==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3031754157-338325955-3198346124-1002_Classes\CLSID{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 → C:\Users\Andy\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3031754157-338325955-3198346124-1002_Classes\CLSID{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 → C:\windows\system32\igfxEM.exe (Intel Corporation)
CustomCLSID: HKU\S-1-5-21-3031754157-338325955-3198346124-1002_Classes\CLSID{9E506282-69D3-5ABA-9C1D-15994B37F4AC}\InprocServer32 → C:\Program Files (x86)\Lenovo\LenovoAppShop\bin\npAppUp_x64.dll (Intel)
CustomCLSID: HKU\S-1-5-21-3031754157-338325955-3198346124-1002_Classes\CLSID{9E506282-69D3-5ABA-9C1D-15994B37F4AD}\InprocServer32 → C:\Program Files (x86)\Lenovo\LenovoAppShop\bin\npAppUp_x64.dll (Intel)
CustomCLSID: HKU\S-1-5-21-3031754157-338325955-3198346124-1002_Classes\CLSID{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 → C:\Users\Andy\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3031754157-338325955-3198346124-1002_Classes\CLSID{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 → C:\Users\Andy\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3031754157-338325955-3198346124-1002_Classes\CLSID{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 → C:\Users\Andy\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3031754157-338325955-3198346124-1002_Classes\CLSID{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 → C:\Users\Andy\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3031754157-338325955-3198346124-1002_Classes\CLSID{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 → C:\Users\Andy\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3031754157-338325955-3198346124-1002_Classes\CLSID{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 → C:\Users\Andy\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3031754157-338325955-3198346124-1002_Classes\CLSID{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 → C:\Users\Andy\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3031754157-338325955-3198346124-1002_Classes\CLSID{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 → C:\Users\Andy\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3031754157-338325955-3198346124-1002_Classes\CLSID{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 → C:\Users\Andy\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.)
==================== Restore Points =========================
04-06-2015 21:28:08 Scheduled Checkpoint
09-06-2015 19:17:28 Windows Update
12-06-2015 19:53:33 Windows Update
15-06-2015 20:26:20 Windows Update
19-06-2015 18:51:45 avast! antivirus system restore point
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____N C:\windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0B589DAA-CB87-46FC-BC21-5199E69AEB6F} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => schtasks
Task: {0BF38806-35A5-44C3-A196-8235F24E3611} - System32\Tasks\Microsoft Office 15 Sync Maintenance for ANDYB-Andy AndyB => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2015-03-10] (Microsoft Corporation)
Task: {169C218E-069C-4213-B225-135C8A10940F} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\Time-10s => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation)
Task: {340F0305-3581-44A6-B48C-B7F0FA3AED0D} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2014-02-28] ()
Task: {41AB895C-37DD-444A-9CBB-E31633BBF963} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\Logon-10s => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation)
Task: {4654C63F-6408-4354-AB7C-E192D0C76203} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-04-14] (Microsoft Corporation)
Task: {49D9217A-97F1-4197-B2CC-C3F9A0CAE46D} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => C:\Windows\system32\compattel\DiagTrackRunner.exe [2015-03-15] (Microsoft Corporation)
Task: {5625E8C6-3375-4476-99C6-43E45419C8BF} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation)
Task: {5937C814-3ECF-4E8C-8344-17769BF271BB} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-10s => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation)
Task: {667FE7B5-C816-49B8-AA7C-448E32ACE132} - System32\Tasks\SoftwareProvider-S-394265216 => c:\programdata\trusted publisher\systemupgrader\SoftwareProvider.exe <==== ATTENTION
Task: {6F15E9D6-8676-4791-9E4E-8D314ADED93D} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\windows\system32\MRT.exe [2015-06-16] (Microsoft Corporation)
Task: {7222744C-4263-40EA-BDE0-FEA15082AE7D} - System32\Tasks\PDVDServ Task => C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.EXE [2013-03-09] (CyberLink Corp.)
Task: {74D2EFA9-3E02-4FF8-B5EC-1C350356D3B6} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-04-14] (Microsoft Corporation)
Task: {86C76842-9B8C-4AF8-9729-6AE2D08C4D68} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-3031754157-338325955-3198346124-1002Core => C:\Users\Andy\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-19] (Dropbox, Inc.)
