
Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance
Task: {4F50065E-0803-4FF1-B233-CC1C751A0F47} - System32\Tasks\HPCeeScheduleForJonathan => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-14] (Hewlett-Packard)
Task: {52C024E2-B60D-4373-9CC0-7EFB7030CFF0} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-08-01] (Google Inc.)
Task: {5B74BAD4-4E21-4E39-92E1-BE2C4AF67EB9} - System32\Tasks\RealDownloaderDownloaderScheduledTaskS-1-5-21-1222004918-1017807200-348020018-1002 => C:\Program Files (x86)\RealNetworks\RealDownloader\recordingmanager.exe [2013-08-14] (RealNetworks, Inc.)
Task: {682BF7A8-0AD1-4CE5-BFE1-8887593F8E65} - System32\Tasks\ISM-UpdateService-e57b59e7-5862-4250-9ce0-76fb411dc0d2 => C:\Program Files (x86)\Intel\Intel® Update Manager\bin\Bootstrap.exe [2013-03-08] (Intel Corporation)
Task: {684D2187-2181-488F-A7DF-5E3B7A5C65EF} - System32\Tasks\EPSON XP-410 Series Invitation {F2F87F9F-568D-4F44-8B56-360226D5D59E} => C:\Windows\system32\spool\DRIVERS\x64\3\E_ITSLAE.EXE [2013-02-28] (SEIKO EPSON CORPORATION)
Task: {686A0FB8-3A5D-4084-BF84-AD4E22DDFDD5} - System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-1222004918-1017807200-348020018-1002 => C:\Program Files (x86)\RealNetworks\RealDownloader\realupgrade.exe [2013-08-14] (RealNetworks, Inc.)
Task: {6A8C8FB4-6EDE-471F-9B4C-BDF9BA9BD61F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2014-03-21] (Hewlett-Packard)
Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup
Task: {6BC51CD4-15A1-4182-88EE-DEFA1BAEEEE0} - System32\Tasks\ISM-UpdateService-e57b59e7-5862-4250-9ce0-76fb411dc0d2-Logon => C:\Program Files (x86)\Intel\Intel® Update Manager\bin\Bootstrap.exe [2013-03-08] (Intel Corporation)
Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task
Task: {6F32E4E4-7E1E-47C6-B74B-56EA5BB1E074} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics
Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask
Task: {751F428A-1451-480F-9831-0F1EDAB57B83} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Validation
Task: {761F8006-ADE8-41A9-8DB6-579C2B523100} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
Task: {8290E4F8-A382-41CB-BC94-F9350D3F9E2A} - System32\Tasks\Microsoft Office 15 Sync Maintenance for CRACKER-Jonathan Cracker => C:\Program Files\Microsoft Office\Office15\MsoSync.exe [2014-07-27] (Microsoft Corporation)
Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task
Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work
Task: {A1536F79-6C37-41C9-A806-C89FC9DC2E42} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1222004918-1017807200-348020018-1002Core => C:\Users\Jonathan\AppData\Local\Google\Update\GoogleUpdate.exe [2013-08-01] (Google Inc.)
Task: {AD7BD81E-0699-4EF3-81FB-FE17C3359010} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload
Task: {AEF891B0-6C93-4A63-A679-4CDAB9E94346} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-11-01] (Synaptics Incorporated)
Task: {BCC7135F-56DE-43E2-A1E2-DFC2783E6169} - \SN.Booster-S-86014281 No Task File <==== ATTENTION
Task: {C4DD2BD0-50AD-45FB-8914-D5D753FBB909} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {CE46C495-D254-4DB5-9FC0-B90D3FF8A913} - System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-1222004918-1017807200-348020018-1002 => C:\Program Files (x86)\RealNetworks\RealDownloader\realupgrade.exe [2013-08-14] (RealNetworks, Inc.)
Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask
Task: {D1FBD3B7-348F-4629-ABE5-E6EED9697141} - System32\Tasks\Intel® Rapid Start Technology Manager => C:\Program Files (x86)\Intel\irstrt\RapidStartConfig.exe [2013-02-07] (Intel)
Task: {D38F3789-6A9D-4685-82A9-EFB0F8945723} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation)
Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing
Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization
Task: {E5AF79AA-D3AD-4984-A0EE-981469ECB18C} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1222004918-1017807200-348020018-1002 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2013-08-14] (RealNetworks, Inc.)
Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE
Task: {EA0AC3F7-9D14-44DE-8CC5-6A232538CB85} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {ED20A646-F656-4977-9E5C-54DA4EED5B10} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-09] (Adobe Systems Incorporated)
Task: {EDAE99CE-3DE0-4815-81DB-6A04546E81FF} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Management
Task: {EFDD959D-D7EB-437C-8F37-24D916247191} - System32\Tasks\Hewlett-Packard\HP CoolSense\HP CoolSense Start at Logon => C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe [2012-11-05] (Hewlett-Packard Development Company, L.P.)
Task: {EFF4D2E3-7FE4-4AB6-B364-C02E3D95F7EC} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2014-09-09] (Microsoft Corporation)
Task: {F17DF644-97E1-4255-BF3F-E8D195B9AF98} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2014-03-21] (Hewlett-Packard)
Task: {F3F9BC77-B2D9-4E8A-912D-537415292BDE} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis Install => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {F5542685-AD61-4E04-8FDD-2B020B949017} - System32\Tasks\YCMServiceAgent => C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe [2013-12-03] (CyberLink Corp.)
Task: {F9F510A7-3086-455C-B42A-B882FAB669DB} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1222004918-1017807200-348020018-1002 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2013-08-14] (RealNetworks, Inc.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\EPSON XP-410 Series Invitation {F2F87F9F-568D-4F44-8B56-360226D5D59E}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_ITSLAE.EXE
Task: C:\WINDOWS\Tasks\EPSON XP-410 Series Update {F2F87F9F-568D-4F44-8B56-360226D5D59E}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_ITSLAE.EXE
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1222004918-1017807200-348020018-1002Core.job => C:\Users\Jonathan\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1222004918-1017807200-348020018-1002UA.job => C:\Users\Jonathan\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForJonathan.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\WINDOWS\Tasks\SN.Booster-S-86014281.job => c:\programdata\excellent4app\sn.booster\SN.Booster.exe <==== ATTENTION

==================== Loaded Modules (whitelisted) =============

2013-09-05 02:36 - 2014-05-19 22:44 - 00014280 _____ () C:\Program Files\NVIDIA Corporation\CoProcManager\detoured.dll
2013-10-29 21:09 - 2014-05-19 21:25 - 00116568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2014-06-23 10:27 - 2012-08-31 15:03 - 00288768 _____ () C:\WINDOWS\System32\HP1100LM.DLL
2014-06-23 10:22 - 2012-08-31 15:02 - 00074240 _____ () C:\WINDOWS\system32\spool\PRTPROCS\x64\HP1100PP.DLL
2013-02-13 13:35 - 2013-02-13 13:35 - 00180200 _____ () C:\Program Files\Intel\Intel® Smart Connect Technology Agent\iSCTAgent.exe
2013-02-13 13:35 - 2013-02-13 13:35 - 00060392 _____ () C:\Program Files\Intel\Intel® Smart Connect Technology Agent\NetworkHeuristic.dll
2013-10-17 15:27 - 2013-10-17 15:27 - 00166912 _____ () C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
2013-08-14 15:19 - 2013-08-14 15:19 - 00039056 _____ () C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
2014-09-16 23:21 - 2014-09-16 23:21 - 00018944 _____ () C:\WINDOWS\Microsoft\SystemUpdatekb70007\WindowsUpdater.exe
2014-08-12 09:54 - 2014-08-12 09:54 - 08894120 _____ () C:\Program Files\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2014-03-21 15:07 - 2014-03-21 15:07 - 00821600 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\HTC Sync\adb.exe
2014-09-09 22:55 - 2014-09-09 22:55 - 00183296 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20605_x64__8wekyb3d8bbwe\ErrorReporting.dll
2013-02-07 12:19 - 2013-02-07 12:19 - 04073768 _____ () C:\Program Files (x86)\HP SimplePass\IEWebSiteLogon.exe
2014-08-11 10:48 - 2014-08-11 10:48 - 00127488 _____ () C:\Users\Jonathan\AppData\Local\Packages\Facebook.Facebook_8xx8rvfyw5nnt\AC\Microsoft\CLR_v4.0\NativeImages\Facebook.Ba70e54e13#\13f360b542c5254f774716c360eea3eb\Facebook.BackgroundTasks.ni.dll
2014-04-14 14:20 - 2014-04-14 14:20 - 01782784 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Windows.App640a3541#\43b92b6dbc9eb61983817ea32346d510\Windows.ApplicationModel.ni.dll
2014-09-09 21:03 - 2014-09-09 21:03 - 01134592 _____ () C:\Users\Jonathan\AppData\Local\Packages\Facebook.Facebook_8xx8rvfyw5nnt\AC\Microsoft\CLR_v4.0\NativeImages\Facebook-Win8-Base\b163587dcde2ea20f663d14d13a4933c\Facebook-Win8-Base.ni.dll
2014-09-09 21:03 - 2014-09-09 21:03 - 00619520 _____ () C:\Users\Jonathan\AppData\Local\Packages\Facebook.Facebook_8xx8rvfyw5nnt\AC\Microsoft\CLR_v4.0\NativeImages\Facebook-Base\f1a37de059bbeb717c841e37998a03b2\Facebook-Base.ni.dll
2014-09-09 21:04 - 2014-09-09 21:04 - 05790720 _____ () C:\Users\Jonathan\AppData\Local\Packages\Facebook.Facebook_8xx8rvfyw5nnt\AC\Microsoft\CLR_v4.0\NativeImages\Facebook-Services\df4d4ea3fdec6633a92fbbfd7af93817\Facebook-Services.ni.dll
2014-09-09 21:04 - 2014-09-09 21:04 - 01112576 _____ () C:\Users\Jonathan\AppData\Local\Packages\Facebook.Facebook_8xx8rvfyw5nnt\AC\Microsoft\CLR_v4.0\NativeImages\Facebook-Models\f1b5241962d1863ae51a97dd292c740a\Facebook-Models.ni.dll
2014-04-14 14:20 - 2014-04-14 14:20 - 01278464 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Windows.Storage\ba65f033632f4fc480cc45bc72bf25e4\Windows.Storage.ni.dll
2014-03-21 15:05 - 2014-03-21 15:05 - 00031080 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\DbAccess.dll
2014-03-21 15:06 - 2014-03-21 15:06 - 00607376 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\sqlite3.dll
2014-03-21 15:06 - 2014-03-21 15:06 - 00059752 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\NAdvLog.dll
2014-03-21 15:06 - 2014-03-21 15:06 - 00036216 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\NFileCacheDBAccess.dll
2014-03-21 15:06 - 2014-03-21 15:06 - 00080248 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\ninstallerhelper.dll
2014-03-21 15:08 - 2014-03-21 15:08 - 00129376 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\zlib1.dll
2014-03-21 15:09 - 2014-03-21 15:09 - 00223592 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\DevConnMon.dll
2014-06-13 00:10 - 2014-05-08 11:45 - 00061952 _____ () C:\WINDOWS\Microsoft\SystemUpdatekb70007\InstallerLibrary.dll
2014-06-13 00:10 - 2014-05-08 11:45 - 00016896 _____ () C:\WINDOWS\Microsoft\SystemUpdatekb70007\Installer.dll
2014-09-16 23:21 - 2014-09-16 23:22 - 00086528 _____ () C:\Program Files (x86)\MSR\Privoxy\mgwz.dll
2014-08-12 09:55 - 2014-08-12 09:55 - 08894120 _____ () C:\Program Files (x86)\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2014-09-16 23:23 - 2014-09-16 23:23 - 00098816 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\win32api.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 00110080 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\pywintypes27.dll
2014-09-16 23:23 - 2014-09-16 23:23 - 00364544 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\pythoncom27.dll
2014-09-16 23:23 - 2014-09-16 23:23 - 00045568 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\_socket.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 01159680 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\_ssl.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 00320512 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\win32com.shell.shell.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 00713216 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\_hashlib.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 01175040 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\wx._core_.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 00805888 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\wx._gdi_.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 00811008 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\wx._windows_.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 01062400 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\wx._controls_.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 00735232 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\wx._misc_.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 00128512 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\_elementtree.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 00127488 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\pyexpat.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 00557056 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\pysqlite2._sqlite.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 00087552 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\_ctypes.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 00119808 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\win32file.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 00108544 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\win32security.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 00018432 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\win32event.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 00038912 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\win32inet.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 00070656 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\wx._html2.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 00167936 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\win32gui.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 00011264 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\win32crypt.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 00027136 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\_multiprocessing.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 00122368 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\wx._wizard.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 00010240 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\select.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 00024064 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\win32pipe.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 00686080 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\unicodedata.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 00025600 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\win32pdh.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 00525640 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\windows._lib_cacheinvalidation.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 00035840 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\win32process.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 00017408 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\win32profile.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 00022528 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\win32ts.pyd
2014-09-16 23:23 - 2014-09-16 23:23 - 00078336 _____ () C:\Users\Jonathan\AppData\Local\Temp\_MEI74202\wx._animate.pyd
2014-03-24 21:41 - 2013-07-24 09:24 - 00137728 _____ () C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\CBSCreateVC.dll
2013-07-23 03:42 - 2013-02-15 20:17 - 01199576 _____ () C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\ACE.dll
2014-06-13 00:15 - 2014-06-13 00:16 - 03852912 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
2013-11-01 22:44 - 2014-05-19 22:44 - 00012120 _____ () C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\detoured.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\WINDOWS\SysWOW64\zlib.dll:DocumentSummaryInformation
AlternateDataStreams: C:\WINDOWS\SysWOW64\zlib.dll:SummaryInformation
AlternateDataStreams: C:\WINDOWS\SysWOW64\zlib.dll:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d}
AlternateDataStreams: C:\Users\Jonathan\SkyDrive:ms-properties
AlternateDataStreams: C:\Users\Jonathan\SkyDrive.old:ms-properties

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

HKLM\...\StartupApproved\Run32: => "APSDaemon"
HKCU\...\StartupApproved\Run: => "GoogleChromeAutoLaunch_67B49362D3A8C1AAF36B88B38FC33840"
HKCU\...\StartupApproved\Run: => "SkyDrive"
HKCU\...\StartupApproved\Run: => "MusicManager"
HKCU\...\StartupApproved\Run: => "Spotify Web Helper"

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (09/17/2014 10:21:09 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: SkyDrive.exe, version: 17.3.1165.612, time stamp: 0x539a47b7
Faulting module name: KERNELBASE.dll, version: 6.3.9600.17055, time stamp: 0x532943a3
Exception code: 0x80000003
Fault offset: 0x000b3425
Faulting process id: 0x11a4
Faulting application start time: 0xSkyDrive.exe0
Faulting application path: SkyDrive.exe1
Faulting module path: SkyDrive.exe2
Report Id: SkyDrive.exe3
Faulting package full name: SkyDrive.exe4
Faulting package-relative application ID: SkyDrive.exe5

Error: (09/17/2014 10:18:55 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: SkyDrive.exe, version: 17.3.1165.612, time stamp: 0x539a47b7
Faulting module name: KERNELBASE.dll, version: 6.3.9600.17055, time stamp: 0x532943a3
Exception code: 0x80000003
Fault offset: 0x000b3425
Faulting process id: 0x255c
Faulting application start time: 0xSkyDrive.exe0
Faulting application path: SkyDrive.exe1
Faulting module path: SkyDrive.exe2
Report Id: SkyDrive.exe3
Faulting package full name: SkyDrive.exe4
Faulting package-relative application ID: SkyDrive.exe5

Error: (09/16/2014 11:42:57 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program backgroundTaskHost.exe version 6.3.9600.16384 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: 1dec

Start Time: 01cfd228c2129d13

Termination Time: 4294967295

Application Path: C:\WINDOWS\system32\backgroundTaskHost.exe

Report Id: b58bac73-3e1c-11e4-becc-6817296bc212

Faulting package full name: Facebook.Facebook_1.4.0.9_x64__8xx8rvfyw5nnt

Faulting package-relative application ID: App

Error: (09/16/2014 11:09:19 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: CRACKER)
Description: Activation of app Microsoft.BingTravel_8wekyb3d8bbwe!AppexTravel failed with error: -2147467259 See the Microsoft-Windows-TWinUI/Operational log for additional information.

Error: (09/16/2014 11:09:15 PM) (Source: MsiInstaller) (EventID: 1024) (User: CRACKER)
Description: Product: Adobe Reader XI (11.0.08) - Update '{AC76BA86-7AD7-0000-2550-7A8C40011009}' could not be installed. Error code 1625. Windows Installer can create logs to help troubleshoot issues with installing software packages. Use the following link for instructions on turning on logging support: http://go.microsoft.com/fwlink/?LinkId=23127

Error: (09/16/2014 11:09:06 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: CRACKER)
Description: Activation of app winstore_cw5n1h2txyewy!Windows.Store failed with error: -2147467259 See the Microsoft-Windows-TWinUI/Operational log for additional information.

Error: (09/16/2014 11:09:00 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: CRACKER)
Description: Activation of app winstore_cw5n1h2txyewy!Windows.Store failed with error: -2147467259 See the Microsoft-Windows-TWinUI/Operational log for additional information.

Error: (09/16/2014 11:07:58 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: CRACKER)
Description: Activation of app microsoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.Mail failed with error: -2147467259 See the Microsoft-Windows-TWinUI/Operational log for additional information.

Error: (09/16/2014 11:07:57 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: CRACKER)
Description: Activation of app microsoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.Mail failed with error: -2147467259 See the Microsoft-Windows-TWinUI/Operational log for additional information.

Error: (09/16/2014 11:07:55 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: CRACKER)
Description: Activation of app microsoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.Mail failed with error: -2147467259 See the Microsoft-Windows-TWinUI/Operational log for additional information.


System errors:
=============
Error: (09/16/2014 11:22:49 PM) (Source: BTHUSB) (EventID: 30) (User: )
Description: The local adapter does not support an important Low Energy controller state.  The minimum required supported state mask is 0x1f7fffff, got 0x1f3fffff.  Low Energy functionality will be disabled.

Error: (09/16/2014 11:06:14 PM) (Source: BTHUSB) (EventID: 30) (User: )
Description: The local adapter does not support an important Low Energy controller state.  The minimum required supported state mask is 0x1f7fffff, got 0x1f3fffff.  Low Energy functionality will be disabled.

Error: (09/16/2014 09:59:15 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The BrcmSetSecurity service terminated unexpectedly.  It has done this 1 time(s).

Error: (09/16/2014 09:59:03 PM) (Source: BTHUSB) (EventID: 30) (User: )
Description: The local adapter does not support an important Low Energy controller state.  The minimum required supported state mask is 0x1f7fffff, got 0x1f3fffff.  Low Energy functionality will be disabled.

Error: (09/15/2014 04:22:51 PM) (Source: Schannel) (EventID: 4116) (User: CRACKER)
Description: The certificate received from the remote server does not contain the expected name. It is therefore not possible to determine whether we are connecting to the correct server. The server name we were expecting is relay.l.google.com. The SSL connection request has failed. The attached data contains the server certificate.

Error: (09/15/2014 04:22:51 PM) (Source: Schannel) (EventID: 4120) (User: CRACKER)
Description: A fatal alert was generated and sent to the remote endpoint. This may result in termination of the connection. The TLS protocol defined fatal error code is 43. The Windows SChannel error state is 552.

Error: (09/15/2014 04:22:51 PM) (Source: Schannel) (EventID: 4116) (User: CRACKER)
Description: The certificate received from the remote server does not contain the expected name. It is therefore not possible to determine whether we are connecting to the correct server. The server name we were expecting is relay.l.google.com. The SSL connection request has failed. The attached data contains the server certificate.

