start::
CreateRestorePoint:
CloseProcesses:
Hosts:
RemoveProxy:
HKU\S-1-5-21-1168440776-3229650131-92687350-1001\...\Run: [chrev] => cmd.exe /c start www.exinariuminix.info
2020-07-01 22:48 - 2020-07-01 22:48 - 000000000 ____D C:\Users\chrev\Desktop\Tor Browser
2020-07-01 22:45 - 2020-07-01 22:45 - 067015992 _____ C:\Users\chrev\Desktop\torbrowser-install-win64-9.5.1_en-US.exe
EmptyTemp:
cmd: ipconfig /flushdns
cmd: netsh winsock reset
cmd: DISM /Online /Cleanup-image /Restorehealth
cmd: sfc /scannow
end::