Start:: SystemRestore: on CloseProcesses: CreateRestorePoint: Removeproxy: Hosts: HKU\S-1-5-21-2034503659-2028986574-3912516512-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.search.ask.com/?l=dis&o=15438 SearchScopes: HKU\S-1-5-21-2034503659-2028986574-3912516512-1001 -> DefaultScope {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=BT5&o=&src=crm&q={searchTerms}&locale= SearchScopes: HKU\S-1-5-21-2034503659-2028986574-3912516512-1001 -> {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=BT5&o=&src=crm&q={searchTerms}&locale= Edge DefaultSearchKeyword: Default -> askwebs Edge DefaultSuggestURL: Default -> hxxps://ss.search.ask.com/ss?li=ff&sstype=prefix&limit=10&hl=en&q={searchTerms}&enableSearch=true&rdrct=no Edge Extension: (Ask Web Search) - C:\Users\titof\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jbldcomffojmkkjbblhcebeicbncmjpf [2020-08-17] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] HKU\S-1-5-21-2034503659-2028986574-3912516512-1001\...\MountPoints2: {02fc1fd4-eea9-11ea-a5cf-001a7dda7111} - "J:\setup.exe" HKU\S-1-5-21-2034503659-2028986574-3912516512-1001\...\MountPoints2: {6651582e-eed8-11ea-a5d0-e0d55e87fdba} - "J:\setup.exe" cmd: ipconfig /flushdns cmd: netsh advfirewall reset cmd: netsh advfirewall set allprofiles state on cmd: netsh winsock reset Emptytemp: End::