Sei sulla pagina 1di 16

Total number of files deleted: 278

Total files size deleted: 11MB


Total number of files marked for deletion: 18
Total files size marked for deletion: 1MB
Total number of registry items removed: 183
Query сompleted to:
C:\Users\Moorthy\AppData\Roaming\Mozilla\Firefox\Profiles\hv0pja9j.default\cookies.
sqlite
Query сompleted to:
C:\Users\Moorthy\AppData\Roaming\Mozilla\Firefox\Profiles\hv0pja9j.default\places.s
qlite
Query сompleted to:
C:\Users\Moorthy\AppData\Roaming\Mozilla\Firefox\Profiles\hv0pja9j.default\cookies.
sqlite - 0B
Query сompleted to:
C:\Users\Moorthy\AppData\Roaming\Mozilla\Firefox\Profiles\hv0pja9j.default\permissi
ons.sqlite - 0B
Query сompleted to:
C:\Users\Moorthy\AppData\Roaming\Mozilla\Firefox\Profiles\hv0pja9j.default\places.s
qlite - 0B
Query сompleted to:
C:\Users\Moorthy\AppData\Roaming\Mozilla\Firefox\Profiles\hv0pja9j.default\webappss
tore.sqlite - 0B
Query сompleted to: C:\Users\Moorthy\AppData\Local\Google\Chrome\User
Data\Default\Cookies
Query сompleted to: C:\Users\Moorthy\AppData\Local\Google\Chrome\User
Data\Default\History
Query сompleted to: C:\Users\Moorthy\AppData\Local\Google\Chrome\User
Data\Default\Web Data
Query сompleted to: C:\Users\Moorthy\AppData\Local\Google\Chrome\User
Data\Default\Cookies - 0B
Query сompleted to: C:\Users\Moorthy\AppData\Local\Google\Chrome\User
Data\Default\History - 0B
Query сompleted to: C:\Users\Moorthy\AppData\Local\Google\Chrome\User
Data\Default\Login Data - 0B
Query сompleted to: C:\Users\Moorthy\AppData\Local\Google\Chrome\User
Data\Default\Web Data - 0B
Internet Explorer journal cleaned.
Clipboard is empty.
Recycle bin cleaned.

-------------------

List of deleted files:

