cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2018.6.29.144 Par Nicolas Coolman (2018/06/29)
~ Démarré par Issam (Administrator) (2018/07/01 00:38:51)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Certificate ZHPDiag: Legal
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\Issam\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Issam\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 10 Pro, 64-bit (Build 17134) =>.Microsoft Corporation

---\\ NAVIGATEURS INTERNET (4) - 0s
~ GCIE: Google Chrome v67.0.3396.99
~ MFIE: Mozilla Firefox 60.0.2 (x86 fr)
~ MSIE: Microsoft Edge v40
~ MSIE: Internet Explorer v11.112.17134.0

---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (9) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK
~ Windows(R) Operating System, VOLUME_KMSCLIENT channel
Windows ID Activation : OK
~ Windows Partial Key : T83GX
Windows License : OK
Expiration Licence Windows : 221654 minute(s) (154 jour(s))
~ Windows Remaining Initializations Number : 1001

---\\ LOGICIELS DE PROTECTION (5) - 3s
Kaspersky Total Security v18.0.0.405 (Protection)
Kaspersky Secure Connection v18.0.0.405 (Protection)
Malwarebytes Anti-Malware versione 2.2.1.1043 (Protection)
Windows Defender W10 (Deactivate)
Malwarebytes version 3.5.1.2522 v3.5.1.2522 (Protection)

---\\ SURVEILLANCE LOGICIEL (1) - 3s
~ Adobe Flash Player 30 NPAPI (Surveillance)

---\\ LOGICIELS D'OPTIMISATION (1) - 3s
~ CCleaner v5.41 (Optimisation)

---\\ LOGICIELS DE PARTAGE P2P (1) - 3s
~ µTorrent v3.5.3.44494 (P2P)

---\\ INFORMATIONS SUR LE SYSTÈME (7) - 0s
~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4046.356 MB (41% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 22 GB (11%) free of 190 GB : OK =>.Disk Space
Total RAM: 4046.356 MB (38% free) : OK =>.RAM Value

---\\ MODE DE CONNEXION AU SYSTÈME (3) - 0s
~ Computer Name: DESKTOP-42J1FKO
~ User Name: Issam
~ Logged in as Administrator

---\\ ÉNUMÉRATION DES UNITÉS DE STOCKAGE (2) - 0s
~ Drive C: has 22 GB free of 190 GB (System)
~ Drive D: has 14 GB free of 264 GB

---\\ ÉTAT DU CENTRE DE SÉCURITÉ WINDOWS (7) - 0s
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ RECHERCHE PARTICULIÈRE DE FICHIERS GÉNÉRIQUES (25) - 2s
[MD5.AD5296B280E8F522A8A897C96BAB0E1D] - 12/04/2018 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [3933184] =>.Microsoft Windows®
[MD5.73C519F050C20580F8A62C849D49215A] - 12/04/2018 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [69632] =>.Microsoft Corporation
[MD5.A58B0CB069DA7840B935872ADCD7F0C2] - 12/04/2018 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [366792] =>.Microsoft Corporation
[MD5.05934E377D6EE957BFDC7D05FA0DE3DE] - 08/06/2018 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [3441152] =>.Microsoft Corporation
[MD5.F9017F2DC455AD373DF036F5817A8870] - 12/04/2018 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [677376] =>.Microsoft Corporation
[MD5.7A377800FF15426B7D89768A8727CFEF] - 12/04/2018 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [415232] =>.Microsoft Corporation
[MD5.912DDBEC210B4B47941319BF991CFD98] - 12/04/2018 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [766608] =>.Microsoft Windows®
[MD5.E393B53837F6778C8FE0B27B58478B37] - 12/04/2018 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [573392] =>.Microsoft Windows®
[MD5.80BC3B8D2055BC38ECD84769C074C18F] - 12/04/2018 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] =>.Microsoft Corporation
[MD5.4DCCC3E02A22ED4A4ADB11386F226071] - 12/04/2018 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [626592] =>.Microsoft Corporation
[MD5.90AB4ED8EBD72A1C096A40CC35404B91] - 12/04/2018 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [28568] =>.Microsoft Corporation
[MD5.D3CBC6DE5955D014407C7BD1FFE80F00] - 12/04/2018 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [93696] =>.Microsoft Corporation
[MD5.AD4D24434C058AFAFD5AB319B4BF5B66] - 12/04/2018 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [159744] =>.Microsoft Corporation
[MD5.9E74A900CCCA3EA6C8533CF94B3F8223] - 12/04/2018 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [141312] =>.Microsoft Corporation
[MD5.DED74127C7A2266715C0B8EA2EE75214] - 12/04/2018 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [86016] =>.Microsoft Corporation
[MD5.DA179667B8CEC22E4ECBBF4210DC0E35] - 12/04/2018 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [105984] =>.Microsoft Corporation
[MD5.7408B83959A4B8271EF67FD06A6B366B] - 12/04/2018 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [214528] =>.Microsoft Corporation
[MD5.3C0FA2ED75875481D00F3D77B1A3E336] - 12/04/2018 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [500632] =>.Microsoft Corporation
[MD5.045A018E0BA5F9B75C5928A31C0E822C] - 12/04/2018 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [311296] =>.Microsoft Corporation
[MD5.60B42947B51D1C6D2DD7250295DF4161] - 08/06/2018 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2422688] =>.Microsoft Corporation
[MD5.13B175715A4391E4E5D2AB2EBC8CDBB5] - 12/04/2018 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [98816] =>.Microsoft Corporation
[MD5.775ED7E51B58CF9EB415A1DBA540DACF] - 12/04/2018 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [106496] =>.Microsoft Corporation
[MD5.52A6CC99F5934CFAE88353C47B6193E7] - 12/04/2018 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [182784] =>.Microsoft Corporation
[MD5.16071C42E21CE3378FA449322FB9AB1D] - 12/04/2018 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [121248] =>.Microsoft Corporation
[MD5.F0EE4E6028CCA58BEA9A04E7BEAB7DB4] - 12/04/2018 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [398240] =>.Microsoft Corporation

---\\ LISTE DES SERVICES (Non désactivés) (92) - 5s
O23 - Service: Automation License Manager Service (almservice) . (.SIEMENS AG - Automation License Manager Service.) - C:\Program Files\Common Files\Siemens\sws\almsrv\almsrv64x.exe {70A08B4DF1767ACC1C32C34BDBB76B9B} =>.Siemens AG
O23 - Service: C:\WINDOWS\System32\AudioEndpointBuilder.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Générateur de points de terminaison du serv.) - C:\WINDOWS\System32\AudioEndpointBuilder.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\audiosrv.dll (Audiosrv) . (.Microsoft Corporation - Service Audio Windows.) - C:\WINDOWS\System32\Audiosrv.dll =>.Microsoft Corporation
O23 - Service: Avira Phantom VPN (AviraPhantomVPN) . (.Avira Operations GmbH & Co. KG - Avira.VpnService.) - C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe =>.Avira Operations GmbH & Co. KG
O23 - Service: Kaspersky Anti-Virus Service 18.0.0 (AVP18.0.0) . (.AO Kaspersky Lab - Kaspersky Anti-Virus.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\avp.exe =>.Kaspersky Lab®
O23 - Service: Backbone Service (BBDemon) . (.Dassault Systemes - System.) - D:\Program Files (x86)\Dassault Systemes\B21\intel_a\code\bin\CATSysDemon.exe =>.Dassault Systemes
O23 - Service: C:\WINDOWS\System32\bfe.dll (BFE) . (.Microsoft Corporation - Moteur de filtrage de base.) - C:\WINDOWS\System32\bfe.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\qmgr.dll (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) - C:\WINDOWS\System32\qmgr.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\system32\bisrv.dll (BrokerInfrastructure) . (.Microsoft Corporation - Service d’infrastructure des tâches en arri.) - C:\WINDOWS\System32\bisrv.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\cdpusersvc.dll (CDPUserSvc) . (.Microsoft Corporation - Composants utilisateur Microsoft (R) CDP.) - C:\WINDOWS\System32\CDPUserSvc.dll =>.Microsoft Corporation
O23 - Service: Service pour utilisateur de plateforme d’appareils connecté (CDPUserSvc_65533) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft Windows Publisher®
O23 - Service: cnex (cnexx) . (.Microsoft® DEVELOPER - cnex.) - C:\Program Files (x86)\Common Files\cnex-demo.exe
O23 - Service: C:\Windows\System32\coremessaging.dll (CoreMessagingRegistrar) . (.Microsoft Corporation - Microsoft CoreMessaging Dll.) - C:\Windows\System32\coremessaging.dll =>.Microsoft Windows®
O23 - Service: C:\WINDOWS\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Services de chiffrement.) - C:\WINDOWS\System32\cryptsvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\das.dll (DeviceAssociationService) . (.Microsoft Corporation - Service d’association de périphérique.) - C:\WINDOWS\System32\das.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - Service client DHCP.) - C:\Windows\System32\dhcpcore.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\diagtrack.dll (DiagTrack) . (.Microsoft Corporation - Suivi des diagnostics Microsoft Windows.) - C:\WINDOWS\System32\diagtrack.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - Service de résolution du cache DNS.) - C:\WINDOWS\System32\dnsrslvr.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\dusmsvc.dll (DusmSvc) . (.Microsoft Corporation - Service Consommation des données.) - C:\WINDOWS\System32\dusmsvc.dll =>.Microsoft Corporation
O23 - Service: Elan Service (ETDService) . (.ELAN Microelectronics Corp. - Elan Service.) - C:\Program Files\Elantech\ETDService.exe =>.ELAN Microelectronics Corporation®
O23 - Service: C:\WINDOWS\System32\wevtsvc.dll (EventLog) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft Windows Publisher®
O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Service de cache de police Windows.) - C:\WINDOWS\System32\FntCache.dll =>.Microsoft Corporation
O23 - Service: Foxit Reader Service (FoxitReaderService) . (.Foxit Software Inc. - Foxit Reader ConnectedPDF Windows Service..) - C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitConnectedPDFService.exe =>.Foxit Software Incorporated®
O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) - C:\WINDOWS\System32\gpsvc.dll =>.Microsoft Corporation
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: HMA! Pro VPN (HmaProVpn) . (.Privax Limited - HMA! Pro VPN Service.) - C:\Program Files (x86)\HMA! Pro VPN\VpnSvc.exe =>.Privax Limited®
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\WINDOWS\System32\igfxCUIService.exe =>.Intel Corporation
O23 - Service: C:\WINDOWS\System32\ikeext.dll (IKEEXT) . (.Microsoft Corporation - Extension IKE.) - C:\WINDOWS\System32\ikeext.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) - C:\WINDOWS\System32\iphlpsvc.dll =>.Microsoft Corporation
O23 - Service: Kaspersky Secure Connection Service 2.0.0 (KSDE2.0.0) . (.AO Kaspersky Lab - Kaspersky Secure Connection.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 2.0\ksde.exe =>.Kaspersky Lab®
O23 - Service: C:\WINDOWS\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - DLL du service Serveur.) - C:\WINDOWS\System32\srvsvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - DLL du service Station de travail.) - C:\WINDOWS\System32\wkssvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\system32\lsm.dll (LSM) . (.Microsoft Corporation - Service du gestionnaire de session locale.) - C:\WINDOWS\System32\lsm.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\moshost.dll (MapsBroker) . (.Microsoft Corporation - Gestionnaire des cartes téléchargées.) - C:\WINDOWS\System32\moshost.dll =>.Microsoft Corporation
O23 - Service: Malwarebytes Service (MBAMService) . (.Malwarebytes - Malwarebytes Service.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
O23 - Service: C:\Windows\System32\FirewallAPI.dll (mpssvc) . (.Microsoft Corporation - Service de protection Microsoft.) - C:\WINDOWS\System32\mpssvc.dll =>.Microsoft Corporation
O23 - Service: Nero Update (NAUpdate) . (.Nero AG - NeroUpdate.) - C:\Program Files (x86)\Nero\Update\NASvc.exe =>.Nero AG®
O23 - Service: NitroPDFDriverCreatorReadSpool10 (NitroDriverReadSpool10) . (.Nitro PDF Software - Nitro PDF Spool Service.) - C:\Program Files\Nitro\Pro 10\NitroPDFDriverService10x64.exe =>.Nitro Software, Inc.®
O23 - Service: NitroUpdateService (NitroUpdateService) . (...) - C:\Program Files\Nitro\Pro 10\Nitro_UpdateService.exe =>.Nitro Software, Inc.®
O23 - Service: C:\WINDOWS\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Connaissance des emplacements réseau 2.) - C:\WINDOWS\System32\nlasvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Serveur RPC de l’interface du magasin résea.) - C:\WINDOWS\System32\nsisvc.dll =>.Microsoft Corporation
O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.NVIDIA Corporation®
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation®
O23 - Service: NVIDIA Telemetry Container (NvTelemetryContainer) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe =>.NVIDIA Corporation®
O23 - Service: C:\WINDOWS\System32\APHostRes.dll (OneSyncSvc) . (.Microsoft Corporation - Accounts Host Service.) - C:\WINDOWS\System32\APHostService.dll =>.Microsoft Corporation
O23 - Service: Hôte de synchronisation_65533 (OneSyncSvc_65533) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft Windows Publisher®
O23 - Service: Origin Web Helper Service (Origin Web Helper Service) . (.Electronic Arts - OriginWebHelperService.) - C:\Program Files (x86)\Origin\OriginWebHelperService.exe =>.Electronic Arts, Inc.®
O23 - Service: C:\WINDOWS\System32\umpo.dll (Power) . (.Microsoft Corporation - Service d’alimentation en mode utilisateur.) - C:\WINDOWS\System32\umpo.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\WINDOWS\System32\profsvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\rasmans.dll (RasMan) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) - C:\WINDOWS\System32\rasmans.dll =>.Microsoft Corporation
O23 - Service: Razer Game Manager (Razer Game Manager Service) . (.Razer Inc - GameManagerService.) - C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe =>.Razer USA Ltd.®
O23 - Service: C:\WINDOWS\system32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - Mappeur de point de terminaison RPC.) - C:\WINDOWS\System32\RpcEpMap.dll =>.Microsoft Corporation
O23 - Service: @combase.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\WINDOWS\System32\rpcss.dll =>.Microsoft Corporation
O23 - Service: Razer Central Service (RzActionSvc) . (.Razer Inc. - Razer Central Service.) - C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe =>.Razer USA Ltd.®
O23 - Service: RzKLService (RzKLService) . (.Razer Inc. - RzKLService.exe.) - C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe =>.Razer USA Ltd.®
O23 - Service: S7DOS SCP Remote (S7DOS SCP Remote) . (.Siemens AG - .) - C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\S7O.TunnelServiceHost.exe {6D3195C080ED985732DC694BDDAF61BA} =>.Siemens AG
O23 - Service: S7DOS Help Service (s7oiehsx64) . (.SIEMENS AG - S7DOS Help Service.) - C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7oiehsx64.exe {6D3195C080ED985732DC694BDDAF61BA} =>.Siemens AG
O23 - Service: SIMATIC Trace Service (S7TraceServiceX) . (.SIEMENS AG - Siemens TIA Communication.) - C:\Program Files\Common Files\Siemens\Automation\TraceEngine\bin\S7TraceService64X.exe {6D3195C080ED985732DC694BDDAF61BA} =>.Siemens AG
O23 - Service: C:\WINDOWS\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) - C:\WINDOWS\System32\schedsvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\SecurityHealthAgent.dll (SecurityHealthService) . (.Microsoft Corporation - Windows Security Health Service.) - C:\WINDOWS\System32\SecurityHealthService.exe =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\Sens.dll (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) - C:\WINDOWS\System32\sens.dll =>.Microsoft Corporation
O23 - Service: Sentinel Keys Server (SentinelKeysServer) . (.SafeNet, Inc. - .) - C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe =>.SafeNet, Inc.®
O23 - Service: Sentinel Protection Server (SentinelProtectionServer) . (.SafeNet, Inc - Sentinel Protection Server for SuperPro and.) - C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe =>.SafeNet, Inc.®
O23 - Service: C:\WINDOWS\System32\SgrmBroker.exe,-100 (SgrmBroker) . (.Microsoft Corporation - Service Broker du moniteur d'exécution Syst.) - C:\WINDOWS\System32\SgrmBroker.exe =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) - C:\Windows\System32\shsvcs.dll =>.Microsoft Corporation
O23 - Service: SIMATIC PnDiscovery Service (SIMATIC PnDiscovery Service) . (.SIEMENS AG - SIMATIC PnDiscovery Service.) - C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7oPNDiscoveryx64.exe {6D3195C080ED985732DC694BDDAF61BA} =>.Siemens AG
O23 - Service: C:\WINDOWS\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Application sous-système spouleur.) - C:\WINDOWS\System32\spoolsv.exe =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Service de la plateforme de protection logi.) - C:\WINDOWS\System32\sppsvc.exe =>.Microsoft Corporation
O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) . (.DEVGURU Co., LTD. - MSS CS Connectivity Service.) - C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe =>.Samsung Electronics CO., LTD.®
O23 - Service: C:\WINDOWS\System32\wiaservc.dll (stisvc) . (.Microsoft Corporation - Service de périphériques d’images fixes.) - C:\WINDOWS\System32\wiaservc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\sysmain.dll (SysMain) . (.Microsoft Corporation - Hôte de service Superfetch.) - C:\WINDOWS\System32\sysmain.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\system32\SystemEventsBrokerServer.dll (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) - C:\WINDOWS\System32\SystemEventsBrokerServer.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\themeservice.dll (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) - C:\WINDOWS\System32\themeservice.dll =>.Microsoft Corporation
O23 - Service: TraceConceptX (TraceConceptX) . (.SoftwareOption GmbH - TraceConcept Service.) - C:\Program Files\Common Files\Siemens\SimNetCom\TraceConceptX.exe {70A08B4DF1767ACC1C32C34BDBB76B9B}
O23 - Service: C:\WINDOWS\System32\usermgr.dll (UserManager) . (.Microsoft Corporation - UserMgr.) - C:\WINDOWS\System32\usermgr.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\usocore.dll (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) - C:\WINDOWS\System32\usocore.dll =>.Microsoft Corporation
O23 - Service: VMware Authorization Service (VMAuthdService) . (.VMware, Inc. - VMware Authorization Service.) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc.®
O23 - Service: VMware DHCP Service (VMnetDHCP) . (.VMware, Inc. - VMware VMnet DHCP service.) - C:\Windows\SysWOW64\vmnetdhcp.exe =>.VMware, Inc.®
O23 - Service: VMware USB Arbitration Service (VMUSBArbService) . (.VMware, Inc. - VMware USB Arbitration Service.) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe =>.VMware, Inc.®
O23 - Service: VMware NAT Service (VMware NAT Service) . (.VMware, Inc. - VMware NAT Service.) - C:\Windows\SysWOW64\vmnat.exe =>.VMware, Inc.®
O23 - Service: VMware Workstation Server (VMwareHostd) . (...) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe =>.VMware, Inc.®
O23 - Service: WANA_morocco Estoril Modem Device Helper (WANA_morocco Estoril Modem Device Helper) . (...) - C:\Program Files (x86)\inwi L850\BackgroundService\ServiceManager.exe =>.JRD COMMUNICATION (SHENZHEN) LTD®
O23 - Service: C:\WINDOWS\System32\wcmsvc.dll (Wcmsvc) . (.Microsoft Corporation - DLL du service de gestion des connexions Wi.) - C:\WINDOWS\System32\wcmsvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wbem\wmisvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\WINDOWS\System32\wbem\WMIsvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wlansvc.dll (WlanSvc) . (.Microsoft Corporation - DLL du service de configuration automatique.) - C:\WINDOWS\System32\wlansvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wpnservice.dll (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) - C:\WINDOWS\System32\WpnService.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\WpnUserService.dll (WpnUserService) . (.Microsoft Corporation - Service utilisateur de notifications Push W.) - C:\WINDOWS\System32\WpnUserService.dll =>.Microsoft Corporation
O23 - Service: Service utilisateur de notifications Push Windows_65533 (WpnUserService_65533) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft Windows Publisher®
O23 - Service: Wondershare Application Framework Service (WsAppService) . (.Wondershare - Wondershare AppService.) - C:\Program Files (x86)\Wondershare\WAF\2.2.3.2\WsAppService.exe =>.Wondershare
O23 - Service: C:\WINDOWS\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Service Centre de sécurité de Windows.) - C:\WINDOWS\System32\wscsvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - C:\Windows\System32\SearchIndexer.exe =>.Microsoft Corporation