Task: {A65A27DC-E5EA-41AF-9D1A-AFE0A684A545} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-3031754157-338325955-3198346124-1002UA => C:\Users\Andy\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-19] (Dropbox, Inc.)
Task: {A75C81C8-5E72-4885-8DA6-CC26B0A932D7} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-10s => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation)
Task: {B24862E1-C88E-4192-BB9C-3B65EAD43BDE} - System32\Tasks\avastBCLRestart_chrome.exe => Chrome.exe
Task: {B3EFACE7-5CB2-4DF0-A85F-7D63E478CB0D} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2015-03-10] (Microsoft Corporation)
Task: {BA4AFC4B-1E81-4127-9626-971BB18BED6C} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2015-05-15] (Microsoft Corporation)
Task: {BDF501A1-B674-420C-9532-8BFC283C7AAC} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {BE0BF9FE-82FC-42EF-BB30-C8AEE9B319F6} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated)
Task: {E1466A2C-6B7F-405D-B384-594F90268C47} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2014-02-28] ()
Task: {E92FC764-CF9D-4BA0-83C1-220B64D688D8} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-05-06] (Microsoft Corporation)
Task: {F22F64BA-B6DC-44C8-9027-FD906A727945} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-10s => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation)
Task: {F232CB57-2E64-484C-9E84-1249FA270230} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-06-19] (Avast Software s.r.o.)
Task: {FFAF7D97-1E89-4272-8A72-ECC5E6A16075} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2015-03-10] (Microsoft Corporation)
Task: C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-3031754157-338325955-3198346124-1002Core.job => C:\Users\Andy\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-3031754157-338325955-3198346124-1002UA.job => C:\Users\Andy\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\windows\Tasks\SoftwareProvider-S-394265216.job => c:\programdata\trusted publisher\systemupgrader\SoftwareProvider.exeS/schedule /profile c:\programdata\trusted publisher\systemupgrader\394265216.ini <==== ATTENTION
==================== Loaded Modules (Whitelisted) ==============
2015-01-20 23:35 - 2015-01-20 23:35 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2015-01-20 23:35 - 2015-01-20 23:35 - 01346344 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2015-03-10 22:43 - 2014-05-20 09:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
2013-12-13 23:13 - 2012-04-24 11:43 - 00390632 ____N () C:\Program Files\CyberLink\Shared files\RichVideo64.exe
2013-12-13 23:16 - 2013-12-13 23:16 - 00068368 _____ () C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe
2013-12-13 23:16 - 2013-12-13 23:16 - 00669288 _____ () C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfDataStorageInterface.dll
2015-03-10 22:49 - 2015-03-10 22:49 - 08898720 _____ () C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2013-09-07 10:48 - 2013-09-07 10:48 - 00011264 _____ () C:\Program Files (x86)\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll
2013-09-07 10:45 - 2013-09-07 10:45 - 00086016 _____ () C:\Program Files (x86)\Bluetooth Suite\Modules\Map\MAP.dll
2013-09-07 10:52 - 2013-09-07 10:52 - 00012928 _____ () C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe
2015-01-20 23:35 - 2015-01-20 23:35 - 00306984 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxslt.dll
2015-06-19 18:54 - 2015-06-19 18:54 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-06-19 18:54 - 2015-06-19 18:54 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2015-06-21 18:45 - 2015-06-21 18:45 - 02952704 _____ () C:\Program Files\AVAST Software\Avast\defs\15062101\algo.dll
2015-06-22 20:02 - 2015-06-22 20:02 - 02952704 _____ () C:\Program Files\AVAST Software\Avast\defs\15062203\algo.dll
