cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Fix result of Farbar Recovery Scan Tool (x64) Version: 31-03-2021
Ran by benoi (04-04-2021 12:35:04) Run:1
Running from D:\Bureau
Loaded Profiles: benoi
Boot Mode: Normal
==============================================

fixlist content:
*****************
CreateRestorePoint:
CloseProcesses:
Hosts:
EmptyTemp:
RemoveProxy:
HKLM-x32\...\Run: [] => [X]
GroupPolicy: Restriction ? <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\89.0.4389.114\Installer\chrmstp.exe [2021-03-31] (Google LLC -> Google LLC)
HKU\S-1-5-21-2862999081-2136887877-1863393634-1001\...\MountPoints2: {e551e9de-03db-11eb-8445-2c4d54d3435e} - "G:\HiSuiteDownLoader.exe"
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [705728 2020-11-20] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
HKLM\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
Task: {47F47F76-1E79-410F-9439-9BC46DB09FEA} - System32\Tasks\Avira_Antivirus_Systray => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [2651216 2021-03-19] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
Task: {C363A258-01BB-427F-9B44-9EDCEA40B9A2} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-05-26] (Google LLC -> Google LLC)
Task: {E4659C6A-C5B6-4823-954C-04719F7E79A2} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-05-26] (Google LLC -> Google LLC)
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
2021-03-23 08:56 - 2021-03-27 20:33 - 000002702 _____ () C:\Users\benoi\AppData\Local\krita-sysinfo.log
2020-06-26 23:57 - 2020-06-26 23:57 - 000000000 _____ () C:\Users\benoi\AppData\Local\oobelibMkey.log
CustomCLSID: HKU\S-1-5-21-2862999081-2136887877-1863393634-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\benoi\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20244.4\x64\Microsoft.Teams.AddinLoader.dll => No File
FirewallRules: [UDP Query User{A8977690-2F96-4FDC-9134-FADE82516520}C:\program files (x86)\common files\oracle\java\javapath_target_419625\java.exe] => (Allow) C:\program files (x86)\common files\oracle\java\javapath_target_419625\java.exe => No File
FirewallRules: [TCP Query User{70C388B2-D060-4A9F-944C-83F849D1719C}C:\program files (x86)\common files\oracle\java\javapath_target_419625\java.exe] => (Allow) C:\program files (x86)\common files\oracle\java\javapath_target_419625\java.exe => No File
FirewallRules: [UDP Query User{5E902380-69B7-480D-B1F5-6A9EAC642C06}D:\programmes\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\programmes\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe => No File
FirewallRules: [TCP Query User{83A1D86D-DC11-4786-AFBF-A3C69A876A20}D:\programmes\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\programmes\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe => No File
FirewallRules: [{06741DFC-E749-4AB0-9498-3EEC033A880C}] => (Allow) C:\Users\benoi\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [{EB34EA0B-6BC3-44A6-9E96-1432AEFF18C2}] => (Allow) C:\Users\benoi\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [{A952A834-C52C-42D9-8919-23F764DFDBDA}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe => No File
FirewallRules: [{AF2FD899-C626-4CC3-A338-9FB9097B4F5E}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe => No File
FirewallRules: [{EFC0FAD5-33D1-4AB3-8EF7-C6997FAC7625}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe => No File
FirewallRules: [{763EA4E9-94E6-4A13-8097-622097CF5770}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe => No File
FirewallRules: [UDP Query User{3D421D67-7DE4-407C-A30A-9AD64D95EB0D}C:\program files (x86)\common files\oracle\java\javapath_target_419625\java.exe] => (Allow) C:\program files (x86)\common files\oracle\java\javapath_target_419625\java.exe => No File
FirewallRules: [TCP Query User{871103AF-F1A6-41EE-ACAA-2667E420AA62}C:\program files (x86)\common files\oracle\java\javapath_target_419625\java.exe] => (Allow) C:\program files (x86)\common files\oracle\java\javapath_target_419625\java.exe => No File
FirewallRules: [UDP Query User{348D1405-632F-49B6-8E75-2A6EEBF67359}C:\program files\java\jre1.8.0_271\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_271\bin\javaw.exe => No File
FirewallRules: [TCP Query User{48AA0BCB-4C2D-46F2-9D83-BE99BAB428B4}C:\program files\java\jre1.8.0_271\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_271\bin\javaw.exe => No File
FirewallRules: [{A46CC2E8-BBFE-4756-9795-07D7B457155E}] => (Allow) D:\Programmes\Steam\steamapps\common\Albion Online\launcher\AlbionLauncher.exe => No File
FirewallRules: [{A8A94540-2DC0-4203-A38C-22FE5F6B26AF}] => (Allow) D:\Programmes\Steam\steamapps\common\Albion Online\launcher\AlbionLauncher.exe => No File
FirewallRules: [UDP Query User{0E7FE5B5-89E2-4287-8586-54BE4A78E608}D:\programmes\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\programmes\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe => No File
FirewallRules: [TCP Query User{55920A58-BDB2-4F53-AC94-CCEFDBDE3D4B}D:\programmes\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\programmes\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe => No File
FirewallRules: [UDP Query User{D4A07AC2-1B26-4DB3-9FD6-A29D0006178C}D:\bureau\factorio.v1.0\factorio.v1.0\factorio\bin\x64\factorio.exe] => (Allow) D:\bureau\factorio.v1.0\factorio.v1.0\factorio\bin\x64\factorio.exe => No File
FirewallRules: [TCP Query User{83AFDBC5-865E-47F4-8FF4-72D3D418EBFF}D:\bureau\factorio.v1.0\factorio.v1.0\factorio\bin\x64\factorio.exe] => (Allow) D:\bureau\factorio.v1.0\factorio.v1.0\factorio\bin\x64\factorio.exe => No File
FirewallRules: [UDP Query User{5BD694B0-05B7-4E97-AAD0-B2C7E5AA8DE4}C:\users\benoi\.vscode\extensions\ms-vsliveshare.vsliveshare-1.0.2427\dotnet_modules\vsls-agent.exe] => (Block) C:\users\benoi\.vscode\extensions\ms-vsliveshare.vsliveshare-1.0.2427\dotnet_modules\vsls-agent.exe => No File
FirewallRules: [TCP Query User{87EE7C99-230D-455C-BB63-E686B2957A6F}C:\users\benoi\.vscode\extensions\ms-vsliveshare.vsliveshare-1.0.2427\dotnet_modules\vsls-agent.exe] => (Block) C:\users\benoi\.vscode\extensions\ms-vsliveshare.vsliveshare-1.0.2427\dotnet_modules\vsls-agent.exe => No File
FirewallRules: [UDP Query User{2500200D-C470-40E9-9CD0-890108A8B61C}C:\users\benoi\.vscode\extensions\ms-vsliveshare.vsliveshare-1.0.2302\dotnet_modules\vsls-agent.exe] => (Allow) C:\users\benoi\.vscode\extensions\ms-vsliveshare.vsliveshare-1.0.2302\dotnet_modules\vsls-agent.exe => No File
FirewallRules: [TCP Query User{F6482D2E-0F22-4B7A-9340-8920577D0445}C:\users\benoi\.vscode\extensions\ms-vsliveshare.vsliveshare-1.0.2302\dotnet_modules\vsls-agent.exe] => (Allow) C:\users\benoi\.vscode\extensions\ms-vsliveshare.vsliveshare-1.0.2302\dotnet_modules\vsls-agent.exe => No File
FirewallRules: [UDP Query User{E018C40B-48C5-48C7-AD74-715F15A15E57}C:\program files\java\jre1.8.0_251\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_251\bin\javaw.exe => No File
FirewallRules: [TCP Query User{9EAD76BF-FE51-4D14-9A75-69D51EC9FC47}C:\program files\java\jre1.8.0_251\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_251\bin\javaw.exe => No File
FirewallRules: [UDP Query User{41C83763-192E-4007-ACA0-D85D5414FA5F}E:\minecraft\runtime\jre-x64\bin\javaw.exe] => (Allow) E:\minecraft\runtime\jre-x64\bin\javaw.exe => No File
FirewallRules: [TCP Query User{38F8BC7E-B8F9-4C9A-899D-C5751454D804}E:\minecraft\runtime\jre-x64\bin\javaw.exe] => (Allow) E:\minecraft\runtime\jre-x64\bin\javaw.exe => No File
FirewallRules: [UDP Query User{28E5FC70-382C-412C-8A8F-748B6C11D4A0}D:\games\sidmeierscivilizationvi\base\binaries\win64eos\civilizationvi.exe] => (Allow) D:\games\sidmeierscivilizationvi\base\binaries\win64eos\civilizationvi.exe => No File
FirewallRules: [TCP Query User{7E3AAC01-74B7-454F-A67D-E50194B14752}D:\games\sidmeierscivilizationvi\base\binaries\win64eos\civilizationvi.exe] => (Allow) D:\games\sidmeierscivilizationvi\base\binaries\win64eos\civilizationvi.exe => No File
FirewallRules: [{FBB3FE0B-50B2-46DE-B3BD-69FBF5C83175}] => (Allow) D:\Programmes\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File
FirewallRules: [{392B001E-BCEE-47DB-99B7-E60EDFF9808A}] => (Allow) D:\Programmes\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File
FirewallRules: [UDP Query User{5430EE47-E543-45B2-B627-F69919583970}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe => No File
FirewallRules: [TCP Query User{5A493785-1038-4109-9413-7FEE2248DDB9}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe => No File
FirewallRules: [{D25E955C-98EF-4D5D-A9CF-6910FCA8493E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe => No File
FirewallRules: [{A144797F-C7A4-4CEA-A971-084EC4A0B2C6}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe => No File
FirewallRules: [TCP Query User{D9F304A4-0608-49FF-A738-5867DDAF7EAA}C:\program files (x86)\common files\oracle\java\javapath_target_346335171\java.exe] => (Allow) C:\program files (x86)\common files\oracle\java\javapath_target_346335171\java.exe => No File
FirewallRules: [UDP Query User{E7FA58E3-D8D4-4B59-AF4F-7DD8E31216A1}C:\program files (x86)\common files\oracle\java\javapath_target_346335171\java.exe] => (Allow) C:\program files (x86)\common files\oracle\java\javapath_target_346335171\java.exe => No File
FirewallRules: [TCP Query User{2CC3A00F-7856-4768-BE85-FF2C2E1679EA}C:\program files (x86)\dearmob\5kplayer\5kplayer.exe] => (Block) C:\program files (x86)\dearmob\5kplayer\5kplayer.exe => No File
FirewallRules: [UDP Query User{676F2A24-3DB1-44C9-9CFD-DA10E4F7BCE4}C:\program files (x86)\dearmob\5kplayer\5kplayer.exe] => (Block) C:\program files (x86)\dearmob\5kplayer\5kplayer.exe => No File
AV: Avira Antivirus (Enabled - Up to date) {88AE6B46-DC3C-455A-A21B-085F285A3546}
AV: Kaspersky Anti-Virus (Enabled - Up to date) {4F76F112-43EB-40E8-11D8-F7BD1853EA23}
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
UE4 Prerequisites (x64) (HKLM\...\{D7B591D8-1091-4A00-A0B3-5301C45E5D51}) (Version: 1.0.14.0 - Epic Games, Inc.) Hidden
UE4 Prerequisites (x64) (HKLM-x32\...\{0d995f46-317b-4b5f-bf3e-9f98bae9d339}) (Version: 1.0.14.0 - Epic Games, Inc.) Hidden
StartRegedit:
Windows Registry Editor Version 5.00
[-HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains]
@=""
[-HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains]
[-HKEY_USERS\Software\Microsoft\Windows\CurrentVersion\Internet Settings\P3P]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains]
@=""
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\P3P]
EndRegedit:
C:\Users\benoi\Documents\SOLIDWORKS Downloads\SOLIDWORKS 2019 SP02\Lisez-moi.lnk
C:\Users\benoi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Tor Browser.lnk
DeleteValue: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Wondershare Helper Compact.exe
DeleteValue: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|WSVCUUpdateHelper.exe
DeleteValue: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|electron.app.Guilded
DeleteValue: HKU\S-1-5-21-2862999081-2136887877-1863393634-1001\\Software\Microsoft\Windows\CurrentVersion\Run|electron.app.Guilded]
C:\Users\benoi\AppData\Local\Google\Chrome\User Data\Default\File System\000
DeleteKey: HKLM\SOFTWARE\Setup
unlock: C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe
DeleteKey: HKLM\SYSTEM\CurrentControlSet\Services\AntiVirMailService)
C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe
unlock: C:\Program Files (x86)\Avira\Antivirus\ProtectedService.exe
DeleteKey: HKLM\SYSTEM\CurrentControlSet\Services\AntivirProtectedService)
C:\Program Files (x86)\Avira\Antivirus\ProtectedService.exe
unlock: C:\Program Files (x86)\Avira\Antivirus\sched.exe
DeleteKey: HKLM\SYSTEM\CurrentControlSet\Services\AntiVirSchedulerService)
C:\Program Files (x86)\Avira\Antivirus\sched.exe
unlock: C:\Program Files (x86)\Avira\Antivirus\avguard.exe
DeleteKey: HKLM\SYSTEM\CurrentControlSet\Services\AntiVirService)
C:\Program Files (x86)\Avira\Antivirus\avguard.exe
unlock: C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe
DeleteKey: HKLM\SYSTEM\CurrentControlSet\Services\AntiVirWebService)
C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe
unlock: C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
DeleteKey: HKLM\SYSTEM\CurrentControlSet\Services\Avira.ServiceHost)
C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
unlock: C:\WINDOWS\System32\DRIVERS\avdevprot.sys
DeleteKey: HKLM\SYSTEM\CurrentControlSet\Services\avdevprot)
C:\WINDOWS\System32\DRIVERS\avdevprot.sys
unlock: C:\WINDOWS\System32\drivers\avelam.sys
DeleteKey: HKLM\SYSTEM\CurrentControlSet\Services\avelam)
C:\WINDOWS\System32\drivers\avelam.sys
unlock: C:\WINDOWS\System32\DRIVERS\avgntflt.sys
DeleteKey: HKLM\SYSTEM\CurrentControlSet\Services\avgntflt)
C:\WINDOWS\System32\DRIVERS\avgntflt.sys
unlock: C:\WINDOWS\System32\DRIVERS\avipbb.sys
DeleteKey: HKLM\SYSTEM\CurrentControlSet\Services\avipbb)
C:\WINDOWS\System32\DRIVERS\avipbb.sys
unlock: C:\WINDOWS\System32\DRIVERS\avkmgr.sys
DeleteKey: HKLM\SYSTEM\CurrentControlSet\Services\avkmgr)
C:\WINDOWS\System32\DRIVERS\avkmgr.sys
unlock: C:\WINDOWS\System32\DRIVERS\avnetflt.sys
DeleteKey: HKLM\SYSTEM\CurrentControlSet\Services\avnetflt)
C:\WINDOWS\System32\DRIVERS\avnetflt.sys
unlock: C:\WINDOWS\System32\Drivers\avusbflt.sys
DeleteKey: HKLM\SYSTEM\CurrentControlSet\Services\avusbflt)
C:\WINDOWS\System32\Drivers\avusbflt.sys
DeleteKey: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{47F47F76-1E79-410F-9439-9BC46DB09FEA[
DeleteKey: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{47F47F76-1E79-410F-9439-9BC46DB09FEA[
DeleteKey: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{47F47F76-1E79-410F-9439-9BC46DB09FEA[
DeleteKey: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Maintenance\{47F47F76-1E79-410F-9439-9BC46DB09FEA[
DeleteKey: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{47F47F76-1E79-410F-9439-9BC46DB09FEA[
DeleteKey: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{47F47F76-1E79-410F-9439-9BC46DB09FEA[
C:\Windows\System32\Tasks\Avira_Antivirus_Systray]
C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [
C:\WINDOWS\System32\Tasks\Avira_Antivirus_Systray
C:\Program Files (x86)\Avira\Antivirus\avshadow.exe
C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
C:\Users\Public\Desktop\Avira.lnk
DeleteValue: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32|Avira SystrayStartTrigger
DeleteKey: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{161e6084-b0f5-43e8-86d8-09eda5c0893d}
DeleteKey: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{426D1710-5DFD-45E9-B11D-464792C5AD35} [Unsigned]
DeleteKey: HKLM\SOFTWARE\WOW6432Node\Avira
DeleteKey: HKLM\SOFTWARE\WOW6432Node\X-AVCSD
DeleteKey: HKCU\SOFTWARE\Avira
DeleteKey: HKU\.DEFAULT\SOFTWARE\Avira
DeleteKey: HKU\S-1-5-21-2862999081-2136887877-1863393634-1001\SOFTWARE\Avira
C:\Program Files (x86)\Avira
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
C:\ProgramData\Avira
DeleteKey: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\Shell Extension for Malware scanning
DeleteKey: HKLM\Software\Classes\CLSID\{45AC2688-0253-4ED8-97DE-B5370FA7D48A}
C:\Program Files (x86)\Avira\Antivirus\shlext64.dll
DeleteKey: HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\Shell Extension for Malware scanning
DeleteKey: HKLM\Software\Classes\CLSID\{45AC2688-0253-4ED8-97DE-B5370FA7D48A}
DeleteKey: HKLM\Software\Classes\Installer\Products\0171D624DFD59E541BD16474295CDA53
DeleteKey: HKLM\Software\Classes\Installer\Features\0171D624DFD59E541BD16474295CDA53
DeleteKey: HKCU\Software\Microsoft\Installer\Products\0171D624DFD59E541BD16474295CDA53
DeleteKey: HKCU\Software\Microsoft\Installer\Features\0171D624DFD59E541BD16474295CDA53
C:\WINDOWS\Installer\1206b.msi [
DeleteKey: HKLM\SOFTWARE\Nahimic
DeleteValue: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|Wondershare Helper Compact.exe
DeleteValue: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32|Wondershare Helper Compact.exe
DeleteKey: HKLM\SOFTWARE\Wondershare
DeleteKey: HKLM\SOFTWARE\WOW6432Node\Wondershare
DeleteKey: HKCU\SOFTWARE\Wondershare
DeleteKey: HKU\S-1-5-21-2862999081-2136887877-1863393634-1001\SOFTWARE\Wondershare
C:\Program Files\Wondershare
C:\Program Files (x86)\WondershareUpdate
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
C:\ProgramData\Wondershare
C:\Users\benoi\AppData\Roaming\Wondershare
C:\Users\benoi\AppData\Local\Wondershare
DeleteValue: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Discord
C:\ProgramData\SquirrelMachineInstalls\Discord.exe
C:\Users\benoi]\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Discord.lnk
DeleteValue: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|Discord
DeleteValue: HKEY_USERS\S-1-5-21-2862999081-2136887877-1863393634-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|Discord
DeleteValue: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32|Discord
DeleteKey: HKCU\SOFTWARE\Discord
DeleteKey: HKU\S-1-5-21-2862999081-2136887877-1863393634-1001\SOFTWARE\Discord
C:\Users\benoi\AppData\Roaming\discord
C:\Users\benoi\AppData\Local\Discord
C:\Users\benoi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
Reboot:
C:\Windows\Temp\ *.*
C:\Users\benoi\Appdata\Local\Temp\ *.*
C:\Windows\SoftwareDistribution\Download\ *
cmd: ipconfig /flushdns
cmd: netsh winsock reset
Cmd: netsh advfirewall reset
Cmd: Netsh advfirewall set allprofiles state on

