Jump to content

Scan = 156 PUPs, mostly Conduit. .txt files attached


Uni

Recommended Posts

Hi. First post. Have read Intro files and happy to follow.

Had recent issues with Acer Aspire 5742, fan running hot and BSoD recently, possibly linked to too little RAM (4GB DDR3, 50% in use). Advised to use MalwareBytes, so just ran first full scan (took > 6hours to finish, and needed to do in cold environment)- I didn't realise that Windows Defender was running concurrently. Scan revealed 156 potential PUPs (files, folders, registry keys & values). 

As far as I can see, the last two PUPs are allowable (PDFCREATORSETUP.EXE and PIVOT_V4-2.exe, the last one being an animation figure for kids).

I believe that the Conduit toolbar and accessories get attached to some downloads and self-install. I haven't seen it on my laptop until today (I use Firefox, sometimes Chrome). I'm running Windows 10 Pro, build 14393.

Just ran Faber Recovery scan (all on Whitelist, but no Optional, with Wifi and Windows Defender disconnected). Have attached the two .txt files requested.

Has anyone got any time to help: what do I do next?

Sitting here with the Scan results showing on screen. All 156 are ticked except the last two, so wonder whether to "Quarantine Selected"?

Regards, Geoff.

FRST.txt

Addition.txt

1stScanMalwarebytes.txt

Edited by Uni
Link to post
Share on other sites

Hello Uni and :welcome: Forum.
My screen name is Android8888 but you can call me Rui if you prefer, and I'll be helping you with your malware issues. Please ask questions if anything is unclear.

 

As far as I can see, the last two PUPs are allowable (PDFCREATORSETUP.EXE and PIVOT_V4-2.exe, the last one being an animation figure for kids).

I believe that the Conduit toolbar and accessories get attached to some downloads and self-install. I haven't seen it on my laptop until today (I use Firefox, sometimes Chrome).

These two files are considered Potentially Unwanted Peograms (PUP). A PUP is a program that may be unwanted, despite the possibility that users consented to download it. However it is not considered malware.

You can read more about PUPs here and here

Also you can check for further information about these two files here and here.

I advise you to remove them but if you want to keep them it's up to you.


With that being said, it's time to start cleaning up your system.


Follow the instructions in the following link to show hidden files:
https://www.howtogeek.com/howto/windows-vista/show-hidden-files-and-folders-in-windows-vista/

 

Please uninstall dgen Toolbar (HKLM-x32\...\dgen Toolbar) (Version: 6.8.6.0 - dgen) using the Programs and Features applet.
Right-click on Start > Control Panel > Programs > Programs and Features


The following entry is listed in the FRST.txt log. Is this proxy server know to you and trusted?
ProxyServer: [S-1-5-21-4078150615-2909914965-3786257567-1000] => 172.17.1.13:80


iO3R662.pngFarbar Recovery Scan Tool (FRST) - Fix mode
Follow the instructions below to execute a fix on your system using FRST, and provide the log in your next reply.

  • Download the attached fixlist.txt file, and save it on your Desktop (or wherever your FRST.exe/FRST64.exe executable is located); NOTE: Please DO NOT open or modify the fixlist.txt file.
  • Right-click on the FRST executable and select Spcusrh.pngRun as Administrator;
  • Click on the Fix button;
    NYA5Cbr.png
    Credits: Aura
  • On completion, a message will come up saying that the fix has been completed and it'll open a log in Notepad;
  • Copy and paste its content in your next reply;

 

zcMPezJ.pngAdwCleaner - Fix Mode

  • Download AdwCleaner and move it to your Desktop;
  • Right-click on AdwCleaner.exe and select Spcusrh.pngRun as Administrator;
  • Accept the EULA (I accept), let the database update, then click on Scan;
  • Let the scan complete. Once it's done, make sure that every item listed in the different tabs is checked and click on the Cleaning button. This will kill all the active processes;
    MV5ejgW.png
    Credits: Aura
  • Once the cleaning process is complete, AdwCleaner will ask to restart your computer, do it;
  • After the restart, a log will open when logging in. Please copy/paste the content of that log in your next reply;

 

iT103hr.pngJunkware Removal Tool (JRT)

  • Download Junkware Removal Tool (JRT) and move it to your Desktop;
  • Right-click on JRT.exe and select Spcusrh.pngRun as Administrator;
  • Press on any key to launch the scan and let it complete;
    tLsXbWy.png
    Credits: Aura and BleepingComputer
  • Once the scan is complete, a log will open. Please copy/paste the content of the output log in your next reply;


Next,

Open Malwarebytes and update the tool, select > "settings" > "protection tab"

Scroll down to "Scan Options" ensure Scan for Rootkits and Scan within Archives are both on.

Go back to "DashBoard" select the Blue "Scan Now" tab......

When the scan completes deal with any found entries... Then select "Export Summary" then "Text File (*.txt)" name that log and save , you can copy or attach that to your reply...


To summarize please post in your next reply:
The contents of fixlog.txt produced by FRST.
The contents of AdwCleaner log.
The contents of Junkware Removal Tool log.
The contents of Malwarebytes log.

Let me also know how is your computer running.

fixlist.txt

Link to post
Share on other sites

Hi Rui. Thanks for reply. I didn't get an email alert to notify me of your post, so just spotted it now. There are quite a few steps to go through, so I'll get cracking. As a bit of background/history: my Acer Aspire laptop is running better now after a number of recent changes:

  • disabled a few Statup Processes and Running processes,
  • deleted maybe 10 GB of old files (mainly Word & Excel) including some large executables related to my research (I am not a Gamer, and mostly download research-related documents).
  • Ran Autoruns, but too inexperienced to remove anything.
  • Ran Scannow a few times which shows there are corrupted files which can't be fixed.
  • Just ran a full scan using Windows Defender (no threats detected) - took 10 hours

Although my pc boots up okay (quicker than ever) now, my intention is to re-install Windows 10, and re-install software (MS Office 365 etc) since I am getting start-up errors (0x800b0100, BackgroundContainer.dll) and others, plus I can't access some things (Device Manager etc.). 

Okay, will follow your instructions and post back. Thanks again.

Geoff

Link to post
Share on other sites

Hi Rui, I'm stuck at the second step:

Uninstall dgen toolbar gives:

"This program might not have uninstalled correctly" giving a choice to:

  • "Uninstall using compatibility settings" or
  • "This program uninstalled correctly"

Which option should I choose?

Link to post
Share on other sites

Might as well add a third question while there is time:

Is this the Malwarebytes Application file:

  •  mb3-setup-consumer-3.0.6.1469

It's been a few days since I downloaded it, so I just need to check.

Thanks again.

Link to post
Share on other sites

Hi Uni.

17 hours ago, Uni said:

There are quite a few steps to go through, so I'll get cracking.

Okay no worries. We will do it step by step. Ask questions if you don't understand something.

 

16 hours ago, Uni said:

Uninstall dgen toolbar gives:

"This program might not have uninstalled correctly" giving a choice to:

  • "Uninstall using compatibility settings" or
  • "This program uninstalled correctly"

Which option should I choose?

Select the second one. Then check if the toolbar is still listed in the Programs and Features applet. If it's still there you don't need to worry about it. The fix script that I attached to my initial post will be take care of it.

 

16 hours ago, Uni said:

Also, I'm not sure about the proxy server. It may be from the college I have spent the last 7 years at. Do you know how I can check that?

Is located at New Haven, US. Is it familiar to you?

http://ipindetail.com/ip-lookup/172.17.1.13.html

 

15 hours ago, Uni said:

Is this the Malwarebytes Application file:

  •  mb3-setup-consumer-3.0.6.1469

Yes it is the Malwarebytes Installer file. No problem with it.

 

If you intend to re-install Windows 10 that's ok. If you wish to continue working on the malware removal process, please let me know.

 

Thank you.

 

Rui

Link to post
Share on other sites

Hi Rui. Yes I would like to carry on following your instructions.

I have made a System Image Backup (took 4 hours) of my Windows 10 files etc. in case something goes wrong. I have also separately backed up my important files.

Just wondering whether to stop internet connection while I carry out your instructions. I have a desktop to communicate with.

Before I forget, the server address that you enquired about was one that used to be used at college, in the past, but is no longer used. What do I do with it?  

Link to post
Share on other sites

Rather large Fixlog contents pasted as requested:

Fix result of Farbar Recovery Scan Tool (x64) Version: 01-03-2017
Ran by Geoff Hunter (03-03-2017 16:27:43) Run:1
Running from C:\Users\Geoff Hunter\Downloads
Loaded Profiles: Geoff Hunter (Available Profiles: Geoff Hunter)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
CreateRestorePoint:
EmptyTemp:

HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-4078150615-2909914965-3786257567-1000\...\Run: [Google Update] => C:\Users\Geoff Hunter\AppData\Local\Google\Update\1.3.32.7\GoogleUpdateCore.exe [601752 2016-12-17] (Google Inc.)
HKU\S-1-5-21-4078150615-2909914965-3786257567-1000\...\Run: [BackgroundContainerV3] => "C:\WINDOWS\SysWoW64\Rundll32.exe" "C:\Users\Geoff Hunter\AppData\Local\Cctbplt\BackgroundContainer\BackgroundContainer.dll",DllRun
ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => -> No File
HKU\S-1-5-21-4078150615-2909914965-3786257567-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://ie.msn.com/
HKU\S-1-5-21-4078150615-2909914965-3786257567-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com/?pc=COSP&ptag=G3A0B15BED265&conlogo=CT3210127
URLSearchHook: HKLM-x32 - dgen Toolbar - {bc3a2c68-4f1a-4ded-bc90-c7470c2d8f4a} - C:\Program Files (x86)\dgen\prxtbdgen.dll (Conduit Ltd.)
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox
SearchScopes: HKU\S-1-5-21-4078150615-2909914965-3786257567-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?pc=COSP&ptag=G3A0B15BED265&form=CONBDF&conlogo=CT3210127&q={searchTerms}
SearchScopes: HKU\S-1-5-21-4078150615-2909914965-3786257567-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?pc=COSP&ptag=G3A0B15BED265&form=CONBDF&conlogo=CT3210127&q={searchTerms}
BHO-x32: No Name -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> No File
Toolbar: HKLM-x32 - dgen Toolbar - {bc3a2c68-4f1a-4ded-bc90-c7470c2d8f4a} - C:\Program Files (x86)\dgen\prxtbdgen.dll [2011-05-09] (Conduit Ltd.)
Toolbar: HKU\S-1-5-21-4078150615-2909914965-3786257567-1000 -> No Name - {BC3A2C68-4F1A-4DED-BC90-C7470C2D8F4A} - No File
FF Extension: (RSS Feed Icon in Navbar) - C:\Users\Geoff Hunter\AppData\Roaming\Mozilla\Firefox\Profiles\o31lxm86.default-1479519113513\Extensions\{963162af-4179-4365-b207-8d0b078b58c3}.xpi [2017-02-08]
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw.dll [No File]
CHR StartupUrls: Default -> "hxxp://www.google.com/","hxxps://isearch.avg.com/?cid={EEAC04D6-4552-4959-B375-2B4B5ECAE018}&mid=cf4ba07603a647d09cae44e200da85b1-1e00240a4f67e8b6640170d14c3f65cd5b6e548a&lang=en&ds=st011&pr=sa&d=2012-10-03 21:48:10&v=13.1.0.3&sap=hp"
CHR Extension: (Google Wallet) - C:\Users\Geoff Hunter\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-05-31]
S3 PrintNotify; C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll [X]
S0 3ware; System32\drivers\3ware.sys [X]
S0 ADP80XX; System32\drivers\ADP80XX.SYS [X]
S0 amdsata; System32\drivers\amdsata.sys [X]
S0 amdsbs; System32\drivers\amdsbs.sys [X]
S0 amdxata; System32\drivers\amdxata.sys [X]
S0 arcsas; System32\drivers\arcsas.sys [X]
S0 b06bdrv; System32\drivers\bxvbda.sys [X]
S3 bcmfn; \SystemRoot\System32\drivers\bcmfn.sys [X]
S3 bcmfn2; \SystemRoot\System32\drivers\bcmfn2.sys [X]
S3 CapImg; \SystemRoot\System32\drivers\capimg.sys [X]
S3 cht4iscsi; System32\drivers\cht4sx64.sys [X]
S3 cht4vbd; \SystemRoot\System32\drivers\cht4vx64.sys [X]
S3 dg_ssudbus; \SystemRoot\system32\DRIVERS\ssudbus.sys [X]
S0 ebdrv; System32\drivers\evbda.sys [X]
S0 HpSAMD; System32\drivers\HpSAMD.sys [X]
S3 iai2c; \SystemRoot\System32\drivers\iai2c.sys [X]
S3 iaLPSS2i_GPIO2; \SystemRoot\System32\drivers\iaLPSS2i_GPIO2.sys [X]
S3 iaLPSS2i_I2C; \SystemRoot\System32\drivers\iaLPSS2i_I2C.sys [X]
S3 iaLPSSi_GPIO; \SystemRoot\System32\drivers\iaLPSSi_GPIO.sys [X]
S3 iaLPSSi_I2C; \SystemRoot\System32\drivers\iaLPSSi_I2C.sys [X]
S0 iaStorAV; System32\drivers\iaStorAV.sys [X]
S0 iaStorV; System32\drivers\iaStorV.sys [X]
S3 ibbus; \SystemRoot\System32\drivers\ibbus.sys [X]
U3 idsvc; no ImagePath
S0 LSI_SAS; System32\drivers\lsi_sas.sys [X]
S0 LSI_SAS2i; System32\drivers\lsi_sas2i.sys [X]
S0 LSI_SAS3i; System32\drivers\lsi_sas3i.sys [X]
S0 LSI_SSS; System32\drivers\lsi_sss.sys [X]
S0 megasas; System32\drivers\megasas.sys [X]
S0 megasas2i; System32\drivers\MegaSas2i.sys [X]
S0 megasr; System32\drivers\megasr.sys [X]
S3 mlx4_bus; \SystemRoot\System32\drivers\mlx4_bus.sys [X]
S0 mvumis; System32\drivers\mvumis.sys [X]
S3 ndfltr; \SystemRoot\System32\drivers\ndfltr.sys [X]
S0 nvraid; System32\drivers\nvraid.sys [X]
S0 nvstor; System32\drivers\nvstor.sys [X]
S0 percsas2i; System32\drivers\percsas2i.sys [X]
S0 percsas3i; System32\drivers\percsas3i.sys [X]
S0 pwdrvio; system32\pwdrvio.sys [X]
S3 pwdspio; \??\C:\WINDOWS\system32\pwdspio.sys [X]
S0 RapportKE64; System32\Drivers\RapportKE64.sys [X]
S3 RSUSBSTOR; \SystemRoot\System32\Drivers\RtsUStor.sys [X]
S0 scmbus; System32\drivers\scmbus.sys [X]
S3 scmdisk0101; \SystemRoot\System32\drivers\scmdisk0101.sys [X]
S0 SiSRaid2; System32\drivers\SiSRaid2.sys [X]
S0 SiSRaid4; System32\drivers\sisraid4.sys [X]
S3 ssadbus; \SystemRoot\System32\drivers\ssadbus.sys [X]
S3 ssadmdfl; \SystemRoot\system32\DRIVERS\ssadmdfl.sys [X]
S3 ssadmdm; \SystemRoot\system32\DRIVERS\ssadmdm.sys [X]
S3 ssadserd; \SystemRoot\system32\DRIVERS\ssadserd.sys [X]
S3 ssudmdm; \SystemRoot\system32\DRIVERS\ssudmdm.sys [X]
S0 stexstor; System32\drivers\stexstor.sys [X]
S3 Synth3dVsc; \SystemRoot\System32\drivers\Synth3dVsc.sys [X]
S3 usbscan; \SystemRoot\system32\DRIVERS\usbscan.sys [X]
S0 vsmraid; System32\drivers\vsmraid.sys [X]
S0 VSTXRAID; System32\drivers\vstxraid.sys [X]
S0 WindowsTrustedRTProxy; System32\drivers\WindowsTrustedRTProxy.sys [X]
S3 WinMad; \SystemRoot\System32\drivers\winmad.sys [X]
S3 WinVerbs; \SystemRoot\System32\drivers\winverbs.sys [X]
2011-12-14 14:28 - 2011-12-14 14:29 - 0000000 _____ () C:\Users\Geoff Hunter\AppData\Local\{6ACC03FC-8AA0-47B5-94A0-9D92FBE7B7E8}
2017-01-24 19:47 - 2017-01-24 19:47 - 0739904 _____ (Oracle Corporation) C:\Users\Geoff Hunter\AppData\Local\Temp\jre-8u121-windows-au.exe
2017-02-19 18:12 - 2017-02-27 05:35 - 0236352 _____ (Client Connect LTD) C:\Users\Geoff Hunter\AppData\Local\Temp\Runner.exe
CustomCLSID: HKU\S-1-5-21-4078150615-2909914965-3786257567-1000_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\Geoff Hunter\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-4078150615-2909914965-3786257567-1000_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\Geoff Hunter\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-4078150615-2909914965-3786257567-1000_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\Geoff Hunter\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-4078150615-2909914965-3786257567-1000_Classes\CLSID\{590C4387-5EBD-4D46-8A84-CD0BA2EF2856}\InprocServer32 -> C:\Users\Geoff Hunter\AppData\Local\Google\Update\1.3.30.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-4078150615-2909914965-3786257567-1000_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4}\InprocServer32 -> C:\Users\Geoff Hunter\AppData\Local\Google\Update\1.3.31.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-4078150615-2909914965-3786257567-1000_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}\InprocServer32 -> C:\Users\Geoff Hunter\AppData\Local\Google\Update\1.3.28.1\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-4078150615-2909914965-3786257567-1000_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98}\InprocServer32 -> C:\Users\Geoff Hunter\AppData\Local\Google\Update\1.3.28.13\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-4078150615-2909914965-3786257567-1000_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\Geoff Hunter\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-4078150615-2909914965-3786257567-1000_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Geoff Hunter\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-4078150615-2909914965-3786257567-1000_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\Geoff Hunter\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-4078150615-2909914965-3786257567-1000_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2}\InprocServer32 -> C:\Users\Geoff Hunter\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-4078150615-2909914965-3786257567-1000_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\Geoff Hunter\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-4078150615-2909914965-3786257567-1000_Classes\CLSID\{D1EDC4F5-7F4D-4B12-906A-614ECF66DDAF}\InprocServer32 -> C:\Users\Geoff Hunter\AppData\Local\Google\Update\1.3.28.15\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-4078150615-2909914965-3786257567-1000_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\Geoff Hunter\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll => No File
Task: {002E612E-385D-4E40-8F13-204610C5F922} - \Microsoft\Windows\Feedback\Siuf\DmClient -> No File <==== ATTENTION
Task: {014833AD-91B1-4001-B63A-A4F945E2BDFB} - \Microsoft\Windows\DiskFootprint\Diagnostics -> No File <==== ATTENTION
Task: {026AAA4B-0BE6-4B67-ACF6-533D4DE74E02} - \Microsoft\Windows\Customer Experience Improvement Program\KernelCeipTask -> No File <==== ATTENTION
Task: {03896D04-23AB-4F74-A27D-B1B71EE41E2C} - \Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask -> No File <==== ATTENTION
Task: {04EFBF53-0BE4-468C-971B-5A873BBCC06C} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {05227D57-A8E1-4DEE-8FDF-1C2D6C3616E0} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {0550484F-2C2D-4AAC-9644-AC8ABD0D33BD} - \Microsoft\Windows\Windows Media Sharing\UpdateLibrary -> No File <==== ATTENTION
Task: {06BB1EBB-0053-418A-AD00-B8F42B3DF200} - \Microsoft\Windows\LanguageComponentsInstaller\Uninstallation -> No File <==== ATTENTION
Task: {0858DFA0-D044-429F-B65C-DAF1567D71D4} - \Microsoft\Windows\Shell\FamilySafetyMonitor -> No File <==== ATTENTION
Task: {088482FA-65B8-4E17-9ABF-1DCD48E8D373} - \Microsoft\Windows\Tcpip\IpAddressConflict1 -> No File <==== ATTENTION
Task: {092134BB-A600-423D-B2C3-3293C162C577} - \Microsoft\Windows\SideShow\GadgetManager -> No File <==== ATTENTION
Task: {09F06BFE-A3C8-40E3-846A-6E6F4000C238} - \Microsoft\Windows\Tcpip\IpAddressConflict2 -> No File <==== ATTENTION
Task: {0B0C4EB6-E673-4842-B2FC-6CE281607747} - \Microsoft\Windows\UpdateOrchestrator\Policy Install -> No File <==== ATTENTION
Task: {0F1BA34D-B082-4442-96F5-A7519F67F71A} - \Microsoft\Windows\WindowsBackup\AutomaticBackup -> No File <==== ATTENTION
Task: {11EF8237-224D-4CF9-9039-61D08754EA5D} - \Microsoft\Windows\Application Experience\ProgramDataUpdater -> No File <==== ATTENTION
Task: {14383DBE-04CD-485C-98E2-9D909989819D} - \Microsoft\Windows\SystemRestore\SR -> No File <==== ATTENTION
Task: {16534FAD-49CD-4D0F-8C01-9D018C2907C4} - \Microsoft\Windows\Data Integrity Scan\Data Integrity Scan -> No File <==== ATTENTION
Task: {16A70DC9-290B-4801-ABA0-8689DB5428B8} - \Microsoft\Windows\RecoveryEnvironment\VerifyWinRE -> No File <==== ATTENTION
Task: {16DEA092-FB0C-40D0-AE20-0536BECC21D9} - \Microsoft\Windows\EDP\EDP App Launch Task -> No File <==== ATTENTION
Task: {184784E2-6ACB-4154-BD0F-A955BE13F177} - \Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePolicyChange -> No File <==== ATTENTION
Task: {19639003-C77D-4B18-A332-8DD151EC2CEE} - \Microsoft\Windows\Media Center\UpdateRecordPath -> No File <==== ATTENTION
Task: {1B65DD58-D16B-45E8-BEB4-94D7E4D64DF7} - \Microsoft\Windows\EDP\EDP Auth Task -> No File <==== ATTENTION
Task: {1DDCB080-DCF4-422D-904C-07D5B7C10AB8} - \Microsoft\Windows\MUI\LPRemove -> No File <==== ATTENTION
Task: {1EF41258-2361-4435-B500-B774E7C9A65B} - \Microsoft\Windows\Media Center\ConfigureInternetTimeService -> No File <==== ATTENTION
Task: {209082E0-6F18-4AD4-A978-4840B587C307} - \CCleanerSkipUAC -> No File <==== ATTENTION
Task: {21AE865E-E468-4C66-867A-FF05FB272454} - \Microsoft\Windows\Media Center\DispatchRecoveryTasks -> No File <==== ATTENTION
Task: {22526601-1FC2-4EE8-97B0-A53E2A8BE110} - \Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck -> No File <==== ATTENTION
Task: {2410276A-AC66-4BC8-81DE-59EEA5BA7D65} - \Microsoft\Windows\WCM\WiFiTask -> No File <==== ATTENTION
Task: {2519456D-A57A-4EF1-8CA0-D07149A8CF8B} - \MssUpdater -> No File <==== ATTENTION
Task: {258588CB-CE0C-4C8B-9901-598F445BBFB9} - \Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate -> No File <==== ATTENTION
Task: {272231F4-8A23-4115-8FA0-FBE7D9A6BCE6} - \Microsoft\Windows\CertificateServicesClient\SystemTask -> No File <==== ATTENTION
Task: {27610153-E253-4DEC-8CE2-EAA609D4AF92} - \Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange -> No File <==== ATTENTION
Task: {289CB083-4640-451E-B4A2-C8EE0ABAFAF8} - \Microsoft\Windows\Servicing\StartComponentCleanup -> No File <==== ATTENTION
Task: {2C6CE008-C8D9-43A4-BE6E-1577ECF7BDEE} - \Microsoft\Windows\Media Center\ObjectStoreRecoveryTask -> No File <==== ATTENTION
Task: {2FCD28F4-9215-409D-A3F5-55CFCB7C0D2C} - \Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask -> No File <==== ATTENTION
Task: {3004E3CE-0D38-4C6D-A827-725A158DD061} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION
Task: {31904C6C-AD32-4E56-B961-542B3DB08B48} - \Microsoft\Windows\Windows Error Reporting\QueueReporting -> No File <==== ATTENTION
Task: {33967F1F-606F-440E-8503-630278A85455} - \Microsoft\Windows\Location\Notifications -> No File <==== ATTENTION
Task: {33DD0105-F44A-4667-9ACE-BF8CDA57836F} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {34826D50-0B05-4366-8E1D-5FEBDE510615} - \Microsoft\Windows\NlaSvc\WiFiTask -> No File <==== ATTENTION
Task: {34AA205A-1BBE-4F3F-87B5-A8B4E53CC4CE} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION
Task: {3619DDEB-01D8-4AEF-BA75-2F893C3AB41D} - \Microsoft\Windows\Media Center\mcupdate -> No File <==== ATTENTION
Task: {38FC2C79-5845-40A3-AC9A-BEBCB55CB26D} - \Microsoft\Windows\Plug and Play\Device Install Group Policy -> No File <==== ATTENTION
Task: {394DBCED-7AFF-4933-8196-6806F9E437B6} - \Microsoft\Windows\User Profile Service\HiveUploadTask -> No File <==== ATTENTION
Task: {3986C26D-9D92-443E-BB32-EEAED171A7B1} - \Microsoft\Windows\Sysmain\WsSwapAssessmentTask -> No File <==== ATTENTION
Task: {39F20FAB-2670-4ADC-9FE4-1575177121A9} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {3B438481-7716-48C7-8F26-CDDCB32B72DB} - \Microsoft\Windows\Media Center\RegisterSearch -> No File <==== ATTENTION
Task: {3B4F8DE8-4DEE-4222-AE54-31E1392AFA48} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {3E31ABD7-7B10-482B-AD2F-EFAA1C4741C3} - \Microsoft\Windows\Subscription\LicenseAcquisition -> No File <==== ATTENTION
Task: {3FF560FB-52E4-4839-80D8-6BF608A6A184} - \Microsoft\Windows\Time Synchronization\SynchronizeTime -> No File <==== ATTENTION
Task: {4083B0B6-5DD1-4324-91BF-742B73D10B0B} - \Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan -> No File <==== ATTENTION
Task: {4323A808-854F-4ED2-A0FF-0F44F9291729} - \Microsoft\Windows\Work Folders\Work Folders Maintenance Work -> No File <==== ATTENTION
Task: {43DF67E8-D733-48FA-98F2-4E6D341E4A79} - \Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser -> No File <==== ATTENTION
Task: {4520E8A9-AF06-4122-859B-E4B655B29B36} - \Microsoft\Windows\AppID\SmartScreenSpecific -> No File <==== ATTENTION
Task: {4675EB36-2D3D-4711-914D-E5E5CC708CD0} - \Microsoft\XblGameSave\XblGameSaveTask -> No File <==== ATTENTION
Task: {46E68CD4-DFD4-4ACC-BE9B-1AC6F8D79EC1} - \GoogleUpdateTaskMachineCore -> No File <==== ATTENTION
Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - \Microsoft\Windows\Shell\WindowsParentalControlsMigration -> No File <==== ATTENTION
Task: {4A939B67-3049-4E93-8007-EAB8936772E2} - \Microsoft\Windows\Offline Files\Background Synchronization -> No File <==== ATTENTION
Task: {4DA85A4F-BC58-48A1-B6A7-92D80719FB72} - \WPD\SqmUpload_S-1-5-21-4078150615-2909914965-3786257567-1000 -> No File <==== ATTENTION
Task: {508132A8-6E51-4026-A5ED-B687185DA92B} - \Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskLogon -> No File <==== ATTENTION
Task: {51B7FB15-4DCB-400E-9A98-10E802F21FB3} - \Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceScreenOnOff -> No File <==== ATTENTION
Task: {52015CC4-8EAF-444F-966F-F83D47041CFA} - \Microsoft\Windows\Customer Experience Improvement Program\UsbCeip -> No File <==== ATTENTION
Task: {527A4011-EE63-4112-B2DB-7FD31974239C} - \Microsoft\Windows\PI\Secure-Boot-Update -> No File <==== ATTENTION
Task: {5654DFBB-E797-4758-B9A0-8BAE94A91F1D} - \Microsoft\Windows\DUSM\dusmtask -> No File <==== ATTENTION
Task: {57331538-E388-41D4-AEB2-0B9A6B2B9B01} - \Microsoft\Windows\Media Center\PBDADiscoveryW2 -> No File <==== ATTENTION
Task: {5960C68A-D393-492C-9C35-A71A48EC6A5D} - \Microsoft\Windows\Autochk\Proxy -> No File <==== ATTENTION
Task: {59E2DA3C-AD67-4152-B299-DB69560DD9D4} - \Microsoft\Windows\MobilePC\HotStart -> No File <==== ATTENTION
Task: {5A0986BC-560A-4D24-81E3-FAFD260EE3E5} - \Microsoft\Windows\Clip\License Validation -> No File <==== ATTENTION
Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - \Microsoft\Windows\Shell\WindowsParentalControls -> No File <==== ATTENTION
Task: {5BFE90FE-6B31-4956-9272-E1E992A693BB} - \Microsoft\Windows\WindowsColorSystem\Calibration Loader -> No File <==== ATTENTION
Task: {5C85728B-05FE-4B38-B7AA-3A549BF5C43E} - \Microsoft\Windows\SpacePort\SpaceManagerTask -> No File <==== ATTENTION
Task: {5F20C597-0BD8-48E1-95E0-0871A15CA3E8} - \Microsoft\Windows\Media Center\PvrRecoveryTask -> No File <==== ATTENTION
Task: {5FAAF530-ED1B-4F7B-AD7B-1694AA0B202B} - \Microsoft\Windows\CertificateServicesClient\CryptoPolicyTask -> No File <==== ATTENTION
Task: {60353183-E949-4290-A909-00DDD7E10172} - \Microsoft\Windows\Multimedia\SystemSoundsService -> No File <==== ATTENTION
Task: {6232090F-3BD0-4E1F-960B-78CBA797F685} - \Microsoft\Windows\DeviceDirectoryClient\HandleWnsCommand -> No File <==== ATTENTION