---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (47) - 25s
SS - Demand [09/06/2018] [ 335872] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [11/08/2016] [ 2034424] Automation License Manager Service (almservice) . (.SIEMENS AG.) - C:\Program Files\Common Files\Siemens\sws\almsrv\almsrv64x.exe {70A08B4DF1767ACC1C32C34BDBB76B9B} =>.Siemens AG
SS - Auto [31/03/2017] [ 302592] Avira Phantom VPN (AviraPhantomVPN) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe =>.Avira Operations GmbH & Co. KG
SR - Auto [24/01/2017] [ 354672] Kaspersky Anti-Virus Service 18.0.0 (AVP18.0.0) . (.AO Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\avp.exe =>.Kaspersky Lab®
SR - Auto [08/01/2011] [ 38400] Backbone Service (BBDemon) . (.Dassault Systemes.) - D:\Program Files (x86)\Dassault Systemes\B21\intel_a\code\bin\CATSysDemon.exe =>.Dassault Systemes
SS - Demand [28/04/2018] [ 5745672] BattlEye Service (BEService) . (...) - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe =>.BattlEye Innovations e.K.®
SS - Demand [02/02/2017] [ 299488] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel(R) pGFX®
SS - Demand [28/04/2018] [ 775296] EasyAntiCheat (EasyAntiCheat) . (.EasyAntiCheat Ltd.) - C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe =>.EasyAntiCheat Oy®
SR - Auto [02/02/2017] [ 144072] Elan Service (ETDService) . (.ELAN Microelectronics Corp..) - C:\Program Files\Elantech\ETDService.exe =>.ELAN Microelectronics Corporation®
SR - Auto [17/04/2018] [ 1659456] Foxit Reader Service (FoxitReaderService) . (.Foxit Software Inc..) - C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitConnectedPDFService.exe =>.Foxit Software Incorporated®
SS - Auto [23/04/2017] [ 153752] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [23/04/2017] [ 153752] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SR - Auto [27/06/2018] [ 5649840] HMA! Pro VPN (HmaProVpn) . (.Privax Limited.) - C:\Program Files (x86)\HMA! Pro VPN\VpnSvc.exe =>.Privax Limited®
SR - Auto [02/02/2017] [ 337888] Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation.) - C:\WINDOWS\System32\igfxCUIService.exe =>.Intel(R) pGFX®
SS - Demand [12/06/2018] [ 426416] klvssbridge64_18.0.0 (klvssbridge64_18.0.0) . (.AO Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\x64\vssbridge64.exe =>.Kaspersky Lab®
SR - Auto [24/01/2017] [ 354672] Kaspersky Secure Connection Service 2.0.0 (KSDE2.0.0) . (.AO Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 2.0\ksde.exe =>.Kaspersky Lab®
SR - Auto [09/05/2018] [ 6541008] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
SS - Demand [11/06/2018] [ 174544] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SR - Auto [14/09/2016] [ 805752] Nero Update (NAUpdate) . (.Nero AG.) - C:\Program Files (x86)\Nero\Update\NASvc.exe =>.Nero AG®
SR - Auto [31/07/2015] [ 326296] NitroPDFDriverCreatorReadSpool10 (NitroDriverReadSpool10) . (.Nitro PDF Software.) - C:\Program Files\Nitro\Pro 10\NitroPDFDriverService10x64.exe =>.Nitro Software, Inc.®
SR - Auto [31/07/2015] [ 417944] NitroUpdateService (NitroUpdateService) . (...) - C:\Program Files\Nitro\Pro 10\Nitro_UpdateService.exe =>.Nitro Software, Inc.®
SR - Auto [20/05/2018] [ 764896] NVIDIA LocalSystem Container (NvContainerLocalSystem) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.NVIDIA Corporation®
SS - Demand [20/05/2018] [ 764896] NVIDIA NetworkService Container (NvContainerNetworkService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.NVIDIA Corporation®
SR - Auto [22/05/2018] [ 764896] NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation®
SR - Auto [20/05/2018] [ 630240] NVIDIA Telemetry Container (NvTelemetryContainer) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe =>.NVIDIA Corporation®
SS - Demand [11/05/2017] [ 2162064] Origin Client Service (Origin Client Service) . (.Electronic Arts.) - C:\Program Files (x86)\Origin\OriginClientService.exe =>.Electronic Arts, Inc.®
SS - Auto [11/05/2017] [ 3136920] Origin Web Helper Service (Origin Web Helper Service) . (.Electronic Arts.) - C:\Program Files (x86)\Origin\OriginWebHelperService.exe =>.Electronic Arts, Inc.®
SS - Auto [19/03/2018] [ 253776] Razer Game Manager (Razer Game Manager Service) . (.Razer Inc.) - C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe =>.Razer USA Ltd.®
SS - Auto [25/03/2018] [ 533376] Razer Central Service (RzActionSvc) . (.Razer Inc..) - C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe =>.Razer USA Ltd.®
SR - Auto [26/03/2018] [ 502144] RzKLService (RzKLService) . (.Razer Inc..) - C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe =>.Razer USA Ltd.®
SS - Auto [24/08/2016] [ 64752] S7DOS SCP Remote (S7DOS SCP Remote) . (.Siemens AG.) - C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\S7O.TunnelServiceHost.exe {6D3195C080ED985732DC694BDDAF61BA} =>.Siemens AG
SR - Auto [24/08/2016] [ 168688] S7DOS Help Service (s7oiehsx64) . (.SIEMENS AG.) - C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7oiehsx64.exe {6D3195C080ED985732DC694BDDAF61BA} =>.Siemens AG
SS - Auto [24/08/2016] [ 274160] SIMATIC Trace Service (S7TraceServiceX) . (.SIEMENS AG.) - C:\Program Files\Common Files\Siemens\Automation\TraceEngine\bin\S7TraceService64X.exe {6D3195C080ED985732DC694BDDAF61BA} =>.Siemens AG
SR - Auto [27/04/2007] [ 316992] Sentinel Keys Server (SentinelKeysServer) . (.SafeNet, Inc..) - C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe =>.SafeNet, Inc.®
SR - Auto [27/04/2007] [ 206400] Sentinel Protection Server (SentinelProtectionServer) . (.SafeNet, Inc.) - C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe =>.SafeNet, Inc.®
SR - Auto [24/08/2016] [ 497904] SIMATIC PnDiscovery Service (SIMATIC PnDiscovery Service) . (.SIEMENS AG.) - C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7oPNDiscoveryx64.exe {6D3195C080ED985732DC694BDDAF61BA} =>.Siemens AG
SR - Auto [16/01/2017] [ 752224] SAMSUNG Mobile Connectivity Service (ss_conn_service) . (.DEVGURU Co., LTD..) - C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe =>.Samsung Electronics CO., LTD.®
SS - Demand [19/02/2010] [ 517096] SwitchBoard (SwitchBoard) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe =>.Adobe Systems Incorporated
SR - Auto [31/05/2016] [ 83504] TraceConceptX (TraceConceptX) . (.SoftwareOption GmbH.) - C:\Program Files\Common Files\Siemens\SimNetCom\TraceConceptX.exe {70A08B4DF1767ACC1C32C34BDBB76B9B}
SR - Auto [21/03/2017] [ 99816] VMware Authorization Service (VMAuthdService) . (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc.®
SR - Auto [21/03/2017] [ 366568] VMware DHCP Service (VMnetDHCP) . (.VMware, Inc..) - C:\Windows\SysWOW64\vmnetdhcp.exe =>.VMware, Inc.®
SR - Auto [20/02/2017] [ 915944] VMware USB Arbitration Service (VMUSBArbService) . (.VMware, Inc..) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe =>.VMware, Inc.®
SR - Auto [21/03/2017] [ 400872] VMware NAT Service (VMware NAT Service) . (.VMware, Inc..) - C:\Windows\SysWOW64\vmnat.exe =>.VMware, Inc.®
SS - Auto [21/03/2017] [12482024] VMware Workstation Server (VMwareHostd) . (...) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe =>.VMware, Inc.®
SR - Auto [11/12/2014] [ 76584] WANA_morocco Estoril Modem Device Helper (WANA_morocco Estoril Modem Device Helper) . (...) - C:\Program Files (x86)\inwi L850\BackgroundService\ServiceManager.exe =>.JRD COMMUNICATION (SHENZHEN) LTD®
SS - Auto [24/06/2016] [ 416768] Wondershare Application Framework Service (WsAppService) . (.Wondershare.) - C:\Program Files (x86)\Wondershare\WAF\2.2.3.2\WsAppService.exe =>.Wondershare
SS - Demand [27/06/2016] [ 115856] Wondershare Driver Install Service (WsDrvInst) . (.Wondershare.) - C:\Program Files (x86)\Wondershare\Dr.Fone pour Android\DriverInstall.exe =>.Wondershare software CO., LIMITED®

---\\ TÂCHES PLANIFIÉES EN AUTOMATIQUE (Registre) (50) - 8s
O38 - TASK: {09C59668-0D6C-4AD4-8739-F75371A68A23} [64Bits][\SmartDefrag_AutoAnalyze] - (.IObit - AutoDefrg.) -- C:\Program Files (x86)\IObit\Smart Defrag\AutoDefrag.exe [498976] =>.IObit
O38 - TASK: {0B1393B0-AA63-4241-8D06-B26F60307787} [64Bits][\Adobe Flash Player NPAPI Notifier] - (.Adobe Systems Incorporated - Adobe® Flash® Player Installer/Uninstaller.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_30_0_0_113_Plugin.exe [1447424] =>.Adobe Systems Incorporated
O38 - TASK: {2A824A9E-AA53-4DE0-B25B-FBF75880F42C} [64Bits][\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA driver profile updater.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [857568] =>.NVIDIA Corporation
O38 - TASK: {2E313846-E645-44CB-90A1-9AB0DF8168A0} [64Bits][\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [764896] =>.NVIDIA Corporation
O38 - TASK: {32D28A6E-5A41-4B94-8438-551EA0C20F11} [64Bits][\GoogleUpdateTaskMachineUA] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752] =>.Google Inc.
O38 - TASK: {3311C918-7CC1-4465-AE65-399182B45DC0} [64Bits][\IObitSelfCheckTask] - (.IObit - IObit self check.) -- C:\Program Files (x86)\IObit\Smart Defrag\IObitSelfCheck.exe [1084704] =>.IObit
O38 - TASK: {343C64DD-EACA-456A-B400-1D7E08450187} [64Bits][\SmartDefrag_Update] - (.IObit - Smart Defrag Updater.) -- C:\Program Files (x86)\IObit\Smart Defrag\AutoUpdate.exe [2848032] =>.IObit
O38 - TASK: {506B296E-3CFF-444E-A398-B4AD78925E17} [64Bits][\CCleaner Update] - (.Piriform Ltd - CCleaner emergency updater.) -- C:\Program Files\CCleaner\CCUpdate.exe [520736] =>.Piriform Ltd
O38 - TASK: {63AB58C9-1C82-4283-827B-27CD82930C2A} [64Bits][\SmartDefrag_Startup] - (.IObit - Smart Defrag 5.) -- C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe [5386528] =>.IObit
O38 - TASK: {6BBBDA04-EB07-4E77-8ED3-9395FC97FBF2} [64Bits][\CCleanerSkipUAC] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [12762872] =>.Piriform Ltd
O38 - TASK: {7775672B-0E5E-44D3-920B-7C8B21806C53} [64Bits][\AdobeAAMUpdater-1.0-DESKTOP-42J1FKO-Issam] - (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [558496] =>.Adobe Systems Incorporated
O38 - TASK: {78A1AAA7-0EF2-4357-94E9-4962253DD999} [64Bits][\HMA! Pro VPN Update] - (.Privax Limited - HMA! Pro VPN Update.) -- C:\Program Files (x86)\HMA! Pro VPN\VpnUpdate.exe [1482392] =>.Privax Limited
O38 - TASK: {827034F2-8972-4363-912C-EDBF3DAF988C} [64Bits][\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA GeForce Experience.) -- C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3298272] =>.NVIDIA Corporation
O38 - TASK: {8997BCC7-49A2-4754-BA95-2108F643EE61} [64Bits][\Adobe Flash Player Updater] - (.Adobe Systems Incorporated - Adobe® Flash® Player Update Service 30.0 r0.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335872] =>.Adobe Systems Incorporated
O38 - TASK: {A97E18CA-5B91-4723-AC0A-CCEB8F3C4997} [64Bits][\Garena+ Plugin Host Service] - (. - Garena+ Plugin Host Service.) -- C:\Program Files (x86)\Garena Plus\ggdllhost.exe [175096]
O38 - TASK: {AFB66266-E7A8-4D97-820D-8855F3046105} [64Bits][\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA nodejs launcher.) -- C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [983008] =>.NVIDIA Corporation
O38 - TASK: {B54BB9EF-06E1-4F83-B594-192E5DD83789} [64Bits][\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [764896] =>.NVIDIA Corporation
O38 - TASK: {C2BCB1E4-FDF7-4E3C-A1C7-1B6E96042F95} [64Bits][\Nero\Nero Info] - (.Nero AG - Nero Info.) -- C:\Program Files (x86)\Common Files\Nero\Nero Info\NeroInfo.exe [6592376] =>.Nero AG
O38 - TASK: {D8EF124A-31C2-4A21-A3A1-5F62897118DB} [64Bits][\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA crash and telemetry reporter.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [935392] =>.NVIDIA Corporation
O38 - TASK: {E68AAAAC-E829-4CFA-A89D-FD8ABEDF8565} [64Bits][\GoogleUpdateTaskMachineCore] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752] =>.Google Inc.
O38 - TASK: {EA3774EB-D614-49D9-9AAB-DA3F261F9284} [64Bits][\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA telemetry monitor.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [655328] =>.NVIDIA Corporation
O38 - TASK: {EECE1313-5C6D-42CF-ADE8-D4F20FC92A7E} [64Bits][\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA crash and telemetry reporter.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [935392] =>.NVIDIA Corporation
O38 - TASK: {FB2EB7BB-C002-4D4B-A419-01087B920641} [64Bits][\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA crash and telemetry reporter.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [935392] =>.NVIDIA Corporation
O38 - TASK: {FD79C318-4614-4233-B340-841CE9AC3E2C} [64Bits][\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA driver profile updater.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [857568] =>.NVIDIA Corporation
O38 - TASK: {FE751014-9C4F-4A3F-951F-66286F75CB73} [64Bits][\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA crash and telemetry reporter.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [935392] =>.NVIDIA Corporation
C:\WINDOWS\System32\Tasks\SmartDefrag_AutoAnalyze - (.IObit.) -- C:\Program Files (x86)\IObit\Smart Defrag\AutoDefrag.exe [/AUTOANALYZE] =>.IObit
C:\WINDOWS\System32\Tasks\Adobe Flash Player NPAPI Notifier - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_30_0_0_113_Plugin.exe [-check plugin.-check] =>.Adobe Systems Incorporated
C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [] =>.NVIDIA Corporation
C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [-d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContain] =>.NVIDIA Corporation
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/ua ./ua] =>.Google Inc.
C:\WINDOWS\System32\Tasks\IObitSelfCheckTask - (.IObit.) -- C:\Program Files (x86)\IObit\Smart Defrag\IObitSelfCheck.exe [/dotip] =>.IObit
C:\WINDOWS\System32\Tasks\SmartDefrag_Update - (.IObit.) -- C:\Program Files (x86)\IObit\Smart Defrag\AutoUpdate.exe [/autorun] =>.IObit
C:\WINDOWS\System32\Tasks\CCleaner Update - (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCUpdate.exe [] =>.Piriform Ltd
C:\WINDOWS\System32\Tasks\SmartDefrag_Startup - (.IObit.) -- C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe [/STARTUP] =>.IObit
C:\WINDOWS\System32\Tasks\CCleanerSkipUAC - (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [$(Arg0)] =>.Piriform Ltd
C:\WINDOWS\System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-42J1FKO-Issam - (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [-mode=scheduled] =>.Adobe Systems Incorporated
C:\WINDOWS\System32\Tasks\HMA! Pro VPN Update - (.Privax Limited.) -- C:\Program Files (x86)\HMA! Pro VPN\VpnUpdate.exe [] =>.Privax Limited
C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [] =>.NVIDIA Corporation
C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [] =>.Adobe Systems Incorporated
C:\WINDOWS\System32\Tasks\Garena+ Plugin Host Service - (..) -- C:\Program Files (x86)\Garena Plus\ggdllhost.exe [C:\Program Files (x86)\Garena Plus\ggspawn.dll]
C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [--launcher=TaskScheduler] =>.NVIDIA Corporation
C:\WINDOWS\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [-d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA] =>.NVIDIA Corporation
C:\WINDOWS\System32\Tasks\Nero\Nero Info - (.Nero AG.) -- C:\Program Files (x86)\Common Files\Nero\Nero Info\NeroInfo.exe [-shedul] =>.Nero AG
C:\WINDOWS\System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [/noshim] =>.NVIDIA Corporation
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/c] =>.Google Inc.
C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [] =>.NVIDIA Corporation
C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [] =>.NVIDIA Corporation
C:\WINDOWS\System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [/noshim] =>.NVIDIA Corporation
C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [] =>.NVIDIA Corporation
C:\WINDOWS\System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [/noshim] =>.NVIDIA Corporation

---\\ APPLICATIONS LANCÉES AU DÉMARRAGE DU SYSTÈME (24) - 2s
O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Defender notification icon.) -- C:\Program Files\Windows Defender\MSASCuiL.exe =>.Microsoft Windows®
O4 - HKLM\..\Run: [ETDCtrl] . (.ELAN Microelectronics Corp. - ETD Control Center.) -- C:\Program Files\Elantech\ETDCtrl.exe =>.ELAN Microelectronics Corporation®
O4 - HKLM\..\Run: [Energy Management] . (.Lenovo (Beijing) Limited - Lenovo Energy Management Software 8.0.) -- C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe =>.Lenovo (Beijing) Limited®
O4 - HKLM\..\Run: [EnergyUtility] . (.Lenovo(beijing) Limited - Lenovo Battery Management Software Ver 8.0.) -- C:\Program Files (x86)\Lenovo\Energy Management\utility.exe =>.Lenovo (Beijing) Limited®
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe =>.Adobe Systems Incorporated®
O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - HKCU\..\Run: [GarenaPlus] . (.Copyright (C) 2010-2012 Garena Online Pte Ltd - Garena Plus.) -- C:\Program Files (x86)\Garena Plus\GarenaMessenger.exe {10BDE21F4B686CF100F22B5A14BB41B8}
O4 - HKCU\..\Run: [RazerCortex] . (.Razer Inc. - CortexLauncher.exe.) -- C:\Program Files (x86)\Razer\Razer Cortex\CortexLauncher.exe =>.Razer USA Ltd.®
O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
O4 - HKCU\..\Run: [PC Remote Server] . (.PC Remote - PC Remote Server.) -- C:\Program Files (x86)\PC Remote\PC Remote\PCRemote.exe =>.PC Remote®
O4 - HKLM\..\Wow6432Node\Run: [WANA_morocco Estoril ModemListener] . (...) -- C:\Program Files (x86)\inwi L850\BackgroundService\ModemListener.exe =>.JRD COMMUNICATION (SHENZHEN) LTD®
O4 - HKLM\..\Wow6432Node\Run: [vmware-tray.exe] . (.VMware, Inc. - VMware Tray Process.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe =>.VMware, Inc.®
O4 - HKLM\..\Wow6432Node\Run: [SwitchBoard] . (.Adobe Systems Incorporated - SwitchBoard Server (32 bit).) -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe =>.Adobe Systems Incorporated
O4 - HKLM\..\Wow6432Node\Run: [AdobeCS6ServiceManager] . (.Adobe Systems Incorporated - Adobe CS6 Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe =>.Adobe Systems Incorporated®
O4 - HKLM\..\Wow6432Node\Run: [331BigDog] . (.Vimicro - VM331 StiMnt.) -- C:\Program Files (x86)\USB Camera\VM331STI.EXE =>.Microsoft Windows Hardware Compatibility Publisher®
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Windows®
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Windows®
O4 - HKUS\S-1-5-19\..\RunOnce: [WAB Migrate] . (.Microsoft Corporation - Windows Contacts.) -- C:\Program Files\Windows Mail\wab.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [WAB Migrate] . (.Microsoft Corporation - Windows Contacts.) -- C:\Program Files\Windows Mail\wab.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-2302472876-181532182-1900150514-1001\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - HKUS\S-1-5-21-2302472876-181532182-1900150514-1001\..\Run: [GarenaPlus] . (.Copyright (C) 2010-2012 Garena Online Pte Ltd - Garena Plus.) -- C:\Program Files (x86)\Garena Plus\GarenaMessenger.exe {10BDE21F4B686CF100F22B5A14BB41B8}
O4 - HKUS\S-1-5-21-2302472876-181532182-1900150514-1001\..\Run: [RazerCortex] . (.Razer Inc. - CortexLauncher.exe.) -- C:\Program Files (x86)\Razer\Razer Cortex\CortexLauncher.exe =>.Razer USA Ltd.®
O4 - HKUS\S-1-5-21-2302472876-181532182-1900150514-1001\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
O4 - HKUS\S-1-5-21-2302472876-181532182-1900150514-1001\..\Run: [PC Remote Server] . (.PC Remote - PC Remote Server.) -- C:\Program Files (x86)\PC Remote\PC Remote\PCRemote.exe =>.PC Remote®

---\\ PROCESSUS LANCÉS (54) - 7s
[MD5.89620828DD23C5713358EB766445E272] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [764896] [PID.1748] =>.NVIDIA Corporation®
[MD5.6A9C613D0F5F9676D128F39B63ACE45B] - (.Intel Corporation - igfxCUIService Module.) -- C:\Windows\System32\igfxCUIService.exe [337888] [PID.2336] =>.Intel Corporation
[MD5.89620828DD23C5713358EB766445E272] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [764896] [PID.2564] =>.NVIDIA Corporation®
[MD5.2CE7963038A896B2F6505BD57D6DA467] - (.SIEMENS AG - Automation License Manager Service.) -- C:\Program Files\Common Files\Siemens\sws\almsrv\almsrv64x.exe [2034424] [PID.3952] {70A08B4DF1767ACC1C32C34BDBB76B9B} =>.Siemens AG
[MD5.24B91DEBF94F19292C32DB76190036C9] - (.AO Kaspersky Lab - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\avp.exe [354672] [PID.3968] =>.Kaspersky Lab®
[MD5.A08D7CCDAB0B1E92EB3A50EA7F09CD89] - (.Foxit Software Inc. - Foxit Reader ConnectedPDF Windows Service..) -- C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitConnectedPDFService.exe [1659456] [PID.3988] =>.Foxit Software Incorporated®
[MD5.8916EACF1256E1C5A3AF81FD39C747E7] - (.ELAN Microelectronics Corp. - Elan Service.) -- C:\Program Files\Elantech\ETDService.exe [144072] [PID.3996] =>.ELAN Microelectronics Corporation®
[MD5.EF85E3CDCF2EBE18BFD30D7194115789] - (.Privax Limited - HMA! Pro VPN Service.) -- C:\Program Files (x86)\HMA! Pro VPN\VpnSvc.exe [5649840] [PID.4028] =>.Privax Limited®
[MD5.D2AEF6C975AF109BA3A51118B0A9CB57] - (.Nitro PDF Software - Nitro PDF Spool Service.) -- c:\program files\Nitro\Pro 10\nitropdfdriverservice10x64.exe [326296] [PID.3760] =>.Nitro Software, Inc.®
[MD5.EBB9FE7E2896EFDF0C0952728A46AE9D] - (...) -- c:\program files\Nitro\Pro 10\nitro_updateservice.exe [417944] [PID.3820] =>.Nitro Software, Inc.®
[MD5.8F5A849E8CD886709924A14B57DF40C0] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [764896] [PID.3908] =>.NVIDIA Corporation®
[MD5.44460CB81DF0F5786AA5072CD94B3105] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [630240] [PID.4112] =>.NVIDIA Corporation®
[MD5.95539D0A2900C66D1000E8A6FCA09744] - (.Razer Inc. - RzKLService.exe.) -- C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe [502144] [PID.4204] =>.Razer USA Ltd.®
[MD5.4E82CEDE6EC653BA9366D04DDFBFC1F8] - (.SIEMENS AG - S7DOS Help Service.) -- C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7oiehsx64.exe [168688] [PID.4224] {6D3195C080ED985732DC694BDDAF61BA} =>.Siemens AG
[MD5.925E88D7C5A51E25769D9CEB4F7F2E85] - (.SafeNet, Inc - Sentinel Protection Server for SuperPro and.) -- C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe [206400] [PID.4264] =>.SafeNet, Inc.®
[MD5.3595B7F915035038CAC0527C9A094CA1] - (.SIEMENS AG - SIMATIC PnDiscovery Service.) -- C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7oPNDiscoveryx64.exe [497904] [PID.4272] {6D3195C080ED985732DC694BDDAF61BA} =>.Siemens AG
[MD5.46826B02C346D48A62FF11882AF662BB] - (.DEVGURU Co., LTD. - MSS CS Connectivity Service.) -- C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [752224] [PID.4280] =>.Samsung Electronics CO., LTD.®
[MD5.731D9B3DE4BC0A3E0830B9BF9DBCE2A5] - (.SafeNet, Inc. - .) -- C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe [316992] [PID.4288] =>.SafeNet, Inc.®
[MD5.518D5E0B00EADB80C3F242E6C4189380] - (.VMware, Inc. - VMware Authorization Service.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe [99816] [PID.4320] =>.VMware, Inc.®
[MD5.45009A59DD91E3D92B1B4035F6FCA606] - (.SoftwareOption GmbH - TraceConcept Service.) -- C:\Program Files\Common Files\Siemens\SimNetCom\TraceConceptX.exe [83504] [PID.4328] {70A08B4DF1767ACC1C32C34BDBB76B9B}
[MD5.0A3393F99FF0453617169467B1A9E6C5] - (.VMware, Inc. - VMware USB Arbitration Service.) -- C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe [915944] [PID.4336] =>.VMware, Inc.®
[MD5.2B889AB9973E6620F1E7E651F71D7E0E] - (.VMware, Inc. - VMware VMnet DHCP service.) -- C:\Windows\SysWOW64\vmnetdhcp.exe [366568] [PID.4344] =>.VMware, Inc.®
[MD5.0D2701107D2AA3033660E3F5E9C25AC4] - (.VMware, Inc. - VMware NAT Service.) -- C:\Windows\SysWOW64\vmnat.exe [400872] [PID.4352] =>.VMware, Inc.®
[MD5.C6682AC4A7B38CB6721D6C49ABCB1765] - (...) -- C:\Program Files (x86)\inwi L850\BackgroundService\ServiceManager.exe [76584] [PID.4384] =>.JRD COMMUNICATION (SHENZHEN) LTD®
[MD5.F7265B7490428499F2FE409FA9247866] - (.Malwarebytes - Malwarebytes Service.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6541008] [PID.5192] =>.Malwarebytes Corporation®
[MD5.25C988F95C5B4A1A0E5CB87F620F1D7E] - (.Dassault Systemes - System.) -- D:\Program Files (x86)\Dassault Systemes\B21\intel_a\code\bin\CATSysDemon.exe [38400] [PID.5328] =>.Dassault Systemes
[MD5.55DA3EFD1ABD48FE6FEE3C4AEB212F9A] - (.SIEMENS AG - S7DOS EPA Server.) -- C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7epasrv64x.exe [457456] [PID.5364] {6D3195C080ED985732DC694BDDAF61BA} =>.Siemens AG
[MD5.2B4A2B14136A060A6FCC96B99F23AAF1] - (.Siemens AG - ALMPanelPlugin ActiveX component.) -- C:\PROGRAM FILES\COMMON FILES\Siemens\ALMPANELPLUGIN\ALMPANELPLUGIN.EXE [273808] [PID.5876] {6D3195C080ED985732DC694BDDAF61BA} =>.Siemens AG
[MD5.8F5A849E8CD886709924A14B57DF40C0] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [764896] [PID.6696] =>.NVIDIA Corporation®
[MD5.97B7D81A8461126BB9CC4085712675E5] - (.ELAN Microelectronics Corp. - ETD Control Center.) -- C:\Program Files\Elantech\ETDCtrl.exe [3242696] [PID.6792] =>.ELAN Microelectronics Corporation®
[MD5.297EBB543AC3EAC28DB5D02722A3FD0C] - (.IObit - Smart Defrag 5.) -- C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe [5386528] [PID.7352] =>.IObit Information Technology®
[MD5.FB286C8987C19905D5673DA169C3258A] - (. - Garena+ Plugin Host Service.) -- C:\Program Files (x86)\Garena Plus\ggdllhost.exe [175096] [PID.7372] =>.Garena Online Pte Ltd®
[MD5.D37064498DE2B69EB94E2DA83C62E4A4] - (.ELAN Microelectronics Corp. - ETD Control Center Helper.) -- C:\Program Files\Elantech\ETDCtrlHelper.exe [2580168] [PID.7120] =>.ELAN Microelectronics Corporation®
[MD5.C7025ED9332D112CD4DAD7C8E92F30B1] - (.Intel Corporation - igfxEM Module.) -- C:\Windows\System32\igfxEM.exe [549344] [PID.4672] =>.Intel Corporation
[MD5.D8D19E718075D7B3DCA6B668968F3A87] - (.Intel Corporation - igfxHK Module.) -- C:\Windows\System32\igfxHK.exe [266208] [PID.5028] =>.Intel Corporation
[MD5.BBD33D80F5208FE34A54EEA8552F5A9A] - (.Intel Corporation - igfxTray Module.) -- C:\WINDOWS\system32\igfxTray.exe [391648] [PID.7392] =>.Intel Corporation
[MD5.11481570F396AF5D196F16E64DF3AAB8] - (.AO Kaspersky Lab - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\avpui.exe [334632] [PID.8868] =>.Kaspersky Lab®
[MD5.B89D7384E2F3FCDCB35BB3FBAFED0411] - (...) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.209.0_x64__kzf8qxf38zg5c\SkypeHost.exe [86528] [PID.9620] =>.Skype Technologies
[MD5.FB286C8987C19905D5673DA169C3258A] - (. - Garena+ Plugin Host Service.) -- C:\Program Files (x86)\Garena Plus\ggdllhost.exe [175096] [PID.10352] =>.Garena Online Pte Ltd®
[MD5.779BB814C5869E1DC2AE64122E1CA74E] - (.Lenovo (Beijing) Limited - Lenovo Energy Management Software 8.0.) -- C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [17111056] [PID.11000] =>.Lenovo (Beijing) Limited®
[MD5.7F19FEF6B2172A2A872B3FF350CCD213] - (.Lenovo(beijing) Limited - Lenovo Battery Management Software Ver 8.0.) -- C:\Program Files (x86)\Lenovo\Energy Management\utility.exe [193008] [PID.11044] =>.Lenovo (Beijing) Limited®
[MD5.E761D82FB274DAFEBA0A0C9FBC1DEEA3] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3997752] [PID.11128] =>.Tonec Inc.
[MD5.0648440301B9BB1B05F1AB58A5E60032] - (.PC Remote - PC Remote Server.) -- C:\Program Files (x86)\PC Remote\PC Remote\PCRemote.exe [1190648] [PID.11208] =>.PC Remote®
[MD5.34D296AFC913E302953C70463EF09A48] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe [96056] [PID.10628] =>.Hewlett-Packard Company®
[MD5.6743F2972F662F3A67A5136FA09A7C89] - (...) -- C:\Program Files (x86)\inwi L850\BackgroundService\ModemListener.exe [169768] [PID.6484] =>.JRD COMMUNICATION (SHENZHEN) LTD®
[MD5.279175F66914D5BE0D3A3DD9F85FD5B3] - (.Vimicro - VM331 StiMnt.) -- C:\Program Files (x86)\USB Camera\VM331STI.EXE [571928] [PID.9912] =>.Microsoft Windows Hardware Compatibility Publisher®
[MD5.14893EA453FA02E0BD9EDFEE58BB7948] - (.Node.js - NVIDIA Web Helper Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe [15997920] [PID.5392] =>.NVIDIA Corporation®
[MD5.B289C20C10B241F6016FECD92B267098] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe [275512] [PID.8920] =>.Tonec Inc.®
[MD5.BE38B471A99BF7FD0E6445308DF2E8AB] - (.Malwarebytes - Malwarebytes Tray Application.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe [3784400] [PID.10752] =>.Malwarebytes Corporation®
[MD5.4DCE20849E789DC24A867E7D7B15CE5B] - (.AO Kaspersky Lab - Kaspersky Secure Connection.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 2.0\ksde.exe [354672] [PID.5968] =>.Kaspersky Lab®
[MD5.D7F11E499F4F6545A06480712AE2F377] - (.AO Kaspersky Lab - Kaspersky Secure Connection.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 2.0\ksdeui.exe [595752] [PID.10808] =>.Kaspersky Lab®
[MD5.003DDE9E91D324DDD86F11BF580FD627] - (.Nero AG - NeroUpdate.) -- C:\Program Files (x86)\Nero\Update\NASvc.exe [805752] [PID.11300] =>.Nero AG®
[MD5.3B1D5CA8B2B3221D6D0546D379477937] - (...) -- C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18041.15530.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe [478720] [PID.4108] =>.Microsoft Corporation
[MD5.5B5515AB517616341D301402B22AC814] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Issam\AppData\Roaming\ZHP\ZHPDiag3.exe [3151232] [PID.796] =>.Nicolas Coolman

