The explorer extension DLL SecretMalwareDLL (using file ieatfiles.dll) was removed from the registry key HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify and will no longer be loaded into explorer.exe.

This event is logged by EventSentry when an explorer-extension dll file is removed from an autorun registry key.

Software Monitoring monitors autorun registry keys and installed software to notify you of applications that are automatically run when a user logs in or a system boots up.

You can configure this feature at "Packages -> System Health Packages -> Package Name -> Software Monitoring -> Monitor Autorun Locations".