Task: {635A185A-88AD-4B41-9344-B07C284A75E9} - \Microsoft\Windows\WindowsUpdate\sih -> No File <==== ATTENTION
Task: {63E7634C-9073-49CD-A9B6-0910BC9BE25E} - \Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display -> No File <==== ATTENTION
Task: {66411273-9DF4-47B4-9B75-944299189921} - \Microsoft\Windows\Media Center\SqlLiteRecoveryTask -> No File <==== ATTENTION
Task: {6AFCFE4D-B65D-4288-A48C-94BDEDEB28C7} - \Microsoft\Windows\TPM\Tpm-HASCertRetr -> No File <==== ATTENTION
Task: {6B1AE720-1359-4B9E-9C0F-60167361EF01} - \Microsoft\Windows\Shell\FamilySafetyRefreshTask -> No File <==== ATTENTION
Task: {6BDE4144-3452-4312-8438-32B03550DC92} - \Apple\AppleSoftwareUpdate -> No File <==== ATTENTION
Task: {6D1C0035-5CAD-4340-A533-D63C9853BCC9} - \Microsoft\Windows\Storage Tiers Management\Storage Tiers Management Initialization -> No File <==== ATTENTION
Task: {6D486F02-16BF-4997-8C11-6BAF4506A7BE} - \Microsoft\Windows\Media Center\StartRecording -> No File <==== ATTENTION
Task: {6E07D3C4-DF11-4E24-B0B0-BC0844DA0226} - \Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload -> No File <==== ATTENTION
Task: {6E8AE752-C5D2-4B34-B351-338B4370A342} - \Microsoft\Windows\DeviceDirectoryClient\HandleCommand -> No File <==== ATTENTION
Task: {6F47F2F8-7017-4125-BAE1-61E5E6998124} - \Adobe Flash Player Updater -> No File <==== ATTENTION
Task: {70953190-BBA1-4141-A6A5-F78FE4F2DF3D} - \Microsoft\Windows\WDI\ResolutionHost -> No File <==== ATTENTION
Task: {757B2DC7-58A5-4F77-A711-5C3493D90F88} - \Microsoft\Windows\Media Center\ReindexSearchRoot -> No File <==== ATTENTION
Task: {75D4827F-3153-4536-9121-2C9E475F11F5} - \SidebarExecute -> No File <==== ATTENTION
Task: {77F04470-4875-4998-B9DC-9D7C64323F5B} - \Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem -> No File <==== ATTENTION
Task: {7972E98D-E0A1-4919-86EF-72E09EB8D57B} - \Microsoft\Windows\CertificateServicesClient\UserTask-Roam -> No File <==== ATTENTION
Task: {7A45406B-0BF8-475E-8731-EC6B49EC17A9} - \{A1512D94-BCF5-4425-9E3A-41B22FEBF491} -> No File <==== ATTENTION
Task: {7A6889A1-EB7C-4F2E-ABA2-3EED95507610} - \Microsoft\Windows\ApplicationData\CleanupTemporaryState -> No File <==== ATTENTION
Task: {7AC5E1E2-2FD3-40CD-8842-88CE53A3609C} - \Microsoft\Windows\DiskFootprint\StorageSense -> No File <==== ATTENTION
Task: {7ADBD0EE-0CDE-4CD8-820B-E188292104EA} - \Microsoft\Windows\Bluetooth\UninstallDeviceTask -> No File <==== ATTENTION
Task: {7E7280E4-311A-4CE7-A53D-6F8B9219821E} - \Microsoft\Windows\WindowsUpdate\sihboot -> No File <==== ATTENTION
Task: {83DDE435-B2B7-47AF-9F8A-9FD3CA5C80C7} - \Microsoft\Windows\Media Center\mcupdate_scheduled -> No File <==== ATTENTION
Task: {8553FB03-001D-444F-B03B-C9F1C7824AE9} - \Microsoft\Windows\FileHistory\File History (maintenance mode) -> No File <==== ATTENTION
Task: {868BFDBC-C5C8-4363-B770-658518AA278E} - \Microsoft\Windows\Media Center\MediaCenterRecoveryTask -> No File <==== ATTENTION
Task: {893E86CA-B959-4C35-8044-330E2DC5E4EC} - \Microsoft\Windows\Application Experience\StartupAppTask -> No File <==== ATTENTION
Task: {89605709-CE13-4F5F-A372-ADC1FDFBE6E0} - \Microsoft\Windows\Management\Provisioning\Logon -> No File <==== ATTENTION
Task: {8A1C4EF4-EDD4-459B-82B7-189C825A6C6F} - \Microsoft\Windows\TextServicesFramework\MsCtfMonitor -> No File <==== ATTENTION
Task: {8D791FAA-0257-4EBC-A6DD-74E842528806} - \Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceSettingChange -> No File <==== ATTENTION
Task: {8F094045-E98F-4D81-9E06-E95F62F7F51C} - \Microsoft\Windows\SideShow\SystemDataProviders -> No File <==== ATTENTION
Task: {8F158D86-9AFB-455C-B00B-7E929DD83D81} - \Microsoft\Windows\Media Center\OCURActivate -> No File <==== ATTENTION
Task: {901D3252-EB8D-4CBE-97C9-B31B6158CD7A} - \Microsoft\Windows\MemoryDiagnostic\ProcessMemoryDiagnosticEvents -> No File <==== ATTENTION
Task: {901E1AEB-ECAA-4402-B2D2-EA785F1EF5EC} - \Microsoft\Windows\AppID\PolicyConverter -> No File <==== ATTENTION
Task: {9093EF7B-83FE-4C32-A6D7-EEFC040689A0} - \Microsoft\Windows\UpdateOrchestrator\Refresh Settings -> No File <==== ATTENTION
Task: {90D7D40E-8F22-4147-82A4-6B021DE8B68D} - \Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskNetwork -> No File <==== ATTENTION
Task: {91179B74-4E07-4FFC-98E0-4769A3DF8044} - \GoogleUpdateTaskUserS-1-5-21-4078150615-2909914965-3786257567-1000Core -> No File <==== ATTENTION
Task: {91D66C97-E9FC-4BD0-9C70-9DFC7AAE6E96} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {92E54674-503B-4E5E-A713-C30E4D8D4999} - \Microsoft\Windows\SpacePort\SpaceAgentTask -> No File <==== ATTENTION
Task: {9421FFF0-CD24-4F40-B591-01BDB9181D11} - \Microsoft\Windows\Maps\MapsToastTask -> No File <==== ATTENTION
Task: {96A783BB-EABB-42AA-AA90-D48F407DC6D1} - \GoogleUpdateTaskUserS-1-5-21-4078150615-2909914965-3786257567-1000UA -> No File <==== ATTENTION
Task: {96FBB1D0-D278-46AD-8361-023AB7B9B974} - \Microsoft\Windows\AppID\EDP Policy Manager -> No File <==== ATTENTION
Task: {97696FC3-36DC-4F2D-B4EC-72E2A847B77D} - \Microsoft\Windows\Media Center\InstallPlayReady -> No File <==== ATTENTION
Task: {9851188E-AC07-4F36-BA28-6D00BB2C9C46} - \Microsoft\Windows\Device Information\Device -> No File <==== ATTENTION
Task: {98DB7E44-904C-4D11-9812-AE68210EAAAC} - \Microsoft\Windows\ErrorDetails\ErrorDetailsUpdate -> No File <==== ATTENTION
Task: {997ABC4C-A637-4458-B14E-3B2A577E7DA5} - \Microsoft\Windows\Diagnosis\Scheduled -> No File <==== ATTENTION
Task: {9994D7CF-8A8B-4CC3-8487-AD7D6494CDCE} - \Microsoft\Windows Live\SOXE\Extractor Definitions Update Task -> No File <==== ATTENTION
Task: {9ACAF517-3B60-4FC7-B747-5C4FD449C534} - \Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Automated) -> No File <==== ATTENTION
Task: {9C1ED90D-9698-4ED3-BA7F-AF0FE65933CC} - \Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask -> No File <==== ATTENTION
Task: {9FA39DCC-103F-4172-ACE1-BD80583C5791} - \Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot -> No File <==== ATTENTION
Task: {9FD2A7EE-1B7E-4B46-9982-3E2F3907B85A} - \Microsoft\Windows\WindowsBackup\Windows Backup Monitor -> No File <==== ATTENTION
Task: {A028BE20-D809-4933-A271-17DFE5933109} - \Microsoft\Windows\WOF\WIM-Hash-Validation -> No File <==== ATTENTION
Task: {A150AAAA-1FD6-4630-9263-0B1AD4008FA3} - \{86474C2F-360A-4913-A8A0-BEA35EDF0D00} -> No File <==== ATTENTION
Task: {A1D284E6-65FF-4971-BDFD-239926FBBC51} - \Microsoft\Windows\Task Manager\Interactive -> No File <==== ATTENTION
Task: {A237C144-945C-4C22-B51B-924BF8929F36} - \Microsoft\Windows\Offline Files\Logon Synchronization -> No File <==== ATTENTION
Task: {A29C9BD0-478C-4A36-9CB4-1EB0F885E997} - \Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser -> No File <==== ATTENTION
Task: {A459C031-D9B3-4653-80E1-AD0CB78194F3} - \Microsoft\Windows\Time Synchronization\ForceSynchronizeTime -> No File <==== ATTENTION
Task: {A8CB5879-61D0-4488-936D-BE917FB72D36} - \Microsoft\Windows\Media Center\OCURDiscovery -> No File <==== ATTENTION
Task: {AA9415D4-2A2D-43AA-99FA-0952FEE4AD70} - \Microsoft\Windows\Workplace Join\Automatic-Device-Join -> No File <==== ATTENTION
Task: {AC7A9139-3B83-4421-99CC-B47DD0C49B15} - \Microsoft\Windows\CertificateServicesClient\UserTask -> No File <==== ATTENTION
Task: {ACAD1437-73FC-4819-B3B0-DBB87AE9DCA6} - \Microsoft\Windows\SideShow\AutoWake -> No File <==== ATTENTION
Task: {ACBD7FB1-A692-4B46-80B5-C0C115621F26} - \Microsoft\Windows\CertificateServicesClient\KeyPreGenTask -> No File <==== ATTENTION
Task: {AD7321D2-997C-4E81-AE46-4631E6B033A3} - \Microsoft\Windows\Subscription\EnableLicenseAcquisition -> No File <==== ATTENTION
Task: {AE441F21-A63E-443D-8785-53A9DEDDABD2} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> No File <==== ATTENTION
Task: {B0CA8AA3-67B9-4F50-840B-D2FE0FD59E13} - \Microsoft\Windows\Storage Tiers Management\Storage Tiers Optimization -> No File <==== ATTENTION
Task: {B0CBAB43-44FC-469B-A4CE-87426761FDCE} - \Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor -> No File <==== ATTENTION
Task: {B2AFD125-21A4-4493-BDFD-B11826149030} - \Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver -> No File <==== ATTENTION
Task: {B320E058-C6FA-413F-876B-0C9B4428AE66} - \Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePeriodic6 -> No File <==== ATTENTION
Task: {B3FC0613-3EB0-44A7-B33F-D2CF847E1726} - \Microsoft\Windows\Media Center\PeriodicScanRetry -> No File <==== ATTENTION
Task: {B5478799-DDC7-4391-A7D5-0C1B684F5D60} - \Microsoft\Windows\TPM\Tpm-Maintenance -> No File <==== ATTENTION
Task: {B6EE76B2-4F82-4E15-9345-C867A29CBAD0} - \Microsoft\Windows\Speech\SpeechModelDownloadTask -> No File <==== ATTENTION
Task: {B75E1403-1659-44B0-99B5-D06CEFA6CCB5} - \Microsoft\Windows\Sysmain\HybridDriveCacheRebalance -> No File <==== ATTENTION
Task: {B872B8DA-93F2-4531-A0AC-AA45BFD3D6DA} - \Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector -> No File <==== ATTENTION
Task: {B99E0356-708C-4161-8693-F06794F8129D} - \Microsoft\Windows\CertificateServicesClient\AikCertEnrollTask -> No File <==== ATTENTION
Task: {BA7526B0-0B99-4849-94AE-E75C31DA6E4A} - \Microsoft\Windows\Data Integrity Scan\Data Integrity Scan for Crash Recovery -> No File <==== ATTENTION
Task: {BCAC2FB4-9260-4B95-A220-0BF4A75CFED0} - \Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Manual) -> No File <==== ATTENTION
Task: {BD49AB91-B0FF-4F51-A21B-A79F70602CB3} - \Microsoft\Windows\License Manager\TempSignedLicenseExchange -> No File <==== ATTENTION
Task: {BD7DFB56-1089-4146-AC3E-6AC50333D855} - \Microsoft\Windows\WOF\WIM-Hash-Management -> No File <==== ATTENTION
Task: {BDBE6D1E-F810-4184-AAAC-60D016B6FBE9} - \Microsoft\Windows\File Classification Infrastructure\Property Definition Sync -> No File <==== ATTENTION
Task: {BDDEF317-2692-422F-AEA2-FFD67DC7CEA3} - \Microsoft\Windows\DeviceDirectoryClient\RegisterUserDevice -> No File <==== ATTENTION
Task: {BF3EE6DF-98C0-4EB2-9FE6-F99478F6668A} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> No File <==== ATTENTION
Task: {C125018F-0B81-4B64-B7DC-0E01220E5D0E} - \Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceAccountChange -> No File <==== ATTENTION
Task: {C19BA160-DDEC-4BF4-BC5F-C252D4CB72AC} - \Microsoft\XblGameSave\XblGameSaveTaskLogon -> No File <==== ATTENTION
Task: {C248172E-976F-4677-AF85-6457CBF039BB} - \Microsoft\Windows\Customer Experience Improvement Program\Consolidator -> No File <==== ATTENTION
Task: {C317D11E-85D8-4950-85C8-821D05406062} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {C4BBB268-E90F-46B0-8EE9-45C1B766A972} - \Microsoft\Windows\SettingSync\NetworkStateChangeTask -> No File <==== ATTENTION
Task: {C54BA01F-4A55-4F25-84C4-F441FF067C02} - \Microsoft\Windows\Location\WindowsActionDialog -> No File <==== ATTENTION
Task: {C6B2579B-4962-4D12-883D-BBD420573A6C} - \Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePeriodic1 -> No File <==== ATTENTION
Task: {C9ACBFD2-20AA-4A3F-BE1A-A3D5279BB1BB} - \Microsoft\Windows\Plug and Play\Plug and Play Cleanup -> No File <==== ATTENTION
Task: {C9CC7147-F1FF-436F-BFEC-72A6B2134D33} - \Microsoft\Windows\CloudExperienceHost\CreateObjectTask -> No File <==== ATTENTION
Task: {CA234724-6B59-49CA-ABDF-0A8C79D3105E} - \Microsoft\Windows\Wininet\CacheTask -> No File <==== ATTENTION
Task: {CB8E9ABD-9FF5-4EFA-AA08-AA3792167412} - \Microsoft\Windows\Defrag\ScheduledDefrag -> No File <==== ATTENTION
Task: {CC636E49-0109-402B-A40B-A37C29069A95} - \Microsoft\Windows\DeviceDirectoryClient\LocateCommandUserSession -> No File <==== ATTENTION
Task: {CFAF368C-FD41-43C0-A230-AE70D76F6883} - \Microsoft\Windows\Sysmain\ResPriStaticDbSync -> No File <==== ATTENTION
Task: {D03D871B-D1F2-4901-92C8-FD836B1B18E1} - \Microsoft\Windows\Time Zone\SynchronizeTimeZone -> No File <==== ATTENTION
Task: {D138097D-E0B5-40BF-A553-EB86F7B526D1} - \Microsoft\Windows\ErrorDetails\EnableErrorDetailsUpdate -> No File <==== ATTENTION
Task: {D19A2726-897E-4F7D-9CE4-0773B449CE9E} - \Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceConnectedToNetwork -> No File <==== ATTENTION
Task: {D226C671-4BCA-4B18-B914-5B4EBDB8737F} - \Microsoft\Windows\WindowsUpdate\Automatic App Update -> No File <==== ATTENTION
Task: {D394BE25-2E16-45D4-AAB2-3E8861A09351} - \Microsoft\Windows\Shell\FamilySafetyMonitorToastTask -> No File <==== ATTENTION
Task: {D3C4106A-D511-42C6-9716-465644534C87} - \microsoft\windows\applicationdata\appuriverifierinstall -> No File <==== ATTENTION
Task: {D4913E3A-8B13-48C5-BC6F-AA9C8B2A4C14} - \Microsoft\Windows\PI\Sqm-Tasks -> No File <==== ATTENTION
Task: {D49CF09E-9F5F-4AC4-8C19-B5B69D4B74BD} - \OneDrive Standalone Update Task -> No File <==== ATTENTION
Task: {D4E1DB50-D91D-4A94-985F-3112FC46AAA4} - \Microsoft\Windows\Device Setup\Metadata Refresh -> No File <==== ATTENTION
Task: {D71358A9-EB80-4710-88A7-D3B795B3BD6F} - \GoogleUpdateTaskMachineUA -> No File <==== ATTENTION
Task: {D7363947-96AE-4959-8D5B-F7DB49B01864} - \Microsoft\Windows\UPnP\UPnPHostConfig -> No File <==== ATTENTION
Task: {D772664D-71ED-4D1D-A792-6AF2F2872F79} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {D941F53F-7907-4FBE-B1E7-69EBD5B3A5D8} - \Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceLocationRightsChange -> No File <==== ATTENTION
Task: {D9E15922-62C3-49C7-BFE9-75984E77D671} - \Microsoft\Windows\Plug and Play\Device Install Reboot Required -> No File <==== ATTENTION
Task: {DAB886E6-0C52-4861-A3AB-25013B4EBE96} - \Microsoft\Windows\Maps\MapsUpdateTask -> No File <==== ATTENTION
Task: {DBC49B44-659C-4396-A983-648CECC0A813} - \Microsoft\Windows\ApplicationData\DsSvcCleanup -> No File <==== ATTENTION
Task: {DD7DE760-6056-4A7D-8D5A-1BB224CB9308} - \Microsoft\Windows\Media Center\PBDADiscoveryW1 -> No File <==== ATTENTION
Task: {DDAECFC0-67E3-4062-BF25-CD685F73B394} - \Microsoft\Windows\DeviceDirectoryClient\IntegrityCheck -> No File <==== ATTENTION
Task: {DEB23342-83C1-4F4E-94CE-70DF1456DD77} - \CreateChoiceProcessTask -> No File <==== ATTENTION
Task: {DEB4E9AC-5C50-4B77-AA52-4EA4F3B5EA0B} - \Microsoft\Windows\Media Center\PvrScheduleTask -> No File <==== ATTENTION
Task: {DFF1270B-3A54-4FB3-837E-0BF1D4A3D3F5} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {E127B81B-813C-4A05-8EB6-CE1DA21F7C5B} - \Microsoft\Windows\DiskCleanup\SilentCleanup -> No File <==== ATTENTION
Task: {E1F8C472-CAE5-4AB3-A0A8-A8AD81F7D3D3} - \Microsoft\Windows\Work Folders\Work Folders Logon Synchronization -> No File <==== ATTENTION
Task: {E2E48C68-F634-4BAB-AF6D-53D911D0F340} - \Microsoft\Windows\Ras\MobilityManager -> No File <==== ATTENTION
Task: {E3A359D2-D969-4A0E-8A74-AD867B14488F} - \Microsoft\Windows\Chkdsk\ProactiveScan -> No File <==== ATTENTION
Task: {E5C357C7-9935-49C6-B5D1-5EAB992C1C2C} - \Microsoft\Windows\Media Center\ActivateWindowsSearch -> No File <==== ATTENTION
Task: {E7B04252-97CA-42C6-9920-F58B76B2C3E1} - \Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePeriodic24 -> No File <==== ATTENTION
Task: {E8AC6D97-997A-418F-B69F-75818116C0F8} - \Microsoft\Windows\MemoryDiagnostic\RunFullMemoryDiagnostic -> No File <==== ATTENTION
Task: {EA9BAA00-6604-4A27-8A73-AFA65F0EE1B3} - \Microsoft\Windows\SharedPC\Account Cleanup -> No File <==== ATTENTION
Task: {EAEF6590-778F-4E3D-89AD-056251EEA8EC} - \Microsoft\Windows\Registry\RegIdleBackup -> No File <==== ATTENTION
Task: {EB87C302-8830-44E2-93D8-A80193AE26A6} - \Microsoft\Windows\Media Center\PBDADiscovery -> No File <==== ATTENTION
Task: {EC96EFD9-76DA-41D2-89D2-27537E2E3981} - \Microsoft\Windows\SettingSync\BackgroundUploadTask -> No File <==== ATTENTION
Task: {ECEDC57D-8965-4EB1-BD6F-84791D928E23} - \microsoft\windows\applicationdata\appuriverifierdaily -> No File <==== ATTENTION
Task: {ED8F4E46-5B28-455D-A269-F832DED6FA44} - \Microsoft\Windows\SettingSync\BackupTask -> No File <==== ATTENTION
Task: {EE74E7C4-CD5A-4890-9C38-2D97C9F3CAF1} - \Microsoft\Windows\LanguageComponentsInstaller\Installation -> No File <==== ATTENTION
Task: {EEAC202F-1333-453F-801D-AE429C478091} - \Microsoft\Windows\Shell\IndexerAutomaticMaintenance -> No File <==== ATTENTION
Task: {F16ED5B1-D2D9-4410-A00A-AF75326949F0} - \Microsoft\Windows\Maintenance\WinSAT -> No File <==== ATTENTION
Task: {F200B6AE-7AD3-4DF7-B3EB-F1356CA5D011} - \Microsoft\Windows\UpdateOrchestrator\Reboot -> No File <==== ATTENTION
Task: {F29D7578-B451-4E71-9C6D-624D2A9ED061} - \Microsoft\Windows\Shell\CreateObjectTask -> No File <==== ATTENTION
Task: {F2FE4491-A594-4DA1-B8FA-507E796A1676} - \Microsoft\Windows\SideShow\SessionAgent -> No File <==== ATTENTION
Task: {F40D7047-305C-44D2-8853-4B75B1B5BBF9} - \Microsoft\Windows\Media Center\RecordingRestart -> No File <==== ATTENTION
Task: {F4F787C0-C5A7-4844-892B-D1DE5A54F950} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {F90E0DAA-68F8-49D5-B285-9A648DDBFCF1} - \Microsoft\Windows\Setup\gwx\rundetector -> No File <==== ATTENTION
Task: {FA30E48A-B8B9-4B5C-811C-DE4DF31F6CF6} - \Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers -> No File <==== ATTENTION
Task: {FAEA0EDC-C25E-4820-866B-01CBC081F2C1} - \Microsoft\Windows\Media Center\ehDRMInit -> No File <==== ATTENTION
Task: {FD938768-E565-41CC-BC05-81D4671A32A1} - \Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup -> No File <==== ATTENTION
Task: {FF14B0E7-D4DE-409E-BB26-59FB59369A46} - \Microsoft\Windows\NetTrace\GatherNetworkInfo -> No File <==== ATTENTION
AlternateDataStreams: C:\ProgramData\Temp:169FD0D9 [292]
AlternateDataStreams: C:\ProgramData\Temp:4D066AD2 [140]
AlternateDataStreams: C:\ProgramData\Temp:CDFF58FE [288]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ROC_roc_ssl_v12]
C:\Users\Geoff Hunter\AppData\Local\Cctbplt
C:\Program Files (x86)\AVG Secure Search
C:\Program Files (x86)\dgen