*****************

Restore point was successfully created.
Processes closed successfully.
Could not move "C:\Windows\System32\Drivers\etc\hosts" => Scheduled to move on reboot.

========= RemoveProxy: =========

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer => removed successfully
"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => removed successfully
"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => removed successfully
"HKU\S-1-5-21-2862999081-2136887877-1863393634-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => removed successfully
"HKU\S-1-5-21-2862999081-2136887877-1863393634-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => removed successfully


========= End of RemoveProxy: =========

"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\" => removed successfully
C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer => not found
HKLM\Software\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96} => removed successfully
HKU\S-1-5-21-2862999081-2136887877-1863393634-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e551e9de-03db-11eb-8445-2c4d54d3435e} => removed successfully
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Wondershare Helper Compact.exe" => removed successfully
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Avira SystrayStartTrigger" => removed successfully
"HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Wondershare Helper Compact.exe" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{47F47F76-1E79-410F-9439-9BC46DB09FEA}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{47F47F76-1E79-410F-9439-9BC46DB09FEA}" => removed successfully
C:\WINDOWS\System32\Tasks\Avira_Antivirus_Systray => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Avira_Antivirus_Systray" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C363A258-01BB-427F-9B44-9EDCEA40B9A2}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C363A258-01BB-427F-9B44-9EDCEA40B9A2}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{E4659C6A-C5B6-4823-954C-04719F7E79A2}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E4659C6A-C5B6-4823-954C-04719F7E79A2}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\efaidnbmnnnibpcajpcglclefindmkaj => removed successfully
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\ihcjicgdanjaechkgeegckofjjedodee => removed successfully
C:\Users\benoi\AppData\Local\krita-sysinfo.log => moved successfully
C:\Users\benoi\AppData\Local\oobelibMkey.log => moved successfully
HKU\S-1-5-21-2862999081-2136887877-1863393634-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92} => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{A8977690-2F96-4FDC-9134-FADE82516520}C:\program files (x86)\common files\oracle\java\javapath_target_419625\java.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{70C388B2-D060-4A9F-944C-83F849D1719C}C:\program files (x86)\common files\oracle\java\javapath_target_419625\java.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{5E902380-69B7-480D-B1F5-6A9EAC642C06}D:\programmes\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{83A1D86D-DC11-4786-AFBF-A3C69A876A20}D:\programmes\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{06741DFC-E749-4AB0-9498-3EEC033A880C}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{EB34EA0B-6BC3-44A6-9E96-1432AEFF18C2}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A952A834-C52C-42D9-8919-23F764DFDBDA}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{AF2FD899-C626-4CC3-A338-9FB9097B4F5E}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{EFC0FAD5-33D1-4AB3-8EF7-C6997FAC7625}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{763EA4E9-94E6-4A13-8097-622097CF5770}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{3D421D67-7DE4-407C-A30A-9AD64D95EB0D}C:\program files (x86)\common files\oracle\java\javapath_target_419625\java.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{871103AF-F1A6-41EE-ACAA-2667E420AA62}C:\program files (x86)\common files\oracle\java\javapath_target_419625\java.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{348D1405-632F-49B6-8E75-2A6EEBF67359}C:\program files\java\jre1.8.0_271\bin\javaw.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{48AA0BCB-4C2D-46F2-9D83-BE99BAB428B4}C:\program files\java\jre1.8.0_271\bin\javaw.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A46CC2E8-BBFE-4756-9795-07D7B457155E}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A8A94540-2DC0-4203-A38C-22FE5F6B26AF}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{0E7FE5B5-89E2-4287-8586-54BE4A78E608}D:\programmes\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{55920A58-BDB2-4F53-AC94-CCEFDBDE3D4B}D:\programmes\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{D4A07AC2-1B26-4DB3-9FD6-A29D0006178C}D:\bureau\factorio.v1.0\factorio.v1.0\factorio\bin\x64\factorio.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{83AFDBC5-865E-47F4-8FF4-72D3D418EBFF}D:\bureau\factorio.v1.0\factorio.v1.0\factorio\bin\x64\factorio.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{5BD694B0-05B7-4E97-AAD0-B2C7E5AA8DE4}C:\users\benoi\.vscode\extensions\ms-vsliveshare.vsliveshare-1.0.2427\dotnet_modules\vsls-agent.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{87EE7C99-230D-455C-BB63-E686B2957A6F}C:\users\benoi\.vscode\extensions\ms-vsliveshare.vsliveshare-1.0.2427\dotnet_modules\vsls-agent.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{2500200D-C470-40E9-9CD0-890108A8B61C}C:\users\benoi\.vscode\extensions\ms-vsliveshare.vsliveshare-1.0.2302\dotnet_modules\vsls-agent.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{F6482D2E-0F22-4B7A-9340-8920577D0445}C:\users\benoi\.vscode\extensions\ms-vsliveshare.vsliveshare-1.0.2302\dotnet_modules\vsls-agent.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{E018C40B-48C5-48C7-AD74-715F15A15E57}C:\program files\java\jre1.8.0_251\bin\javaw.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{9EAD76BF-FE51-4D14-9A75-69D51EC9FC47}C:\program files\java\jre1.8.0_251\bin\javaw.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{41C83763-192E-4007-ACA0-D85D5414FA5F}E:\minecraft\runtime\jre-x64\bin\javaw.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{38F8BC7E-B8F9-4C9A-899D-C5751454D804}E:\minecraft\runtime\jre-x64\bin\javaw.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{28E5FC70-382C-412C-8A8F-748B6C11D4A0}D:\games\sidmeierscivilizationvi\base\binaries\win64eos\civilizationvi.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{7E3AAC01-74B7-454F-A67D-E50194B14752}D:\games\sidmeierscivilizationvi\base\binaries\win64eos\civilizationvi.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{FBB3FE0B-50B2-46DE-B3BD-69FBF5C83175}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{392B001E-BCEE-47DB-99B7-E60EDFF9808A}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{5430EE47-E543-45B2-B627-F69919583970}C:\program files\logitech gaming software\lcore.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{5A493785-1038-4109-9413-7FEE2248DDB9}C:\program files\logitech gaming software\lcore.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D25E955C-98EF-4D5D-A9CF-6910FCA8493E}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A144797F-C7A4-4CEA-A971-084EC4A0B2C6}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{D9F304A4-0608-49FF-A738-5867DDAF7EAA}C:\program files (x86)\common files\oracle\java\javapath_target_346335171\java.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{E7FA58E3-D8D4-4B59-AF4F-7DD8E31216A1}C:\program files (x86)\common files\oracle\java\javapath_target_346335171\java.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{2CC3A00F-7856-4768-BE85-FF2C2E1679EA}C:\program files (x86)\dearmob\5kplayer\5kplayer.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{676F2A24-3DB1-44C9-9CFD-DA10E4F7BCE4}C:\program files (x86)\dearmob\5kplayer\5kplayer.exe" => removed successfully