---\\ CHROME, Démarrage, Recherche, Extensions (28) - 1s
G0 - GCSP: Preferences [User Data\Default][HomePage] http://client.hola.org
G0 - GCSP: Preferences [User Data\Default][HomePage] http://assets.pinterest.com =>.Pinterest
G0 - GCSP: Preferences [User Data\Default][HomePage] http://gc.kis.v2.scr.kaspersky-labs.com =>.Kaspersky Labs
G0 - GCSP: Preferences [User Data\Default][HomePage] http://hola.org
G0 - GCSP: Preferences [User Data\Default][HomePage] http://log.pinterest.com =>.Pinterest
G0 - GCSP: Preferences [User Data\Default][HomePage] http://perr.hola.org
G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.google-analytics.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google-analytics.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com =>.Google Inc.
G2 - GCE: Preference [Issam][User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides}
G2 - GCE: Preference [Issam][User Data\Default] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs}
G2 - GCE: Preference [Issam][User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive}
G2 - GCE: Preference [Issam][User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube}
G2 - GCE: Preference [Issam][User Data\Default] [cifbgbbgjlehgddmhdognpncdjpiepgn]
G2 - GCE: Preference [Issam][User Data\Default] [coiagddgpmoccinljjidkpgonimejcnk]
G2 - GCE: Preference [Issam][User Data\Default] [edacconmaakjimmfgnblocblbcdcpbko] Initializing Session Buddy... =>.sessionbuddy.com
G2 - GCE: Preference [Issam][User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] =>.Google Inc. {Sheets}
G2 - GCE: Preference [Issam][User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
G2 - GCE: Preference [Issam][User Data\Default] [gkojfkhlekighikafcpjkiklfbnlmeio] =>.Hola.org {Unlimited Free VPN}
G2 - GCE: Preference [Issam][User Data\Default] [gpdjojdkbbmdfjfahjcgigfpmkopogic] =>.pinterest.com {Save Button}
G2 - GCE: Preference [Issam][User Data\Default] [mchjnmdbdlkdbfliogedbnpnanfjnolk] =>.Kaspersky Labs
G2 - GCE: Preference [Issam][User Data\Default] [mkaoblbjfmcalcjjaifickaoccjmhlal] =>.Kaspersky Labs {Password Manager}
G2 - GCE: Preference [Issam][User Data\Default] [ngpampappnmepgilojfohadhhmbhlaek] IDM Integration Module =>.IDM Computer Solutions, Inc.
G2 - GCE: Preference [Issam][User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet}
G2 - GCE: Preference [Issam][User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail}
G2 - GCE: Preference [Issam][User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc.
G2 - GCE: Preference [Issam][User Data\Default] [pnnfemgpilpdaojpnkjdgfgbnnjojfik] =>.Streak CRM pour Gmail {Stream.com}

---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (11) - 2s
P2 - EXT FILE: (.Microsoft Corporation - The plugin allows you to have a better expe.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npMeetingJoinPluginOC.dll =>.Microsoft Corporation®
P2 - EXT FILE: (.Video DownloadHelper - Download Videos from the Web.) -- C:\Users\Issam\AppData\Roaming\Mozilla\Firefox\Profiles\pvp4hziq.default-1520805314484\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi =>.Video DownloadHelper
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\activity-stream@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\aushelper@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\followonsearch@mozilla.com.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\formautofill@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\onboarding@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\screenshots@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi =>.Mozilla Corporation
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_30_0_0_113.dll =>.Adobe Systems Incorporated

---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (18) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com =>.Google Inc.
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com =>.Google Inc.
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = www.google.com =>.Google Inc.
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = www.google.com =>.Google Inc.
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKEY_USERS\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = www.google.com =>.Google Inc.
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.17134.112 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation

---\\ INTERNET EXPLORER, Site de confiance et site sensible (1) - 0s
~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad)

---\\ INTERNET EXPLORER,Proxy Management (4) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:8888 =>Hijacker.Proxy
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft

---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=

---\\ ÉTUDE DU FICHIER HOSTS (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (0)

---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (4) - 0s
O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll =>.Tonec Inc.®
O2 - BHO: Skype for Business Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files\Microsoft Office\Office15\OCHelper.dll =>.Microsoft Corporation®
O2 - BHO: Microsoft SkyDrive Pro Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®
O2 - BHO: Kaspersky Password Manager [64Bits] - {F710F7E5-A520-471D-989C-F653AC328FB2} (.Orphan.)

---\\ RACCOURCIS GLOBAL STARTUP (179) - 93s
O4 - GS\Desktop [Administrateur]: AIDA64 Extreme.lnk . (.FinalWire Ltd. - AIDA64 Extreme.) C:\Program Files (x86)\FinalWire\AIDA64 Extreme\aida64.exe =>.FinalWire®
O4 - GS\Desktop [Administrateur]: CrystalDiskInfo.lnk . (.Crystal Dew World - CrystalDiskInfo.) C:\Program Files (x86)\CrystalDiskInfo\DiskInfo32.exe =>.Noriyuki Miyazaki®
O4 - GS\Desktop [Administrateur]: Dacia Media Nav Toolbox.lnk . (.NNG Kft. - .) D:\Program Files (x86)\Dacia Media Nav\Toolbox\toolbox.exe =>.NNG Software Developing and Commercial LLC®
O4 - GS\Desktop [Administrateur]: emu8086.lnk . (.www.emu8086.com - emu8086.) C:\emu8086\emu8086.exe
O4 - GS\Desktop [Administrateur]: fm_i5_3230m - Raccourci.lnk . (.Sports Interactive - Football Manager 2017 17.1.2f903050 (update.) C:\Users\Issam\Downloads\Compressed\Football.Manager.2017.32Bit.MKDEV\Football Manager 2017 32\fm_i5_3230m.exe =>.Sports Interactive
O4 - GS\Desktop [Administrateur]: FST 4.21.lnk . (.Festo AG & Co. KG, D-73734 Esslingen - Festo Software Tools - Programming Tool.) C:\Program Files (x86)\Festo\FST 4.21\fst.exe
O4 - GS\Desktop [Administrateur]: HandBrake.lnk . (.HandBrake Team - .) C:\Program Files (x86)\HandBrake\HandBrake.exe =>.HandBrake Team
O4 - GS\Desktop [Administrateur]: Hearts of Iron IV Death or Dishonor.lnk . (.Paradox Interactive - HOI4.) D:\Games\Hearts of Iron IV Death or Dishonor\hoi4.exe =>.Paradox Interactive
O4 - GS\Desktop [Administrateur]: Hearts of Iron IV Waking the Tiger.lnk . (.Paradox Interactive - HOI4.) D:\Games\Hearts of Iron IV Waking the Tiger\hoi4.exe =>.Paradox Interactive
O4 - GS\Desktop [Administrateur]: Hein 4.5.2.lnk . (.Hero Hero - Hero Hero.) C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\Hein.exe =>.Hero Hero
O4 - GS\Desktop [Administrateur]: Hein Recovery 1.8.lnk . (.Hero Hero - Hero Family.) C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\Hein Recovery.exe =>.Hero Hero
O4 - GS\Desktop [Administrateur]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Desktop [Administrateur]: KMPlayer.lnk . (.PandoraTV - The KMPlayer.) C:\KMPlayer\KMPlayer.exe =>.Pandora TV Co., Ltd.®
O4 - GS\Desktop [Administrateur]: PC Remote Server.lnk . (.PC Remote - PC Remote Server.) C:\Program Files (x86)\PC Remote\PC Remote\PCRemote.exe =>.PC Remote®
O4 - GS\Desktop [Administrateur]: PotPlayer 64 bit.lnk . (.Kakao - PotPlayer.) C:\Program Files\DAUM\PotPlayer\PotPlayerMini64.exe =>.Kakao corp.®
O4 - GS\Desktop [Administrateur]: PTE Patch Selector.lnk . (.PTE Patch - PTE Patch.) D:\Program Files (x86)\Pro Evolution Soccer 2018\PTE Patch.exe
O4 - GS\Desktop [Administrateur]: Razer Cortex.lnk . (.Razer Inc. - CortexLauncher.exe.) C:\Program Files (x86)\Razer\Razer Cortex\CortexLauncher.exe =>.Razer USA Ltd.®
O4 - GS\Desktop [Administrateur]: Sleepy.lnk . (.mehDiZsoft - Sleepy.) C:\Program Files (x86)\Sleepy\Sleepy.exe
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Issam\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Desktop [Administrateur]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\Issam\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\Quicklaunch [Administrateur]: CodeBlocks.lnk . (.Code::Blocks Team - Code::Blocks IDE.) C:\Program Files (x86)\CodeBlocks\codeblocks.exe =>.Code::Blocks Team
O4 - GS\Quicklaunch [Administrateur]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 9.1.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReader.exe =>.Foxit Software Incorporated®
O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Administrateur]: PotPlayer 64 bit.lnk . (.Kakao - PotPlayer.) C:\Program Files\DAUM\PotPlayer\PotPlayerMini64.exe =>.Kakao corp.®
O4 - GS\Quicklaunch [Administrateur]: Pro Evolution Soccer 2018.lnk . (.Konami Digital Entertainment Co., Ltd. - Pro Evolution Soccer 2018.) D:\Program Files (x86)\Pro Evolution Soccer 2018\PES2018.exe =>.Konami Digital Entertainment Co., Ltd.
O4 - GS\Quicklaunch [Administrateur]: Revo Uninstaller Pro.lnk . (.VS Revo Group - Revo Uninstaller Pro.) C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group®
O4 - GS\Quicklaunch [Administrateur]: Smart Switch.lnk . (.Samsung - Smart Switch PC.) C:\Program Files (x86)\Samsung\Smart Switch PC\SmartSwitchPC.exe =>.Samsung Electronics CO., LTD.®
O4 - GS\Quicklaunch [Administrateur]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\Issam\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\sendTo [Administrateur]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Administrateur]: emu8086.lnk . (.www.emu8086.com - emu8086.) C:\emu8086\emu8086.exe
O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Administrateur]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Administrateur]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Programs [Administrateur]: Fonctionnalités optionnelles.lnk . (.Microsoft Corporation - Assistance des fonctionnalités à la demande.) C:\Windows\System32\fodhelper.exe =>.Microsoft Corporation
O4 - GS\Programs [Administrateur]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Issam\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [Administrateur]: Smart Defrag.lnk . (.IObit - Smart Defrag 5.) C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe =>.IObit Information Technology®
O4 - GS\Desktop [Issam]: AIDA64 Extreme.lnk . (.FinalWire Ltd. - AIDA64 Extreme.) C:\Program Files (x86)\FinalWire\AIDA64 Extreme\aida64.exe =>.FinalWire®
O4 - GS\Desktop [Issam]: CrystalDiskInfo.lnk . (.Crystal Dew World - CrystalDiskInfo.) C:\Program Files (x86)\CrystalDiskInfo\DiskInfo32.exe =>.Noriyuki Miyazaki®
O4 - GS\Desktop [Issam]: Dacia Media Nav Toolbox.lnk . (.NNG Kft. - .) D:\Program Files (x86)\Dacia Media Nav\Toolbox\toolbox.exe =>.NNG Software Developing and Commercial LLC®
O4 - GS\Desktop [Issam]: emu8086.lnk . (.www.emu8086.com - emu8086.) C:\emu8086\emu8086.exe
O4 - GS\Desktop [Issam]: fm_i5_3230m - Raccourci.lnk . (.Sports Interactive - Football Manager 2017 17.1.2f903050 (update.) C:\Users\Issam\Downloads\Compressed\Football.Manager.2017.32Bit.MKDEV\Football Manager 2017 32\fm_i5_3230m.exe =>.Sports Interactive
O4 - GS\Desktop [Issam]: FST 4.21.lnk . (.Festo AG & Co. KG, D-73734 Esslingen - Festo Software Tools - Programming Tool.) C:\Program Files (x86)\Festo\FST 4.21\fst.exe
O4 - GS\Desktop [Issam]: HandBrake.lnk . (.HandBrake Team - .) C:\Program Files (x86)\HandBrake\HandBrake.exe =>.HandBrake Team
O4 - GS\Desktop [Issam]: Hearts of Iron IV Death or Dishonor.lnk . (.Paradox Interactive - HOI4.) D:\Games\Hearts of Iron IV Death or Dishonor\hoi4.exe =>.Paradox Interactive
O4 - GS\Desktop [Issam]: Hearts of Iron IV Waking the Tiger.lnk . (.Paradox Interactive - HOI4.) D:\Games\Hearts of Iron IV Waking the Tiger\hoi4.exe =>.Paradox Interactive
O4 - GS\Desktop [Issam]: Hein 4.5.2.lnk . (.Hero Hero - Hero Hero.) C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\Hein.exe =>.Hero Hero
O4 - GS\Desktop [Issam]: Hein Recovery 1.8.lnk . (.Hero Hero - Hero Family.) C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\Hein Recovery.exe =>.Hero Hero
O4 - GS\Desktop [Issam]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Desktop [Issam]: KMPlayer.lnk . (.PandoraTV - The KMPlayer.) C:\KMPlayer\KMPlayer.exe =>.Pandora TV Co., Ltd.®
O4 - GS\Desktop [Issam]: PC Remote Server.lnk . (.PC Remote - PC Remote Server.) C:\Program Files (x86)\PC Remote\PC Remote\PCRemote.exe =>.PC Remote®
O4 - GS\Desktop [Issam]: PotPlayer 64 bit.lnk . (.Kakao - PotPlayer.) C:\Program Files\DAUM\PotPlayer\PotPlayerMini64.exe =>.Kakao corp.®
O4 - GS\Desktop [Issam]: PTE Patch Selector.lnk . (.PTE Patch - PTE Patch.) D:\Program Files (x86)\Pro Evolution Soccer 2018\PTE Patch.exe
O4 - GS\Desktop [Issam]: Razer Cortex.lnk . (.Razer Inc. - CortexLauncher.exe.) C:\Program Files (x86)\Razer\Razer Cortex\CortexLauncher.exe =>.Razer USA Ltd.®
O4 - GS\Desktop [Issam]: Sleepy.lnk . (.mehDiZsoft - Sleepy.) C:\Program Files (x86)\Sleepy\Sleepy.exe
O4 - GS\Desktop [Issam]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Issam\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Desktop [Issam]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\Issam\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\Quicklaunch [Issam]: CodeBlocks.lnk . (.Code::Blocks Team - Code::Blocks IDE.) C:\Program Files (x86)\CodeBlocks\codeblocks.exe =>.Code::Blocks Team
O4 - GS\Quicklaunch [Issam]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 9.1.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReader.exe =>.Foxit Software Incorporated®
O4 - GS\Quicklaunch [Issam]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Issam]: PotPlayer 64 bit.lnk . (.Kakao - PotPlayer.) C:\Program Files\DAUM\PotPlayer\PotPlayerMini64.exe =>.Kakao corp.®
O4 - GS\Quicklaunch [Issam]: Pro Evolution Soccer 2018.lnk . (.Konami Digital Entertainment Co., Ltd. - Pro Evolution Soccer 2018.) D:\Program Files (x86)\Pro Evolution Soccer 2018\PES2018.exe =>.Konami Digital Entertainment Co., Ltd.
O4 - GS\Quicklaunch [Issam]: Revo Uninstaller Pro.lnk . (.VS Revo Group - Revo Uninstaller Pro.) C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group®
O4 - GS\Quicklaunch [Issam]: Smart Switch.lnk . (.Samsung - Smart Switch PC.) C:\Program Files (x86)\Samsung\Smart Switch PC\SmartSwitchPC.exe =>.Samsung Electronics CO., LTD.®
O4 - GS\Quicklaunch [Issam]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\Issam\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\sendTo [Issam]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Issam]: emu8086.lnk . (.www.emu8086.com - emu8086.) C:\emu8086\emu8086.exe
O4 - GS\sendTo [Issam]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Issam]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Issam]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [Issam]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Programs [Issam]: Fonctionnalités optionnelles.lnk . (.Microsoft Corporation - Assistance des fonctionnalités à la demande.) C:\Windows\System32\fodhelper.exe =>.Microsoft Corporation
O4 - GS\Programs [Issam]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Issam\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [Issam]: Smart Defrag.lnk . (.IObit - Smart Defrag 5.) C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe =>.IObit Information Technology®
O4 - GS\Desktop [WDAGUtilityAccount]: AIDA64 Extreme.lnk . (.FinalWire Ltd. - AIDA64 Extreme.) C:\Program Files (x86)\FinalWire\AIDA64 Extreme\aida64.exe =>.FinalWire®
O4 - GS\Desktop [WDAGUtilityAccount]: CrystalDiskInfo.lnk . (.Crystal Dew World - CrystalDiskInfo.) C:\Program Files (x86)\CrystalDiskInfo\DiskInfo32.exe =>.Noriyuki Miyazaki®
O4 - GS\Desktop [WDAGUtilityAccount]: Dacia Media Nav Toolbox.lnk . (.NNG Kft. - .) D:\Program Files (x86)\Dacia Media Nav\Toolbox\toolbox.exe =>.NNG Software Developing and Commercial LLC®
O4 - GS\Desktop [WDAGUtilityAccount]: emu8086.lnk . (.www.emu8086.com - emu8086.) C:\emu8086\emu8086.exe
O4 - GS\Desktop [WDAGUtilityAccount]: fm_i5_3230m - Raccourci.lnk . (.Sports Interactive - Football Manager 2017 17.1.2f903050 (update.) C:\Users\Issam\Downloads\Compressed\Football.Manager.2017.32Bit.MKDEV\Football Manager 2017 32\fm_i5_3230m.exe =>.Sports Interactive
O4 - GS\Desktop [WDAGUtilityAccount]: FST 4.21.lnk . (.Festo AG & Co. KG, D-73734 Esslingen - Festo Software Tools - Programming Tool.) C:\Program Files (x86)\Festo\FST 4.21\fst.exe
O4 - GS\Desktop [WDAGUtilityAccount]: HandBrake.lnk . (.HandBrake Team - .) C:\Program Files (x86)\HandBrake\HandBrake.exe =>.HandBrake Team
O4 - GS\Desktop [WDAGUtilityAccount]: Hearts of Iron IV Death or Dishonor.lnk . (.Paradox Interactive - HOI4.) D:\Games\Hearts of Iron IV Death or Dishonor\hoi4.exe =>.Paradox Interactive
O4 - GS\Desktop [WDAGUtilityAccount]: Hearts of Iron IV Waking the Tiger.lnk . (.Paradox Interactive - HOI4.) D:\Games\Hearts of Iron IV Waking the Tiger\hoi4.exe =>.Paradox Interactive
O4 - GS\Desktop [WDAGUtilityAccount]: Hein 4.5.2.lnk . (.Hero Hero - Hero Hero.) C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\Hein.exe =>.Hero Hero
O4 - GS\Desktop [WDAGUtilityAccount]: Hein Recovery 1.8.lnk . (.Hero Hero - Hero Family.) C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\Hein Recovery.exe =>.Hero Hero
O4 - GS\Desktop [WDAGUtilityAccount]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Desktop [WDAGUtilityAccount]: KMPlayer.lnk . (.PandoraTV - The KMPlayer.) C:\KMPlayer\KMPlayer.exe =>.Pandora TV Co., Ltd.®
O4 - GS\Desktop [WDAGUtilityAccount]: PC Remote Server.lnk . (.PC Remote - PC Remote Server.) C:\Program Files (x86)\PC Remote\PC Remote\PCRemote.exe =>.PC Remote®
O4 - GS\Desktop [WDAGUtilityAccount]: PotPlayer 64 bit.lnk . (.Kakao - PotPlayer.) C:\Program Files\DAUM\PotPlayer\PotPlayerMini64.exe =>.Kakao corp.®
O4 - GS\Desktop [WDAGUtilityAccount]: PTE Patch Selector.lnk . (.PTE Patch - PTE Patch.) D:\Program Files (x86)\Pro Evolution Soccer 2018\PTE Patch.exe
O4 - GS\Desktop [WDAGUtilityAccount]: Razer Cortex.lnk . (.Razer Inc. - CortexLauncher.exe.) C:\Program Files (x86)\Razer\Razer Cortex\CortexLauncher.exe =>.Razer USA Ltd.®
O4 - GS\Desktop [WDAGUtilityAccount]: Sleepy.lnk . (.mehDiZsoft - Sleepy.) C:\Program Files (x86)\Sleepy\Sleepy.exe
O4 - GS\Desktop [WDAGUtilityAccount]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Issam\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Desktop [WDAGUtilityAccount]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\Issam\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\Quicklaunch [WDAGUtilityAccount]: CodeBlocks.lnk . (.Code::Blocks Team - Code::Blocks IDE.) C:\Program Files (x86)\CodeBlocks\codeblocks.exe =>.Code::Blocks Team
O4 - GS\Quicklaunch [WDAGUtilityAccount]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 9.1.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReader.exe =>.Foxit Software Incorporated®
O4 - GS\Quicklaunch [WDAGUtilityAccount]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [WDAGUtilityAccount]: PotPlayer 64 bit.lnk . (.Kakao - PotPlayer.) C:\Program Files\DAUM\PotPlayer\PotPlayerMini64.exe =>.Kakao corp.®
O4 - GS\Quicklaunch [WDAGUtilityAccount]: Pro Evolution Soccer 2018.lnk . (.Konami Digital Entertainment Co., Ltd. - Pro Evolution Soccer 2018.) D:\Program Files (x86)\Pro Evolution Soccer 2018\PES2018.exe =>.Konami Digital Entertainment Co., Ltd.
O4 - GS\Quicklaunch [WDAGUtilityAccount]: Revo Uninstaller Pro.lnk . (.VS Revo Group - Revo Uninstaller Pro.) C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group®
O4 - GS\Quicklaunch [WDAGUtilityAccount]: Smart Switch.lnk . (.Samsung - Smart Switch PC.) C:\Program Files (x86)\Samsung\Smart Switch PC\SmartSwitchPC.exe =>.Samsung Electronics CO., LTD.®
O4 - GS\Quicklaunch [WDAGUtilityAccount]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\Issam\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\sendTo [WDAGUtilityAccount]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [WDAGUtilityAccount]: emu8086.lnk . (.www.emu8086.com - emu8086.) C:\emu8086\emu8086.exe
O4 - GS\sendTo [WDAGUtilityAccount]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [WDAGUtilityAccount]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [WDAGUtilityAccount]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [WDAGUtilityAccount]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Programs [WDAGUtilityAccount]: Fonctionnalités optionnelles.lnk . (.Microsoft Corporation - Assistance des fonctionnalités à la demande.) C:\Windows\System32\fodhelper.exe =>.Microsoft Corporation
O4 - GS\Programs [WDAGUtilityAccount]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Issam\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [WDAGUtilityAccount]: Smart Defrag.lnk . (.IObit - Smart Defrag 5.) C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe =>.IObit Information Technology®
O4 - GS\CommonDesktop [Public]: Achat de consommables - HP DeskJet 3630 series.lnk . (.HP Inc. - .) C:\Program Files (x86)\HP\HP DeskJet 3630 series\Bin\hpqDTSS.exe =>.HP Inc.
O4 - GS\CommonDesktop [Public]: Adobe Application Manager.lnk . (.Adobe Systems Incorporated - Adobe Application Manager.) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\core\PDapp.exe --appletID=CCM_UI --appletVersion=1.0 --workflow=CCM_workflow_launch =>.Adobe Systems Incorporated®
O4 - GS\CommonDesktop [Public]: Auto Clicker by MurGee.com for Games.lnk . (.MurGee.com - Auto Clicker by MurGee.com.) C:\Program Files (x86)\Auto Clicker by MurGee.com\AutoClickerForGames.exe {38A2919A33D93F9CB7A2BA852B7A47A6} =>.MurGee.com
O4 - GS\CommonDesktop [Public]: Auto Clicker by MurGee.com.lnk . (.MurGee.com - Auto Clicker by MurGee.com.) C:\Program Files (x86)\Auto Clicker by MurGee.com\AutoClicker.exe {38A2919A33D93F9CB7A2BA852B7A47A6} =>.MurGee.com
O4 - GS\CommonDesktop [Public]: Camtasia 9.lnk . (.TechSmith Corporation - .) C:\Program Files (x86)\TechSmith\Camtasia 9\CamtasiaStudio.exe =>.TechSmith Corporation
O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
O4 - GS\CommonDesktop [Public]: Configuration du routeur.lnk . (.SAGEM - .) C:\Program Files (x86)\SAGEM\SAGEM F@st 3304\RunHttpCfg.exe -I =>.Sagem
O4 - GS\CommonDesktop [Public]: Epic Games Launcher.lnk . (.Epic Games, Inc. - UnrealEngineLauncher.) D:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win32\EpicGamesLauncher.exe =>.Epic Games Inc.®
O4 - GS\CommonDesktop [Public]: FIFA18.lnk . (.Electronic Arts - FIFA 18.) D:\Program Files\FIFA18\FIFA18.exe =>.Electronic Arts®
O4 - GS\CommonDesktop [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\CommonDesktop [Public]: FMRTE 17.lnk . (.BraCa Soft - FMRTE 17.) C:\BraCa Soft\FMFFFFFFFFFFFRTE 17\FMRTE.exe =>.BraCa Soft
O4 - GS\CommonDesktop [Public]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 9.1.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReader.exe =>.Foxit Software Incorporated®
O4 - GS\CommonDesktop [Public]: Garena+.lnk . (.Copyright (C) 2010-2012 Garena Online Pte Ltd - Garena Plus.) C:\Program Files (x86)\Garena Plus\GarenaMessenger.exe {10BDE21F4B686CF100F22B5A14BB41B8}
O4 - GS\CommonDesktop [Public]: GeForce Experience.lnk . (.NVIDIA Corporation - .) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe =>.NVIDIA Corporation
O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\CommonDesktop [Public]: HMA! Pro VPN.lnk . (.Privax Limited - HMA! Pro VPN.) C:\Program Files (x86)\HMA! Pro VPN\Vpn.exe =>.Privax Limited®
O4 - GS\CommonDesktop [Public]: HP DeskJet 3630 series.lnk . (.HP Inc. - .) C:\Program Files (x86)\HP\HP DeskJet 3630 series\Bin\HP DeskJet 3630 series.exe -Start UDCDevicePage =>.HP Inc.
O4 - GS\CommonDesktop [Public]: HP Photo Creations.lnk . (.Visan / RocketLife - PhotoProduct.exe.) C:\Program Files (x86)\HP Photo Creations\PhotoProduct.exe =>.Visan Industries®
O4 - GS\CommonDesktop [Public]: HP Print and Scan Doctor.lnk . (...) C:\Program Files (x86)\HP\Diagnostics\PSDR\HPPSDr.exe =>.HP Inc.®
O4 - GS\CommonDesktop [Public]: inwi L850.lnk . (...) C:\Program Files (x86)\inwi L850\OpenURL.exe =>.JRD COMMUNICATION (SHENZHEN) LTD®
O4 - GS\CommonDesktop [Public]: Kaspersky Secure Connection.lnk . (.AO Kaspersky Lab - Kaspersky Secure Connection.) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 2.0\ksdeui.exe -navigate ksde://mainwindow =>.Kaspersky Lab®
O4 - GS\CommonDesktop [Public]: Kaspersky Total Security.lnk . (.AO Kaspersky Lab - Kaspersky Anti-Virus.) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\avpui.exe =>.Kaspersky Lab®
O4 - GS\CommonDesktop [Public]: Malwarebytes.lnk . (.Malwarebytes - Malwarebytes.) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.Malwarebytes Corporation®
O4 - GS\CommonDesktop [Public]: miniFMRTE.lnk . (.BraCa Soft - FMRTE 17.) C:\BraCa Soft\FMFFFFFFFFFFFRTE 17\FMRTE.exe --minifmrte =>.BraCa Soft
O4 - GS\CommonDesktop [Public]: Nero 2017.lnk . (.Acresso Software Inc. - InstallShield.) C:\WINDOWS\Installer\{21916D21-F3DD-44F9-952B-FD122CBD1526}\NeroLauncher.ex_06255901E67449719980557FAA5EC1C6.exe =>.Nero AG®
O4 - GS\CommonDesktop [Public]: Nero Launcher.lnk . (.Nero AG - Nero 2017.) C:\Program Files (x86)\Nero\Nero 2017\Nero Launcher\NeroLauncher.exe =>.Nero AG®
O4 - GS\CommonDesktop [Public]: Nitro Pro 10.lnk . (.Nitro PDF - .) C:\Program Files (x86)\Nitro\Pro 10\NitroPDF.exe =>.Nitro PDF
O4 - GS\CommonDesktop [Public]: OFT2 Grafcet.lnk . (.Omegon Teachware - .) C:\Program Files (x86)\Omegon\OFT2\OftGC.exe
O4 - GS\CommonDesktop [Public]: Origin.lnk . (.Electronic Arts - Origin.) C:\Program Files (x86)\Origin\Origin.exe =>.Electronic Arts, Inc.®
O4 - GS\CommonDesktop [Public]: Pro Evolution Soccer 2018 - Settings.lnk . (.Konami Digital Entertainment Co., Ltd. - PRO EVOLUTION SOCCER 2018 Settings.) D:\Program Files (x86)\Pro Evolution Soccer 2018\Settings.exe {280CCB6BC608495EBF1CCF5D849CEF91} =>.Konami Digital Entertainment Co., Ltd.
O4 - GS\CommonDesktop [Public]: Pro Evolution Soccer 2018.lnk . (.Konami Digital Entertainment Co., Ltd. - Pro Evolution Soccer 2018.) D:\Program Files (x86)\Pro Evolution Soccer 2018\PES2018.exe =>.Konami Digital Entertainment Co., Ltd.
O4 - GS\CommonDesktop [Public]: Protection bancaire.lnk . (.AO Kaspersky Lab - Kaspersky Anti-Virus.) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\avpui.exe -safebanking =>.Kaspersky Lab®
O4 - GS\CommonDesktop [Public]: Proteus 8 Professional .lnk . (...) C:\Program Files (x86)\Labcenter Electronics\Proteus 8 Professional\BIN\PDS.EXE =>.Labcenter Electronics
O4 - GS\CommonDesktop [Public]: Revo Uninstaller Pro.lnk . (.VS Revo Group - Revo Uninstaller Pro.) C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group®
O4 - GS\CommonDesktop [Public]: Smart Defrag 5.lnk . (.IObit - Smart Defrag 5.) C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe =>.IObit Information Technology®
O4 - GS\CommonDesktop [Public]: Smart Switch.lnk . (.Samsung - Smart Switch PC.) C:\Program Files (x86)\Samsung\Smart Switch PC\SmartSwitchPC.exe =>.Samsung Electronics CO., LTD.®
O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\CommonDesktop [Public]: VMware Workstation Pro.lnk . (.VMware, Inc. - VMware Workstation.) C:\Program Files (x86)\VMware\VMware Workstation\vmware.exe =>.VMware, Inc.®
O4 - GS\CommonDesktop [Public]: Wondershare Dr.Fone pour Android.lnk . (.Wondershare - Wondershare Dr.Fone for Android.) C:\Program Files (x86)\Wondershare\Dr.Fone pour Android\DrFoneAndroid.exe =>.Wondershare
O4 - GS\Programs [Public]: Fonctionnalités optionnelles.lnk . (.Microsoft Corporation - Assistance des fonctionnalités à la demande.) C:\Windows\System32\fodhelper.exe =>.Microsoft Corporation
O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Issam\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [Public]: Smart Defrag.lnk . (.IObit - Smart Defrag 5.) C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe =>.IObit Information Technology®
O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\internet explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\WINDOWS\system32\xpsrchvw.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Adobe Application Manager.lnk . (.Adobe Systems Incorporated - Adobe Application Manager.) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\core\PDapp.exe --appletID=CCM_UI --appletVersion=1.0 --workflow=CCM_workflow_launch =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Bridge CS6 (64bit).lnk . (.Adobe Systems, Inc. - Adobe Bridge CS6.) C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe ExtendScript Toolkit CS6.lnk . (.Adobe Systems Incorporated - ExtendScript Toolkit CS6 and Debugger (32 b.) C:\Program Files (x86)\Adobe\Adobe Utilities - CS6\ExtendScript Toolkit CS6\ExtendScript Toolkit.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Extension Manager CS6.lnk . (.Adobe Systems Incorporated - Adobe Extension Manager CS6.) C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\Adobe Extension Manager CS6.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Help.lnk . (...) C:\Program Files (x86)\Adobe\Adobe Help\Adobe Help.exe =>.Adobe Inc.
O4 - GS\ProgramsCommon [Public]: Adobe Photoshop CC 2014.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2014.) C:\Program Files\Adobe\Adobe Photoshop CC 2014\Photoshop.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Photoshop CS6 (64 Bit).lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CS6.) C:\Program Files\Adobe\Adobe Photoshop CS6 (64 Bit)\Photoshop.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Epic Games Launcher.lnk . (.Epic Games, Inc. - UnrealEngineLauncher.) D:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win32\EpicGamesLauncher.exe =>.Epic Games Inc.®
O4 - GS\ProgramsCommon [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Nitro Pro 10.lnk . (.Nitro PDF - .) C:\Program Files (x86)\Nitro\Pro 10\NitroPDF.exe =>.Nitro PDF
O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation

---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (5) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{ad523685-597e-45a5-bdea-c7b8c6b26a04}: NameServer = 8.8.8.8,8.8.4.4 =>.France Google Cloud
O17 - HKLM\System\CCS\Services\Tcpip\..\{970f71d7-ce30-4697-8ca1-0be3e81a1d7d}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{ad523685-597e-45a5-bdea-c7b8c6b26a04}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{d0daaf76-ae74-45eb-8050-9fc3ee83bde6}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress

---\\ PROTOCOLE ADDITIONNEL (25) - 1s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation®
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: osf [64Bits] - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files\Microsoft Office\Office15\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s
O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation

---\\ COMPOSANTS ACTIVESETUP INSTALLÉS (ASIC) (5) - 1s
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe =>.Microsoft Corporation
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft Corporation®
O40 - ASIC: Google Chrome [64Bits] - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google Inc. - Google Chrome Installer.) -- C:\Program Files (x86)\Google\Chrome\Application\67.0.3396.99\Installer\chrmstp.exe =>.Google Inc®

---\\ LOGICIELS INSTALLÉS (406) - 35s
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent =>.BitTorrent Inc®
O42 - Logiciel: 7-Zip 18.05 (x64) - (.Igor Pavlov.) [HKLM][64Bits] -- 7-Zip =>.Igor Pavlov
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {739A853C-D71F-404B-9E6A-012D3918ED57} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Community Help - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Community Help - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Flash Player 30 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Photoshop CC 2014 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {D7A4F897-B20A-42D0-862D-CB5F6DB7391D} =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Photoshop CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {74EB3499-8B95-4B5C-96EB-7B342F3FD0C6} =>.Adobe Systems Incorporated®
O42 - Logiciel: AIDA64 Extreme v5.20 - (.FinalWire Ltd..) [HKLM][64Bits] -- AIDA64 Extreme_is1 =>.FinalWire®
O42 - Logiciel: Auto Clicker v12.1 - (.MurGee.com.) [HKLM][64Bits] -- {C0A7E4F3-82CC-416B-82C6-BA06AACFD635}_is1 =>.MurGee.com
O42 - Logiciel: Avira Phantom VPN v2.7.1.26756 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- Avira Phantom VPN =>.Avira Operations GmbH & Co. KG®
O42 - Logiciel: AxCrypt 2.1.1541.0 - (.AxCrypt AB.) [HKLM][64Bits] -- {5EC6511A-2C73-9886-EFE3-E6F6C3C726F5} =>.AxCrypt AB
O42 - Logiciel: AxCrypt 2.1.1541.0 - (.AxCrypt AB.) [HKLM][64Bits] -- {dcf79837-6bc8-41de-915f-875624a4a4ee} =>.AxCrypt AB®
O42 - Logiciel: Belkasoft Evidence Center Ultimate - (..) [HKCU][64Bits] -- Belkasoft Evidence Center Ultimate
O42 - Logiciel: Camtasia 9 - (.TechSmith Corporation.) [HKLM][64Bits] -- {1d9398f4-c133-41a0-9ea1-1600af791234} =>.TechSmith Corporation®
O42 - Logiciel: Camtasia 9 - (.TechSmith Corporation.) [HKLM][64Bits] -- {8AD50DED-EE14-4FEC-BC2C-F229C3BEFE58} =>.TechSmith Corporation
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd®
O42 - Logiciel: CharlyGraal V5 - (.Charlyrobot.) [HKLM][64Bits] -- {43062EA1-4947-4FB6-BD91-EDC35F6DB3AD}
O42 - Logiciel: CodeBlocks - (.The Code::Blocks Team.) [HKCU][64Bits] -- CodeBlocks =>.The Code::Blocks Team
O42 - Logiciel: CrystalDiskInfo 7.0.5 - (.Crystal Dew World.) [HKLM][64Bits] -- CrystalDiskInfo_is1 =>.Crystal Dew World
O42 - Logiciel: Dacia Media Nav Toolbox - (.NNG Llc..) [HKLM][64Bits] -- Dacia Media Nav Toolbox =>.NNG Llc.
O42 - Logiciel: Dassault Systemes Software B21 - (..) [HKLM][64Bits] -- Dassault Systemes B21_0
O42 - Logiciel: Dassault Systemes Software Prerequisites x86-x64 - (.Dassault Systemes.) [HKLM][64Bits] -- {CF1EB598-B424-436A-B15F-B763846BA970} =>.Dassault Systemes
O42 - Logiciel: Definition Update for Microsoft Office 2013 (KB3115404) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{52EF08F9-F296-48DC-A906-E03225E51C9B} =>.Microsoft Corporation®
O42 - Logiciel: DisplayDriverAnalyzer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer =>.NVIDIA Corporation
O42 - Logiciel: DriverIdentifier 5.2 - (.DriverIdentifier.) [HKLM][64Bits] -- {40A3E5DB-5EF8-4F04-BF3E-7AB87C4AE85A}_is1 =>.DriverIdentifier
O42 - Logiciel: ELAN Touchpad 11.15.0.18_X64 - (.ELAN Microelectronic Corp..) [HKLM][64Bits] -- Elantech =>.ELAN Microelectronics Corporation®
O42 - Logiciel: emu8086 microprocessor emulator - (.emu8086.) [HKLM][64Bits] -- emu8086 microprocessor emulator_is1 =>.emu8086
O42 - Logiciel: Energy Management - (.Lenovo.) [HKLM][64Bits] -- {D0956C11-0F60-43FE-99AD-524E833471BB} =>.Lenovo
O42 - Logiciel: Energy Management - (.Lenovo.) [HKLM][64Bits] -- InstallShield_{D0956C11-0F60-43FE-99AD-524E833471BB} =>.Lenovo
O42 - Logiciel: Epic Games Launcher - (.Epic Games, Inc..) [HKLM][64Bits] -- {CC65E120-E089-4438-815A-E20004182608} =>.Epic Games, Inc.
O42 - Logiciel: Epic Games Launcher Prerequisites (x64) - (.Epic Games, Inc..) [HKLM][64Bits] -- {66C5838F-B854-4A55-89E6-A6138747A4DF} =>.Epic Games, Inc.
O42 - Logiciel: Étude pour l'amélioration du produit HP DeskJet 3630 series - (.HP Inc..) [HKLM][64Bits] -- {A90C7D4F-30F2-4A8E-A7D6-003F67E9433C} =>.HP Inc.
O42 - Logiciel: Festo FluidSim 3.6 - (.My Company, Inc..) [HKLM][64Bits] -- Festo Fluidsim_is1 =>.SUP.MyCompanyInc
O42 - Logiciel: FIFA18 version 1.0 - (.STEAMPUNKS.) [HKLM][64Bits] -- FIFA18_is1 =>.Steampunks
O42 - Logiciel: FMRTE 17.3.0.15 - (.FMRTE.) [HKLM][64Bits] -- {72A84F14-6742-48AD-9B14-E9C1BE155F7A}_is1 =>.FMRTE
O42 - Logiciel: Foxit Reader - (.Foxit Software Inc..) [HKLM][64Bits] -- Foxit Reader_is1 =>.Foxit Software Incorporated®
O42 - Logiciel: French App Name - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {DE3A9DC5-9A5D-6485-9662-347162C7E4CA} =>.Adobe Systems Incorporated
O42 - Logiciel: French App Name - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 =>.Adobe Systems Incorporated
O42 - Logiciel: FST 4.21 - (.Festo AG & Co. KG.) [HKLM][64Bits] -- {4E3B76C9-C756-4EBA-9A3B-43632A7D3760}
O42 - Logiciel: Garena+ - (.Garena Online Pte Ltd..) [HKLM][64Bits] -- im
O42 - Logiciel: GOCharly4T V5 - (.GO2cam International.) [HKLM][64Bits] -- GO2charly4TV5
O42 - Logiciel: GOCharly4T V5 pack Standard - (.GO2cam International.) [HKLM][64Bits] -- GO2charly4TV5 pack Standard
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc®
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: HandBrake 1.0.2 - (.HandBrake Team.) [HKLM][64Bits] -- HandBrake =>.HandBrake Team
O42 - Logiciel: Hearts of Iron IV Death or Dishonor - (..) [HKLM][64Bits] -- Hearts of Iron IV Death or Dishonor_is1
O42 - Logiciel: Hearts of Iron IV Waking the Tiger - (..) [HKLM][64Bits] -- Hearts of Iron IV Waking the Tiger_is1
O42 - Logiciel: HMA! Pro VPN - (.Privax.) [HKLM][64Bits] -- {60A560F2-CB75-4C94-9C36-39AD2161DE73}_is1 =>.Privax Limited®
O42 - Logiciel: HP DeskJet 3630 series Aide - (.Hewlett Packard.) [HKLM][64Bits] -- {08F5B0C6-D24D-4327-BA56-F8E00C1A6878} =>.Hewlett Packard
O42 - Logiciel: HP Dropbox Plugin - (.HP.) [HKLM][64Bits] -- {6401399A-F5DA-4C04-87AA-E8107DF00751} =>.HP
O42 - Logiciel: HP Google Drive Plugin - (.HP.) [HKLM][64Bits] -- {63BCC696-0FB4-4E9C-8144-2DA4F248FC17} =>.HP
O42 - Logiciel: HP Photo Creations - (.HP.) [HKLM][64Bits] -- HP Photo Creations =>.Visan Industries®
O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {912D30CF-F39E-4B31-AD9A-123C6B794EE2} =>.Hewlett-Packard
O42 - Logiciel: IDM Crack 6.27 build 1 - (.Crackingpatching.com Team.) [HKLM][64Bits] -- IDM Crack 6.27 build 1 =>.Crackingpatching.com Team
O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM][64Bits] -- Internet Download Manager =>.Tonec Inc.®
O42 - Logiciel: inwi L850 - (.WANA.) [HKLM][64Bits] -- WANA_morocco Estoril inwi L850_is1 =>.JRD COMMUNICATION (SHENZHEN) LTD®
O42 - Logiciel: Kaspersky Password Manager - (.Kaspersky Lab.) [HKLM][64Bits] -- {D4C3D682-E15A-4A48-A7B7-3F021A525F8F} =>.Kaspersky Lab
O42 - Logiciel: Kaspersky Password Manager - (.Kaspersky Lab.) [HKLM][64Bits] -- InstallWIX_{D4C3D682-E15A-4A48-A7B7-3F021A525F8F} =>.Kaspersky Lab
O42 - Logiciel: Kaspersky Secure Connection - (.Kaspersky Lab.) [HKLM][64Bits] -- {F33C0717-8E04-4EB5-90C8-47221287DB4F} =>.Kaspersky Lab
O42 - Logiciel: Kaspersky Secure Connection - (.Kaspersky Lab.) [HKLM][64Bits] -- InstallWIX_{F33C0717-8E04-4EB5-90C8-47221287DB4F} =>.Kaspersky Lab
O42 - Logiciel: Kaspersky Total Security - (.Kaspersky Lab.) [HKLM][64Bits] -- {5AAE61FF-858E-453E-B8F3-944618149975} =>.Kaspersky Lab
O42 - Logiciel: Kaspersky Total Security - (.Kaspersky Lab.) [HKLM][64Bits] -- InstallWIX_{5AAE61FF-858E-453E-B8F3-944618149975} =>.Kaspersky Lab
O42 - Logiciel: KMPlayer (remove only) - (.PandoraTV.) [HKLM][64Bits] -- The KMPlayer =>.PandoraTV
O42 - Logiciel: Launcher Prerequisites (x64) - (.Epic Games, Inc..) [HKLM][64Bits] -- {c6c5a357-c7ca-4a5f-9789-3bb1af579253} =>.Epic Games Inc.®
O42 - Logiciel: Lenovo EasyCamera - (.Vimicro.) [HKLM][64Bits] -- {ADE16A9D-FBDC-4ecc-B6BD-9C31E51D0332} =>.Microsoft Windows Hardware Compatibility Publisher®
O42 - Logiciel: LG United Mobile Driver - (.LG Electronics.) [HKLM][64Bits] -- {2A3A4BD6-6CE0-4e2a-80D2-1D0FF6ACBFBA} =>.LG Electronics
O42 - Logiciel: Logiciel de base du périphérique HP DeskJet 3630 series - (.HP Inc..) [HKLM][64Bits] -- {A571C4EB-3B62-4CA2-A2B3-ADB55387339B} =>.HP Inc.
O42 - Logiciel: Malwarebytes Anti-Malware versione 2.2.1.1043 - (.Malwarebytes.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 =>.Malwarebytes
O42 - Logiciel: Malwarebytes version 3.5.1.2522 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Corporation®
O42 - Logiciel: Maroc Telecom - (.SAGEM.) [HKLM][64Bits] -- {4A975AC1-1E5B-43B7-B42B-6E617B39C936} =>.Macrovision Corporation®
O42 - Logiciel: Microsoft Access MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0015-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft DCF MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0090-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Excel MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0016-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Groove MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00BA-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft InfoPath MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0044-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Lync MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Office 32-bit Components 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Office Korrekturhilfen 2013 - Deutsch - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001F-0407-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Office OSM MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00E1-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Office OSM UX MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00E2-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Office Professional Plus 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Office Professionnel Plus 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- Office15.PROPLUS =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Office Proofing (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-002C-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Office Proofing Tools 2013 - English - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001F-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Office Proofing Tools 2013 - Español - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001F-0C0A-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Office Proofing Tools 2013 - Nederlands - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001F-0413-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Office Proofing Tools 2013 - اللغة العربية - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001F-0401-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Office Remote - (.Microsoft Corporation.) [HKLM][64Bits] -- {2C0CE5E4-1293-49F7-8D33-5B8527E5958F} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Office Remote - (.Microsoft Corporation.) [HKLM][64Bits] -- {7a1ad515-9199-47d6-aa40-6fdf2c857ff0} =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Office Shared 32-bit MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00C1-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Office Shared MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-006E-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft Corporation®
O42 - Logiciel: Microsoft OneNote MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00A1-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Outlook MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001A-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft PowerPoint MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0018-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Primary Interoperability Assemblies 2005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {D24DB8B9-BB6C-4334-9619-BA1C650E13D3} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Publisher MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0019-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {7299052b-02a4-4627-81f2-1818da5d550d} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {ad8a2fa1-06e7-4b0d-927d-6e54b3d31028} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 - (.Microsoft Corporation.) [HKLM][64Bits] -- {FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D8E6291-B0D5-35EC-8441-6616F567A0F7} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 - (.Microsoft Corporation.) [HKLM][64Bits] -- {a1909659-0a08-4554-8af1-2175904903a1} =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {ca67548a-5ebe-413a-b50c-4b9ceb6d66c6} =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 - (.Microsoft Corporation.) [HKLM][64Bits] -- {95716cce-fc71-413f-8ad5-56c2892d4b3a} =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {33d1fd90-4274-48a1-9bc1-97e33d9c2d6f} =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {37B8F9C7-03FB-3253-8781-2517C99D7C00} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {B175520C-86A2-35A7-8619-86DC379688B9} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BD95A8CD-1D9F-35AD-981A-3E7925026EBB} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 - (.Microsoft Corporation.) [HKLM][64Bits] -- {050d4fc8-5d48-4b8f-8972-47c82c46020f} =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 - (.Microsoft Corporation.) [HKLM][64Bits] -- {f65db027-aff3-4070-886a-0d87064aabb1} =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {929FBD26-9020-399B-9A7A-751D61F0B942} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {A749D8E6-B613-3BE3-8F5F-045C84EBA29B} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {13A4EE12-23EA-3371-91EE-EFB36DDFFF3E} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506 - (.Microsoft Corporation.) [HKLM][64Bits] -- {3ee5e5bb-b7cc-4556-8861-a00a82977d6c} =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.23506 - (.Microsoft Corporation.) [HKLM][64Bits] -- {B0B194F8-E0CE-33FE-AA11-636428A4B73D} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.23506 - (.Microsoft Corporation.) [HKLM][64Bits] -- {A1C31BA5-5438-3A07-9EEE-A5FB2D0FDE36} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2017 RC Redistributable (x86) - 14.10.24728 - (.Microsoft Corporation.) [HKLM][64Bits] -- {38602f72-a7f8-456b-84e5-6e200dc99917} =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual C++ 2017 x86 Additional Runtime - 14.10.24728 - (.Microsoft Corporation.) [HKLM][64Bits] -- {0517A648-0C5B-3422-BA80-1E6CDD972DA8} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2017 x86 Minimum Runtime - 14.10.24728 - (.Microsoft Corporation.) [HKLM][64Bits] -- {44487CAB-9276-3E0D-9CCB-A8F5F948D3C0} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {9495AEB4-AB97-39DE-8C42-806EEF75ECA7} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Visual Studio 2010 Tools for Office Runtime (x64) =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - - (.Microsoft Corporation.) [HKLM][64Bits] -- {8D0A0EC6-9A3C-354F-9BFC-A61E96BE1846} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Word MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001B-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft_VC80_CRT_x86 - (.Adobe.) [HKLM][64Bits] -- {92D58719-BBC1-4CC3-A08B-56C9E884CC2C} =>.Adobe
O42 - Logiciel: Microsoft_VC80_CRT_x86_x64 - (.Adobe.) [HKLM][64Bits] -- {4569AD91-47F4-4D9E-8FC9-717EC32D7AE1} =>.Adobe
O42 - Logiciel: Microsoft_VC80_MFC_x86 - (.Adobe.) [HKLM][64Bits] -- {D1A19B02-817E-4296-A45B-07853FD74D57} =>.Adobe
O42 - Logiciel: Microsoft_VC80_MFC_x86_x64 - (.Adobe.) [HKLM][64Bits] -- {C8C1BAD5-54E6-4146-AD07-3A8AD36569C3} =>.Adobe
O42 - Logiciel: Microsoft_VC80_MFCLOC_x86 - (.Adobe.) [HKLM][64Bits] -- {D92BBB52-82FF-42ED-8A3C-4E062F944AB7} =>.Adobe
O42 - Logiciel: Microsoft_VC80_MFCLOC_x86_x64 - (.Adobe.) [HKLM][64Bits] -- {1E9FC118-651D-4934-97BE-E53CAE5C7D45} =>.Adobe
O42 - Logiciel: Microsoft_VC90_ATL_x86 - (.Adobe.) [HKLM][64Bits] -- {033E378E-6AD3-4AD5-BDEB-CBD69B31046C} =>.Adobe
O42 - Logiciel: Microsoft_VC90_ATL_x86_x64 - (.Adobe.) [HKLM][64Bits] -- {8557397C-A42D-486F-97B3-A2CBC2372593} =>.Adobe
O42 - Logiciel: Microsoft_VC90_CRT_x86 - (.Adobe.) [HKLM][64Bits] -- {08D2E121-7F6A-43EB-97FD-629B44903403} =>.Adobe
O42 - Logiciel: Microsoft_VC90_CRT_x86_x64 - (.Adobe.) [HKLM][64Bits] -- {92A3CA0D-55CD-4C5D-BA95-5C2600C20F26} =>.Adobe
O42 - Logiciel: Microsoft_VC90_MFC_x86 - (.Adobe.) [HKLM][64Bits] -- {635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A} =>.Adobe
O42 - Logiciel: Microsoft_VC90_MFC_x86_x64 - (.Adobe.) [HKLM][64Bits] -- {A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB} =>.Adobe
O42 - Logiciel: mikroC PRO for PIC (remove only) - (.mikroElektronika.) [HKLM][64Bits] -- mikroC PRO for PIC =>.mikroElektronika
O42 - Logiciel: mikroProg Suite For PIC (remove only) - (.mikroElektronika.) [HKLM][64Bits] -- mikroProg Suite For PIC =>.mikroElektronika
O42 - Logiciel: Mises à jour NVIDIA 31.2.0.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update =>.NVIDIA Corporation
O42 - Logiciel: Module linguistique Microsoft Visual Studio 2010 Tools pour Office Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - FRA =>.Microsoft Corporation®
O42 - Logiciel: Mozilla Firefox 60.0.2 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 60.0.2 (x86 fr) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: Music Recorder - (.Nero AG.) [HKLM][64Bits] -- {F3949798-3544-433B-B5AB-A61F32F0386F} =>.Nero AG
O42 - Logiciel: Naviextras Toolbox Prerequesities - (.NNG Llc..) [HKLM][64Bits] -- {537575D6-3B96-474C-BD8F-DFF667363DBD} =>.NNG Llc.
O42 - Logiciel: Nero 2017 - (.Nero AG.) [HKLM][64Bits] -- {F1087DAD-F249-4388-844A-A4BE24BF5BB9} =>.Nero AG
O42 - Logiciel: Nero 2017 Full Repack - (.Ahead Corporation.) [HKLM][64Bits] -- NMMS18 =>.Ahead Corporation
O42 - Logiciel: Nero Burning Core - (.Nero AG.) [HKLM][64Bits] -- {6DAEECA5-8208-47DA-82AA-6B653EC31B97} =>.Nero AG
O42 - Logiciel: Nero Burning ROM - (.Nero AG.) [HKLM][64Bits] -- {A4BF6CA6-18AB-4C1A-8E2E-FB9485149DC9} =>.Nero AG
O42 - Logiciel: Nero ControlCenter - (.Nero AG.) [HKLM][64Bits] -- {ABC88553-8770-4B97-B43E-5A90647A5B63} =>.Nero AG
O42 - Logiciel: Nero Core Components - (.Nero AG.) [HKLM][64Bits] -- {BEBEE34D-84A2-4EDD-8BEA-96CC54371263} =>.Nero AG
O42 - Logiciel: Nero CoverDesigner - (.Nero AG.) [HKLM][64Bits] -- {D8CCA6A9-E0CA-4589-BA17-54C909B1C8B5} =>.Nero AG
O42 - Logiciel: Nero Device Updates - (.Nero AG.) [HKLM][64Bits] -- {521087D5-A9CC-4434-9206-FA011ABBDCF3} =>.Nero AG
O42 - Logiciel: Nero Disc Menus Basic - (.Nero AG.) [HKLM][64Bits] -- {E17BCB76-9924-4BD5-B6D6-50D3407B4E74} =>.Nero AG
O42 - Logiciel: Nero Disc to Device - (.Nero AG.) [HKLM][64Bits] -- {6E6D453B-AADE-4F14-97F6-9B464488BC53} =>.Nero AG
O42 - Logiciel: Nero Effects Basic - (.Nero AG.) [HKLM][64Bits] -- {29F67D84-3A70-456E-806A-52301B02070B} =>.Nero AG
O42 - Logiciel: Nero Express - (.Nero AG.) [HKLM][64Bits] -- {991572A1-F8B9-42E5-B485-A79724558A84} =>.Nero AG
O42 - Logiciel: Nero Info - (.Nero AG.) [HKLM][64Bits] -- {F030BFE8-8476-4C08-A553-233DE80A2BE1} =>.Nero AG
O42 - Logiciel: Nero Kwik Themes Basic - (.Nero AG.) [HKLM][64Bits] -- {1B6F5E51-575E-4693-BCA2-7543570D076D} =>.Nero AG
O42 - Logiciel: Nero Launcher - (.Nero AG.) [HKLM][64Bits] -- {21916D21-F3DD-44F9-952B-FD122CBD1526} =>.Nero AG
O42 - Logiciel: Nero MediaHome - (.Nero AG.) [HKLM][64Bits] -- {DF4748D8-2FC2-4D51-87D0-95A81CCA962B} =>.Nero AG
O42 - Logiciel: Nero PiP Effects Basic - (.Nero AG.) [HKLM][64Bits] -- {ACE49D50-19CD-44A6-B192-46F985283B26} =>.Nero AG
O42 - Logiciel: Nero Recode - (.Nero AG.) [HKLM][64Bits] -- {47C00502-CFAC-42D3-8019-D9C557AD49AD} =>.Nero AG
O42 - Logiciel: Nero RescueAgent - (.Nero AG.) [HKLM][64Bits] -- {D740FC18-FAB2-4DE1-A9F5-E7B81A578CCF} =>.Nero AG
O42 - Logiciel: Nero SharedVideoCodecs - (.Nero AG.) [HKLM][64Bits] -- {2432E589-6256-4513-B0BF-EFA8E325D5F0} =>.Nero AG
O42 - Logiciel: Nero Update - (.Nero AG.) [HKLM][64Bits] -- {65BB0407-4CC8-4DC7-952E-3EEFDF05602A} =>.Nero AG
O42 - Logiciel: Nero Video - (.Nero AG.) [HKLM][64Bits] -- {EBFB4FEE-C2EB-4EE3-A832-DB850DE54F78} =>.Nero AG
O42 - Logiciel: Nero Video Samples - (.Nero AG.) [HKLM][64Bits] -- {05C6B128-1B40-4495-9CB9-090B368BFA0A} =>.Nero AG
O42 - Logiciel: Nitro Pro 10 - (.Nitro.) [HKLM][64Bits] -- {6B54A788-A55A-474B-85AD-0DF53C7C20D3} =>.Nitro
O42 - Logiciel: NVIDIA Ansel - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Backend - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvBackend =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Display Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Display Container LS - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainerLS =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Display Session Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplaySessionContainer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Display Watchdog Plugin - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayPluginWatchdog =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA GeForce Experience 3.14.0.139 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA LocalSystem Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.LocalSystem =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Logiciel système PhysX 9.17.0524 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Message Bus for NvContainer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.MessageBus =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA NetworkService Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NetworkService =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA NodeJS - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvNodejs =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Optimus Update 31.2.0.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Pilote graphique 397.93 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Session Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.Session =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA ShadowPlay 3.14.0.139 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay =>.NVIDIA Corporation
O42 - Logiciel: Nvidia Share - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_OSC =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA SHIELD Streaming - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA SHIELD Wireless Controller Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Telemetry Client - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetry =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Telemetry Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetryContainer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA TelemetryApi helper for NvContainer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.ContainerTelemetryApiHelper =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Update Core - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA User Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.User =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Virtual Audio 4.06.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Virtual Host Controller - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvvHci =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Watchdog Plugin for NvContainer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvPlugin.Watchdog =>.NVIDIA Corporation
O42 - Logiciel: OFT2 Grafcet Version 2.0.9.2 - (.Omegon Teachware.) [HKLM][64Bits] -- Omegon Fluid Technology Grafcet_is1
O42 - Logiciel: Origin - (.Electronic Arts, Inc..) [HKLM][64Bits] -- Origin =>.Electronic Arts, Inc.®
O42 - Logiciel: Outils de vérification linguistique 2013 de Microsoft Office - Français - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001F-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Package de pilotes Windows - Lenovo (ACPIVPC) System (02/17/2013 9.52.0.77 - (.Lenovo.) [HKLM][64Bits] -- 35DD26BE48DAF4A9F35F969F3CB1E3E1435E661E =>.Lenovo (Beijing) Limited®
O42 - Logiciel: Package de pilotes Windows - Lenovo (WUDFRd) LenovoVhid (07/25/2013 10.30. - (.Lenovo.) [HKLM][64Bits] -- 6BCA401E9CBEED970D75F55FA5320F60D11984E9 =>.Lenovo (Beijing) Limited®
O42 - Logiciel: Panneau de configuration NVIDIA 397.93 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel =>.NVIDIA Corporation
O42 - Logiciel: PC Remote - (.PC Remote.) [HKLM][64Bits] -- {C934DF74-D0D9-445C-90AA-34012A04E11D} =>.PC Remote
O42 - Logiciel: PDF Settings CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {BFEAAE77-BD7F-4534-B286-9C5CB4697EB1} =>.Adobe Systems Incorporated
O42 - Logiciel: PICkit 2 v2.61 - (.Microchip.) [HKLM][64Bits] -- {2818ADC7-C1FB-40A8-BE6B-36B62682E9E8} =>.Microchip
O42 - Logiciel: PL-2303 USB-to-Serial - (.Prolific Technology INC.) [HKLM][64Bits] -- {ECC3713C-08A4-40E3-95F1-7D0704F1CE5E} =>.Prolific Technology INC
O42 - Logiciel: PlayReady PC Runtime amd64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BCA9334F-B6C9-4F65-9A73-AC5A329A4D04} =>.Microsoft Corporation
O42 - Logiciel: PotPlayer-64 bit - (.Kakao Corp..) [HKLM][64Bits] -- PotPlayer64 =>.Kakao Corp.
O42 - Logiciel: Prerequisite installer - (.Nero AG.) [HKLM][64Bits] -- {EB511CD1-C87C-490D-A7B1-D6C47F57820F} =>.Nero AG
O42 - Logiciel: Pro Evolution Soccer 2018 - (.Konami.) [HKLM][64Bits] -- {9C9C432B-A926-42D1-B16D-6C566431AC59}_is1 =>.Konami
O42 - Logiciel: Proteus 8 Professional - (.Labcenter Electronics.) [HKLM][64Bits] -- {69902CC3-DD30-4F7F-B139-6100F581F4D7} =>.Labcenter Electronics
O42 - Logiciel: PSIM 9.0.3 - (.Powersim.) [HKLM][64Bits] -- {98D13EC5-0C60-48eb-A7FA-1B0008EC4C2D} =>.Powersim
O42 - Logiciel: Razer Cortex - (.Razer Inc..) [HKLM][64Bits] -- Razer Cortex_is1 =>.Razer USA Ltd.®
O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconduct Corp..) [HKLM][64Bits] -- {5BC2B5AB-80DE-4E83-B8CF-426902051D0A} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Revo Uninstaller Pro 3.1.9 - (.VS Revo Group, Ltd..) [HKLM][64Bits] -- {67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1 =>.VS Revo Group, Ltd.
O42 - Logiciel: Samsung USB Driver for Mobile Phones - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44} =>.Samsung Electronics CO., LTD.®