Error: (09/15/2014 04:22:51 PM) (Source: Schannel) (EventID: 4120) (User: CRACKER)
Description: A fatal alert was generated and sent to the remote endpoint. This may result in termination of the connection. The TLS protocol defined fatal error code is 43. The Windows SChannel error state is 552.

Error: (09/12/2014 00:16:54 AM) (Source: DCOM) (EventID: 10010) (User: CRACKER)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}

Error: (09/12/2014 00:16:54 AM) (Source: DCOM) (EventID: 10010) (User: CRACKER)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}


Microsoft Office Sessions:
=========================
Error: (09/17/2014 10:21:09 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: SkyDrive.exe17.3.1165.612539a47b7KERNELBASE.dll6.3.9600.17055532943a380000003000b342511a401cfd282961623a6C:\Users\Jonathan\AppData\Local\Microsoft\SkyDrive\SkyDrive.exeC:\WINDOWS\SYSTEM32\KERNELBASE.dllddd02112-3e75-11e4-becc-6817296bc212

Error: (09/17/2014 10:18:55 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: SkyDrive.exe17.3.1165.612539a47b7KERNELBASE.dll6.3.9600.17055532943a380000003000b3425255c01cfd282252a889fC:\Users\Jonathan\AppData\Local\Microsoft\SkyDrive\SkyDrive.exeC:\WINDOWS\SYSTEM32\KERNELBASE.dll8e4de4ae-3e75-11e4-becc-6817296bc212

Error: (09/16/2014 11:42:57 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: backgroundTaskHost.exe6.3.9600.163841dec01cfd228c2129d134294967295C:\WINDOWS\system32\backgroundTaskHost.exeb58bac73-3e1c-11e4-becc-6817296bc212Facebook.Facebook_1.4.0.9_x64__8xx8rvfyw5nntApp

Error: (09/16/2014 11:09:19 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: CRACKER)
Description: Microsoft.BingTravel_8wekyb3d8bbwe!AppexTravel-2147467259

Error: (09/16/2014 11:09:15 PM) (Source: MsiInstaller) (EventID: 1024) (User: CRACKER)
Description: Adobe Reader XI (11.0.08){AC76BA86-7AD7-0000-2550-7A8C40011009}1625(NULL)(NULL)(NULL)

Error: (09/16/2014 11:09:06 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: CRACKER)
Description: winstore_cw5n1h2txyewy!Windows.Store-2147467259

Error: (09/16/2014 11:09:00 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: CRACKER)
Description: winstore_cw5n1h2txyewy!Windows.Store-2147467259

Error: (09/16/2014 11:07:58 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: CRACKER)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.Mail-2147467259

Error: (09/16/2014 11:07:57 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: CRACKER)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.Mail-2147467259

Error: (09/16/2014 11:07:55 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: CRACKER)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.Mail-2147467259


CodeIntegrity Errors:
===================================
  Date: 2014-09-13 22:30:44.973
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2014-09-09 21:57:47.484
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2014-09-09 21:57:47.403
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2014-09-09 21:57:17.211
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2014-09-09 21:57:17.136
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2014-09-09 21:57:16.965
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2014-09-09 21:57:16.889
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2014-09-09 21:08:25.458
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2014-09-09 21:08:25.384
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2014-09-09 21:07:24.229
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info ===========================

Processor: Intel® Core i7-4700MQ CPU @ 2.40GHz
Percentage of memory in use: 41%
Total physical RAM: 8124.02 MB
Available physical RAM: 4779.74 MB
Total Pagefile: 9404.02 MB
Available Pagefile: 5547.14 MB
Total Virtual: 131072 MB
Available Virtual: 131071.79 MB

==================== Drives ================================

Drive c: (Windows) (Fixed) (Total:904.68 GB) (Free:783.99 GB) NTFS ==>[system with boot components (obtained from reading drive)]
Drive d: (RECOVERY) (Fixed) (Total:25.72 GB) (Free:2.56 GB) NTFS ==>[system with boot components (obtained from reading drive)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 1E1F4777)

Partition: GPT Partition Type.

========================================================
Disk: 1 (Size: 3.8 GB) (Disk ID: 7D11F384)

Partition: GPT Partition Type.

==================== End Of Log ============================

Link to post
Share on other sites

By doing a quick Google search, I saw other people have been dealing with the same proxy as I'm sure you know: https://forums.malwarebytes.org/index.php?/topic/149347-remove-proxy-server-1270018118https1270018118/

 

I understand that that is probably the culprit, but does that also cause my internet not to work when I quarantine all the malware after a malwarebytes scan?

Link to post
Share on other sites

Thanks for the update, continue please:

 

Download attached fixlist.txt file and save it to the Desktop, or the folder you saved FRST into.

NOTE. It's important that both FRST and fixlist.txt are in the same location or the fix will not work.

 

Run FRST and press the Fix button just once and wait.

The tool will make a log on the Desktop (Fixlog.txt) or the folder it was ran from. Please post it to your reply.

 

Next,

 

Open Malwarebytes Anti-Malware, from the Dashboard please Check for Updates by clicking the Update Now... link

When the update completes select > Settings > Detection and Protection > Enable Scan for rootkit and Under Non Malware Protection set both PUP and PUM to Treat detections as malware.

 

 

Click on the SCAN button and run a Threat Scan with Malwarebytes Anti-Malware by clicking the Scan Now>> button.

 

When the scan is complete, if there have been detections, click Apply Actions to allow MBAM to clean what was detected.

 

 

In most cases, a restart will be required.

 

 

Wait for the prompt to restart the computer to appear, then click on Yes.

 

 

Once completed please click on the History > Application Logs and find your scan log and open it and then click on the "copy to clipboard" button and post back the results on your next reply.

 

Next,

 

Download Microsoft's " Malicious Software Removal Tool" and save direct to the desktop

Ensure to get the correct version for your system....

32 Bit version:

https://www.microsoft.com/downloads/en/confirmation.aspx?FamilyId=AD724AE0-E72D-4F54-9AB3-75B8EB148356&displaylang=en

64 Bit version:

https://www.microsoft.com/downloads/en/confirmation.aspx?FamilyId=585D2BDE-367F-495E-94E7-6349F4EFFC74&displaylang=en'>https://www.microsoft.com/downloads/en/confirmation.aspx?FamilyId=585D2BDE-367F-495E-94E7-6349F4EFFC74&displaylang=en

 

Right click on the Tool, select “Run as Administrator” the tool will expand to the options Window

In the "Scan Type" window, select Quick Scan

Perform a scan and  Click Finish when the scan is done.

Retrieve the MSRT log as follows, and post it in your next reply:

 

1) Select the Windows key and R key together to open the "Run" function

2) Type or Copy/Paste the following command to the "Run Line" and Press Enter

notepad c:\windows\debug\mrt.log

 

Let me see those logs in your next reply, also give an update on any remaining issues or concerns....

 

Kevin

 

fixlist.txt

Link to post
Share on other sites

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 12-09-2014
Ran by Jonathan at 2014-09-18 09:14:28 Run:1
Running from C:\Users\Jonathan\Downloads
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
HKLM-x32\...\Run: [fst_us_90] => [X]
HKU\S-1-5-21-1222004918-1017807200-348020018-1002\...\MountPoints2: {3fba3bdb-9336-11e3-bea5-6817296bc212} - "E:\HTC_Sync_Manager_PC.exe"
HKU\S-1-5-21-1222004918-1017807200-348020018-1002\...\MountPoints2: {675698ee-f748-11e3-bec1-6817296bc212} - "E:\SISetup.exe"
HKU\S-1-5-21-1222004918-1017807200-348020018-1002\...\MountPoints2: {8e20cb98-9c44-11e3-beaa-6817296bc212} - "E:\HTC_Sync_Manager_PC.exe"
HKU\S-1-5-21-1222004918-1017807200-348020018-1002\...\MountPoints2: {a82a09bc-b4e6-11e3-beb4-6817296bc212} - "F:\HTC_Sync_Manager_PC.exe"
HKU\S-1-5-21-1222004918-1017807200-348020018-1002\...\MountPoints2: {a82a09e4-b4e6-11e3-beb4-6817296bc212} - "E:\HTC_Sync_Manager_PC.exe"
HKU\S-1-5-21-1222004918-1017807200-348020018-1002\...\MountPoints2: {de09e36f-39a4-11e3-be82-6817296bc212} - "E:\HTC_Sync_Manager_PC.exe"
HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {3fba3bdb-9336-11e3-bea5-6817296bc212} - "E:\HTC_Sync_Manager_PC.exe"
HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {675698ee-f748-11e3-bec1-6817296bc212} - "E:\SISetup.exe"
HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {8e20cb98-9c44-11e3-beaa-6817296bc212} - "E:\HTC_Sync_Manager_PC.exe"
HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {a82a09bc-b4e6-11e3-beb4-6817296bc212} - "F:\HTC_Sync_Manager_PC.exe"
HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {a82a09e4-b4e6-11e3-beb4-6817296bc212} - "E:\HTC_Sync_Manager_PC.exe"
HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {de09e36f-39a4-11e3-be82-6817296bc212} - "E:\HTC_Sync_Manager_PC.exe"
ShellIconOverlayIdentifiers:  SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  No File
ShellIconOverlayIdentifiers:  SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  No File
ShellIconOverlayIdentifiers:  SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  No File
ShellIconOverlayIdentifiers-x32:  SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  No File
ShellIconOverlayIdentifiers-x32:  SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  No File
ShellIconOverlayIdentifiers-x32:  SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  No File
ProxyEnable: Internet Explorer proxy is enabled.
ProxyServer: http=127.0.0.1:8118;https=127.0.0.1:8118
FF NetworkProxy: "http", "127.0.0.1"
FF NetworkProxy: "http_port", 8118
FF NetworkProxy: "ssl", "127.0.0.1"
FF NetworkProxy: "ssl_port", 8118
FF NetworkProxy: "type", 1
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
C:\Users\Jonathan\AppData\Local\Temp\ConsumerInputSetup.exe
C:\Users\Jonathan\AppData\Local\Temp\Extract.exe
C:\Users\Jonathan\AppData\Local\Temp\HPConnectedMusicInstaller_100100071.exe
C:\Users\Jonathan\AppData\Local\Temp\HPConnectedMusicInstaller_100100087.exe
C:\Users\Jonathan\AppData\Local\Temp\lowproc.exe
C:\Users\Jonathan\AppData\Local\Temp\prefetch.exe
C:\Users\Jonathan\AppData\Local\Temp\Quarantine.exe
C:\Users\Jonathan\AppData\Local\Temp\setupm.exe
C:\Users\Jonathan\AppData\Local\Temp\SHSetup.exe
C:\Users\Jonathan\AppData\Local\Temp\siinst.exe
C:\Users\Jonathan\AppData\Local\Temp\SP60492.exe
C:\Users\Jonathan\AppData\Local\Temp\SP62765.exe
C:\Users\Jonathan\AppData\Local\Temp\SP62976.exe
C:\Users\Jonathan\AppData\Local\Temp\SP63065.exe
C:\Users\Jonathan\AppData\Local\Temp\SP63408.exe
C:\Users\Jonathan\AppData\Local\Temp\SP63415.exe
C:\Users\Jonathan\AppData\Local\Temp\SP63417.exe
C:\Users\Jonathan\AppData\Local\Temp\SP63554.exe
C:\Users\Jonathan\AppData\Local\Temp\SP63555.exe
C:\Users\Jonathan\AppData\Local\Temp\SP63599.exe
C:\Users\Jonathan\AppData\Local\Temp\SP63752.exe
C:\Users\Jonathan\AppData\Local\Temp\SP63785.exe
C:\Users\Jonathan\AppData\Local\Temp\SP63786.exe
C:\Users\Jonathan\AppData\Local\Temp\SP63805.exe
C:\Users\Jonathan\AppData\Local\Temp\SP64655.exe
C:\Users\Jonathan\AppData\Local\Temp\SP64726.exe
C:\Users\Jonathan\AppData\Local\Temp\SP64739.exe
C:\Users\Jonathan\AppData\Local\Temp\SP64853.exe
C:\Users\Jonathan\AppData\Local\Temp\SP65000.exe
C:\Users\Jonathan\AppData\Local\Temp\SP65654.exe
C:\Users\Jonathan\AppData\Local\Temp\SP65782.exe
C:\Users\Jonathan\AppData\Local\Temp\SP65792.exe
C:\Users\Jonathan\AppData\Local\Temp\strings.dll
C:\Users\Jonathan\AppData\Local\Temp\stubhelper.dll
CustomCLSID: HKU\S-1-5-21-1222004918-1017807200-348020018-1002_Classes\CLSID\{73CE5602-6DCC-46CD-AF30-0017B80383E0}\InprocServer32 -> %LOCALAPPDATA%\Pokki\ocdeskband_1.dll No File
Task: {BCC7135F-56DE-43E2-A1E2-DFC2783E6169} - \SN.Booster-S-86014281 No Task File <==== ATTENTION
Task: C:\WINDOWS\Tasks\SN.Booster-S-86014281.job => c:\programdata\excellent4app\sn.booster\SN.Booster.exe <==== ATTENTION
AlternateDataStreams: C:\WINDOWS\SysWOW64\zlib.dll:DocumentSummaryInformation
AlternateDataStreams: C:\WINDOWS\SysWOW64\zlib.dll:SummaryInformation
AlternateDataStreams: C:\WINDOWS\SysWOW64\zlib.dll:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d}
AlternateDataStreams: C:\Users\Jonathan\SkyDrive:ms-properties
AlternateDataStreams: C:\Users\Jonathan\SkyDrive.old:ms-properties
Emptytemp:
End

*****************

HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\fst_us_90 => value deleted successfully.
"HKU\S-1-5-21-1222004918-1017807200-348020018-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{3fba3bdb-9336-11e3-bea5-6817296bc212}" => Key deleted successfully.
"HKCR\CLSID\{3fba3bdb-9336-11e3-bea5-6817296bc212}" => Key not found.
"HKU\S-1-5-21-1222004918-1017807200-348020018-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{675698ee-f748-11e3-bec1-6817296bc212}" => Key deleted successfully.
"HKCR\CLSID\{675698ee-f748-11e3-bec1-6817296bc212}" => Key not found.
"HKU\S-1-5-21-1222004918-1017807200-348020018-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{8e20cb98-9c44-11e3-beaa-6817296bc212}" => Key deleted successfully.
"HKCR\CLSID\{8e20cb98-9c44-11e3-beaa-6817296bc212}" => Key not found.
"HKU\S-1-5-21-1222004918-1017807200-348020018-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a82a09bc-b4e6-11e3-beb4-6817296bc212}" => Key deleted successfully.
"HKCR\CLSID\{a82a09bc-b4e6-11e3-beb4-6817296bc212}" => Key not found.
"HKU\S-1-5-21-1222004918-1017807200-348020018-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a82a09e4-b4e6-11e3-beb4-6817296bc212}" => Key deleted successfully.
"HKCR\CLSID\{a82a09e4-b4e6-11e3-beb4-6817296bc212}" => Key not found.
"HKU\S-1-5-21-1222004918-1017807200-348020018-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{de09e36f-39a4-11e3-be82-6817296bc212}" => Key deleted successfully.
"HKCR\CLSID\{de09e36f-39a4-11e3-be82-6817296bc212}" => Key not found.
"HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {3fba3bdb-9336-11e3-bea5-6817296bc212}" => Key not found.
"HKCR\CLSID\{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {3fba3bdb-9336-11e3-bea5-6817296bc212}" => Key not found.
"HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {675698ee-f748-11e3-bec1-6817296bc212}" => Key not found.
"HKCR\CLSID\{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {675698ee-f748-11e3-bec1-6817296bc212}" => Key not found.
"HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {8e20cb98-9c44-11e3-beaa-6817296bc212}" => Key not found.
"HKCR\CLSID\{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {8e20cb98-9c44-11e3-beaa-6817296bc212}" => Key not found.
"HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {a82a09bc-b4e6-11e3-beb4-6817296bc212}" => Key not found.
"HKCR\CLSID\{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {a82a09bc-b4e6-11e3-beb4-6817296bc212}" => Key not found.
"HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {a82a09e4-b4e6-11e3-beb4-6817296bc212}" => Key not found.
"HKCR\CLSID\{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {a82a09e4-b4e6-11e3-beb4-6817296bc212}" => Key not found.
"HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {de09e36f-39a4-11e3-be82-6817296bc212}" => Key not found.
"HKCR\CLSID\{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {de09e36f-39a4-11e3-be82-6817296bc212}" => Key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive1" => Key deleted successfully.
"HKCR\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}" => Key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive2" => Key deleted successfully.
"HKCR\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}" => Key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive3" => Key deleted successfully.
"HKCR\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}" => Key not found.
"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive1" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}" => Key not found.
"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive2" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}" => Key not found.
"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive3" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}" => Key not found.
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable => value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer => value deleted successfully.
Firefox Proxy settings were reset.
Firefox Proxy settings were reset.
Firefox Proxy settings were reset.
Firefox Proxy settings were reset.
Firefox Proxy settings were reset.
"HKLM\SOFTWARE\Policies\Google" => Key deleted successfully.
C:\Users\Jonathan\AppData\Local\Temp\ConsumerInputSetup.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\Extract.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\HPConnectedMusicInstaller_100100071.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\HPConnectedMusicInstaller_100100087.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\lowproc.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\prefetch.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\Quarantine.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\setupm.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\SHSetup.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\siinst.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\SP60492.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\SP62765.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\SP62976.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\SP63065.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\SP63408.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\SP63415.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\SP63417.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\SP63554.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\SP63555.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\SP63599.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\SP63752.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\SP63785.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\SP63786.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\SP63805.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\SP64655.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\SP64726.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\SP64739.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\SP64853.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\SP65000.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\SP65654.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\SP65782.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\SP65792.exe => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\strings.dll => Moved successfully.
C:\Users\Jonathan\AppData\Local\Temp\stubhelper.dll => Moved successfully.
"HKU\S-1-5-21-1222004918-1017807200-348020018-1002_Classes\CLSID\{73CE5602-6DCC-46CD-AF30-0017B80383E0}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{BCC7135F-56DE-43E2-A1E2-DFC2783E6169}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BCC7135F-56DE-43E2-A1E2-DFC2783E6169}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SN.Booster-S-86014281" => Key deleted successfully.
C:\WINDOWS\Tasks\SN.Booster-S-86014281.job => Moved successfully.
"C:\WINDOWS\SysWOW64\zlib.dll" => ":DocumentSummaryInformation" ADS not found.
"C:\WINDOWS\SysWOW64\zlib.dll" => ":SummaryInformation" ADS not found.
C:\WINDOWS\SysWOW64\zlib.dll => ":{4c8cc155-6c1e-11d1-8e41-00c04fb9386d}" ADS removed successfully.
C:\Users\Jonathan\SkyDrive => ":ms-properties" ADS removed successfully.
"C:\Users\Jonathan\SkyDrive.old" => ":ms-properties" ADS not found.
EmptyTemp: => Removed 18.9 GB temporary data.


The system needed a reboot.