C:\Users\Moorthy\Application Data\Microsoft\Office\MSO2057.acl - 36KB


C:\Users\Moorthy\Application
Data\Microsoft\Office\16.0\83c35a54\Proofing\RoamingCustom.dic - 36B
C:\Users\Moorthy\Application Data\Microsoft\Office\Recent\19070121-Sales-Plan-
Ppt.LNK - 1KB
C:\Users\Moorthy\Application Data\Microsoft\Office\Recent\202365493-Cemical-
Industries.LNK - 1KB
C:\Users\Moorthy\Application Data\Microsoft\Office\Recent\206305559-Floriculture-
Industry-of-Sri-Lanka.LNK - 1KB
C:\Users\Moorthy\Application Data\Microsoft\Office\Recent\239928711-INDIAN-COMPANY-
LIST-xls.LNK - 1KB
C:\Users\Moorthy\Application Data\Microsoft\Office\Recent\248522803-Top-1000-
Companies-Details.LNK - 1KB
C:\Users\Moorthy\Application Data\Microsoft\Office\Recent\334310294-Corporate-
Member-List.LNK - 1KB
C:\Users\Moorthy\Application Data\Microsoft\Office\Recent\Desktop.LNK - 366B
C:\Users\Moorthy\Application Data\Microsoft\Office\Recent\index.dat - 716B
C:\Users\Moorthy\Application Data\Microsoft\Office\Recent\TOPINDIAN CO.LNK - 532B
C:\Users\Moorthy\Application Data\Microsoft\Office\Recent\wipo_ace_1_5-annex1.LNK -
1KB
C:\Users\Moorthy\Local Settings\Application Data\Microsoft\Internet
Explorer\brndlog.txt - 4KB
C:\Users\Moorthy\Local Settings\Application Data\Microsoft\Internet
Explorer\ie4uinit-ClearIconCache.log - 938B
C:\Users\Moorthy\Local Settings\Application Data\Microsoft\Internet
Explorer\ie4uinit-UserConfig.log - 1KB
C:\Users\Moorthy\Local Settings\Application Data\Microsoft\Internet
Explorer\CacheStorage\.inUse - 0B
C:\Users\Moorthy\Local Settings\Application Data\Microsoft\Internet
Explorer\CacheStorage\edb.chk - 8KB
C:\Users\Moorthy\Local Settings\Application Data\Microsoft\Internet
Explorer\CacheStorage\edbres00001.jrs - 512KB
C:\Users\Moorthy\Local Settings\Application Data\Microsoft\Internet
Explorer\CacheStorage\edbres00002.jrs - 512KB
C:\Users\Moorthy\AppData\Local\Microsoft\Windows\INetCache\Content.MSO\mso57FE.tmp
- 0B
C:\Users\Moorthy\AppData\Local\Microsoft\Windows\INetCache\Content.MSO\msoC186.tmp
- 0B
C:\Users\Moorthy\AppData\Local\Microsoft\Windows\INetCache\Content.MSO\msoC59D.tmp
- 0B
C:\Users\Moorthy\AppData\Local\Microsoft\Windows\INetCache\Content.Word\~WRS{30151B
BA-BE7B-4C08-BD93-7A9E94BD81BE}.tmp - 152KB
C:\Users\Moorthy\AppData\Local\Microsoft\Windows\INetCache\Content.Word\~WRS{E59033
E7-C176-4341-A47F-D9CFF21EB79A}.tmp - 1KB
C:\Users\Moorthy\AppData\Local\Microsoft\Windows\INetCache\IE\container.dat - 0B
C:\Users\Moorthy\AppData\Local\Microsoft\Windows\INetCache\IE\7ZNUZTOG\ConvergedLog
inPaginatedStrings.en[1].js - 24KB
C:\Users\Moorthy\AppData\Local\Microsoft\Windows\INetCache\IE\L39MI9Q3\auto[1].txt
- 23B
C:\Users\Moorthy\AppData\Local\Microsoft\Windows\INetCache\IE\L39MI9Q3\ellipsis_whi
te[1].svg - 915B
C:\Users\Moorthy\AppData\Local\Microsoft\Windows\INetCache\IE\L39MI9Q3\microsoft_lo
go[1].svg - 3KB
C:\Users\Moorthy\AppData\Local\Microsoft\Windows\INetCache\IE\L39MI9Q3\update50[1].
xml - 743B
C:\Users\Moorthy\AppData\Local\Microsoft\Windows\INetCache\IE\MWGTJS90\Converged_v2
1033[1].css - 98KB
C:\Users\Moorthy\AppData\Local\Microsoft\Windows\INetCache\IE\MWGTJS90\PreSignInSet
tingsConfig[1].json - 17KB
C:\Users\Moorthy\AppData\Local\Microsoft\Windows\INetCache\IE\WJD9H591\ConvergedLog
in_PCore[1].js - 530KB
C:\Users\Moorthy\AppData\Local\Microsoft\Windows\INetCache\IE\WJD9H591\status[1].ht
m - 165B
C:\Users\Moorthy\AppData\Local\Microsoft\Windows\INetCache\Low\SuggestedSites.dat -
5MB
C:\Users\Moorthy\AppData\Local\Microsoft\Feeds Cache\container.dat - 0B
C:\Users\Moorthy\AppData\Local\Microsoft\Feeds
Cache\TUZICU69\ieonlinews.microsoft[1] - 0B
C:\Users\Moorthy\AppData\Local\Microsoft\Windows\INetCookies\ESE\container.dat - 0B
C:\Users\Moorthy\Local Settings\History\history.ie5\container.dat - 0B
C:\Users\Moorthy\Local
Settings\History\history.ie5\MSHist012019061220190613\container.dat - 0B
C:\Users\Moorthy\AppData\Local\Microsoft\Windows\History\desktop.ini - 130B
C:\Users\Moorthy\AppData\Local\Temp\{30C67C52-3875-4712-82C4-3F810451E9B2} -
OProcSessId.dat - 0B
C:\Users\Moorthy\AppData\Local\Temp\{75431AC9-14ED-4F6E-8CFD-02E41D8C88A3} -
OProcSessId.dat - 0B
C:\Users\Moorthy\AppData\Local\Temp\{80336F1F-09D7-4094-99B0-C35D176505EE} -
OProcSessId.dat - 0B
C:\Users\Moorthy\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!
001\MicrosoftEdge\Cache\container.dat - 0B
C:\Users\Moorthy\AppData\Roaming\Microsoft\Windows\Recent\.xls.lnk - 2KB
C:\Users\Moorthy\AppData\Roaming\Microsoft\Windows\Recent\19070121-Sales-Plan-
Ppt.lnk - 970B
C:\Users\Moorthy\AppData\Roaming\Microsoft\Windows\Recent\202365493-Cemical-
Industries.lnk - 745B
C:\Users\Moorthy\AppData\Roaming\Microsoft\Windows\Recent\206305559-Floriculture-
Industry-of-Sri-Lanka.lnk - 830B
C:\Users\Moorthy\AppData\Roaming\Microsoft\Windows\Recent\239928711-INDIAN-COMPANY-
LIST-xls.lnk - 770B
C:\Users\Moorthy\AppData\Roaming\Microsoft\Windows\Recent\248522803-Top-1000-
Companies-Details.lnk - 4KB
C:\Users\Moorthy\AppData\Roaming\Microsoft\Windows\Recent\262827327-Successful-
Business-Plan.lnk - 1020B
C:\Users\Moorthy\AppData\Roaming\Microsoft\Windows\Recent\274265126-Sample-
Business-Plan.lnk - 1000B
C:\Users\Moorthy\AppData\Roaming\Microsoft\Windows\Recent\334310294-Corporate-
Member-List.lnk - 1KB