O42 - Logiciel: Security Update for Microsoft Access 2013 (KB4011234) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D07FD06D-240D-41E5-958F-4550C80DB24E} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Access 2013 (KB4011234) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0015-040C-1000-0000000FF1CE}_Office15.PROPLUS_{D07FD06D-240D-41E5-958F-4550C80DB24E} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Access 2013 (KB4011234) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D07FD06D-240D-41E5-958F-4550C80DB24E} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Excel 2013 (KB4022191) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{4B7CA8CF-9FDA-4D2A-BA6A-CB8610EB424A} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Excel 2013 (KB4022191) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0016-040C-1000-0000000FF1CE}_Office15.PROPLUS_{4B7CA8CF-9FDA-4D2A-BA6A-CB8610EB424A} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Excel 2013 (KB4022191) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0018-040C-1000-0000000FF1CE}_Office15.PROPLUS_{4B7CA8CF-9FDA-4D2A-BA6A-CB8610EB424A} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Excel 2013 (KB4022191) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001B-040C-1000-0000000FF1CE}_Office15.PROPLUS_{4B7CA8CF-9FDA-4D2A-BA6A-CB8610EB424A} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Excel 2013 (KB4022191) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{4B7CA8CF-9FDA-4D2A-BA6A-CB8610EB424A} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Excel 2013 (KB4022191) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-040C-1000-0000000FF1CE}_Office15.PROPLUS_{4B7CA8CF-9FDA-4D2A-BA6A-CB8610EB424A} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft InfoPath 2013 (KB3162075) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{F38B84F1-9F10-42A6-8F04-D6B5727FC4A5} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB2910941) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{43ECCB82-45DF-4800-8930-0689BF91F765} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB3039798) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{05F0956E-88D3-4437-BE87-E2B0CA491BE8} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB3039798) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{05F0956E-88D3-4437-BE87-E2B0CA491BE8} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB3162051) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{E4FDA106-4EDF-4D5C-8098-55BCC0A2EA0C} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB3162051) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0016-040C-1000-0000000FF1CE}_Office15.PROPLUS_{E4FDA106-4EDF-4D5C-8098-55BCC0A2EA0C} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB3162051) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0090-040C-1000-0000000FF1CE}_Office15.PROPLUS_{E4FDA106-4EDF-4D5C-8098-55BCC0A2EA0C} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB3172459) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{F82080C9-0661-44F5-A305-A05CFE2B3C35} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB3172459) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-006E-040C-1000-0000000FF1CE}_Office15.PROPLUS_{F82080C9-0661-44F5-A305-A05CFE2B3C35} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB3213564) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-006E-040C-1000-0000000FF1CE}_Office15.PROPLUS_{4D1C16CA-B424-4A64-9047-3ED639A419A3} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB4011253) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{8CDFD1B8-E08D-4015-B13F-3B44276FFDFC} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB4011253) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-006E-040C-1000-0000000FF1CE}_Office15.PROPLUS_{8CDFD1B8-E08D-4015-B13F-3B44276FFDFC} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB4011254) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{137F37CE-C720-4CCF-867E-E6DA21AD20E4} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB4011580) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-006E-040C-1000-0000000FF1CE}_Office15.PROPLUS_{2033A4C9-651B-48FC-AE4D-89B729DEC862} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB4018387) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{C4992CFE-19D9-4607-9DFA-D046782BA7A3} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB4022182) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{AA3BCF6F-33E9-4416-8B5E-9B5B2CC12F5D} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Outlook 2013 (KB4022169) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{6334F624-9898-4D6C-90F3-2FA6785DF812} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Outlook 2013 (KB4022169) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001A-040C-1000-0000000FF1CE}_Office15.PROPLUS_{6334F624-9898-4D6C-90F3-2FA6785DF812} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Skype for Business 2015 (KB3213568) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE}_Office15.PROPLUS_{70EE6BB9-3D3C-4BA1-8B88-2647A0567100} =>.Microsoft Corporation®
O42 - Logiciel: Sentinel Protection Installer 7.4.0 - (.SafeNet, Inc..) [HKLM][64Bits] -- {5A180ED5-0AC1-410A-B790-5E0319CD0A93} =>.SafeNet, Inc.
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26} =>.Microsoft Corporation®
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0015-040C-1000-0000000FF1CE}_Office15.PROPLUS_{0003B8F5-660C-4E15-A05D-7A53D2314419} =>.Microsoft Corporation®
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0016-040C-1000-0000000FF1CE}_Office15.PROPLUS_{0003B8F5-660C-4E15-A05D-7A53D2314419} =>.Microsoft Corporation®
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0018-040C-1000-0000000FF1CE}_Office15.PROPLUS_{0003B8F5-660C-4E15-A05D-7A53D2314419} =>.Microsoft Corporation®
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0019-040C-1000-0000000FF1CE}_Office15.PROPLUS_{0003B8F5-660C-4E15-A05D-7A53D2314419} =>.Microsoft Corporation®
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001A-040C-1000-0000000FF1CE}_Office15.PROPLUS_{0003B8F5-660C-4E15-A05D-7A53D2314419} =>.Microsoft Corporation®
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001B-040C-1000-0000000FF1CE}_Office15.PROPLUS_{0003B8F5-660C-4E15-A05D-7A53D2314419} =>.Microsoft Corporation®
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0401-1000-0000000FF1CE}_Office15.PROPLUS_{C5DEA626-E7D2-4200-9B49-43E37BF21A7C} =>.Microsoft Corporation®
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0407-1000-0000000FF1CE}_Office15.PROPLUS_{DABB9E2A-F054-4F97-9EB2-6992316C6EC7} =>.Microsoft Corporation®
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0409-1000-0000000FF1CE}_Office15.PROPLUS_{835E4BED-E265-4103-AE14-0B4C70CF3FE8} =>.Microsoft Corporation®
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-040C-1000-0000000FF1CE}_Office15.PROPLUS_{1F7000D3-A917-4AD2-BA55-59E6FDAF062A} =>.Microsoft Corporation®
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0413-1000-0000000FF1CE}_Office15.PROPLUS_{2F03603E-9953-44F3-9608-2B61DE92F2F2} =>.Microsoft Corporation®
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0C0A-1000-0000000FF1CE}_Office15.PROPLUS_{4BF13B26-3A95-4E42-900A-DEB16FDA75A0} =>.Microsoft Corporation®
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-002C-040C-1000-0000000FF1CE}_Office15.PROPLUS_{5B93071A-F8EF-4894-88C1-8B785A46D4C6} =>.Microsoft Corporation®
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0044-040C-1000-0000000FF1CE}_Office15.PROPLUS_{0003B8F5-660C-4E15-A05D-7A53D2314419} =>.Microsoft Corporation®
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-006E-040C-1000-0000000FF1CE}_Office15.PROPLUS_{96DAF4C0-7FCF-4B53-91FA-B12C7162D90E} =>.Microsoft Corporation®
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0090-040C-1000-0000000FF1CE}_Office15.PROPLUS_{0003B8F5-660C-4E15-A05D-7A53D2314419} =>.Microsoft Corporation®
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00A1-040C-1000-0000000FF1CE}_Office15.PROPLUS_{0003B8F5-660C-4E15-A05D-7A53D2314419} =>.Microsoft Corporation®
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00BA-040C-1000-0000000FF1CE}_Office15.PROPLUS_{0003B8F5-660C-4E15-A05D-7A53D2314419} =>.Microsoft Corporation®
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{1931508C-C004-4983-81E3-70BE6252904B} =>.Microsoft Corporation®
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-040C-1000-0000000FF1CE}_Office15.PROPLUS_{DC0FD398-D15A-4351-B0D9-9F40612C5057} =>.Microsoft Corporation®
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00E1-040C-1000-0000000FF1CE}_Office15.PROPLUS_{0003B8F5-660C-4E15-A05D-7A53D2314419} =>.Microsoft Corporation®
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00E2-040C-1000-0000000FF1CE}_Office15.PROPLUS_{0003B8F5-660C-4E15-A05D-7A53D2314419} =>.Microsoft Corporation®
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE}_Office15.PROPLUS_{0003B8F5-660C-4E15-A05D-7A53D2314419} =>.Microsoft Corporation®
O42 - Logiciel: Setup 1 - (.Microsoft.) [HKLM][64Bits] -- Setup 1 =>.Microsoft
O42 - Logiciel: Siemens Automation License Manager - (.Siemens AG.) [HKLM][64Bits] -- {CED2F209-488E-43B3-BEE3-FE819CB19A2A} {70A08B4DF1767ACC1C32C34BDBB76B9B} =>.Siemens AG
O42 - Logiciel: Siemens Automation License Manager V5.3 + SP3 + Upd1 - (.Siemens AG.) [HKLM][64Bits] -- {CED2F209-488E-43B3-BEE3-FE819CB19A2A}LicenseManager {70A08B4DF1767ACC1C32C34BDBB76B9B} =>.Siemens AG
O42 - Logiciel: SIMATIC Device Drivers - (.Siemens AG.) [HKLM][64Bits] -- {CCC01ADD-3A54-15D6-92A8-00A0245B3AC6} =>.Siemens AG
O42 - Logiciel: SIMATIC Device Drivers WoW - (.Siemens AG.) [HKLM][64Bits] -- {CCC01ADD-3A54-11D6-92A8-00A0245B3AC6} =>.Siemens AG
O42 - Logiciel: SIMATIC HMI License Manager Panel Plugin (x64) - (.Siemens AG.) [HKLM][64Bits] -- {CCC230DD-3A54-11D6-92A8-00A0245B3AC6} =>.Siemens AG
O42 - Logiciel: SIMATIC Prosave - (.Siemens AG.) [HKLM][64Bits] -- {C3964A46-0998-4269-B6CD-F71363282275} {6D3195C080ED985732DC694BDDAF61BA} =>.Siemens AG
O42 - Logiciel: SIMATIC Prosave V14.0 - (.Siemens AG.) [HKLM][64Bits] -- {C3964A46-0998-4269-B6CD-F71363282275}Prosave {6D3195C080ED985732DC694BDDAF61BA} =>.Siemens AG
O42 - Logiciel: Sleepy - (..) [HKLM][64Bits] -- Sleepy
O42 - Logiciel: Smart Defrag 5 - (.IObit.) [HKLM][64Bits] -- Smart Defrag_is1 =>.IObit Information Technology®
O42 - Logiciel: Smart Switch - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {74FA5314-85C8-4E2A-907D-D9ECCCB770A7} =>.Samsung Electronics Co., Ltd.
O42 - Logiciel: Smart Switch - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- InstallShield_{74FA5314-85C8-4E2A-907D-D9ECCCB770A7} =>.Samsung Electronics Co., Ltd.
O42 - Logiciel: TIA Portal Multiuser Server V14 - TIA Portal Multiuser Server Single Setup - (.Siemens AG.) [HKLM][64Bits] -- {50C62609-D39D-41B5-91D2-67A78F3F34D2} =>.Siemens AG
O42 - Logiciel: TIA Portal Multiuser Server V14 - (.Siemens AG.) [HKLM][64Bits] -- Siemens Installer Assistant - MUSERVERV14 {70A08B4DF1767ACC1C32C34BDBB76B9B} =>.Siemens AG
O42 - Logiciel: Update for Microsoft InfoPath 2013 (KB3114946) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D335A27A-29AB-42DD-A36A-B986E722B769} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft InfoPath 2013 (KB3114946) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0044-040C-1000-0000000FF1CE}_Office15.PROPLUS_{D335A27A-29AB-42DD-A36A-B986E722B769} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft InfoPath 2013 (KB3114946) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-006E-040C-1000-0000000FF1CE}_Office15.PROPLUS_{D335A27A-29AB-42DD-A36A-B986E722B769} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft InfoPath 2013 (KB3114946) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D335A27A-29AB-42DD-A36A-B986E722B769} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2760344) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{EF77B4A6-DFEC-4010-A87D-9B6BF87FABEC} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2760371) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{25DEA344-FF6F-41BD-B88F-5242BB8E80E1} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2883095) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{EADBF225-163E-406B-B11A-26ECCCAB5A0E} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2889863) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{82D6A9DF-894F-488F-A0C3-54A37A6E7B2A} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2899522) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{A4E88D96-814F-4183-8DB2-BA3EC2B7E434} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3023049) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{8270C89E-011E-4117-B6BD-0BDE53471C03} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3023052) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{A472CEA9-44BA-4ADD-8AD1-589B2F0240EE} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3023052) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-006E-040C-1000-0000000FF1CE}_Office15.PROPLUS_{A472CEA9-44BA-4ADD-8AD1-589B2F0240EE} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039701) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{8A6AEFA2-8003-4FD6-8EF7-DEAD1C07803C} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{C08DDD68-F534-45A4-B876-4B8C2C43A744} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0015-040C-1000-0000000FF1CE}_Office15.PROPLUS_{C08DDD68-F534-45A4-B876-4B8C2C43A744} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0016-040C-1000-0000000FF1CE}_Office15.PROPLUS_{C08DDD68-F534-45A4-B876-4B8C2C43A744} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0018-040C-1000-0000000FF1CE}_Office15.PROPLUS_{C08DDD68-F534-45A4-B876-4B8C2C43A744} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0019-040C-1000-0000000FF1CE}_Office15.PROPLUS_{C08DDD68-F534-45A4-B876-4B8C2C43A744} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001A-040C-1000-0000000FF1CE}_Office15.PROPLUS_{C08DDD68-F534-45A4-B876-4B8C2C43A744} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001B-040C-1000-0000000FF1CE}_Office15.PROPLUS_{C08DDD68-F534-45A4-B876-4B8C2C43A744} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0401-1000-0000000FF1CE}_Office15.PROPLUS_{C08DDD68-F534-45A4-B876-4B8C2C43A744} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0407-1000-0000000FF1CE}_Office15.PROPLUS_{C08DDD68-F534-45A4-B876-4B8C2C43A744} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0409-1000-0000000FF1CE}_Office15.PROPLUS_{C08DDD68-F534-45A4-B876-4B8C2C43A744} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-040C-1000-0000000FF1CE}_Office15.PROPLUS_{C08DDD68-F534-45A4-B876-4B8C2C43A744} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0413-1000-0000000FF1CE}_Office15.PROPLUS_{C08DDD68-F534-45A4-B876-4B8C2C43A744} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0C0A-1000-0000000FF1CE}_Office15.PROPLUS_{C08DDD68-F534-45A4-B876-4B8C2C43A744} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-002C-040C-1000-0000000FF1CE}_Office15.PROPLUS_{C08DDD68-F534-45A4-B876-4B8C2C43A744} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0044-040C-1000-0000000FF1CE}_Office15.PROPLUS_{C08DDD68-F534-45A4-B876-4B8C2C43A744} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-006E-040C-1000-0000000FF1CE}_Office15.PROPLUS_{C08DDD68-F534-45A4-B876-4B8C2C43A744} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0090-040C-1000-0000000FF1CE}_Office15.PROPLUS_{C08DDD68-F534-45A4-B876-4B8C2C43A744} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00A1-040C-1000-0000000FF1CE}_Office15.PROPLUS_{C08DDD68-F534-45A4-B876-4B8C2C43A744} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00BA-040C-1000-0000000FF1CE}_Office15.PROPLUS_{C08DDD68-F534-45A4-B876-4B8C2C43A744} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{C08DDD68-F534-45A4-B876-4B8C2C43A744} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-040C-1000-0000000FF1CE}_Office15.PROPLUS_{C08DDD68-F534-45A4-B876-4B8C2C43A744} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00E1-040C-1000-0000000FF1CE}_Office15.PROPLUS_{C08DDD68-F534-45A4-B876-4B8C2C43A744} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00E2-040C-1000-0000000FF1CE}_Office15.PROPLUS_{C08DDD68-F534-45A4-B876-4B8C2C43A744} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE}_Office15.PROPLUS_{C08DDD68-F534-45A4-B876-4B8C2C43A744} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039756) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{4D8584A5-9213-46AF-8F6B-478D80404A6C} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039766) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{881BA890-D29E-4212-ADDC-A92BE0FBA444} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039778) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{59474240-80FF-4640-A723-777334B81D28} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039795) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{8CF7EA10-9458-4340-9605-12FD4A65AC3E} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3054819) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0016-040C-1000-0000000FF1CE}_Office15.PROPLUS_{690E173C-7ED2-410B-BDF6-A17ED155EE64} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3054856) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{65B377E4-0004-4060-A2EE-EC38AD73EF92} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3055007) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{FE88633A-5693-4FF9-AA90-32C82C16EC76} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3085565) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{1BF0B01D-9BFD-4512-A927-1988CDE2E21D} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3085587) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{B6525B60-E970-4DF3-B3C5-C90BC7DC87E0} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3101487) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{51348D5E-3736-4A29-98DD-6B97EE696382} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3101503) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{3F7C3E4B-F30C-4900-8B9B-0ED47F94EC55} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3114488) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{1FC035BF-53D9-437B-B36E-996C7FB18E30} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3114499) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{06F187A1-55FA-4023-BDF5-197A54602E0E} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3127916) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{7EF58F5B-C421-451E-BA1B-10F83F0DBDDD} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3172443) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{B574451E-0F3B-4488-9159-D42CF2A14F5A} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3172471) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{75B13470-C97D-459A-A8E0-81D1E67F0702} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3172510) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0401-1000-0000000FF1CE}_Office15.PROPLUS_{34B338B7-8FF3-43A0-B04A-441FF8569D79} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3172510) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0407-1000-0000000FF1CE}_Office15.PROPLUS_{B4B6EBE3-AFB8-4745-9341-8B29C0BAC3A0} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3172510) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0409-1000-0000000FF1CE}_Office15.PROPLUS_{92421C5F-B007-4498-A353-EC47989442F2} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3172510) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-040C-1000-0000000FF1CE}_Office15.PROPLUS_{CF3125F4-C4EC-4BF1-B734-560BAE82A424} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3172510) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0413-1000-0000000FF1CE}_Office15.PROPLUS_{A3F27780-8FEC-44C3-AB2F-F413E7B55582} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3172510) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0C0A-1000-0000000FF1CE}_Office15.PROPLUS_{33AA2927-48CD-4E9B-8997-50D8BB9AFDF8} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3172523) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D03A6AAB-7294-4128-9B44-22575D2310B8} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3172533) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{AE4AD1BE-088A-41C9-9737-A1C54B79C3C8} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3172533) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{AE4AD1BE-088A-41C9-9737-A1C54B79C3C8} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3172545) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{0371F2BC-4F0D-49EC-8D1A-9D64FEA9C7DD} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3172545) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{0371F2BC-4F0D-49EC-8D1A-9D64FEA9C7DD} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3178636) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{DAE72916-B577-41BD-A585-8ECEABC7D521} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3191872) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{032ABFD7-3A26-4B75-8BAC-2FD292CF668E} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3191872) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0016-040C-1000-0000000FF1CE}_Office15.PROPLUS_{032ABFD7-3A26-4B75-8BAC-2FD292CF668E} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3213536) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{9D67EDE1-D6E4-4F5F-9F6E-53221110A1D2} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4011087) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{8A80912D-B6CA-417F-9902-B876A9F3F40A} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4018333) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{7F753DCE-D207-4B99-BE86-B490833DEE19} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4018333) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-006E-040C-1000-0000000FF1CE}_Office15.PROPLUS_{7F753DCE-D207-4B99-BE86-B490833DEE19} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4018333) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{7F753DCE-D207-4B99-BE86-B490833DEE19} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4018389) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{C0F7C6D9-CAFC-4E0C-899C-C8CD3D4B5816} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4018389) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-006E-040C-1000-0000000FF1CE}_Office15.PROPLUS_{C0F7C6D9-CAFC-4E0C-899C-C8CD3D4B5816} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4018389) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{C0F7C6D9-CAFC-4E0C-899C-C8CD3D4B5816} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft OneDrive for Business (KB3178712) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{FA1024DB-FE18-4709-94EE-23D9B08083B2} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft OneDrive for Business (KB3178712) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00BA-040C-1000-0000000FF1CE}_Office15.PROPLUS_{FA1024DB-FE18-4709-94EE-23D9B08083B2} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft OneDrive for Business (KB3178712) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{FA1024DB-FE18-4709-94EE-23D9B08083B2} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft OneDrive for Business (KB3178712) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-040C-1000-0000000FF1CE}_Office15.PROPLUS_{FA1024DB-FE18-4709-94EE-23D9B08083B2} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft OneNote 2013 (KB4011281) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{79473238-F668-444B-9D35-4471A6A4B930} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft OneNote 2013 (KB4011281) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00A1-040C-1000-0000000FF1CE}_Office15.PROPLUS_{79473238-F668-444B-9D35-4471A6A4B930} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft OneNote 2013 (KB4011281) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{79473238-F668-444B-9D35-4471A6A4B930} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Outlook Social Connector 2013 (KB3054854) 64-Bit Editi - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{0B5649CA-AD84-4970-9FCE-548A3EF323ED} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Outlook Social Connector 2013 (KB3054854) 64-Bit Editi - (.Microsoft.) [HKLM][64Bits] -- {90150000-001A-040C-1000-0000000FF1CE}_Office15.PROPLUS_{0B5649CA-AD84-4970-9FCE-548A3EF323ED} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft PowerPoint 2013 (KB4018289) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{FD4CB241-E76A-4B33-AC78-A8CA0E3AEC52} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft PowerPoint 2013 (KB4018289) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0018-040C-1000-0000000FF1CE}_Office15.PROPLUS_{FD4CB241-E76A-4B33-AC78-A8CA0E3AEC52} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft PowerPoint 2013 (KB4018289) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{FD4CB241-E76A-4B33-AC78-A8CA0E3AEC52} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Project 2013 (KB4022171) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{4E99AEA2-2368-4DA4-BF57-63AD6F856BC5} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Publisher 2013 (KB3114329) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{456886EF-E8EA-4004-B77E-D149A2FA6C10} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Publisher 2013 (KB3114329) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0019-040C-1000-0000000FF1CE}_Office15.PROPLUS_{456886EF-E8EA-4004-B77E-D149A2FA6C10} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Publisher 2013 (KB3114329) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{456886EF-E8EA-4004-B77E-D149A2FA6C10} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Visio Viewer 2013 (KB2817301) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{8E5CD68A-CDF8-4930-88DF-B7778B1871A9} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Visio Viewer 2013 (KB2817301) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-006E-040C-1000-0000000FF1CE}_Office15.PROPLUS_{8E5CD68A-CDF8-4930-88DF-B7778B1871A9} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Word 2013 (KB3162081) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{8CEF2602-D170-40EC-B875-EE531C00E428} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Word 2013 (KB4022186) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{9DBCE65C-E4A1-4909-A960-4BE679B2BAA2} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Word 2013 (KB4022186) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001A-040C-1000-0000000FF1CE}_Office15.PROPLUS_{9DBCE65C-E4A1-4909-A960-4BE679B2BAA2} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Word 2013 (KB4022186) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001B-040C-1000-0000000FF1CE}_Office15.PROPLUS_{9DBCE65C-E4A1-4909-A960-4BE679B2BAA2} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Word 2013 (KB4022186) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{9DBCE65C-E4A1-4909-A960-4BE679B2BAA2} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Word 2013 (KB4022186) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE}_Office15.PROPLUS_{9DBCE65C-E4A1-4909-A960-4BE679B2BAA2} =>.Microsoft Corporation®
O42 - Logiciel: Update for Skype for Business 2015 (KB4022170) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{623DC402-8FDC-490D-9881-E60F5337036E} =>.Microsoft Corporation®
O42 - Logiciel: Update for Skype for Business 2015 (KB4022170) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{623DC402-8FDC-490D-9881-E60F5337036E} =>.Microsoft Corporation®
O42 - Logiciel: Update for Skype for Business 2015 (KB4022170) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE}_Office15.PROPLUS_{623DC402-8FDC-490D-9881-E60F5337036E} =>.Microsoft Corporation®
O42 - Logiciel: VBA (3821b) - (.Microsoft Corporation.) [HKLM][64Bits] -- {BD8A0C60-1AEB-11D6-B8E1-00025521AE60} =>.Microsoft Corporation
O42 - Logiciel: VC User 71 RTL X86 --- - (.redistributed from Microsoft Corporation merge modules.) [HKLM][64Bits] -- {A4A4567C-5C29-4756-992D-F84D8250C435}
O42 - Logiciel: VdhCoApp 1.2.2 - (.DownloadHelper.) [HKLM][64Bits] -- weh-iss-net.downloadhelper.coapp_is1 =>.DownloadHelper
O42 - Logiciel: Visual Basic for Applications (R) Core - (.Microsoft Corporation.) [HKLM][64Bits] -- {179D679D-047F-491D-8783-D4BE596D2242} =>.Microsoft Corporation
O42 - Logiciel: Visual Basic for Applications (R) Core - (.Microsoft Corporation.) [HKLM][64Bits] -- {74170BFD-A50C-46D9-8AF2-AF0A0CE017DD} =>.Microsoft Corporation
O42 - Logiciel: Visual Basic for Applications (R) Core - English - (.Microsoft Corporation.) [HKLM][64Bits] -- {A13D16C5-38A9-4D96-9647-59FCCAB12A85} =>.Microsoft Corporation
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN
O42 - Logiciel: VMware Workstation - (.VMware, Inc..) [HKLM][64Bits] -- {A1A0067D-DBE8-4761-8D58-AE8EC84C9D5D} =>.VMware, Inc.
O42 - Logiciel: WhatsApp - (.WhatsApp.) [HKCU][64Bits] -- WhatsApp =>.WhatsApp, Inc.®
O42 - Logiciel: Wondershare Dr.Fone for Android(Build 6.1.1.35) - (.Wondershare Software Co.,Ltd..) [HKLM][64Bits] -- {1DB91A95-C548-4BA5-9D4C-18C7DEAAC39F}_is1 =>.Wondershare Software Co.,Ltd.

