SystemLook 30.07.11 by jpshortstuff Log created at 12:01 on 29/04/2014 by Giant Administrator - Elevation successful ========== reg ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule] "DomainJoinDetected"= 0x0000000000 (0) "MigrationCleanupCompleted"= 0x0000000001 (1) "HashingCompleted"= 0x0000000001 (1) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\Aliases] "AtServiceAccount"="NT AUTHORITY\System" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures] "FacebookUpdateTaskUserS-1-5-21-195878770-3682003311-2466773037-1000Core.job"=5d ed db 47 30 b1 36 74 01 b3 65 4d 99 33 56 ae 11 0e 67 30 81 ee 1f a4 12 8d 1c 71 04 fa 8f b9 d6 c9 a0 5a 82 70 e7 5b a0 63 43 2f 25 65 1c 56 4d 13 09 67 3d 91 3f b8 37 d3 3e aa 3a 61 b1 a8 (REG_BINARY) "FacebookUpdateTaskUserS-1-5-21-195878770-3682003311-2466773037-1000Core.job.fp"= 0x00da69de37 (-630596041) "FacebookUpdateTaskUserS-1-5-21-195878770-3682003311-2466773037-1000UA.job"=0c 03 21 53 bc 63 10 30 f6 1a fb 87 36 af 69 a5 d6 0f ac 50 52 49 59 e4 5c 32 df f3 e4 50 09 14 33 f2 4f 2a af 76 95 98 f3 da 27 b1 79 5e 49 3b 07 35 b4 94 26 28 63 fe 62 b2 5c 79 32 c6 39 06 (REG_BINARY) "FacebookUpdateTaskUserS-1-5-21-195878770-3682003311-2466773037-1000UA.job.fp"= 0x007d9f96bd (2107610813) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\Configuration] "DataVersion"= 0x0000000003 (3) "TasksInMemoryQueue"= 0x0000000064 (100) "TasksPerHighestPrivEngine"= 0x0000000064 (100) "TasksPerLeastPrivEngine"= 0x0000000032 (50) "MissedTasksStartupDelay"= 0x0000000258 (600) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CredWom] @="Completed" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CredWom\S-1-5-21-195878770-3682003311-2466773037-1000] "Count"= 0x0000000001 (1) "Index"="{DEC8FAC7-E188-42C5-BC0E-A195911DCD1C}" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\Handlers] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\Handshake] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{5F5A18EB-DC73-4E45-A11C-B59043598412}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{72DB7465-BC54-491B-A92A-4637A28C9BBF}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{994C86AD-A929-4B2C-88A0-4E25A107A029}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{CD07553C-4006-48BC-826A-F2C44B6664B1}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{D7B6E81D-3CF4-432C-84D2-24213F4316E6}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{EB02381F-D652-4B1C-894A-712498C62C51}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1A99D428-81E1-4683-B90C-0376E29C7BCF}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{2385724E-E65A-4C49-95D7-E1F2AB08A2F0}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{2470470F-2634-478E-B181-571E98A789BB}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{28011108-68DF-4C73-B91B-57427D501BBA}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{2A4E2D01-E9C4-42AE-B8F8-99D8D85C78B9}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{336DD0AD-837A-42AE-A923-A60F449DF0A3}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{4303AC26-2CD2-4FEA-9292-A2903F926D50}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{486D715E-6AA2-44CF-BC48-B6990CBB53C6}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{4C8B01A2-11FF-4C41-848F-508EF4F00CF7}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5B42DD9C-5A26-4F27-BB95-34603F0997E5}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{613612BA-897D-44CE-8DC1-8FC283F9FD51}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{7AFCC0CA-7121-422A-AB45-B0E8D599FF08}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{981C6770-CDE9-4121-B548-83869FEBA6AF}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A130C11F-B207-4A75-8CB6-E93C4A41D4BB}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A302F154-98C6-4C58-8829-CA9C96897421}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A35BB7A6-5F0C-4C9F-8450-2B3BED532D51}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{D0250F3F-6480-484F-B719-42F659AC64D5}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{D97E672A-A18F-4536-B8AC-161C0E8A62F9}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{FDDFF9A2-6BEA-4CCD-97B4-05764B12EFA4}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{FE951B4A-AAA7-4DC8-A2D7-6BC3775413EF}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{044A6734-E90E-4F8F-B357-B2DC8AB3B5EC}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{088482FA-65B8-4E17-9ABF-1DCD48E8D373}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{08F18692-388C-46F0-9353-D17110901234}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{09604BCE-1629-424F-A530-A5BB43566DCF}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{09F06BFE-A3C8-40E3-846A-6E6F4000C238}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0D7C830E-84BC-4BFE-82FA-E9732123FAA8}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0F939740-E7A2-4B48-AE90-7C8C228D206A}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0FD22885-29E3-4050-84C7-607DA35A629F}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{118F546A-C86F-4359-8918-10CFD4A5965D}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{12474DF8-DA4C-47C0-ABB8-1E550D017980}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{18DFD67C-3AA0-42DB-9168-4C2E1AB8DF06}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1B1FEEC1-DD35-4AFE-93DD-26E28BE50DBA}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1F71BBB8-5598-4B3A-8B71-864EF1C1D8E5}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1F7B7221-AE8F-44F3-BA82-F7D260F51964}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{27BAD03C-1558-4E06-8E19-9A37529A1A2B}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2A60D496-B86C-426E-A7A6-6C5DE2A985D9}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2F57269B-1E09-4E2D-AB1E-B0FDAC7D279C}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3386DD80-F78D-4BA4-A0F4-172EF173606C}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{454CC20E-3233-45D6-A00C-F734B59C5C56}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{47536D45-EEEC-4BDC-8183-A4DC1F8DA9E4}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{530D23FA-3E60-4605-AA1B-78397C110894}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{564AADC7-773D-4D22-91C9-FB6682FB8A38}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5A40E926-9E86-4B89-9CFD-B12311724371}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6738BA6E-EA75-4B6B-B8B8-71F0336DD8EF}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{68386C44-4624-4547-87E0-513C4BA55E10}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6B631E08-C639-4976-9AC1-EFFEC1557FEF}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{753C47AE-EC5E-44B3-95A9-2C8E553F0E39}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7B8592C9-C6C7-40C0-90CD-EC18D2F1974F}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{81540B9F-B5BF-47EB-9C95-BE195BF2C664}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8A58DAB3-E14F-4B8C-82AA-08434D33B11D}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9237038E-ACEB-48EA-BB0D-45AB6CC35217}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9435F817-FED2-454E-88CD-7F78FDA62C48}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{976B537F-0BB1-491B-8E9C-D7070830ACC7}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9979CB83-103A-4105-9E5D-C74B0AF6D198}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A48CABBF-24C8-4B87-B00F-9261807C3B43}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A5FAFD67-95A4-4527-948C-FC065589B812}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A626A415-7382-4BCB-A0CC-2494B74F36AA}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A6AF9377-77CE-47AB-AD7D-EC32CAD0C82D}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A7C73732-9F11-4281-8D19-764D4EC9D94D}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AC4E5ACF-89F7-4220-BA21-81EE183975E2}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AC668097-4D6B-4093-AC14-014C09DBF820}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B0CBAB43-44FC-469B-A4CE-87426761FDCE}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B7259456-8155-4613-863E-5BC24D007155}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BE669C13-8165-4536-96D0-6D6C39292AAE}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C016366B-7126-46CA-B36B-592A3D95A60B}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CA4B8FF2-A4D2-4D88-A52E-3A5BDAF7F56E}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CB3D64BF-C0C9-45FF-BFB0-FF1A8F680186}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CD385363-F23F-409D-B9A1-4A2F39A993D6}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CEE64558-E1A7-4D9D-80A7-2001912BE5B5}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D45169BE-888C-49EE-85FD-81FEDE1D999D}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DA41DE71-8431-42FB-9DB0-EB64A961DEAD}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DCEF7F52-0F5C-45DA-A605-293D930877FD}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DD9F510C-95F4-499A-90C8-BAC5BC372FF4}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DF543423-6FAA-4F73-BDCC-498633F44F90}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E22A8667-F75B-4BA9-BA46-067ED4429DE8}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E3163C33-301D-4730-A266-5518C5ED3967}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E3177873-F581-48BB-9A09-BE44656E6531}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EACA24FF-236C-401D-A1E7-B3D5267B8A50}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EF30ED12-B9BB-450B-A3DF-FEDE56A6756D}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FA2BC0A6-8D4B-458A-85C8-2B8C72487513}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FB3C354D-297A-4EB2-9B58-090F6361906B}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FDD56C73-F0D5-41B6-B767-6EFFD7966428}] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{044A6734-E90E-4F8F-B357-B2DC8AB3B5EC}] "Path"="\Microsoft\Windows\Time Synchronization\SynchronizeTime" "Triggers"=15 00 00 00 00 00 00 00 01 12 72 fb fe 07 00 00 00 e8 e6 37 9d ef c4 01 00 12 72 fb fe 07 00 00 ff ff ff ff ff ff ff ff e0 21 42 03 48 48 48 48 df dc 78 36 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 13 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 dd dd 00 00 00 00 00 00 01 12 72 fb fe 07 00 00 00 e8 e6 37 9d ef c4 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff 02 00 00 00 01 00 01 00 00 00 00 00 00 01 00 00 01 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 2d 35 04 2d 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=17 d3 bd 88 4b e1 ea d4 b4 b3 2c c4 6d 07 07 e4 68 68 8a 3f cd e1 83 55 73 bf 3a 39 2d 0b f6 5a (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{088482FA-65B8-4E17-9ABF-1DCD48E8D373}] "Path"="\Microsoft\Windows\Tcpip\IpAddressConflict1" "Triggers"=15 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 00 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff 38 a1 40 03 48 48 48 48 e9 9d 60 08 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 04 00 00 00 48 48 48 48 10 00 00 00 48 48 48 48 01 02 00 00 00 00 00 05 20 00 00 00 21 02 00 00 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 58 02 00 00 10 0e 00 00 80 f4 03 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 cc cc 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 00 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff 00 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 01 00 00 00 00 00 05 20 00 00 00 00 00 00 00 8d 00 00 00 00 00 00 00 3c 00 51 00 75 00 65 00 72 00 79 00 4c 00 69 00 73 00 74 00 3e 00 3c 00 51 00 75 00 65 00 72 00 79 00 20 00 49 00 64 00 3d 00 22 00 30 00 22 00 20 00 50 00 61 00 74 00 68 00 3d 00 22 00 53 00 79 00 73 00 74 00 65 00 6d 00 22 00 3e (REG_BINARY) "DynamicInfo"=03 00 00 00 8d 96 06 2d 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=ce f4 fd 5d a0 44 59 b6 0c 16 3c d7 1d 53 80 78 a6 01 ef 7e e0 58 32 ce cd 2d d7 9d 52 13 af 22 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{08F18692-388C-46F0-9353-D17110901234}] "Path"="\Microsoft\Windows\Media Center\PBDADiscoveryW1" "Hash"=3f 4f 87 0d 4c bb b4 d2 01 26 9b bf 39 b3 36 cd 02 ce cd 40 6b eb 76 9e 67 71 db d1 30 1a e6 fc (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 07 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 40 05 02 02 48 48 48 48 d7 17 ff 32 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 10 0e 00 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 35 00 24 00 00 00 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 c1 08 72 ec 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{09604BCE-1629-424F-A530-A5BB43566DCF}] "Path"="\Microsoft\Windows\Media Center\DispatchRecoveryTasks" "Hash"=52 0a 36 67 0c 20 36 04 05 89 a1 e5 5e 67 b8 39 fa 13 56 17 77 c4 db 96 5f a8 c9 1e 83 2a 1c 16 (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 07 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 05 02 02 48 48 48 48 bd 2a c4 33 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 5d 8f 1c ea 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{09F06BFE-A3C8-40E3-846A-6E6F4000C238}] "Path"="\Microsoft\Windows\Tcpip\IpAddressConflict2" "Triggers"=15 00 00 00 00 00 00 00 01 12 72 fb fe 07 00 00 80 29 4e 12 96 38 c6 01 00 1c 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff 38 a1 40 03 48 48 48 48 a2 01 fc 43 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 04 00 00 00 48 48 48 48 10 00 00 00 48 48 48 48 01 02 00 00 00 00 00 05 20 00 00 00 21 02 00 00 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 58 02 00 00 10 0e 00 00 80 f4 03 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 75 00 70 00 00 00 00 00 00 00 00 00 cc cc 00 00 00 00 00 00 01 12 72 fb fe 07 00 00 80 29 4e 12 96 38 c6 01 00 1c 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff 00 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 01 00 00 00 00 00 05 20 00 00 00 00 00 00 00 8d 00 00 00 00 00 00 00 3c 00 51 00 75 00 65 00 72 00 79 00 4c 00 69 00 73 00 74 00 3e 00 3c 00 51 00 75 00 65 00 72 00 79 00 20 00 49 00 64 00 3d 00 22 00 30 00 22 00 20 00 50 00 61 00 74 00 68 00 3d 00 22 00 53 00 79 00 73 00 74 00 65 00 6d 00 22 00 3e (REG_BINARY) "DynamicInfo"=03 00 00 00 8d 96 06 2d 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=4d 3c 72 ee 9b 73 1b fc fc 70 22 53 1b 28 70 de f2 8f f1 3f f8 e0 f0 89 00 3e 02 aa 0f 40 c0 5d (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0D7C830E-84BC-4BFE-82FA-E9732123FAA8}] "Path"="\Microsoft\Windows\Media Center\ConfigureInternetTimeService" "Hash"=e5 0b b0 76 5d cf 2a ec 0e e8 fe 4e 91 7e 6e 13 1e f7 3c bb fe 7e ff 8b 69 f4 6f ef 39 45 dd 97 (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 09 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 09 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 21 02 02 48 48 48 48 86 9f 2c 18 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 15 a5 be e8 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0F939740-E7A2-4B48-AE90-7C8C228D206A}] "Path"="\Microsoft\Windows\Media Center\UpdateRecordPath" "Hash"=7f 32 e8 84 22 73 ac b7 ff 44 e2 fe f4 4e 6f f1 07 09 7e 8d 2f f6 07 97 4a b2 a7 fe cd b1 05 d0 (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 07 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 21 42 02 48 48 48 48 46 8e 15 b1 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 2d 9d 79 e8 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0FD22885-29E3-4050-84C7-607DA35A629F}] "Path"="\Microsoft\Windows\Media Center\ReindexSearchRoot" "Hash"=5d bc 54 80 fe 53 04 ae 81 f5 82 4a 59 89 1c 12 04 54 0e 28 83 7d 35 b8 5e 90 a1 fe d6 bc 47 64 (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 07 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 21 02 02 48 48 48 48 33 d8 82 7f 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 2d 1e 90 e9 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{118F546A-C86F-4359-8918-10CFD4A5965D}] "Path"="\Microsoft\Windows\Media Center\PeriodicScanRetry" "Hash"=8e 69 11 ca 59 c4 5f 2e e0 bf 63 45 3d cd 58 0b 28 5e 92 ce 1b fe 45 89 f9 56 d6 7c 57 f7 5e a3 (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 01 6e 3f 01 00 00 00 00 00 6e cf fe 35 d4 c6 01 01 00 00 00 00 00 00 00 00 6e cf fe 35 d4 c6 01 30 21 02 02 48 48 48 48 89 0e 44 13 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 14 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 80 f4 03 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 dd dd 00 00 00 00 00 00 01 6e 3f 01 00 00 00 00 00 6e cf fe 35 d4 c6 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 6f e3 5a e6 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{12474DF8-DA4C-47C0-ABB8-1E550D017980}] "Path"="\Microsoft\Windows\Media Center\OCURActivate" "Hash"=a6 68 fb f9 a8 24 1e 02 c6 6f a4 36 e3 e6 c4 ff 98 df e8 3c 1b 7c 38 e5 46 ed 07 26 e8 09 67 41 (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 09 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 09 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 21 02 02 48 48 48 48 4d e5 04 00 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 5d 8d ef e7 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{18DFD67C-3AA0-42DB-9168-4C2E1AB8DF06}] "Path"="\Microsoft\Windows\Media Center\MediaCenterRecoveryTask" "Hash"=ae 6a e9 d2 49 37 df 91 6e 51 a2 e8 5c 07 11 4d de ad 8b 20 fd 08 40 f9 7b b1 c0 60 89 03 9e 64 (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 05 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 05 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 05 42 02 48 48 48 48 41 02 37 e4 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 7f c2 90 ee 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1A99D428-81E1-4683-B90C-0376E29C7BCF}] "Path"="\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver" "Hash"=ac 67 df 7a 4b 9d 1c 87 13 c2 d6 2f d8 68 51 13 fb 77 49 de 03 81 1f 77 bb c4 b4 b0 6b 74 c2 da (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 85 80 03 48 48 48 48 1f ca cd 84 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 04 00 00 00 48 48 48 48 10 00 00 00 48 48 48 48 01 02 00 00 00 00 00 05 20 00 00 00 21 02 00 00 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 aa aa 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 7e 3f 01 00 00 00 00 05 00 00 00 00 00 00 00 01 48 48 48 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 df 0e 9f e3 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1B1FEEC1-DD35-4AFE-93DD-26E28BE50DBA}] "Path"="\Microsoft\Windows\Defrag\ScheduledDefrag" "Hash"=95 be b7 52 32 97 0b 4f 2d f0 17 bc 65 b5 55 0a e4 2d 79 8d 43 40 07 e1 d1 a5 3c 17 06 38 05 50 (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 01 84 92 01 00 00 00 00 00 78 e0 3f 4a 4c cf 01 00 84 92 01 00 00 00 00 ff ff ff ff ff ff ff ff 7e 21 42 03 48 48 48 48 e4 88 31 14 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 b4 00 00 00 80 3a 09 00 80 f4 03 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 dd dd 00 00 00 00 00 00 01 84 92 01 00 00 00 00 00 78 e0 3f 4a 4c cf 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff 03 00 00 00 01 00 00 00 ff 0f 00 00 00 01 00 00 01 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 1d 57 0c b6 45 4c cf 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1F71BBB8-5598-4B3A-8B71-864EF1C1D8E5}] "Path"="\FacebookUpdateTaskUserS-1-5-21-195878770-3682003311-2466773037-1000Core" "Hash"=fc 52 c8 35 2a 69 2e 4f f4 b6 81 68 2d eb f0 0d 56 14 aa 73 e2 bd 0a 0c 65 85 3a ee a5 57 94 26 (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 01 82 14 01 00 00 00 00 00 6a 44 ec 8b f9 ce 01 00 82 14 01 00 00 00 00 ff ff ff ff ff ff ff ff 00 21 61 01 48 48 48 48 bb 19 a9 58 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 03 00 00 00 48 48 48 48 18 00 00 00 48 48 48 48 01 04 00 00 00 00 00 05 15 00 00 00 72 df ac 0b 6f e9 76 db 2d f8 07 93 12 00 00 00 48 48 48 48 47 00 49 00 41 00 4e 00 54 00 5c 00 00 00 00 00 00 00 48 48 48 48 48 48 38 00 00 00 48 48 48 48 58 02 00 00 10 0e 00 00 00 00 00 00 ff ff ff ff 05 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 dd dd 00 00 00 00 00 00 01 82 14 01 00 00 00 00 00 6a 44 ec 8b f9 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff 01 00 00 00 01 00 00 00 00 00 00 00 00 01 00 00 01 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 01 2d f1 dc 82 f9 ce 01 e8 30 81 8a 83 f9 ce 01 dd 04 07 80 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1F7B7221-AE8F-44F3-BA82-F7D260F51964}] "Path"="\Microsoft\Windows\Task Manager\Interactive" "Triggers"=15 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff ff ff ff ff ff ff ff 00 ff ff ff ff ff ff ff 00 00 00 00 00 00 00 00 00 85 c0 02 48 48 48 48 19 d7 d4 58 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 04 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 00 00 00 00 ff ff ff ff 05 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 75 00 70 00 00 00 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 ee f7 08 2d 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=89 de 49 d1 46 b9 da 8a 3f 68 6f 98 cc 96 57 67 af cd 97 16 b0 8a 2f c6 51 05 dc 7b 0d dd c5 19 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2385724E-E65A-4C49-95D7-E1F2AB08A2F0}] "Path"="\Microsoft\Windows\Offline Files\Logon Synchronization" "Hash"=65 76 a9 85 88 17 9a 08 b3 1c 3d 39 99 72 6f cf 37 61 69 8b aa a5 3e c7 7a 03 a3 5e 41 08 20 7a (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff f0 a1 00 02 48 48 48 48 53 2b 40 26 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 0b 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 80 51 01 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 aa aa 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff f0 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 7e 3f 01 00 00 00 00 05 00 00 00 00 00 00 00 01 48 48 48 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 c7 95 cd e2 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2470470F-2634-478E-B181-571E98A789BB}] "Path"="\Microsoft\Windows\Multimedia\SystemSoundsService" "Triggers"=15 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 00 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff 00 85 40 02 48 48 48 48 9d 35 12 e9 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 04 00 00 00 48 48 48 48 10 00 00 00 48 48 48 48 01 02 00 00 00 00 00 05 20 00 00 00 21 02 00 00 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 00 00 00 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 75 00 70 00 00 00 00 00 00 00 00 00 aa aa 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 00 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff 00 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 03 00 00 00 01 48 48 48 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 2b 2a f1 2c 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=fd 7b 51 b9 fb 6d dd 39 37 4c 58 66 90 f9 e9 34 ee 65 eb 22 fd 61 53 1b 54 08 b2 05 91 03 1c e2 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{27BAD03C-1558-4E06-8E19-9A37529A1A2B}] "Path"="\Microsoft\Windows\Offline Files\Background Synchronization" "Hash"=ad 7a 12 17 7d 60 40 12 32 20 f9 c7 62 c3 ce ac 06 7c b6 01 99 d9 ba 53 9f 02 cc 27 dd ab 61 da (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 01 bc 38 01 00 00 00 00 00 c0 76 40 09 4c c8 01 00 bc 38 01 00 00 00 00 ff ff ff ff ff ff ff ff c8 a1 00 02 48 48 48 48 f3 3e e4 e3 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 0b 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 80 51 01 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 dd dd 00 00 00 00 00 00 01 bc 38 01 00 00 00 00 00 c0 76 40 09 4c c8 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 60 54 00 00 00 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 01 00 00 00 10 0e 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 7f 2c 86 e2 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{28011108-68DF-4C73-B91B-57427D501BBA}] "Path"="\Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Manual)" "Triggers"=15 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff f8 85 00 02 48 48 48 48 06 50 7f 96 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 01 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 58 02 00 00 10 0e 00 00 10 0e 00 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 aa aa 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 10 0e 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 03 00 00 00 01 48 48 48 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 8b 8b f3 2c 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=64 df a2 83 26 ac 51 ab 8c fa 53 36 ba e5 15 97 6c ad 17 a3 39 00 57 74 15 d5 52 dd 26 bd 43 b0 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2A4E2D01-E9C4-42AE-B8F8-99D8D85C78B9}] "Path"="\Microsoft\Windows\SideShow\AutoWake" "Hash"=f1 f3 64 7b 90 ef 32 06 99 c2 a4 cc 87 75 53 d0 af 5f bc 91 cc a7 3e c5 d2 1d 2c 69 ab a9 7b e7 (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 21 02 02 48 48 48 48 1c e1 e0 52 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 13 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 00 00 00 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 aa aa 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 3c 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 7e 3f 01 00 00 00 00 05 00 00 00 00 00 00 00 01 48 48 48 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 f2 71 4a e4 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2A60D496-B86C-426E-A7A6-6C5DE2A985D9}] "Path"="\Microsoft\Windows\Media Center\ehDRMInit" "Hash"=a3 6b ab 54 4c e3 88 8d 96 5e 64 39 c7 1c b2 ff 30 50 6a c3 02 7c d8 e9 c6 c1 1e 9f 73 72 f9 06 (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 07 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 21 02 02 48 48 48 48 0f c6 45 76 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 13 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 84 d2 2f e8 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2F57269B-1E09-4E2D-AB1E-B0FDAC7D279C}] "Path"="\Microsoft\Windows\WindowsBackup\ConfigNotification" "Triggers"=15 00 00 00 00 00 00 00 01 bb 1f 01 00 00 00 00 00 60 81 d6 36 8f cb 01 00 bb 1f 01 00 00 00 00 ff ff ff ff ff ff ff ff 48 21 42 02 48 48 48 48 2c 69 10 5f 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 13 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 80 f4 03 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 dd dd 00 00 00 00 00 00 01 bb 1f 01 00 00 00 00 00 60 81 d6 36 8f cb 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff 02 00 00 00 01 00 04 00 00 00 00 00 00 01 00 00 01 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 4e 59 0b 2d 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=d6 04 ae 6c 4c b1 fb c8 8a dd 76 c8 98 c0 99 a1 1b b8 ea 62 02 47 93 f6 17 39 f4 c5 b1 59 a8 95 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{336DD0AD-837A-42AE-A923-A60F449DF0A3}] "Path"="\Microsoft\Windows\Wininet\CacheTask" "Hash"=b4 00 15 c2 e0 3a 44 73 c9 32 84 b4 a7 9d 0d 10 02 0c 19 1c 69 d3 4b 60 d8 9b 92 d8 94 2a 01 fc (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 85 40 02 48 48 48 48 14 f9 66 a5 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 04 00 00 00 48 48 48 48 10 00 00 00 48 48 48 48 01 02 00 00 00 00 00 05 20 00 00 00 21 02 00 00 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 00 00 00 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 aa aa 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 61 00 73 00 6b 00 00 00 00 00 00 00 00 00 01 48 48 48 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 13 68 10 59 0d 58 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3386DD80-F78D-4BA4-A0F4-172EF173606C}] "Path"="\GoogleUpdateTaskMachineUA" "Hash"=f8 0b cf e0 db 60 e6 57 f8 74 8e 29 20 5a 5d 2f d9 f5 53 d5 f5 7f fd 60 be c8 6f f6 ea 4a ce 68 (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 01 bf 94 01 00 00 00 00 00 e0 dc ee 77 65 cf 01 00 bf 94 01 00 00 00 00 ff ff ff ff ff ff ff ff 00 21 42 00 48 48 48 48 ac e0 0c eb 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 80 f4 03 00 ff ff ff ff 05 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 dd dd 00 00 00 00 00 00 01 bf 94 01 00 00 00 00 00 e0 dc ee 77 65 cf 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 08 07 00 00 02 00 00 00 02 00 12 00 00 00 00 00 00 01 00 00 01 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 08 8d 9c 5d 8f 57 ce 01 53 42 20 57 05 58 ce 01 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4303AC26-2CD2-4FEA-9292-A2903F926D50}] "Path"="\Microsoft\Windows\MobilePC\HotStart" "Hash"=06 51 bf 3b 99 23 f8 0b e8 b5 0e 25 3e 84 3a 95 b0 cf b7 eb 97 a3 ee 4e 7c 95 5b 54 3d d1 90 e9 (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 40 85 40 02 48 48 48 48 7e 9b 65 8c 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 0b 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 00 00 00 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 2e 00 45 00 00 00 00 00 00 00 00 00 aa aa 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 7e 3f 01 00 00 00 00 05 00 00 00 00 00 00 00 01 48 48 48 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 9f 54 e7 e6 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{454CC20E-3233-45D6-A00C-F734B59C5C56}] "Path"="\Microsoft\Windows\Media Center\SqlLiteRecoveryTask" "Hash"=d5 6c 57 53 8a f2 60 02 14 d4 ff 62 5c 2a a7 dc 4a 55 ba 5c 82 20 d1 e3 ca 4f fb 23 6f cd a5 4e (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 07 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 05 02 02 48 48 48 48 cc 69 f9 17 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 14 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 ec e4 ee ed 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{47536D45-EEEC-4BDC-8183-A4DC1F8DA9E4}] "Path"="\Microsoft\Windows\Customer Experience Improvement Program\UsbCeip" "Triggers"=15 00 00 00 00 00 00 00 01 12 72 fb fe 07 00 00 00 9c 9e e0 73 a6 c8 01 00 12 72 fb fe 07 00 00 ff ff ff ff ff ff ff ff 70 21 c2 02 48 48 48 48 63 25 1b 5d 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 13 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 80 f4 03 00 ff ff ff ff 07 00 00 00 8c 0a 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 75 00 70 00 00 00 00 00 00 00 00 00 dd dd 00 00 00 00 00 00 01 12 72 fb fe 07 00 00 00 9c 9e e0 73 a6 c8 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff 01 00 00 00 03 00 00 00 00 00 00 00 00 01 00 00 01 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 ae ba 0d 2d 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=ae 18 62 ba 40 99 24 24 8d c1 73 6d 23 e3 27 b7 15 40 18 fc 40 a4 da 69 5b c7 77 d1 13 5a 52 44 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{486D715E-6AA2-44CF-BC48-B6990CBB53C6}] "Path"="\Microsoft\Windows\Shell\WindowsParentalControlsMigration" "Triggers"=15 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 40 05 82 03 48 48 48 48 79 f2 19 6c 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 00 00 00 00 ff ff ff ff 07 00 00 00 3c 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 75 00 70 00 00 00 00 00 00 00 00 00 aa aa 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 01 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 41 00 3b 00 3b 00 3b 00 42 00 41 00 29 00 01 48 48 48 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 ac af fa 2c 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=6d 5d 71 fc d9 af 69 de 33 a5 e4 7e 6d e8 94 ca d1 5a 01 09 44 b2 ef 58 c0 72 c7 f6 1e db 87 e8 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4C8B01A2-11FF-4C41-848F-508EF4F00CF7}] "Path"="\Microsoft\Windows\TextServicesFramework\MsCtfMonitor" "Triggers"=15 00 00 00 00 00 00 00 00 16 24 fb fe 07 00 00 00 00 00 00 00 00 00 00 00 16 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff 00 85 c0 02 48 48 48 48 e7 74 f3 14 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 04 00 00 00 48 48 48 48 10 00 00 00 48 48 48 48 01 02 00 00 00 00 00 05 20 00 00 00 21 02 00 00 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 00 00 00 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 75 00 70 00 00 00 00 00 00 00 00 00 aa aa 00 00 00 00 00 00 00 16 24 fb fe 07 00 00 00 00 00 00 00 00 00 00 00 16 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff 00 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 03 00 00 00 01 48 48 48 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 0c 11 fd 2c 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=f7 cc b3 90 21 e7 e2 45 ca dc d7 5e 42 61 02 52 20 87 dd 3a c9 1a f7 d4 38 7d 8d 70 ed 6d da b4 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{530D23FA-3E60-4605-AA1B-78397C110894}] "Path"="\Microsoft\Windows\Media Center\ActivateWindowsSearch" "Hash"=3a 3f 43 0c 69 0f f4 ad 34 d6 08 dc 7f 17 81 ba bd 78 85 f0 59 f9 30 e7 b0 52 24 4d 88 07 47 cf (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 07 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 21 02 02 48 48 48 48 a5 63 45 86 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 d5 e8 d9 e9 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{564AADC7-773D-4D22-91C9-FB6682FB8A38}] "Path"="\Ccleaner" "Hash"=4d 6f 76 31 09 26 a0 fd 82 3f a9 c4 1c 85 c1 91 46 7f 9d f9 0a df 9c 56 3e 84 57 b0 44 f9 ef 00 (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 01 84 47 01 00 00 00 00 00 0a c4 ec 75 62 cf 01 00 84 47 01 00 00 00 00 ff ff ff ff ff ff ff ff 38 21 44 01 48 48 48 48 62 28 94 94 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 01 00 00 00 48 48 48 48 1c 00 00 00 48 48 48 48 01 05 00 00 00 00 00 05 15 00 00 00 72 df ac 0b 6f e9 76 db 2d f8 07 93 e8 03 00 00 48 48 48 48 18 00 00 00 48 48 48 48 47 00 49 00 41 00 4e 00 54 00 5c 00 47 00 69 00 61 00 6e 00 74 00 00 00 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 10 0e 00 00 ff ff ff ff 07 00 00 00 3c 00 00 00 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 dd dd 00 00 00 00 00 00 01 84 47 01 00 00 00 00 00 0a c4 ec 75 62 cf 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 10 0e 00 00 02 00 00 00 01 00 10 00 00 00 00 00 00 01 00 00 01 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 d2 29 ba ef f4 6d ce 01 ac ec ba f5 66 62 cf 01 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5A40E926-9E86-4B89-9CFD-B12311724371}] "Path"="\Microsoft\Windows\UPnP\UPnPHostConfig" "Triggers"=15 00 00 00 00 00 00 00 00 09 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 09 00 00 00 00 00 00 00 00 00 00 00 00 00 00 10 21 02 02 48 48 48 48 60 a1 69 c1 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 6f 7d 12 2d 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=d4 b7 95 14 20 59 a1 82 a9 8a 12 33 35 bc e8 66 7b 3f 3e 23 3e bc c0 28 a1 b9 44 e8 c9 6a 34 ff (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5B42DD9C-5A26-4F27-BB95-34603F0997E5}] "Path"="\Microsoft\Windows\Shell\WindowsParentalControls" "Triggers"=15 00 00 00 00 00 00 00 00 16 24 fb fe 07 00 00 00 00 00 00 00 00 00 00 00 16 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff 40 85 80 02 48 48 48 48 e1 49 b4 c1 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 0b 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 00 00 00 00 ff ff ff ff 07 00 00 00 3c 00 00 00 05 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 75 00 70 00 00 00 00 00 00 00 00 00 aa aa 00 00 00 00 00 00 00 16 24 fb fe 07 00 00 00 00 00 00 00 00 00 00 00 16 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff 01 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 03 00 00 00 01 48 48 48 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 0c 11 fd 2c 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=88 65 11 e7 de e4 f4 47 b2 f7 04 a0 40 46 bb 94 2b d9 bd a7 61 52 a1 2b b0 ae 3d 9b 56 c6 aa f5 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5F5A18EB-DC73-4E45-A11C-B59043598412}] "Path"="\Microsoft\Windows\CertificateServicesClient\SystemTask" "Triggers"=15 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 00 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff c0 05 42 02 48 48 48 48 4e 9f 42 ce 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 00 00 00 00 ff ff ff ff 07 00 00 00 3c 00 00 00 05 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 75 00 70 00 00 00 00 00 00 00 00 00 cc cc 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 00 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff 00 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 01 00 00 00 00 00 05 20 00 00 00 00 00 00 00 1b 01 00 00 00 00 00 00 3c 00 51 00 75 00 65 00 72 00 79 00 4c 00 69 00 73 00 74 00 3e 00 0a 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 3c 00 51 00 75 00 65 00 72 00 79 00 20 00 49 00 64 00 3d 00 22 (REG_BINARY) "DynamicInfo"=03 00 00 00 c8 bd db 2c 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=5f 17 41 f0 e3 67 3a ee 6b 7d 98 3c db 71 8c 34 64 0a 8c 20 b8 d2 f6 27 b7 aa 49 1c 12 f1 63 58 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{613612BA-897D-44CE-8DC1-8FC283F9FD51}] "Path"="\Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Automated)" "Triggers"=15 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 b6 95 01 00 00 00 00 ff ff ff ff ff ff ff ff c8 85 40 02 48 48 48 48 17 cf 3e fe 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 01 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 58 02 00 00 10 0e 00 00 10 0e 00 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 dd dd 00 00 00 00 00 00 01 b6 95 01 00 00 00 00 00 78 18 25 ab 03 c7 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff 01 00 00 00 01 00 00 00 00 00 00 00 00 01 00 00 01 00 00 00 10 0e 00 00 00 00 00 00 aa aa 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 10 0e 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 6d 72 ff 2c 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=06 89 b0 70 fa c3 cb 89 21 5e 32 c4 23 39 c2 88 ea 20 c1 c0 b6 fd 8a 59 48 9d b2 4a 6d 92 0d 38 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6738BA6E-EA75-4B6B-B8B8-71F0336DD8EF}] "Path"="\Microsoft\Windows\User Profile Service\HiveUploadTask" "Triggers"=15 00 00 00 00 00 00 00 01 12 72 fb fe 07 00 00 00 40 6a 60 06 e9 c7 01 00 12 72 fb fe 07 00 00 ff ff ff ff ff ff ff ff c2 21 02 02 48 48 48 48 0c 2a d3 b9 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 58 02 00 00 20 1c 00 00 80 f4 03 00 ff ff ff ff 07 00 00 00 78 00 00 00 03 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 dd dd 00 00 00 00 00 00 01 12 72 fb fe 07 00 00 00 40 6a 60 06 e9 c7 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 c0 a8 00 00 00 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 01 00 00 00 10 0e 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 b9 72 83 2e 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=22 73 52 40 f6 34 af 52 eb 49 6c ac 7f 58 e8 5d 9e d7 af 87 6a d3 1d 5a e4 c1 f5 7c 23 4e 57 28 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{68386C44-4624-4547-87E0-513C4BA55E10}] "Path"="\Microsoft\Windows\WindowsBackup\AutomaticBackup" "Hash"=51 d9 8a d0 31 8e 68 17 c1 bb 9c f9 29 10 31 97 6b 94 53 8b 9d e2 9d 47 fd 51 a6 36 b6 85 9b 7d (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 01 bf 94 01 00 00 00 00 00 78 23 90 01 5c cf 01 00 bf 94 01 00 00 00 00 ff ff ff ff ff ff ff ff 40 05 42 01 48 48 48 48 76 f3 39 5f 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 58 02 00 00 10 0e 00 00 80 f4 03 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 dd dd 00 00 00 00 00 00 01 bf 94 01 00 00 00 00 00 78 23 90 01 5c cf 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff 02 00 00 00 01 00 01 00 00 00 00 00 00 01 00 00 01 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 32 95 fd b3 23 5b cf 01 60 ca 3f 5a 1b 5c cf 01 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6B631E08-C639-4976-9AC1-EFFEC1557FEF}] "Path"="\Microsoft\Windows\Media Center\PBDADiscoveryW2" "Hash"=83 dd 85 60 55 31 d3 4a fb 56 67 8e 14 11 d4 51 fa 98 a1 ec 02 05 74 e3 3d 12 69 2f 2b 73 f3 1b (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 07 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 40 05 02 02 48 48 48 48 3b cd 14 57 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 10 0e 00 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 a9 10 b7 ec 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{72DB7465-BC54-491B-A92A-4637A28C9BBF}] "Path"="\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck" "Triggers"=15 00 00 00 00 00 00 00 00 16 24 fb fe 07 00 00 00 00 00 00 00 00 00 00 00 16 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff 7e 11 02 02 48 48 48 48 21 8d 22 db 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 13 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 b4 00 00 00 70 43 01 00 80 f4 03 00 ff ff ff ff 0a 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 75 00 70 00 00 00 00 00 00 00 00 00 ff ff 00 00 00 00 00 00 00 16 24 fb fe 07 00 00 00 00 00 00 00 00 00 00 00 16 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff 08 07 00 00 ff ff ff ff 80 51 01 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 03 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 29 1f de 2c 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=a8 55 9f 6c cc a2 df 09 f1 22 5f 5d cf f6 7d 8c 6f f1 24 fc 5f 85 dc df 7f 19 1d c7 cf 13 ea de (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{753C47AE-EC5E-44B3-95A9-2C8E553F0E39}] "Path"="\Microsoft\Windows\Windows Media Sharing\UpdateLibrary" "Triggers"=15 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 40 85 00 02 48 48 48 48 82 b8 52 59 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 0b 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 cc cc 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 07 00 00 01 01 00 00 00 00 00 05 20 00 00 00 00 00 00 00 1e 01 00 00 00 00 00 00 3c 00 51 00 75 00 65 00 72 00 79 00 4c 00 69 00 73 00 74 00 3e 00 0a 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 3c 00 51 00 75 00 65 00 72 00 79 00 0a 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 49 00 64 00 3d 00 22 00 30 00 22 00 0a 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 (REG_BINARY) "DynamicInfo"=03 00 00 00 7a 35 88 2e 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=34 6a 80 cb d4 c3 8e 4c 28 88 13 66 9b 1e d9 14 c9 4f 81 65 2f 86 cc db ee e0 db 0e d1 fd 73 be (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7AFCC0CA-7121-422A-AB45-B0E8D599FF08}] "Path"="\Microsoft\Windows\CertificateServicesClient\UserTask" "Triggers"=15 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 00 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff c0 85 40 02 48 48 48 48 96 52 81 fa 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 04 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 00 00 00 00 ff ff ff ff 07 00 00 00 3c 00 00 00 05 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 cc cc 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 00 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff 00 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 01 00 00 00 00 00 05 20 00 00 00 00 00 00 00 a5 00 00 00 00 00 00 00 3c 00 51 00 75 00 65 00 72 00 79 00 4c 00 69 00 73 00 74 00 3e 00 3c 00 51 00 75 00 65 00 72 00 79 00 20 00 49 00 64 00 3d 00 22 00 30 00 22 00 20 00 50 00 61 00 74 00 68 00 3d 00 22 00 53 00 79 00 73 00 74 00 65 00 6d 00 22 00 3e (REG_BINARY) "DynamicInfo"=03 00 00 00 6d 72 ff 2c 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=db 89 fe 61 b3 8c f5 41 d5 84 c3 46 12 b8 56 a8 25 ef 9a 28 77 79 f0 cc bf aa 95 a0 18 3e 87 81 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7B8592C9-C6C7-40C0-90CD-EC18D2F1974F}] "Path"="\Microsoft\Windows\Media Center\mcupdate" "Hash"=cb ab f2 45 fd da 6d 73 54 9d c8 19 f8 38 d8 88 3b 05 c4 85 fe 09 50 e8 53 30 1e 5e 32 49 8e 04 (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 07 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 60 05 02 02 48 48 48 48 91 3d 30 e2 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 14 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 80 f4 03 00 ff ff ff ff 06 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 14 a9 18 ed 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{81540B9F-B5BF-47EB-9C95-BE195BF2C664}] "Path"="\Microsoft\Windows\NetTrace\GatherNetworkInfo" "Triggers"=15 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff ff ff ff ff ff ff ff 00 ff ff ff ff ff ff ff 00 00 00 00 00 00 00 00 00 85 40 03 48 48 48 48 a3 1c 71 3a 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 04 00 00 00 48 48 48 48 10 00 00 00 48 48 48 48 01 02 00 00 00 00 00 05 20 00 00 00 21 02 00 00 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 80 f4 03 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 75 00 70 00 00 00 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 1c df 98 2e 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=9e 15 41 71 40 8f 80 e0 d5 ce b4 d8 f7 75 75 8b 34 5b 3f d7 05 ad 0b 30 58 b1 73 28 70 be 80 7f (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8A58DAB3-E14F-4B8C-82AA-08434D33B11D}] "Path"="\Microsoft\Windows\Windows Activation Technologies\ValidationTask" "Hash"=25 72 17 14 5e 9d 58 d5 05 74 d1 cf 18 81 7b cc 92 3f 43 9f a8 68 3d ea 13 9b 7d 2b 15 1d c3 b4 (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 6c 75 01 00 00 00 00 00 a6 6b 37 bf 3a cf 01 00 6c 75 01 00 00 00 00 ff ff ff ff ff ff ff ff c2 21 c2 02 48 48 48 48 6d 43 a6 d4 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 13 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 2c 01 00 00 f0 20 0d 00 00 00 00 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 dd dd 00 00 00 00 00 00 00 6c 75 01 00 00 00 00 00 a6 6b 37 bf 3a cf 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff 01 00 00 00 5a 00 00 00 00 00 00 00 00 01 00 00 01 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 b8 9b 18 e1 b8 f3 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9237038E-ACEB-48EA-BB0D-45AB6CC35217}] "Path"="\FacebookUpdateTaskUserS-1-5-21-195878770-3682003311-2466773037-1000UA" "Hash"=37 4e 63 74 ba e4 f8 42 3b d7 e4 05 8a 78 0b 12 db bf d5 ad a8 fe 9d 7a 49 38 8f a2 f0 d0 99 98 (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 01 6c 14 01 00 00 00 00 00 6a 44 ec 8b f9 ce 01 00 6c 14 01 00 00 00 00 ff ff ff ff ff ff ff ff 00 21 61 01 48 48 48 48 c8 40 c1 78 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 03 00 00 00 48 48 48 48 18 00 00 00 48 48 48 48 01 04 00 00 00 00 00 05 15 00 00 00 72 df ac 0b 6f e9 76 db 2d f8 07 93 12 00 00 00 48 48 48 48 47 00 49 00 41 00 4e 00 54 00 5c 00 00 00 00 00 00 00 48 48 48 48 48 48 38 00 00 00 48 48 48 48 58 02 00 00 10 0e 00 00 00 00 00 00 ff ff ff ff 05 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 dd dd 00 00 00 00 00 00 01 6c 14 01 00 00 00 00 00 6a 44 ec 8b f9 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 30 2a 00 00 80 51 01 00 ff ff ff ff 01 00 00 00 01 00 00 00 00 00 00 00 00 01 00 00 01 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 41 7a 17 dd 82 f9 ce 01 cf 71 b5 1f e8 f9 ce 01 dd 04 07 80 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9435F817-FED2-454E-88CD-7F78FDA62C48}] "Path"="\Microsoft\Windows\WDI\ResolutionHost" "Triggers"=15 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff ff ff ff ff ff ff ff 00 ff ff ff ff ff ff ff 00 00 00 00 00 00 00 00 00 85 c0 03 48 48 48 48 9d 84 f4 70 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 04 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 00 00 00 00 ff ff ff ff 0a 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 75 00 70 00 00 00 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 7c 40 9b 2e 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=76 78 f2 83 cd 52 82 77 95 1d 59 55 d0 03 19 dc 3e 40 4f 5d 6a d8 e0 80 6b 80 dc 78 1e 71 81 ca (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{976B537F-0BB1-491B-8E9C-D7070830ACC7}] "Path"="\Microsoft\Windows\Media Center\PvrScheduleTask" "Hash"=ca b5 2a c9 cc c1 88 b5 fc 56 c2 b5 89 4f c3 12 4a a9 41 32 b2 fe 11 4c 59 3c 9e d4 3d d2 42 0d (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 07 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 05 42 02 48 48 48 48 2a ab 11 01 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 14 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 d4 ec 33 ee 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{981C6770-CDE9-4121-B548-83869FEBA6AF}] "Path"="\Microsoft\Windows\SideShow\GadgetManager" "Hash"=38 af d7 97 8d ab ce 58 8c 8f e9 a9 31 2d b6 cb 75 22 b1 e0 65 72 5f 86 a6 bb 3d ff c1 06 03 4e (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 91 00 02 48 48 48 48 7a 79 54 e5 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 04 00 00 00 48 48 48 48 10 00 00 00 48 48 48 48 01 02 00 00 00 00 00 05 20 00 00 00 21 02 00 00 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 80 f4 03 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 aa aa 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 86 89 01 00 00 00 00 58 01 87 01 00 00 00 00 01 48 48 48 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 02 bf cf e4 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{994C86AD-A929-4B2C-88A0-4E25A107A029}] "Path"="\Microsoft\Windows\SystemRestore\SR" "Triggers"=15 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 84 84 01 00 00 00 00 ff ff ff ff ff ff ff ff 52 21 42 02 48 48 48 48 a1 b5 f4 d6 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 58 02 00 00 70 43 01 00 80 f4 03 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 dd dd 00 00 00 00 00 00 01 84 84 01 00 00 00 00 00 80 e1 01 74 70 c5 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff 01 00 00 00 01 00 00 00 00 00 00 00 00 01 00 00 01 00 00 00 00 00 00 00 00 00 00 00 ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 08 07 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 07 00 00 00 00 65 00 2c (REG_BINARY) "DynamicInfo"=03 00 00 00 e9 e1 e2 2c 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=43 c9 53 6d 77 41 ba 7e 30 a8 b5 fa ec 7c 1d db 5e ba 9c 73 fd b8 df 0c 1f ba b8 71 f2 79 a0 ef (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9979CB83-103A-4105-9E5D-C74B0AF6D198}] "Path"="\Microsoft\Windows\CertificateServicesClient\UserTask-Roam" "Triggers"=15 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 90 85 00 02 48 48 48 48 24 a4 c7 d0 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 04 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 00 00 00 00 ff ff ff ff 07 00 00 00 3c 00 00 00 05 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 77 77 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 ff ff ff 02 00 00 00 01 00 10 00 00 00 00 00 07 00 00 00 00 00 00 00 01 48 48 48 48 48 48 48 77 77 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 66 53 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 dc a1 9d 2e 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=f2 ce 6a b8 c2 2d cf 17 80 14 18 67 45 5a 46 fa 6d 08 f0 8c 5b 5d 48 20 02 37 2e 5f de 05 9b 43 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A130C11F-B207-4A75-8CB6-E93C4A41D4BB}] "Path"="\PandaUSBVaccine" "Hash"=a1 66 57 2b 20 68 26 f2 43 d0 11 2c a2 55 cd 48 ff 9d 8e 2c 99 65 42 aa 07 e0 5b 11 fe 08 d7 36 (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 20 21 42 01 48 48 48 48 9c 41 df 73 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 00 00 00 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 aa aa 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 86 7f 01 00 00 00 00 58 01 7d 01 00 00 00 00 01 48 48 48 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 23 b3 58 25 2c 57 ce 01 bd 1a 5a 87 72 63 cf 01 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A302F154-98C6-4C58-8829-CA9C96897421}] "Path"="\Microsoft\Windows\WindowsBackup\Windows Backup Monitor" "Hash"=9f 4e 57 40 cf 26 51 cc 44 b3 7a 21 36 82 59 c0 ce 9c 1c 41 40 f9 a1 74 79 4c bb 65 08 67 75 1b (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 b4 47 01 00 00 00 00 ff ff ff ff ff ff ff ff 40 a1 40 03 48 48 48 48 4d 5a 71 52 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 04 00 00 00 48 48 48 48 10 00 00 00 48 48 48 48 01 02 00 00 00 00 00 05 20 00 00 00 21 02 00 00 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 dd dd 00 00 00 00 00 00 01 b4 47 01 00 00 00 00 00 90 1e 77 c8 86 c5 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff 01 00 00 00 01 00 00 00 00 00 00 00 00 01 00 00 01 00 00 00 00 00 00 00 00 00 00 00 aa aa 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 2c 01 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 2d 00 32 00 30 00 30 00 32 00 29 00 00 00 01 48 48 48 48 48 48 48 77 77 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff (REG_BINARY) "DynamicInfo"=03 00 00 00 90 eb ec b3 23 5b cf 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A35BB7A6-5F0C-4C9F-8450-2B3BED532D51}] "Path"="\Microsoft\Windows\WindowsColorSystem\Calibration Loader" "Triggers"=15 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 91 00 02 48 48 48 48 a3 4b 56 be 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 04 00 00 00 48 48 48 48 10 00 00 00 48 48 48 48 01 02 00 00 00 00 00 05 20 00 00 00 21 02 00 00 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 00 00 00 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 75 00 70 00 00 00 00 00 00 00 00 00 aa aa 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 41 00 3b 00 3b 00 3b 00 42 00 41 00 29 00 01 48 48 48 48 48 48 48 77 77 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 2d 00 65 00 6e 00 65 00 72 00 67 (REG_BINARY) "DynamicInfo"=03 00 00 00 cd d3 01 2d 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=1c 5e 72 cb 82 1b 89 10 81 91 ac 5b 7f d3 15 7b 5c ce 04 74 ed d4 4c 9d 1c ec 81 97 87 f2 88 ab (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A48CABBF-24C8-4B87-B00F-9261807C3B43}] "Path"="\Microsoft\Windows\AppID\PolicyConverter" "Triggers"=15 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff ff ff ff ff ff ff ff 00 ff ff ff ff ff ff ff 00 00 00 00 00 00 00 00 40 11 02 02 48 48 48 48 34 98 01 7a 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 13 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 d6 01 7b 2f 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=c6 45 bb 8f 8d 8c 5d e3 ea 7a 89 3d 78 5b d9 5f c0 6f a4 d7 81 07 45 fe 4e 78 e3 92 00 9f ff b8 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A5FAFD67-95A4-4527-948C-FC065589B812}] "Path"="\Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline" "Hash"=a8 21 eb ed b1 09 e3 b9 25 01 05 d0 ce 01 d7 c0 a9 9b 6f 16 0c 66 ab 5c 7f e5 a1 b2 5a 0a 30 d5 (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 6c 75 01 00 00 00 00 00 26 8d df 9a 42 cf 01 00 6c 75 01 00 00 00 00 ff ff ff ff ff ff ff ff c8 21 c2 02 48 48 48 48 6d b3 25 96 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 13 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 00 00 00 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 dd dd 00 00 00 00 00 00 00 6c 75 01 00 00 00 00 00 26 8d df 9a 42 cf 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff 01 00 00 00 5a 00 00 00 00 00 00 00 00 01 00 00 01 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 ba a6 2b e1 b8 f3 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A626A415-7382-4BCB-A0CC-2494B74F36AA}] "Path"="\Microsoft\Windows\Media Center\OCURDiscovery" "Hash"=78 a1 fc 8e 16 1f 38 a0 44 97 ef c2 1f e6 17 21 2a 3a 40 ef ed 16 cc c8 06 66 4d d2 75 39 42 dc (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 07 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 21 02 02 48 48 48 48 5e 34 52 7c 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 8d 7d 65 e7 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A6AF9377-77CE-47AB-AD7D-EC32CAD0C82D}] "Path"="\Microsoft\Windows\Location\Notifications" "Triggers"=15 00 00 00 00 00 00 00 00 16 24 fb fe 07 00 00 00 00 00 00 00 00 00 00 00 16 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff 00 85 40 02 48 48 48 48 df dd 79 76 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 0b 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 00 00 00 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 cc cc 00 00 00 00 00 00 00 16 24 fb fe 07 00 00 00 00 00 00 00 00 00 00 00 16 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff 00 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 01 00 00 00 00 00 05 20 00 00 00 00 00 00 00 a4 00 00 00 00 00 00 00 3c 00 51 00 75 00 65 00 72 00 79 00 4c 00 69 00 73 00 74 00 3e 00 3c 00 51 00 75 00 65 00 72 00 79 00 20 00 49 00 64 00 3d 00 22 00 30 00 22 00 20 00 50 00 61 00 74 00 68 00 3d 00 22 00 41 00 70 00 70 00 6c 00 69 00 63 00 61 00 74 (REG_BINARY) "DynamicInfo"=03 00 00 00 d6 01 7b 2f 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=e2 ee c5 dc 63 8b 16 a8 dc f4 e8 3a 35 14 f2 8d c7 ff b5 ca 04 85 41 76 d2 52 d9 09 5c 29 b3 43 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A7C73732-9F11-4281-8D19-764D4EC9D94D}] "Path"="\Microsoft\Windows\Application Experience\ProgramDataUpdater" "Triggers"=15 00 00 00 00 00 00 00 01 12 72 fb fe 07 00 00 00 34 3c 5c 42 09 c8 01 00 12 72 fb fe 07 00 00 ff ff ff ff ff ff ff ff 7e 21 42 02 48 48 48 48 37 e5 bf 7a 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 b4 00 00 00 70 43 01 00 80 f4 03 00 ff ff ff ff 04 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 75 00 70 00 00 00 00 00 00 00 00 00 dd dd 00 00 00 00 00 00 01 12 72 fb fe 07 00 00 00 34 3c 5c 42 09 c8 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff 01 00 00 00 01 00 00 00 00 00 00 00 00 01 00 00 01 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 f7 25 82 2f 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=dc 33 8f 10 a3 cf c7 96 a1 88 c9 f3 52 7f 69 73 1f 42 da ff d4 5d c3 43 71 74 14 5a 40 8a 4a 05 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AC4E5ACF-89F7-4220-BA21-81EE183975E2}] "Path"="\Microsoft\Windows\Application Experience\AitAgent" "Triggers"=15 00 00 00 00 00 00 00 01 12 72 fb fe 07 00 00 00 04 c5 1f 53 09 c8 01 00 12 72 fb fe 07 00 00 ff ff ff ff ff ff ff ff 7e 21 42 02 48 48 48 48 27 74 d5 37 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 b4 00 00 00 60 35 01 00 80 f4 03 00 ff ff ff ff 09 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 dd dd 00 00 00 00 00 00 01 12 72 fb fe 07 00 00 00 04 c5 1f 53 09 c8 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff 01 00 00 00 01 00 00 00 00 00 00 00 00 01 00 00 01 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 57 87 84 2f 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=9a 13 ff 7f b5 4c 92 12 aa c3 66 3a ee 28 89 a6 af b0 ba 68 98 ab c3 f9 a8 11 e6 21 69 87 b8 33 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AC668097-4D6B-4093-AC14-014C09DBF820}] "Path"="\Microsoft\Windows\Ras\MobilityManager" "Triggers"=15 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 40 05 02 02 48 48 48 48 fe 13 4e 91 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 13 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 cc cc 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 07 00 00 01 01 00 00 00 00 00 05 20 00 00 00 00 00 00 00 2a 01 00 00 00 00 00 00 3c 00 51 00 75 00 65 00 72 00 79 00 4c 00 69 00 73 00 74 00 3e 00 0a 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 3c 00 51 00 75 00 65 00 72 00 79 00 0a 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 49 00 64 00 3d 00 22 00 30 00 22 00 0a 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 00 20 (REG_BINARY) "DynamicInfo"=03 00 00 00 98 cf 92 2f 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=8d e2 65 bb e4 e3 06 d0 ab a4 28 99 05 fa 9f 52 8b 9b 77 a2 de 54 60 b3 98 fa 14 21 86 6f 21 c7 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B0CBAB43-44FC-469B-A4CE-87426761FDCE}] "Path"="\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor" "Triggers"=15 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 00 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff 10 21 82 02 48 48 48 48 03 d6 15 89 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 13 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 ee ee 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 00 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff 00 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 03 00 00 00 dd dd 00 00 00 00 00 00 01 12 72 fb fe 07 00 00 00 78 ba 3f 01 c2 c8 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff 01 00 00 00 01 00 00 00 00 00 00 00 00 01 00 00 01 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 f9 30 95 2f 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=8a 4b c3 fb 22 e9 43 ed e5 a9 84 56 cc af 34 53 d4 dd d6 13 d1 a3 26 50 17 96 7a bc 8c 77 9e 7d (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B7259456-8155-4613-863E-5BC24D007155}] "Path"="\Microsoft\Windows\Media Center\PvrRecoveryTask" "Hash"=09 04 d5 e1 fc ca d5 de d3 db b0 32 91 bb 21 97 67 06 6b f8 05 7d 0d 5e 0c 47 bb d4 54 af ee af (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 05 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 05 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 05 02 02 48 48 48 48 3a 04 c1 3d 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 14 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 7d 36 67 ed 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BE669C13-8165-4536-96D0-6D6C39292AAE}] "Path"="\Microsoft\Windows\Diagnosis\Scheduled" "Triggers"=15 00 00 00 00 00 00 00 01 12 72 fb fe 07 00 00 00 68 b6 94 02 d0 c3 01 00 12 72 fb fe 07 00 00 ff ff ff ff ff ff ff ff 72 89 c0 03 48 48 48 48 ab 8c 36 e4 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 04 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 58 02 00 00 80 70 00 00 80 f4 03 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 dd dd 00 00 00 00 00 00 01 12 72 fb fe 07 00 00 00 68 b6 94 02 d0 c3 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff 02 00 00 00 01 00 01 00 00 00 00 00 00 01 00 00 01 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 41 9a dc 2f 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=82 eb d6 01 08 50 0f cd 35 7b f2 8c ce 59 52 ef b6 ff 94 3b 38 e8 25 0a 3a f3 45 07 c6 16 2f ae (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C016366B-7126-46CA-B36B-592A3D95A60B}] "Path"="\Microsoft\Windows\Customer Experience Improvement Program\Consolidator" "Triggers"=15 00 00 00 00 00 00 00 01 12 72 fb fe 07 00 00 00 c0 5b 5d c3 d0 c3 01 00 12 72 fb fe 07 00 00 ff ff ff ff ff ff ff ff 40 21 42 02 48 48 48 48 f3 fe 73 0b 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 dd dd 00 00 00 00 00 00 01 12 72 fb fe 07 00 00 00 c0 5b 5d c3 d0 c3 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 30 0b 01 00 00 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 01 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 02 5d e1 2f 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=55 5c d3 77 ba 0a 05 32 a5 63 0e be 96 ae 9d b1 84 3e 64 2b 2a 15 ba 07 c4 0c 8b 67 be 00 e8 7f (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CA4B8FF2-A4D2-4D88-A52E-3A5BDAF7F56E}] "Path"="\Microsoft\Windows\Registry\RegIdleBackup" "Triggers"=15 00 00 00 00 00 00 00 01 12 72 fb fe 07 00 00 00 c0 76 40 09 4c c8 01 00 12 72 fb fe 07 00 00 ff ff ff ff ff ff ff ff 4e 20 c2 02 48 48 48 48 c7 92 5c 29 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 b4 00 00 00 70 43 01 00 00 00 00 00 ff ff ff ff 05 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 75 00 70 00 00 00 00 00 00 00 00 00 dd dd 00 00 00 00 00 00 01 12 72 fb fe 07 00 00 00 c0 76 40 09 4c c8 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff 01 00 00 00 0a 00 00 00 00 00 00 00 00 01 00 00 01 00 00 00 10 0e 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 a8 1c 18 30 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=ae 0d b2 f3 1a 30 b2 08 e0 c5 0e f6 4c 29 94 8a 82 86 12 ac 60 5c a8 f6 b3 e4 2f 51 ea 6c 09 e1 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CB3D64BF-C0C9-45FF-BFB0-FF1A8F680186}] "Path"="\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask" "Triggers"=15 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 00 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff 28 11 c2 03 48 48 48 48 66 d8 94 b3 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 58 02 00 00 10 0e 00 00 80 f4 03 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 22 43 6f 6c 00 00 00 00 00 00 00 00 cc cc 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 00 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff 0f 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 01 00 00 00 00 00 05 20 00 00 00 00 00 00 00 a5 00 00 00 00 00 00 00 3c 00 51 00 75 00 65 00 72 00 79 00 4c 00 69 00 73 00 74 00 3e 00 3c 00 51 00 75 00 65 00 72 00 79 00 20 00 49 00 64 00 3d 00 22 00 30 00 22 00 20 00 50 00 61 00 74 00 68 00 3d 00 22 00 53 00 79 00 73 00 74 00 65 00 6d 00 22 00 3e (REG_BINARY) "DynamicInfo"=03 00 00 00 08 7e 1a 30 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=40 f4 a1 b4 cb f3 46 72 0b 7a 18 6a ae 91 2f ce a1 fb e0 dd 82 f4 8f 51 fc b9 ad 1a 76 bf 25 25 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CD07553C-4006-48BC-826A-F2C44B6664B1}] "Path"="\Microsoft\Windows\Media Center\RecordingRestart" "Hash"=f5 fe 54 70 24 9e a9 5d e2 cb 01 d9 fa 91 0f b3 19 57 ed 0f b0 f9 e0 32 08 a3 70 81 a0 57 aa 08 (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 60 05 02 02 48 48 48 48 3e 01 cf af 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 14 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 80 f4 03 00 ff ff ff ff 06 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 07 00 00 01 00 74 00 4d 00 61 00 6e 00 61 00 67 00 65 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 fb 1e ad e5 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CD385363-F23F-409D-B9A1-4A2F39A993D6}] "Path"="\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector" "Hash"=96 15 d0 2c 18 c2 e2 0a 2c 5d 63 73 1d 41 43 f4 9c d1 73 a5 c6 e0 95 84 ea 1a 72 dc 9a 6c ff 48 (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 01 a2 7e 01 00 00 00 00 00 68 b6 94 02 d0 c3 01 00 a2 7e 01 00 00 00 00 ff ff ff ff ff ff ff ff 52 21 82 02 48 48 48 48 8a ce fd 74 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 dd dd 00 00 00 00 00 00 01 a2 7e 01 00 00 00 00 00 68 b6 94 02 d0 c3 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff 02 00 00 00 02 00 01 00 00 00 00 00 00 01 00 00 01 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 57 68 5c e3 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CEE64558-E1A7-4D9D-80A7-2001912BE5B5}] "Path"="\Microsoft\Windows\MemoryDiagnostic\CorruptionDetector" "Triggers"=15 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 00 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff 00 a0 c0 02 48 48 48 48 f1 d7 b9 29 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 04 00 00 00 48 48 48 48 10 00 00 00 48 48 48 48 01 02 00 00 00 00 00 05 20 00 00 00 21 02 00 00 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 cc cc 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 00 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff 00 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 01 00 00 00 00 00 05 20 00 00 00 00 00 00 00 99 00 00 00 00 00 00 00 3c 00 51 00 75 00 65 00 72 00 79 00 4c 00 69 00 73 00 74 00 3e 00 3c 00 51 00 75 00 65 00 72 00 79 00 20 00 49 00 64 00 3d 00 22 00 30 00 22 00 20 00 50 00 61 00 74 00 68 00 3d 00 22 00 53 00 79 00 73 00 74 00 65 00 6d 00 22 00 3e 00 3c 00 53 00 65 00 6c 00 65 00 63 00 74 00 20 00 50 00 61 00 74 00 68 00 3d 00 22 00 53 00 79 00 73 00 74 00 65 00 6d 00 22 00 3e 00 2a 00 5b 00 53 00 79 00 73 00 74 (REG_BINARY) "DynamicInfo"=03 00 00 00 68 df 1c 30 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=39 d0 b0 4f 35 6d f6 65 0e 07 60 76 25 5c e2 6c e2 75 91 42 87 40 c7 59 24 1d 2b 1a ee 37 f6 12 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D0250F3F-6480-484F-B719-42F659AC64D5}] "Path"="\Microsoft\Windows\Windows Error Reporting\QueueReporting" "Triggers"=15 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 40 85 00 02 48 48 48 48 5f 63 00 62 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 04 00 00 00 48 48 48 48 10 00 00 00 48 48 48 48 01 02 00 00 00 00 00 05 20 00 00 00 21 02 00 00 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 80 f4 03 00 ff ff ff ff 05 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 75 00 70 00 00 00 00 00 00 00 00 00 aa aa 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 0c 03 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 2d 00 32 00 39 00 34 00 29 00 00 00 3e 00 01 48 48 48 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 2d 35 04 2d 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=89 35 27 aa 03 80 9d 90 36 02 ec 55 23 54 9e fd 65 b4 08 bf 60 74 58 dd 02 d1 f1 3e 5a 2c 5c 9d (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D45169BE-888C-49EE-85FD-81FEDE1D999D}] "Path"="\GoogleUpdateTaskMachineCore" "Hash"=8b 5e c1 4b a5 c3 15 f0 e8 44 37 7f c4 92 94 07 3b fb ea 0e 3c 57 27 3c d5 70 e0 fc 61 16 f2 58 (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 01 bf 94 01 00 00 00 00 00 de 78 65 76 65 cf 01 00 bf 94 01 00 00 00 00 ff ff ff ff ff ff ff ff 00 21 42 00 48 48 48 48 3e f1 7e 6e 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 80 f4 03 00 ff ff ff ff 05 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 dd dd 00 00 00 00 00 00 01 bf 94 01 00 00 00 00 00 de 78 65 76 65 cf 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 08 07 00 00 02 00 00 00 02 00 12 00 00 00 00 00 00 01 00 00 01 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 46 bf 84 5d 8f 57 ce 01 c6 ee a2 73 07 58 ce 01 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D7B6E81D-3CF4-432C-84D2-24213F4316E6}] "Path"="\Microsoft\Windows\Autochk\Proxy" "Triggers"=15 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 42 21 02 02 48 48 48 48 d4 b0 e6 99 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 13 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 58 02 00 00 80 33 e1 01 80 f4 03 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 08 07 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 07 00 00 01 00 00 00 00 00 00 00 00 00 00 00 03 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 4a 43 e5 2c 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=3d 60 97 22 3b 2c f9 f1 a3 ae 7e 95 7a 0e 81 7c f7 0c 6c 74 ed 7e 1c 47 12 39 22 b7 86 68 f3 ef (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D97E672A-A18F-4536-B8AC-161C0E8A62F9}] "Path"="\Microsoft\Windows\SideShow\SystemDataProviders" "Hash"=8d fb 2a aa 49 e2 62 bc 3c a3 90 1d 44 15 20 79 d5 55 67 aa a6 37 74 3e 01 e3 4d f3 6a 5f b4 c7 (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 21 02 02 48 48 48 48 88 27 59 90 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 13 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 00 00 00 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 aa aa 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 1e 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 7e 3f 01 00 00 00 00 05 00 00 00 00 00 00 00 01 48 48 48 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 4a a7 00 e4 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DA41DE71-8431-42FB-9DB0-EB64A961DEAD}] "Path"="\Microsoft\Windows\Maintenance\WinSAT" "Triggers"=15 00 00 00 00 00 00 00 01 a2 7e 01 00 00 00 00 00 28 3b a2 11 4c c8 01 00 a2 7e 01 00 00 00 00 ff ff ff ff ff ff ff ff 3a a1 00 03 48 48 48 48 61 f8 4c 36 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 04 00 00 00 48 48 48 48 10 00 00 00 48 48 48 48 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 00 00 00 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 dd dd 00 00 00 00 00 00 01 a2 7e 01 00 00 00 00 00 28 3b a2 11 4c c8 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff 02 00 00 00 01 00 01 00 00 00 00 00 00 01 00 00 01 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 c9 40 1f 30 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=aa 1f 58 fd 98 3a ff c5 9d af 92 3e bb cf e8 e2 77 86 d3 15 a5 60 d8 8c fc 4f c9 b0 43 08 1d fe (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DCEF7F52-0F5C-45DA-A605-293D930877FD}] "Path"="\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask" "Hash"=dc 19 ce 23 f9 63 90 f7 80 23 2c fc 5e 66 7a 73 08 1e d2 f2 29 f5 e9 64 d7 86 09 ba 71 b2 cb b8 (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 09 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 09 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 05 02 02 48 48 48 48 b1 87 c5 6f 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 14 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 65 3e ac ed 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DD9F510C-95F4-499A-90C8-BAC5BC372FF4}] "Path"="\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask" "Triggers"=15 00 00 00 00 00 00 00 01 12 72 fb fe 07 00 00 00 00 f2 32 fa cf c3 01 00 12 72 fb fe 07 00 00 ff ff ff ff ff ff ff ff 40 21 82 02 48 48 48 48 21 7b 8e 98 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 14 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 00 00 00 00 ff ff ff ff 07 00 00 00 3c 00 00 00 03 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 dd dd 00 00 00 00 00 00 01 12 72 fb fe 07 00 00 00 00 f2 32 fa cf c3 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff 01 00 00 00 01 00 00 00 00 00 00 00 00 01 00 00 01 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 29 a2 21 30 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=fd 59 aa 8f a7 e6 d6 c6 81 94 51 35 c9 9b ce ac 82 f3 db 23 b0 37 25 3c 8d ad 16 17 f5 c5 e4 25 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DF543423-6FAA-4F73-BDCC-498633F44F90}] "Path"="\Microsoft\Windows\Media Center\InstallPlayReady" "Hash"=4e e9 d8 76 c9 7d f7 de ce 1c 79 bd 5f de 91 9b ff fe ad 42 bd 12 a3 6b d5 ff f3 08 ff b9 7c af (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 09 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 09 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 05 02 02 48 48 48 48 c5 b9 a7 66 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 a5 77 4d e9 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E22A8667-F75B-4BA9-BA46-067ED4429DE8}] "Path"="\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange" "Triggers"=15 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 00 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff 00 10 c2 02 48 48 48 48 17 0f 4f 6e 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 80 f4 03 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 cc cc 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 00 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff 00 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 01 00 00 00 00 00 05 20 00 00 00 00 00 00 00 d3 00 00 00 00 00 00 00 3c 00 51 00 75 00 65 00 72 00 79 00 4c 00 69 00 73 00 74 00 3e 00 3c 00 51 00 75 00 65 00 72 00 79 00 20 00 49 00 64 00 3d 00 22 00 30 00 22 00 20 00 50 00 61 00 74 00 68 00 3d 00 22 00 53 00 79 00 73 00 74 00 65 00 6d 00 22 00 3e (REG_BINARY) "DynamicInfo"=03 00 00 00 29 a2 21 30 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=cd 35 89 98 7e 9b 5e 1e 6b 4e ec 84 9a 5a db be ec ea 05 cb 35 bb 86 b0 7a c6 6c 40 29 eb 0d 6d (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E3163C33-301D-4730-A266-5518C5ED3967}] "Path"="\Microsoft\Windows\Bluetooth\UninstallDeviceTask" "Triggers"=15 00 00 00 00 00 00 00 00 08 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 08 00 00 00 00 00 00 00 00 00 00 00 00 00 00 10 05 02 02 48 48 48 48 e0 ee 12 7a 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 89 03 24 30 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=d0 65 c2 18 fc de 12 65 2a be dc 83 35 9d 3d 44 9b 93 58 07 b9 9f 53 b2 15 be 8d 65 2d 9f 55 4c (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E3177873-F581-48BB-9A09-BE44656E6531}] "Path"="\Microsoft\Windows\Media Center\PBDADiscovery" "Hash"=6c 42 0c 3f f1 dd 06 81 25 16 5e 88 45 6d c7 11 07 f6 c6 8e cc ab 51 9e b4 f1 df 7f b3 bd c3 90 (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 07 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 21 02 02 48 48 48 48 e9 78 13 70 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 75 85 aa e7 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EACA24FF-236C-401D-A1E7-B3D5267B8A50}] "Path"="\Microsoft\Windows\RAC\RacTask" "Triggers"=15 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 40 21 82 02 48 48 48 48 7f 10 56 93 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 13 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 00 00 00 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 cc cc 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 07 00 00 01 01 00 00 00 00 00 05 20 00 00 00 00 00 00 00 a8 00 00 00 00 00 00 00 3c 00 51 00 75 00 65 00 72 00 79 00 4c 00 69 00 73 00 74 00 3e 00 3c 00 51 00 75 00 65 00 72 00 79 00 20 00 49 00 64 00 3d 00 22 00 30 00 22 00 20 00 50 00 61 00 74 00 68 00 3d 00 22 00 41 00 70 00 70 00 6c 00 69 00 63 00 61 00 74 (REG_BINARY) "DynamicInfo"=03 00 00 00 89 03 24 30 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=33 ab 89 ac 19 2e f6 38 f4 cf 7e c2 41 7a f2 87 b4 85 9f 01 ac 24 1e 5f db 2b 30 c9 b0 a6 1b d3 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EB02381F-D652-4B1C-894A-712498C62C51}] "Path"="\Microsoft\Windows\MUI\LPRemove" "Triggers"=15 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 00 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff 12 21 42 03 48 48 48 48 9b 41 d2 d8 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 58 02 00 00 ff ff ff ff 90 7e 00 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 00 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff dc 05 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 03 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 4a 43 e5 2c 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=47 d4 5b 03 1c 19 94 b3 9c 49 ef 36 d6 fe 80 fb ec 11 1f 7d 6e f3 e2 82 47 6e f5 d7 7e 09 7d ab (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EF30ED12-B9BB-450B-A3DF-FEDE56A6756D}] "Path"="\Microsoft\Windows\Media Center\RegisterSearch" "Hash"=73 8b 1e 7e 0c 7c 8d 59 af e5 3f 0b dd 68 c7 6e 6f ea ca 85 19 c6 11 62 23 77 29 13 cc 37 ce 13 (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 07 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 21 02 02 48 48 48 48 1d cf ad cd 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 fd ac 03 e9 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FA2BC0A6-8D4B-458A-85C8-2B8C72487513}] "Path"="\Microsoft\Windows\MemoryDiagnostic\DecompressionFailureDetector" "Triggers"=15 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 00 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff 00 a0 c0 02 48 48 48 48 aa 4e 8b 9d 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 04 00 00 00 48 48 48 48 10 00 00 00 48 48 48 48 01 02 00 00 00 00 00 05 20 00 00 00 21 02 00 00 00 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 cc cc 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 00 00 00 00 00 00 00 00 00 1c 24 fb fe 07 00 00 ff ff ff ff ff ff ff ff 00 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 01 00 00 00 00 00 05 20 00 00 00 00 00 00 00 f4 00 00 00 00 00 00 00 3c 00 51 00 75 00 65 00 72 00 79 00 4c 00 69 00 73 00 74 00 3e 00 3c 00 51 00 75 00 65 00 72 00 79 00 20 00 49 00 64 00 3d 00 22 00 30 00 22 00 20 00 50 00 61 00 74 00 68 00 3d 00 22 00 4d 00 69 00 63 00 72 00 6f 00 73 00 6f 00 66 00 74 00 2d 00 57 00 69 00 6e 00 64 00 6f 00 77 00 73 00 2d 00 4b 00 65 00 72 00 6e 00 65 00 6c 00 2d 00 53 00 74 00 6f 00 72 00 65 00 4d 00 67 00 72 00 2f 00 4f 00 70 (REG_BINARY) "DynamicInfo"=03 00 00 00 e9 64 26 30 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=cb b1 2f 1e d1 29 86 18 18 01 a3 65 a6 f7 50 01 d3 1d 2b b3 cf 74 41 ba 85 41 89 42 67 d4 cc 42 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FB3C354D-297A-4EB2-9B58-090F6361906B}] "Path"="\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem" "Triggers"=15 00 00 00 00 00 00 00 01 12 72 fb fe 07 00 00 00 30 11 8b 3b 4c c8 01 00 12 72 fb fe 07 00 00 ff ff ff ff ff ff ff ff 42 21 42 02 48 48 48 48 d8 d9 93 2b 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 12 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 2c 01 00 00 20 1c 00 00 2c 01 00 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 75 00 70 00 00 00 00 00 00 00 00 00 dd dd 00 00 00 00 00 00 01 12 72 fb fe 07 00 00 00 30 11 8b 3b 4c c8 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff 01 00 00 00 0e 00 00 00 00 00 00 00 00 01 00 00 01 00 00 00 80 70 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 aa 27 2b 30 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=94 23 b2 65 cb ab 42 6f 81 67 2f 08 4e 7d 98 66 f6 85 d9 83 b6 22 24 71 2f f0 db c4 ff ef e3 74 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FDD56C73-F0D5-41B6-B767-6EFFD7966428}] "Path"="\Microsoft\Windows\Customer Experience Improvement Program\KernelCeipTask" "Triggers"=15 00 00 00 00 00 00 00 01 12 72 fb fe 07 00 00 00 2c 71 03 e3 0b c9 01 00 12 72 fb fe 07 00 00 ff ff ff ff ff ff ff ff 52 21 c2 02 48 48 48 48 d3 fa 1a b0 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 13 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 b4 00 00 00 10 ef 00 00 80 f4 03 00 ff ff ff ff 07 00 00 00 8c 0a 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 80 00 00 00 00 00 dd dd 00 00 00 00 00 00 01 12 72 fb fe 07 00 00 00 2c 71 03 e3 0b c9 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff 02 00 00 00 01 00 10 00 00 00 00 00 00 01 00 00 01 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "DynamicInfo"=03 00 00 00 aa 27 2b 30 41 04 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) "Hash"=ae b0 3f 1b c1 69 23 6f 2c 3b f0 19 f9 d9 ed 3c 21 3d 1e 4a 56 8f 8c 67 f1 fc 3f 2e c0 86 49 a6 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FDDFF9A2-6BEA-4CCD-97B4-05764B12EFA4}] "Path"="\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task" "Hash"=ec e9 93 44 66 e3 d4 23 20 fa 32 fa 0c fd 81 7b ef b0 dc bc 8d d2 29 c0 79 9b e5 88 a4 b4 27 99 (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 82 94 01 00 00 00 00 ff ff ff ff ff ff ff ff f8 a1 40 00 48 48 48 48 6d 61 71 83 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 05 00 00 00 48 48 48 48 0c 00 00 00 48 48 48 48 01 01 00 00 00 00 00 05 04 00 00 00 48 48 48 48 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 10 0e 00 00 ff ff ff ff 07 00 00 00 10 0e 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 dd dd 00 00 00 00 00 00 01 82 94 01 00 00 00 00 00 63 8f 47 26 c9 ca 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff 01 00 00 00 07 00 00 00 00 00 00 00 00 01 00 00 01 00 00 00 80 3a 09 00 00 00 00 00 aa aa 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 84 03 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 69 00 63 (REG_BINARY) "DynamicInfo"=03 00 00 00 67 22 bb fa d4 0f cf 01 cc b2 cc 9f 74 63 cf 01 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FE951B4A-AAA7-4DC8-A2D7-6BC3775413EF}] "Path"="\Microsoft\Windows\SideShow\SessionAgent" "Hash"=db c0 65 69 54 55 f1 65 21 c1 f2 cc b4 fb a7 17 57 c5 3f c6 d3 8c 9b 87 fe 41 bf 26 f2 86 e1 59 (REG_BINARY) "Triggers"=15 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 00 85 00 02 48 48 48 48 3d 09 f3 7d 48 48 48 48 00 48 48 48 48 48 48 48 00 48 48 48 48 48 48 48 04 00 00 00 48 48 48 48 10 00 00 00 48 48 48 48 01 02 00 00 00 00 00 05 20 00 00 00 21 02 00 00 00 00 00 00 48 48 48 48 38 00 00 00 48 48 48 48 00 00 00 00 ff ff ff ff 00 00 00 00 ff ff ff ff 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 aa aa 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ff ff ff ff ff ff ff ff 0f 00 00 00 ff ff ff ff 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 61 00 6b 00 65 00 00 00 00 00 00 00 00 00 01 48 48 48 48 48 48 48 (REG_BINARY) "DynamicInfo"=03 00 00 00 1a b7 8a e4 00 57 ce 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Ccleaner] "Id"="{564AADC7-773D-4D22-91C9-FB6682FB8A38}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\FacebookUpdateTaskUserS-1-5-21-195878770-3682003311-2466773037-1000Core] "Id"="{1F71BBB8-5598-4B3A-8B71-864EF1C1D8E5}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\FacebookUpdateTaskUserS-1-5-21-195878770-3682003311-2466773037-1000UA] "Id"="{9237038E-ACEB-48EA-BB0D-45AB6CC35217}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore] "Id"="{D45169BE-888C-49EE-85FD-81FEDE1D999D}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA] "Id"="{3386DD80-F78D-4BA4-A0F4-172EF173606C}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Active Directory Rights Management Services Client] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Automated)] "Id"="{613612BA-897D-44CE-8DC1-8FC283F9FD51}" "Index"= 0x0000000002 (2) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Manual)] "Id"="{28011108-68DF-4C73-B91B-57427D501BBA}" "Index"= 0x0000000002 (2) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\AppID] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\AppID\PolicyConverter] "Id"="{A48CABBF-24C8-4B87-B00F-9261807C3B43}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck] "Id"="{72DB7465-BC54-491B-A92A-4637A28C9BBF}" "Index"= 0x0000000001 (1) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Application Experience] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Application Experience\AitAgent] "Id"="{AC4E5ACF-89F7-4220-BA21-81EE183975E2}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Application Experience\ProgramDataUpdater] "Id"="{A7C73732-9F11-4281-8D19-764D4EC9D94D}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Autochk] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Autochk\Proxy] "Id"="{D7B6E81D-3CF4-432C-84D2-24213F4316E6}" "Index"= 0x0000000001 (1) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Bluetooth] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Bluetooth\UninstallDeviceTask] "Id"="{E3163C33-301D-4730-A266-5518C5ED3967}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\CertificateServicesClient] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\CertificateServicesClient\SystemTask] "Id"="{5F5A18EB-DC73-4E45-A11C-B59043598412}" "Index"= 0x0000000001 (1) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\CertificateServicesClient\UserTask] "Id"="{7AFCC0CA-7121-422A-AB45-B0E8D599FF08}" "Index"= 0x0000000002 (2) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\CertificateServicesClient\UserTask-Roam] "Id"="{9979CB83-103A-4105-9E5D-C74B0AF6D198}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Customer Experience Improvement Program] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Customer Experience Improvement Program\Consolidator] "Id"="{C016366B-7126-46CA-B36B-592A3D95A60B}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Customer Experience Improvement Program\KernelCeipTask] "Id"="{FDD56C73-F0D5-41B6-B767-6EFFD7966428}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Customer Experience Improvement Program\OptinNotification] "Id"="{A132EB1D-A1EA-48EF-8B69-9358EADF5BD3}" "Index"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Customer Experience Improvement Program\UsbCeip] "Id"="{47536D45-EEEC-4BDC-8183-A4DC1F8DA9E4}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Defrag] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Defrag\ScheduledDefrag] "Id"="{1B1FEEC1-DD35-4AFE-93DD-26E28BE50DBA}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Diagnosis] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Diagnosis\Scheduled] "Id"="{BE669C13-8165-4536-96D0-6D6C39292AAE}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\DiskDiagnostic] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector] "Id"="{CD385363-F23F-409D-B9A1-4A2F39A993D6}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver] "Id"="{1A99D428-81E1-4683-B90C-0376E29C7BCF}" "Index"= 0x0000000002 (2) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Location] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Location\Notifications] "Id"="{A6AF9377-77CE-47AB-AD7D-EC32CAD0C82D}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Maintenance] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Maintenance\WinSAT] "Id"="{DA41DE71-8431-42FB-9DB0-EB64A961DEAD}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\ActivateWindowsSearch] "Id"="{530D23FA-3E60-4605-AA1B-78397C110894}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\ConfigureInternetTimeService] "Id"="{0D7C830E-84BC-4BFE-82FA-E9732123FAA8}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\DispatchRecoveryTasks] "Id"="{09604BCE-1629-424F-A530-A5BB43566DCF}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\ehDRMInit] "Id"="{2A60D496-B86C-426E-A7A6-6C5DE2A985D9}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\InstallPlayReady] "Id"="{DF543423-6FAA-4F73-BDCC-498633F44F90}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\mcupdate] "Id"="{7B8592C9-C6C7-40C0-90CD-EC18D2F1974F}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\MediaCenterRecoveryTask] "Id"="{18DFD67C-3AA0-42DB-9168-4C2E1AB8DF06}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask] "Id"="{DCEF7F52-0F5C-45DA-A605-293D930877FD}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\OCURActivate] "Id"="{12474DF8-DA4C-47C0-ABB8-1E550D017980}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\OCURDiscovery] "Id"="{A626A415-7382-4BCB-A0CC-2494B74F36AA}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\PBDADiscovery] "Id"="{E3177873-F581-48BB-9A09-BE44656E6531}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\PBDADiscoveryW1] "Id"="{08F18692-388C-46F0-9353-D17110901234}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\PBDADiscoveryW2] "Id"="{6B631E08-C639-4976-9AC1-EFFEC1557FEF}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\PeriodicScanRetry] "Id"="{118F546A-C86F-4359-8918-10CFD4A5965D}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\PvrRecoveryTask] "Id"="{B7259456-8155-4613-863E-5BC24D007155}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\PvrScheduleTask] "Id"="{976B537F-0BB1-491B-8E9C-D7070830ACC7}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\RecordingRestart] "Id"="{CD07553C-4006-48BC-826A-F2C44B6664B1}" "Index"= 0x0000000001 (1) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\RegisterSearch] "Id"="{EF30ED12-B9BB-450B-A3DF-FEDE56A6756D}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\ReindexSearchRoot] "Id"="{0FD22885-29E3-4050-84C7-607DA35A629F}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\SqlLiteRecoveryTask] "Id"="{454CC20E-3233-45D6-A00C-F734B59C5C56}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\UpdateRecordPath] "Id"="{0F939740-E7A2-4B48-AE90-7C8C228D206A}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\MemoryDiagnostic] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\MemoryDiagnostic\CorruptionDetector] "Id"="{CEE64558-E1A7-4D9D-80A7-2001912BE5B5}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\MemoryDiagnostic\DecompressionFailureDetector] "Id"="{FA2BC0A6-8D4B-458A-85C8-2B8C72487513}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\MemoryDiagnostic\MemUsageTask] "Id"="{C4375D81-FA72-45AC-85F2-3B86A11CCC7D}" "Index"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\MobilePC] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\MobilePC\HotStart] "Id"="{4303AC26-2CD2-4FEA-9292-A2903F926D50}" "Index"= 0x0000000002 (2) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\MUI] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\MUI\LPRemove] "Id"="{EB02381F-D652-4B1C-894A-712498C62C51}" "Index"= 0x0000000001 (1) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Multimedia] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Multimedia\SystemSoundsService] "Id"="{2470470F-2634-478E-B181-571E98A789BB}" "Index"= 0x0000000002 (2) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\NetTrace] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\NetTrace\GatherNetworkInfo] "Id"="{81540B9F-B5BF-47EB-9C95-BE195BF2C664}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\NetworkAccessProtection] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\NetworkAccessProtection\NAPStatus UI] "Id"="{00BB5F5C-4A20-4FD6-8900-4699F989BF01}" "Index"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Offline Files] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Offline Files\Background Synchronization] "Id"="{27BAD03C-1558-4E06-8E19-9A37529A1A2B}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Offline Files\Logon Synchronization] "Id"="{2385724E-E65A-4C49-95D7-E1F2AB08A2F0}" "Index"= 0x0000000002 (2) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\PerfTrack] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor] "Id"="{B0CBAB43-44FC-469B-A4CE-87426761FDCE}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\PLA] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\PLA\System] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\PLA\System\ConvertLogEntries] "Id"="{600F3312-A477-448A-936D-EB2DF977300B}" "Index"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Power Efficiency Diagnostics] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem] "Id"="{FB3C354D-297A-4EB2-9B58-090F6361906B}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\RAC] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\RAC\RACAgent] "Id"="{7F9C951C-D364-4B70-8D07-D2C9B7F76E35}" "Index"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\RAC\RacTask] "Id"="{EACA24FF-236C-401D-A1E7-B3D5267B8A50}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Ras] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Ras\MobilityManager] "Id"="{AC668097-4D6B-4093-AC14-014C09DBF820}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Registry] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Registry\RegIdleBackup] "Id"="{CA4B8FF2-A4D2-4D88-A52E-3A5BDAF7F56E}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\RemoteAssistance] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask] "Id"="{CB3D64BF-C0C9-45FF-BFB0-FF1A8F680186}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Shell] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Shell\CrawlStartPages] "Id"="{B936B1AF-0C7E-4C4D-84F1-CF67453259A1}" "Index"= 0x0000000000 (0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Shell\WindowsParentalControls] "Id"="{5B42DD9C-5A26-4F27-BB95-34603F0997E5}" "Index"= 0x0000000002 (2) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Shell\WindowsParentalControlsMigration] "Id"="{486D715E-6AA2-44CF-BC48-B6990CBB53C6}" "Index"= 0x0000000002 (2) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\SideShow] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\SideShow\AutoWake] "Id"="{2A4E2D01-E9C4-42AE-B8F8-99D8D85C78B9}" "Index"= 0x0000000002 (2) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\SideShow\GadgetManager] "Id"="{981C6770-CDE9-4121-B548-83869FEBA6AF}" "Index"= 0x0000000002 (2) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\SideShow\SessionAgent] "Id"="{FE951B4A-AAA7-4DC8-A2D7-6BC3775413EF}" "Index"= 0x0000000002 (2) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\SideShow\SystemDataProviders] "Id"="{D97E672A-A18F-4536-B8AC-161C0E8A62F9}" "Index"= 0x0000000002 (2) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\SoftwareProtectionPlatform] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask] "Id"="{DD9F510C-95F4-499A-90C8-BAC5BC372FF4}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\SystemRestore] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\SystemRestore\SR] "Id"="{994C86AD-A929-4B2C-88A0-4E25A107A029}" "Index"= 0x0000000001 (1) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Task Manager] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Task Manager\Interactive] "Id"="{1F7B7221-AE8F-44F3-BA82-F7D260F51964}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Tcpip] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Tcpip\IpAddressConflict1] "Id"="{088482FA-65B8-4E17-9ABF-1DCD48E8D373}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Tcpip\IpAddressConflict2] "Id"="{09F06BFE-A3C8-40E3-846A-6E6F4000C238}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\TextServicesFramework] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\TextServicesFramework\MsCtfMonitor] "Id"="{4C8B01A2-11FF-4C41-848F-508EF4F00CF7}" "Index"= 0x0000000002 (2) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Time Synchronization] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Time Synchronization\SynchronizeTime] "Id"="{044A6734-E90E-4F8F-B357-B2DC8AB3B5EC}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UPnP] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UPnP\UPnPHostConfig] "Id"="{5A40E926-9E86-4B89-9CFD-B12311724371}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\User Profile Service] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\User Profile Service\HiveUploadTask] "Id"="{6738BA6E-EA75-4B6B-B8B8-71F0336DD8EF}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WDI] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WDI\ResolutionHost] "Id"="{9435F817-FED2-454E-88CD-7F78FDA62C48}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Windows Activation Technologies] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Windows Activation Technologies\ValidationTask] "Id"="{8A58DAB3-E14F-4B8C-82AA-08434D33B11D}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline] "Id"="{A5FAFD67-95A4-4527-948C-FC065589B812}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Windows Error Reporting] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Windows Error Reporting\QueueReporting] "Id"="{D0250F3F-6480-484F-B719-42F659AC64D5}" "Index"= 0x0000000002 (2) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Windows Filtering Platform] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange] "Id"="{E22A8667-F75B-4BA9-BA46-067ED4429DE8}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Windows Media Sharing] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Windows Media Sharing\UpdateLibrary] "Id"="{753C47AE-EC5E-44B3-95A9-2C8E553F0E39}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WindowsBackup] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WindowsBackup\AutomaticBackup] "Id"="{68386C44-4624-4547-87E0-513C4BA55E10}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WindowsBackup\ConfigNotification] "Id"="{2F57269B-1E09-4E2D-AB1E-B0FDAC7D279C}" "Index"= 0x0000000003 (3) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WindowsBackup\Windows Backup Monitor] "Id"="{A302F154-98C6-4C58-8829-CA9C96897421}" "Index"= 0x0000000002 (2) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WindowsColorSystem] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WindowsColorSystem\Calibration Loader] "Id"="{A35BB7A6-5F0C-4C9F-8450-2B3BED532D51}" "Index"= 0x0000000002 (2) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Wininet] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Wininet\CacheTask] "Id"="{336DD0AD-837A-42AE-A923-A60F449DF0A3}" "Index"= 0x0000000002 (2) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows Defender] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows Live] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows Live\SOXE] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task] "Id"="{FDDFF9A2-6BEA-4CCD-97B4-05764B12EFA4}" "Index"= 0x0000000002 (2) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\PandaUSBVaccine] "Id"="{A130C11F-B207-4A75-8CB6-E93C4A41D4BB}" "Index"= 0x0000000002 (2) [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Schedule] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\Aliases] "AtServiceAccount"="NT AUTHORITY\System" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\Configuration] "DataVersion"= 0x0000000003 (3) "TasksInMemoryQueue"= 0x0000000064 (100) "TasksPerHighestPrivEngine"= 0x0000000064 (100) "TasksPerLeastPrivEngine"= 0x0000000032 (50) "MissedTasksStartupDelay"= 0x0000000258 (600) [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\Handlers] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree] (No values found) ========== dir ========== C:\Windows\system32\Tasks - Parameters: "/s" ---Files--- Ccleaner --a---- 3828 bytes [22:23 26/04/2014] [22:19 27/04/2014] FacebookUpdateTaskUserS-1-5-21-195878770-3682003311-2466773037-1000Core --a---- 3536 bytes [10:46 15/12/2013] [10:46 15/12/2013] FacebookUpdateTaskUserS-1-5-21-195878770-3682003311-2466773037-1000UA --a---- 3904 bytes [10:46 15/12/2013] [10:46 15/12/2013] GoogleUpdateTaskMachineCore --a---- 4538 bytes [08:27 23/05/2013] [22:54 26/04/2014] GoogleUpdateTaskMachineUA --a---- 4590 bytes [08:27 23/05/2013] [22:52 26/04/2014] PandaUSBVaccine --a---- 3396 bytes [20:37 22/05/2013] [22:43 26/04/2014] C:\Windows\system32\Tasks\Microsoft d------ [03:20 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows d------ [03:20 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\Active Directory Rights Management Services Client d------ [04:53 14/07/2009] AD RMS Rights Policy Template Management (Automated) --a---- 4580 bytes [04:53 14/07/2009] [23:40 11/11/2013] AD RMS Rights Policy Template Management (Manual) --a---- 3966 bytes [04:53 14/07/2009] [23:40 11/11/2013] C:\Windows\system32\Tasks\Microsoft\Windows\AppID d------ [04:54 14/07/2009] PolicyConverter --a---- 2900 bytes [04:54 14/07/2009] [04:54 14/07/2009] VerifiedPublisherCertStoreCheck --a---- 3790 bytes [04:54 14/07/2009] [04:54 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\Application Experience d------ [04:54 14/07/2009] AitAgent --a---- 3458 bytes [04:54 14/07/2009] [04:54 14/07/2009] ProgramDataUpdater --a---- 3614 bytes [04:54 14/07/2009] [04:54 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\Autochk d------ [04:49 14/07/2009] Proxy --a---- 3138 bytes [04:49 14/07/2009] [22:25 16/08/2013] C:\Windows\system32\Tasks\Microsoft\Windows\Bluetooth d------ [04:57 14/07/2009] UninstallDeviceTask --a---- 1974 bytes [04:57 14/07/2009] [11:05 03/06/2013] C:\Windows\system32\Tasks\Microsoft\Windows\Ccleaner d------ [22:57 26/04/2014] Ccleaner --a---- 4452 bytes [22:22 26/04/2014] [19:21 24/04/2014] C:\Windows\system32\Tasks\Microsoft\Windows\CertificateServicesClient d------ [04:53 14/07/2009] SystemTask --a---- 4130 bytes [04:53 14/07/2009] [04:53 14/07/2009] UserTask --a---- 3868 bytes [04:53 14/07/2009] [04:53 14/07/2009] UserTask-Roam --a---- 3134 bytes [04:53 14/07/2009] [05:09 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\Customer Experience Improvement Program d------ [04:53 14/07/2009] Consolidator --a---- 2934 bytes [04:57 14/07/2009] [04:57 14/07/2009] KernelCeipTask --a---- 3946 bytes [04:53 14/07/2009] [04:53 14/07/2009] UsbCeip --a---- 3598 bytes [04:54 14/07/2009] [04:54 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\Defrag d------ [04:57 14/07/2009] ScheduledDefrag --a---- 4838 bytes [18:26 30/03/2014] [18:27 30/03/2014] C:\Windows\system32\Tasks\Microsoft\Windows\Diagnosis d------ [04:57 14/07/2009] Scheduled --a---- 4018 bytes [04:57 14/07/2009] [04:57 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\DiskDiagnostic d------ [15:27 22/05/2013] Microsoft-Windows-DiskDiagnosticDataCollector --a---- 3760 bytes [15:27 22/05/2013] [23:00 08/06/2013] Microsoft-Windows-DiskDiagnosticResolver --a---- 2538 bytes [15:27 22/05/2013] [15:27 22/05/2013] C:\Windows\system32\Tasks\Microsoft\Windows\Location d------ [04:55 14/07/2009] Notifications --a---- 3554 bytes [04:55 14/07/2009] [04:57 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\Maintenance d------ [04:55 14/07/2009] WinSAT --a---- 4086 bytes [04:55 14/07/2009] [23:12 08/06/2013] C:\Windows\system32\Tasks\Microsoft\Windows\Media Center d------ [13:04 21/11/2010] ActivateWindowsSearch --a---- 2480 bytes [15:27 22/05/2013] [11:56 11/06/2013] ConfigureInternetTimeService --a---- 2508 bytes [15:27 22/05/2013] [11:56 11/06/2013] DispatchRecoveryTasks --a---- 2652 bytes [15:27 22/05/2013] [11:56 11/06/2013] ehDRMInit --a---- 2460 bytes [15:27 22/05/2013] [11:56 11/06/2013] InstallPlayReady --a---- 2606 bytes [15:27 22/05/2013] [11:56 11/06/2013] mcupdate --a---- 2850 bytes [15:27 22/05/2013] [11:56 11/06/2013] MediaCenterRecoveryTask --a---- 3012 bytes [15:27 22/05/2013] [02:40 17/03/2014] ObjectStoreRecoveryTask --a---- 3018 bytes [15:27 22/05/2013] [00:17 21/01/2014] OCURActivate --a---- 2440 bytes [15:27 22/05/2013] [11:56 11/06/2013] OCURDiscovery --a---- 2460 bytes [15:27 22/05/2013] [11:56 11/06/2013] PBDADiscovery --a---- 2444 bytes [15:27 22/05/2013] [11:56 11/06/2013] PBDADiscoveryW1 --a---- 3286 bytes [15:27 22/05/2013] [11:56 11/06/2013] PBDADiscoveryW2 --a---- 3288 bytes [15:27 22/05/2013] [11:56 11/06/2013] PeriodicScanRetry --a---- 3822 bytes [15:27 22/05/2013] [15:27 22/05/2013] PvrRecoveryTask --a---- 2986 bytes [15:27 22/05/2013] [02:40 17/03/2014] PvrScheduleTask --a---- 2976 bytes [15:27 22/05/2013] [02:40 17/03/2014] RecordingRestart --a---- 3078 bytes [15:27 22/05/2013] [02:40 17/03/2014] RegisterSearch --a---- 2468 bytes [15:27 22/05/2013] [11:56 11/06/2013] ReindexSearchRoot --a---- 2492 bytes [15:27 22/05/2013] [11:56 11/06/2013] SqlLiteRecoveryTask --a---- 3002 bytes [15:27 22/05/2013] [02:40 17/03/2014] UpdateRecordPath --a---- 2794 bytes [15:27 22/05/2013] [22:19 19/09/2013] C:\Windows\system32\Tasks\Microsoft\Windows\Media Center\Extender d------ [13:04 21/11/2010] C:\Windows\system32\Tasks\Microsoft\Windows\MemoryDiagnostic d------ [04:53 14/07/2009] CorruptionDetector --a---- 3304 bytes [04:53 14/07/2009] [04:53 14/07/2009] DecompressionFailureDetector --a---- 3510 bytes [04:53 14/07/2009] [04:53 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\MobilePC d------ [15:27 22/05/2013] HotStart --a---- 3576 bytes [15:27 22/05/2013] [15:27 22/05/2013] C:\Windows\system32\Tasks\Microsoft\Windows\MUI d------ [04:54 14/07/2009] LPRemove --a---- 3168 bytes [04:54 14/07/2009] [04:54 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\Multimedia d------ [04:55 14/07/2009] SystemSoundsService --a---- 2602 bytes [04:55 14/07/2009] [04:57 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\NetTrace d------ [04:54 14/07/2009] GatherNetworkInfo --a---- 2044 bytes [04:54 14/07/2009] [04:54 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\NetworkAccessProtection d------ [04:54 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\Offline Files d------ [15:27 22/05/2013] Background Synchronization --a---- 4082 bytes [15:27 22/05/2013] [15:30 22/05/2013] Logon Synchronization --a---- 3058 bytes [15:27 22/05/2013] [15:27 22/05/2013] C:\Windows\system32\Tasks\Microsoft\Windows\PerfTrack d------ [04:55 14/07/2009] BackgroundConfigSurveyor --a---- 2832 bytes [04:55 14/07/2009] [04:55 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\PLA d------ [03:20 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\PLA\System d------ [03:20 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\Power Efficiency Diagnostics d------ [04:53 14/07/2009] AnalyzeSystem --a---- 3752 bytes [04:53 14/07/2009] [04:53 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\RAC d------ [04:55 14/07/2009] RacTask --a---- 4506 bytes [04:55 14/07/2009] [22:29 16/08/2013] C:\Windows\system32\Tasks\Microsoft\Windows\Ras d------ [04:49 14/07/2009] MobilityManager --a---- 3164 bytes [04:49 14/07/2009] [22:21 16/08/2013] C:\Windows\system32\Tasks\Microsoft\Windows\Registry d------ [04:54 14/07/2009] RegIdleBackup --a---- 3956 bytes [04:54 14/07/2009] [04:54 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\RemoteApp and Desktop Connections Update d------ [03:20 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\RemoteAssistance d------ [04:57 14/07/2009] RemoteAssistanceTask --a---- 4596 bytes [04:57 14/07/2009] [04:57 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\RemovalTools d------ [00:06 31/05/2013] C:\Windows\system32\Tasks\Microsoft\Windows\Shell d------ [04:54 14/07/2009] WindowsParentalControls --a---- 3616 bytes [04:57 14/07/2009] [04:57 14/07/2009] WindowsParentalControlsMigration --a---- 3912 bytes [04:57 14/07/2009] [05:09 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\SideShow d------ [15:27 22/05/2013] AutoWake --a---- 3784 bytes [15:27 22/05/2013] [15:27 22/05/2013] GadgetManager --a---- 3614 bytes [15:27 22/05/2013] [21:39 11/07/2013] SessionAgent --a---- 3698 bytes [15:27 22/05/2013] [15:32 22/05/2013] SystemDataProviders --a---- 3792 bytes [15:27 22/05/2013] [15:33 22/05/2013] C:\Windows\system32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform d------ [04:49 14/07/2009] SvcRestartTask --a---- 3942 bytes [04:49 14/07/2009] [04:49 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\SyncCenter d------ [05:32 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\SystemRestore d------ [05:01 14/07/2009] SR --a---- 4374 bytes [05:01 14/07/2009] [23:57 18/04/2014] C:\Windows\system32\Tasks\Microsoft\Windows\Task Manager d------ [04:53 14/07/2009] Interactive --a---- 2614 bytes [04:53 14/07/2009] [04:53 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\Tcpip d------ [04:53 14/07/2009] IpAddressConflict1 --a---- 3950 bytes [04:53 14/07/2009] [04:53 14/07/2009] IpAddressConflict2 --a---- 4066 bytes [04:53 14/07/2009] [04:53 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\TextServicesFramework d------ [04:53 14/07/2009] MsCtfMonitor --a---- 2978 bytes [04:53 14/07/2009] [04:53 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\Time Synchronization d------ [04:49 14/07/2009] SynchronizeTime --a---- 3388 bytes [04:49 14/07/2009] [04:49 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\UPnP d------ [04:49 14/07/2009] UPnPHostConfig --a---- 1842 bytes [04:49 14/07/2009] [22:30 16/08/2013] C:\Windows\system32\Tasks\Microsoft\Windows\User Profile Service d------ [04:53 14/07/2009] HiveUploadTask --a---- 3420 bytes [04:53 14/07/2009] [04:53 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\WDI d------ [04:49 14/07/2009] ResolutionHost --a---- 2682 bytes [04:49 14/07/2009] [04:49 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\Windows Activation Technologies d------ [01:57 08/12/2013] ValidationTask --a---- 4364 bytes [01:57 08/12/2013] [11:11 08/12/2013] ValidationTaskDeadline --a---- 4362 bytes [01:57 08/12/2013] [11:11 08/12/2013] C:\Windows\system32\Tasks\Microsoft\Windows\Windows Error Reporting d------ [04:49 14/07/2009] QueueReporting --a---- 3160 bytes [04:49 14/07/2009] [22:31 16/08/2013] C:\Windows\system32\Tasks\Microsoft\Windows\Windows Filtering Platform d------ [04:49 14/07/2009] BfeOnServiceStartTypeChange --a---- 3290 bytes [04:49 14/07/2009] [04:49 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\Windows Media Sharing d------ [04:57 14/07/2009] UpdateLibrary --a---- 3416 bytes [04:57 14/07/2009] [21:39 11/07/2013] C:\Windows\system32\Tasks\Microsoft\Windows\WindowsBackup d------ [04:54 14/07/2009] AutomaticBackup --a---- 3644 bytes [16:31 18/04/2014] [22:54 26/04/2014] ConfigNotification --a---- 4376 bytes [04:54 14/07/2009] [22:33 16/08/2013] Windows Backup Monitor --a---- 3704 bytes [16:31 18/04/2014] [22:24 27/04/2014] C:\Windows\system32\Tasks\Microsoft\Windows\WindowsColorSystem d------ [04:57 14/07/2009] Calibration Loader --a---- 3532 bytes [04:57 14/07/2009] [05:09 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\Wininet d------ [23:29 23/05/2013] CacheTask --a---- 3540 bytes [23:29 23/05/2013] [23:29 23/05/2013] C:\Windows\system32\Tasks\Microsoft\Windows Defender d------ [04:57 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows Live d------ [20:29 12/01/2014] C:\Windows\system32\Tasks\Microsoft\Windows Live\SOXE d------ [20:29 12/01/2014] Extractor Definitions Update Task --a---- 4314 bytes [20:29 12/01/2014] [22:32 26/04/2014] C:\Windows\system32\Tasks\WPD d------ [05:09 14/07/2009] C:\Windows\system32\Tasks\Zadania podgldu zdarzeD d------ [01:35 15/06/2013] C:\Windows\SysWOW64\Tasks - Parameters: "/s" ---Files--- None found. C:\Windows\SysWOW64\Tasks\Microsoft d------ [03:20 14/07/2009] C:\Windows\SysWOW64\Tasks\Microsoft\Windows d------ [03:20 14/07/2009] C:\Windows\SysWOW64\Tasks\Microsoft\Windows\PLA d------ [03:20 14/07/2009] C:\Windows\SysWOW64\Tasks\Microsoft\Windows\PLA\System d------ [03:20 14/07/2009] C:\Windows\SysWOW64\Tasks\Microsoft\Windows\RemoteApp and Desktop Connections Update d------ [03:20 14/07/2009] C:\Windows\SysWOW64\Tasks\Microsoft\Windows\SyncCenter d------ [05:32 14/07/2009] C:\Windows\Tasks - Parameters: "(none)" ---Files--- FacebookUpdateTaskUserS-1-5-21-195878770-3682003311-2466773037-1000Core.job --a---- 906 bytes [10:46 15/12/2013] [10:51 15/12/2013] FacebookUpdateTaskUserS-1-5-21-195878770-3682003311-2466773037-1000UA.job --a---- 928 bytes [10:46 15/12/2013] [22:51 15/12/2013] SA.DAT --ah--- 6 bytes [05:08 14/07/2009] [06:16 29/04/2014] SCHEDLGU.TXT --a---- 32604 bytes [05:08 14/07/2009] [16:41 20/03/2014] ---Folders--- None found. -= EOF =-