Under the title Scan Options, all the options are checked.
Under the title Windows Security Center (Premium only) the option is NOT checked.
Under the title Potentially unwanted items all options are set to Always.
Start::
CreateRestorePoint:
CloseProcesses:
Edge Notifications: Default -> hxxps://concerts.livenation.com; hxxps://www.beachbodyondemand.com; hxxps://www.facebook.com; hxxps://www.sephora.com; hxxps://www.tangeroutlet.com; hxxps://www.ticketmaster.com
CHR Notifications: Default -> hxxps://www.beachbodyondemand.com; hxxps://www.draftkings.com
HKLM-x32\...\Run: [] => [X]
Task: {D6E4032B-9810-4BE0-A3A0-0DA8312B3126} - System32\Tasks\AdwCleaner_onReboot => C:\Users\Angel\OneDrive\Desktop\AdwCleaner.exe /r (No File)
Task: {80E57743-1653-4115-A5F8-E52F2E3D2057} - System32\Tasks\EOSv3 Scheduler onLogOn => C:\Users\Angel\OneDrive\Desktop\esetonlinescanner_enu (1).exe LOGON (No File)
Task: {9E3728CA-1BB3-46C4-8FAA-4DCB0186A438} - System32\Tasks\EOSv3 Scheduler onTime => C:\Users\Angel\OneDrive\Desktop\esetonlinescanner_enu (1).exe SCHED (No File)
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
S3 MpKsldb0ad81e; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9A6EF2A8-E7CD-4634-87EA-2D27DAC2F9B9}\MpKslDrv.sys [X]
CustomCLSID: HKU\S-1-5-21-2065802760-3759808543-2889841689-1001_Classes\CLSID\{84B5A313-CD5D-4904-8BA2-AFDC81C1B309}\InprocServer32 -> C:\Users\Angel\AppData\Local\GoToMeeting\19228\G2MOutlookAddin64.dll => No File
CustomCLSID: HKU\S-1-5-21-2065802760-3759808543-2889841689-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\Angel\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.19178.2\x64\Microsoft.Teams.AddinLoader.dll => No File
CustomCLSID: HKU\S-1-5-21-2065802760-3759808543-2889841689-1001_Classes\CLSID\{d1b22d3d-8585-53a6-acb3-0e803c7e8d2a}\localserver32 -> "C:\Users\Angel\AppData\Local\Microsoft\Teams\current\Teams.exe" --toast => No File
SearchScopes: HKU\S-1-5-21-2065802760-3759808543-2889841689-1001 -> {E7B5BEF7-A830-43A7-858A-05667B872EEA} URL =
FirewallRules: [{6E8A4F54-6F86-43BD-9350-E47196E4DE22}] => (Allow) C:\Users\Angel\AppData\Local\Temp\7zS28BE\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{B5C64A92-1A7E-4B25-827A-DAA53E7BACFD}] => (Allow) C:\Users\Angel\AppData\Local\Temp\7zS28BE\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{9A1A5494-F9ED-4252-80D3-3894C4A60692}] => (Allow) C:\Users\Angel\AppData\Local\Temp\7zS295B\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{27E854E2-D7C6-475B-9CD1-75C3BB7E8988}] => (Allow) C:\Users\Angel\AppData\Local\Temp\7zS295B\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{2DD474BD-39EF-4A33-A490-0302BD8EF941}] => (Allow) C:\Users\Angel\AppData\Local\Temp\7zS68BF\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{83EF1896-B1DE-49A7-A92D-6D9C18954E56}] => (Allow) C:\Users\Angel\AppData\Local\Temp\7zS68BF\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{5D29B9B2-F209-49BA-AF7D-EB13291ECA5F}] => (Allow) C:\Users\Angel\AppData\Local\Temp\7zS6DAA\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{7131EB1F-7C9F-403A-BBF0-66AD4E0EF3A3}] => (Allow) C:\Users\Angel\AppData\Local\Temp\7zS6DAA\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{321D00A1-B58D-4A35-907B-A422036EF256}] => (Allow) C:\Users\Angel\AppData\Local\Temp\7zS16EF\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{B524FE52-59B4-4BBF-8247-E2FD16615CD4}] => (Allow) C:\Users\Angel\AppData\Local\Temp\7zS16EF\HPDiagnosticCoreUI.exe => No File
FirewallRules: [UDP Query User{F97E6D11-94C1-4C06-A306-8ABA8F74361C}C:\users\angel\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\angel\appdata\local\microsoft\teams\current\teams.exe => No File
FirewallRules: [{0C201ACD-7498-4572-BD88-45D40433C8E1}] => (Allow) C:\Users\Angel\AppData\Local\Temp\7zS01F0\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{D57DBF49-9972-4C5A-89E7-3A03CBBA2851}] => (Allow) C:\Users\Angel\AppData\Local\Temp\7zS01F0\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{9BDE6974-363F-42B0-8A35-BDD30AC0086F}] => (Allow) C:\Users\Angel\AppData\Local\Temp\7zS14CF\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{1E292E65-461D-4921-A25B-3A03C76F385B}] => (Allow) C:\Users\Angel\AppData\Local\Temp\7zS14CF\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{486BAE9B-F831-482C-9AD5-87AF06C98AE8}] => (Allow) C:\Users\Angel\AppData\Local\Temp\7zS26BF\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{3844EDFB-BBEA-4C42-AA15-C2C4DB777146}] => (Allow) C:\Users\Angel\AppData\Local\Temp\7zS26BF\HPDiagnosticCoreUI.exe => No File
CMD: DISM /Online /Cleanup-Image /RestoreHealth
CMD: SFC /scannow
EmptyTemp:
End::