==== End of Fixlog ====

Link to post
Share on other sites

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 9/18/2014
Scan Time: 9:43:02 AM
Logfile:
Administrator: Yes

Version: 2.00.2.1012
Malware Database: v2014.09.18.03
Rootkit Database: v2014.09.15.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Self-protection: Disabled

OS: Windows 8.1
CPU: x64
File System: NTFS
User: Jonathan

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 659937
Time Elapsed: 13 min, 37 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 2
PUP.Optional.Amonetize, C:\Windows\Microsoft\SystemUpdatekb70007\WindowsUpdater.exe, 2560, Delete-on-Reboot, [2fc36e7f55269b9b955738653fc2c63a]
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\privoxy.exe, 4480, Delete-on-Reboot, [38baac411e5dc274a0f6727460a256aa]

Modules: 1
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\mgwz.dll, Delete-on-Reboot, [38baac411e5dc274a0f6727460a256aa],

Registry Keys: 9
PUP.Optional.Amonetize, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SystemUpdatekb70007, Quarantined, [2fc36e7f55269b9b955738653fc2c63a],
PUP.Optional.Sanbreel.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{2c976a7f-dbdc-4756-870f-f6d183fe7a7e}Gw64, Quarantined, [9f53f5f8bbc044f2f1ea40cc32d155ab],
PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}, Quarantined, [975b39b40a7143f391dff02210f357a9],
PUP.Optional.Amonetize, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{AEB719FD-EDB0-43E9-B524-90F97C1E6499}, Quarantined, [4ca621ccd1aaf54110bbf317f50e847c],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{D995FDFE-8B4E-0DAF-A99F-88D7D08A338A}, Quarantined, [5d95c32a24575adc7e3747bb51b4a759],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\CLSID\{D995FDFE-8B4E-0DAF-A99F-88D7D08A338A}, Quarantined, [5d95c32a24575adc7e3747bb51b4a759],
PUP.Optional.MultiPlug.A, HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{D995FDFE-8B4E-0DAF-A99F-88D7D08A338A}, Quarantined, [5d95c32a24575adc7e3747bb51b4a759],
PUP.Optional.MultiPlug.A, HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{D995FDFE-8B4E-0DAF-A99F-88D7D08A338A}, Quarantined, [5d95c32a24575adc7e3747bb51b4a759],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{D995FDFE-8B4E-0DAF-A99F-88D7D08A338A}, Quarantined, [5d95c32a24575adc7e3747bb51b4a759],

Registry Values: 15
PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}, Mysearchdial, Quarantined, [975b39b40a7143f391dff02210f357a9]
PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY|AppPath, C:\Program Files (x86)\Mysearchdial\1.8.29.0\, Quarantined, [d41ecb22304b58de283bf676739129d7]
PUM.Bad.Proxy, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|ProxyServer, http=127.0.0.1:8118;https=127.0.0.1:8118, Quarantined, [d71b23caceadb97d0ebeab5f9370c040]
PUM.Bad.Proxy, HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|ProxyServer, http=127.0.0.1:8118;https=127.0.0.1:8118, Quarantined, [c52d816ccfac44f2d9f3e822b053f50b]
PUM.Bad.Proxy, HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|ProxyServer, http=127.0.0.1:8118;https=127.0.0.1:8118, Quarantined, [7a787776abd02b0b97354dbd0bf80ef2]
PUM.Bad.Proxy, HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|ProxyServer, http=127.0.0.1:8118;https=127.0.0.1:8118, Quarantined, [638fd914d8a39c9a6c60e525c53e649c]
PUP.Optional.QuickStart.A, HKU\S-1-5-21-1222004918-1017807200-348020018-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MOZILLA\EXTENDS|appid, quick_start@gmail.com, Quarantined, [4ba76e7f0d6ec472d8328491e51ef907]
PUM.Bad.Proxy, HKU\S-1-5-21-1222004918-1017807200-348020018-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|ProxyServer, http=127.0.0.1:8118;https=127.0.0.1:8118, Quarantined, [658d519c0e6d80b6e8e4a961986b30d0]
PUM.Bad.Proxy, HKU\S-1-5-21-1222004918-1017807200-348020018-1006-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|ProxyServer, http=127.0.0.1:8118;https=127.0.0.1:8118, Quarantined, [41b17f6e84f750e69c3020ea25de7987]
PUM.Bad.Proxy, HKU\S-1-5-21-1222004918-1017807200-348020018-1007-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|ProxyServer, http=127.0.0.1:8118;https=127.0.0.1:8118, Quarantined, [24ce15d805767abc9c301bef699a60a0]
PUM.Bad.Proxy, HKU\S-1-5-21-1222004918-1017807200-348020018-1008-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|ProxyServer, http=127.0.0.1:8118;https=127.0.0.1:8118, Quarantined, [21d175782c4fa492c4088486ba49ad53]
PUM.Bad.Proxy, HKU\S-1-5-21-1222004918-1017807200-348020018-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|ProxyServer, http=127.0.0.1:8118;https=127.0.0.1:8118, Quarantined, [be34806d2a512e083e8e44c64fb431cf]
PUM.Bad.Proxy, HKU\S-1-5-21-1222004918-1017807200-348020018-1010-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|ProxyServer, http=127.0.0.1:8118;https=127.0.0.1:8118, Quarantined, [ea087677accf082eb715907a778c35cb]
PUM.Bad.Proxy, HKU\S-1-5-21-1222004918-1017807200-348020018-1011-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|ProxyServer, http=127.0.0.1:8118;https=127.0.0.1:8118, Quarantined, [4fa36885bcbf6fc75a72cc3efe05d62a]
PUM.Bad.Proxy, HKU\S-1-5-21-1222004918-1017807200-348020018-1013-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|ProxyServer, http=127.0.0.1:8118;https=127.0.0.1:8118, Quarantined, [f5fde00dfb80bb7bfecea7637d86e51b]

Registry Data: 1
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Good: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Bad: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Replaced,[f3ffd914e596d85eb1db68955ba905fb]

Folders: 9
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy, Delete-on-Reboot, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\developer-manual, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\faq, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\images, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\templates, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.SNBooster.A, C:\ProgramData\Excellent4App\SN.Booster, Quarantined, [658d4ca19dde2f07e20fffebe61c04fc],
PUP.Optional.SNBooster.A, C:\ProgramData\Excellent4App\SN.Booster\86014281, Quarantined, [658d4ca19dde2f07e20fffebe61c04fc],

Files: 78
PUP.Optional.Sanbreel.A, C:\Windows\System32\drivers\{2c976a7f-dbdc-4756-870f-f6d183fe7a7e}Gw64.sys, Delete-on-Reboot, [82a94ade110a2bd17b96959f945138e3],
PUP.Optional.Amonetize, C:\Windows\Microsoft\SystemUpdatekb70007\WindowsUpdater.exe, Delete-on-Reboot, [2fc36e7f55269b9b955738653fc2c63a],
PUP.Optional.MultiPlug.A, C:\ProgramData\Excellent4App\SN.Booster\SN.Booster.exe, Quarantined, [4aa8ec01fa81d66065cb67dbe61b619f],
Trojan.SProtector, C:\Program Files (x86)\SN_x64.Booster, Quarantined, [3cb63eaf2358bb7b1535f6b451b07e82],
PUP.Optional.Amonetize, C:\Users\Jonathan\Downloads\Backyard Soccer   Backyard Bas Downloader__3687_i844958192_il4063704.exe, Quarantined, [549ee6076b10cc6a2cdad2dcba47fc04],
PUP.Optional.MaxSetup, C:\Users\Jonathan\Downloads\CR_Downloader_for_1964.exe, Quarantined, [ae44ae3f205b88aeec0901da40c407f9],
PUP.Optional.MaxSetup, C:\Users\Jonathan\Downloads\CR_Downloader_for_mario-party.exe, Quarantined, [38bacb22df9c45f1f0058853867eb14f],
PUP.Optional.MaxSetup, C:\Users\Jonathan\Downloads\CR_Downloader_for_super-mario-world.exe, Quarantined, [21d1a4492c4f50e623d22caf4fb5b050],
PUP.Optional.Softonic.A, C:\Users\Jonathan\Downloads\SoftonicDownloader_for_harry-potter-and-the-half-blood-prince.exe, Quarantined, [0fe32dc0dc9fcd69065a87a93ac79868],
PUP.Optional.Amonetize, C:\Users\Jonathan\Downloads\FIFA.14.Origin.Key.Generator__6629_i850346023_il10738.exe, Quarantined, [45ad3db0c6b54de9dc2a5d51d72a966a],
PUP.Optional.Amonetize, C:\Users\Jonathan\Downloads\Game Setup File__2774_il5.exe, Quarantined, [a151ae3fcbb08babb970ab8bbf4250b0],
PUP.Optional.Amonetize, C:\Windows\Installer\4a4866ed.msi, Quarantined, [688a8f5e23583df98765f6a7e21fa35d],
PUP.Optional.Superfish.A, C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage, Quarantined, [6f83a14c8fecf44259519c82778c1ae6],
PUP.Optional.V9.A, C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.v9.com_0.localstorage, Quarantined, [f101d419e596d85ea42789965da609f7],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\AUTHORS.txt, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\config.txt, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\default.action, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\default.filter, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\LICENSE.txt, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\match-all.action, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\mgwz.dll, Delete-on-Reboot, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\privoxy.exe, Delete-on-Reboot, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\privoxy.log, Delete-on-Reboot, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\privoxy_uninstall.exe, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\README.txt, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\trust.txt, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\user.action, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\user.action_empty, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\user.filter, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\user.filter_old, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\p_doc.css, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\developer-manual\coding.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\developer-manual\cvs.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\developer-manual\documentation.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\developer-manual\index.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\developer-manual\introduction.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\developer-manual\newrelease.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\developer-manual\testing.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\developer-manual\webserver-update.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\faq\configuration.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\faq\contact.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\faq\copyright.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\faq\general.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\faq\index.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\faq\installation.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\faq\misc.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\faq\trouble.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\images\files-in-use.jpg, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\images\proxy_setup.jpg, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\actions-file.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\appendix.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\config.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\configuration.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\contact.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\copyright.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\files-in-use.jpg, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\filter-file.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\index.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\installation.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\introduction.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\proxy2.jpg, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\proxy_setup.jpg, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\p_doc.css, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\quickstart.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\seealso.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\startup.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\templates.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\doc\user-manual\whatsnew.html, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\templates\cgi-style.css, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\templates\connect-failed, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\templates\mod-local-help, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\templates\mod-support-and-service, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\templates\mod-title, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\templates\mod-unstable-warning, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\templates\no-such-domain, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\MSR\Privoxy\templates\url-info-osd.xml, Quarantined, [38baac411e5dc274a0f6727460a256aa],
PUP.Optional.SNBooster.A, C:\ProgramData\Excellent4App\SN.Booster\86014281.ini, Quarantined, [658d4ca19dde2f07e20fffebe61c04fc],
PUP.Optional.MySearchDial.A, C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Preferences, Good: (), Bad: (      "startup_urls": [ ""http://www.v9.com/?type=hp&ts=1402632544&from=amt&uid=3219913727_198339_36817BAA&i=psd&t=34408bdc1", "http://www.v9.com/?type=hppp&ts=1402682395&from=amt&uid=3219913727_198339_36817BAA&i=psd&t=34410590e", "http://www.v9.com/?type=hppp&ts=1403101065&from=amt&uid=3219913727_198339_36817BAA&i=psd&t=344503b5b", "http://www.v9.com/?type=hppp&ts=1404312443&from=amt&uid=3219913727_198339_36817BAA&i=psd&t=3450912d4", "http://www.v9.com/?type=hppp&ts=1404401240&from=amt&uid=3219913727_198339_36817BAA&i=psd&t=345169f70", "http://www.v9.com/?type=hppp&ts=1404420304&from=amt&uid=3219913727_198339_36817BAA&i=psd&t=345198822", "http://www.v9.com/?type=hppp&ts=1405307440&from=amt&uid=3219913727_198339_36817BAA&i=psd&t=345a0e5e8" ],), Replaced,[c32f628ba2d902347fe4171a8e77e818]

Physical Sectors: 0
(No malicious items detected)


(end)

Link to post
Share on other sites

Uninstall this program:

 

C:\Program Files (x86)\MSR

 

Next,

 

Check for proxy server settings in your browser, the following are the most common used.

Internet Explorer:

Tools Menu -> Internet Options  -> Connections Tab ->Lan Settings > uncheck "use a proxy server" and check to "Automatically detect settings". Also clear any proxy address and port. ok, apply (only if applicable), ok.

Firefox:
Tools Menu -> Options... -> Advanced Tab -> Network Tab -> "Settings" under Connection. "No Proxy" should be selected, unless you have one set up yourself.

Chrome:
Select -> Tools menu ->  then "Options", then  go to "Change Proxy Settings", then "LAN Settings" , then  take out the check mark for "Use a proxy server for your LAN" if set, unless you set this up yourself.

Safari

  • Launch Safari
  • Go to general settings menu
  • Then in Preferences/ Advanced
  • Then on line click Proxies change settings ...
  • Click Internet Options, then click the Connections tab, click Network Settings.
  • Disable option (uncheck) for the use of proxy server ...

 

Next,

 

Run threat scan with Malwarebytes and post a fresh log...

Link to post
Share on other sites

Have a look at the installed programs list in "Programs and Features" from there highlight the program in question, then select "Uninstall" from the toolbar...

 

If MSR does not show up in "Programs and Features" navigate to and open the folder (C:\Program Files (x86)\MSR) if the uninstall or unwise file is there double click to run the uninstaller.

 

If it does not show via either of thse options do the following and post the log:

 

Please download SystemLook from the following link below and save it to your Desktop. Use the correct version 32bit or 64bit.

http://jpshortstuff.247fixes.com/SystemLook_x64.exe      <<-   64 bit….

http://images.malwareremoval.com/jpshortstuff/SystemLook.exe  <<-  32 bit

  • Double-click SystemLook.exe to run it.
  • Copy the content of the following codebox into the main textfield:

    :regfindMSR*MSR*
  • Click the Look button to start the scan.
  • When finished, a notepad window will open with the results of the scan. Please post this log in your next reply.


Note: The log can also be found on your Desktop entitled SystemLook.txt
 

Kevin..

Link to post
Share on other sites

SystemLook 30.07.11 by jpshortstuff
Log created at 19:02 on 19/09/2014 by Jonathan
Administrator - Elevation successful