C:\Users\Moorthy\AppData\Roaming\Microsoft\Windows\Recent\98879571-Sample-Business-
plan-Presentation-of-Resturant.lnk - 885B
C:\Users\Moorthy\AppData\Roaming\Microsoft\Windows\Recent\abab on hana.lnk - 1KB
C:\Users\Moorthy\AppData\Roaming\Microsoft\Windows\Recent\desktop.ini - 432B
C:\Users\Moorthy\AppData\Roaming\Microsoft\Windows\Recent\Downloads.lnk - 450B
C:\Users\Moorthy\AppData\Roaming\Microsoft\Windows\Recent\intoduction to TVS
TYRES.lnk - 2KB
C:\Users\Moorthy\AppData\Roaming\Microsoft\Windows\Recent\TOPINDIAN CO.lnk - 660B
C:\Users\Moorthy\AppData\Roaming\Microsoft\Windows\Recent\wipo_ace_1_5-annex1.lnk -
700B
C:\Users\Moorthy\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\5f7
b5f1e01b83767.automaticDestinations-ms - 19KB
C:\Users\Moorthy\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\9d1
f905ce5044aee.automaticDestinations-ms - 3KB
C:\Users\Moorthy\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\b8a
b77100df80ab2.automaticDestinations-ms - 9KB
C:\Users\Moorthy\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\d00
655d2aa12ff6d.automaticDestinations-ms - 4KB
C:\Users\Moorthy\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\ee4
62c3b81abb6f6.automaticDestinations-ms - 4KB
C:\Users\Moorthy\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\f01
b4d95cf55d32a.automaticDestinations-ms - 5KB
C:\Users\Moorthy\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\fb3
b0dbfee58fac8.automaticDestinations-ms - 6KB
C:\Users\Moorthy\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\28c8b8
6deab549a1.customDestinations-ms - 3KB
C:\Users\Moorthy\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\69639d
f789022856.customDestinations-ms - 10KB
C:\Users\Moorthy\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\b8ab77
100df80ab2.customDestinations-ms - 7KB
C:\Users\Moorthy\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\ccc0fa
1b9f86f7b3.customDestinations-ms - 8KB
C:\Users\Moorthy\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\d00655
d2aa12ff6d.customDestinations-ms - 6KB
C:\Users\Moorthy\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\fb3b0d
bfee58fac8.customDestinations-ms - 10KB
C:\Users\Moorthy\AppData\Local\Temp\.ses - 53B
C:\Users\Moorthy\AppData\Local\Temp\AdobeARM_NotLocked.log - 833B
C:\Users\Moorthy\AppData\Local\Temp\aria-debug-1836.log - 0B
C:\Users\Moorthy\AppData\Local\Temp\ArmUI.ini - 185KB
C:\Users\Moorthy\AppData\Local\Temp\mat-debug-11016.log - 0B
C:\Users\Moorthy\AppData\Local\Temp\mat-debug-15004.log - 0B
C:\Users\Moorthy\AppData\Local\Temp\mat-debug-21056.log - 0B
C:\Users\Moorthy\AppData\Local\Temp\mat-debug-21900.log - 0B
C:\Users\Moorthy\AppData\Local\Temp\mat-debug-24820.log - 0B
C:\Users\Moorthy\AppData\Local\Temp\mat-debug-26408.log - 0B
C:\Users\Moorthy\AppData\Local\Temp\mat-debug-27124.log - 0B
C:\Users\Moorthy\AppData\Local\Temp\mat-debug-27616.log - 0B
C:\Users\Moorthy\AppData\Local\Temp\mat-debug-28360.log - 0B
C:\Users\Moorthy\AppData\Local\Temp\mat-debug-28852.log - 0B
C:\Users\Moorthy\AppData\Local\Temp\mat-debug-29076.log - 0B
C:\Users\Moorthy\AppData\Local\Temp\mat-debug-29116.log - 0B
C:\Users\Moorthy\AppData\Local\Temp\mat-debug-30912.log - 0B
C:\Users\Moorthy\AppData\Local\Temp\mat-debug-31124.log - 0B
C:\Users\Moorthy\AppData\Local\Temp\mat-debug-31892.log - 0B
C:\Users\Moorthy\AppData\Local\Temp\mat-debug-32116.log - 0B
C:\Users\Moorthy\AppData\Local\Temp\mat-debug-32272.log - 0B
C:\Users\Moorthy\AppData\Local\Temp\mat-debug-32424.log - 0B
C:\Users\Moorthy\AppData\Local\Temp\mat-debug-32504.log - 0B
C:\Users\Moorthy\AppData\Local\Temp\mat-debug-32644.log - 0B
C:\Users\Moorthy\AppData\Local\Temp\mat-debug-32676.log - 0B
C:\Users\Moorthy\AppData\Local\Temp\mat-debug-8096.log - 0B
C:\Users\Moorthy\AppData\Local\Temp\mat-debug-8364.log - 0B
C:\Users\Moorthy\AppData\Local\Temp\MOORTHY-ESAKKY-20190612-1452.log - 16KB
C:\Users\Moorthy\AppData\Local\Temp\StructuredQuery.log - 4KB
C:\Users\Moorthy\AppData\Local\Temp\wct60E0.tmp - 19KB
C:\Users\Moorthy\AppData\Local\Temp\wct69AB.tmp - 401B
C:\Users\Moorthy\AppData\Local\Temp\~DF6AAB32A996ACB5B5.TMP - 512B
C:\Users\Moorthy\AppData\Local\Temp\Outlook Logging\EXCEL-20190612T1207010139-
v2.etl - 4KB
C:\Users\Moorthy\AppData\Local\Temp\Outlook Logging\POWERPNT-20190612T1145080469-
v2.etl - 8KB
C:\Users\Moorthy\AppData\Local\Temp\Outlook Logging\POWERPNT-20190612T1155050600-
v2.etl - 16KB
C:\Users\Moorthy\AppData\Local\Temp\Outlook Logging\POWERPNT-20190612T1155360262-
v2.etl - 12KB
C:\Users\Moorthy\AppData\Local\Temp\Outlook Logging\POWERPNT-20190612T1204030432-
v2.etl - 12KB
C:\Users\Moorthy\AppData\Local\Temp\Outlook Logging\WINWORD-20190612T1154160283-
v2.etl - 16KB
C:\Users\Moorthy\AppData\Local\Temp\Outlook Logging\WINWORD-20190612T1303520646-
v2.etl - 4KB
C:\WINDOWS\TEMP\.ses - 53B
C:\WINDOWS\TEMP\HighPerformancePlan.log - 14KB
C:\WINDOWS\TEMP\mat-debug-19492.log - 0B
C:\WINDOWS\TEMP\mat-debug-3256.log - 0B
C:\WINDOWS\TEMP\mat-debug-3264.log - 0B
C:\WINDOWS\TEMP\MOORTHY-ESAKKY-20190612-1451.log - 18KB
C:\WINDOWS\TEMP\MOORTHY-ESAKKY-20190612-1542.log - 19KB
C:\WINDOWS\TEMP\MOORTHY-ESAKKY-20190612-1553.log - 18KB
C:\WINDOWS\TEMP\MpCmdRun.log - 1KB
C:\WINDOWS\TEMP\officeclicktorun.exe_streamserver(20190612155326CB8).log - 0B