"AV: Avira Antivirus (Enabled - Up to date) {88AE6B46-DC3C-455A-A21B-085F285A3546}" => removed successfully
"AV: Kaspersky Anti-Virus (Enabled - Up to date) {4F76F112-43EB-40E8-11D8-F7BD1853EA23}" => removed successfully
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{43a03b9c-4770-409c-a999-587b60700b63}\\SystemComponent" => removed successfully
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}\\SystemComponent" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{D7B591D8-1091-4A00-A0B3-5301C45E5D51}\\SystemComponent" => removed successfully
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{0d995f46-317b-4b5f-bf3e-9f98bae9d339}\\SystemComponent" => removed successfully
Registry ====> The operation completed successfully.
C:\Users\benoi\Documents\SOLIDWORKS Downloads\SOLIDWORKS 2019 SP02\Lisez-moi.lnk => moved successfully
C:\Users\benoi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Tor Browser.lnk => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\Wondershare Helper Compact.exe" => not found
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\WSVCUUpdateHelper.exe" => removed successfully
"HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\electron.app.Guilded" => removed successfully
"HKU\S-1-5-21-2862999081-2136887877-1863393634-1001\\Software\Microsoft\Windows\CurrentVersion\Run\\electron.app.Guilded]" => not found
C:\Users\benoi\AppData\Local\Google\Chrome\User Data\Default\File System\000 => moved successfully
HKLM\SOFTWARE\Setup => removed successfully
"C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe" => could not be unlocked
HKLM\SYSTEM\CurrentControlSet\Services\AntiVirMailService) => not found
Could not move "C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe" => Scheduled to move on reboot.
"C:\Program Files (x86)\Avira\Antivirus\ProtectedService.exe" => could not be unlocked
HKLM\SYSTEM\CurrentControlSet\Services\AntivirProtectedService) => not found
Could not move "C:\Program Files (x86)\Avira\Antivirus\ProtectedService.exe" => Scheduled to move on reboot.
"C:\Program Files (x86)\Avira\Antivirus\sched.exe" => could not be unlocked
HKLM\SYSTEM\CurrentControlSet\Services\AntiVirSchedulerService) => not found
Could not move "C:\Program Files (x86)\Avira\Antivirus\sched.exe" => Scheduled to move on reboot.
"C:\Program Files (x86)\Avira\Antivirus\avguard.exe" => could not be unlocked
HKLM\SYSTEM\CurrentControlSet\Services\AntiVirService) => not found
Could not move "C:\Program Files (x86)\Avira\Antivirus\avguard.exe" => Scheduled to move on reboot.
"C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe" => could not be unlocked
HKLM\SYSTEM\CurrentControlSet\Services\AntiVirWebService) => not found
Could not move "C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe" => Scheduled to move on reboot.
"C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe" => was unlocked
HKLM\SYSTEM\CurrentControlSet\Services\Avira.ServiceHost) => not found
C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe => moved successfully
"C:\WINDOWS\System32\DRIVERS\avdevprot.sys" => could not be unlocked
HKLM\SYSTEM\CurrentControlSet\Services\avdevprot) => not found
Could not move "C:\WINDOWS\System32\DRIVERS\avdevprot.sys" => Scheduled to move on reboot.
"C:\WINDOWS\System32\drivers\avelam.sys" => could not be unlocked
HKLM\SYSTEM\CurrentControlSet\Services\avelam) => not found
Could not move "C:\WINDOWS\System32\drivers\avelam.sys" => Scheduled to move on reboot.
"C:\WINDOWS\System32\DRIVERS\avgntflt.sys" => could not be unlocked
HKLM\SYSTEM\CurrentControlSet\Services\avgntflt) => not found
Could not move "C:\WINDOWS\System32\DRIVERS\avgntflt.sys" => Scheduled to move on reboot.
"C:\WINDOWS\System32\DRIVERS\avipbb.sys" => could not be unlocked
HKLM\SYSTEM\CurrentControlSet\Services\avipbb) => not found
Could not move "C:\WINDOWS\System32\DRIVERS\avipbb.sys" => Scheduled to move on reboot.
"C:\WINDOWS\System32\DRIVERS\avkmgr.sys" => could not be unlocked
HKLM\SYSTEM\CurrentControlSet\Services\avkmgr) => not found
Could not move "C:\WINDOWS\System32\DRIVERS\avkmgr.sys" => Scheduled to move on reboot.
"C:\WINDOWS\System32\DRIVERS\avnetflt.sys" => could not be unlocked
HKLM\SYSTEM\CurrentControlSet\Services\avnetflt) => not found
Could not move "C:\WINDOWS\System32\DRIVERS\avnetflt.sys" => Scheduled to move on reboot.
"C:\WINDOWS\System32\Drivers\avusbflt.sys" => could not be unlocked
HKLM\SYSTEM\CurrentControlSet\Services\avusbflt) => not found
Could not move "C:\WINDOWS\System32\Drivers\avusbflt.sys" => Scheduled to move on reboot.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{47F47F76-1E79-410F-9439-9BC46DB09FEA[" => not found
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{47F47F76-1E79-410F-9439-9BC46DB09FEA[" => not found
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{47F47F76-1E79-410F-9439-9BC46DB09FEA[" => not found
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Maintenance\{47F47F76-1E79-410F-9439-9BC46DB09FEA[" => not found
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{47F47F76-1E79-410F-9439-9BC46DB09FEA[" => not found
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{47F47F76-1E79-410F-9439-9BC46DB09FEA[" => not found
"C:\Windows\System32\Tasks\Avira_Antivirus_Systray]" => not found
"C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [" => not found
"C:\WINDOWS\System32\Tasks\Avira_Antivirus_Systray" => not found
Could not move "C:\Program Files (x86)\Avira\Antivirus\avshadow.exe" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\Avira\Antivirus\avgnt.exe" => Scheduled to move on reboot.
"C:\Users\Public\Desktop\Avira.lnk" => not found
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32\\Avira SystrayStartTrigger" => removed successfully
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{161e6084-b0f5-43e8-86d8-09eda5c0893d} => not found
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{426D1710-5DFD-45E9-B11D-464792C5AD35} [Unsigned => not found
HKLM\SOFTWARE\WOW6432Node\Avira => could not remove, key could be protected
HKLM\SOFTWARE\WOW6432Node\X-AVCSD => could not remove. Access Denied.
HKCU\SOFTWARE\Avira => removed successfully
HKU\.DEFAULT\SOFTWARE\Avira => removed successfully
HKU\S-1-5-21-2862999081-2136887877-1863393634-1001\SOFTWARE\Avira => not found

"C:\Program Files (x86)\Avira" folder move:

Could not move "C:\Program Files (x86)\Avira" => Scheduled to move on reboot.