========== regfind ==========

Searching for "MSR"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\UFH\SHC]
"6"="C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bluetooth Devices\johnnyboysanders.lnk C:\Program Files (x86)\Intel\Bluetooth\btmsrvview.exe 00:EE:BD:D5:41:89"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\UFH\SHC]
"7"="C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bluetooth Devices\johnnyboysanders.lnk C:\Program Files (x86)\Intel\Bluetooth\btmsrvview.exe 00:EE:BD:D5:41:89"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\UFH\SHC]
"8"="C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bluetooth Devices\johnnyboysanders.lnk C:\Program Files (x86)\Intel\Bluetooth\btmsrvview.exe 00:EE:BD:D5:41:89"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\UFH\SHC]
"10"="C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bluetooth Devices\johnnyboysanders.lnk C:\Program Files (x86)\Intel\Bluetooth\btmsrvview.exe 00:EE:BD:D5:41:89"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\UFH\SHC]
"11"="C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bluetooth Devices\johnnyboysanders.lnk C:\Program Files (x86)\Intel\Bluetooth\btmsrvview.exe 00:EE:BD:D5:41:89"
[HKEY_CURRENT_USER\Software\RealNetworks\RealPlayer\16.0\Preferences\MountPoints\rpplugins\PluginHandlerData\PluginInfo0]
@="{LoadMultiple~N1~ComponentName~Shttp://ns.real.com/gemini.v1:RJBCDPlaylistActor~PluginFilename~Scdpl3210.dll~ComponentCLSID~X2m05y6oCY025CKOjyrBGKQ==}{LoadMultiple~N1~ComponentName~Shttp://ns.real.com/gemini.v1:nativecdplaylist~PluginFilename~Scdpl3210.dll~ComponentCLSID~XbrLR4XkiHEKGwl7pOqTgNA==}{LoadMultiple~N1~ComponentName~Shttp://ns.real.com/gemini.v1:nativecdmanager~PluginFilename~Scdpl3210.dll~ComponentCLSID~XEr90jxVpo0qQD+HYBtyRxQ==}{LoadMultiple~N1~PluginFilename~Scdpl3210.dll~ComponentCLSID~XtQQjowfr2kOjeHZ0w2HcyA==}{LoadMultiple~N1~PluginFilename~Scdpl3210.dll~ComponentCLSID~Xm6G5FMQmXEeyLw3WlCY5Rw==}{LoadMultiple~N1~PluginFilename~Scdpl3210.dll~ComponentCLSID~XtzXzfqQTe0OUi06+vvRXRw==}{LoadMultiple~N1~PluginFilename~Scdpl3210.dll~ComponentCLSID~XrRqchZEgqU+RVL11ZQ/voA==}{LoadMultiple~N1~PluginFilename~Sembd3260.dll~ComponentCLSID~XYECIN3SoaUWbf9utVc9RvA==}{LoadMultiple~N1~P
[HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\2a8\52C64B7E]
"@%SystemRoot%\system32\samsrv.dll,-2"="The startup of this service signals other services that the Security Accounts Manager (SAM) is ready to accept requests.  Disabling this service will prevent other services in the system from being notified when the SAM is ready, which may in turn cause those services to fail to start correctly. This service should not be disabled."
[HKEY_CURRENT_USER\Software\Classes\Local Settings\MuiCache\2a8\52C64B7E]
"@%SystemRoot%\System32\termsrv.dll,-267"="Allows users to connect interactively to a remote computer. Remote Desktop and Remote Desktop Session Host Server depend on this service.  To prevent remote use of this computer, clear the checkboxes on the Remote tab of the System properties control panel item."
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.msrcincident]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{6B1DE8B3-DFB1-4C0E-9D9A-89CA730DE93F}]
@="MsRdpSessionManager"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\msrating.dll]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B462D7B-72D8-4544-ACC1-D84E5B9A8A14}]
@="MsRdpSessionManager Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{28AF2E16-0190-44F4-9CED-08AF91145361}\InprocServer32]
@="C:\Windows\System32\msrahc.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2F7FC18E-292B-11D2-A795-DFAA798E9148}]
@="MSREdit Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2F7FC18E-292B-11D2-A795-DFAA798E9148}\InprocServer32]
@="C:\PROGRA~1\MICROS~1\Office15\MSRTEDIT.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2F7FC18E-292B-11D2-A795-DFAA798E9148}\ProgId]
@="Msrtedit.AAMSREdit.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2F7FC18E-292B-11D2-A795-DFAA798E9148}\ToolboxBitmap32]
@="C:\PROGRA~1\MICROS~1\Office15\MSRTEDIT.DLL, 101"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2F7FC18E-292B-11D2-A795-DFAA798E9148}\VersionIndependentProgID]
@="Msrtedit.AAMSREdit"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{301B94BA-5D25-4A12-BFFE-3B6E7A616585}\ProgID]
@="MsRDP.MsRDP.9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{301B94BA-5D25-4A12-BFFE-3B6E7A616585}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4eb89ff4-7f78-4a0f-8b8d-2bf02e94e4b2}\ProgID]
@="MsRDP.MsRDP.5"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4eb89ff4-7f78-4a0f-8b8d-2bf02e94e4b2}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4EDCB26C-D24C-4e72-AF07-B576699AC0DE}\ProgID]
@="MsRDP.MsRDP.4"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4EDCB26C-D24C-4e72-AF07-B576699AC0DE}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{54CE37E0-9834-41ae-9896-4DAB69DC022B}\ProgID]
@="MsRDP.MsRDP.4.a"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{54CE37E0-9834-41ae-9896-4DAB69DC022B}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5F681803-2900-4C43-A1CC-CF405404A676}\ProgID]
@="MsRDP.MsRDP.8"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5F681803-2900-4C43-A1CC-CF405404A676}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A5B0C7C-5CCB-4F10-A043-B8DE007E1952}]
@="MsRdpClientShell Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A5B0C7C-5CCB-4F10-A043-B8DE007E1952}\InprocServer32]
@="%SystemRoot%\system32\MsRdpWebAccess.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A5B0C7C-5CCB-4F10-A043-B8DE007E1952}\ProgID]
@="MsRdpWebAccess.MsRdpClientShell.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A5B0C7C-5CCB-4F10-A043-B8DE007E1952}\VersionIndependentProgID]
@="MsRdpWebAccess.MsRdpClientShell"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A6F4B83-45C5-4ca9-BDD9-0D81C12295E4}\ProgID]
@="MsRDP.MsRDP.3.a"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A6F4B83-45C5-4ca9-BDD9-0D81C12295E4}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6B7F33AC-D91D-4563-BF36-0ACCB24E66FB}]
@="MsRdpSessionManagerSingleUse Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7390f3d8-0439-4c05-91e3-cf5cb290c3d0}\ProgID]
@="MsRDP.MsRDP.6"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7390f3d8-0439-4c05-91e3-cf5cb290c3d0}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7584c670-2274-4efb-b00b-d6aaba6d3850}\ProgID]
@="MsRDP.MsRDP.3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7584c670-2274-4efb-b00b-d6aaba6d3850}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9059f30f-4eb1-4bd2-9fdc-36f43a218f4a}\ProgID]
@="MsRDP.MsRDP.2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9059f30f-4eb1-4bd2-9fdc-36f43a218f4a}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96236A71-9DBC-11DA-9E3F-0011114AE311}\InProcServer32]
@="%SystemRoot%\system32\msrdc.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96236A85-9DBC-11DA-9E3F-0011114AE311}\InprocServer32]
@="%SystemRoot%\system32\msrdc.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96236A85-9DBC-11DA-9E3F-0011114AE311}\ProgID]
@="MSRDC.RdcLibrary.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96236A85-9DBC-11DA-9E3F-0011114AE311}\VersionIndependentProgID]
@="MSRDC.RdcLibrary"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96236A8F-9DBC-11DA-9E3F-0011114AE311}\InprocServer32]
@="%SystemRoot%\system32\msrdc.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96236A8F-9DBC-11DA-9E3F-0011114AE311}\ProgID]
@="MSRDC.SimilarityTraitsTable.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96236A8F-9DBC-11DA-9E3F-0011114AE311}\VersionIndependentProgID]
@="MSRDC.SimilarityTraitsTable"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96236A90-9DBC-11DA-9E3F-0011114AE311}\InprocServer32]
@="%SystemRoot%\system32\msrdc.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96236A90-9DBC-11DA-9E3F-0011114AE311}\ProgID]
@="MSRDC.SimilarityFileIdTable.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96236A90-9DBC-11DA-9E3F-0011114AE311}\VersionIndependentProgID]
@="MSRDC.SimilarityFileIdTable"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96236A91-9DBC-11DA-9E3F-0011114AE311}\InprocServer32]
@="%SystemRoot%\system32\msrdc.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96236A91-9DBC-11DA-9E3F-0011114AE311}\ProgID]
@="MSRDC.Similarity.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96236A91-9DBC-11DA-9E3F-0011114AE311}\VersionIndependentProgID]
@="MSRDC.Similarity"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{971127BB-259F-48c2-BD75-5F97A3331551}\ProgID]
@="MsRDP.MsRDP.2.a"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{971127BB-259F-48c2-BD75-5F97A3331551}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a9d7038d-b5ed-472e-9c47-94bea90a5910}\ProgID]
@="MsRDP.MsRDP.7"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a9d7038d-b5ed-472e-9c47-94bea90a5910}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\C:|Program Files (x86)|MSR|backup|System Update kb70007|backup|InstallerLibrary.dll]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\C:|Program Files (x86)|MSR|backup|System Update kb70007|backup|uninstall.exe]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\C:|Program Files (x86)|MSR|backup|System Update kb70007|Installer.dll]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\C:|Program Files (x86)|MSR|backup|System Update kb70007|InstallerLibrary.dll]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\C:|Program Files (x86)|MSR|backup|System Update kb70007|InstallFirefoxExtension.dll]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\C:|Program Files (x86)|MSR|backup|System Update kb70007|Newtonsoft.Json.dll]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\C:|Program Files (x86)|MSR|backup|System Update kb70007|NewVersionUploader.exe]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\C:|Program Files (x86)|MSR|backup|System Update kb70007|System.Data.SQLite.dll]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Assemblies\C:|Program Files (x86)|MSR|backup|System Update kb70007|WindowsUpdater.exe]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Components\8F622368F04F7B849A7B2021EE668F21]
"1033\Media_Part.accdt"="yh1BVJ(8A$4!!!!MKKSkAccessTemplatesIntl_1033>J1MsR97{n8{n4I_Mve[q[^0]\Media_Part.part"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{011C3236-4D81-4515-9143-067AB630D299}]
@="IMsRdpClientTransportSettings4"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{095E0738-D97D-488B-B9F6-DD0E8D66C0DE}]
@="IMsRdpClient4"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{145D0621-04CF-4FC2-A766-A81A9069CDF8}]
@="IMsRdpWorkspace"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{145D0622-04CF-4FC3-A776-A82A9169CDF8}]
@="IMsRdpWorkspace2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{19CD856B-C542-4C53-ACEE-F127E3BE1A59}]
@="IMsRdpClientAdvancedSettings3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{222c4b5d-45d9-4df0-a7c6-60cf9089d285}]
@="IMsRdpClientAdvancedSettings6"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{25f2ce20-8b1d-4971-a7cd-549dae201fc0}]
@="IMsRdpClientSecuredSettings2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{26036036-4010-4578-8091-0db9a1edf9c3}]
@="IMsRdpClientAdvancedSettings7"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{28904001-04B6-436C-A55B-0AF1A0883DC9}]
@="IMsRdpClient9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2F7FC18D-292B-11D2-A795-DFAA798E9148}]
@="IMSREdit"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3C65B4AB-12B3-465B-ACD4-B8DAD3BFF9E2}]
@="IMsRdpClientAdvancedSettings"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3D5B21AC-748D-41DE-8F30-E15169586BD4}]
@="IMsRdpClientTransportSettings3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{4247E044-9271-43A9-BC49-E2AD9E855D62}]
@="IMsRdpClient8"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{4eb5335b-6429-477d-b922-e06a28ecd8bf}]
@="IMsRdpClient5"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{605BEFCF-39C1-45CC-A811-068FB7BE346D}]
@="IMsRdpClientSecuredSettings"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{67341688-D606-4c73-A5D2-2E0489009319}]
@="IMsRdpClientTransportSettings2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{720298C0-A099-46f5-9F82-96921BAE4701}]
@="IMsRdpClientTransportSettings"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{89acb528-2557-4d16-8625-226a30e97e9a}]
@="IMsRdpClientAdvancedSettings8"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{91B7CBC5-A72E-4FA0-9300-D647D7E897FF}]
@="IMsRdpClient3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{92B4A539-7115-4B7C-A5A9-E5D9EFC2780A}]
@="IMsRdpClient"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{98BD3AFF-6884-452B-A220-71890551D3B1}]
@="IMsRdpClientShell4"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9AC42117-2B76-4320-AA44-0E616AB8437B}]
@="IMsRdpClientAdvancedSettings2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A0B2DD9A-7F53-4E65-8547-851952EC8C96}]
@="IMsRdpSessionManager"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{b2a5b5ce-3461-444a-91d4-add26d070638}]
@="IMsRdpClient7"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{d012ae6d-c19a-4bfe-b367-201f8911f134}]
@="IMsRdpClientShell"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D3102290-2B25-11D2-A795-E138CAAEC749}]
@="_IMSREditcontrolEvents"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{d43b7d80-8517-4b6d-9eac-96ad6800d7f2}]
@="IMsRdpClient6"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DC31A06F-97D2-410F-8FD1-AD4FDDDC0146}]
@="IMsRdpClientShell2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DC31A070-97D3-4110-8FD2-AD4FDDDD0246}]
@="IMsRdpClientShell3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DCBBBAB6-2013-4BBB-AAEE-338E368AF6FA}]
@="IMbnSmsReadMsgPdu"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DCBBBAB6-2014-4BBB-AAEE-338E368AF6FA}]
@="IMbnSmsReadMsgTextCdma"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E7E17DC4-3B71-4BA7-A8E6-281FFADCA28F}]
@="IMsRdpClient2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FBA7F64E-6783-4405-DA45-FA4A763DABD0}]
@="IMsRdpClientAdvancedSettings5"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FBA7F64E-7345-4405-AE50-FA4A763DC0DE}]
@="IMsRdpClientAdvancedSettings4"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FE6233F4-955D-4C3E-A071-2871CC6035AD}]
@="IMsRdpWorkspace3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSRDC.RdcLibrary]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSRDC.RdcLibrary\CurVer]
@="MSRDC.RdcLibrary.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSRDC.RdcLibrary.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSRDC.Similarity]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSRDC.Similarity\CurVer]
@="MSRDC.Similarity.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSRDC.Similarity.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSRDC.SimilarityFileIdTable]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSRDC.SimilarityFileIdTable\CurVer]
@="MSRDC.SimilarityFileIdTable.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSRDC.SimilarityFileIdTable.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSRDC.SimilarityTraitsTable]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSRDC.SimilarityTraitsTable\CurVer]
@="MSRDC.SimilarityTraitsTable.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSRDC.SimilarityTraitsTable.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRDP.MsRDP]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRDP.MsRDP]
@="MsRDP Class v10"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRDP.MsRDP\CurVer]
@="MsRDP.MsRDP.9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRDP.MsRDP.2]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRDP.MsRDP.2]
@="MsRDP Class v3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRDP.MsRDP.2.a]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRDP.MsRDP.2.a]
@="MsRDP Class v3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRDP.MsRDP.3]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRDP.MsRDP.3]
@="MsRDP Class v4"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRDP.MsRDP.3.a]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRDP.MsRDP.3.a]
@="MsRDP Class v4"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRDP.MsRDP.4]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRDP.MsRDP.4]
@="MsRDP Class v5"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRDP.MsRDP.4.a]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRDP.MsRDP.4.a]
@="MsRDP Class v5"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRDP.MsRDP.5]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRDP.MsRDP.5]
@="MsRDP Class v6"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRDP.MsRDP.6]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRDP.MsRDP.6]
@="MsRDP Class v7"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRDP.MsRDP.7]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRDP.MsRDP.7]
@="MsRDP Class v8"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRDP.MsRDP.8]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRDP.MsRDP.8]
@="MsRDP Class v9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRDP.MsRDP.9]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRDP.MsRDP.9]
@="MsRDP Class v10"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRdpWebAccess.MsRdpClientShell]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRdpWebAccess.MsRdpClientShell]
@="MsRdpClientShell Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRdpWebAccess.MsRdpClientShell\CurVer]
@="MsRdpWebAccess.MsRdpClientShell.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRdpWebAccess.MsRdpClientShell.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRdpWebAccess.MsRdpClientShell.1]
@="MsRdpClientShell Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRdpWebAccess.MsRdpClientShellExtension]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRdpWebAccess.MsRdpClientShellExtension]
@="MsRdpClientShellExtension Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRdpWebAccess.MsRdpClientShellExtension\CurVer]
@="MsRdpWebAccess.MsRdpClientShellExtension.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRdpWebAccess.MsRdpClientShellExtension.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MsRdpWebAccess.MsRdpClientShellExtension.1]
@="MsRdpClientShellExtension Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msrtedit.AAMSREdit]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msrtedit.AAMSREdit]
@="MSREdit Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msrtedit.AAMSREdit\CurVer]
@="Msrtedit.AAMSREdit.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msrtedit.AAMSREdit.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Msrtedit.AAMSREdit.1]
@="MSREdit Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\prffile]
"FriendlyTypeName"="@%SystemRoot%\System32\msrating.dll,-3001"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\prffile\DefaultIcon]
@="@%SystemRoot%\System32\msrating.dll,3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\prffile\shell\Open\command]
@=""%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnPRF %1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ratfile]
"FriendlyTypeName"="@%SystemRoot%\System32\msrating.dll,-3000"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ratfile\DefaultIcon]
@="@%SystemRoot%\System32\msrating.dll,8"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ratfile\Shell\Open\Command]
@=""%SystemRoot%\System32\rundll32.exe" "%SystemRoot%\System32\msrating.dll",ClickedOnRAT %1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RemoteAssistance.1]
"InfoTip"="@%systemroot%\system32\msra.exe,-558"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RemoteAssistance.1]
"FriendlyTypeName"="@%systemroot%\system32\msra.exe,-558"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RemoteAssistance.1\Shell\open\command]