C:\WINDOWS\TEMP\PowerPlan.log - 67B
C:\WINDOWS\TEMP\UsoStoreFile.xml - 6KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.001.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.002.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.003.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.004.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.006.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.007.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.008.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.009.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.010.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.011.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.012.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.013.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.015.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.016.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.017.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.018.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.019.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.020.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.021.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.022.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.023.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.024.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.025.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.026.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.027.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.028.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.029.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.030.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.031.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.032.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.033.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.034.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.035.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.036.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.037.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.038.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.039.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.040.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.041.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.042.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.043.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.044.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.045.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.046.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.047.etl - 4KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.048.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.049.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUx.050.etl - 8KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.001.etl
- 20KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.002.etl
- 24KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.003.etl
- 24KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.004.etl
- 28KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.005.etl
- 12KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.006.etl
- 12KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.007.etl
- 24KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.008.etl
- 12KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.009.etl
- 20KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.010.etl
- 24KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.011.etl
- 24KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.012.etl
- 24KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.013.etl
- 24KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.014.etl
- 24KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.015.etl
- 28KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.016.etl
- 24KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.017.etl
- 12KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.018.etl
- 28KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.019.etl
- 12KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.020.etl
- 20KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.021.etl
- 24KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.022.etl
- 12KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.023.etl
- 12KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.024.etl
- 24KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.025.etl
- 12KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.026.etl
- 12KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.027.etl
- 24KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.028.etl
- 24KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.029.etl
- 24KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.030.etl
- 24KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.031.etl
- 24KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.032.etl
- 12KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.033.etl
- 20KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.034.etl
- 24KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.035.etl
- 24KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.036.etl
- 12KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.037.etl
- 12KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.038.etl
- 28KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.039.etl
- 12KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.040.etl
- 20KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.041.etl
- 20KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.042.etl
- 24KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.043.etl
- 24KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.044.etl
- 24KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.045.etl
- 24KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.046.etl
- 28KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.047.etl
- 12KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.048.etl
- 12KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.049.etl
- 12KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.050.etl
- 12KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.051.etl
- 20KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.052.etl
- 24KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.053.etl
- 12KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.054.etl
- 20KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.055.etl
- 24KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.056.etl
- 12KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.057.etl
- 20KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.058.etl
- 24KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.059.etl
- 28KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.060.etl
- 12KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.061.etl
- 20KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.062.etl
- 20KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.063.etl
- 24KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.064.etl
- 28KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.065.etl
- 12KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.066.etl
- 12KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.067.etl
- 12KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.068.etl
- 12KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.069.etl
- 12KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-6C7F82C92F03\NotificationUxBroker.070.etl
- 12KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190610.133957.641.1.etl - 20KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190610.150140.091.1.etl - 16KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190610.153925.735.1.etl - 20KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190610.163955.604.1.etl - 24KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190610.174255.766.1.etl - 20KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190611.084926.620.1.etl - 60KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190611.093937.477.1.etl - 20KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190611.103929.821.1.etl - 20KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190611.110333.773.1.etl - 60KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190611.113930.485.1.etl - 20KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190611.123930.939.1.etl - 20KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190611.133930.789.1.etl - 20KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190611.144135.086.1.etl - 16KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190611.155741.468.1.etl - 20KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190612.092554.713.1.etl - 136KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190612.092554.713.10.etl - 136KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190612.092554.713.11.etl - 24KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190612.092554.713.2.etl - 136KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190612.092554.713.3.etl - 136KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190612.092554.713.4.etl - 136KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190612.092554.713.5.etl - 136KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190612.092554.713.6.etl - 136KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190612.092554.713.7.etl - 136KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190612.092554.713.8.etl - 136KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190612.092554.713.9.etl - 136KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190612.095229.491.1.etl - 136KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190612.095229.491.2.etl - 36KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190612.114250.240.1.etl - 20KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190612.120111.009.1.etl - 56KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190612.124448.054.1.etl - 20KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190612.133938.832.1.etl - 20KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190612.143944.601.1.etl - 20KB
C:\WINDOWS\TEMP\_351DEF8B-27B7-43CA-B537-
6C7F82C92F03\WindowsUpdate.20190612.154627.837.1.etl - 12KB
C:\Users\Moorthy\AppData\Local\Microsoft\Windows\Burn\Burn\desktop.ini - 174B
C:\Users\Moorthy\AppData\Local\Microsoft\Windows\History\History.IE5\container.dat
- 0B