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira => moved successfully

"C:\ProgramData\Avira" folder move:

Could not move "C:\ProgramData\Avira" => Scheduled to move on reboot.

HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\Shell Extension for Malware scanning => removed successfully
HKLM\Software\Classes\CLSID\{45AC2688-0253-4ED8-97DE-B5370FA7D48A} => removed successfully
Could not move "C:\Program Files (x86)\Avira\Antivirus\shlext64.dll" => Scheduled to move on reboot.
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\Shell Extension for Malware scanning => removed successfully
HKLM\Software\Classes\CLSID\{45AC2688-0253-4ED8-97DE-B5370FA7D48A} => not found
HKLM\Software\Classes\Installer\Products\0171D624DFD59E541BD16474295CDA53 => removed successfully
HKLM\Software\Classes\Installer\Features\0171D624DFD59E541BD16474295CDA53 => removed successfully
HKCU\Software\Microsoft\Installer\Products\0171D624DFD59E541BD16474295CDA53 => not found
HKCU\Software\Microsoft\Installer\Features\0171D624DFD59E541BD16474295CDA53 => not found
"C:\WINDOWS\Installer\1206b.msi [" => not found
HKLM\SOFTWARE\Nahimic => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\Wondershare Helper Compact.exe" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32\\Wondershare Helper Compact.exe" => removed successfully
HKLM\SOFTWARE\Wondershare => removed successfully
HKLM\SOFTWARE\WOW6432Node\Wondershare => removed successfully
HKCU\SOFTWARE\Wondershare => removed successfully
HKU\S-1-5-21-2862999081-2136887877-1863393634-1001\SOFTWARE\Wondershare => not found
C:\Program Files\Wondershare => moved successfully
C:\Program Files (x86)\WondershareUpdate => moved successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare => moved successfully
C:\ProgramData\Wondershare => moved successfully
C:\Users\benoi\AppData\Roaming\Wondershare => moved successfully
C:\Users\benoi\AppData\Local\Wondershare => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\Discord" => not found
C:\ProgramData\SquirrelMachineInstalls\Discord.exe => moved successfully
"C:\Users\benoi]\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Discord.lnk" => not found
"HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\Discord" => removed successfully
"HKEY_USERS\S-1-5-21-2862999081-2136887877-1863393634-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\Discord" => not found
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32\\Discord" => removed successfully
HKCU\SOFTWARE\Discord => removed successfully
HKU\S-1-5-21-2862999081-2136887877-1863393634-1001\SOFTWARE\Discord => not found
C:\Users\benoi\AppData\Roaming\discord => moved successfully
C:\Users\benoi\AppData\Local\Discord => moved successfully
C:\Users\benoi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc => moved successfully