@=""%systemRoot%\system32\msra.exe" -openfile "%1""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{2F7FC181-292B-11D2-A795-DFAA798E9148}\1.0]
@="msrtedit 1.0 Type Library"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{2F7FC181-292B-11D2-A795-DFAA798E9148}\1.0\0\win64]
@="C:\Program Files\Microsoft Office\Office15\MSRTEDIT.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{3EA49599-AF67-4142-B379-C54786F112B2}\1.0]
@="MsRdpWebAccess 1.0 Type Library"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{3EA49599-AF67-4142-B379-C54786F112B2}\1.0\0\win32]
@="C:\Windows\SysWOW64\MsRdpWebAccess.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{3EA49599-AF67-4142-B379-C54786F112B2}\1.0\0\win64]
@="C:\Windows\System32\MsRdpWebAccess.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{833E4000-AFF7-4AC3-AAC2-9F24C1457BCE}\1.0\0\win64]
@="C:\Windows\System32\MsraLegacy.tlb"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{9C757116-4367-4DA9-AC0E-6C6577AD5560}\1.0]
@="MsRdpSessionManager 1.0 Type Library"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{301B94BA-5D25-4A12-BFFE-3B6E7A616585}\ProgID]
@="MsRDP.MsRDP.9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{301B94BA-5D25-4A12-BFFE-3B6E7A616585}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{4eb89ff4-7f78-4a0f-8b8d-2bf02e94e4b2}\ProgID]
@="MsRDP.MsRDP.5"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{4eb89ff4-7f78-4a0f-8b8d-2bf02e94e4b2}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{4EDCB26C-D24C-4e72-AF07-B576699AC0DE}\ProgID]
@="MsRDP.MsRDP.4"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{4EDCB26C-D24C-4e72-AF07-B576699AC0DE}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{54CE37E0-9834-41ae-9896-4DAB69DC022B}\ProgID]
@="MsRDP.MsRDP.4.a"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{54CE37E0-9834-41ae-9896-4DAB69DC022B}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{5F681803-2900-4C43-A1CC-CF405404A676}\ProgID]
@="MsRDP.MsRDP.8"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{5F681803-2900-4C43-A1CC-CF405404A676}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{6A5B0C7C-5CCB-4F10-A043-B8DE007E1952}]
@="MsRdpClientShell Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{6A5B0C7C-5CCB-4F10-A043-B8DE007E1952}\InprocServer32]
@="%SystemRoot%\system32\MsRdpWebAccess.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{6A5B0C7C-5CCB-4F10-A043-B8DE007E1952}\ProgID]
@="MsRdpWebAccess.MsRdpClientShell.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{6A5B0C7C-5CCB-4F10-A043-B8DE007E1952}\VersionIndependentProgID]
@="MsRdpWebAccess.MsRdpClientShell"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{6A6F4B83-45C5-4ca9-BDD9-0D81C12295E4}\ProgID]
@="MsRDP.MsRDP.3.a"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{6A6F4B83-45C5-4ca9-BDD9-0D81C12295E4}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{7390f3d8-0439-4c05-91e3-cf5cb290c3d0}\ProgID]
@="MsRDP.MsRDP.6"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{7390f3d8-0439-4c05-91e3-cf5cb290c3d0}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{7584c670-2274-4efb-b00b-d6aaba6d3850}\ProgID]
@="MsRDP.MsRDP.3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{7584c670-2274-4efb-b00b-d6aaba6d3850}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{9059f30f-4eb1-4bd2-9fdc-36f43a218f4a}\ProgID]
@="MsRDP.MsRDP.2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{9059f30f-4eb1-4bd2-9fdc-36f43a218f4a}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{96236A71-9DBC-11DA-9E3F-0011114AE311}\InProcServer32]
@="%SystemRoot%\system32\msrdc.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{96236A85-9DBC-11DA-9E3F-0011114AE311}\InprocServer32]
@="%SystemRoot%\system32\msrdc.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{96236A85-9DBC-11DA-9E3F-0011114AE311}\ProgID]
@="MSRDC.RdcLibrary.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{96236A85-9DBC-11DA-9E3F-0011114AE311}\VersionIndependentProgID]
@="MSRDC.RdcLibrary"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{96236A8F-9DBC-11DA-9E3F-0011114AE311}\InprocServer32]
@="%SystemRoot%\system32\msrdc.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{96236A8F-9DBC-11DA-9E3F-0011114AE311}\ProgID]
@="MSRDC.SimilarityTraitsTable.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{96236A8F-9DBC-11DA-9E3F-0011114AE311}\VersionIndependentProgID]
@="MSRDC.SimilarityTraitsTable"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{96236A90-9DBC-11DA-9E3F-0011114AE311}\InprocServer32]
@="%SystemRoot%\system32\msrdc.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{96236A90-9DBC-11DA-9E3F-0011114AE311}\ProgID]
@="MSRDC.SimilarityFileIdTable.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{96236A90-9DBC-11DA-9E3F-0011114AE311}\VersionIndependentProgID]
@="MSRDC.SimilarityFileIdTable"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{96236A91-9DBC-11DA-9E3F-0011114AE311}\InprocServer32]
@="%SystemRoot%\system32\msrdc.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{96236A91-9DBC-11DA-9E3F-0011114AE311}\ProgID]
@="MSRDC.Similarity.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{96236A91-9DBC-11DA-9E3F-0011114AE311}\VersionIndependentProgID]
@="MSRDC.Similarity"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{971127BB-259F-48c2-BD75-5F97A3331551}\ProgID]
@="MsRDP.MsRDP.2.a"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{971127BB-259F-48c2-BD75-5F97A3331551}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{a9d7038d-b5ed-472e-9c47-94bea90a5910}\ProgID]
@="MsRDP.MsRDP.7"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{a9d7038d-b5ed-472e-9c47-94bea90a5910}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{011C3236-4D81-4515-9143-067AB630D299}]
@="IMsRdpClientTransportSettings4"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{095E0738-D97D-488B-B9F6-DD0E8D66C0DE}]
@="IMsRdpClient4"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{145D0621-04CF-4FC2-A766-A81A9069CDF8}]
@="IMsRdpWorkspace"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{145D0622-04CF-4FC3-A776-A82A9169CDF8}]
@="IMsRdpWorkspace2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{19CD856B-C542-4C53-ACEE-F127E3BE1A59}]
@="IMsRdpClientAdvancedSettings3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{222c4b5d-45d9-4df0-a7c6-60cf9089d285}]
@="IMsRdpClientAdvancedSettings6"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{25f2ce20-8b1d-4971-a7cd-549dae201fc0}]
@="IMsRdpClientSecuredSettings2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{26036036-4010-4578-8091-0db9a1edf9c3}]
@="IMsRdpClientAdvancedSettings7"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{28904001-04B6-436C-A55B-0AF1A0883DC9}]
@="IMsRdpClient9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{3C65B4AB-12B3-465B-ACD4-B8DAD3BFF9E2}]
@="IMsRdpClientAdvancedSettings"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{3D5B21AC-748D-41DE-8F30-E15169586BD4}]
@="IMsRdpClientTransportSettings3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{4247E044-9271-43A9-BC49-E2AD9E855D62}]
@="IMsRdpClient8"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{4eb5335b-6429-477d-b922-e06a28ecd8bf}]
@="IMsRdpClient5"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{605BEFCF-39C1-45CC-A811-068FB7BE346D}]
@="IMsRdpClientSecuredSettings"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{67341688-D606-4c73-A5D2-2E0489009319}]
@="IMsRdpClientTransportSettings2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{720298C0-A099-46f5-9F82-96921BAE4701}]
@="IMsRdpClientTransportSettings"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{89acb528-2557-4d16-8625-226a30e97e9a}]
@="IMsRdpClientAdvancedSettings8"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{91B7CBC5-A72E-4FA0-9300-D647D7E897FF}]
@="IMsRdpClient3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{92B4A539-7115-4B7C-A5A9-E5D9EFC2780A}]
@="IMsRdpClient"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{98BD3AFF-6884-452B-A220-71890551D3B1}]
@="IMsRdpClientShell4"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{9AC42117-2B76-4320-AA44-0E616AB8437B}]
@="IMsRdpClientAdvancedSettings2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{b2a5b5ce-3461-444a-91d4-add26d070638}]
@="IMsRdpClient7"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{d012ae6d-c19a-4bfe-b367-201f8911f134}]
@="IMsRdpClientShell"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{d43b7d80-8517-4b6d-9eac-96ad6800d7f2}]
@="IMsRdpClient6"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{DC31A06F-97D2-410F-8FD1-AD4FDDDC0146}]
@="IMsRdpClientShell2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{DC31A070-97D3-4110-8FD2-AD4FDDDD0246}]
@="IMsRdpClientShell3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{DCBBBAB6-2013-4BBB-AAEE-338E368AF6FA}]
@="IMbnSmsReadMsgPdu"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{DCBBBAB6-2014-4BBB-AAEE-338E368AF6FA}]
@="IMbnSmsReadMsgTextCdma"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E7E17DC4-3B71-4BA7-A8E6-281FFADCA28F}]
@="IMsRdpClient2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{FBA7F64E-6783-4405-DA45-FA4A763DABD0}]
@="IMsRdpClientAdvancedSettings5"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{FBA7F64E-7345-4405-AE50-FA4A763DC0DE}]
@="IMsRdpClientAdvancedSettings4"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{FE6233F4-955D-4C3E-A071-2871CC6035AD}]
@="IMsRdpWorkspace3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\AppID\{6B1DE8B3-DFB1-4C0E-9D9A-89CA730DE93F}]
@="MsRdpSessionManager"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{2F7FC181-292B-11D2-A795-DFAA798E9148}\1.0]
@="msrtedit 1.0 Type Library"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{2F7FC181-292B-11D2-A795-DFAA798E9148}\1.0\0\win64]
@="C:\Program Files\Microsoft Office\Office15\MSRTEDIT.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{3EA49599-AF67-4142-B379-C54786F112B2}\1.0]
@="MsRdpWebAccess 1.0 Type Library"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{3EA49599-AF67-4142-B379-C54786F112B2}\1.0\0\win32]
@="C:\Windows\SysWOW64\MsRdpWebAccess.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{3EA49599-AF67-4142-B379-C54786F112B2}\1.0\0\win64]
@="C:\Windows\System32\MsRdpWebAccess.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{833E4000-AFF7-4AC3-AAC2-9F24C1457BCE}\1.0\0\win64]
@="C:\Windows\System32\MsraLegacy.tlb"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{9C757116-4367-4DA9-AC0E-6C6577AD5560}\1.0]
@="MsRdpSessionManager 1.0 Type Library"
[HKEY_LOCAL_MACHINE\SOFTWARE\Intel\Bluetooth\btmsrvview]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MessengerService\SessionManager\Apps\{56b994a7-380f-410b-9985-c809d78c1bdc}]
"Path"="C:\Windows\System32\msra.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MessengerService\SessionManager\Apps\{703EA1A8-D73E-43e3-852C-EE85B5D872C2}]
"Path"="C:\Windows\System32\msra.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RendezvousApps\{56b994a7-380f-410b-9985-c809d78c1bdc}]
"Path"="C:\Windows\System32\msra.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RendezvousApps\{703EA1A8-D73E-43e3-852C-EE85B5D872C2}]
"Path"="C:\Windows\System32\msra.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wbem\CIMOM]
"Autorecover MOFs"=" %windir%\system32\wbem\cimwin32.mof %windir%\system32\wbem\ncprov.mof %windir%\system32\wbem\wmipcima.mof %windir%\system32\wbem\secrcw32.mof %windir%\system32\wbem\subscrpt.mof %windir%\system32\wbem\system.mof %windir%\system32\wbem\interop.mof %windir%\system32\wbem\scrcons.mof %windir%\system32\wbem\smtpcons.mof %windir%\system32\wbem\wbemcons.mof %windir%\system32\wbem\wmi.mof %windir%\system32\wbem\wmi_tracing.mof %windir%\system32\wbem\win32_printer.mof %windir%\system32\wbem\tcpip.mof %windir%\system32\wbem\qmgr.mof %windir%\system32\wbem\mmc.mof %windir%\system32\wbem\ncsi.mof %windir%\system32\wbem\nlasvc.mof %windir%\system32\wbem\tspkg.mof %windir%\system32\wbem\ssdpsrv.mof %windir%\system32\wbem\hnetcfg.mof %windir%\system32\wbem\services.mof %windir%\system32\wbem\scm.mof %windir%\system32\wbem\drvinst.mof %windir%\system32\wbem\umpnpmgr.mof %windir%\system32\wbem\wmp.mof %windir%\system32\wbem\mountmgr.mof %windir%\system3
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\amd64_microsoft-windows-s..stack-termsrv-extra_31bf3856ad364e35_0.0.0.0_none_92c963b0403b1ea7]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\amd64_microsoft-windows-t..ices-msrdpwebaccess_31bf3856ad364e35_0.0.0.0_none_0782f5844c174037]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\ComponentDetect\x86_microsoft-windows-t..ices-msrdpwebaccess_31bf3856ad364e35_0.0.0.0_none_ab645a0093b9cf01]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Hyper-V-Package-termsrv~31bf3856ad364e35~amd64~~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Drivers-Package-termsrv~31bf3856ad364e35~amd64~~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~ar-SA~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~bg-BG~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~cs-CZ~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~da-DK~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~de-DE~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~el-GR~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~en-GB~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~en-US~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~es-ES~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~et-EE~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~fi-FI~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~fr-FR~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~he-IL~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~hr-HR~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~hu-HU~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~it-IT~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~ja-JP~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~ko-KR~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~lt-LT~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~lv-LV~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~nb-NO~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~nl-NL~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~pl-PL~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~pt-BR~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~pt-PT~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~ro-RO~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~ru-RU~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~sk-SK~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~sl-SI~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~sr-LATN-RS~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~sv-SE~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~th-TH~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~tr-TR~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~uk-UA~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~zh-CN~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~zh-HK~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~zh-TW~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~ar-SA~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~bg-BG~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~cs-CZ~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~da-DK~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~de-DE~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~el-GR~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~en-GB~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~en-US~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~es-ES~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~et-EE~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~fi-FI~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~fr-FR~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~he-IL~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~hr-HR~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~hu-HU~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~it-IT~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~ja-JP~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~ko-KR~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~lt-LT~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~lv-LV~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~nb-NO~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~nl-NL~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~pl-PL~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~pt-BR~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~pt-PT~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~ro-RO~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~ru-RU~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~sk-SK~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~sl-SI~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~sr-LATN-RS~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~sv-SE~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~th-TH~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~tr-TR~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~uk-UA~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~zh-CN~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~zh-HK~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~zh-TW~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Common-Drivers-Package-termsrv~31bf3856ad364e35~amd64~~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-GroupPolicy-ClientTools-Package-termsrv~31bf3856ad364e35~amd64~~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Drivers-Package-termsrv~31bf3856ad364e35~amd64~~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~ar-SA~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~bg-BG~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~cs-CZ~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~da-DK~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~de-DE~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~el-GR~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~en-GB~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~en-US~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~es-ES~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~et-EE~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~fi-FI~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~fr-FR~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~he-IL~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~hr-HR~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~hu-HU~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~it-IT~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~ja-JP~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~ko-KR~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~lt-LT~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~lv-LV~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~nb-NO~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~nl-NL~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~pl-PL~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~pt-BR~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~pt-PT~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~ro-RO~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~ru-RU~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~sk-SK~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~sl-SI~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~sr-LATN-RS~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~sv-SE~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~th-TH~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~tr-TR~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~uk-UA~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~zh-CN~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~zh-HK~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~zh-TW~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~~0.0.0.0]
 

