Fix result of Farbar Recovery Scan Tool (x64) Version: 22-04-2022
Ran by eytan (03-05-2022 17:55:47) Run:1
Running from C:\Users\eytan\Downloads
Loaded Profiles: eytan & ariel
Boot Mode: Normal
==============================================

fixlist content:
*****************
closeprocesses:
createrestorepoint:
virustotal: C:\Users\ariel\AppData\Local\Programs\RestMinder\RestMinder.exe
AV: McAfee VirusScan (Disabled - Up to date) {9D4501E6-72F6-2877-C789-89AF6F535B2C}
AV: Protection antivirus et antispyware McAfee (Enabled - Up to date) {DA9F8ED0-D0DE-39CC-F55A-51AB4CC1B556}
FW: Pare-feu McAfee (Enabled) {E2A40FF5-9AB1-3894-DE05-F89EB212F22D}
FW: McAfee Firewall (Disabled) {A57E80C3-3899-292F-ECD6-209A91801C57}
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers1_S-1-5-21-858394339-3323934644-574242159-1005: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
ContextMenuHandlers4_S-1-5-21-858394339-3323934644-574242159-1005: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
ContextMenuHandlers5_S-1-5-21-858394339-3323934644-574242159-1005: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"
SearchScopes: HKU\S-1-5-21-858394339-3323934644-574242159-1002 -> DefaultScope {497EC13A-F660-478D-807E-91F2F07CEECF} URL =
SearchScopes: HKU\S-1-5-21-858394339-3323934644-574242159-1002 -> {497EC13A-F660-478D-807E-91F2F07CEECF} URL =
FirewallRules: [UDP Query User{46B904EF-7FCC-49FE-9E29-0F237F0AEA66}C:\program files (x86)\minecraft launcher\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft launcher\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe => No File
FirewallRules: [TCP Query User{2EAA5D5A-54EB-472E-8374-D799F1B34953}C:\program files (x86)\minecraft launcher\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft launcher\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe => No File
FirewallRules: [UDP Query User{5D03F663-CF3F-4923-8C03-84604BEC32F0}C:\program files (x86)\minecraft launcher\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe] => (Block) C:\program files (x86)\minecraft launcher\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe => No File
FirewallRules: [TCP Query User{3833608C-4D07-4F6C-813B-C8359E0253C6}C:\program files (x86)\minecraft launcher\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe] => (Block) C:\program files (x86)\minecraft launcher\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe => No File
FirewallRules: [{CC1C50B2-323D-409D-A650-7D4CD9C8E7EF}] => (Allow) C:\Program Files\BlueStacks\HD-Player.exe => No File
FirewallRules: [UDP Query User{56601AD9-1B2E-4D7D-B203-8CF0759D4173}C:\program files (x86)\minecraft launcher\runtime\jre-x64\bin\javaw.exe] => (Block) C:\program files (x86)\minecraft launcher\runtime\jre-x64\bin\javaw.exe => No File
FirewallRules: [TCP Query User{92917A4C-A159-43F4-A818-B00F906503D8}C:\program files (x86)\minecraft launcher\runtime\jre-x64\bin\javaw.exe] => (Block) C:\program files (x86)\minecraft launcher\runtime\jre-x64\bin\javaw.exe => No File
FirewallRules: [{9BB18993-4042-43CC-833D-64FA5C1C1693}] => (Allow) LPort=1900
FirewallRules: [{84A03A92-B926-4F3E-8C92-FFB41AE6B045}] => (Allow) LPort=2869
FirewallRules: [{9DFF0628-20D5-493C-8AAA-249A30F12901}] => (Allow) C:\Users\sjs18\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [{2492ED4E-66EC-49F0-82C3-05D821DCBC3F}] => (Allow) C:\Users\sjs18\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [{7532C536-89CF-453C-942D-90C71509B38B}] => (Allow) C:\Users\sjs18\AppData\Roaming\Zoom\bin\Zoom.exe => No File