---\\ CLÉ DE REGISTRE SOFTWARE HKCU & HKLM (311) - 35s
HKLM\SOFTWARE\Adobe =>.Adobe
HKLM\SOFTWARE\AGEIA Technologies =>.AGEIA Technologies
HKLM\SOFTWARE\BlueStacks =>.BlueStack Systems, Inc.
HKLM\SOFTWARE\BlueStacksGP =>.BlueStack Systems, Inc.
HKLM\SOFTWARE\Caphyon =>.Caphyon
HKLM\SOFTWARE\Charlyrobot
HKLM\SOFTWARE\Dacia
HKLM\SOFTWARE\EasyAntiCheat =>.EasyAntiCheat
HKLM\SOFTWARE\Electronic Arts =>.Electronic Arts
HKLM\SOFTWARE\Epic Games =>.Epic Games
HKLM\SOFTWARE\EpicGames =>.Epic Games
HKLM\SOFTWARE\Estoril =>.Legitimate
HKLM\SOFTWARE\FAssistant
HKLM\SOFTWARE\Foxit Software =>.Foxit Software
HKLM\SOFTWARE\Gaditek
HKLM\SOFTWARE\Garena =>.Garena
HKLM\SOFTWARE\GO2cam
HKLM\SOFTWARE\Google =>.Google
HKLM\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKLM\SOFTWARE\HP =>.HP
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\Internet Download Manager =>.Tonec Inc
HKLM\SOFTWARE\IObit =>.IObit
HKLM\SOFTWARE\Jouve =>.Jouve
HKLM\SOFTWARE\KasperskyLab =>.Kaspersky Labs
HKLM\SOFTWARE\Khronos =>.Khronos
HKLM\SOFTWARE\KMPlayer =>.KMPlayer
HKLM\SOFTWARE\Labcenter Electronics =>.Labcenter Electronics
HKLM\SOFTWARE\Lenovo =>.Lenovo
HKLM\SOFTWARE\LG Electronics =>.LG Electronics
HKLM\SOFTWARE\Macromedia =>.Macromedia
HKLM\SOFTWARE\Microleaves =>.SUP.Microleaves
HKLM\SOFTWARE\mikroElektronika =>.mikroElektronika
HKLM\SOFTWARE\Mozilla =>.Mozilla
HKLM\SOFTWARE\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\Nero =>.Ahead Corporation
HKLM\SOFTWARE\NSIS_Sleepy
HKLM\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\Origin =>.Electronic Arts, Inc.
HKLM\SOFTWARE\Origin Games =>.Electronic Arts, Inc.
HKLM\SOFTWARE\PowerPivot =>.PowerPivot
HKLM\SOFTWARE\POWERSIM =>.Powersim
HKLM\SOFTWARE\Privax =>.Privax
HKLM\SOFTWARE\Prolific Technology INC =>.Prolific Technology INC
HKLM\SOFTWARE\PTE Patch 2016 =>.Games Software
HKLM\SOFTWARE\Rainbow Technologies =>.Rainbow Technologies
HKLM\SOFTWARE\Razer =>.Razer
HKLM\SOFTWARE\RocketLife =>.RocketLife
HKLM\SOFTWARE\Safenet Sentinel
HKLM\SOFTWARE\Sagem =>.Sagem
HKLM\SOFTWARE\Shortcuter
HKLM\SOFTWARE\Siemens =>.Siemens
HKLM\SOFTWARE\SoftEther Project =>.SoftEther Project
HKLM\SOFTWARE\SolidWorks =>.SolidWorks Corporation
HKLM\SOFTWARE\TechSmith =>.TechSmith
HKLM\SOFTWARE\ThinPrint =>.ThinPrint
HKLM\SOFTWARE\Visan =>.Visan Software
HKLM\SOFTWARE\VMware, Inc. =>.VMware, Inc.
HKLM\SOFTWARE\Volatile =>.Microsoft Corporation
HKLM\SOFTWARE\WafCX =>.WafCX
HKLM\SOFTWARE\WANA_morocco Estoril Modem Service
HKLM\SOFTWARE\Wondershare =>.Wondershare
HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\ZSMC =>.ZSMC Corporation
HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\Adobe =>.Adobe
HKLM\SOFTWARE\WOW6432Node\AGEIA Technologies =>.AGEIA Technologies
HKLM\SOFTWARE\WOW6432Node\BlueStacks =>.BlueStack Systems, Inc.
HKLM\SOFTWARE\WOW6432Node\BlueStacksGP =>.BlueStack Systems, Inc.
HKLM\SOFTWARE\WOW6432Node\Caphyon =>.Caphyon
HKLM\SOFTWARE\WOW6432Node\Charlyrobot
HKLM\SOFTWARE\WOW6432Node\Dacia
HKLM\SOFTWARE\WOW6432Node\EasyAntiCheat =>.EasyAntiCheat
HKLM\SOFTWARE\WOW6432Node\Electronic Arts =>.Electronic Arts
HKLM\SOFTWARE\WOW6432Node\Epic Games =>.Epic Games
HKLM\SOFTWARE\WOW6432Node\EpicGames =>.Epic Games
HKLM\SOFTWARE\WOW6432Node\Estoril =>.Legitimate
HKLM\SOFTWARE\WOW6432Node\FAssistant
HKLM\SOFTWARE\WOW6432Node\Foxit Software =>.Foxit Software
HKLM\SOFTWARE\WOW6432Node\Gaditek
HKLM\SOFTWARE\WOW6432Node\Garena =>.Garena
HKLM\SOFTWARE\WOW6432Node\GO2cam
HKLM\SOFTWARE\WOW6432Node\Google =>.Google
HKLM\SOFTWARE\WOW6432Node\Hewlett-Packard =>.Hewlett-Packard
HKLM\SOFTWARE\WOW6432Node\HP =>.HP
HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel
HKLM\SOFTWARE\WOW6432Node\Internet Download Manager =>.Tonec Inc
HKLM\SOFTWARE\WOW6432Node\IObit =>.IObit
HKLM\SOFTWARE\WOW6432Node\Jouve =>.Jouve
HKLM\SOFTWARE\WOW6432Node\KasperskyLab =>.Kaspersky Labs
HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos
HKLM\SOFTWARE\WOW6432Node\KMPlayer =>.KMPlayer
HKLM\SOFTWARE\WOW6432Node\Labcenter Electronics =>.Labcenter Electronics
HKLM\SOFTWARE\WOW6432Node\Lenovo =>.Lenovo
HKLM\SOFTWARE\WOW6432Node\LG Electronics =>.LG Electronics
HKLM\SOFTWARE\WOW6432Node\Macromedia =>.Macromedia
HKLM\SOFTWARE\WOW6432Node\Microleaves =>.SUP.Microleaves
HKLM\SOFTWARE\WOW6432Node\mikroElektronika =>.mikroElektronika
HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla
HKLM\SOFTWARE\WOW6432Node\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\WOW6432Node\Nero =>.Ahead Corporation
HKLM\SOFTWARE\WOW6432Node\NSIS_Sleepy
HKLM\SOFTWARE\WOW6432Node\NVIDIA Corporation =>.nVidia Corporation
HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\WOW6432Node\Origin =>.Electronic Arts, Inc.
HKLM\SOFTWARE\WOW6432Node\Origin Games =>.Electronic Arts, Inc.
HKLM\SOFTWARE\WOW6432Node\PowerPivot =>.PowerPivot
HKLM\SOFTWARE\WOW6432Node\POWERSIM =>.Powersim
HKLM\SOFTWARE\WOW6432Node\Privax =>.Privax
HKLM\SOFTWARE\WOW6432Node\Prolific Technology INC =>.Prolific Technology INC
HKLM\SOFTWARE\WOW6432Node\PTE Patch 2016 =>.Games Software
HKLM\SOFTWARE\WOW6432Node\Rainbow Technologies =>.Rainbow Technologies
HKLM\SOFTWARE\WOW6432Node\Razer =>.Razer
HKLM\SOFTWARE\WOW6432Node\RocketLife =>.RocketLife
HKLM\SOFTWARE\WOW6432Node\Safenet Sentinel
HKLM\SOFTWARE\WOW6432Node\Sagem =>.Sagem
HKLM\SOFTWARE\WOW6432Node\Shortcuter
HKLM\SOFTWARE\WOW6432Node\Siemens =>.Siemens
HKLM\SOFTWARE\WOW6432Node\SoftEther Project =>.SoftEther Project
HKLM\SOFTWARE\WOW6432Node\SolidWorks =>.SolidWorks Corporation
HKLM\SOFTWARE\WOW6432Node\TechSmith =>.TechSmith
HKLM\SOFTWARE\WOW6432Node\ThinPrint =>.ThinPrint
HKLM\SOFTWARE\WOW6432Node\Visan =>.Visan Software
HKLM\SOFTWARE\WOW6432Node\VMware, Inc. =>.VMware, Inc.
HKLM\SOFTWARE\WOW6432Node\Volatile =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\WafCX =>.WafCX
HKLM\SOFTWARE\WOW6432Node\WANA_morocco Estoril Modem Service
HKLM\SOFTWARE\WOW6432Node\Wondershare =>.Wondershare
HKLM\SOFTWARE\WOW6432Node\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\ZSMC =>.ZSMC Corporation
HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\7-Zip =>.Igor Pavlov
HKCU\SOFTWARE\Adobe =>.Adobe
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\Art Systems
HKCU\SOFTWARE\ASProtect =>.ASPack Software
HKCU\SOFTWARE\AxCrypt =>.AxCrypt
HKCU\SOFTWARE\Belkasoft
HKCU\SOFTWARE\BitTorrent =>.BitTorrent (P2P)
HKCU\SOFTWARE\BugSplat =>.Bugsplat Game
HKCU\SOFTWARE\CamStudioOpenSource for Nick =>.Open Source
HKCU\SOFTWARE\Charlyrobot
HKCU\SOFTWARE\Chromium =>.Chromium
HKCU\SOFTWARE\CodeBlocks =>.CodeBlocks Team
HKCU\SOFTWARE\Dacia
HKCU\SOFTWARE\DAUM =>.DAUM
HKCU\SOFTWARE\DIMEGLIO
HKCU\SOFTWARE\DownloadManager =>.DownloadManager
HKCU\SOFTWARE\Elantech =>.Elantech Inc.
HKCU\SOFTWARE\Electronic Arts =>.Electronic Arts
HKCU\SOFTWARE\Epic Games =>.Epic Games
HKCU\SOFTWARE\Festo
HKCU\SOFTWARE\FinalWire =>.FinalWire
HKCU\SOFTWARE\Foxit Software =>.Foxit Software
HKCU\SOFTWARE\Gaditek
HKCU\SOFTWARE\GNU =>.GNU
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKCU\SOFTWARE\HP =>.HP
HKCU\SOFTWARE\IM Providers =>.IM Providers
HKCU\SOFTWARE\Intel =>.Intel
HKCU\SOFTWARE\Jouve =>.Jouve
HKCU\SOFTWARE\KasperskyLab =>.Kaspersky Labs
HKCU\SOFTWARE\KMPlayer =>.KMPlayer
HKCU\SOFTWARE\Labcenter Electronics =>.Labcenter Electronics
HKCU\SOFTWARE\Lenovo =>.Lenovo
HKCU\SOFTWARE\Local AppWizard-Generated Applications =>.ZWCAD
HKCU\SOFTWARE\LowRegistry =>.Unknown
HKCU\SOFTWARE\M u r G e e . c o m
HKCU\SOFTWARE\Macromedia =>.Macromedia
HKCU\SOFTWARE\MainConcept =>.MainConcept AG
HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes
HKCU\SOFTWARE\mehDiZsoft
HKCU\SOFTWARE\MetaQuotes Software =>.MetaQuotes Software
HKCU\SOFTWARE\Microchip =>.Microchip
HKCU\SOFTWARE\MikroElektronika =>.mikroElektronika
HKCU\SOFTWARE\Mirage =>.Mirage Game
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\Nero =>.Ahead Corporation
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\Nitro =>.Nitro
HKCU\SOFTWARE\NSIS_install
HKCU\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKCU\SOFTWARE\nwjs =>.NW.js
HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKCU\SOFTWARE\Omegon
HKCU\SOFTWARE\PC Remote =>.PC Remote
HKCU\SOFTWARE\Piriform =>.Piriform
HKCU\SOFTWARE\PocketMicroTechnics
HKCU\SOFTWARE\POWERSIM =>.Powersim
HKCU\SOFTWARE\QtProject =>.QtProject
HKCU\SOFTWARE\Razer =>.Razer
HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\Rtp =>.RTP Software
HKCU\SOFTWARE\Samsung =>.Samsung Electronics
HKCU\SOFTWARE\SIEMENS =>.Siemens
HKCU\SOFTWARE\SoftEther Project =>.SoftEther Project
HKCU\SOFTWARE\SplitmediaLabs =>.SplitMediaLabs
HKCU\SOFTWARE\Spoon =>.Spoon Software
HKCU\SOFTWARE\SYNCJM =>.SYNCJM
HKCU\SOFTWARE\Sysinternals =>.Sysinternals
HKCU\SOFTWARE\TechSmith =>.TechSmith
HKCU\SOFTWARE\thriXXX
HKCU\SOFTWARE\Trolltech =>.Trolltech
HKCU\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation
HKCU\SOFTWARE\Visan =>.Visan Software
HKCU\SOFTWARE\VMware, Inc. =>.VMware, Inc.
HKCU\SOFTWARE\VS Revo Group =>.VS Revo Group
HKCU\SOFTWARE\Winamp =>.Nullsoft Inc.
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\Wondershare =>.Wondershare
HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\Zintel
HKCU\SOFTWARE\Ó¦ÓóÌÐòÏòµ¼Éú³ÉµÄ±¾µØÓ¦ÓóÌÐò
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
HKU\.DEFAULT\SOFTWARE\Caphyon =>.Caphyon
HKU\.DEFAULT\SOFTWARE\Foxit Software =>.Foxit Software
HKU\.DEFAULT\SOFTWARE\Google =>.Google
HKU\.DEFAULT\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKU\.DEFAULT\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKU\.DEFAULT\SOFTWARE\Piriform =>.Piriform
HKU\.DEFAULT\SOFTWARE\Razer =>.Razer
HKU\.DEFAULT\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\7-Zip =>.Igor Pavlov
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Adobe =>.Adobe
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Art Systems
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\ASProtect =>.ASPack Software
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\AxCrypt =>.AxCrypt
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Belkasoft
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\BitTorrent =>.BitTorrent (P2P)
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\BugSplat =>.Bugsplat Game
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\CamStudioOpenSource for Nick =>.Open Source
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Charlyrobot
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Chromium =>.Chromium
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\CodeBlocks =>.CodeBlocks Team
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Dacia
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\DAUM =>.DAUM
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\DIMEGLIO
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\DownloadManager =>.DownloadManager
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Elantech =>.Elantech Inc.
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Electronic Arts =>.Electronic Arts
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Epic Games =>.Epic Games
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Festo
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\FinalWire =>.FinalWire
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Foxit Software =>.Foxit Software
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Gaditek
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\GNU =>.GNU
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Google =>.Google
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\HP =>.HP
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\IM Providers =>.IM Providers
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Intel =>.Intel
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Jouve =>.Jouve
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\KasperskyLab =>.Kaspersky Labs
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\KMPlayer =>.KMPlayer
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Labcenter Electronics =>.Labcenter Electronics
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Lenovo =>.Lenovo
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Local AppWizard-Generated Applications =>.ZWCAD
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\LowRegistry =>.Unknown
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\M u r G e e . c o m
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Macromedia =>.Macromedia
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\MainConcept =>.MainConcept AG
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Malwarebytes =>.Malwarebytes
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\mehDiZsoft
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\MetaQuotes Software =>.MetaQuotes Software
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Microchip =>.Microchip
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\MikroElektronika =>.mikroElektronika
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Mirage =>.Mirage Game
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Mozilla =>.Mozilla
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Nero =>.Ahead Corporation
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Netscape =>.Netscape
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Nitro =>.Nitro
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\NSIS_install
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\nwjs =>.NW.js
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Omegon
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\PC Remote =>.PC Remote
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Piriform =>.Piriform
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\PocketMicroTechnics
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\POWERSIM =>.Powersim
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\QtProject =>.QtProject
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Razer =>.Razer
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Rtp =>.RTP Software
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Samsung =>.Samsung Electronics
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\SIEMENS =>.Siemens
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\SoftEther Project =>.SoftEther Project
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\SplitmediaLabs =>.SplitMediaLabs
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Spoon =>.Spoon Software
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\SYNCJM =>.SYNCJM
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Sysinternals =>.Sysinternals
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\TechSmith =>.TechSmith
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\thriXXX
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Trolltech =>.Trolltech
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Visan =>.Visan Software
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\VMware, Inc. =>.VMware, Inc.
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\VS Revo Group =>.VS Revo Group
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Winamp =>.Nullsoft Inc.
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\WinRAR SFX =>.RarLab
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Wondershare =>.Wondershare
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\ZHP =>.Nicolas Coolman
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Zintel
HKU\S-1-5-21-2302472876-181532182-1900150514-1001\SOFTWARE\Ó¦ÓóÌÐòÏòµ¼Éú³ÉµÄ±¾µØÓ¦ÓóÌÐò