2014-11-18 23:05 - 2015-04-16 18:40 - 00776192 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2015-01-21 20:32 - 2015-04-23 03:16 - 04962816 _____ () C:\Program Files (x86)\Steam\v8.dll
2014-11-18 23:05 - 2015-06-04 19:56 - 02407104 _____ () C:\Program Files (x86)\Steam\video.dll
2015-01-21 20:32 - 2015-04-23 03:16 - 01556992 _____ () C:\Program Files (x86)\Steam\icui18n.dll
2015-01-21 20:32 - 2015-04-23 03:16 - 01187840 _____ () C:\Program Files (x86)\Steam\icuuc.dll
2014-11-18 23:05 - 2014-12-01 22:31 - 02396672 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
2014-11-18 23:05 - 2014-12-01 22:31 - 00479744 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
2014-11-18 23:05 - 2014-12-01 22:31 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
2014-11-18 23:05 - 2014-12-01 22:31 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
2014-11-18 23:05 - 2014-12-01 22:31 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
2014-11-18 23:05 - 2015-06-04 19:56 - 00703168 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2015-06-16 20:28 - 2015-06-17 20:11 - 41287224 _____ () C:\Users\Andy\AppData\Roaming\Spotify\libcef.dll
2015-04-28 21:15 - 2015-04-28 21:15 - 00569856 _____ () C:\Users\Andy\AppData\Local\Pokki\Engine\ppGoogleNaClPluginChrome.dll
2015-04-28 21:15 - 2015-04-28 21:15 - 01400846 _____ () C:\Users\Andy\AppData\Local\Pokki\Engine\avcodec-54.dll
2015-04-28 21:15 - 2015-04-28 21:15 - 00151054 _____ () C:\Users\Andy\AppData\Local\Pokki\Engine\avutil-51.dll
2015-04-28 21:15 - 2015-04-28 21:15 - 00222734 _____ () C:\Users\Andy\AppData\Local\Pokki\Engine\avformat-54.dll
2015-06-22 19:00 - 2015-06-22 19:00 - 00043008 _____ () c:\users\andy\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpgu9czm.dll
2015-03-04 22:45 - 2015-03-19 08:15 - 00750080 _____ () C:\Users\Andy\AppData\Roaming\Dropbox\bin\libGLESv2.dll
2015-03-04 22:45 - 2015-03-19 08:15 - 00047616 _____ () C:\Users\Andy\AppData\Roaming\Dropbox\bin\libEGL.dll
2015-03-04 22:45 - 2015-03-19 08:15 - 00865280 _____ () C:\Users\Andy\AppData\Roaming\Dropbox\bin\plugins\platforms\qwindows.dll
2015-03-04 22:45 - 2015-03-19 08:15 - 00200704 _____ () C:\Users\Andy\AppData\Roaming\Dropbox\bin\plugins\imageformats\qjpeg.dll
2015-03-04 22:45 - 2015-03-19 08:15 - 00010240 _____ () C:\Users\Andy\AppData\Roaming\Dropbox\bin\QtQuick.2\qtquick2plugin.dll
2015-03-04 22:45 - 2015-03-19 08:15 - 00726016 _____ () C:\Users\Andy\AppData\Roaming\Dropbox\bin\QtQuick\Controls\qtquickcontrolsplugin.dll
2015-03-04 22:45 - 2015-03-19 08:15 - 00010240 _____ () C:\Users\Andy\AppData\Roaming\Dropbox\bin\QtQuick\Window.2\windowplugin.dll
2015-06-19 18:54 - 2015-06-19 18:54 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2015-06-16 20:28 - 2015-06-17 20:11 - 01488440 _____ () C:\Users\Andy\AppData\Roaming\Spotify\libglesv2.dll
2015-06-16 20:28 - 2015-06-17 20:11 - 00079928 _____ () C:\Users\Andy\AppData\Roaming\Spotify\libegl.dll
2014-11-18 23:05 - 2015-05-11 20:01 - 36302728 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll
2013-12-13 22:45 - 2013-08-19 19:12 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2015-01-20 23:35 - 2015-01-20 23:35 - 01044776 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2014-10-11 14:06 - 2014-10-11 14:06 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2014-11-18 21:41 - 2014-11-14 22:15 - 01077064 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.65\libglesv2.dll
2014-11-18 21:41 - 2014-11-14 22:15 - 00211272 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.65\libegl.dll
2014-11-18 21:41 - 2014-11-14 22:15 - 09009480 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.65\pdf.dll
2014-11-18 21:41 - 2014-11-14 22:15 - 01677128 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.65\ffmpegsumo.dll
2014-11-18 21:41 - 2014-11-14 22:15 - 14910280 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.65\PepperFlash\pepflashplayer.dll