FirewallRules: [{A59834E4-8972-4324-AE12-C868230F1B36}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{FF29D622-4054-4543-ADAC-205AE1B0FC11}] => (Allow) C:\Program Files (x86)\Lenovo\Lenovo Photo Master\PhotoPlus.exe => No File FirewallRules: [TCP Query User{C164FA84-6BB9-47C4-929D-592D4BF53729}C:\program files (x86)\minecraft launcher\runtime\java-runtime-beta\windows-x64\java-runtime-beta\bin\javaw.exe] => (Block) C:\program files (x86)\minecraft launcher\runtime\java-runtime-beta\windows-x64\java-runtime-beta\bin\javaw.exe => No File
FirewallRules: [UDP Query User{0ADC0237-9CE5-4C21-9522-19E768B34167}C:\program files (x86)\minecraft launcher\runtime\java-runtime-beta\windows-x64\java-runtime-beta\bin\javaw.exe] => (Block) C:\program files (x86)\minecraft launcher\runtime\java-runtime-beta\windows-x64\java-runtime-beta\bin\javaw.exe => No File
FirewallRules: [TCP Query User{7D3BC1EA-6DC5-43B1-A624-3504F2D9B757}C:\users\eytan\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe] => (Allow) C:\users\eytan\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe
FirewallRules: [UDP Query User{49D5C9E2-1D30-4FA0-8001-C16E76F1612C}C:\users\eytan\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe] => (Allow) C:\users\eytan\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe
FirewallRules: [TCP Query User{DB559FD6-135D-405F-8913-F5BAB9FB2EE5}C:\users\eytan\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-beta\windows-x64\java-runtime-beta\bin\javaw.exe] => (Block) C:\users\eytan\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-beta\windows-x64\java-runtime-beta\bin\javaw.exe
FirewallRules: [UDP Query User{AA4036CA-7F42-414E-83F8-61906EDD95AD}C:\users\eytan\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-beta\windows-x64\java-runtime-beta\bin\javaw.exe] => (Block) C:\users\eytan\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-beta\windows-x64\java-runtime-beta\bin\javaw.exe
FirewallRules: [{7A48E492-CFFC-46F0-8C5E-06D1D4D9C34F}] => (Allow) C:\Users\ariel\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{6C523A93-EC01-488E-9A76-7F30FD573357}] => (Allow) C:\Users\ariel\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [{FE96FFF8-5B26-4757-B264-7729E5128C5B}] => (Allow) C:\Users\ariel\AppData\Roaming\Zoom\bin\airhost.exe => No File
C:\Program Files (x86)\PremierOpinion
virustotal: C:\Users\ariel\AppData\Roaming\Bloom\Bloom.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\$McRebootA5E6DEAA56$.lnk [2022-05-03]
ShortcutTarget: $McRebootA5E6DEAA56$.lnk -> (No File)
Task: {3AE4A5F2-55CB-4AF2-BF97-97573C0F4C42} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate
Task: {A55126CC-DD12-4934-86CB-DBE80EBA707E} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-858394339-3323934644-574242159-1005 => C:\Users\eytan\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe /reporting (No File)
Task: {B9DF4B88-B7A0-4D3D-BFB1-19746595F21D} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-858394339-3323934644-574242159-1005 => C:\Users\eytan\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe (No File)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation)
CHR StartupUrls: Default -> "hxxps://www.bing.com/?PC=PV04"
CHR DefaultSearchURL: Default -> hxxps://fr.search.yahoo.com/search?fr=mcafee&type=E210FR714G0&p={searchTerms}
CHR DefaultSearchKeyword: Default -> mcafee
CHR DefaultSuggestURL: Default -> hxxps://fr.search.yahoo.com/sugg/gossip/gossip-fr-partner?output=fxjson&appid=mca&source=yahoo_mcafee_searchassist&command={searchTerms}
2022-05-02 20:14 - 2022-05-02 20:20 - 000000000 ____D C:\ProgramData\PC Cleaner
2022-05-02 20:14 - 2022-05-02 20:14 - 006552248 _____ (PC Helpsoft ) C:\Users\eytan\Downloads\PC_Cleaner_5383 (1).exe
2022-05-02 19:29 - 2022-05-02 19:29 - 006552248 _____ (PC Helpsoft ) C:\Users\eytan\Downloads\PC_Cleaner_5383.exe
cmd: sfc /scannow
emptytemp:

