Start::
CloseProcesses:
CreateRestorePoint:
GroupPolicy\User: Restriction ? <==== ATTENTION
U3 idsvc; no ImagePath
CustomCLSID: HKU\S-1-5-21-2772892075-776610616-2658955011-1003_Classes\CLSID\{092dfa86-5807-5a94-bf3b-5a53ba9e5308}\InprocServer32 -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll => No File
CustomCLSID: HKU\S-1-5-21-2772892075-776610616-2658955011-1003_Classes\CLSID\{144DF3B2-2402-47AE-9583-5A045929A8D4}\InprocServer32 -> C:\Users\alexander\AppData\Local\Google\Update\1.3.33.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2772892075-776610616-2658955011-1003_Classes\CLSID\{91A41FCC-BC02-42D8-A36E-0D27FF9BFFC8}\InprocServer32 -> C:\Users\alexander\AppData\Local\Google\Update\1.3.33.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2772892075-776610616-2658955011-1003_Classes\CLSID\{EA724FD3-844D-43A9-A8C9-A5BC35FC20E4}\InprocServer32 -> C:\Users\alexander\AppData\Local\Google\Update\1.3.33.17\psuser_64.dll => No File
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} => -> No File
Task: {089860B1-9489-4CD2-A369-FD26267499DE} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION
Task: {092A0002-CEAB-4F6D-9872-4EFD00487134} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {1D92B8E2-32D3-48DD-831D-580CDFB1E7D4} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {2377A907-0EF1-4272-BB64-7119A35986FD} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> No File <==== ATTENTION
Task: {3B5A95AF-AAD2-492C-AFD8-D0BD87CDC33E} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION
Task: {69DF5C15-C6AA-4822-94BA-7AED5C2361B3} - \Microsoft\Windows\Setup\GWXTriggers\Time-Weekend -> No File <==== ATTENTION
Task: {79F05988-2250-4E0C-9EBF-6FDBCF163B1C} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTIONTask: {83D5FB3A-4F8D-4736-B8F3-5E431D227047} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {8AFB88DC-A159-4A11-9E29-5DF23500597B} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {8B3AABA7-9840-4F86-9CD2-5025A52C0BFA} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {8F9F413A-2D28-44F1-ADE3-CF693517E1C9} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {BDC7EBD5-F33A-4590-B004-F89A10029FF1} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {C19FC2DD-0F83-4F89-B3C8-48F1B29BB3A1} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {D10BA129-DC3D-460F-B80E-5240E3E9A951} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> No File <==== ATTENTION
Task: {DD0A4FFC-FC8E-4DE2-9FBE-CDBDB20368D0} - \Microsoft\Windows\Setup\gwx\rundetector -> No File <==== ATTENTION
Task: {ECCDC3B6-7861-470A-8EBF-83EDCF3458F5} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {F1645F35-BF36-42B0-A994-53E890A78B6F} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
AlternateDataStreams: C:\Users\justi\Downloads\spelling.jpeg:3or4kl4x13tuuug3Byamue2s4b [97]
AlternateDataStreams: C:\Users\justi\Downloads\spelling.jpeg:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} [0]
FirewallRules: [UDP Query User{0D24E169-7676-41C9-A4A2-6F110D48CCDC}C:\users\alexander\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\alexander\appdata\local\akamai\netsession_win.exe No File
FirewallRules: [TCP Query User{02789F3E-58AC-4EAB-804F-5CD87A06372F}C:\users\alexander\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\alexander\appdata\local\akamai\netsession_win.exe No File
C:\Windows\Temp\*.*
Emptytemp:
End::