=========== "C:\Windows\Temp\ *.*" ==========

C:\Windows\Temp\.ses => moved successfully
C:\Windows\Temp\AdobeARM.log => moved successfully
C:\Windows\Temp\AdobeARM_Helper.log => moved successfully
C:\Windows\Temp\adobegc.log => moved successfully
C:\Windows\Temp\af397ef28e484961ba48646a5d38cf54.db.ses => moved successfully
C:\Windows\Temp\ArmUI.ini => moved successfully
C:\Windows\Temp\ASPNETSetup_00000.log => moved successfully
C:\Windows\Temp\ASPNETSetup_00001.log => moved successfully
C:\Windows\Temp\Avira_20210403164602.log => moved successfully
C:\Windows\Temp\Avira_20210403210152.log => moved successfully
C:\Windows\Temp\Avira_20210403210152_002_Id.Avira.OE.Setup.Msi.log => moved successfully
C:\Windows\Temp\Avira_20210403210312.log => moved successfully
C:\Windows\Temp\Avira_20210403210312_001_Id.Avira.OE.Setup.Msi.log => moved successfully
C:\Windows\Temp\Avira_20210403210344.log => moved successfully
C:\Windows\Temp\avira_antivirus_setup.log => moved successfully
C:\Windows\Temp\chrome_installer.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210131-1640.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210131-1651.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210131-1804.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210201-0757.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210201-0800.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210201-0802.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210201-1103.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210201-1348.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210202-1006.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210202-1008.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210202-1011.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210202-1425.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210202-2110.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210203-0030.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210203-0800.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210203-0804.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210203-0804a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210203-0806.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210203-1210.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210203-1324.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210203-1326.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210203-1541.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210203-1546.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210204-0953.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210204-1400.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210204-1405.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210204-1406.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210204-1538.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210204-1908.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210205-0103.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210205-1014.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210205-1018.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210205-1018a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210205-1019.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210205-1216.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210205-1323.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210206-1255.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210206-1258.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210206-1258a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210206-1300.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210206-1306.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210206-1812.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210207-1700.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210207-1703.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210207-1703a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210207-1705.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210207-2049.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210207-2154.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210208-1207.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210208-1207a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210208-1209.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210208-1703.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210209-1231.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210209-1234.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210209-1234a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210209-1236.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210209-1625.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210209-1744.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210209-1921.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210210-0802.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210210-0812.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210210-0958.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210210-1234.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210210-1628.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210210-1633.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210211-1229.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210211-1232.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210211-1232a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210211-1234.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210212-0748.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210212-0841.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210212-1127.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210212-1138.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210212-1151.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210212-1232.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210212-1321.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210212-1409.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210213-0317.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210213-1333.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210213-1336.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210213-1336a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210213-1343.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210213-1355.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210214-0400.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210214-0411.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210214-0412.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210214-1213.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210214-1232.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210214-1336.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210214-1344.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210215-1242.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210215-1245.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210215-1245a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210215-1247.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210215-1330.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210216-1007.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210216-1007a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210216-1010.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210216-1226.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210216-1235.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210216-1245.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210216-1312.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210216-1935.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210217-0831.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210217-0833.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210217-0859.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210217-1007.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210217-1147.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210217-1524.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210217-1529.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210218-1029.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210218-1032.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210218-1032a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210218-1035.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210218-1108.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210218-1150.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210218-1341.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210219-1039.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210219-1042.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210219-1042a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210219-1044.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210219-1115.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210219-1151.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210219-2254.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210220-0447.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210220-0450.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210220-0916.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210220-1042.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210221-1349.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210221-1349a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210221-1349b.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210221-1351.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210221-1351a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210221-1352.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210221-1352a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210222-0901.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210222-0904.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210222-0906.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210222-1043.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210222-1146.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210222-1333.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210223-0744.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210223-0744a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210223-0745.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210223-0746.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210223-0904.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210223-1054.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210223-1149.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210223-1551.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210223-1857.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210224-0739.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210224-0741.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210224-0744.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210224-0846.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210224-0905.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210224-1147.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210224-1319.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210224-1320.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210224-1412.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210224-1524.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210224-1839.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210225-0739.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210225-0739a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210225-0830.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210225-0908.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210225-1144.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210226-0608.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210226-0610.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210226-0830.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210226-1153.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210226-1356.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210226-1540.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210226-1602.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210228-1451.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210228-1451a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210228-1453.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210301-0936.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210301-0936a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210301-0938.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210301-1151.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210301-1200.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210301-1325.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210301-1451.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210301-1453.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210301-1838.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210302-0102.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210302-0108.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210302-1030.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210302-1033.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210302-1033a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210302-1035.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210302-1152.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210303-0236.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210303-0811.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210303-0939.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210303-1033.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210303-1151.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210303-1619.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210303-1625.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210304-1322.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210304-1325.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210304-1325a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210304-1327.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210305-0910.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210305-0913.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210305-1226.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210305-1325.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210305-1326.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210305-1959.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210306-0709.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210306-0711.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210306-0841.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210306-0910.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210306-0927.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210307-0228.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210307-0240.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210307-0312.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210307-0317.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210307-0317a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210307-0400.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210307-0424.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210307-0648.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210307-0734.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210307-1215.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210307-1902.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210307-1908.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210308-0757.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210308-0759.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210308-0759a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210308-1110.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210308-1150.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210308-2237.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210308-2256.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210309-0959.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210309-1001.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210309-1002.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210309-1004.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210309-1059.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210309-1137.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210309-1215.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210309-1335.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210309-1341.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210309-1517.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210309-1720.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210309-1726.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210310-0059.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210310-0759.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210310-0802.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210310-0804.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210310-1153.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210310-1222.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210310-1514.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210310-1519.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210310-1910.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210311-0233.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210311-1031.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210311-1034.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210311-1034a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210311-1210.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210311-1532.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210312-0305.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210312-1013.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210312-1020.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210312-1021.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210312-1021a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210312-1157.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210312-1726.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210313-0113.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210313-1053.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210313-1055.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210313-1058.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210313-1222.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210313-1319.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210313-1409.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210314-1510.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210314-1513.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210314-1513a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210314-1515.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210315-0414.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210315-0647.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210315-0811.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210315-1306.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210315-1513.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210315-1541.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210315-1725.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210315-1758.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210315-1839.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210315-1851.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210315-1922.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210315-2033.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210315-2111.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210315-2257.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210316-1018.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210316-1021.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210316-1024.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210316-1151.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210316-1222.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210316-1657.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210316-2024.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210316-2030.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210316-2300.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210316-2351.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210317-0739.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210317-0742.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210317-0745.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210317-0958.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210317-1215.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210317-1307.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210319-1925.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210319-1931.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210319-1931a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210319-1933.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210319-1933a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210319-1933b.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210319-1955.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210319-2310.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210319-2315.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210320-1409.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210320-1411.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210320-1412.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210320-1414.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210320-1420.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210320-1853.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210320-1858.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210320-1933.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210320-1939.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210320-1940.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210321-1003.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210321-1006.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210321-1006a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210321-1011.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210321-1053.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210321-1232.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210321-1255.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210321-1301.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210321-1807.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210321-1813.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210322-0748.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210322-0754.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210322-0757.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210322-0757a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210322-0848.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210322-0853.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210322-1214.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210322-1914.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210323-0734.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210323-0741.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210323-0741a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210323-0741b.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210323-0749.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210323-1151.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210323-1522.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210324-0756.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210324-0800.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210324-0800a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210324-0806.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210324-0945.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210324-1157.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210324-2019.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210324-2036.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210325-1402.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210325-1409.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210325-1411.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210325-1411a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210325-1424.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210325-1718.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210325-1723.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210325-1952.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210326-0918.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210326-0921.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210326-0921a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210326-0924.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210326-1324.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210326-2005.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210327-1021.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210327-1025.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210327-1025a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210327-1029.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210327-1335.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210327-2104.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210327-2110.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210328-1423.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210328-1426.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210328-1426a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210328-1428.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210328-1746.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210328-1758.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210328-1819.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210328-1825.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210328-1830.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210328-2101.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210328-2106.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210328-2112.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210328-2344.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210329-1259.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210329-1259a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210329-1304.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210329-1325.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210329-1757.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210330-1837.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210330-1837a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210330-1842.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210331-0843.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210331-0846.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210331-0908.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210331-0917.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210331-1503.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210331-1508.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210331-1513.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210331-1542.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210331-1755.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210331-2005.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210401-1536.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210401-1538.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210401-1539.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210401-1542.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210401-1859.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210401-1910.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210401-1916.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210401-1931.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210401-2057.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210402-1239.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210402-1242.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210402-1242a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210402-1250.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210402-1431.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210402-1801.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210402-1827.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210402-2021.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210402-2027.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210402-2101.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210402-2106.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210403-0358.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210403-0400.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210403-0432.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210403-0437.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210403-0500.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210403-0525.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210403-1309.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210403-1405.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210403-1539.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210403-1623.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210403-1625.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210403-1636.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210403-1642.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210403-1645.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210403-1651.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210403-2101.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210403-2106.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210403-2151.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210403-2157.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210403-2241.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210403-2244.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210403-2247.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210403-2252.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210404-1032.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210404-1035.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210404-1035a.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210404-1037.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210404-1144.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210404-1154.log => moved successfully
C:\Windows\Temp\DESKTOP-O2F9JKL-20210404-1214.log => moved successfully
Could not move "C:\Windows\Temp\DESKTOP-O2F9JKL-20210404-1235.log" => Scheduled to move on reboot.
C:\Windows\Temp\efddispatcher.log => moved successfully
C:\Windows\Temp\efddispatcher.log.bak => moved successfully
C:\Windows\Temp\HamachiSetup.log => moved successfully
C:\Windows\Temp\kav.21.3.10.391_03.02_17.45_19116.apply_patches.drivers_x64.log => moved successfully
C:\Windows\Temp\lghub_updater.exe => moved successfully
C:\Windows\Temp\logi_crashpad_handler.exe => moved successfully
C:\Windows\Temp\mat-debug-10256.log => moved successfully
C:\Windows\Temp\mat-debug-12268.log => moved successfully
C:\Windows\Temp\mat-debug-17040.log => moved successfully
C:\Windows\Temp\mat-debug-18180.log => moved successfully
C:\Windows\Temp\mat-debug-18928.log => moved successfully
C:\Windows\Temp\mat-debug-19276.log => moved successfully
C:\Windows\Temp\mat-debug-6404.log => moved successfully
C:\Windows\Temp\mat-debug-7672.log => moved successfully
C:\Windows\Temp\mat-debug-9972.log => moved successfully
C:\Windows\Temp\MpCmdRun.log => moved successfully
C:\Windows\Temp\msedge_installer.log => moved successfully
C:\Windows\Temp\obu9585.tmp => moved successfully
C:\Windows\Temp\obu9586.tmp => moved successfully
C:\Windows\Temp\obu9587.tmp => moved successfully
C:\Windows\Temp\obu9588.tmp => moved successfully
C:\Windows\Temp\obu9589.tmp => moved successfully
C:\Windows\Temp\obu9599.tmp => moved successfully
C:\Windows\Temp\obu959A.tmp => moved successfully
C:\Windows\Temp\officeclicktorun.exe_streamserver(202104011536031224).log => moved successfully
C:\Windows\Temp\officeclicktorun.exe_streamserver(202104031623401128).log => moved successfully
C:\Windows\Temp\officeclicktorun.exe_streamserver(202104031625361134).log => moved successfully
C:\Windows\Temp\officeclicktorun.exe_streamserver(20210403224133D50).log => moved successfully
C:\Windows\Temp\officeclicktorun.exe_streamserver(20210403224445858).log => moved successfully
C:\Windows\Temp\officeclicktorun.exe_streamserver(20210403224704CC8).log => moved successfully
Could not move "C:\Windows\Temp\officeclicktorun.exe_streamserver(202104041235233348).log" => Scheduled to move on reboot.
C:\Windows\Temp\PDApp.log => moved successfully
C:\Windows\Temp\Qt5Core.dll => moved successfully
C:\Windows\Temp\tem48E0.tmp => moved successfully
C:\Windows\Temp\tem58FD.tmp => moved successfully
C:\Windows\Temp\UpdHealthTools.msi => moved successfully