*****************

Processes closed successfully.
Restore point was successfully created.
VirusTotal: C:\Users\ariel\AppData\Local\Programs\RestMinder\RestMinder.exe => https://www.virustotal.com/gui/file/f76cccdbcd4f5db33c83c2ae63ba85134b5984bdc36fdba3a1deb858e12f964a/detection/f-f76cccdbcd4f5db33c83c2ae63ba85134b5984bdc36fdba3a1deb858e12f964a-1650632652
"AV: McAfee VirusScan (Disabled - Up to date) {9D4501E6-72F6-2877-C789-89AF6F535B2C}" => removed successfully
"AV: Protection antivirus et antispyware McAfee (Enabled - Up to date) {DA9F8ED0-D0DE-39CC-F55A-51AB4CC1B556}" => removed successfully
"FW: Pare-feu McAfee (Enabled) {E2A40FF5-9AB1-3894-DE05-F89EB212F22D}" => removed successfully
"FW: McAfee Firewall (Disabled) {A57E80C3-3899-292F-ECD6-209A91801C57}" => removed successfully
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => removed successfully
HKU\S-1-5-21-858394339-3323934644-574242159-1005\Software\Classes\*\ShellEx\ContextMenuHandlers\ FileSyncEx => removed successfully
HKU\S-1-5-21-858394339-3323934644-574242159-1005\SOFTWARE\Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => removed successfully
HKU\S-1-5-21-858394339-3323934644-574242159-1005\Software\Classes\Directory\ShellEx\ContextMenuHandlers\ FileSyncEx => removed successfully
HKU\S-1-5-21-858394339-3323934644-574242159-1005\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\ FileSyncEx => removed successfully
HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => removed successfully
HKLM\System\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => removed successfully
HKLM\System\CurrentControlSet\Control\SafeBoot\Network\MCODS => removed successfully
"HKU\S-1-5-21-858394339-3323934644-574242159-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope" => removed successfully
HKU\S-1-5-21-858394339-3323934644-574242159-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{497EC13A-F660-478D-807E-91F2F07CEECF} => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{46B904EF-7FCC-49FE-9E29-0F237F0AEA66}C:\program files (x86)\minecraft launcher\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{2EAA5D5A-54EB-472E-8374-D799F1B34953}C:\program files (x86)\minecraft launcher\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{5D03F663-CF3F-4923-8C03-84604BEC32F0}C:\program files (x86)\minecraft launcher\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{3833608C-4D07-4F6C-813B-C8359E0253C6}C:\program files (x86)\minecraft launcher\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{CC1C50B2-323D-409D-A650-7D4CD9C8E7EF}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{56601AD9-1B2E-4D7D-B203-8CF0759D4173}C:\program files (x86)\minecraft launcher\runtime\jre-x64\bin\javaw.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{92917A4C-A159-43F4-A818-B00F906503D8}C:\program files (x86)\minecraft launcher\runtime\jre-x64\bin\javaw.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9BB18993-4042-43CC-833D-64FA5C1C1693}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{84A03A92-B926-4F3E-8C92-FFB41AE6B045}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9DFF0628-20D5-493C-8AAA-249A30F12901}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2492ED4E-66EC-49F0-82C3-05D821DCBC3F}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7532C536-89CF-453C-942D-90C71509B38B}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A59834E4-8972-4324-AE12-C868230F1B36}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{FF29D622-4054-4543-ADAC-205AE1B0FC11}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{0ADC0237-9CE5-4C21-9522-19E768B34167}C:\program files (x86)\minecraft launcher\runtime\java-runtime-beta\windows-x64\java-runtime-beta\bin\javaw.