-------------------
Total number of deleted files: 278
Total size deleted: 11MB
-------------------

List of files marked for deletion at reboot:

C:\Users\Moorthy\Local Settings\Application Data\Microsoft\Internet


Explorer\MSIMGSIZ.DAT - 47KB
C:\Users\Moorthy\Local Settings\Application Data\Microsoft\Internet
Explorer\CacheStorage\edb.log - 512KB
C:\Users\Moorthy\Local Settings\Application Data\Microsoft\Internet
Explorer\CacheStorage\edbtmp.log - 512KB
C:\Users\Moorthy\AppData\Local\Temp\AdobeARM.log - 891B
C:\Users\Moorthy\AppData\Local\Temp\aria-debug-9148.log - 470B
C:\Users\Moorthy\AppData\Local\Temp\~DF1DBB3662D8E62373.TMP - 16KB
C:\Users\Moorthy\AppData\Local\Temp\~DF3FE8EDFE3375A031.TMP - 16KB
C:\Users\Moorthy\AppData\Local\Temp\~DF7069AF5E6DEC77B2.TMP - 16KB
C:\Users\Moorthy\AppData\Local\Temp\~DF9985EC8544C63306.TMP - 512B
C:\Users\Moorthy\AppData\Local\Temp\~DFE65FF3A3ACC7DF46.TMP - 32KB
C:\Users\Moorthy\AppData\Local\Temp\~DFFDC2849EA05F01B1.TMP - 16KB
C:\WINDOWS\TEMP\mat-debug-3188.log - 0B
C:\WINDOWS\TEMP\MOORTHY-ESAKKY-20190612-1554.log - 16KB
C:\WINDOWS\TEMP\officeclicktorun.exe_streamserver(20190612155451C74).log - 0B
C:\WINDOWS\PFRO.log - 8KB
C:\WINDOWS\setupact.log - 0B
C:\WINDOWS\setuperr.log - 0B
C:\WINDOWS\debug\PASSWD.log - 0B