End
*****************

Processes closed successfully.
Restore point was successfully created.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value removed successfully
HKU\S-1-5-21-4078150615-2909914965-3786257567-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Google Update => value removed successfully
HKU\S-1-5-21-4078150615-2909914965-3786257567-1000\Software\Microsoft\Windows\CurrentVersion\Run\\BackgroundContainerV3 => value removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\GDriveSharedOverlay => key removed successfully
HKCR\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => key not found. 
HKU\S-1-5-21-4078150615-2909914965-3786257567-1000\Software\Microsoft\Internet Explorer\Main\\Start Page Redirect Cache => value removed successfully
HKU\S-1-5-21-4078150615-2909914965-3786257567-1000\Software\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\URLSearchHooks\\{bc3a2c68-4f1a-4ded-bc90-c7470c2d8f4a} => value removed successfully
HKCR\Wow6432Node\CLSID\{bc3a2c68-4f1a-4ded-bc90-c7470c2d8f4a} => key not found. 
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key removed successfully
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found. 
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key removed successfully
HKCR\Wow6432Node\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found. 
HKU\S-1-5-21-4078150615-2909914965-3786257567-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
HKU\S-1-5-21-4078150615-2909914965-3786257567-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key removed successfully
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found. 
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF} => key removed successfully
HKCR\Wow6432Node\CLSID\{B4F3A835-0E21-4959-BA22-42B3008E02FF} => key not found. 
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{bc3a2c68-4f1a-4ded-bc90-c7470c2d8f4a} => value removed successfully
HKCR\Wow6432Node\CLSID\{bc3a2c68-4f1a-4ded-bc90-c7470c2d8f4a} => key not found. 
HKU\S-1-5-21-4078150615-2909914965-3786257567-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{BC3A2C68-4F1A-4DED-BC90-C7470C2D8F4A} => value removed successfully
HKCR\CLSID\{BC3A2C68-4F1A-4DED-BC90-C7470C2D8F4A} => key not found. 
C:\Users\Geoff Hunter\AppData\Roaming\Mozilla\Firefox\Profiles\o31lxm86.default-1479519113513\Extensions\{963162af-4179-4365-b207-8d0b078b58c3}.xpi => moved successfully
HKLM\Software\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer => key removed successfully
Chrome StartupUrls => removed successfully
C:\Users\Geoff Hunter\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda => moved successfully
HKLM\System\CurrentControlSet\Services\PrintNotify => key removed successfully
PrintNotify => service removed successfully
HKLM\System\CurrentControlSet\Services\3ware => key removed successfully
3ware => service removed successfully
HKLM\System\CurrentControlSet\Services\ADP80XX => key removed successfully
ADP80XX => service removed successfully
HKLM\System\CurrentControlSet\Services\amdsata => key removed successfully
amdsata => service removed successfully
HKLM\System\CurrentControlSet\Services\amdsbs => key removed successfully
amdsbs => service removed successfully
HKLM\System\CurrentControlSet\Services\amdxata => key removed successfully
amdxata => service removed successfully
HKLM\System\CurrentControlSet\Services\arcsas => key removed successfully
arcsas => service removed successfully
HKLM\System\CurrentControlSet\Services\b06bdrv => key removed successfully
b06bdrv => service removed successfully
HKLM\System\CurrentControlSet\Services\bcmfn => key removed successfully
bcmfn => service removed successfully
HKLM\System\CurrentControlSet\Services\bcmfn2 => key removed successfully
bcmfn2 => service removed successfully
HKLM\System\CurrentControlSet\Services\CapImg => key removed successfully
CapImg => service removed successfully
HKLM\System\CurrentControlSet\Services\cht4iscsi => key removed successfully
cht4iscsi => service removed successfully
HKLM\System\CurrentControlSet\Services\cht4vbd => key removed successfully
cht4vbd => service removed successfully
HKLM\System\CurrentControlSet\Services\dg_ssudbus => key removed successfully
dg_ssudbus => service removed successfully
HKLM\System\CurrentControlSet\Services\ebdrv => key removed successfully
ebdrv => service removed successfully
HKLM\System\CurrentControlSet\Services\HpSAMD => key removed successfully
HpSAMD => service removed successfully
HKLM\System\CurrentControlSet\Services\iai2c => key removed successfully
iai2c => service removed successfully
HKLM\System\CurrentControlSet\Services\iaLPSS2i_GPIO2 => key removed successfully
iaLPSS2i_GPIO2 => service removed successfully
HKLM\System\CurrentControlSet\Services\iaLPSS2i_I2C => key removed successfully
iaLPSS2i_I2C => service removed successfully
HKLM\System\CurrentControlSet\Services\iaLPSSi_GPIO => key removed successfully
iaLPSSi_GPIO => service removed successfully
HKLM\System\CurrentControlSet\Services\iaLPSSi_I2C => key removed successfully
iaLPSSi_I2C => service removed successfully
HKLM\System\CurrentControlSet\Services\iaStorAV => key removed successfully
iaStorAV => service removed successfully
HKLM\System\CurrentControlSet\Services\iaStorV => key removed successfully
iaStorV => service removed successfully
HKLM\System\CurrentControlSet\Services\ibbus => key removed successfully
ibbus => service removed successfully
HKLM\System\CurrentControlSet\Services\idsvc => key removed successfully
idsvc => service removed successfully
HKLM\System\CurrentControlSet\Services\LSI_SAS => key removed successfully
LSI_SAS => service removed successfully
HKLM\System\CurrentControlSet\Services\LSI_SAS2i => key removed successfully
LSI_SAS2i => service removed successfully
HKLM\System\CurrentControlSet\Services\LSI_SAS3i => key removed successfully
LSI_SAS3i => service removed successfully
HKLM\System\CurrentControlSet\Services\LSI_SSS => key removed successfully
LSI_SSS => service removed successfully
HKLM\System\CurrentControlSet\Services\megasas => key removed successfully
megasas => service removed successfully
HKLM\System\CurrentControlSet\Services\megasas2i => key removed successfully
megasas2i => service removed successfully
HKLM\System\CurrentControlSet\Services\megasr => key removed successfully
megasr => service removed successfully
HKLM\System\CurrentControlSet\Services\mlx4_bus => key removed successfully
mlx4_bus => service removed successfully
HKLM\System\CurrentControlSet\Services\mvumis => key removed successfully
mvumis => service removed successfully
HKLM\System\CurrentControlSet\Services\ndfltr => key removed successfully
ndfltr => service removed successfully
HKLM\System\CurrentControlSet\Services\nvraid => key removed successfully
nvraid => service removed successfully
HKLM\System\CurrentControlSet\Services\nvstor => key removed successfully
nvstor => service removed successfully
HKLM\System\CurrentControlSet\Services\percsas2i => key removed successfully
percsas2i => service removed successfully
HKLM\System\CurrentControlSet\Services\percsas3i => key removed successfully
percsas3i => service removed successfully
HKLM\System\CurrentControlSet\Services\pwdrvio => key removed successfully
pwdrvio => service removed successfully
HKLM\System\CurrentControlSet\Services\pwdspio => key removed successfully
pwdspio => service removed successfully
HKLM\System\CurrentControlSet\Services\RapportKE64 => could not remove key. Access Denied.
HKLM\System\CurrentControlSet\Services\RSUSBSTOR => key removed successfully
RSUSBSTOR => service removed successfully
HKLM\System\CurrentControlSet\Services\scmbus => key removed successfully
scmbus => service removed successfully
HKLM\System\CurrentControlSet\Services\scmdisk0101 => key removed successfully
scmdisk0101 => service removed successfully
HKLM\System\CurrentControlSet\Services\SiSRaid2 => key removed successfully
SiSRaid2 => service removed successfully
HKLM\System\CurrentControlSet\Services\SiSRaid4 => key removed successfully
SiSRaid4 => service removed successfully
HKLM\System\CurrentControlSet\Services\ssadbus => key removed successfully
ssadbus => service removed successfully
HKLM\System\CurrentControlSet\Services\ssadmdfl => key removed successfully
ssadmdfl => service removed successfully
HKLM\System\CurrentControlSet\Services\ssadmdm => key removed successfully
ssadmdm => service removed successfully
HKLM\System\CurrentControlSet\Services\ssadserd => key removed successfully
ssadserd => service removed successfully
HKLM\System\CurrentControlSet\Services\ssudmdm => key removed successfully
ssudmdm => service removed successfully
HKLM\System\CurrentControlSet\Services\stexstor => key removed successfully
stexstor => service removed successfully
HKLM\System\CurrentControlSet\Services\Synth3dVsc => key removed successfully
Synth3dVsc => service removed successfully
HKLM\System\CurrentControlSet\Services\usbscan => key removed successfully
usbscan => service removed successfully
HKLM\System\CurrentControlSet\Services\vsmraid => key removed successfully
vsmraid => service removed successfully
HKLM\System\CurrentControlSet\Services\VSTXRAID => key removed successfully
VSTXRAID => service removed successfully
HKLM\System\CurrentControlSet\Services\WindowsTrustedRTProxy => key removed successfully
WindowsTrustedRTProxy => service removed successfully
HKLM\System\CurrentControlSet\Services\WinMad => key removed successfully
WinMad => service removed successfully
HKLM\System\CurrentControlSet\Services\WinVerbs => key removed successfully
WinVerbs => service removed successfully
C:\Users\Geoff Hunter\AppData\Local\{6ACC03FC-8AA0-47B5-94A0-9D92FBE7B7E8} => moved successfully
C:\Users\Geoff Hunter\AppData\Local\Temp\jre-8u121-windows-au.exe => moved successfully
C:\Users\Geoff Hunter\AppData\Local\Temp\Runner.exe => moved successfully
HKU\S-1-5-21-4078150615-2909914965-3786257567-1000_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208} => key removed successfully
HKU\S-1-5-21-4078150615-2909914965-3786257567-1000_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448} => key removed successfully
HKU\S-1-5-21-4078150615-2909914965-3786257567-1000_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1} => key removed successfully
HKU\S-1-5-21-4078150615-2909914965-3786257567-1000_Classes\CLSID\{590C4387-5EBD-4D46-8A84-CD0BA2EF2856} => key removed successfully
HKU\S-1-5-21-4078150615-2909914965-3786257567-1000_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4} => key removed successfully
HKU\S-1-5-21-4078150615-2909914965-3786257567-1000_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E} => key removed successfully
HKU\S-1-5-21-4078150615-2909914965-3786257567-1000_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98} => key removed successfully
HKU\S-1-5-21-4078150615-2909914965-3786257567-1000_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247} => key removed successfully
HKU\S-1-5-21-4078150615-2909914965-3786257567-1000_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8} => key removed successfully
HKU\S-1-5-21-4078150615-2909914965-3786257567-1000_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A} => key removed successfully
HKU\S-1-5-21-4078150615-2909914965-3786257567-1000_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2} => key removed successfully
HKU\S-1-5-21-4078150615-2909914965-3786257567-1000_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9} => key removed successfully
HKU\S-1-5-21-4078150615-2909914965-3786257567-1000_Classes\CLSID\{D1EDC4F5-7F4D-4B12-906A-614ECF66DDAF} => key removed successfully
HKU\S-1-5-21-4078150615-2909914965-3786257567-1000_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{002E612E-385D-4E40-8F13-204610C5F922} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{002E612E-385D-4E40-8F13-204610C5F922} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Feedback\Siuf\DmClient => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{014833AD-91B1-4001-B63A-A4F945E2BDFB} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{014833AD-91B1-4001-B63A-A4F945E2BDFB} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\DiskFootprint\Diagnostics => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{026AAA4B-0BE6-4B67-ACF6-533D4DE74E02} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{026AAA4B-0BE6-4B67-ACF6-533D4DE74E02} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Customer Experience Improvement Program\KernelCeipTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{03896D04-23AB-4F74-A27D-B1B71EE41E2C} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{03896D04-23AB-4F74-A27D-B1B71EE41E2C} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{04EFBF53-0BE4-468C-971B-5A873BBCC06C} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{04EFBF53-0BE4-468C-971B-5A873BBCC06C} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{05227D57-A8E1-4DEE-8FDF-1C2D6C3616E0} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{05227D57-A8E1-4DEE-8FDF-1C2D6C3616E0} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0550484F-2C2D-4AAC-9644-AC8ABD0D33BD} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0550484F-2C2D-4AAC-9644-AC8ABD0D33BD} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Windows Media Sharing\UpdateLibrary => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{06BB1EBB-0053-418A-AD00-B8F42B3DF200} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{06BB1EBB-0053-418A-AD00-B8F42B3DF200} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\LanguageComponentsInstaller\Uninstallation => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0858DFA0-D044-429F-B65C-DAF1567D71D4} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0858DFA0-D044-429F-B65C-DAF1567D71D4} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Shell\FamilySafetyMonitor => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{088482FA-65B8-4E17-9ABF-1DCD48E8D373} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{088482FA-65B8-4E17-9ABF-1DCD48E8D373} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Tcpip\IpAddressConflict1 => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{092134BB-A600-423D-B2C3-3293C162C577} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{092134BB-A600-423D-B2C3-3293C162C577} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\SideShow\GadgetManager => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{09F06BFE-A3C8-40E3-846A-6E6F4000C238} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{09F06BFE-A3C8-40E3-846A-6E6F4000C238} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Tcpip\IpAddressConflict2 => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0B0C4EB6-E673-4842-B2FC-6CE281607747} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0B0C4EB6-E673-4842-B2FC-6CE281607747} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\Policy Install => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0F1BA34D-B082-4442-96F5-A7519F67F71A} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0F1BA34D-B082-4442-96F5-A7519F67F71A} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WindowsBackup\AutomaticBackup => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{11EF8237-224D-4CF9-9039-61D08754EA5D} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{11EF8237-224D-4CF9-9039-61D08754EA5D} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Application Experience\ProgramDataUpdater => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{14383DBE-04CD-485C-98E2-9D909989819D} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{14383DBE-04CD-485C-98E2-9D909989819D} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\SystemRestore\SR => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{16534FAD-49CD-4D0F-8C01-9D018C2907C4} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{16534FAD-49CD-4D0F-8C01-9D018C2907C4} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{16A70DC9-290B-4801-ABA0-8689DB5428B8} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{16A70DC9-290B-4801-ABA0-8689DB5428B8} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{16DEA092-FB0C-40D0-AE20-0536BECC21D9} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{16DEA092-FB0C-40D0-AE20-0536BECC21D9} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\EDP\EDP App Launch Task => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{184784E2-6ACB-4154-BD0F-A955BE13F177} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{184784E2-6ACB-4154-BD0F-A955BE13F177} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePolicyChange => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{19639003-C77D-4B18-A332-8DD151EC2CEE} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{19639003-C77D-4B18-A332-8DD151EC2CEE} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\UpdateRecordPath => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1B65DD58-D16B-45E8-BEB4-94D7E4D64DF7} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1B65DD58-D16B-45E8-BEB4-94D7E4D64DF7} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\EDP\EDP Auth Task => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1DDCB080-DCF4-422D-904C-07D5B7C10AB8} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1DDCB080-DCF4-422D-904C-07D5B7C10AB8} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\MUI\LPRemove => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1EF41258-2361-4435-B500-B774E7C9A65B} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1EF41258-2361-4435-B500-B774E7C9A65B} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\ConfigureInternetTimeService => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{209082E0-6F18-4AD4-A978-4840B587C307} => key not found. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CCleanerSkipUAC => key not found. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{21AE865E-E468-4C66-867A-FF05FB272454} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{21AE865E-E468-4C66-867A-FF05FB272454} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\DispatchRecoveryTasks => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{22526601-1FC2-4EE8-97B0-A53E2A8BE110} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{22526601-1FC2-4EE8-97B0-A53E2A8BE110} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2410276A-AC66-4BC8-81DE-59EEA5BA7D65} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2410276A-AC66-4BC8-81DE-59EEA5BA7D65} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WCM\WiFiTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2519456D-A57A-4EF1-8CA0-D07149A8CF8B} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2519456D-A57A-4EF1-8CA0-D07149A8CF8B} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\MssUpdater => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{258588CB-CE0C-4C8B-9901-598F445BBFB9} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{258588CB-CE0C-4C8B-9901-598F445BBFB9} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{272231F4-8A23-4115-8FA0-FBE7D9A6BCE6} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{272231F4-8A23-4115-8FA0-FBE7D9A6BCE6} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\CertificateServicesClient\SystemTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{27610153-E253-4DEC-8CE2-EAA609D4AF92} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{27610153-E253-4DEC-8CE2-EAA609D4AF92} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{289CB083-4640-451E-B4A2-C8EE0ABAFAF8} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{289CB083-4640-451E-B4A2-C8EE0ABAFAF8} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Servicing\StartComponentCleanup => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2C6CE008-C8D9-43A4-BE6E-1577ECF7BDEE} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2C6CE008-C8D9-43A4-BE6E-1577ECF7BDEE} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2FCD28F4-9215-409D-A3F5-55CFCB7C0D2C} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2FCD28F4-9215-409D-A3F5-55CFCB7C0D2C} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3004E3CE-0D38-4C6D-A827-725A158DD061} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3004E3CE-0D38-4C6D-A827-725A158DD061} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{31904C6C-AD32-4E56-B961-542B3DB08B48} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{31904C6C-AD32-4E56-B961-542B3DB08B48} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Windows Error Reporting\QueueReporting => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{33967F1F-606F-440E-8503-630278A85455} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{33967F1F-606F-440E-8503-630278A85455} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Location\Notifications => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{33DD0105-F44A-4667-9ACE-BF8CDA57836F} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{33DD0105-F44A-4667-9ACE-BF8CDA57836F} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{34826D50-0B05-4366-8E1D-5FEBDE510615} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{34826D50-0B05-4366-8E1D-5FEBDE510615} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\NlaSvc\WiFiTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{34AA205A-1BBE-4F3F-87B5-A8B4E53CC4CE} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{34AA205A-1BBE-4F3F-87B5-A8B4E53CC4CE} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3619DDEB-01D8-4AEF-BA75-2F893C3AB41D} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3619DDEB-01D8-4AEF-BA75-2F893C3AB41D} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\mcupdate => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{38FC2C79-5845-40A3-AC9A-BEBCB55CB26D} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{38FC2C79-5845-40A3-AC9A-BEBCB55CB26D} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Plug and Play\Device Install Group Policy => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{394DBCED-7AFF-4933-8196-6806F9E437B6} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{394DBCED-7AFF-4933-8196-6806F9E437B6} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\User Profile Service\HiveUploadTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3986C26D-9D92-443E-BB32-EEAED171A7B1} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3986C26D-9D92-443E-BB32-EEAED171A7B1} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{39F20FAB-2670-4ADC-9FE4-1575177121A9} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{39F20FAB-2670-4ADC-9FE4-1575177121A9} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3B438481-7716-48C7-8F26-CDDCB32B72DB} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3B438481-7716-48C7-8F26-CDDCB32B72DB} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\RegisterSearch => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{3B4F8DE8-4DEE-4222-AE54-31E1392AFA48} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3B4F8DE8-4DEE-4222-AE54-31E1392AFA48} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{3E31ABD7-7B10-482B-AD2F-EFAA1C4741C3} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3E31ABD7-7B10-482B-AD2F-EFAA1C4741C3} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Subscription\LicenseAcquisition => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3FF560FB-52E4-4839-80D8-6BF608A6A184} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3FF560FB-52E4-4839-80D8-6BF608A6A184} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Time Synchronization\SynchronizeTime => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4083B0B6-5DD1-4324-91BF-742B73D10B0B} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4083B0B6-5DD1-4324-91BF-742B73D10B0B} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{4323A808-854F-4ED2-A0FF-0F44F9291729} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4323A808-854F-4ED2-A0FF-0F44F9291729} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Work Folders\Work Folders Maintenance Work => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{43DF67E8-D733-48FA-98F2-4E6D341E4A79} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{43DF67E8-D733-48FA-98F2-4E6D341E4A79} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{4520E8A9-AF06-4122-859B-E4B655B29B36} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4520E8A9-AF06-4122-859B-E4B655B29B36} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\AppID\SmartScreenSpecific => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4675EB36-2D3D-4711-914D-E5E5CC708CD0} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4675EB36-2D3D-4711-914D-E5E5CC708CD0} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\XblGameSave\XblGameSaveTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{46E68CD4-DFD4-4ACC-BE9B-1AC6F8D79EC1} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{46E68CD4-DFD4-4ACC-BE9B-1AC6F8D79EC1} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{486D715E-6AA2-44CF-BC48-B6990CBB53C6} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{486D715E-6AA2-44CF-BC48-B6990CBB53C6} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Shell\WindowsParentalControlsMigration => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4A939B67-3049-4E93-8007-EAB8936772E2} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4A939B67-3049-4E93-8007-EAB8936772E2} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Offline Files\Background Synchronization => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4DA85A4F-BC58-48A1-B6A7-92D80719FB72} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4DA85A4F-BC58-48A1-B6A7-92D80719FB72} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WPD\SqmUpload_S-1-5-21-4078150615-2909914965-3786257567-1000 => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{508132A8-6E51-4026-A5ED-B687185DA92B} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{508132A8-6E51-4026-A5ED-B687185DA92B} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskLogon => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{51B7FB15-4DCB-400E-9A98-10E802F21FB3} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{51B7FB15-4DCB-400E-9A98-10E802F21FB3} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceScreenOnOff => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{52015CC4-8EAF-444F-966F-F83D47041CFA} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{52015CC4-8EAF-444F-966F-F83D47041CFA} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Customer Experience Improvement Program\UsbCeip => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{527A4011-EE63-4112-B2DB-7FD31974239C} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{527A4011-EE63-4112-B2DB-7FD31974239C} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\PI\Secure-Boot-Update => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5654DFBB-E797-4758-B9A0-8BAE94A91F1D} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5654DFBB-E797-4758-B9A0-8BAE94A91F1D} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\DUSM\dusmtask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{57331538-E388-41D4-AEB2-0B9A6B2B9B01} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{57331538-E388-41D4-AEB2-0B9A6B2B9B01} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\PBDADiscoveryW2 => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{5960C68A-D393-492C-9C35-A71A48EC6A5D} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5960C68A-D393-492C-9C35-A71A48EC6A5D} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Autochk\Proxy => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{59E2DA3C-AD67-4152-B299-DB69560DD9D4} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{59E2DA3C-AD67-4152-B299-DB69560DD9D4} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\MobilePC\HotStart => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{5A0986BC-560A-4D24-81E3-FAFD260EE3E5} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5A0986BC-560A-4D24-81E3-FAFD260EE3E5} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Clip\License Validation => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5B42DD9C-5A26-4F27-BB95-34603F0997E5} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5B42DD9C-5A26-4F27-BB95-34603F0997E5} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Shell\WindowsParentalControls => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5BFE90FE-6B31-4956-9272-E1E992A693BB} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5BFE90FE-6B31-4956-9272-E1E992A693BB} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WindowsColorSystem\Calibration Loader => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{5C85728B-05FE-4B38-B7AA-3A549BF5C43E} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5C85728B-05FE-4B38-B7AA-3A549BF5C43E} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\SpacePort\SpaceManagerTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5F20C597-0BD8-48E1-95E0-0871A15CA3E8} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5F20C597-0BD8-48E1-95E0-0871A15CA3E8} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\PvrRecoveryTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5FAAF530-ED1B-4F7B-AD7B-1694AA0B202B} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5FAAF530-ED1B-4F7B-AD7B-1694AA0B202B} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\CertificateServicesClient\CryptoPolicyTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{60353183-E949-4290-A909-00DDD7E10172} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{60353183-E949-4290-A909-00DDD7E10172} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Multimedia\SystemSoundsService => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6232090F-3BD0-4E1F-960B-78CBA797F685} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6232090F-3BD0-4E1F-960B-78CBA797F685} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\DeviceDirectoryClient\HandleWnsCommand => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{635A185A-88AD-4B41-9344-B07C284A75E9} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{635A185A-88AD-4B41-9344-B07C284A75E9} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WindowsUpdate\sih => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{63E7634C-9073-49CD-A9B6-0910BC9BE25E} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{63E7634C-9073-49CD-A9B6-0910BC9BE25E} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{66411273-9DF4-47B4-9B75-944299189921} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{66411273-9DF4-47B4-9B75-944299189921} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6AFCFE4D-B65D-4288-A48C-94BDEDEB28C7} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6AFCFE4D-B65D-4288-A48C-94BDEDEB28C7} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\TPM\Tpm-HASCertRetr => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6B1AE720-1359-4B9E-9C0F-60167361EF01} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6B1AE720-1359-4B9E-9C0F-60167361EF01} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Shell\FamilySafetyRefreshTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6BDE4144-3452-4312-8438-32B03550DC92} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6BDE4144-3452-4312-8438-32B03550DC92} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Apple\AppleSoftwareUpdate => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6D1C0035-5CAD-4340-A533-D63C9853BCC9} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6D1C0035-5CAD-4340-A533-D63C9853BCC9} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Storage Tiers Management\Storage Tiers Management Initialization => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6D486F02-16BF-4997-8C11-6BAF4506A7BE} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6D486F02-16BF-4997-8C11-6BAF4506A7BE} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\StartRecording => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6E07D3C4-DF11-4E24-B0B0-BC0844DA0226} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6E07D3C4-DF11-4E24-B0B0-BC0844DA0226} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6E8AE752-C5D2-4B34-B351-338B4370A342} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6E8AE752-C5D2-4B34-B351-338B4370A342} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\DeviceDirectoryClient\HandleCommand => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6F47F2F8-7017-4125-BAE1-61E5E6998124} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6F47F2F8-7017-4125-BAE1-61E5E6998124} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Flash Player Updater => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{70953190-BBA1-4141-A6A5-F78FE4F2DF3D} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{70953190-BBA1-4141-A6A5-F78FE4F2DF3D} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WDI\ResolutionHost => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{757B2DC7-58A5-4F77-A711-5C3493D90F88} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{757B2DC7-58A5-4F77-A711-5C3493D90F88} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\ReindexSearchRoot => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{75D4827F-3153-4536-9121-2C9E475F11F5} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{75D4827F-3153-4536-9121-2C9E475F11F5} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SidebarExecute => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{77F04470-4875-4998-B9DC-9D7C64323F5B} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{77F04470-4875-4998-B9DC-9D7C64323F5B} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7972E98D-E0A1-4919-86EF-72E09EB8D57B} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7972E98D-E0A1-4919-86EF-72E09EB8D57B} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\CertificateServicesClient\UserTask-Roam => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7A45406B-0BF8-475E-8731-EC6B49EC17A9} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7A45406B-0BF8-475E-8731-EC6B49EC17A9} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{A1512D94-BCF5-4425-9E3A-41B22FEBF491} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7A6889A1-EB7C-4F2E-ABA2-3EED95507610} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7A6889A1-EB7C-4F2E-ABA2-3EED95507610} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\ApplicationData\CleanupTemporaryState => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7AC5E1E2-2FD3-40CD-8842-88CE53A3609C} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7AC5E1E2-2FD3-40CD-8842-88CE53A3609C} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\DiskFootprint\StorageSense => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7ADBD0EE-0CDE-4CD8-820B-E188292104EA} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7ADBD0EE-0CDE-4CD8-820B-E188292104EA} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Bluetooth\UninstallDeviceTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{7E7280E4-311A-4CE7-A53D-6F8B9219821E} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7E7280E4-311A-4CE7-A53D-6F8B9219821E} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WindowsUpdate\sihboot => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{83DDE435-B2B7-47AF-9F8A-9FD3CA5C80C7} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{83DDE435-B2B7-47AF-9F8A-9FD3CA5C80C7} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\mcupdate_scheduled => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8553FB03-001D-444F-B03B-C9F1C7824AE9} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8553FB03-001D-444F-B03B-C9F1C7824AE9} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\FileHistory\File History (maintenance mode) => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{868BFDBC-C5C8-4363-B770-658518AA278E} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{868BFDBC-C5C8-4363-B770-658518AA278E} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{893E86CA-B959-4C35-8044-330E2DC5E4EC} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{893E86CA-B959-4C35-8044-330E2DC5E4EC} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Application Experience\StartupAppTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{89605709-CE13-4F5F-A372-ADC1FDFBE6E0} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{89605709-CE13-4F5F-A372-ADC1FDFBE6E0} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Management\Provisioning\Logon => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{8A1C4EF4-EDD4-459B-82B7-189C825A6C6F} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8A1C4EF4-EDD4-459B-82B7-189C825A6C6F} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\TextServicesFramework\MsCtfMonitor => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8D791FAA-0257-4EBC-A6DD-74E842528806} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8D791FAA-0257-4EBC-A6DD-74E842528806} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceSettingChange => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{8F094045-E98F-4D81-9E06-E95F62F7F51C} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8F094045-E98F-4D81-9E06-E95F62F7F51C} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\SideShow\SystemDataProviders => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8F158D86-9AFB-455C-B00B-7E929DD83D81} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8F158D86-9AFB-455C-B00B-7E929DD83D81} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\OCURActivate => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{901D3252-EB8D-4CBE-97C9-B31B6158CD7A} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{901D3252-EB8D-4CBE-97C9-B31B6158CD7A} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\MemoryDiagnostic\ProcessMemoryDiagnosticEvents => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{901E1AEB-ECAA-4402-B2D2-EA785F1EF5EC} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{901E1AEB-ECAA-4402-B2D2-EA785F1EF5EC} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\AppID\PolicyConverter => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9093EF7B-83FE-4C32-A6D7-EEFC040689A0} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9093EF7B-83FE-4C32-A6D7-EEFC040689A0} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\Refresh Settings => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{90D7D40E-8F22-4147-82A4-6B021DE8B68D} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{90D7D40E-8F22-4147-82A4-6B021DE8B68D} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskNetwork => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{91179B74-4E07-4FFC-98E0-4769A3DF8044} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{91179B74-4E07-4FFC-98E0-4769A3DF8044} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-4078150615-2909914965-3786257567-1000Core => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{91D66C97-E9FC-4BD0-9C70-9DFC7AAE6E96} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{91D66C97-E9FC-4BD0-9C70-9DFC7AAE6E96} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{92E54674-503B-4E5E-A713-C30E4D8D4999} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{92E54674-503B-4E5E-A713-C30E4D8D4999} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\SpacePort\SpaceAgentTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9421FFF0-CD24-4F40-B591-01BDB9181D11} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9421FFF0-CD24-4F40-B591-01BDB9181D11} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Maps\MapsToastTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{96A783BB-EABB-42AA-AA90-D48F407DC6D1} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{96A783BB-EABB-42AA-AA90-D48F407DC6D1} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-4078150615-2909914965-3786257567-1000UA => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{96FBB1D0-D278-46AD-8361-023AB7B9B974} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{96FBB1D0-D278-46AD-8361-023AB7B9B974} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\AppID\EDP Policy Manager => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{97696FC3-36DC-4F2D-B4EC-72E2A847B77D} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{97696FC3-36DC-4F2D-B4EC-72E2A847B77D} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\InstallPlayReady => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9851188E-AC07-4F36-BA28-6D00BB2C9C46} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9851188E-AC07-4F36-BA28-6D00BB2C9C46} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Device Information\Device => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{98DB7E44-904C-4D11-9812-AE68210EAAAC} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{98DB7E44-904C-4D11-9812-AE68210EAAAC} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\ErrorDetails\ErrorDetailsUpdate => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{997ABC4C-A637-4458-B14E-3B2A577E7DA5} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{997ABC4C-A637-4458-B14E-3B2A577E7DA5} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Diagnosis\Scheduled => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9994D7CF-8A8B-4CC3-8487-AD7D6494CDCE} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9994D7CF-8A8B-4CC3-8487-AD7D6494CDCE} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9ACAF517-3B60-4FC7-B747-5C4FD449C534} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9ACAF517-3B60-4FC7-B747-5C4FD449C534} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Automated) => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9C1ED90D-9698-4ED3-BA7F-AF0FE65933CC} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9C1ED90D-9698-4ED3-BA7F-AF0FE65933CC} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9FA39DCC-103F-4172-ACE1-BD80583C5791} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9FA39DCC-103F-4172-ACE1-BD80583C5791} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9FD2A7EE-1B7E-4B46-9982-3E2F3907B85A} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9FD2A7EE-1B7E-4B46-9982-3E2F3907B85A} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WindowsBackup\Windows Backup Monitor => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A028BE20-D809-4933-A271-17DFE5933109} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A028BE20-D809-4933-A271-17DFE5933109} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WOF\WIM-Hash-Validation => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A150AAAA-1FD6-4630-9263-0B1AD4008FA3} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A150AAAA-1FD6-4630-9263-0B1AD4008FA3} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{86474C2F-360A-4913-A8A0-BEA35EDF0D00} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A1D284E6-65FF-4971-BDFD-239926FBBC51} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A1D284E6-65FF-4971-BDFD-239926FBBC51} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Task Manager\Interactive => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A237C144-945C-4C22-B51B-924BF8929F36} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A237C144-945C-4C22-B51B-924BF8929F36} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Offline Files\Logon Synchronization => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A29C9BD0-478C-4A36-9CB4-1EB0F885E997} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A29C9BD0-478C-4A36-9CB4-1EB0F885E997} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A459C031-D9B3-4653-80E1-AD0CB78194F3} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A459C031-D9B3-4653-80E1-AD0CB78194F3} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Time