========= End -> "C:\Windows\Temp\ *.*" ========


=========== "C:\Users\benoi\Appdata\Local\Temp\ *.*" ==========

C:\Users\benoi\Appdata\Local\Temp\.ses => moved successfully
C:\Users\benoi\Appdata\Local\Temp\00631f69-08db-4d22-8253-298c8489fc5e.tmp.ico => moved successfully
C:\Users\benoi\Appdata\Local\Temp\0387616d-ef76-4503-a95f-60ac66213387.tmp.ico => moved successfully
C:\Users\benoi\Appdata\Local\Temp\06332a5f-e625-49a8-83d7-b04f8b6f40f2.tmp.ico => moved successfully
C:\Users\benoi\Appdata\Local\Temp\0b021435-4807-4cb8-8230-8bccc2965a02.tmp.ico => moved successfully
C:\Users\benoi\Appdata\Local\Temp\0c97bf3a-4e2d-45c8-afc4-b8ade9b2af48.tmp.node => moved successfully
C:\Users\benoi\Appdata\Local\Temp\135953fc-f89e-4906-8e43-447d15e88262.tmp.node => moved successfully
C:\Users\benoi\Appdata\Local\Temp\13dd9bc9-7d2b-403c-b38f-61a5761f5c69.tmp.node => moved successfully
C:\Users\benoi\Appdata\Local\Temp\1812817856.cfg => moved successfully
C:\Users\benoi\Appdata\Local\Temp\18e190413af045db88dfbd29609eb877.db.ses => moved successfully
C:\Users\benoi\Appdata\Local\Temp\1d0e8bc8-6175-4997-b981-fae67558f262.tmp.ico => moved successfully
C:\Users\benoi\Appdata\Local\Temp\26e2d885-6f87-4259-9276-45fcb6563367.tmp.ico => moved successfully
C:\Users\benoi\Appdata\Local\Temp\319a3add-f353-4b91-8661-e990199167c0.tmp.node => moved successfully
C:\Users\benoi\Appdata\Local\Temp\46fb8b58-d3fa-44fb-a5fd-4415a426e5fd.tmp.ico => moved successfully
C:\Users\benoi\Appdata\Local\Temp\4da7c4ff-083c-44f7-a6eb-a751549b3b7d.tmp.node => moved successfully
C:\Users\benoi\Appdata\Local\Temp\5109049c-2390-43ae-89a9-a0f2514d8d8d.tmp.ico => moved successfully
C:\Users\benoi\Appdata\Local\Temp\5c7b0fa1-169c-4b8d-a44c-6b342c7aff97.tmp.node => moved successfully
C:\Users\benoi\Appdata\Local\Temp\5d3e82f4-789a-4bc3-a697-732359331dce.tmp.node => moved successfully
C:\Users\benoi\Appdata\Local\Temp\666baacb-494d-48c8-860b-60c26b5deef1.tmp.ico => moved successfully
C:\Users\benoi\Appdata\Local\Temp\6f69b9fa-3587-4f58-8551-93e22cd2508e.tmp.ico => moved successfully
C:\Users\benoi\Appdata\Local\Temp\747102e7-082e-40b6-9bf5-d1997b8a8b16.tmp.ico => moved successfully
C:\Users\benoi\Appdata\Local\Temp\787377d3-7817-4e6d-958b-b0ee2e418aea.tmp.node => moved successfully
C:\Users\benoi\Appdata\Local\Temp\82f189e3-ecdb-45b6-9dc9-66fcc4684c72.tmp.ico => moved successfully
C:\Users\benoi\Appdata\Local\Temp\90a1fc00-e117-4cf5-8114-88ad0794dd9f.tmp.node => moved successfully
C:\Users\benoi\Appdata\Local\Temp\9297e12b-f899-48ff-bb36-9d4ec32d55f6.tmp.ico => moved successfully
C:\Users\benoi\Appdata\Local\Temp\9ffface6-82eb-463b-a3a6-da1a98e44299.tmp.node => moved successfully
C:\Users\benoi\Appdata\Local\Temp\a55e9698-db3d-46ba-8a7a-7b2ebc555ee0.tmp.node => moved successfully
C:\Users\benoi\Appdata\Local\Temp\AdobeARM.log => moved successfully
C:\Users\benoi\Appdata\Local\Temp\adobegc.log => moved successfully
C:\Users\benoi\Appdata\Local\Temp\AdobeIPCBroker.log => moved successfully
C:\Users\benoi\Appdata\Local\Temp\aria-debug-12060.log => moved successfully
C:\Users\benoi\Appdata\Local\Temp\b2148648-3432-4fd3-9619-84e450db57c7.tmp.ico => moved successfully
C:\Users\benoi\Appdata\Local\Temp\bd9b0f92-3e06-4635-9bd6-f3bb19203d34.tmp.node => moved successfully
C:\Users\benoi\Appdata\Local\Temp\c201dcb8-51c6-4b88-a78d-eddc7ae08e73.tmp.ico => moved successfully
C:\Users\benoi\Appdata\Local\Temp\c7445037-387b-4cca-abd5-a2d6bbfcad9b.tmp.node => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_000000000a653094.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_0000000027f1ebad.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_000000004eac3921.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_000000005c4c5461.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_00000000a391e2f3.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_00000000a5214c5a.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_00000000d6c79b1f.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_00000000f99f0f08.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_073178bcea68e640.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_0a244b01ea68e640.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_0b7b4d4aea68e640.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_15c966b8ea68e640.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_16bf27f0ea68e640.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_1f592befb78c8e02.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_2906fe8fea68e640.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_319ae6e38002c90f.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_31b96d4dea68e640.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_36650fbfea68e640.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_37bf4cacea68e640.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_4b9e03b0ea68e640.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_54484c373efe5efb.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_590608efea68e640.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_5ffd7755ea68e640.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_70332415ea68e640.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_71b0416cea68e640.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_87b2d737ea68e640.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_8d30e153ea68e640.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_90e66253ea8355cd.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_938a897109ba7172.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_98ab7d26ea68e640.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_98b9e622ea68e640.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_98c1332f95e3790f.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_a4ba3c0fea68e640.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_a6c81e7d1d2f06cb.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_c7001bd1f6167215.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_cbd60dc6d7117a17.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_d7ed566ce2e1b074.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_e9bd92649b672d94.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_ec453bb2ea68e640.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\cloud_f1fee05bea68e640.dat => moved successfully
C:\Users\benoi\Appdata\Local\Temp\d297eaec-8005-4f5e-a7be-dbd155c37063.tmp.ico => moved successfully
C:\Users\benoi\Appdata\Local\Temp\dd_BackgroundDownload_20210404114416.log => moved successfully
C:\Users\benoi\Appdata\Local\Temp\dd_BackgroundDownload_20210404114416_result_Error.log => moved successfully
C:\Users\benoi\Appdata\Local\Temp\dd_BackgroundDownload_20210404115356.log => moved successfully
C:\Users\benoi\Appdata\Local\Temp\dd_BackgroundDownload_20210404121423.log => moved successfully
C:\Users\benoi\Appdata\Local\Temp\ebbb3bcf-750b-4ac3-be56-c3b8099c54ea.tmp.ico => moved successfully
C:\Users\benoi\Appdata\Local\Temp\ecache.bin => moved successfully
C:\Users\benoi\Appdata\Local\Temp\exthost-12ee8d.cpuprofile => moved successfully
C:\Users\benoi\Appdata\Local\Temp\exthost-131d14.cpuprofile => moved successfully
C:\Users\benoi\Appdata\Local\Temp\exthost-1a7ab9.cpuprofile => moved successfully
C:\Users\benoi\Appdata\Local\Temp\exthost-30dddf.cpuprofile => moved successfully
C:\Users\benoi\Appdata\Local\Temp\exthost-378186.cpuprofile => moved successfully
C:\Users\benoi\Appdata\Local\Temp\exthost-38393f.cpuprofile => moved successfully
C:\Users\benoi\Appdata\Local\Temp\exthost-39ebde.cpuprofile => moved successfully
C:\Users\benoi\Appdata\Local\Temp\exthost-3ceeb4.cpuprofile => moved successfully
C:\Users\benoi\Appdata\Local\Temp\exthost-4c836a.cpuprofile => moved successfully
C:\Users\benoi\Appdata\Local\Temp\exthost-772712.cpuprofile => moved successfully
C:\Users\benoi\Appdata\Local\Temp\exthost-8ef9c5.cpuprofile => moved successfully
C:\Users\benoi\Appdata\Local\Temp\exthost-93e273.cpuprofile => moved successfully
C:\Users\benoi\Appdata\Local\Temp\exthost-94b6c6.cpuprofile => moved successfully
C:\Users\benoi\Appdata\Local\Temp\exthost-e4c83f.cpuprofile => moved successfully
C:\Users\benoi\Appdata\Local\Temp\f3bcb2b8-8f49-4b44-9205-f872968aded9.tmp.node => moved successfully
C:\Users\benoi\Appdata\Local\Temp\f511b0f6-b402-46b7-883a-6989dcda3fa1.tmp.node => moved successfully
C:\Users\benoi\Appdata\Local\Temp\f95e8ce2-63d4-4ee5-8743-2319228a9a22.tmp.ico => moved successfully
C:\Users\benoi\Appdata\Local\Temp\NGLClient_AcrobatDC1.ngllogcontrolconfig => moved successfully
C:\Users\benoi\Appdata\Local\Temp\NGLClient_Animate1.ngllogcontrolconfig => moved successfully
C:\Users\benoi\Appdata\Local\Temp\NGLClient_Audition1.ngllogcontrolconfig => moved successfully
C:\Users\benoi\Appdata\Local\Temp\NGLClient_CCLibrary1.ngllogcontrolconfig => moved successfully
C:\Users\benoi\Appdata\Local\Temp\NGLClient_CCXProcess1.ngllogcontrolconfig => moved successfully
C:\Users\benoi\Appdata\Local\Temp\NGLClient_CCXProcess14.2 2021-04-03 21-53-18-683.log => moved successfully
C:\Users\benoi\Appdata\Local\Temp\NGLClient_CCXProcess14.2 2021-04-03 22-48-26-372.log => moved successfully
C:\Users\benoi\Appdata\Local\Temp\NGLClient_CCXProcess14.2 2021-04-03 23-48-28-823.log => moved successfully
C:\Users\benoi\Appdata\Local\Temp\NGLClient_CCXProcess14.2 2021-04-04 10-33-13-305.log => moved successfully
C:\Users\benoi\Appdata\Local\Temp\NGLClient_CCXProcess14.2 2021-04-04 11-33-15-834.log => moved successfully
C:\Users\benoi\Appdata\Local\Temp\NGLClient_CCXProcess14.2 2021-04-04 12-33-15-809.log => moved successfully
C:\Users\benoi\Appdata\Local\Temp\NGLClient_CCXProcess14.2.log => moved successfully
C:\Users\benoi\Appdata\Local\Temp\NGLClient_CoreSync1.ngllogcontrolconfig => moved successfully
C:\Users\benoi\Appdata\Local\Temp\NGLClient_CreativeCloud1.ngllogcontrolconfig => moved successfully
C:\Users\benoi\Appdata\Local\Temp\NGLClient_CreativeCloud2.ngllogcontrolconfig => moved successfully
C:\Users\benoi\Appdata\Local\Temp\NGLClient_Dreamweaver1.ngllogcontrolconfig => moved successfully
C:\Users\benoi\Appdata\Local\Temp\NGLClient_HelpIntegrationLibrary1.ngllogcontrolconfig => moved successfully
C:\Users\benoi\Appdata\Local\Temp\NGLClient_Illustrator1.ngllogcontrolconfig => moved successfully
C:\Users\benoi\Appdata\Local\Temp\NGLClient_LightroomClassic1.ngllogcontrolconfig => moved successfully
C:\Users\benoi\Appdata\Local\Temp\NGLClient_MediaEncoder1.ngllogcontrolconfig => moved successfully
C:\Users\benoi\Appdata\Local\Temp\NGLClient_Photoshop1.ngllogcontrolconfig => moved successfully
C:\Users\benoi\Appdata\Local\Temp\NGLClient_PremierePro1.ngllogcontrolconfig => moved successfully
C:\Users\benoi\Appdata\Local\Temp\productInfo.xml => moved successfully
C:\Users\benoi\Appdata\Local\Temp\sMarUpdateInfo.dbd => moved successfully
C:\Users\benoi\Appdata\Local\Temp\SquirrelSetup.log => moved successfully
C:\Users\benoi\Appdata\Local\Temp\StructuredQuery.log => moved successfully
C:\Users\benoi\Appdata\Local\Temp\TempSoftHealth.dbd => moved successfully
C:\Users\benoi\Appdata\Local\Temp\VulcanConfig.data => moved successfully
C:\Users\benoi\Appdata\Local\Temp\WAE_495_T20210315014539.xml => moved successfully