-------------------
Total number of files marked for deletion at reboot: 18
Total size: 1MB
-------------------

Deleted registry entries:


HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Streams
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\WordWheelQuery
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ico\
OpenWithList\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ini\
OpenWithList\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.log\
OpenWithList\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdf\
OpenWithList\ key: a
HKEY_CLASSES_ROOT\.pcb
HKEY_CLASSES_ROOT\Google.OneClickProcessLauncherMachine
HKEY_CLASSES_ROOT\Google.OneClickProcessLauncherMachine.1.0
HKEY_CLASSES_ROOT\CLSID\{0FD16473-86A0-4991-B88A-D48733BF9873}
HKEY_CLASSES_ROOT\CLSID\{CDF5DD86-4F10-4386-92AF-DF0F30719FDF}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Folders key:
C:\ProgramData\Kaspersky Lab\AVP19.0.0\SysWHist\file_cache\
HKEY_USERS\S-1-5-19\Software\Hewlett-Packard
HKEY_USERS\S-1-5-19\Software\Microsoft\SystemCertificates\CA
HKEY_USERS\S-1-5-19\Software\Microsoft\SystemCertificates\Disallowed
HKEY_USERS\S-1-5-19\Software\Microsoft\SystemCertificates\Root\Certificates
HKEY_USERS\S-1-5-19\Software\Microsoft\SystemCertificates\Root\CRLs
HKEY_USERS\S-1-5-19\Software\Microsoft\SystemCertificates\Root\CTLs
HKEY_USERS\S-1-5-19\Software\Microsoft\SystemCertificates\SmartCardRoot
HKEY_USERS\S-1-5-19\Software\Microsoft\SystemCertificates\trust
HKEY_USERS\S-1-5-19\Software\Microsoft\SystemCertificates\TrustedPeople
HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet
Settings\Connections
HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Uninstall
HKEY_USERS\S-1-5-19\System\GameConfigStore
HKEY_USERS\S-1-5-20\Software\Microsoft\SystemCertificates\CA
HKEY_USERS\S-1-5-20\Software\Microsoft\SystemCertificates\Disallowed
HKEY_USERS\S-1-5-20\Software\Microsoft\SystemCertificates\Root\Certificates
HKEY_USERS\S-1-5-20\Software\Microsoft\SystemCertificates\Root\CRLs
HKEY_USERS\S-1-5-20\Software\Microsoft\SystemCertificates\Root\CTLs
HKEY_USERS\S-1-5-20\Software\Microsoft\SystemCertificates\SmartCardRoot
HKEY_USERS\S-1-5-20\Software\Microsoft\SystemCertificates\trust
HKEY_USERS\S-1-5-20\Software\Microsoft\SystemCertificates\TrustedPeople
HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet
Settings\Connections
HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\StorageSense
HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Uninstall
HKEY_USERS\S-1-5-20\System\GameConfigStore
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-1002\Control Panel\Bluetooth
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-1002\Control Panel\don't load
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-1002\Printers\DevModePerUser
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-1002\Software\Adobe\Acrobat
Reader\10.0\AVGeneral\cRecentFiles
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-1002\Software\Adobe\Adobe
Synchronizer
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-1002\Software\AppDataLow
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-1002\Software\Google\Software
Removal Tool\Cleaner
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-1002\Software\Microsoft\Active
Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\ActiveSync
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\CommsAphost
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\EventSystem
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-1002\Software\Microsoft\F12
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-1002\Software\Microsoft\GameBar
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Input\EC
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Internet Explorer\BrowserEmulation\LowMic
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Internet Explorer\IETld
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Internet Explorer\LowRegistry\DontShowMeThisDialogAgain
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Internet Explorer\PageSetup
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Internet Explorer\Zoom
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Messaging\PerProviderSettings
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Messaging\PerSIMSettings
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Office\16.0\Common\DrawAlerts
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Office\16.0\Common\ExperimentEcs\all
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Office\16.0\Common\ExperimentEcs\excel
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Office\16.0\Common\ExperimentEcs\officeclicktorun\Overrides
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Office\16.0\Common\ExperimentEcs\Overrides
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Office\16.0\Common\ExperimentEcs\powerpoint
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Office\16.0\Common\ExperimentEcs\sdxhelper
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Office\16.0\Common\ExperimentEcs\word
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Office\16.0\Common\Migration
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Office\16.0\Common\TrustCenter
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Office\16.0\WEF\TrustedCatalogs
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Office\Common\CrashPersistence\POWERPNT
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Office\Common\CrashPersistence\SDXHELPE
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\OneDrive\Installer
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Phone\ShellUI
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\SystemCertificates\CA\CRLs
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\SystemCertificates\CA\CTLs
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\SystemCertificates\Disallowed
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\SystemCertificates\MY
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\SystemCertificates\Root\Certificates
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\SystemCertificates\Root\CRLs
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\SystemCertificates\Root\CTLs
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\SystemCertificates\SmartCardRoot
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\SystemCertificates\trust
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\SystemCertificates\TrustedPeople
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-1002\Software\Microsoft\Unified
Store\HighWaterMarks
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\CreativeEvent
s\FeatureManagement
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\CreativeEvent
s\SubscribedContent-202914
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\CreativeEvent
s\SubscribedContent-280810
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\CreativeEvent
s\SubscribedContent-280811
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\CreativeEvent
s\SubscribedContent-280813
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\CreativeEvent
s\SubscribedContent-280815
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\CreativeEvent
s\SubscribedContent-310091
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\CreativeEvent
s\SubscribedContent-314559
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\CreativeEvent
s\SubscribedContent-314563
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\CreativeEvent
s\SubscribedContent-338393
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\CreativeEvent
s\SubscribedContent-346481
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\CreativeEvent
s\SubscribedContent-353694
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\CreativeEvent
s\SubscribedContent-353698
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\CreativeEvent
s\SubscribedContent-OneDriveDesktop
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\CreativeEvent
s\SubscribedContent-OneDriveDocuments
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\CreativeEvent
s\SubscribedContent-OneDrivePictures
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\Subscriptions
\314559\Aliases
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Explorer\BamThrottling
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Explorer\BannerStore
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ico\OpenWithList
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ini\OpenWithList
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.log\OpenWithList
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Explorer\LowRegistry
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Explorer\RunMRU
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{B267E3AD-A825-
4A09-82B9-EEC22AA3B847}\Count
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\FontSmoothing
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\DesktopSwitch
Completed
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\ImmersiveShel
l
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\LogonSoundHas
BeenPlayed
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\ModeTriggerCa
chedKey
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\RunStuffHasBe
enRun
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\StartupHasBee
nRun
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\TabletModeCon
trollerInitialized
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\VirtualDeskto
ps
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings\P3P
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Passport\LowDAMap
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Mobility
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\RunOnce
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Search\Launch
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Security and Maintenance\Checks\
{01979c6a-42fa-414c-b8aa-eee2c8202018}.check.100
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Security and Maintenance\Checks\
{01979c6a-42fa-414c-b8aa-eee2c8202018}.check.101
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Security and Maintenance\Checks\
{11CD958A-C507-4EF3-B3F2-5FD9DFBD2C78}.check.101
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Security and Maintenance\Checks\
{134EA407-755D-4A93-B8A6-F290CD155023}.check.8001
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Security and Maintenance\Checks\
{2374911B-B114-42FE-900D-54F95FEE92E5}.check.100
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Security and Maintenance\Checks\
{34A3697E-0F10-4E48-AF3C-F869B5BABEBB}.check.9001
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Security and Maintenance\Checks\
{34A3697E-0F10-4E48-AF3C-F869B5BABEBB}.check.9002
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Security and Maintenance\Checks\
{34A3697E-0F10-4E48-AF3C-F869B5BABEBB}.check.9003
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Security and Maintenance\Checks\
{34A3697E-0F10-4E48-AF3C-F869B5BABEBB}.check.9004
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Security and Maintenance\Checks\
{96F4A050-7E31-453C-88BE-9634F4E02139}.check.8010
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Security and Maintenance\Checks\
{AA4C798D-D91B-4B07-A013-787F5803D6FC}.check.100
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Security and Maintenance\Checks\
{B447B4DB-7780-11E0-ADA3-18A90531A85A}.check.100
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Security and
Maintenance\Providers\EventLog\{01979c6a-42fa-414c-b8aa-eee2c8202018}
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Security and
Maintenance\Providers\EventLog\{11CD958A-C507-4EF3-B3F2-5FD9DFBD2C78}
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Security and
Maintenance\Providers\EventLog\{134EA407-755D-4A93-B8A6-F290CD155023}
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Security and
Maintenance\Providers\EventLog\{2374911B-B114-42FE-900D-54F95FEE92E5}
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Security and
Maintenance\Providers\EventLog\{34A3697E-0F10-4E48-AF3C-F869B5BABEBB}
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\CurrentVersion\Security and
Maintenance\Providers\EventLog\{AA4C798D-D91B-4B07-A013-787F5803D6FC}
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Microsoft\Windows\Windows Error Reporting\Hangs
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-1002\Software\Microsoft\Windows
NT\CurrentVersion\Fonts
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-1002\Software\Microsoft\Windows
NT\CurrentVersion\HostActivityManager
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-1002\Software\Microsoft\Windows
NT\CurrentVersion\Network
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-1002\Software\Microsoft\Windows
NT\CurrentVersion\Windows\InteractiveControl
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-1002\Software\Microsoft\Windows
NT\CurrentVersion\Windows\Pen\PLOC
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-1002\Software\Microsoft\Windows
Security Health
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\Software\Wow6432Node\Microsoft\Active Setup\Installed Components\{89B4C1CD-
B018-4511-B0A1-5476DBF70820}
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-1002\Software\Classes\Local
Settings\Software\Microsoft\Windows\CurrentVersion\TrayNotify\ToastAppIdentities
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-1002\Software\Classes\Local
Settings\Software\Microsoft\Windows\CurrentVersion\WorkFolders\Partnership
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-1002\Software\Classes\Local
Settings\Software\Microsoft\Windows\Shell\MuiCache
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-
1002\System\CurrentControlSet\Control\NotifyDeviceReboot
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-1002_Classes\Local
Settings\Software\Microsoft\Windows\CurrentVersion\TrayNotify\ToastAppIdentities
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-1002_Classes\Local
Settings\Software\Microsoft\Windows\CurrentVersion\WorkFolders\Partnership
HKEY_USERS\S-1-5-21-788598144-1360697814-2248145429-1002_Classes\Local
Settings\Software\Microsoft\Windows\Shell\MuiCache
HKEY_USERS\S-1-5-18\Console
HKEY_USERS\S-1-5-18\Printers\DevModePerUser
HKEY_USERS\S-1-5-18\Software\Microsoft\Cryptography
HKEY_USERS\S-1-5-18\Software\Microsoft\IdentityCRL\StoredIdentities
HKEY_USERS\S-1-5-18\Software\Microsoft\Office\16.0\Common\ExperimentEcs\all
HKEY_USERS\S-1-5-
18\Software\Microsoft\Office\16.0\Common\ExperimentEcs\officeclicktorun\Overrides
HKEY_USERS\S-1-5-18\Software\Microsoft\Office\16.0\Common\ExperimentEcs\Overrides
HKEY_USERS\S-1-5-18\Software\Microsoft\Office\16.0\Common\TrustCenter
HKEY_USERS\S-1-5-18\Software\Microsoft\SystemCertificates\CA\CRLs
HKEY_USERS\S-1-5-18\Software\Microsoft\SystemCertificates\CA\CTLs
HKEY_USERS\S-1-5-18\Software\Microsoft\SystemCertificates\Disallowed
HKEY_USERS\S-1-5-18\Software\Microsoft\SystemCertificates\My
HKEY_USERS\S-1-5-18\Software\Microsoft\SystemCertificates\Root\Certificates
HKEY_USERS\S-1-5-18\Software\Microsoft\SystemCertificates\Root\CRLs
HKEY_USERS\S-1-5-18\Software\Microsoft\SystemCertificates\Root\CTLs
HKEY_USERS\S-1-5-18\Software\Microsoft\SystemCertificates\SmartCardRoot
HKEY_USERS\S-1-5-18\Software\Microsoft\SystemCertificates\trust
HKEY_USERS\S-1-5-18\Software\Microsoft\SystemCertificates\TrustedPeople
HKEY_USERS\S-1-5-
18\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdf\OpenWithList
HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet
Settings\5.0\Cache\Extensible Cache
HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run
HKEY_USERS\S-1-5-
18\Software\Microsoft\Windows\CurrentVersion\Telephony\HandoffPriorities\MediaModes
HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Themes\Personalize
HKEY_USERS\S-1-5-18\Software\Microsoft\Windows NT\CurrentVersion\Devices
HKEY_USERS\S-1-5-18\Software\Microsoft\Windows NT\CurrentVersion\PrinterPorts
HKEY_USERS\S-1-5-18\System\GameConfigStore
-------------------

Potrebbero piacerti anche