Start::
SystemRestore:On
CreateRestorePoint:
CloseProcesses:
HKU\S-1-5-21-3322077908-2260706495-1581740148-1002\Software\Classes\regfile: <==== ATTENTION
HKU\S-1-5-21-3322077908-2260706495-1581740148-1002\Software\Classes\.reg: => <==== ATTENTION
HKU\S-1-5-21-3322077908-2260706495-1581740148-1002\Software\Classes\.bat: => <==== ATTENTION
HKU\S-1-5-21-3322077908-2260706495-1581740148-1002\Software\Classes\.cmd: => <==== ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
Task: {ABC43F7B-8370-4599-8C6E-42126A22A39B} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3322077908-2260706495-1581740148-500 => C:\Users\acarl\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe /reporting (No File)
Task: C:\WINDOWS\Tasks\EOSv3 Scheduler onLogOn.job => C:\Users\acarl\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe
Task: C:\WINDOWS\Tasks\EOSv3 Scheduler onTime.job => C:\Users\acarl\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe
S3 WinRing0_1_2_0; \??\C:\Users\acarl\AppData\Local\Temp\tmpC141.tmp [X] <==== ATTENTION
EmptyTemp:
End::