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{7D3BC1EA-6DC5-43B1-A624-3504F2D9B757}C:\users\eytan\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{49D5C9E2-1D30-4FA0-8001-C16E76F1612C}C:\users\eytan\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{DB559FD6-135D-405F-8913-F5BAB9FB2EE5}C:\users\eytan\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-beta\windows-x64\java-runtime-beta\bin\javaw.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{AA4036CA-7F42-414E-83F8-61906EDD95AD}C:\users\eytan\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-beta\windows-x64\java-runtime-beta\bin\javaw.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7A48E492-CFFC-46F0-8C5E-06D1D4D9C34F}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6C523A93-EC01-488E-9A76-7F30FD573357}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{FE96FFF8-5B26-4757-B264-7729E5128C5B}" => removed successfully
C:\Program Files (x86)\PremierOpinion => moved successfully
VirusTotal: C:\Users\ariel\AppData\Roaming\Bloom\Bloom.exe => https://www.virustotal.com/gui/file/3988146ad2b2979f2883c55a56b0937740467dd33e89b8348659cce8167b2f5b/detection/f-3988146ad2b2979f2883c55a56b0937740467dd33e89b8348659cce8167b2f5b-1650558044
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\$McRebootA5E6DEAA56$.lnk => moved successfully
"ShortcutTarget: $McRebootA5E6DEAA56$.lnk -> (No File)" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3AE4A5F2-55CB-4AF2-BF97-97573C0F4C42}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3AE4A5F2-55CB-4AF2-BF97-97573C0F4C42}" => removed successfully
C:\WINDOWS\System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Mozilla\Firefox Background Update 308046B0AF4A39CB" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A55126CC-DD12-4934-86CB-DBE80EBA707E}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A55126CC-DD12-4934-86CB-DBE80EBA707E}" => removed successfully
C:\WINDOWS\System32\Tasks\OneDrive Reporting Task-S-1-5-21-858394339-3323934644-574242159-1005 => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\OneDrive Reporting Task-S-1-5-21-858394339-3323934644-574242159-1005" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B9DF4B88-B7A0-4D3D-BFB1-19746595F21D}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B9DF4B88-B7A0-4D3D-BFB1-19746595F21D}" => removed successfully
C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-858394339-3323934644-574242159-1005 => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\OneDrive Standalone Update Task-S-1-5-21-858394339-3323934644-574242159-1005" => removed successfully
"HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation" => not found
C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll => moved successfully
"Chrome StartupUrls" => removed successfully
"Chrome DefaultSearchURL" => removed successfully
"Chrome DefaultSearchKeyword" => removed successfully
"Chrome DefaultSuggestURL" => removed successfully
C:\ProgramData\PC Cleaner => moved successfully
C:\Users\eytan\Downloads\PC_Cleaner_5383 (1).exe => moved successfully
C:\Users\eytan\Downloads\PC_Cleaner_5383.exe => moved successfully