Link to post
Share on other sites

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~ar-SA~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~bg-BG~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~cs-CZ~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~da-DK~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~de-DE~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~el-GR~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~en-GB~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~en-US~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~es-ES~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~et-EE~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~fi-FI~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~fr-FR~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~he-IL~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~hr-HR~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~hu-HU~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~it-IT~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~ja-JP~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~ko-KR~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~lt-LT~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~lv-LV~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~nb-NO~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~nl-NL~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~pl-PL~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~pt-BR~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~pt-PT~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~ro-RO~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~ru-RU~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~sk-SK~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~sl-SI~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~sr-LATN-RS~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~sv-SE~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~th-TH~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~tr-TR~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~uk-UA~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~zh-CN~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~zh-HK~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~zh-TW~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-Server-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-ServerCore-SKU-Foundation-Package-termsrv~31bf3856ad364e35~amd64~~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-ServerCore-WOW64-Package-termsrv~31bf3856ad364e35~amd64~~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-ServerDesktopExperience-termsrv~31bf3856ad364e35~amd64~~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageDetect\Microsoft-Windows-ServicingStack-Termsrv-Extra-Package~31bf3856ad364e35~amd64~~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageIndex\Microsoft-Hyper-V-Package-termsrv~31bf3856ad364e35~amd64~en-US~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageIndex\Microsoft-Hyper-V-Package-termsrv~31bf3856ad364e35~amd64~~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageIndex\Microsoft-Windows-Client-Drivers-Package-termsrv~31bf3856ad364e35~amd64~en-US~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageIndex\Microsoft-Windows-Client-Drivers-Package-termsrv~31bf3856ad364e35~amd64~~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageIndex\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~en-US~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageIndex\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageIndex\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~en-US~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageIndex\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageIndex\Microsoft-Windows-Common-Drivers-Package-termsrv~31bf3856ad364e35~amd64~en-US~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageIndex\Microsoft-Windows-Common-Drivers-Package-termsrv~31bf3856ad364e35~amd64~~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageIndex\Microsoft-Windows-GroupPolicy-ClientTools-Package-termsrv~31bf3856ad364e35~amd64~en-US~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageIndex\Microsoft-Windows-GroupPolicy-ClientTools-Package-termsrv~31bf3856ad364e35~amd64~~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageIndex\Microsoft-Windows-ServicingStack-Termsrv-Extra-CrossArch-Package~31bf3856ad364e35~amd64~~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\PackageIndex\Microsoft-Windows-ServicingStack-Termsrv-Extra-Package~31bf3856ad364e35~amd64~~0.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages\Microsoft-Hyper-V-Package-termsrv~31bf3856ad364e35~amd64~en-US~6.3.9600.16384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages\Microsoft-Hyper-V-Package-termsrv~31bf3856ad364e35~amd64~en-US~6.3.9600.16384]
"InstallName"="Microsoft-Hyper-V-Package-termsrv~31bf3856ad364e35~amd64~en-US~6.3.9600.16384.mum"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages\Microsoft-Hyper-V-Package-termsrv~31bf3856ad364e35~amd64~~6.3.9600.16384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages\Microsoft-Hyper-V-Package-termsrv~31bf3856ad364e35~amd64~~6.3.9600.16384]
"InstallName"="Microsoft-Hyper-V-Package-termsrv~31bf3856ad364e35~amd64~~6.3.9600.16384.mum"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages\Microsoft-Windows-Client-Drivers-Package-termsrv~31bf3856ad364e35~amd64~en-US~6.3.9600.16384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages\Microsoft-Windows-Client-Drivers-Package-termsrv~31bf3856ad364e35~amd64~en-US~6.3.9600.16384]
"InstallName"="Microsoft-Windows-Client-Drivers-Package-termsrv~31bf3856ad364e35~amd64~en-US~6.3.9600.16384.mum"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages\Microsoft-Windows-Client-Drivers-Package-termsrv~31bf3856ad364e35~amd64~~6.3.9600.16384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages\Microsoft-Windows-Client-Drivers-Package-termsrv~31bf3856ad364e35~amd64~~6.3.9600.16384]
"InstallName"="Microsoft-Windows-Client-Drivers-Package-termsrv~31bf3856ad364e35~amd64~~6.3.9600.16384.mum"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~en-US~6.3.9600.16384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~en-US~6.3.9600.16384]
"InstallName"="Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~en-US~6.3.9600.16384.mum"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~~6.3.9600.16384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages\Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~~6.3.9600.16384]
"InstallName"="Microsoft-Windows-Client-Features-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~~6.3.9600.16384.mum"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~en-US~6.3.9600.16384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~en-US~6.3.9600.16384]
"InstallName"="Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~en-US~6.3.9600.16384.mum"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~~6.3.9600.16384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages\Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~~6.3.9600.16384]
"InstallName"="Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-termsrv~31bf3856ad364e35~amd64~~6.3.9600.16384.mum"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages\Microsoft-Windows-Common-Drivers-Package-termsrv~31bf3856ad364e35~amd64~en-US~6.3.9600.16384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages\Microsoft-Windows-Common-Drivers-Package-termsrv~31bf3856ad364e35~amd64~en-US~6.3.9600.16384]
"InstallName"="Microsoft-Windows-Common-Drivers-Package-termsrv~31bf3856ad364e35~amd64~en-US~6.3.9600.16384.mum"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages\Microsoft-Windows-Common-Drivers-Package-termsrv~31bf3856ad364e35~amd64~~6.3.9600.16384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages\Microsoft-Windows-Common-Drivers-Package-termsrv~31bf3856ad364e35~amd64~~6.3.9600.16384]
"InstallName"="Microsoft-Windows-Common-Drivers-Package-termsrv~31bf3856ad364e35~amd64~~6.3.9600.16384.mum"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages\Microsoft-Windows-GroupPolicy-ClientTools-Package-termsrv~31bf3856ad364e35~amd64~en-US~6.3.9600.16384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages\Microsoft-Windows-GroupPolicy-ClientTools-Package-termsrv~31bf3856ad364e35~amd64~en-US~6.3.9600.16384]
"InstallName"="Microsoft-Windows-GroupPolicy-ClientTools-Package-termsrv~31bf3856ad364e35~amd64~en-US~6.3.9600.16384.mum"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages\Microsoft-Windows-GroupPolicy-ClientTools-Package-termsrv~31bf3856ad364e35~amd64~~6.3.9600.16384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages\Microsoft-Windows-GroupPolicy-ClientTools-Package-termsrv~31bf3856ad364e35~amd64~~6.3.9600.16384]
"InstallName"="Microsoft-Windows-GroupPolicy-ClientTools-Package-termsrv~31bf3856ad364e35~amd64~~6.3.9600.16384.mum"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages\Microsoft-Windows-ServicingStack-Termsrv-Extra-CrossArch-Package~31bf3856ad364e35~amd64~~6.3.9600.16384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages\Microsoft-Windows-ServicingStack-Termsrv-Extra-CrossArch-Package~31bf3856ad364e35~amd64~~6.3.9600.16384]
"InstallName"="Microsoft-Windows-ServicingStack-Termsrv-Extra-CrossArch-Package~31bf3856ad364e35~amd64~~6.3.9600.16384.mum"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages\Microsoft-Windows-ServicingStack-Termsrv-Extra-Package~31bf3856ad364e35~amd64~~6.3.9600.16384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages\Microsoft-Windows-ServicingStack-Termsrv-Extra-Package~31bf3856ad364e35~amd64~~6.3.9600.16384]
"InstallName"="Microsoft-Windows-ServicingStack-Termsrv-Extra-Package~31bf3856ad364e35~amd64~~6.3.9600.16384.mum"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\UpdateDetect\MSRDC-Infrastructure]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\ProgramData\Hewlett-Packard\HP Registration Service\Staging\MSR\_ALL-LANGS\Link\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\ProgramData\Hewlett-Packard\HP Registration Service\Staging\MSR\_ALL-LANGS\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\ProgramData\Hewlett-Packard\HP Registration Service\Staging\MSR\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\MSR\backup\System Update kb70007\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\MSR\backup\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\MSR\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Program Files (x86)\MSR\backup\System Update kb70007\backup\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\047597D129F51F8408B3E4D90E02EA37]
"1C006203FDB61DF43130419892CC3158"="C:\Program Files (x86)\Intel\Bluetooth\hu\btmsrvview.resources.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\07E955EDA24BA2D488D9934355BF2280]
"1C006203FDB61DF43130419892CC3158"="C:\Program Files (x86)\Intel\Bluetooth\it\btmsrvview.resources.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0B81D554863EB1C4314C9FA668D3A699]
"DF917BEA0BDE9E345B42099FC7E14699"="C:\Program Files (x86)\MSR\backup\System Update kb70007\SQLite.Interop.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0EA502CC14F5814CC6F622C777C67A5B]
"DF917BEA0BDE9E345B42099FC7E14699"="C:\Program Files (x86)\MSR\backup\System Update kb70007\NewVersionUploader.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\19B67F7BB187743884BBF8086EEFDE0E]
"DF917BEA0BDE9E345B42099FC7E14699"="C:\Program Files (x86)\MSR\backup\System Update kb70007\backup\InstallerLibrary.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A53C10ACB16264409328ED02ED346EA]
"1C006203FDB61DF43130419892CC3158"="C:\Program Files (x86)\Intel\Bluetooth\pt-BR\btmsrvview.resources.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1CA49092665B11F82443282E0AB1946C]
"DF917BEA0BDE9E345B42099FC7E14699"="C:\Program Files (x86)\MSR\backup\System Update kb70007\InstallFirefoxExtension.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2A4BD6D5DD615097ED63F24A022B701D]
"DF917BEA0BDE9E345B42099FC7E14699"="C:\Program Files (x86)\MSR\backup\System Update kb70007\win32.reg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2A7341EF926F07E4F919E64BF54EABCC]
"1C006203FDB61DF43130419892CC3158"="C:\Program Files (x86)\Intel\Bluetooth\ko\btmsrvview.resources.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2C32FC754F65803448B1E5F8D8F5BD19]
"1C006203FDB61DF43130419892CC3158"="C:\Program Files (x86)\Intel\Bluetooth\fi\btmsrvview.resources.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\303AD3C25E038C79158D5D6F0FC5FFAD]
"7D2F8E1D497754242B6878DE681C98C3"="C:\ProgramData\Hewlett-Packard\HP Registration Service\Staging\MSR\_ALL-LANGS\Link\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3EC420AA2B70C946A05FBFF30764127C]
"DF917BEA0BDE9E345B42099FC7E14699"="C:\Program Files (x86)\MSR\backup\System Update kb70007\WindowsUpdater.exe.config"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4584310C82B79444BAA4EA1D5DAF34EB]
"1C006203FDB61DF43130419892CC3158"="C:\Program Files (x86)\Intel\Bluetooth\sv\btmsrvview.resources.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5216056C10D79BB4A9D43E0B58A6564C]
"1C006203FDB61DF43130419892CC3158"="C:\Program Files (x86)\Intel\Bluetooth\ar-SA\btmsrvview.resources.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5659DF8288C3E4F498C0B5CCF75C6964]
"1C006203FDB61DF43130419892CC3158"="C:\Program Files (x86)\Intel\Bluetooth\da\btmsrvview.resources.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5A0BC8146C3C54945BCCB10B70B6E265]
"1C006203FDB61DF43130419892CC3158"="C:\Program Files (x86)\Intel\Bluetooth\en-US\btmsrvview.resources.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D600135F3BD3F945B5247E098F8EA07]
"1C006203FDB61DF43130419892CC3158"="C:\Program Files (x86)\Intel\Bluetooth\btmsrvview.exe.config"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5F1E65BCE80317A8FFCD46DF5310E02D]
"DF917BEA0BDE9E345B42099FC7E14699"="C:\Program Files (x86)\MSR\backup\System Update kb70007\WindowsUpdater.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6276DDA07FCD0BA4D980FB95D998232E]
"1C006203FDB61DF43130419892CC3158"="C:\Program Files (x86)\Intel\Bluetooth\zh-Hant\btmsrvview.resources.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\669AAD439C38FEF45523168280E6D601]
"DF917BEA0BDE9E345B42099FC7E14699"="C:\Program Files (x86)\MSR\backup\System Update kb70007\Newtonsoft.Json.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7E0F551D99C458B46A52C16DAFD2C84B]
"1C006203FDB61DF43130419892CC3158"="C:\Program Files (x86)\Intel\Bluetooth\pl\btmsrvview.resources.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8341D629D6601164487351624B24B067]
"1C006203FDB61DF43130419892CC3158"="C:\Program Files (x86)\Intel\Bluetooth\btmsrvview.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\836DDB6EC65370A4C96BCD11FDC3F7B2]
"1C006203FDB61DF43130419892CC3158"="C:\Program Files (x86)\Intel\Bluetooth\th\btmsrvview.resources.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9EE6F65829F907249915C3389379E3D5]
"1C006203FDB61DF43130419892CC3158"="C:\Program Files (x86)\Intel\Bluetooth\cs\btmsrvview.resources.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A31334E10DB69FC44A49C3A325BAA051]
"1C006203FDB61DF43130419892CC3158"="C:\Program Files (x86)\Intel\Bluetooth\tr\btmsrvview.resources.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A82336B07C42201498C7A887D27B95B1]
"1C006203FDB61DF43130419892CC3158"="C:\Program Files (x86)\Intel\Bluetooth\ja\btmsrvview.resources.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AB017F40EC6B4C744A72DDBFD3FF1C17]
"1C006203FDB61DF43130419892CC3158"="C:\Program Files (x86)\Intel\Bluetooth\es\btmsrvview.resources.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B017E2FD4D841A848862ED892F58E305]
"1C006203FDB61DF43130419892CC3158"="C:\Program Files (x86)\Intel\Bluetooth\ru\btmsrvview.resources.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B98F18294E836114C8323ED6FC3881FD]
"00005119110000000100000000F01FEC"="C:\Program Files\Microsoft Analysis Services\AS OLEDB\110\xmsrv.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B98F18294E836114C8323ED6FC3881FD\00005119110000000100000000F01FEC]
"File"="AS_Client_XMSRV_dll_64.B77A7D1E_2D54_42CB_81A8_C5262CCC792B"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C43588DC32BA4944436AEAFF22170E26]
"DF917BEA0BDE9E345B42099FC7E14699"="C:\Program Files (x86)\MSR\backup\System Update kb70007\backup\uninstall.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CBC13EA191BD3304689ACE8FDD028A65]
"1C006203FDB61DF43130419892CC3158"="C:\Program Files (x86)\Intel\Bluetooth\fr\btmsrvview.resources.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D1C0FDE60600EAB46B2593DC6CA9B12B]
"1C006203FDB61DF43130419892CC3158"="C:\Program Files (x86)\Intel\Bluetooth\nl\btmsrvview.resources.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D1FE3808CF0FAD6498EFB358A527D6D9]
"1C006203FDB61DF43130419892CC3158"="C:\Program Files (x86)\Intel\Bluetooth\he\btmsrvview.resources.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D38324B140FDF411F78A8B616CA7EC02]
"DF917BEA0BDE9E345B42099FC7E14699"="C:\Program Files (x86)\MSR\backup\System Update kb70007\InstallerLibrary.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D4310819F58207949BF73831F6B7D6D9]
"1C006203FDB61DF43130419892CC3158"="C:\Program Files (x86)\Intel\Bluetooth\zh-Hans\btmsrvview.resources.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D85BE9BB4D48CF444B5867AF9B394256]
"1C006203FDB61DF43130419892CC3158"="C:\Program Files (x86)\Intel\Bluetooth\de\btmsrvview.resources.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E7CA8FDB73EAA6D4C969D7F663BFB667]
"1C006203FDB61DF43130419892CC3158"="C:\Program Files (x86)\Intel\Bluetooth\no\btmsrvview.resources.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EDB618713AFF1574496E3FA69FA58C4D]
"00005119110000000100000000F01FEC"="C:\?Program Files\Microsoft Office\Office15\MSRTEDIT.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F00482F6FA4CC4477A90DB9852D02192]
"DF917BEA0BDE9E345B42099FC7E14699"="C:\Program Files (x86)\MSR\backup\System Update kb70007\NewVersionUploader.exe.config"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F2D1A51F0A0F94A241BDCD3600B14662]
"DF917BEA0BDE9E345B42099FC7E14699"="C:\Program Files (x86)\MSR\backup\System Update kb70007\Installer.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F6099E9E1CD1D614599C44BABED6DE43]
"1C006203FDB61DF43130419892CC3158"="C:\Program Files (x86)\Intel\Bluetooth\pt\btmsrvview.resources.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7E15376F69E13B0179787B92C8AB6B5]
"DF917BEA0BDE9E345B42099FC7E14699"="C:\Program Files (x86)\MSR\backup\System Update kb70007\System.Data.SQLite.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F9D9B1123F741E24D950DC124B5560AC]
"00005119110000000100000000F01FEC"="C:\Program Files (x86)\Microsoft Analysis Services\AS OLEDB\110\xmsrv.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F9D9B1123F741E24D950DC124B5560AC\00005119110000000100000000F01FEC]
"File"="AS_Client_XMSRV_dll_32.B77A7D1E_2D54_42CB_81A8_C5262CCC792B"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FCA69FF105B176845A726FF3A437936E]
"1C006203FDB61DF43130419892CC3158"="C:\Program Files (x86)\Intel\Bluetooth\el\btmsrvview.resources.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00005109510090400100000000F01FEC\Features]
"AccessTemplatesIntl_1033"="=FX,!8^w)?G9Gh3e@KOxLNW$]y*Wz9BLH-UPjr$hJFToMGV`~=rJtWSB)ADgY)0pQJQZq?U(,Zb1u9Yvh,*SGICd[=Mw85($d.NO'1dbV.FYA?0meIK}Xblh+krs_a1LM=f?)3+tS?1E+hMF,f,-k@wh}w2&oT&Nb(Js,~qWf==kx$!r&rwJ!(m`INpsV?uKcznZwY0t}CuoI5&]x8c{O.lAp4kSLAb9rbz!9?%EDL%r)~S4H9R@QT_1G?9j'VbD2U_R_J)$GWo@*?*R.J^A`uK`),rZgd-~HA}UM'%Z0cJb{^,mwQ^55='YS02G+`!4!F`N[!!8{=$2eO%CTbRgmxHKu%mKy9%A6~6fwS'8]@ISSU93u8]YG,1O_K6-J1MsR97{n8{n4I_Mve[qr]Zrre$&Z92ij[ulwd?mfYfpt0)]UA]g.XO-q)t]FfEX7.(.FA7^R35[eDiDISj`Nh{29?{0Ni.L[ot2@`&wH`!P!@*.@5g26}gNACCESSFilesIntl_1033"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00005119110000000100000000F01FEC\Features]
"ExcelAddInPowerPivotFiles"="U?F4U]n_^?2Nv&]x24a8YbI*_RLC~8,QOd2lKax2nzCXTa$2{?[^K`,NwKLK'EJ5WYTmw8zrBL`)ex0Xr$W8D.[A`Akf_K$z[3cBC7q,xU16r8Bn9Z+&!&aD1@ic,%6t=AWEiadRpQ$WtR*Abevdx=&}genfY+U^-xo9vS8N5=3P8&),+&~NVQ-6Dble!?8SDxVTtte)m2R3?_G6,?{H4_v1rR=o)YPF0l4Jj=3{~h_''I!je3CFYU-%q@5j@mZqVQGoj=ptjwN-Y8PcNp&0gZ0fr~QSXRYm!=Radf37'Po3a$BIfHO_Z9U`_FQOy{tgwzHupoDo+A0b6(](tE*he40Me}h$P?DDvMYE_BWC_MMU&FPa2?WwZ-=5X-{iV[?[?EjiV@t7IvW6uc&g)p{H(F_m~=V-!,aB3?7OeAU4l885u=}5,rRuW9TjJm++a~=Bl@Y0kU&Qx(G6tAHCiP[W=96f(,qjAkcwX,RF1u$,HArdA3_,5y~H!7vr@uY5(9uh5?0fK@^.yO[j0ag8w@)}hP!rc-}?X_dz5MrNX98+rZQem(J,v~8qtQR{}@?UJSX2)N.G7I)=ZW1H]A5C9uZ~15K^bb9JL{m4q?xbl2ha,s6V+me-!I0@,Aj0W1BxwE^N4?5Q$C0Qf80=x=[sq4)$?@I[&0mf49x(_s)$+8l8ikeLocC,h?mU)*hA1uV$+9PO[@d()?()ZjDc*N'9H?DI@%@&c9rm(WR{XalTorV]gVr$Q9tpT9Wt'&kQWs}[7.``8Avt!n@Z=)LJ-zHd^Os`g9G='Aiv`T%v={Z`'~[(x?}ifIOh5,frf9ISaY&+a9n{Q.8!L,boFu2ae?mAa@5A
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\090FA1DDE14030442BA7CAF64A9B588E\Features]
"EAP_FAST"="7N3o@YV9NXttV+QktJjaJ%%[$mf2Ck7%993`0E2kUO0MzxG`IJi7wS3qrS02oKegWMst&Fk'5*.BJ5wxy6Pa=f9eg6oY25y-fwbtv&2_An)*WBr%XmQBXM]c,KM!MgU{TyHanvCpV0J6BLwq%`f_I1Q9n6[$iE1!ZfDO*sH'-H5+NUO[o^+&'BT0h`(U`IvZ2jHF)I*R-AHrhY@L!90I,}nodm66WHKqC2X=n8&.@I46PfF'y*'I.@yPy8FCSKZ5I(5y!+JOIcIr'9Aj1_R}Y~A_E=j`KRrVy=fj!vrT7oazvkPIH*]lw9fov)+4VgUQ7H)+LjK)h?pVC=Fwq*srfNvsMVH-p8WQ}Wtl.`g!u5p5vRSWc9_)]CL6nNOBt$,VSr3^{9XICoPP7v&qVxkn4euQ$AR**7g1G]Pxw{9=(D@AV9$b(jey*2_SZ@X@wIM.N@0%}YRslLR*PG-v0c?)`=S$$v.'*dy?sI)]B*kN?A_AcSTU7yE?rZ?4kA9+_8@QZ5){D]7qEmG+X.jWW9%pEqIkU)*+pxlCI3'q794-48&V)A!LjF3yR{S&n=vao=nt=i4_pp4j2P,3^=8NlwLTwJWFeR4lP}Prr?V-kBi`55yTnEO?uri9B=3Xf$)P'U}!kGBdwBb2X9PApou?paLCV`7W*Nfwb?dk!VtCzojQ-*xhi!VdN9v{1hO`YMvOUUJ94~UiO9tAnIpC@`C2G,n~(xt_3AFLpE*GTGzaLg2t=}DLq?}l8k@=z&[e_YZyc&D_w=P.)MsUkmA$g~u]P(I'_Ab64GU9Vue=}9q_jtyDi@W-WG-e14o?YjoT9(&,2@iGFNAc]ahW9_p%ePn]IAJ^'7Qbz-%7!,(WM0elJ
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1af2a8da7e60d0b429d7e6453b3d0182\Features]
"VC_Redist"="Z1!=RFyFrWe8MkbIdFwUUue'3TH4ITu8MkbIdFwUUue'3TH4IT*9MkbIdFwUZ1!=RFyFrWu8MkbIdFwUZ1!=RFyFrW*9MkbIdFwUXc~9Rb=GrWu8MkbIdFwUzo~9R=3GrWu8MkbIdFwUaa~9RT?GrWu8MkbIdFwU]b~9R+?GrWu8MkbIdFwUTd~9R9=GrWu8MkbIdFwUzo~9R=3GrW*9MkbIdFwUaa~9RT?GrW*9MkbIdFwUPe~9Ro9GrWu8MkbIdFwULf~9RJ9GrWu8MkbIdFwU]b~9R+?GrW*9MkbIdFwUXc~9Rb=GrW*9MkbIdFwUHg~9R}8GrWu8MkbIdFwU~@j@SS`{~iu8MkbIdFwUTd~9R9=GrW*9MkbIdFwUPe~9Ro9GrW*9MkbIdFwUA-b@SIg)!ju8MkbIdFwUvjP@S1u@!ju8MkbIdFwULf~9RJ9GrW*9MkbIdFwU.{)(35VkHTu8MkbIdFwUHg~9R}8GrW*9MkbIdFwU6[H@S&}I!ju8MkbIdFwU~@j@SS`{~i*9MkbIdFwUfp~?S$Fo!ju8MkbIdFwUA-b@SIg)!j*9MkbIdFwUQsP@SEq@!ju8MkbIdFwUvjP@S1u@!j*9MkbIdFwUZ04(3~YaHTu8MkbIdFwUD9((3e*mHTu8MkbIdFwU6[H@S&}I!j*9MkbIdFwUQsP@SEq@!j*9MkbIdFwU0E'(3deoHTu8MkbIdFwUsd?(3u.XHTu8MkbIdFwUfp~?S$Fo!j*9MkbIdFwUZ04(3~YaHT*9MkbIdFwU{,K(3,)LHTu8MkbIdFwU1%L(3R=KHTu8MkbIdFwUD9((3e*mHT*9MkbIdFwU0E'(3deoHT*9MkbIdFwUExL(3tNJ
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9eab5ec6ac3d99b498a1d16c1c815acf\Features]
"VC_Redist"="Z1!=RFyFrWe8MkbIdFwU.{)(35VkHTu8MkbIdFwU.{)(35VkHT*9MkbIdFwUZ1!=RFyFrWu8MkbIdFwUZ1!=RFyFrW*9MkbIdFwUXc~9Rb=GrWu8MkbIdFwUzo~9R=3GrWu8MkbIdFwUaa~9RT?GrWu8MkbIdFwU]b~9R+?GrWu8MkbIdFwUTd~9R9=GrWu8MkbIdFwUzo~9R=3GrW*9MkbIdFwUaa~9RT?GrW*9MkbIdFwUPe~9Ro9GrWu8MkbIdFwULf~9RJ9GrWu8MkbIdFwU]b~9R+?GrW*9MkbIdFwUXc~9Rb=GrW*9MkbIdFwUHg~9R}8GrWu8MkbIdFwU~@j@SS`{~iu8MkbIdFwUTd~9R9=GrW*9MkbIdFwUPe~9Ro9GrW*9MkbIdFwUA-b@SIg)!ju8MkbIdFwUvjP@S1u@!ju8MkbIdFwULf~9RJ9GrW*9MkbIdFwUHg~9R}8GrW*9MkbIdFwU6[H@S&}I!ju8MkbIdFwU~@j@SS`{~i*9MkbIdFwUfp~?S$Fo!ju8MkbIdFwUA-b@SIg)!j*9MkbIdFwUQsP@SEq@!ju8MkbIdFwUvjP@S1u@!j*9MkbIdFwUZ04(3~YaHTu8MkbIdFwUD9((3e*mHTu8MkbIdFwU6[H@S&}I!j*9MkbIdFwUQsP@SEq@!j*9MkbIdFwU0E'(3deoHTu8MkbIdFwUsd?(3u.XHTu8MkbIdFwUfp~?S$Fo!j*9MkbIdFwUZ04(3~YaHT*9MkbIdFwU{,K(3,)LHTu8MkbIdFwU1%L(3R=KHTu8MkbIdFwUD9((3e*mHT*9MkbIdFwU0E'(3deoHT*9MkbIdFwUExL(3tNJHTu8MkbIdFwU5z4(3+q`
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\DF917BEA0BDE9E345B42099FC7E14699\InstallProperties]
"Contact"="MSR"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\DF917BEA0BDE9E345B42099FC7E14699\InstallProperties]
"Publisher"="MSR"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F044506C8472F534F992BEC1184358F6\Features]