========= End -> "C:\Users\benoi\Appdata\Local\Temp\ *.*" ========


=========== "C:\Windows\SoftwareDistribution\Download\ *" ==========

not found

========= End -> "C:\Windows\SoftwareDistribution\Download\ *" ========


========= ipconfig /flushdns =========


Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========= End of CMD: =========


========= netsh winsock reset =========


Sucessfully reset the Winsock Catalog.
You must restart the computer in order to complete the reset.


========= End of CMD: =========


========= netsh advfirewall reset =========

Ok.


========= End of CMD: =========


========= Netsh advfirewall set allprofiles state on =========

Ok.


========= End of CMD: =========


=========== EmptyTemp: ==========

BITS transfer queue => 10510336 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 168755036 B
Java, Flash, Steam htmlcache => 440094889 B
Windows/system/drivers => 140785762 B
Edge => 2431212 B
Chrome => 2344453654 B
Firefox => 1095872709 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 466110 B
NetworkService => 467316 B
benoi => 2732926381 B
OVRLibraryService => 2732926381 B

RecycleBin => 2356 B
EmptyTemp: => 9 GB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 04-04-2021 13:23:34)

C:\Windows\System32\Drivers\etc\hosts => Could not move
Could not restore Hosts.
C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe => Could not move
C:\Program Files (x86)\Avira\Antivirus\ProtectedService.exe => Could not move
C:\Program Files (x86)\Avira\Antivirus\sched.exe => Could not move
C:\Program Files (x86)\Avira\Antivirus\avguard.exe => Could not move
C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe => Could not move
C:\WINDOWS\System32\DRIVERS\avdevprot.sys => Could not move
C:\WINDOWS\System32\drivers\avelam.sys => Could not move
C:\WINDOWS\System32\DRIVERS\avgntflt.sys => Could not move
C:\WINDOWS\System32\DRIVERS\avipbb.sys => Could not move
C:\WINDOWS\System32\DRIVERS\avkmgr.sys => Could not move
C:\WINDOWS\System32\DRIVERS\avnetflt.sys => Could not move
C:\WINDOWS\System32\Drivers\avusbflt.sys => Could not move
C:\Program Files (x86)\Avira\Antivirus\avshadow.exe => Could not move
C:\Program Files (x86)\Avira\Antivirus\avgnt.exe => Could not move
C:\Program Files (x86)\Avira => Could not move
C:\ProgramData\Avira => Could not move
C:\Program Files (x86)\Avira\Antivirus\shlext64.dll => Could not move
C:\Windows\Temp\DESKTOP-O2F9JKL-20210404-1235.log => Is moved successfully
C:\Windows\Temp\officeclicktorun.exe_streamserver(202104041235233348).log => Is moved successfully

Result of scheduled keys to remove after reboot:

HKLM\SOFTWARE\WOW6432Node\Avira => could not remove, key could be protected
HKLM\SOFTWARE\WOW6432Node\X-AVCSD => could not remove. Access Denied.

==== End of Fixlog 13:23:42 ====

Publicité


Signaler le contenu de ce document

Publicité