Synchronization\ForceSynchronizeTime => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A8CB5879-61D0-4488-936D-BE917FB72D36} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A8CB5879-61D0-4488-936D-BE917FB72D36} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\OCURDiscovery => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{AA9415D4-2A2D-43AA-99FA-0952FEE4AD70} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AA9415D4-2A2D-43AA-99FA-0952FEE4AD70} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Workplace Join\Automatic-Device-Join => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{AC7A9139-3B83-4421-99CC-B47DD0C49B15} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AC7A9139-3B83-4421-99CC-B47DD0C49B15} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\CertificateServicesClient\UserTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{ACAD1437-73FC-4819-B3B0-DBB87AE9DCA6} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{ACAD1437-73FC-4819-B3B0-DBB87AE9DCA6} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\SideShow\AutoWake => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{ACBD7FB1-A692-4B46-80B5-C0C115621F26} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{ACBD7FB1-A692-4B46-80B5-C0C115621F26} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\CertificateServicesClient\KeyPreGenTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AD7321D2-997C-4E81-AE46-4631E6B033A3} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AD7321D2-997C-4E81-AE46-4631E6B033A3} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Subscription\EnableLicenseAcquisition => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AE441F21-A63E-443D-8785-53A9DEDDABD2} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AE441F21-A63E-443D-8785-53A9DEDDABD2} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\OfficeSoftwareProtectionPlatform\SvcRestartTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B0CA8AA3-67B9-4F50-840B-D2FE0FD59E13} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B0CA8AA3-67B9-4F50-840B-D2FE0FD59E13} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Storage Tiers Management\Storage Tiers Optimization => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B0CBAB43-44FC-469B-A4CE-87426761FDCE} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B0CBAB43-44FC-469B-A4CE-87426761FDCE} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B2AFD125-21A4-4493-BDFD-B11826149030} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B2AFD125-21A4-4493-BDFD-B11826149030} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B320E058-C6FA-413F-876B-0C9B4428AE66} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B320E058-C6FA-413F-876B-0C9B4428AE66} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePeriodic6 => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B3FC0613-3EB0-44A7-B33F-D2CF847E1726} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B3FC0613-3EB0-44A7-B33F-D2CF847E1726} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\PeriodicScanRetry => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B5478799-DDC7-4391-A7D5-0C1B684F5D60} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B5478799-DDC7-4391-A7D5-0C1B684F5D60} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\TPM\Tpm-Maintenance => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B6EE76B2-4F82-4E15-9345-C867A29CBAD0} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B6EE76B2-4F82-4E15-9345-C867A29CBAD0} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Speech\SpeechModelDownloadTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B75E1403-1659-44B0-99B5-D06CEFA6CCB5} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B75E1403-1659-44B0-99B5-D06CEFA6CCB5} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B872B8DA-93F2-4531-A0AC-AA45BFD3D6DA} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B872B8DA-93F2-4531-A0AC-AA45BFD3D6DA} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B99E0356-708C-4161-8693-F06794F8129D} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B99E0356-708C-4161-8693-F06794F8129D} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\CertificateServicesClient\AikCertEnrollTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BA7526B0-0B99-4849-94AE-E75C31DA6E4A} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BA7526B0-0B99-4849-94AE-E75C31DA6E4A} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan for Crash Recovery => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{BCAC2FB4-9260-4B95-A220-0BF4A75CFED0} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BCAC2FB4-9260-4B95-A220-0BF4A75CFED0} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Manual) => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BD49AB91-B0FF-4F51-A21B-A79F70602CB3} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BD49AB91-B0FF-4F51-A21B-A79F70602CB3} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\License Manager\TempSignedLicenseExchange => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BD7DFB56-1089-4146-AC3E-6AC50333D855} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BD7DFB56-1089-4146-AC3E-6AC50333D855} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WOF\WIM-Hash-Management => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BDBE6D1E-F810-4184-AAAC-60D016B6FBE9} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BDBE6D1E-F810-4184-AAAC-60D016B6FBE9} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\File Classification Infrastructure\Property Definition Sync => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{BDDEF317-2692-422F-AEA2-FFD67DC7CEA3} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BDDEF317-2692-422F-AEA2-FFD67DC7CEA3} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\DeviceDirectoryClient\RegisterUserDevice => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BF3EE6DF-98C0-4EB2-9FE6-F99478F6668A} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BF3EE6DF-98C0-4EB2-9FE6-F99478F6668A} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C125018F-0B81-4B64-B7DC-0E01220E5D0E} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C125018F-0B81-4B64-B7DC-0E01220E5D0E} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceAccountChange => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{C19BA160-DDEC-4BF4-BC5F-C252D4CB72AC} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C19BA160-DDEC-4BF4-BC5F-C252D4CB72AC} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\XblGameSave\XblGameSaveTaskLogon => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C248172E-976F-4677-AF85-6457CBF039BB} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C248172E-976F-4677-AF85-6457CBF039BB} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Customer Experience Improvement Program\Consolidator => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C317D11E-85D8-4950-85C8-821D05406062} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C317D11E-85D8-4950-85C8-821D05406062} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C4BBB268-E90F-46B0-8EE9-45C1B766A972} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C4BBB268-E90F-46B0-8EE9-45C1B766A972} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\SettingSync\NetworkStateChangeTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C54BA01F-4A55-4F25-84C4-F441FF067C02} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C54BA01F-4A55-4F25-84C4-F441FF067C02} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Location\WindowsActionDialog => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C6B2579B-4962-4D12-883D-BBD420573A6C} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C6B2579B-4962-4D12-883D-BBD420573A6C} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePeriodic1 => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C9ACBFD2-20AA-4A3F-BE1A-A3D5279BB1BB} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C9ACBFD2-20AA-4A3F-BE1A-A3D5279BB1BB} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Plug and Play\Plug and Play Cleanup => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C9CC7147-F1FF-436F-BFEC-72A6B2134D33} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C9CC7147-F1FF-436F-BFEC-72A6B2134D33} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\CloudExperienceHost\CreateObjectTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{CA234724-6B59-49CA-ABDF-0A8C79D3105E} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CA234724-6B59-49CA-ABDF-0A8C79D3105E} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Wininet\CacheTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CB8E9ABD-9FF5-4EFA-AA08-AA3792167412} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CB8E9ABD-9FF5-4EFA-AA08-AA3792167412} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Defrag\ScheduledDefrag => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CC636E49-0109-402B-A40B-A37C29069A95} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CC636E49-0109-402B-A40B-A37C29069A95} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\DeviceDirectoryClient\LocateCommandUserSession => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CFAF368C-FD41-43C0-A230-AE70D76F6883} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CFAF368C-FD41-43C0-A230-AE70D76F6883} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Sysmain\ResPriStaticDbSync => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D03D871B-D1F2-4901-92C8-FD836B1B18E1} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D03D871B-D1F2-4901-92C8-FD836B1B18E1} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Time Zone\SynchronizeTimeZone => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D138097D-E0B5-40BF-A553-EB86F7B526D1} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D138097D-E0B5-40BF-A553-EB86F7B526D1} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\ErrorDetails\EnableErrorDetailsUpdate => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D19A2726-897E-4F7D-9CE4-0773B449CE9E} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D19A2726-897E-4F7D-9CE4-0773B449CE9E} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceConnectedToNetwork => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{D226C671-4BCA-4B18-B914-5B4EBDB8737F} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D226C671-4BCA-4B18-B914-5B4EBDB8737F} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WindowsUpdate\Automatic App Update => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D394BE25-2E16-45D4-AAB2-3E8861A09351} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D394BE25-2E16-45D4-AAB2-3E8861A09351} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Shell\FamilySafetyMonitorToastTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D3C4106A-D511-42C6-9716-465644534C87} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D3C4106A-D511-42C6-9716-465644534C87} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\microsoft\windows\applicationdata\appuriverifierinstall => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D4913E3A-8B13-48C5-BC6F-AA9C8B2A4C14} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D4913E3A-8B13-48C5-BC6F-AA9C8B2A4C14} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\PI\Sqm-Tasks => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D49CF09E-9F5F-4AC4-8C19-B5B69D4B74BD} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D49CF09E-9F5F-4AC4-8C19-B5B69D4B74BD} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\OneDrive Standalone Update Task => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D4E1DB50-D91D-4A94-985F-3112FC46AAA4} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D4E1DB50-D91D-4A94-985F-3112FC46AAA4} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Device Setup\Metadata Refresh => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D71358A9-EB80-4710-88A7-D3B795B3BD6F} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D71358A9-EB80-4710-88A7-D3B795B3BD6F} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D7363947-96AE-4959-8D5B-F7DB49B01864} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D7363947-96AE-4959-8D5B-F7DB49B01864} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UPnP\UPnPHostConfig => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D772664D-71ED-4D1D-A792-6AF2F2872F79} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D772664D-71ED-4D1D-A792-6AF2F2872F79} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D941F53F-7907-4FBE-B1E7-69EBD5B3A5D8} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D941F53F-7907-4FBE-B1E7-69EBD5B3A5D8} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceLocationRightsChange => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D9E15922-62C3-49C7-BFE9-75984E77D671} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D9E15922-62C3-49C7-BFE9-75984E77D671} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Plug and Play\Device Install Reboot Required => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DAB886E6-0C52-4861-A3AB-25013B4EBE96} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DAB886E6-0C52-4861-A3AB-25013B4EBE96} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Maps\MapsUpdateTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DBC49B44-659C-4396-A983-648CECC0A813} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DBC49B44-659C-4396-A983-648CECC0A813} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\ApplicationData\DsSvcCleanup => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DD7DE760-6056-4A7D-8D5A-1BB224CB9308} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DD7DE760-6056-4A7D-8D5A-1BB224CB9308} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\PBDADiscoveryW1 => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DDAECFC0-67E3-4062-BF25-CD685F73B394} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DDAECFC0-67E3-4062-BF25-CD685F73B394} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\DeviceDirectoryClient\IntegrityCheck => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DEB23342-83C1-4F4E-94CE-70DF1456DD77} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DEB23342-83C1-4F4E-94CE-70DF1456DD77} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CreateChoiceProcessTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DEB4E9AC-5C50-4B77-AA52-4EA4F3B5EA0B} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DEB4E9AC-5C50-4B77-AA52-4EA4F3B5EA0B} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\PvrScheduleTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DFF1270B-3A54-4FB3-837E-0BF1D4A3D3F5} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DFF1270B-3A54-4FB3-837E-0BF1D4A3D3F5} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E127B81B-813C-4A05-8EB6-CE1DA21F7C5B} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E127B81B-813C-4A05-8EB6-CE1DA21F7C5B} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\DiskCleanup\SilentCleanup => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{E1F8C472-CAE5-4AB3-A0A8-A8AD81F7D3D3} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E1F8C472-CAE5-4AB3-A0A8-A8AD81F7D3D3} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E2E48C68-F634-4BAB-AF6D-53D911D0F340} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E2E48C68-F634-4BAB-AF6D-53D911D0F340} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Ras\MobilityManager => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E3A359D2-D969-4A0E-8A74-AD867B14488F} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E3A359D2-D969-4A0E-8A74-AD867B14488F} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Chkdsk\ProactiveScan => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E5C357C7-9935-49C6-B5D1-5EAB992C1C2C} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E5C357C7-9935-49C6-B5D1-5EAB992C1C2C} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\ActivateWindowsSearch => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E7B04252-97CA-42C6-9920-F58B76B2C3E1} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E7B04252-97CA-42C6-9920-F58B76B2C3E1} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePeriodic24 => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E8AC6D97-997A-418F-B69F-75818116C0F8} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E8AC6D97-997A-418F-B69F-75818116C0F8} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\MemoryDiagnostic\RunFullMemoryDiagnostic => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EA9BAA00-6604-4A27-8A73-AFA65F0EE1B3} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EA9BAA00-6604-4A27-8A73-AFA65F0EE1B3} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\SharedPC\Account Cleanup => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EAEF6590-778F-4E3D-89AD-056251EEA8EC} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EAEF6590-778F-4E3D-89AD-056251EEA8EC} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Registry\RegIdleBackup => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EB87C302-8830-44E2-93D8-A80193AE26A6} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EB87C302-8830-44E2-93D8-A80193AE26A6} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\PBDADiscovery => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EC96EFD9-76DA-41D2-89D2-27537E2E3981} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EC96EFD9-76DA-41D2-89D2-27537E2E3981} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\SettingSync\BackgroundUploadTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{ECEDC57D-8965-4EB1-BD6F-84791D928E23} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{ECEDC57D-8965-4EB1-BD6F-84791D928E23} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\microsoft\windows\applicationdata\appuriverifierdaily => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{ED8F4E46-5B28-455D-A269-F832DED6FA44} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{ED8F4E46-5B28-455D-A269-F832DED6FA44} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\SettingSync\BackupTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{EE74E7C4-CD5A-4890-9C38-2D97C9F3CAF1} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EE74E7C4-CD5A-4890-9C38-2D97C9F3CAF1} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\LanguageComponentsInstaller\Installation => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EEAC202F-1333-453F-801D-AE429C478091} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EEAC202F-1333-453F-801D-AE429C478091} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Shell\IndexerAutomaticMaintenance => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F16ED5B1-D2D9-4410-A00A-AF75326949F0} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F16ED5B1-D2D9-4410-A00A-AF75326949F0} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Maintenance\WinSAT => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F200B6AE-7AD3-4DF7-B3EB-F1356CA5D011} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F200B6AE-7AD3-4DF7-B3EB-F1356CA5D011} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\Reboot => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F29D7578-B451-4E71-9C6D-624D2A9ED061} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F29D7578-B451-4E71-9C6D-624D2A9ED061} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Shell\CreateObjectTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{F2FE4491-A594-4DA1-B8FA-507E796A1676} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F2FE4491-A594-4DA1-B8FA-507E796A1676} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\SideShow\SessionAgent => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{F40D7047-305C-44D2-8853-4B75B1B5BBF9} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F40D7047-305C-44D2-8853-4B75B1B5BBF9} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\RecordingRestart => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F4F787C0-C5A7-4844-892B-D1DE5A54F950} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F4F787C0-C5A7-4844-892B-D1DE5A54F950} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F90E0DAA-68F8-49D5-B285-9A648DDBFCF1} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F90E0DAA-68F8-49D5-B285-9A648DDBFCF1} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\rundetector => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FA30E48A-B8B9-4B5C-811C-DE4DF31F6CF6} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FA30E48A-B8B9-4B5C-811C-DE4DF31F6CF6} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FAEA0EDC-C25E-4820-866B-01CBC081F2C1} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FAEA0EDC-C25E-4820-866B-01CBC081F2C1} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\ehDRMInit => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{FD938768-E565-41CC-BC05-81D4671A32A1} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FD938768-E565-41CC-BC05-81D4671A32A1} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FF14B0E7-D4DE-409E-BB26-59FB59369A46} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FF14B0E7-D4DE-409E-BB26-59FB59369A46} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\NetTrace\GatherNetworkInfo => key removed successfully
C:\ProgramData\Temp => ":169FD0D9" ADS removed successfully.
C:\ProgramData\Temp => ":4D066AD2" ADS removed successfully.
C:\ProgramData\Temp => ":CDFF58FE" ADS removed successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ROC_roc_ssl_v12 => key removed successfully
C:\Users\Geoff Hunter\AppData\Local\Cctbplt => moved successfully
"C:\Program Files (x86)\AVG Secure Search" => not found.
C:\Program Files (x86)\dgen => moved successfully