========= sfc /scannow =========


Beginning system scan. This process will take some time.

Beginning verification phase of system scan.
Verification 0% complete. Verification 1% complete. Verification 1% complete. Verification 2% complete. Verification 2% complete. Verification 3% complete. Verification 3% complete. Verification 4% complete. Verification 4% complete. Verification 5% complete. Verification 5% complete. Verification 6% complete. Verification 6% complete. Verification 7% complete. Verification 8% complete. Verification 8% complete. Verification 9% complete. Verification 9% complete. Verification 10% complete. Verification 10% complete. Verification 11% complete. Verification 11% complete. Verification 12% complete. Verification 12% complete. Verification 13% complete. Verification 13% complete. Verification 14% complete. Verification 15% complete. Verification 15% complete. Verification 16% complete. Verification 16% complete. Verification 17% complete. Verification 17% complete. Verification 18% complete. Verification 18% complete. Verification 19% complete. Verification 19% complete. Verification 20% complete. Verification 20% complete. Verification 21% complete. Verification 22% complete. Verification 22% complete. Verification 23% complete. Verification 23% complete. Verification 24% complete. Verification 24% complete. Verification 25% complete. Verification 25% complete. Verification 26% complete. Verification 26% complete. Verification 27% complete. Verification 27% complete. Verification 28% complete. Verification 29% complete. Verification 29% complete. Verification 30% complete. Verification 30% complete. Verification 31% complete. Verification 31% complete. Verification 32% complete. Verification 32% complete. Verification 33% complete. Verification 33% complete. Verification 34% complete. Verification 34% complete. Verification 35% complete. Verification 35% complete. Verification 36% complete. Verification 37% complete. Verification 37% complete. Verification 38% complete. Verification 38% complete. Verification 39% complete. Verification 39% complete. Verification 40% complete. Verification 40% complete. Verification 41% complete. Verification 41% complete. Verification 42% complete. Verification 42% complete. Verification 43% complete. Verification 44% complete. Verification 44% complete. Verification 45% complete. Verification 45% complete. Verification 46% complete. Verification 46% complete. Verification 47% complete. Verification 47% complete. Verification 48% complete. Verification 48% complete. Verification 49% complete. Verification 49% complete. Verification 50% complete. Verification 51% complete. Verification 51% complete. Verification 52% complete. Verification 52% complete. Verification 53% complete. Verification 53% complete. Verification 54% complete. Verification 54% complete. Verification 55% complete. Verification 55% complete. Verification 56% complete. Verification 56% complete. Verification 57% complete. Verification 58% complete. Verification 58% complete. Verification 59% complete. Verification 59% complete. Verification 60% complete. Verification 60% complete. Verification 61% complete. Verification 61% complete. Verification 62% complete. Verification 62% complete. Verification 63% complete. Verification 63% complete. Verification 64% complete. Verification 64% complete. Verification 65% complete. Verification 66% complete. Verification 66% complete. Verification 67% complete. Verification 67% complete. Verification 68% complete. Verification 68% complete. Verification 69% complete. Verification 69% complete. Verification 70% complete. Verification 70% complete. Verification 71% complete. Verification 71% complete. Verification 72% complete. Verification 73% complete. Verification 73% complete. Verification 74% complete. Verification 74% complete. Verification 75% complete. Verification 75% complete. Verification 76% complete. Verification 76% complete. Verification 77% complete. Verification 77% complete. Verification 78% complete. Verification 78% complete. Verification 79% complete. Verification 80% complete. Verification 80% complete. Verification 81% complete. Verification 81% complete. Verification 82% complete. Verification 82% complete. Verification 83% complete. Verification 83% complete. Verification 84% complete. Verification 84% complete. Verification 85% complete. Verification 85% complete. Verification 86% complete. Verification 87% complete. Verification 87% complete. Verification 88% complete. Verification 88% complete. Verification 89% complete. Verification 89% complete. Verification 90% complete. Verification 90% complete. Verification 91% complete. Verification 91% complete. Verification 92% complete. Verification 92% complete. Verification 93% complete. Verification 93% complete. Verification 94% complete. Verification 95% complete. Verification 95% complete. Verification 96% complete. Verification 96% complete. Verification 97% complete. Verification 97% complete. Verification 98% complete. Verification 98% complete. Verification 99% complete. Verification 99% complete. Verification 100% complete.

Windows Resource Protection found corrupt files and successfully repaired them.
For online repairs, details are included in the CBS log file located at
windir\Logs\CBS\CBS.log. For example C:\Windows\Logs\CBS\CBS.log. For offline
repairs, details are included in the log file provided by the /OFFLOGFILE flag.

========= End of CMD: =========


=========== EmptyTemp: ==========

BITS transfer queue => 1310720 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 178281252 B
Java, Flash, Steam htmlcache => 178052453 B
Windows/system/drivers => 59095445 B
Edge => 0 B
Chrome => 393240632 B
Firefox => 68133716 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 35514174 B
systemprofile32 => 35514302 B
LocalService => 35553808 B
NetworkService => 67174080 B
eytan => 342442491 B
defaultuser100000 => 342449659 B
ariel => 1517484184 B
defaultuser100000.LAPTOP-9VNTKIN5 => 1518016280 B

RecycleBin => 9389 B
EmptyTemp: => 4.4 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 18:26:56 ====