"WiDi"="$9}yHUGu`9-*Ssf(GYtQ+[E]Ypvqh9jE~K+(@szn*oB*(=iq6AHACQy`B[ik$8Nh(1''VA`]?]gAC7]T.%ego@]?O@?{r'lIuBh'i4dXl&mlv@3sVTBexz1mZGmJT*?0y=A40G'uP%&9]w~u*Oi!A=)1=_J9PMLT,h?R^&2t@Aq]SCWTryIylV*hs[&t^WQTlVVx?whZ@gYP3fm?e6@uTxwg_qqERU6*uBs0wnDJgrR?lQ5lGlpGv-mgFb$8h'QqJ)}deIEqSHu7^`5ktdjZZi+15OW-jdX(}52+jTC]EM}Pt1DH_RB(C=8[A7p^mC3SoG`6c5toW0UYv2%.JLQ1qIW6(i%r.r]*h0t7e&_&6w235eVEpM?pi[iW!Ib3oCaBf0KHdaW[5+ni%JaO)a!O)KNwbdp]yj2$RsfEzDmZc1YF,8p%x=X05T-&j-icvRme5-QFXsG2tSCo!cb}lHjkzeg~%2wiQJ=S&*IW51-t=DnqXa+WOGwBxX0*9Scp5mbj(@mre4JTsdC`saC0~HM*Nk1)sl)Yn$)h30?B3%oHG8,z?~onXdy?fj)wntTbS(5s-d7)?fSVWBWLZ*7N~`33m^Ql^PG1sENg5Z,5fLmX1mf5qBbg1&Ro9S.,LD7KcBsjhQ3I-Bc6k6~.j1F]OSK]u1pTAm27uBdj{?m[y3TbqoXRVx4,4jS.VHT~._QpP^YV*{FyoDx^%yNOb`(6eD3(jd`tVmuXf%lUVjQZB1SB-tY@Hq&iQ@D$Hz$Q31x^^_kOG.mw0'$vcA%5}sjBy)R%npY,lzG4*9.zkJu=Us]0[Z51V8Tll%[bq`'TM*!W&))vVth}hbF)T4{^(z8[^,2YuA0_&pfU%d!}T&c0~$jX1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ.DLL]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.401]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.404]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.405]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.406]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.407]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.408]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.40b]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.40c]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.40e]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.410]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.411]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.412]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.413]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.414]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.415]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.416]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.419]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.41D]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.41E]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.41F]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.421]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.804]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.c0a]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ.DLL]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.401]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.404]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.405]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.406]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.407]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.408]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.40b]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.40c]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.40e]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.410]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.411]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.412]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.413]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.414]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.415]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.416]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.419]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.41D]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.41E]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.41F]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.421]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.804]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.c0a]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ.DLL]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.401]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.404]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.405]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.406]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.407]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.408]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.40b]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.40c]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.40e]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.410]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.411]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.412]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.413]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.414]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.415]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.416]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.419]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.41D]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.41E]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.41F]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.421]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.804]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.c0a]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\amd64_microsoft-windows-c..-termsrv-deployment_31bf3856ad364e35_none_b420518bb2edbb96]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\amd64_microsoft-windows-c..-termsrv-deployment_31bf3856ad364e35_none_cd4c8355a20c944a]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\amd64_microsoft-windows-m..elmanifests-termsrv_31bf3856ad364e35_none_4f8205d6c4b5bf4f]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\amd64_microsoft-windows-m..msrevocationhandler_31bf3856ad364e35_none_6569b1c45a3ac2d9]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\amd64_microsoft-windows-m..ntmanifests-termsrv_31bf3856ad364e35_none_ae4b7296fb7c7057]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\amd64_microsoft-windows-m..smsrouter.resources_31bf3856ad364e35_en-us_9fc1f6fded290b4b]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\amd64_microsoft-windows-m..xperience-smsrouter_31bf3856ad364e35_none_52bef566510e1c8c]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\amd64_microsoft-windows-s..stack-termsrv-extra_31bf3856ad364e35_none_85507eb339ea023d]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\amd64_microsoft-windows-t..ices-msrdpwebaccess_31bf3856ad364e35_none_22b8055f3898a92d]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\Winners\x86_microsoft-windows-t..ices-msrdpwebaccess_31bf3856ad364e35_none_c69969db803b37f7]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv]
"InstallLocation"="C:\Program Files\NVIDIA Corporation\NvStreamSrv"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv]
"InstallSource"="C:\Program Files\NVIDIA Corporation\Installer2\GFExperience.NvStreamSrv.{75369003-836E-4CA3-A178-84122B56CBA6}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv]
"NVI2_Package"="C:\Program Files\NVIDIA Corporation\Installer2\GFExperience.NvStreamSrv.{75369003-836E-4CA3-A178-84122B56CBA6}\GFExperience.NvStreamSrv.nvi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv]
"UninstallString_Hidden"=""C:\WINDOWS\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{5BD588BD-11BE-45DB-81D9-4AA83AEEE1CE}\NVI2.DLL",UninstallPackage GFExperience.NvStreamSrv"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WINEVT\Channels\Microsoft-Windows-Mobile-Broadband-Experience-SmsRouter/Admin]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WINEVT\Channels\Microsoft-Windows-Mobile-Broadband-Experience-SmsRouter/Analytic]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WINEVT\Publishers\{0d4fdc09-8c27-494a-bda0-505e4fd8adae}]
"ResourceFileName"="%SystemRoot%\System32\samsrv.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WINEVT\Publishers\{0d4fdc09-8c27-494a-bda0-505e4fd8adae}]
"MessageFileName"="%SystemRoot%\System32\samsrv.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WINEVT\Publishers\{5b0a651a-8807-45cc-9656-7579815b6af0}]
"ResourceFileName"="%systemroot%\system32\msra.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WINEVT\Publishers\{5b0a651a-8807-45cc-9656-7579815b6af0}]
"MessageFileName"="%systemroot%\system32\msra.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WINEVT\Publishers\{89a2278b-c662-4aff-a06c-46ad3f220bca}]
"ResourceFileName"="%SystemRoot%\system32\dimsroam.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WINEVT\Publishers\{89a2278b-c662-4aff-a06c-46ad3f220bca}]
"MessageFileName"="%SystemRoot%\system32\dimsroam.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WINEVT\Publishers\{89a2278b-c662-4aff-a06c-46ad3f220bca}]
"ParameterFileName"="%SystemRoot%\system32\dimsroam.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WINEVT\Publishers\{c76baa63-ae81-421c-b425-340b4b24157f}]
"ResourceFileName"="%SystemRoot%\system32\termsrv.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WINEVT\Publishers\{c76baa63-ae81-421c-b425-340b4b24157f}]
"MessageFileName"="%SystemRoot%\system32\termsrv.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WINEVT\Publishers\{d49918cf-9489-4bf1-9d7b-014d864cf71f}]
"ResourceFileName"="%SystemRoot%\system32\psmsrv.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WINEVT\Publishers\{d49918cf-9489-4bf1-9d7b-014d864cf71f}]
"MessageFileName"="%SystemRoot%\system32\psmsrv.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WINEVT\Publishers\{fa773482-f6ed-4895-8a7d-4f5850678e59}]
@="Microsoft-Windows-Mobile-Broadband-Experience-SmsRouter"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WINEVT\Publishers\{fa773482-f6ed-4895-8a7d-4f5850678e59}]
"ResourceFileName"="%SystemRoot%\system32\SMSRouter.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WINEVT\Publishers\{fa773482-f6ed-4895-8a7d-4f5850678e59}]
"MessageFileName"="%SystemRoot%\system32\SMSRouter.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WINEVT\Publishers\{fa773482-f6ed-4895-8a7d-4f5850678e59}\ChannelReferences\0]
@="Microsoft-Windows-Mobile-Broadband-Experience-SmsRouter/Admin"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WINEVT\Publishers\{fa773482-f6ed-4895-8a7d-4f5850678e59}\ChannelReferences\1]
@="Microsoft-Windows-Mobile-Broadband-Experience-SmsRouter/Analytic"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"="msrle32.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7DD666D5-AC93-428A-B051-BD4F13C8356D}]
"Source"="$(@%systemroot%\system32\msra.exe,-687)"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7DD666D5-AC93-428A-B051-BD4F13C8356D}]
"Author"="$(@%systemroot%\system32\msra.exe,-686)"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7DD666D5-AC93-428A-B051-BD4F13C8356D}]
"Description"="$(@%systemroot%\system32\msra.exe,-688)"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
@="mnmsrvc"
[HKEY_LOCAL_MACHINE\SOFTWARE\NVIDIA Corporation\Installer2\Cache]
"GFExperience.NvStreamSrv/2.1.214"="C:\Program Files\NVIDIA Corporation\Installer2\GFExperience.NvStreamSrv.{75369003-836E-4CA3-A178-84122B56CBA6}\GFExperience.NvStreamSrv.nvi"
[HKEY_LOCAL_MACHINE\SOFTWARE\NVIDIA Corporation\Installer2\Configs]
"GFExperience.NvStreamSrv/2.1.214"="C:\Program Files\NVIDIA Corporation\Installer2\installer.{5BD588BD-11BE-45DB-81D9-4AA83AEEE1CE}\setup.CFG"
[HKEY_LOCAL_MACHINE\SOFTWARE\NVIDIA Corporation\Installer2\Extensions]
"GFExperience.NvStreamSrv/2.1.214"="C:\Program Files\NVIDIA Corporation\Installer2\GFExperience.NvStreamSrv.{75369003-836E-4CA3-A178-84122B56CBA6}\NvStreamSrvExt.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\NVIDIA Corporation\Installer2\Relationships]
"GFExperience.LEDVisualizer/1.0"="Network.Service/1.0 Display.Update/14.6.22 Display.Optimus/14.6.22 VirtualAudio.Driver/1.2.23 ShadowPlay/14.6.22 GFExperience.NvStreamSrv/2.1.214 Display.GFExperience/14.6.22 Update.Core/14.6.22"
[HKEY_LOCAL_MACHINE\SOFTWARE\NVIDIA Corporation\Installer2\Relationships]
"Network.Service/1.0"="Display.Update/14.6.22 Display.Optimus/14.6.22 VirtualAudio.Driver/1.2.23 ShadowPlay/14.6.22 GFExperience.LEDVisualizer/1.0 GFExperience.NvStreamSrv/2.1.214 Display.GFExperience/14.6.22 Update.Core/14.6.22"
[HKEY_LOCAL_MACHINE\SOFTWARE\NVIDIA Corporation\Installer2\Relationships]
"VirtualAudio.Driver/1.2.23"="Network.Service/1.0 Display.Update/14.6.22 Display.Optimus/14.6.22 ShadowPlay/14.6.22 GFExperience.LEDVisualizer/1.0 GFExperience.NvStreamSrv/2.1.214 Display.GFExperience/14.6.22 Update.Core/14.6.22"
[HKEY_LOCAL_MACHINE\SOFTWARE\NVIDIA Corporation\Installer2\Relationships]
"Display.Update/14.6.22"="Network.Service/1.0 Display.Optimus/14.6.22 VirtualAudio.Driver/1.2.23 ShadowPlay/14.6.22 GFExperience.LEDVisualizer/1.0 GFExperience.NvStreamSrv/2.1.214 Display.GFExperience/14.6.22 Update.Core/14.6.22"
[HKEY_LOCAL_MACHINE\SOFTWARE\NVIDIA Corporation\Installer2\Relationships]
"Display.Optimus/14.6.22"="Network.Service/1.0 Display.Update/14.6.22 VirtualAudio.Driver/1.2.23 ShadowPlay/14.6.22 GFExperience.LEDVisualizer/1.0 GFExperience.NvStreamSrv/2.1.214 Display.GFExperience/14.6.22 Update.Core/14.6.22"
[HKEY_LOCAL_MACHINE\SOFTWARE\NVIDIA Corporation\Installer2\Relationships]
"ShadowPlay/14.6.22"="Network.Service/1.0 Display.Update/14.6.22 Display.Optimus/14.6.22 VirtualAudio.Driver/1.2.23 GFExperience.LEDVisualizer/1.0 GFExperience.NvStreamSrv/2.1.214 Display.GFExperience/14.6.22 Update.Core/14.6.22"
[HKEY_LOCAL_MACHINE\SOFTWARE\NVIDIA Corporation\Installer2\Relationships]
"GFExperience.NvStreamSrv/2.1.214"="Network.Service/1.0 Display.Update/14.6.22 Display.Optimus/14.6.22 VirtualAudio.Driver/1.2.23 ShadowPlay/14.6.22 GFExperience.LEDVisualizer/1.0 Display.GFExperience/14.6.22 Update.Core/14.6.22"
[HKEY_LOCAL_MACHINE\SOFTWARE\NVIDIA Corporation\Installer2\Relationships]
"Display.GFExperience/14.6.22"="Network.Service/1.0 Display.Update/14.6.22 Display.Optimus/14.6.22 VirtualAudio.Driver/1.2.23 ShadowPlay/14.6.22 GFExperience.LEDVisualizer/1.0 GFExperience.NvStreamSrv/2.1.214 Update.Core/14.6.22"
[HKEY_LOCAL_MACHINE\SOFTWARE\NVIDIA Corporation\Installer2\Relationships]
"Update.Core/14.6.22"="Network.Service/1.0 Display.Update/14.6.22 Display.Optimus/14.6.22 VirtualAudio.Driver/1.2.23 ShadowPlay/14.6.22 GFExperience.LEDVisualizer/1.0 GFExperience.NvStreamSrv/2.1.214 Display.GFExperience/14.6.22"
[HKEY_LOCAL_MACHINE\SOFTWARE\NVIDIA Corporation\NvStreamSrv]
[HKEY_LOCAL_MACHINE\SOFTWARE\NVIDIA Corporation\NvStreamSrv]
"InstallLocation"="C:\Program Files\NVIDIA Corporation\NvStreamSrv"
[HKEY_LOCAL_MACHINE\SOFTWARE\NVIDIA Corporation\NvStreamSrv]
"InstallLocationX86"="C:\Program Files (x86)\NVIDIA Corporation\NvStreamSrv"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\aducky]
"PrivoxyPath"="C:\Program Files (x86)\MSR\Privoxy"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Jet\4.0\Engines\Jet 2.x]
"Win32"="C:\Windows\SysWOW64\msrd2x40.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Jet\4.0\Engines\Jet 3.x]
"Win32"="C:\Windows\SysWOW64\msrd3x40.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\MessengerService\SessionManager\Apps\{56b994a7-380f-410b-9985-c809d78c1bdc}]
"Path"="C:\Windows\SysWOW64\msra.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\MessengerService\SessionManager\Apps\{703EA1A8-D73E-43e3-852C-EE85B5D872C2}]
"Path"="C:\Windows\SysWOW64\msra.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\RendezvousApps\{56b994a7-380f-410b-9985-c809d78c1bdc}]
"Path"="C:\Windows\SysWOW64\msra.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\RendezvousApps\{703EA1A8-D73E-43e3-852C-EE85B5D872C2}]
"Path"="C:\Windows\SysWOW64\msra.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{AEB719FD-EDB0-43E9-B524-90F97C1E6499}]
"Contact"="MSR"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{AEB719FD-EDB0-43E9-B524-90F97C1E6499}]
"Publisher"="MSR"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ.DLL]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.401]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.404]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.405]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.406]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.407]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.408]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.40b]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.40c]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.40e]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.410]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.411]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.412]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.413]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.414]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.415]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.416]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.419]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.41D]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.41E]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.41F]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.421]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.804]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{1DE19EC1-9E70-41FB-A30E-4BB37443C197}/CNMSRAZ0.c0a]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ.DLL]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.401]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.404]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.405]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.406]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.407]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.408]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.40b]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.40c]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.40e]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.410]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.411]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.412]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.413]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.414]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.415]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.416]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.419]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.41D]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.41E]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.41F]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.421]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.804]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{6184902B-95CF-4469-B04C-A79BEC366BEC}/CNMSRAZ0.c0a]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ.DLL]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.401]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.404]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.405]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.406]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.407]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.408]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.40b]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.40c]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.40e]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.410]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.411]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.412]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.413]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.414]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.415]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.416]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.419]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.41D]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.41E]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.41F]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.421]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.804]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Setup\PnpLockdownFiles\%SystemRoot%/system32/spool/DRIVERS/x64/{8B7A9BE5-0E4E-4A36-8BCF-4A9E544F2DFA}/CNMSRAZ0.c0a]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"="msrle32.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Windows]
@="mnmsrvc"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{301B94BA-5D25-4A12-BFFE-3B6E7A616585}\ProgID]
@="MsRDP.MsRDP.9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{301B94BA-5D25-4A12-BFFE-3B6E7A616585}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{4eb89ff4-7f78-4a0f-8b8d-2bf02e94e4b2}\ProgID]
@="MsRDP.MsRDP.5"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{4eb89ff4-7f78-4a0f-8b8d-2bf02e94e4b2}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{4EDCB26C-D24C-4e72-AF07-B576699AC0DE}\ProgID]
@="MsRDP.MsRDP.4"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{4EDCB26C-D24C-4e72-AF07-B576699AC0DE}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{54CE37E0-9834-41ae-9896-4DAB69DC022B}\ProgID]
@="MsRDP.MsRDP.4.a"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{54CE37E0-9834-41ae-9896-4DAB69DC022B}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{5F681803-2900-4C43-A1CC-CF405404A676}\ProgID]
@="MsRDP.MsRDP.8"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{5F681803-2900-4C43-A1CC-CF405404A676}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{6A5B0C7C-5CCB-4F10-A043-B8DE007E1952}]
@="MsRdpClientShell Class"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{6A5B0C7C-5CCB-4F10-A043-B8DE007E1952}\InprocServer32]
@="%SystemRoot%\system32\MsRdpWebAccess.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{6A5B0C7C-5CCB-4F10-A043-B8DE007E1952}\ProgID]
@="MsRdpWebAccess.MsRdpClientShell.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{6A5B0C7C-5CCB-4F10-A043-B8DE007E1952}\VersionIndependentProgID]
@="MsRdpWebAccess.MsRdpClientShell"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{6A6F4B83-45C5-4ca9-BDD9-0D81C12295E4}\ProgID]
@="MsRDP.MsRDP.3.a"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{6A6F4B83-45C5-4ca9-BDD9-0D81C12295E4}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{7390f3d8-0439-4c05-91e3-cf5cb290c3d0}\ProgID]
@="MsRDP.MsRDP.6"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{7390f3d8-0439-4c05-91e3-cf5cb290c3d0}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{7584c670-2274-4efb-b00b-d6aaba6d3850}\ProgID]
@="MsRDP.MsRDP.3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{7584c670-2274-4efb-b00b-d6aaba6d3850}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{9059f30f-4eb1-4bd2-9fdc-36f43a218f4a}\ProgID]
@="MsRDP.MsRDP.2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{9059f30f-4eb1-4bd2-9fdc-36f43a218f4a}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{96236A71-9DBC-11DA-9E3F-0011114AE311}\InProcServer32]
@="%SystemRoot%\system32\msrdc.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{96236A85-9DBC-11DA-9E3F-0011114AE311}\InprocServer32]
@="%SystemRoot%\system32\msrdc.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{96236A85-9DBC-11DA-9E3F-0011114AE311}\ProgID]
@="MSRDC.RdcLibrary.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{96236A85-9DBC-11DA-9E3F-0011114AE311}\VersionIndependentProgID]
@="MSRDC.RdcLibrary"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{96236A8F-9DBC-11DA-9E3F-0011114AE311}\InprocServer32]
@="%SystemRoot%\system32\msrdc.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{96236A8F-9DBC-11DA-9E3F-0011114AE311}\ProgID]
@="MSRDC.SimilarityTraitsTable.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{96236A8F-9DBC-11DA-9E3F-0011114AE311}\VersionIndependentProgID]
@="MSRDC.SimilarityTraitsTable"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{96236A90-9DBC-11DA-9E3F-0011114AE311}\InprocServer32]
@="%SystemRoot%\system32\msrdc.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{96236A90-9DBC-11DA-9E3F-0011114AE311}\ProgID]
@="MSRDC.SimilarityFileIdTable.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{96236A90-9DBC-11DA-9E3F-0011114AE311}\VersionIndependentProgID]
@="MSRDC.SimilarityFileIdTable"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{96236A91-9DBC-11DA-9E3F-0011114AE311}\InprocServer32]
@="%SystemRoot%\system32\msrdc.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{96236A91-9DBC-11DA-9E3F-0011114AE311}\ProgID]
@="MSRDC.Similarity.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{96236A91-9DBC-11DA-9E3F-0011114AE311}\VersionIndependentProgID]
@="MSRDC.Similarity"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{971127BB-259F-48c2-BD75-5F97A3331551}\ProgID]
@="MsRDP.MsRDP.2.a"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{971127BB-259F-48c2-BD75-5F97A3331551}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{a9d7038d-b5ed-472e-9c47-94bea90a5910}\ProgID]
@="MsRDP.MsRDP.7"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{a9d7038d-b5ed-472e-9c47-94bea90a5910}\VersionIndependentProgID]
@="MsRDP.MsRDP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{011C3236-4D81-4515-9143-067AB630D299}]
@="IMsRdpClientTransportSettings4"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{095E0738-D97D-488B-B9F6-DD0E8D66C0DE}]
@="IMsRdpClient4"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{145D0621-04CF-4FC2-A766-A81A9069CDF8}]
@="IMsRdpWorkspace"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{145D0622-04CF-4FC3-A776-A82A9169CDF8}]
@="IMsRdpWorkspace2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{19CD856B-C542-4C53-ACEE-F127E3BE1A59}]
@="IMsRdpClientAdvancedSettings3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{222c4b5d-45d9-4df0-a7c6-60cf9089d285}]
@="IMsRdpClientAdvancedSettings6"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{25f2ce20-8b1d-4971-a7cd-549dae201fc0}]
@="IMsRdpClientSecuredSettings2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{26036036-4010-4578-8091-0db9a1edf9c3}]
@="IMsRdpClientAdvancedSettings7"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{28904001-04B6-436C-A55B-0AF1A0883DC9}]
@="IMsRdpClient9"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{3C65B4AB-12B3-465B-ACD4-B8DAD3BFF9E2}]
@="IMsRdpClientAdvancedSettings"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{3D5B21AC-748D-41DE-8F30-E15169586BD4}]
@="IMsRdpClientTransportSettings3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{4247E044-9271-43A9-BC49-E2AD9E855D62}]
@="IMsRdpClient8"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{4eb5335b-6429-477d-b922-e06a28ecd8bf}]
@="IMsRdpClient5"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{605BEFCF-39C1-45CC-A811-068FB7BE346D}]
@="IMsRdpClientSecuredSettings"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{67341688-D606-4c73-A5D2-2E0489009319}]
@="IMsRdpClientTransportSettings2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{720298C0-A099-46f5-9F82-96921BAE4701}]
@="IMsRdpClientTransportSettings"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{89acb528-2557-4d16-8625-226a30e97e9a}]
@="IMsRdpClientAdvancedSettings8"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{91B7CBC5-A72E-4FA0-9300-D647D7E897FF}]
@="IMsRdpClient3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{92B4A539-7115-4B7C-A5A9-E5D9EFC2780A}]
@="IMsRdpClient"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{98BD3AFF-6884-452B-A220-71890551D3B1}]
@="IMsRdpClientShell4"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{9AC42117-2B76-4320-AA44-0E616AB8437B}]
@="IMsRdpClientAdvancedSettings2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{b2a5b5ce-3461-444a-91d4-add26d070638}]
@="IMsRdpClient7"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{d012ae6d-c19a-4bfe-b367-201f8911f134}]
@="IMsRdpClientShell"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{d43b7d80-8517-4b6d-9eac-96ad6800d7f2}]
@="IMsRdpClient6"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{DC31A06F-97D2-410F-8FD1-AD4FDDDC0146}]
@="IMsRdpClientShell2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{DC31A070-97D3-4110-8FD2-AD4FDDDD0246}]
@="IMsRdpClientShell3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{DCBBBAB6-2013-4BBB-AAEE-338E368AF6FA}]
@="IMbnSmsReadMsgPdu"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{DCBBBAB6-2014-4BBB-AAEE-338E368AF6FA}]
@="IMbnSmsReadMsgTextCdma"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{E7E17DC4-3B71-4BA7-A8E6-281FFADCA28F}]
@="IMsRdpClient2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{FBA7F64E-6783-4405-DA45-FA4A763DABD0}]
@="IMsRdpClientAdvancedSettings5"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{FBA7F64E-7345-4405-AE50-FA4A763DC0DE}]
@="IMsRdpClientAdvancedSettings4"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{FE6233F4-955D-4C3E-A071-2871CC6035AD}]
@="IMsRdpWorkspace3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\AppID\{6B1DE8B3-DFB1-4C0E-9D9A-89CA730DE93F}]
@="MsRdpSessionManager"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{2F7FC181-292B-11D2-A795-DFAA798E9148}\1.0]
@="msrtedit 1.0 Type Library"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{2F7FC181-292B-11D2-A795-DFAA798E9148}\1.0\0\win64]
@="C:\Program Files\Microsoft Office\Office15\MSRTEDIT.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{3EA49599-AF67-4142-B379-C54786F112B2}\1.0]
@="MsRdpWebAccess 1.0 Type Library"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{3EA49599-AF67-4142-B379-C54786F112B2}\1.0\0\win32]
@="C:\Windows\SysWOW64\MsRdpWebAccess.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{3EA49599-AF67-4142-B379-C54786F112B2}\1.0\0\win64]
@="C:\Windows\System32\MsRdpWebAccess.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{833E4000-AFF7-4AC3-AAC2-9F24C1457BCE}\1.0\0\win64]
@="C:\Windows\System32\MsraLegacy.tlb"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{9C757116-4367-4DA9-AC0E-6C6577AD5560}\1.0]
@="MsRdpSessionManager 1.0 Type Library"
 