=========== EmptyTemp: ==========

BITS transfer queue => 5817008 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 87946333 B
Java, Flash, Steam htmlcache => 517 B
Windows/system/drivers => 26629548 B
Edge => 1415040 B
Chrome => 2623372 B
Firefox => 51129641 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 113966 B
NetworkService => 5175006 B
Geoff Hunter => 2369499457 B
DefaultAppPool => 33058 B

RecycleBin => 156 B
EmptyTemp: => 2.4 GB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 03-03-2017 16:56:17)


Result of scheduled keys to remove after reboot:

HKLM\System\CurrentControlSet\Services\RapportKE64 => could not remove key. Access Denied.

==== End of Fixlog 16:56:25 ====

Link to post
Share on other sites

Hi again. I ran AdwCleaner and Cleaned as instructed. The laptop re-started, eventually, but no log file presented itself, so I have nothing to post from it.

I should say, that my laptop has had problems booting up, as I mentioned in my first post. I had to use Advanced Start Up Options, Startup Settings and choose Option 7: Disable driver signature enforcement to get laptop to boot up. However, the laptop was booting up first time (and noticeably quickly) before I posted to this forum. 

After running the FRST64 tool, the laptop required to go through Advanced Start Up ...Option 7 again. I did get the Log file though, so I was not concerned.

So, after running AdwCleaner, I was required to use Option 7 again, but no log file appeared. This is just for your info.: not sure it is relevant.

Will go onto JRT tool now.

Regards, Geoff.

Link to post
Share on other sites

Okay Rui, all done, except no log file from AdwCleaner - is this logfile stored anywhere?

 Attached JRT, Fixlog and MWB .txt files

The laptop had to go through Troubleshoot, Advanced Options, Startup Settings, option 7 again, to start up, when Restarted after MWB scan.

I Shut down, and then started up again: laptop boots straight up. But re-starting requires Option 7 again.

One problem is that the Windows 10 search option (magnifying glass on taskbar) does not take any keystroke input.

Also, I have an extra file added in the Users/Geoff Hunter folder: NTUSER.DAT (23 MB). I don't know what it is but was created 10 minutes ago.

I'm not 100% sure, but I seem to have less free space (by about 5 GB) than I did before when looking at "This PC" but I could be wrong.

My RAM usage has dropped by 6% (to 39%) from Task Manager Processes, so that's great.

Thanks for your help so far. I'm sure this has cleared a few things (Conduit etc.). Do I need to run Adwcleaner again, to get the log file?

JRTGeoffH.txt

FixlogGeoffH.txt

MWBGeoffH3rdMar.txt

Link to post
Share on other sites

Hi Geoff.


Do I need to run Adwcleaner again, to get the log file?


The AdwCleaner log is located in C:\AdwCleaner\AdwCleaner[C0].txt

Please post its content in your next reply.


Also, I have an extra file added in the Users/Geoff Hunter folder: NTUSER.DAT (23 MB). I don't know what it is but was created 10 minutes ago.


Do not try to delete that file. The Ntuser.dat file is a Windows Registry file. Each user's Ntuser.dat file contains the Registry settings for their individual account. I also have an equal file on my Windows 10. You are seeing that file because I give you instructions in my first post to show hidden files. The file has always been located there, however it was hidden. You don't need to worry about it.

You can hide the System files that are supposed to be hidden in order to prevent its deletion.
Double-click on the This PC icon located on the Desktop.
Click on the Ribbon’s View tab and click on the Options button.
Click the View tab and select "Do not show hidden files and folders" in the list.
Click the Apply button and OK.
Now you should be able to view the NTUSER.DAT file.


I'm not 100% sure, but I seem to have less free space (by about 5 GB) than I did before when looking at "This PC" but I could be wrong.


The fixlist script removed 2.4 GB of temporary data and the tools that you are using just take a little size on the disk.


Okay let's run an Online Scan with ESET to check for remnants of infection that could be left and then we can deal with the boot problem.

cvMlKv6.pngESET Online Scanner
Note : If you use Internet Explorer to get the ESET Online Scanner, you won't have to download, nor install the tool, as everything will be ran in a contextual (pop-up) window of Internet Explorer. However, for every other browsers, you will have to download and install ESET Online Scanner. In this set of instruction, I'll use Google Chrome to download it and run it (since a lot of people will do it), however, except for the download and installation procedure, the same instructions applies if you use Internet Explorer. Please note that two or three prompts will appear if you use Internet Explorer asking you to reload the page, authorize the application, execute it, etc. Accept all of them in order to run ESET Online Scanner.
  • Download and execute ESET Online Scanner (on this window, click on ESET Smart Installer to trigger the download). People accessing this URL via Internet Explorer will start the integration process of ESET Online Scanner in their browser;
  • Once the installation is done (it requires Admin Rights), check the following settings (two of them are under Advanced Settings, click on it to display them) :
    • Enable detection of potentially unwanted applications;
    • Scan archives;
    • Scan for potentially unsafe applications;
    • Optional : If you want to scan more drives, click on Change... and select the drives you want to include in the scan;
    Ii1p6C2.png
  • After you're done checking these options, click on Start and ESET Online Scanner will download it's virus signature database before starting the scan;
    pbl6QoP.png
  • Once done, the scan will start automatically. Detections will appear at the bottom of the window. ESET Online Scanner can have an extremely long scan time that can last between 2 or 3 hours. So if you start the scan, do not interrupt it, let it complete until the end;
    iYk249p.png
  • After the scan is finished, a summary window will appear to give you the information about the scan. Then you'll have to the option to see what threads were found and to manage the threats that were quarantined;
    SQWS5b1.png
  • Click on List of found threats, it'll display every threat identified during that scan, their type and what action was taken against them. Click on Copy to clipboard to copy these results on our clipboard and post them in your next reply;
    OkgGDKc.png
    Credits: Aura
  • Once you're done, click on the Back button;
  • Check both checkboxes at the bottom: Uninstall application on close and Delete quarantined files before clicking on the Finish button;

To summarize please post:
The content of AdwCleaner log.
The content of ESET log (if it produced one).

Link to post
Share on other sites

Hi. Here is the output from Adwcleaner, followed by ESET scan. See attached also.

I was not able to "delete the quarantined files" since the ESET results box had disappeared, asking instead to sign up to a free 30-day trial. The log file was retrieved via %userprofile%/Appdata/Local/Temp

# AdwCleaner v6.044 - Logfile created 03/03/2017 at 17:17:27
# Updated on 28/02/2017 by Malwarebytes
# Database : 2017-03-02.1 [Server]
# Operating System : Windows 10 Pro  (X64)
# Username : Geoff Hunter - GEOFFHUNTER-PC
# Running from : C:\Users\Geoff Hunter\Desktop\AdwCleaner.exe
# Mode: Clean
# Support : https://www.malwarebytes.com/support

 

***** [ Services ] *****

 

***** [ Folders ] *****

[-] Folder deleted: C:\Users\Geoff Hunter\AppData\Local\Conduit
[-] Folder deleted: C:\Users\Geoff Hunter\AppData\LocalLow\Conduit
[-] Folder deleted: C:\Users\Geoff Hunter\AppData\LocalLow\PriceGong
[-] Folder deleted: C:\Users\Geoff Hunter\AppData\Roaming\Yahoo!\Companion
[-] Folder deleted: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myfree codec
[-] Folder deleted: C:\Program Files (x86)\Conduit
[-] Folder deleted: C:\Program Files (x86)\myfree codec


***** [ Files ] *****

 

***** [ DLL ] *****

 

***** [ WMI ] *****

 

***** [ Shortcuts ] *****

 

***** [ Scheduled Tasks ] *****

 

***** [ Registry ] *****

[-] Key deleted: HKLM\SOFTWARE\Classes\Toolbar.CT2642808
[-] Key deleted: HKLM\SOFTWARE\Classes\protector_dll.Protector
[-] Key deleted: HKLM\SOFTWARE\Classes\protector_dll.Protector.1
[-] Key deleted: HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho
[-] Key deleted: HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho.1
[-] Key deleted: HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib
[-] Key deleted: HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib.1
[-] Key deleted: HKLM\SOFTWARE\Classes\YBrowserToolbar.YBrowserToolbar
[-] Key deleted: HKLM\SOFTWARE\Classes\YBrowserToolbar.YBrowserToolbar.1
[-] Key deleted: HKLM\SOFTWARE\Classes\YMERemote.YMECompPlugin
[-] Key deleted: HKLM\SOFTWARE\Classes\YMERemote.YMECompPlugin.1
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\protector_dll.Protector
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\protector_dll.Protector.1
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho.1
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib.1
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\YBrowserToolbar.YBrowserToolbar
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\YBrowserToolbar.YBrowserToolbar.1
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\YMERemote.YMECompPlugin
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\YMERemote.YMECompPlugin.1
[-] Key deleted: HKLM\SOFTWARE\Classes\AppID\{7D831388-D405-4272-9511-A07440AD2927}
[-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
[-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
[-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
[-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{5C3B5DAA-0AFF-4808-90FB-0F2F2D760E36}
[-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{F51C15D4-3D0A-4DBA-A095-EBCC09F24DA2}
[-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
[-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
[-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{8233093C-178B-484B-979E-3C6B5B147DBC}
[-] Key deleted: HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
[-] Key deleted: HKLM\SOFTWARE\Classes\TypeLib\{B722ED8B-0B38-408E-BB89-260C73BCF3D4}
[-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
[-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
[-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}
[-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
[-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
[-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}
[-] Key deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
[-] Key deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
[-] Key deleted: HKU\S-1-5-21-4078150615-2909914965-3786257567-1000\Software\BackgroundContainer
[-] Key deleted: HKU\S-1-5-21-4078150615-2909914965-3786257567-1000\Software\Myfree Codec
[-] Key deleted: HKU\S-1-5-21-4078150615-2909914965-3786257567-1000\Software\Yahoo\Companion
[-] Key deleted: HKU\S-1-5-21-4078150615-2909914965-3786257567-1000\Software\Yahoo\YFriendsBar
[-] Key deleted: HKU\S-1-5-21-4078150615-2909914965-3786257567-1000\Software\AppDataLow\Toolbar
[-] Key deleted: HKU\S-1-5-21-4078150615-2909914965-3786257567-1000\Software\AppDataLow\Software\ConduitSearchScopes
[-] Key deleted: HKU\S-1-5-21-4078150615-2909914965-3786257567-1000\Software\AppDataLow\Software\PriceGong
[-] Key deleted: HKU\S-1-5-21-4078150615-2909914965-3786257567-1000\Software\AppDataLow\Software\Yahoo\Companion
[-] Key deleted: HKU\S-1-5-21-4078150615-2909914965-3786257567-1000\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec
[#] Key deleted on reboot: HKCU\Software\BackgroundContainer
[#] Key deleted on reboot: HKCU\Software\Myfree Codec
[#] Key deleted on reboot: HKCU\Software\Yahoo\Companion
[#] Key deleted on reboot: HKCU\Software\Yahoo\YFriendsBar
[#] Key deleted on reboot: HKCU\Software\AppDataLow\Toolbar
[#] Key deleted on reboot: HKCU\Software\AppDataLow\Software\ConduitSearchScopes
[#] Key deleted on reboot: HKCU\Software\AppDataLow\Software\PriceGong
[#] Key deleted on reboot: HKCU\Software\AppDataLow\Software\Yahoo\Companion
[-] Key deleted: HKLM\SOFTWARE\Conduit
[-] Key deleted: HKLM\SOFTWARE\Myfree Codec
[-] Key deleted: HKLM\SOFTWARE\Yahoo\Companion
[#] Key deleted on reboot: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec
[-] Key deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{EE171732-BEB4-4576-887D-CB62727F01CA}
[-] Key deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{80107F16-CB2E-42AB-AB9D-6C11540D5A8B}
[#] Key deleted on reboot: [x64] HKCU\Software\BackgroundContainer
[#] Key deleted on reboot: [x64] HKCU\Software\Myfree Codec
[#] Key deleted on reboot: [x64] HKCU\Software\Yahoo\Companion
[#] Key deleted on reboot: [x64] HKCU\Software\Yahoo\YFriendsBar
[#] Key deleted on reboot: [x64] HKCU\Software\AppDataLow\Toolbar
[#] Key deleted on reboot: [x64] HKCU\Software\AppDataLow\Software\ConduitSearchScopes
[#] Key deleted on reboot: [x64] HKCU\Software\AppDataLow\Software\PriceGong
[#] Key deleted on reboot: [x64] HKCU\Software\AppDataLow\Software\Yahoo\Companion
[#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec
[-] Value deleted: HKU\S-1-5-21-4078150615-2909914965-3786257567-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run [BackgroundContainerV3]
[-] Key deleted: HKLM\SOFTWARE\Classes\AppID\YMERemote.DLL
[-] Key deleted: HKLM\SOFTWARE\Classes\Applications\Setup_WinThruster_2016.exe
[-] Key deleted: HKLM\SOFTWARE\Classes\Applications\WinThrusterSetup.exe


***** [ Web browsers ] *****

 

*************************

:: "Tracing" keys deleted
:: Winsock settings cleared

*************************

C:\AdwCleaner\AdwCleaner[C0].txt - [7614 Bytes] - [03/03/2017 17:17:27]
C:\AdwCleaner\AdwCleaner[S0].txt - [7320 Bytes] - [03/03/2017 17:14:41]

########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [7760 Bytes] ##########

 

Output from ESET scan:

23:24:01 # product=EOS
# version=8
# flags=0
# esetonlinescanner_enu.exe=2.0.15.0
# EOSSerial=0448a1cbadacad41b0a0aeeb2df99dde
# end=init
# utc_time=2017-03-03 23:24:00
# local_time=2017-03-03 23:24:00 (+0000, GMT Standard Time)
# country="United Kingdom"
# osver=6.2.9200 NT
23:25:58 Updating
23:25:58 Update Init
23:26:01 Update Download
23:27:32 esets_scanner_reload returned 0
23:27:32 g_uiModuleBuild: 32599
23:27:32 Update Finalize
23:27:32 Call m_esets_charon_send
23:27:32 Call m_esets_charon_destroy
23:27:32 Updated modules version: 32599
23:27:44 Call m_esets_charon_setup_create
23:27:44 Call m_esets_charon_create
23:27:44 m_esets_charon_create OK
23:27:44 Call m_esets_charon_start_send_thread
23:27:44 Call m_esets_charon_setup_set
23:27:44 m_esets_charon_setup_set OK
23:27:44 Scanner engine: 32599
06:26:29 # product=EOS
# version=8
# flags=0
# esetonlinescanner_enu.exe=2.0.15.0
# EOSSerial=0448a1cbadacad41b0a0aeeb2df99dde
# engine=32599
# end=finished
# remove_checked=true
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=true
# antistealth_checked=true
# sfx_checked=true
# utc_time=2017-03-04 06:26:29
# local_time=2017-03-04 06:26:29 (+0000, GMT Standard Time)
# country="United Kingdom"
# lang=1033
# osver=6.2.9200 NT
# compatibility_mode_1=''
# compatibility_mode=5893 16776573 100 94 324372 19939405 0 0
# scanned=2
# found=31
# cleaned=31
# scan_time=25135
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="Win32/Toolbar.Conduit.Y potentially unwanted application (cleaned by deleting)" ac=C fn="C:\AdwCleaner\quarantine\files\tkwyvkrczeyjkroevrxydczlliarljjp\BackgroundContainer\BackgroundContainer.dll"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="Win32/Toolbar.Conduit.Y potentially unwanted application (cleaned by deleting)" ac=C fn="C:\AdwCleaner\quarantine\files\tkwyvkrczeyjkroevrxydczlliarljjp\BackgroundContainer\TBUpdaterLogic_1.0.0.1.dll"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="Win32/Toolbar.Conduit.Y potentially unwanted application (cleaned by deleting)" ac=C fn="C:\AdwCleaner\quarantine\files\tkwyvkrczeyjkroevrxydczlliarljjp\BackgroundContainer\TBUpdaterLogic_1.0.0.2.dll"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="a variant of Win32/Conduit.SearchProtect.N potentially unwanted application (cleaned by deleting)" ac=C fn="C:\AdwCleaner\quarantine\files\tkwyvkrczeyjkroevrxydczlliarljjp\BackgroundContainer\TBUpdaterLogic_3.0.0.11.dll"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="a variant of Win32/Toolbar.Conduit.Y potentially unwanted application (cleaned by deleting)" ac=C fn="C:\AdwCleaner\quarantine\files\tkwyvkrczeyjkroevrxydczlliarljjp\BackgroundContainer\TBUpdaterLogic_4.0.0.1.dll"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="a variant of Win32/Toolbar.Conduit.Y potentially unwanted application (cleaned by deleting)" ac=C fn="C:\AdwCleaner\quarantine\files\tkwyvkrczeyjkroevrxydczlliarljjp\BackgroundContainer\TBUpdaterLogic_4.0.0.2.dll"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="a variant of Win32/Conduit.SearchProtect.N potentially unwanted application (cleaned by deleting)" ac=C fn="C:\AdwCleaner\quarantine\files\tkwyvkrczeyjkroevrxydczlliarljjp\BackgroundContainer\TBUpdaterLogic_5.0.0.1.dll"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="Win32/Toolbar.Conduit.Q potentially unwanted application (cleaned by deleting)" ac=C fn="C:\FRST\Quarantine\C\Program Files (x86)\dgen\dgenToolbarHelper.exe"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="a variant of Win32/Toolbar.Conduit.P potentially unwanted application (cleaned by deleting)" ac=C fn="C:\FRST\Quarantine\C\Program Files (x86)\dgen\ldrtbdgen.dll"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="Win32/Toolbar.Conduit.O potentially unwanted application (cleaned by deleting)" ac=C fn="C:\FRST\Quarantine\C\Program Files (x86)\dgen\prxtbdgen.dll"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="a variant of Win32/Toolbar.Conduit.P potentially unwanted application (cleaned by deleting)" ac=C fn="C:\FRST\Quarantine\C\Program Files (x86)\dgen\tbdgen.dll"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="a variant of Win32/Toolbar.Conduit.AR potentially unwanted application (cleaned by deleting)" ac=C fn="C:\FRST\Quarantine\C\Program Files (x86)\dgen\uninstall.exe"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="a variant of Win32/Toolbar.Conduit.Y potentially unwanted application (cleaned by deleting)" ac=C fn="C:\FRST\Quarantine\C\Users\Geoff Hunter\AppData\Local\Cctbplt\BackgroundContainer\TBUpdaterLogic_4.0.0.2.dll"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="a variant of Win32/Conduit.SearchProtect.N potentially unwanted application (cleaned by deleting)" ac=C fn="C:\FRST\Quarantine\C\Users\Geoff Hunter\AppData\Local\Cctbplt\BackgroundContainer\TBUpdaterLogic_5.0.0.1.dll"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="a variant of Win32/ClientConnect.A potentially unwanted application (cleaned by deleting)" ac=C fn="C:\FRST\Quarantine\C\Users\Geoff Hunter\AppData\Local\Temp\Runner.exe.xBAD"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="a variant of Win64/WebBar.B potentially unwanted application (cleaned by deleting)" ac=C fn="C:\ProgramData\Logishrd\LogiOptions\Software\6.20.43\dma_x64.dll"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="a variant of Win64/WebBar.B potentially unwanted application (cleaned by deleting)" ac=C fn="C:\ProgramData\Logishrd\LogiOptions\Software\6.30.80\dma_x64.dll"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="a variant of Win64/WebBar.B potentially unwanted application (cleaned by deleting)" ac=C fn="C:\ProgramData\Logishrd\LogiOptions\Software\Current\dma_x64.dll"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="Win64/Toolbar.Conduit.B potentially unwanted application (cleaned by deleting)" ac=C fn="C:\Users\Geoff Hunter\AppData\LocalLow\dgen\hk64tbdge0.dll"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="Win64/Toolbar.Conduit.B potentially unwanted application (cleaned by deleting)" ac=C fn="C:\Users\Geoff Hunter\AppData\LocalLow\dgen\hk64tbdge2.dll"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="Win32/Toolbar.Conduit.X potentially unwanted application (cleaned by deleting)" ac=C fn="C:\Users\Geoff Hunter\AppData\LocalLow\dgen\hktbdge0.dll"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="Win32/Toolbar.Conduit.X potentially unwanted application (cleaned by deleting)" ac=C fn="C:\Users\Geoff Hunter\AppData\LocalLow\dgen\hktbdge2.dll"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="a variant of Win32/Toolbar.Conduit.X potentially unwanted application (cleaned by deleting)" ac=C fn="C:\Users\Geoff Hunter\AppData\LocalLow\dgen\ldrtbdge0.dll"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="a variant of Win32/Toolbar.Conduit.X potentially unwanted application (cleaned by deleting)" ac=C fn="C:\Users\Geoff Hunter\AppData\LocalLow\dgen\ldrtbdge2.dll"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="a variant of Win32/Toolbar.Conduit.P potentially unwanted application (cleaned by deleting)" ac=C fn="C:\Users\Geoff Hunter\AppData\LocalLow\dgen\ldrtbdgen.dll"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="a variant of Win32/Toolbar.Conduit.X potentially unwanted application (cleaned by deleting)" ac=C fn="C:\Users\Geoff Hunter\AppData\LocalLow\dgen\tbdge0.dll"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="Win32/Toolbar.Conduit.Y potentially unwanted application (cleaned by deleting)" ac=C fn="C:\Users\Geoff Hunter\AppData\LocalLow\dgen\tbdge1.dll"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="a variant of Win32/Toolbar.Conduit.X potentially unwanted application (cleaned by deleting)" ac=C fn="C:\Users\Geoff Hunter\AppData\LocalLow\dgen\tbdge2.dll"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="a variant of Win32/Toolbar.Conduit.P potentially unwanted application (cleaned by deleting)" ac=C fn="C:\Users\Geoff Hunter\AppData\LocalLow\dgen\tbdgen.dll"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="a variant of Win32/PriceGong.A potentially unwanted application (cleaned by deleting)" ac=C fn="C:\Users\Geoff Hunter\AppData\LocalLow\dgen\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.6.12\bin\PriceGongIE.dll"
sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="a variant of Win32/WebBar.D potentially unwanted application,a variant of Win64/WebBar.B potentially unwanted application (cleaned by deleting)" ac=C fn="C:\Users\Geoff Hunter\Downloads\Logitech M235 mouse\Options_6.20.43.exe"
07:37:59 # product=EOS
# version=8
# flags=0
# esetonlinescanner_enu.exe=2.0.15.0
# EOSSerial=0448a1cbadacad41b0a0aeeb2df99dde
# end=init
# utc_time=2017-03-04 07:37:59
# local_time=2017-03-04 07:37:59 (+0000, GMT Standard Time)
# country="United Kingdom"
# osver=6.2.9200 NT

 

AdwCleaner[C0].txt

log.txt

Link to post
Share on other sites

Hi.

AdwCleaner and ESET found and removed several remnants of infection. Now I would like to see a new set of FRST logs to check if there are any malware entries remaining on your system.

Right-click on the FRST icon and select Run as administrator.
Click Yes to accept any security warnings that may appear.
The tool will open and will try to get online updates.
Make sure to checkmark the Addition.txt box and click on the Scan button.

Please post the two FRST logs (FRST.txt and Addition.txt) for my review and let me know how your computer is behaving. Still having the same problems after reboot?

Rui

Link to post
Share on other sites

Attached FRST and Addition.txt

Re-starting the laptop is still a problem: I have to go through Advanced options in Troubleshooting again.

Powering off then powering on again, boots straight up to Login screen again. 

I am hoping this will be cured by re-installing Windows 10, since a few things won't work in Windows 10, this past 2 weeks: error code 0x800b0100, Windows Defender wont launch (but is running and can scan via command line), can't access device manager, MS office not working etc.

I will be away for an hour from now.

 

 

FRST.txt

Addition.txt

Link to post
Share on other sites

Hi Geoff. Sorry for the delay.

Okay, I would like to have you perform the following procedures in the order listed.


iO3R662.pngFarbar Recovery Scan Tool (FRST) - Fix mode
Follow the instructions below to execute a fix on your system using FRST, and provide the log in your next reply.

  • Download the attached fixlist.txt file, and save it on your Desktop (or wherever your FRST.exe/FRST64.exe executable is located);
  • Right-click on the FRST executable and select Spcusrh.pngRun as Administrator (for Windows Vista, 7, 8, 8.1 and 10 users);
  • Click on the Fix button;
    NYA5Cbr.png
    Credits: Aura
  • On completion, a message will come up saying that the fix has been completed and it'll open a log in Notepad;
  • Copy and paste its content in your next reply;

 

Now I would like to have you run the Windows Check Disk and System File Checker utilities for me as I need to see its logs, AFTER you reboot your computer, upon completion of the FRST "fix".

EndqYRa.pngCheck Disk (chkdsk)
Follow the instructions below to run a CHKDSK scan on your Windows partition;

  • On Windows 10, right click on the Windows logo in the bottom-left corner and select Command Prompt (Admin);
  • Enter the command chkdsk /f (there's a space between "chkdsk" and "/f") and press on Enter;
  • A message will be returned, stating that the drive cannot be locked because it's already in use, and you'll be asked if you want to schedule the scan for the next restart. Enter y and press on Enter;
  • Restart your computer, and the chkdsk scan will be launched automatically;
  • Once the chkdsk scan is complete and you're back in Windows, find the log in the Event Viewer and copy/paste it in your next reply;


WARNING: Depending on your hard drive (specs, free space, fragmentation, etc.) this scan can be relatively long to complete. Give it all the time it needs to finish. Do not interrupt it for any reason there is, or you might be damaging your drive in the process and make your Windows unbootable. It's suggested to let this scan run overnight or when you leave the house for a few hours (when you go to work for example). If you are running this scan on a laptop, don't forget to leave it plugged in;


Next,

EndqYRa.pngSystem File Checker (SFC)
Follow the instructions below to run a SFC scan on your system and to provide the CBS log in your next reply;

  • On Windows 10, right click on the Windows logo in the bottom-left corner and select Command Prompt (Admin);
  • Enter the command below and press on Enter;
     
    sfc /scannow

    Note: There's a space between "sfc" and "/scannow";
  • Once the scan is complete, enter the command below and press on Enter
    copy %windir%\logs\cbs\cbs.log "%userprofile%\Desktop\cbs.txt"
  • A file called cbs.txt will have appeared on your Desktop. Upload that file on your next reply;


Note: Please note that the CBS.log is volatile, which means that if you don't upload it after the SFC scan is completed, it won't have the information from the scan anymore. So archive it and upload it as soon as you can.


Please upload the following files in your next reply for my review:
The fixlog.txt.
The chkdsk log.
The cbs.txt file.

fixlist.txt

Edited by Android8888
Attach fixlist.txt
Link to post
Share on other sites

Hi. Before you go. I have trouble running Chkdsk /f because "...the volume is in use by another process...Would you like to schedule this volume to be checked the next time the system restarts?"

What do I do?

Link to post
Share on other sites

4 minutes ago, Uni said:

Would you like to schedule this volume to be checked the next time the system restarts?"

Select Yes and reboot the computer. The chkdsk command will run before Windows starts.

Link to post
Share on other sites

2 minutes ago, Uni said:

okay. Where is chkdsk log stored?

You should run the Event Viewer command to find chkdsk results. Instructions on how to find it here

I already attached the fixlist.txt on my previous post.

Here it is the fixlist again.

fixlist.txt

Link to post
Share on other sites

Hi Geoff. I'm back.

Your PC appears to be free of malware. However I see in your logs that your Operating System has corrupted files that need to be repaired because they appear to be the cause of some of the problems you are experiencing. The sfc /scannow command could not repair them all.

 

Please try running the DISM (Deployment Image Servicing and Management tool) to find and fix Component Store Corruption. DISM and has the ability to restore your system’s health back to normal, meaning it can solve some problems on your system.

To start DISM to attempt to fix your problems you first have to start an Elevated Command Prompt:

Press the Windows + X at the same time then choose Command Prompt (Admin).
Type the following command dism.exe  /online /Cleanup-Image /RestoreHealth and hit Enter. Note: Be aware that there is a space before each one of the the three slash marks (/).
DISM will now start scanning and trying to fix any problems it finds within the image, it’s normal to get stuck at 20% just wait patiently.

After a while (could take a couple of minutes to hours) there will be a message saying that the corruption has been fixed. Please let me know if any other message shows up.


Next,

Re-run sfc /scannow again.

Press the Windows + X at the same time then choose Command Prompt (Admin).
Enter the command below and press on Enter;

sfc /scannow


Note: There's a space between "sfc" and "/scannow";
Once the scan is complete, enter the command below and press on Enter

copy %windir%\logs\cbs\cbs.log "%userprofile%\Desktop\cbs.txt"


A file called cbs.txt will have appeared on your Desktop. Please attach the file in your next reply for my review.


Please attach the cbs.txt file, tell me what message came up after running the DISM tool and let me know how is the computer behaving.

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.