start::
CreateRestorePoint:
CloseProcesses:
RemoveProxy:
HKU\S-1-5-21-3822870618-3840184120-1202081770-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.fr-gogo.com/
SearchScopes: HKU\S-1-5-21-3822870618-3840184120-1202081770-1001 -> DefaultScope {78DD0DA0-F651-4F65-BE39-CD30B9913B1E} URL = hxxp://www.fr-gogo.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3822870618-3840184120-1202081770-1001 -> {78DD0DA0-F651-4F65-BE39-CD30B9913B1E} URL = hxxp://www.fr-gogo.com/search?q={searchTerms}
BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2019-08-22] (McAfee, LLC -> McAfee, Inc.)
BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2019-08-22] (McAfee, LLC -> McAfee, Inc.)
Edge HomeButtonPage: HKU\S-1-5-21-3822870618-3840184120-1202081770-1001 -> hxxp://www.fr-gogo.com/
CHR HomePage: Default -> hxxp://www.fr-gogo.com/
2020-04-21 16:03 - 2020-02-27 17:18 - 000000000 ____D C:\ProgramData\Doctor Web
2020-04-21 16:00 - 2020-02-27 17:18 - 000000000 ____D C:\Users\louis\Doctor Web
2020-04-21 15:57 - 2019-08-12 20:33 - 000000000 ____D C:\Users\louis\AppData\Roaming\BitTorrent
AlternateDataStreams: C:\ProgramData\TEMP:2398E95B [280]
EmptyTemp:
cmd: ipconfig /flushdns
cmd: md C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database
cmd: DISM /Online /Cleanup-image /Restorehealth
end::