Link to post
Share on other sites

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{2a9fe532-0cdc-44f9-9827-76192f2ca2fb}]
"Class"="HidMsr"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4d36e972-e325-11ce-bfc1-08002be10318}\0012]
"DeviceInstanceID"="SWD\MSRRAS\MS_SSTPMINIPORT"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4d36e972-e325-11ce-bfc1-08002be10318}\0013]
"DeviceInstanceID"="SWD\MSRRAS\MS_AGILEVPNMINIPORT"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4d36e972-e325-11ce-bfc1-08002be10318}\0014]
"DeviceInstanceID"="SWD\MSRRAS\MS_NDISWANIP"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4d36e972-e325-11ce-bfc1-08002be10318}\0015]
"DeviceInstanceID"="SWD\MSRRAS\MS_L2TPMINIPORT"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4d36e972-e325-11ce-bfc1-08002be10318}\0016]
"DeviceInstanceID"="SWD\MSRRAS\MS_PPTPMINIPORT"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4d36e972-e325-11ce-bfc1-08002be10318}\0017]
"DeviceInstanceID"="SWD\MSRRAS\MS_NDISWANBH"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4d36e972-e325-11ce-bfc1-08002be10318}\0018]
"DeviceInstanceID"="SWD\MSRRAS\MS_NDISWANIPV6"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4d36e972-e325-11ce-bfc1-08002be10318}\0019]
"DeviceInstanceID"="SWD\MSRRAS\MS_PPPOEMINIPORT"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ComputerName\ComputerName]
@="mnmsrvc"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{ad498944-762f-11d0-8dcb-00c04fc3358c}\##?#SWD#MSRRAS#MS_AGILEVPNMINIPORT#{ad498944-762f-11d0-8dcb-00c04fc3358c}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{ad498944-762f-11d0-8dcb-00c04fc3358c}\##?#SWD#MSRRAS#MS_AGILEVPNMINIPORT#{ad498944-762f-11d0-8dcb-00c04fc3358c}]
"DeviceInstance"="SWD\MSRRAS\MS_AGILEVPNMINIPORT"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{ad498944-762f-11d0-8dcb-00c04fc3358c}\##?#SWD#MSRRAS#MS_L2TPMINIPORT#{ad498944-762f-11d0-8dcb-00c04fc3358c}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{ad498944-762f-11d0-8dcb-00c04fc3358c}\##?#SWD#MSRRAS#MS_L2TPMINIPORT#{ad498944-762f-11d0-8dcb-00c04fc3358c}]
"DeviceInstance"="SWD\MSRRAS\MS_L2TPMINIPORT"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{ad498944-762f-11d0-8dcb-00c04fc3358c}\##?#SWD#MSRRAS#MS_NDISWANBH#{ad498944-762f-11d0-8dcb-00c04fc3358c}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{ad498944-762f-11d0-8dcb-00c04fc3358c}\##?#SWD#MSRRAS#MS_NDISWANBH#{ad498944-762f-11d0-8dcb-00c04fc3358c}]
"DeviceInstance"="SWD\MSRRAS\MS_NDISWANBH"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{ad498944-762f-11d0-8dcb-00c04fc3358c}\##?#SWD#MSRRAS#MS_NDISWANIP#{ad498944-762f-11d0-8dcb-00c04fc3358c}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{ad498944-762f-11d0-8dcb-00c04fc3358c}\##?#SWD#MSRRAS#MS_NDISWANIP#{ad498944-762f-11d0-8dcb-00c04fc3358c}]
"DeviceInstance"="SWD\MSRRAS\MS_NDISWANIP"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{ad498944-762f-11d0-8dcb-00c04fc3358c}\##?#SWD#MSRRAS#MS_NDISWANIPV6#{ad498944-762f-11d0-8dcb-00c04fc3358c}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{ad498944-762f-11d0-8dcb-00c04fc3358c}\##?#SWD#MSRRAS#MS_NDISWANIPV6#{ad498944-762f-11d0-8dcb-00c04fc3358c}]
"DeviceInstance"="SWD\MSRRAS\MS_NDISWANIPV6"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{ad498944-762f-11d0-8dcb-00c04fc3358c}\##?#SWD#MSRRAS#MS_PPPOEMINIPORT#{ad498944-762f-11d0-8dcb-00c04fc3358c}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{ad498944-762f-11d0-8dcb-00c04fc3358c}\##?#SWD#MSRRAS#MS_PPPOEMINIPORT#{ad498944-762f-11d0-8dcb-00c04fc3358c}]
"DeviceInstance"="SWD\MSRRAS\MS_PPPOEMINIPORT"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{ad498944-762f-11d0-8dcb-00c04fc3358c}\##?#SWD#MSRRAS#MS_PPTPMINIPORT#{ad498944-762f-11d0-8dcb-00c04fc3358c}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{ad498944-762f-11d0-8dcb-00c04fc3358c}\##?#SWD#MSRRAS#MS_PPTPMINIPORT#{ad498944-762f-11d0-8dcb-00c04fc3358c}]
"DeviceInstance"="SWD\MSRRAS\MS_PPTPMINIPORT"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{ad498944-762f-11d0-8dcb-00c04fc3358c}\##?#SWD#MSRRAS#MS_SSTPMINIPORT#{ad498944-762f-11d0-8dcb-00c04fc3358c}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{ad498944-762f-11d0-8dcb-00c04fc3358c}\##?#SWD#MSRRAS#MS_SSTPMINIPORT#{ad498944-762f-11d0-8dcb-00c04fc3358c}]
"DeviceInstance"="SWD\MSRRAS\MS_SSTPMINIPORT"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{cac88484-7515-4c03-82e6-71a87abac361}\##?#SWD#MSRRAS#MS_AGILEVPNMINIPORT#{cac88484-7515-4c03-82e6-71a87abac361}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{cac88484-7515-4c03-82e6-71a87abac361}\##?#SWD#MSRRAS#MS_AGILEVPNMINIPORT#{cac88484-7515-4c03-82e6-71a87abac361}]
"DeviceInstance"="SWD\MSRRAS\MS_AGILEVPNMINIPORT"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{cac88484-7515-4c03-82e6-71a87abac361}\##?#SWD#MSRRAS#MS_L2TPMINIPORT#{cac88484-7515-4c03-82e6-71a87abac361}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{cac88484-7515-4c03-82e6-71a87abac361}\##?#SWD#MSRRAS#MS_L2TPMINIPORT#{cac88484-7515-4c03-82e6-71a87abac361}]
"DeviceInstance"="SWD\MSRRAS\MS_L2TPMINIPORT"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{cac88484-7515-4c03-82e6-71a87abac361}\##?#SWD#MSRRAS#MS_NDISWANBH#{cac88484-7515-4c03-82e6-71a87abac361}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{cac88484-7515-4c03-82e6-71a87abac361}\##?#SWD#MSRRAS#MS_NDISWANBH#{cac88484-7515-4c03-82e6-71a87abac361}]
"DeviceInstance"="SWD\MSRRAS\MS_NDISWANBH"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{cac88484-7515-4c03-82e6-71a87abac361}\##?#SWD#MSRRAS#MS_NDISWANIP#{cac88484-7515-4c03-82e6-71a87abac361}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{cac88484-7515-4c03-82e6-71a87abac361}\##?#SWD#MSRRAS#MS_NDISWANIP#{cac88484-7515-4c03-82e6-71a87abac361}]
"DeviceInstance"="SWD\MSRRAS\MS_NDISWANIP"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{cac88484-7515-4c03-82e6-71a87abac361}\##?#SWD#MSRRAS#MS_NDISWANIPV6#{cac88484-7515-4c03-82e6-71a87abac361}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{cac88484-7515-4c03-82e6-71a87abac361}\##?#SWD#MSRRAS#MS_NDISWANIPV6#{cac88484-7515-4c03-82e6-71a87abac361}]
"DeviceInstance"="SWD\MSRRAS\MS_NDISWANIPV6"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{cac88484-7515-4c03-82e6-71a87abac361}\##?#SWD#MSRRAS#MS_PPPOEMINIPORT#{cac88484-7515-4c03-82e6-71a87abac361}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{cac88484-7515-4c03-82e6-71a87abac361}\##?#SWD#MSRRAS#MS_PPPOEMINIPORT#{cac88484-7515-4c03-82e6-71a87abac361}]
"DeviceInstance"="SWD\MSRRAS\MS_PPPOEMINIPORT"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{cac88484-7515-4c03-82e6-71a87abac361}\##?#SWD#MSRRAS#MS_PPTPMINIPORT#{cac88484-7515-4c03-82e6-71a87abac361}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{cac88484-7515-4c03-82e6-71a87abac361}\##?#SWD#MSRRAS#MS_PPTPMINIPORT#{cac88484-7515-4c03-82e6-71a87abac361}]
"DeviceInstance"="SWD\MSRRAS\MS_PPTPMINIPORT"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{cac88484-7515-4c03-82e6-71a87abac361}\##?#SWD#MSRRAS#MS_SSTPMINIPORT#{cac88484-7515-4c03-82e6-71a87abac361}]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\DeviceClasses\{cac88484-7515-4c03-82e6-71a87abac361}\##?#SWD#MSRRAS#MS_SSTPMINIPORT#{cac88484-7515-4c03-82e6-71a87abac361}]
"DeviceInstance"="SWD\MSRRAS\MS_SSTPMINIPORT"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\NetDiagFx\Microsoft\HostDLLs\RAHelperClass\HelperClasses\RAHelperClass]
"ProgressDescription"="C:\Windows\System32\msrahc.dll,5000"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\NetDiagFx\Microsoft\HostDLLs\RAHelperClass\HelperClasses\RAHelperClass]
"Description"="C:\Windows\System32\msrahc.dll,400"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\NetDiagFx\Microsoft\HostDLLs\RAHelperClass\HelperClasses\RAHelperClass]
"Component"="C:\Windows\System32\msrahc.dll,100"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\NetDiagFx\Microsoft\HostDLLs\RAHelperClass\HelperClasses\RAHelperClass\Attributes\DiagnosisType]
"Description"="C:\Windows\System32\msrahc.dll,550"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\NetDiagFx\Microsoft\HostDLLs\RAHelperClass\HelperClasses\RAHelperClass\Repairs\{66459F26-2484-47A8-A465-D10206BF3BC5}]
"Description"="C:\Windows\System32\msrahc.dll,609"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\NetDiagFx\Microsoft\HostDLLs\RAHelperClass\HelperClasses\RAHelperClass\Repairs\{72BCF063-0CB8-47DD-BF1A-89AA66331AA0}]
"Description"="C:\Windows\System32\msrahc.dll,607"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\NetDiagFx\Microsoft\HostDLLs\RAHelperClass\HelperClasses\RAHelperClass\Repairs\{83247748-0688-47B3-BADA-0C047F246AF2}]
"Description"="C:\Windows\System32\msrahc.dll,602"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\NetDiagFx\Microsoft\HostDLLs\RAHelperClass\HelperClasses\RAHelperClass\Repairs\{9D2E703D-2FA0-4864-ACE4-C1AC60D6924E}]
"Description"="C:\Windows\System32\msrahc.dll,603"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\NetDiagFx\Microsoft\HostDLLs\RAHelperClass\HelperClasses\RAHelperClass\Repairs\{B6D0AE66-7753-4FC3-9397-C2750937158E}]
"Description"="C:\Windows\System32\msrahc.dll,600"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\NetDiagFx\Microsoft\HostDLLs\RAHelperClass\HelperClasses\RAHelperClass\Repairs\{BC9100F1-3174-4ED1-9165-2B9293A70E93}]
"Description"="C:\Windows\System32\msrahc.dll,604"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\NetDiagFx\Microsoft\HostDLLs\RAHelperClass\HelperClasses\RAHelperClass\Repairs\{CBFE7A03-0C93-4C88-80E1-F232874F095D}]
"Description"="C:\Windows\System32\msrahc.dll,606"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\NetDiagFx\Microsoft\HostDLLs\RAHelperClass\HelperClasses\RAHelperClass\Repairs\{D803B207-68A4-4DFD-A8F2-7CF9A2DCC42C}]
"Description"="C:\Windows\System32\msrahc.dll,601"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\NetDiagFx\Microsoft\HostDLLs\RAHelperClass\HelperClasses\RAHelperClass\Repairs\{E1C29FCE-9136-40EE-BF4B-6351D44D73E4}]
"Description"="C:\Windows\System32\msrahc.dll,605"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\NetDiagFx\Microsoft\HostDLLs\RAHelperClass\HelperClasses\RAHelperClass\RootCauses\{5ABABC33-95EF-4F12-8E97-7AC33234E44C}]
"Description"="C:\Windows\System32\msrahc.dll,704"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\NetDiagFx\Microsoft\HostDLLs\RAHelperClass\HelperClasses\RAHelperClass\RootCauses\{6CC2DE1A-4F0C-4267-83F4-3946BCDC09D3}]
"Description"="C:\Windows\System32\msrahc.dll,700"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\NetDiagFx\Microsoft\HostDLLs\RAHelperClass\HelperClasses\RAHelperClass\RootCauses\{8D59E121-203D-48A4-AE0A-C0EF231B574D}]
"Description"="C:\Windows\System32\msrahc.dll,701"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\NetDiagFx\Microsoft\HostDLLs\RAHelperClass\HelperClasses\RAHelperClass\RootCauses\{A15DDDF3-E9B8-4C93-9CF5-FD643DBFA4F4}]
"Description"="C:\Windows\System32\msrahc.dll,702"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\NetDiagFx\Microsoft\HostDLLs\RAHelperClass\HelperClasses\RAHelperClass\RootCauses\{E6C2AEC2-E8A0-4D0A-BECF-2363C8001CA4}]
"Description"="C:\Windows\System32\msrahc.dll,703"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\NetDiagFx\Microsoft\HostDLLs\WWAN Helper Class\HelperClasses\WWanHC\Providers\{FA773482-F6ED-4895-8A7D-4F5850678E59}]
"Name"="Microsoft-Windows-Mobile-Broadband-Experience-SmsRouter"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\NetTrace\Scenarios\RemoteAssistance]
"Description"="C:\Windows\System32\msrahc.dll,400"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{62BDC719-9B72-4E0E-BCDC-93481C553302}\Connection]
"PnPInstanceId"="SWD\MSRRAS\MS_L2TPMINIPORT"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{67931C15-7C7E-42A9-B3D9-301E946B1E07}\Connection]
"PnPInstanceId"="SWD\MSRRAS\MS_PPTPMINIPORT"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{74BDDE28-1C13-4CB3-A511-1DF60C6E4E71}\Connection]
"PnPInstanceId"="SWD\MSRRAS\MS_PPPOEMINIPORT"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{856CC7DA-BB94-4B91-9536-5E6F8F2EA5E3}\Connection]
"PnPInstanceId"="SWD\MSRRAS\MS_NDISWANIP"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{C4232E36-0EFA-48C3-B02E-BBC9CD9AF52A}\Connection]
"PnPInstanceId"="SWD\MSRRAS\MS_NDISWANIPV6"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{CBA99263-F9AC-48B3-8F09-DDEBCA99034B}\Connection]
"PnPInstanceId"="SWD\MSRRAS\MS_NDISWANBH"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{DA5E686A-FF47-46F8-88F3-CCBCAA6B5D9D}\Connection]
"PnPInstanceId"="SWD\MSRRAS\MS_SSTPMINIPORT"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}\{FAA8062C-1F88-4036-980B-61C8E9482121}\Connection]
"PnPInstanceId"="SWD\MSRRAS\MS_AGILEVPNMINIPORT"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Print\Environments\Windows x64\Drivers\Version-3\Canon MX890 series Printer]
"Dependent Files"="CNMLRAZ.DLL CNMCBAZ.DLL CNMICAZ.DLL CNMDCAZ.DLL CNMD5AZ.DLL CNMURAZ.DLL CNMSRAZ.DLL CNMINAZ.INI CNMSMAZ.DLL CNMHOAZ.DLL CNMSSAZ.SMR CNMSDAZ.DLL CNMSQAZ.DLL CNMEIAZ.DLL CNMSHAZ.CHM CNMIHAZ.CHM CNMUBAZ.DLL CNMOPAZ.DLL CNMSBAZ.DLL CNB_3950.TBL CNMP0AZ.DAT CNMP1AZ.DAT CNMP2AZ.DAT CNMFUAZ.DLL CNMLHAZ.DLL CNML2AZ.DLL CNML3AZ.DLL CNMPVAZ.DLL CNMSEAZ.EXE CNMBU3AZ.DLL CNMBU6AZ.DLL CNMBM3AZ.DLL CNMBM6AZ.DLL CNMBS3AZ.DLL CNMBS6AZ.DLL CNMVSAZ.DLL CNMVSAZ.EXE CNMW3AZ.DLL CNMW6AZ.DLL CNMLRAZ0.411 CNMURAZ0.411 CNMSRAZ0.411 CNMMHAZ0.411 CNMSHAZ0.411 CNMIHAZ0.411 CNMLRAZ0.c0a CNMURAZ0.c0a CNMSRAZ0.c0a CNMMHAZ0.c0a CNMSHAZ0.c0a CNMIHAZ0.c0a CNMLRAZ0.40c CNMURAZ0.40c CNMSRAZ0.40c CNMMHAZ0.40c CNMSHAZ0.40c CNMIHAZ0.40c CNMLRAZ0.407 CNMURAZ0.407 CNMSRAZ0.407 CNMMHAZ0.407 CNMSHAZ0.407 CNMIHAZ0.407 CNMLRAZ0.410 CNMURAZ0.410 CNMSRAZ0.410 CNMMHAZ0.410 CNMSHAZ0.410 CNMIHAZ0.410 CNMLRAZ0.416
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Session Manager\SubSystems]
@="mnmsrvc"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Winlogon\Notifications\Components\TermSrv]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Winlogon\Notifications\Configurations\Default]
"Logon"="SessionEnv,Profiles,Dot3svc,Wlansvc,GPClient,TermSrv,AUInstallAgent,*"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Winlogon\Notifications\Configurations\Default]
"Logoff"="*,TermSrv,GPClient,Profiles,SessionEnv,Wlansvc,Dot3svc"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\SWD\MSRRAS]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\EventLog\Application\Microsoft-Windows-CertificateServicesClient-CredentialRoaming]
"EventMessageFile"="%SystemRoot%\system32\dimsroam.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\EventLog\Application\Microsoft-Windows-RemoteAssistance]
"EventMessageFile"="%systemroot%\system32\msra.exe"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\EventLog\Key Management Service\KmsRequests]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\EventLog\System\Microsoft-Windows-Directory-Services-SAM]
"EventMessageFile"="%SystemRoot%\Sys