CreateRestorePoint: CloseProcesses: Task: {247E9F35-5B20-4A4B-8D5F-F063D50BBF72} - System32\Tasks\update-S-1-5-21-944890536-3398548146-1570995230-1001 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: ) Task: {49FF4F3E-64B4-46AD-9DB7-D07523ED7ED3} - System32\Tasks\Intelligent StandbyList Cleaner => C:\Program Files\ISLC v1.0.2.2\Intelligent standby list cleaner ISLC.exe [422592 2020-02-14] (Wagnardsoft -> Wagnardsoft) Task: {7C5E4EFB-813D-4878-A5D4-A8CECDBEAA6B} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: ) Task: C:\Windows\Tasks\update-S-1-5-21-944890536-3398548146-1570995230-1001.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe Task: C:\Windows\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe AlternateDataStreams: C:\Users\MrSusceptible\ntuser.ini:NTV [13796] AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [490] CMD: cscript %windir%\System32\slmgr.vbs /dli Reg: REG ADD "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer" /V SmartScreenEnabled /T REG_SZ /D RequireAdmin /f Reg: REG ADD "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Dfrg\BootOptimizeFunction" /V Enable /T REG_SZ /D n /f Reg: REG ADD "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Dfrg\BootOptimizeFunction" /V OptimizeComplete /T REG_SZ /D no /f Reg: REG ADD "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon" /V PowerdownAfterShutdown /T REG_SZ /D 1 /f Reg: REG ADD "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management" /V ClearPageFileAtShutdown /T REG_DWORD /D 0 /f Reg: REG ADD "HKEY_CURRENT_USER\Control Panel\Desktop" /V MenuShowDelay /T REG_SZ /D 400 /f Reg: REG ADD "HKEY_CURRENT_USER\Control Panel\Desktop" /V WaitToKillAppTimeout /T REG_SZ /D 1200 /f Reg: REG ADD "HKEY_CURRENT_USER\Control Panel\Desktop" /V HungAppTimeout /T REG_SZ /D 1200 /f Reg: REG ADD "HKEY_CURRENT_USER\Control Panel\Desktop" /V AutoEndTasks /T REG_SZ /D 1 /f Reg: REG ADD "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control" /V WaitToKillServiceTimeout /T REG_SZ /D 1200 /f c:\windows\temp\*.* C:\Users\CurrentUserName\AppData\Local\Temp\*.* C:\Windows\SoftwareDistribution\Download\ * EmptyTemp: