SystemLook 30.07.11 by jpshortstuff Log created at 18:06 on 08/12/2015 by Tomek Administrator - Elevation successful WARNING: SystemLook running under WOW64. Use SystemLook_x64 for accurate results. ========== reg ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\Aliases] "AtServiceAccount"="NT AUTHORITY\System" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\Configuration] "DataVersion"= 0x0000000003 (3) "TasksInMemoryQueue"= 0x0000000064 (100) "TasksPerHighestPrivEngine"= 0x0000000064 (100) "TasksPerLeastPrivEngine"= 0x0000000032 (50) "MissedTasksStartupDelay"= 0x0000000258 (600) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\Handlers] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Schedule] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\Aliases] "AtServiceAccount"="NT AUTHORITY\System" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\Configuration] "DataVersion"= 0x0000000003 (3) "TasksInMemoryQueue"= 0x0000000064 (100) "TasksPerHighestPrivEngine"= 0x0000000064 (100) "TasksPerLeastPrivEngine"= 0x0000000032 (50) "MissedTasksStartupDelay"= 0x0000000258 (600) [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\Handlers] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks] (No values found) [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree] (No values found) ========== dir ========== C:\Windows\system32\Tasks - Parameters: "/s" ---Files--- None found. C:\Windows\system32\Tasks\Microsoft d------ [03:20 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows d------ [03:20 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\PLA d------ [03:20 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\PLA\System d------ [03:20 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\RemoteApp and Desktop Connections Update d------ [03:20 14/07/2009] C:\Windows\system32\Tasks\Microsoft\Windows\SyncCenter d------ [05:32 14/07/2009] C:\Windows\SysWOW64\Tasks - Parameters: "/s" ---Files--- None found. C:\Windows\SysWOW64\Tasks\Microsoft d------ [03:20 14/07/2009] C:\Windows\SysWOW64\Tasks\Microsoft\Windows d------ [03:20 14/07/2009] C:\Windows\SysWOW64\Tasks\Microsoft\Windows\PLA d------ [03:20 14/07/2009] C:\Windows\SysWOW64\Tasks\Microsoft\Windows\PLA\System d------ [03:20 14/07/2009] C:\Windows\SysWOW64\Tasks\Microsoft\Windows\RemoteApp and Desktop Connections Update d------ [03:20 14/07/2009] C:\Windows\SysWOW64\Tasks\Microsoft\Windows\SyncCenter d------ [05:32 14/07/2009] C:\Windows\Tasks - Parameters: "(none)" ---Files--- GoogleUpdateTaskMachineCore.job --a---- 1044 bytes [23:59 09/12/2014] [16:07 08/12/2015] GoogleUpdateTaskMachineUA.job --a---- 1048 bytes [23:59 09/12/2014] [16:36 08/12/2015] SA.DAT --ah--- 6 bytes [05:08 14/07/2009] [16:07 08/12/2015] SCHEDLGU.TXT --a---- 32608 bytes [05:08 14/07/2009] [16:57 18/10/2015] ---Folders--- None found. -= EOF =-