---\\ CONTENU DES DOSSIERS PROGRAMMES (440) - 32s
O43 - CFD: 15/03/2018 - [] AD -- C:\Program Files\7-Zip =>.Igor Pavlov
O43 - CFD: 27/10/2017 - [] AD -- C:\Program Files\Adobe =>.Adobe Systems Incorporated®
O43 - CFD: 30/10/2017 - [] D -- C:\Program Files\AxCrypt =>.AxCrypt
O43 - CFD: 01/05/2018 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd
O43 - CFD: 30/06/2018 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 29/05/2017 - [] D -- C:\Program Files\DAUM =>.DAUM
O43 - CFD: 03/02/2017 - [] D -- C:\Program Files\DIFX =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [] D -- C:\Program Files\Elantech =>.ELAN Microelectronics Corporation®
O43 - CFD: 02/02/2017 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation
O43 - CFD: 16/02/2017 - [] D -- C:\Program Files\HandBrake =>.Handbrake
O43 - CFD: 03/02/2017 - [] D -- C:\Program Files\HP =>.Hewlett-Packard
O43 - CFD: 27/05/2018 - [] D -- C:\Program Files\Intel =>.Intel Corporation
O43 - CFD: 12/04/2018 - [] D -- C:\Program Files\internet explorer =>.Microsoft Corporation
O43 - CFD: 04/06/2018 - [] D -- C:\Program Files\KMSpico =>HackTool.KMSpico
O43 - CFD: 03/02/2017 - [] D -- C:\Program Files\Lenovo =>.Lenovo
O43 - CFD: 30/06/2018 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes
O43 - CFD: 02/02/2017 - [] D -- C:\Program Files\Microsoft Analysis Services =>.Microsoft Corporation
O43 - CFD: 02/02/2017 - [] AD -- C:\Program Files\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 16/06/2018 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 02/02/2017 - [] D -- C:\Program Files\Microsoft SQL Server =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [] D -- C:\Program Files\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 13/06/2018 - [] D -- C:\Program Files\net.downloadhelper.coapp
O43 - CFD: 03/02/2017 - [] D -- C:\Program Files\Nitro =>.Nitro
O43 - CFD: 30/05/2018 - [] D -- C:\Program Files\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 04/02/2017 - [] AD -- C:\Program Files\PlayReady =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 08/05/2017 - [] D -- C:\Program Files\Siemens =>.Siemens
O43 - CFD: 23/04/2017 - [] D -- C:\Program Files\SoftEther VPN Client =>.SoftEther
O43 - CFD: 03/06/2017 - [] D -- C:\Program Files\TechSmith =>.TechSmith
O43 - CFD: 21/11/2016 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [] AD -- C:\Program Files\UNP =>.Microsoft Corporation
O43 - CFD: 27/05/2017 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team
O43 - CFD: 30/06/2018 - [] D -- C:\Program Files\VS Revo Group =>.VS Revo Group
O43 - CFD: 27/05/2018 - [] RD -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] D -- C:\Program Files\Windows Defender Advanced Threat Protection =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [] D -- C:\Program Files\windows nt =>.Microsoft Corporation
O43 - CFD: 13/06/2018 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] D -- C:\Program Files\Windows Security =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 30/06/2018 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 27/10/2017 - [] AD -- C:\Program Files (x86)\Adobe =>.Adobe Systems Incorporated®
O43 - CFD: 29/07/2017 - [] AD -- C:\Program Files (x86)\Adobe Media Player =>.Adobe Inc.
O43 - CFD: 09/06/2018 - [] D -- C:\Program Files (x86)\Auto Clicker by MurGee.com {38A2919A33D93F9CB7A2BA852B7A47A6}
O43 - CFD: 24/02/2018 - [] D -- C:\Program Files (x86)\Avira =>.Avira Software
O43 - CFD: 28/10/2017 - [] D -- C:\Program Files (x86)\Belkasoft Evidence Center Ultimate {0B2EE00043081C622054BAC0C0B75E4C}
O43 - CFD: 21/05/2018 - [] D -- C:\Program Files (x86)\Charlyrobot
O43 - CFD: 27/12/2017 - [] D -- C:\Program Files (x86)\CodeBlocks =>.CodeBlocks Team
O43 - CFD: 30/06/2018 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation
O43 - CFD: 03/02/2017 - [] AD -- C:\Program Files (x86)\CrystalDiskInfo =>.Crystal Dew World
O43 - CFD: 28/10/2017 - [] HD -- C:\Program Files (x86)\DrFoneAndroid_Temp =>.Wondershare
O43 - CFD: 10/01/2018 - [] D -- C:\Program Files (x86)\Driver Identifier =>.Driver Identifier
O43 - CFD: 01/05/2018 - [] D -- C:\Program Files (x86)\EasyAntiCheat =>.EasyAntiCheat
O43 - CFD: 21/05/2017 - [] D -- C:\Program Files (x86)\Emu8086 =>.emu8086
O43 - CFD: 26/02/2017 - [] D -- C:\Program Files (x86)\Festo
O43 - CFD: 17/05/2018 - [] D -- C:\Program Files (x86)\Festo Fluidsim
O43 - CFD: 06/10/2017 - [] D -- C:\Program Files (x86)\FinalWire =>.FinalWire®
O43 - CFD: 22/05/2018 - [] D -- C:\Program Files (x86)\Foxit Software =>.Foxit Software
O43 - CFD: 14/06/2018 - [] D -- C:\Program Files (x86)\Garena Plus {10BDE21F4B686CF100F22B5A14BB41B8}
O43 - CFD: 23/04/2017 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 03/02/2017 - [] D -- C:\Program Files (x86)\Hewlett-Packard =>.Hewlett-Packard
O43 - CFD: 28/06/2018 - [] D -- C:\Program Files (x86)\HMA! Pro VPN =>.HMA!
O43 - CFD: 19/01/2018 - [] AD -- C:\Program Files (x86)\HP =>.Hewlett-Packard
O43 - CFD: 03/02/2017 - [] D -- C:\Program Files (x86)\HP Photo Creations =>.Visan Industries®
O43 - CFD: 15/01/2018 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield
O43 - CFD: 02/02/2017 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation
O43 - CFD: 02/02/2017 - [] AD -- C:\Program Files (x86)\Internet Download Manager =>.Tonec Inc
O43 - CFD: 12/04/2018 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 04/03/2017 - [] AD -- C:\Program Files (x86)\inwi L850 =>.JRD COMMUNICATION (SHENZHEN) LTD®
O43 - CFD: 03/02/2017 - [] D -- C:\Program Files (x86)\IObit =>.IObit
O43 - CFD: 12/06/2018 - [] D -- C:\Program Files (x86)\Kaspersky Lab =>.Kaspersky Lab
O43 - CFD: 27/12/2017 - [] D -- C:\Program Files (x86)\Labcenter Electronics =>.Labcenter Electronics
O43 - CFD: 01/08/2017 - [] D -- C:\Program Files (x86)\Lenovo =>.Lenovo
O43 - CFD: 25/09/2017 - [] D -- C:\Program Files (x86)\LG Electronics =>.LG Electronics
O43 - CFD: 16/01/2018 - [] D -- C:\Program Files (x86)\Microchip =>.Microchip
O43 - CFD: 11/06/2018 - [] D -- C:\Program Files (x86)\Microsoft =>.Microsoft Corporation
O43 - CFD: 02/02/2017 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services =>.Microsoft Corporation
O43 - CFD: 24/10/2017 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 26/05/2018 - [] D -- C:\Program Files (x86)\Microsoft Office Remote =>.Microsoft Corporation
O43 - CFD: 28/06/2018 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 02/02/2017 - [] D -- C:\Program Files (x86)\Microsoft SQL Server =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 11/06/2018 - [] AD -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla
O43 - CFD: 11/06/2018 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla
O43 - CFD: 27/05/2018 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation
O43 - CFD: 29/06/2017 - [] AD -- C:\Program Files (x86)\Nero =>.Ahead Corporation
O43 - CFD: 03/02/2017 - [] D -- C:\Program Files (x86)\Nitro =>.Nitro
O43 - CFD: 03/06/2018 - [] D -- C:\Program Files (x86)\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 08/06/2017 - [] D -- C:\Program Files (x86)\Omegon
O43 - CFD: 18/05/2017 - [] AD -- C:\Program Files (x86)\Origin =>.Electronic Arts, Inc.
O43 - CFD: 17/04/2017 - [0] D -- C:\Program Files (x86)\Origin Games =>.Electronic Arts, Inc.
O43 - CFD: 26/05/2018 - [] D -- C:\Program Files (x86)\PC Remote =>.PC Remote
O43 - CFD: 16/02/2017 - [] D -- C:\Program Files (x86)\Powersim =>.Powersim
O43 - CFD: 15/05/2017 - [] AD -- C:\Program Files (x86)\RAR Password Unlocker =>.DNSoft
O43 - CFD: 22/09/2017 - [] D -- C:\Program Files (x86)\Razer =>.Razer USA Ltd.®
O43 - CFD: 27/05/2018 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 11/05/2018 - [] D -- C:\Program Files (x86)\SafeNet Sentinel =>.SafeNet
O43 - CFD: 08/10/2017 - [] D -- C:\Program Files (x86)\SAGEM =>.Sagem
O43 - CFD: 23/07/2017 - [] D -- C:\Program Files (x86)\Samsung =>.Samsung Electronics
O43 - CFD: 08/05/2017 - [] D -- C:\Program Files (x86)\Siemens =>.Siemens
O43 - CFD: 14/09/2017 - [] D -- C:\Program Files (x86)\Sleepy
O43 - CFD: 03/09/2017 - [0] D -- C:\Program Files (x86)\thriXXX
O43 - CFD: 23/07/2017 - [0] HD -- C:\Program Files (x86)\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [] D -- C:\Program Files (x86)\USB Camera =>.Microsoft Windows Hardware Compatibility Publisher®
O43 - CFD: 08/04/2017 - [] AD -- C:\Program Files (x86)\VMware =>.VMware, Inc.®
O43 - CFD: 30/05/2018 - [] D -- C:\Program Files (x86)\VulkanRT =>.LunarG, Inc
O43 - CFD: 12/04/2018 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] D -- C:\Program Files (x86)\windows nt =>.Microsoft Corporation
O43 - CFD: 13/06/2018 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 28/10/2017 - [] D -- C:\Program Files (x86)\Wondershare =>.Wondershare
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip =>.Igor Pavlov
O43 - CFD: 12/04/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 13/06/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe =>.Adobe
O43 - CFD: 09/06/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auto Clicker by MurGee.com
O43 - CFD: 17/06/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira =>.Avira Software
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AxCrypt =>.AxCrypt
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CATIA
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CATIA P3
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CharlyGraal V5
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CodeBlocks =>.CodeBlocks Team
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo =>.Crystal Dew World
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Daum =>.DAUM
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Identifier =>.Driver Identifier
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\emu8086 =>.emu8086
O43 - CFD: 17/05/2018 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Festo Fluidsim
O43 - CFD: 29/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FIFA18 =>.Electronic Arts, Inc.
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FinalWire =>.FinalWire
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FMRTE =>.Raul Bravo
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader =>.Foxit Corporation
O43 - CFD: 17/04/2017 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garena =>.Garena
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearts of Iron IV Death or Dishonor
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearts of Iron IV Waking the Tiger
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP =>.Hewlett-Packard
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\inwi L850
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Password Manager =>.Kaspersky Labs
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Secure Connection =>.Kaspersky Lab
O43 - CFD: 12/06/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Total Security =>.Kaspersky Labs
O43 - CFD: 04/06/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico =>HackTool.KMSpico
O43 - CFD: 12/04/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 30/06/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes =>.Malwarebytes
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maroc Telecom
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microchip =>.Microchip
O43 - CFD: 13/06/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 =>.Microsoft Corporation
O43 - CFD: 16/06/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mikroelektronika =>.mikroElektronika
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero =>.Ahead Corporation
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero 2017 =>.Ahead Corporation
O43 - CFD: 30/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 01/09/2017 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OBS Studio =>.OBS Studio
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Omegon
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin =>.Electronic Arts, Inc.
O43 - CFD: 01/06/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Privax
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pro Evolution Soccer 2018 =>.Games Software
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Proteus 8 Professional
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PSIM 9.0.3 (softkey time-limited)
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer =>.Razer
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro =>.VS Revo Group
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung =>.Samsung Electronics
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Siemens Automation =>.Siemens
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Defrag =>.IObit
O43 - CFD: 02/06/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith =>.TechSmith
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VMware =>.VMware
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare =>.Wondershare
O43 - CFD: 27/10/2017 - [] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 27/05/2018 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 24/02/2018 - [] D -- C:\ProgramData\Avira =>.Avira Software
O43 - CFD: 28/10/2017 - [] D -- C:\ProgramData\Belkasoft
O43 - CFD: 02/02/2017 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation
O43 - CFD: 16/07/2016 - [0] D -- C:\ProgramData\Comms =>.Microsoft Corporation
O43 - CFD: 02/11/2017 - [] D -- C:\ProgramData\DassaultSystemes =>.Dassault_Systèmes
O43 - CFD: 27/05/2018 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 03/02/2017 - [] D -- C:\ProgramData\Downloaded Installations =>.Microsoft Corporation
O43 - CFD: 21/09/2017 - [] D -- C:\ProgramData\Electronic Arts =>.Electronic Arts
O43 - CFD: 12/11/2017 - [] D -- C:\ProgramData\Energy Management
O43 - CFD: 28/04/2018 - [] D -- C:\ProgramData\Epic =>.Epic
O43 - CFD: 22/03/2017 - [] D -- C:\ProgramData\Foxit ContentPlatform =>.Foxit Corporation
O43 - CFD: 22/05/2018 - [] D -- C:\ProgramData\Foxit Software =>.Foxit Software
O43 - CFD: 25/06/2017 - [] D -- C:\ProgramData\Garena =>.Garena
O43 - CFD: 02/08/2017 - [] D -- C:\ProgramData\GarenaMessenger
O43 - CFD: 19/01/2018 - [] AD -- C:\ProgramData\HP =>.Hewlett-Packard
O43 - CFD: 03/02/2017 - [] AD -- C:\ProgramData\HP Photo Creations =>.HP Photo Creations
O43 - CFD: 02/02/2017 - [0] D -- C:\ProgramData\IDM =>.IDM
O43 - CFD: 01/09/2017 - [] D -- C:\ProgramData\Intel =>.Intel Corporation
O43 - CFD: 27/10/2017 - [] D -- C:\ProgramData\IObit =>.IObit
O43 - CFD: 30/06/2018 - [] D -- C:\ProgramData\Kaspersky Lab =>.Kaspersky Lab
O43 - CFD: 12/06/2018 - [] D -- C:\ProgramData\Kaspersky Lab Setup Files =>.Kaspersky Lab
O43 - CFD: 02/10/2017 - [] D -- C:\ProgramData\KONAMI =>.Konami
O43 - CFD: 25/09/2017 - [] D -- C:\ProgramData\LGMOBILEAX
O43 - CFD: 30/06/2018 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes
O43 - CFD: 02/02/2017 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 13/06/2018 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation
O43 - CFD: 02/02/2017 - [] D -- C:\ProgramData\Microsoft Toolkit =>.Microsoft Corporation
O43 - CFD: 02/02/2017 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation
O43 - CFD: 29/06/2017 - [] AD -- C:\ProgramData\Nero =>.Ahead Corporation
O43 - CFD: 03/02/2017 - [] D -- C:\ProgramData\Nitro =>.Nitro
O43 - CFD: 30/06/2018 - [] D -- C:\ProgramData\NVIDIA =>.nVidia Corporation
O43 - CFD: 30/05/2018 - [] D -- C:\ProgramData\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 21/09/2017 - [] D -- C:\ProgramData\Origin =>.Electronic Arts, Inc.
O43 - CFD: 26/05/2018 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation
O43 - CFD: 14/06/2018 - [] D -- C:\ProgramData\Packages =>.Microsoft Corporation
O43 - CFD: 01/06/2018 - [] D -- C:\ProgramData\Privax
O43 - CFD: 30/06/2018 - [] D -- C:\ProgramData\ProductData =>.Microsoft Corporation
O43 - CFD: 28/04/2018 - [] D -- C:\ProgramData\Razer =>.Razer
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\regid.1986-12.com.adobe =>.Adobe Inc.
O43 - CFD: 30/06/2018 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation
O43 - CFD: 23/07/2017 - [] D -- C:\ProgramData\Samsung =>.Samsung Electronics
O43 - CFD: 08/05/2017 - [] D -- C:\ProgramData\Siemens =>.Siemens
O43 - CFD: 12/04/2018 - [0] D -- C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation
O43 - CFD: 03/06/2017 - [] AD -- C:\ProgramData\TechSmith =>.TechSmith
O43 - CFD: 03/09/2017 - [] D -- C:\ProgramData\thriXXX
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation
O43 - CFD: 03/02/2017 - [] D -- C:\ProgramData\Visan =>.Visan Industries
O43 - CFD: 30/06/2018 - [] AD -- C:\ProgramData\VMware =>.VMware
O43 - CFD: 26/08/2017 - [] D -- C:\ProgramData\VS Revo Group =>.VS Revo Group
O43 - CFD: 12/04/2018 - [] D -- C:\ProgramData\WindowsHolographicDevices =>.Microsoft Corporation
O43 - CFD: 28/10/2017 - [] D -- C:\ProgramData\Wondershare =>.Wondershare
O43 - CFD: 28/10/2017 - [] D -- C:\ProgramData\wsr
O43 - CFD: 22/09/2017 - [] D -- C:\ProgramData\X360CE =>.Microsoft Corporation
O43 - CFD: 27/10/2017 - [] D -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe
O43 - CFD: 14/09/2017 - [] AD -- C:\Program Files (x86)\Common Files\Adobe AIR =>.Adobe Inc.
O43 - CFD: 01/05/2018 - [] D -- C:\Program Files (x86)\Common Files\BattlEye =>.BattlEye
O43 - CFD: 24/10/2017 - [] AD -- C:\Program Files (x86)\Common Files\Designer =>.Designer
O43 - CFD: 20/02/2018 - [] D -- C:\Program Files (x86)\Common Files\init
O43 - CFD: 27/05/2018 - [] D -- C:\Program Files (x86)\Common Files\Intel =>.Intel Corporation
O43 - CFD: 03/02/2017 - [] D -- C:\Program Files (x86)\Common Files\IObit =>.IObit
O43 - CFD: 27/05/2018 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared =>.Microsoft Corporation
O43 - CFD: 29/06/2017 - [] D -- C:\Program Files (x86)\Common Files\Nero =>.Ahead Corporation
O43 - CFD: 22/09/2017 - [] D -- C:\Program Files (x86)\Common Files\Razer =>.Razer
O43 - CFD: 11/05/2018 - [] D -- C:\Program Files (x86)\Common Files\SafeNet Sentinel =>.SafeNet
O43 - CFD: 12/04/2018 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 27/10/2017 - [] AD -- C:\Program Files (x86)\Common Files\Siemens =>.Siemens
O43 - CFD: 12/04/2018 - [] D -- C:\Program Files (x86)\Common Files\system =>.Microsoft Corporation
O43 - CFD: 08/04/2017 - [] AD -- C:\Program Files (x86)\Common Files\ThinPrint =>.ThinPrint
O43 - CFD: 23/02/2018 - [] D -- C:\Program Files (x86)\Common Files\tmp8
O43 - CFD: 08/04/2017 - [] D -- C:\Program Files (x86)\Common Files\VMware =>.VMware
O43 - CFD: 16/02/2017 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard =>.Seagate
O43 - CFD: 29/07/2017 - [] D -- C:\Users\Issam\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 16/06/2018 - [] D -- C:\Users\Issam\AppData\Roaming\Appԁata
O43 - CFD: 28/10/2017 - [] D -- C:\Users\Issam\AppData\Roaming\Belkasoft
O43 - CFD: 29/07/2017 - [] D -- C:\Users\Issam\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
O43 - CFD: 11/02/2018 - [] D -- C:\Users\Issam\AppData\Roaming\CodeBlocks =>.CodeBlocks Team
O43 - CFD: 10/02/2018 - [] D -- C:\Users\Issam\AppData\Roaming\dacia
O43 - CFD: 24/10/2017 - [] D -- C:\Users\Issam\AppData\Roaming\DassaultSystemes =>.Dassault_Systèmes
O43 - CFD: 11/08/2017 - [] D -- C:\Users\Issam\AppData\Roaming\Daum =>.DAUM
O43 - CFD: 30/06/2018 - [] D -- C:\Users\Issam\AppData\Roaming\DMCache =>.DMCache
O43 - CFD: 03/02/2017 - [] D -- C:\Users\Issam\AppData\Roaming\Downloaded Installations =>.Microsoft Corporation
O43 - CFD: 10/01/2018 - [] D -- C:\Users\Issam\AppData\Roaming\driveridentifier =>.DriverIdentifier
O43 - CFD: 01/05/2018 - [] D -- C:\Users\Issam\AppData\Roaming\EasyAntiCheat =>.EasyAntiCheat
O43 - CFD: 08/06/2017 - [] D -- C:\Users\Issam\AppData\Roaming\EurekaLog =>.EurekaLog
O43 - CFD: 17/05/2018 - [] D -- C:\Users\Issam\AppData\Roaming\FLUIDSIM3
O43 - CFD: 15/08/2017 - [] D -- C:\Users\Issam\AppData\Roaming\FMRTE17 =>.Raul Bravo
O43 - CFD: 22/03/2017 - [] D -- C:\Users\Issam\AppData\Roaming\Foxit AgentInformation =>.Foxit Corporation
O43 - CFD: 22/03/2017 - [] D -- C:\Users\Issam\AppData\Roaming\Foxit Software =>.Foxit Software
O43 - CFD: 25/06/2017 - [] D -- C:\Users\Issam\AppData\Roaming\Garena =>.Garena
O43 - CFD: 02/08/2017 - [] D -- C:\Users\Issam\AppData\Roaming\GarenaPlus
O43 - CFD: 16/02/2017 - [] D -- C:\Users\Issam\AppData\Roaming\HandBrake =>.Handbrake
O43 - CFD: 16/02/2017 - [] D -- C:\Users\Issam\AppData\Roaming\HandBrake Team =>.HandBrake Team
O43 - CFD: 28/10/2017 - [0] D -- C:\Users\Issam\AppData\Roaming\HMYGSetting =>Adware.Suspect
O43 - CFD: 19/01/2018 - [] D -- C:\Users\Issam\AppData\Roaming\HPPSDr
O43 - CFD: 10/02/2017 - [] D -- C:\Users\Issam\AppData\Roaming\HpUpdate =>.Hewlett-Packard
O43 - CFD: 30/05/2018 - [] D -- C:\Users\Issam\AppData\Roaming\IDM =>.IDM
O43 - CFD: 08/10/2017 - [] D -- C:\Users\Issam\AppData\Roaming\InstallShield =>.InstallShield
O43 - CFD: 03/02/2017 - [] D -- C:\Users\Issam\AppData\Roaming\IObit =>.IObit
O43 - CFD: 17/06/2018 - [] SHD -- C:\Users\Issam\AppData\Roaming\Latas
O43 - CFD: 29/07/2017 - [] D -- C:\Users\Issam\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 16/08/2017 - [] D -- C:\Users\Issam\AppData\Roaming\MetaQuotes
O43 - CFD: 27/05/2018 - [] SD -- C:\Users\Issam\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 17/11/2017 - [] D -- C:\Users\Issam\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 29/06/2017 - [] D -- C:\Users\Issam\AppData\Roaming\Nero =>.Ahead Corporation
O43 - CFD: 03/02/2017 - [] D -- C:\Users\Issam\AppData\Roaming\Nitro =>.Nitro
O43 - CFD: 16/02/2018 - [] D -- C:\Users\Issam\AppData\Roaming\NVIDIA =>.nVidia Corporation
O43 - CFD: 01/09/2017 - [] D -- C:\Users\Issam\AppData\Roaming\obs-studio =>.OBS-Studio
O43 - CFD: 30/06/2018 - [] D -- C:\Users\Issam\AppData\Roaming\Obsidium =>.Game
O43 - CFD: 21/09/2017 - [0] D -- C:\Users\Issam\AppData\Roaming\Origin =>.Electronic Arts, Inc.
O43 - CFD: 28/10/2017 - [] D -- C:\Users\Issam\AppData\Roaming\Passware =>.Passware
O43 - CFD: 26/05/2018 - [] D -- C:\Users\Issam\AppData\Roaming\PC Remote =>.PC Remote
O43 - CFD: 29/05/2017 - [] D -- C:\Users\Issam\AppData\Roaming\PotPlayerMini64 =>.Daum Communications
O43 - CFD: 16/06/2018 - [] SHD -- C:\Users\Issam\AppData\Roaming\Pr
O43 - CFD: 23/07/2017 - [] D -- C:\Users\Issam\AppData\Roaming\Samsung =>.Samsung Electronics
O43 - CFD: 08/05/2017 - [] D -- C:\Users\Issam\AppData\Roaming\Siemens =>.Siemens
O43 - CFD: 02/02/2017 - [] D -- C:\Users\Issam\AppData\Roaming\Skype =>.Skype
O43 - CFD: 09/03/2018 - [] D -- C:\Users\Issam\AppData\Roaming\Steam =>.Steam Games
O43 - CFD: 03/06/2017 - [] D -- C:\Users\Issam\AppData\Roaming\TechSmith =>.TechSmith
O43 - CFD: 03/09/2017 - [] D -- C:\Users\Issam\AppData\Roaming\thriXXX
O43 - CFD: 30/06/2018 - [] D -- C:\Users\Issam\AppData\Roaming\uTorrent
O43 - CFD: 04/06/2018 - [] D -- C:\Users\Issam\AppData\Roaming\vlc =>.VideoLan Team
O43 - CFD: 27/05/2018 - [] D -- C:\Users\Issam\AppData\Roaming\VMware =>.VMware
O43 - CFD: 23/01/2018 - [] D -- C:\Users\Issam\AppData\Roaming\WhatsApp =>.WhatsApp
O43 - CFD: 28/10/2017 - [] D -- C:\Users\Issam\AppData\Roaming\Wondershare =>.Wondershare
O43 - CFD: 30/06/2018 - [] D -- C:\Users\Issam\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 31/10/2017 - [] D -- C:\Users\Issam\AppData\Local\3dmouse =>.3dmouse
O43 - CFD: 29/06/2018 - [] D -- C:\Users\Issam\AppData\Local\Adobe =>.Adobe
O43 - CFD: 30/06/2018 - [] D -- C:\Users\Issam\AppData\Local\AdvinstAnalytics =>.SUP.Various
O43 - CFD: 27/05/2018 - [0] SHD -- C:\Users\Issam\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 30/05/2018 - [] D -- C:\Users\Issam\AppData\Local\assembly =>.Assembly
O43 - CFD: 30/10/2017 - [] D -- C:\Users\Issam\AppData\Local\AxCrypt =>.AxCrypt
O43 - CFD: 28/10/2017 - [] D -- C:\Users\Issam\AppData\Local\Belkasoft
O43 - CFD: 04/06/2018 - [] D -- C:\Users\Issam\AppData\Local\Bluestacks =>.BlueStack Systems, Inc.
O43 - CFD: 10/03/2017 - [] D -- C:\Users\Issam\AppData\Local\CEF =>.CEF
O43 - CFD: 04/04/2017 - [] D -- C:\Users\Issam\AppData\Local\Chromium =>.Chromium
O43 - CFD: 10/02/2017 - [] D -- C:\Users\Issam\AppData\Local\Comms =>.Microsoft Corporation
O43 - CFD: 28/05/2018 - [] D -- C:\Users\Issam\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation
O43 - CFD: 30/06/2018 - [] D -- C:\Users\Issam\AppData\Local\CrashDumps =>.Microsoft Corporation
O43 - CFD: 01/05/2018 - [] D -- C:\Users\Issam\AppData\Local\CrashReportClient
O43 - CFD: 01/06/2018 - [] D -- C:\Users\Issam\AppData\Local\D3DSCache =>.Legitimate
O43 - CFD: 20/05/2018 - [] D -- C:\Users\Issam\AppData\Local\DassaultSystemes =>.Dassault_Systèmes
O43 - CFD: 25/07/2017 - [0] D -- C:\Users\Issam\AppData\Local\DBG =>.DBG
O43 - CFD: 15/11/2017 - [0] D -- C:\Users\Issam\AppData\Local\Diagnostics =>.Microsoft Corporation
O43 - CFD: 03/06/2018 - [0] D -- C:\Users\Issam\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation
O43 - CFD: 21/06/2017 - [] D -- C:\Users\Issam\AppData\Local\Embratoria =>.Embratoria
O43 - CFD: 27/04/2018 - [] D -- C:\Users\Issam\AppData\Local\EpicGamesLauncher =>.Epic Games
O43 - CFD: 25/06/2017 - [] D -- C:\Users\Issam\AppData\Local\FO3
O43 - CFD: 28/04/2018 - [] D -- C:\Users\Issam\AppData\Local\FortniteGame
O43 - CFD: 12/01/2018 - [] D -- C:\Users\Issam\AppData\Local\Foxit Reader =>.Foxit Corporation
O43 - CFD: 25/06/2017 - [] D -- C:\Users\Issam\AppData\Local\Garena =>.Garena
O43 - CFD: 19/06/2017 - [] D -- C:\Users\Issam\AppData\Local\Geckofx =>.Geckofx
O43 - CFD: 02/02/2017 - [] D -- C:\Users\Issam\AppData\Local\Google =>.Google
O43 - CFD: 27/05/2018 - [0] SHD -- C:\Users\Issam\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 19/01/2018 - [] D -- C:\Users\Issam\AppData\Local\HP =>.Hewlett-Packard
O43 - CFD: 20/05/2017 - [] D -- C:\Users\Issam\AppData\Local\Kaspersky Lab =>.Kaspersky Lab
O43 - CFD: 24/12/2017 - [] D -- C:\Users\Issam\AppData\Local\Labcenter Electronics =>.Labcenter Electronics
O43 - CFD: 13/12/2017 - [] D -- C:\Users\Issam\AppData\Local\Macromedia =>.Macromedia
O43 - CFD: 27/05/2018 - [] D -- C:\Users\Issam\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [] D -- C:\Users\Issam\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 02/02/2017 - [] D -- C:\Users\Issam\AppData\Local\MicrosoftEdge =>.Microsoft Corporation
O43 - CFD: 02/02/2017 - [] D -- C:\Users\Issam\AppData\Local\Mozilla =>.Mozilla Corporation
O43 - CFD: 02/02/2017 - [0] D -- C:\Users\Issam\AppData\Local\NetworkTiles =>.NetworkTiles
O43 - CFD: 11/06/2018 - [] D -- C:\Users\Issam\AppData\Local\NVIDIA =>.nVidia Corporation
O43 - CFD: 28/04/2018 - [] D -- C:\Users\Issam\AppData\Local\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 08/06/2017 - [] D -- C:\Users\Issam\AppData\Local\Omegon
O43 - CFD: 21/09/2017 - [0] D -- C:\Users\Issam\AppData\Local\Origin =>.Electronic Arts, Inc.
O43 - CFD: 27/05/2018 - [] D -- C:\Users\Issam\AppData\Local\Packages =>.Microsoft Corporation
O43 - CFD: 03/02/2017 - [0] D -- C:\Users\Issam\AppData\Local\PeerDistRepub =>.Microsoft Corporation
O43 - CFD: 16/02/2018 - [] D -- C:\Users\Issam\AppData\Local\PES17_MCR
O43 - CFD: 27/05/2018 - [0] D -- C:\Users\Issam\AppData\Local\PlaceholderTileLogoFolder =>.Microsoft Corporation
O43 - CFD: 03/02/2017 - [] D -- C:\Users\Issam\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 02/02/2017 - [] D -- C:\Users\Issam\AppData\Local\Publishers =>.Microsoft Corporation
O43 - CFD: 28/09/2017 - [] D -- C:\Users\Issam\AppData\Local\Razer =>.Razer
O43 - CFD: 23/07/2017 - [] D -- C:\Users\Issam\AppData\Local\Recovery =>.Recovery Labs
O43 - CFD: 09/05/2017 - [] D -- C:\Users\Issam\AppData\Local\Siemens AG =>.Siemens
O43 - CFD: 08/05/2017 - [] D -- C:\Users\Issam\AppData\Local\Siemens_AG =>.Siemens
O43 - CFD: 10/03/2017 - [] D -- C:\Users\Issam\AppData\Local\Sports Interactive =>.Sports Interactive
O43 - CFD: 23/01/2018 - [] D -- C:\Users\Issam\AppData\Local\SquirrelTemp =>.Squirrels
O43 - CFD: 05/06/2017 - [] D -- C:\Users\Issam\AppData\Local\TechSmith =>.TechSmith
O43 - CFD: 30/06/2018 - [] D -- C:\Users\Issam\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [0] SHD -- C:\Users\Issam\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 20/12/2017 - [] D -- C:\Users\Issam\AppData\Local\TileDataLayer =>.Microsoft Corporation
O43 - CFD: 07/07/2017 - [] D -- C:\Users\Issam\AppData\Local\UNP =>.Microsoft Corporation
O43 - CFD: 28/04/2018 - [] D -- C:\Users\Issam\AppData\Local\UnrealEngine =>.Unreal Software
O43 - CFD: 27/04/2018 - [] D -- C:\Users\Issam\AppData\Local\UnrealEngineLauncher =>.Unreal Software
O43 - CFD: 25/05/2017 - [] D -- C:\Users\Issam\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 15/05/2018 - [] D -- C:\Users\Issam\AppData\Local\VMware =>.VMware
O43 - CFD: 26/08/2017 - [] D -- C:\Users\Issam\AppData\Local\VS Revo Group =>.VS Revo Group
O43 - CFD: 23/01/2018 - [] D -- C:\Users\Issam\AppData\Local\WhatsApp =>.WhatsApp
O43 - CFD: 30/06/2018 - [0] D -- C:\Users\Issam\AppData\Local\XService =>Adware.Razy
O43 - CFD: 30/06/2018 - [] D -- C:\Users\Issam\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 03/02/2017 - [0] D -- C:\Users\Issam\AppData\Local\Programs\Common =>.Microsoft Corporation
O43 - CFD: 20/07/2017 - [] D -- C:\Users\Issam\AppData\LocalLow\Adobe =>.Adobe
O43 - CFD: 03/02/2017 - [] D -- C:\Users\Issam\AppData\LocalLow\IObit =>.IObit
O43 - CFD: 05/02/2017 - [0] D -- C:\Users\Issam\AppData\LocalLow\KMPlayer
O43 - CFD: 13/12/2017 - [] SD -- C:\Users\Issam\AppData\LocalLow\Microsoft =>.Microsoft Corporation
O43 - CFD: 26/06/2018 - [0] D -- C:\Users\Issam\AppData\LocalLow\Mozilla =>.Mozilla Corporation
O43 - CFD: 22/03/2017 - [] D -- C:\Users\Issam\AppData\LocalLow\Temp =>.Microsoft Corporation
O43 - CFD: 16/06/2018 - [] D -- C:\Users\Issam\Desktop\Anciennes données de Firefox
O43 - CFD: 27/12/2017 - [] D -- C:\Users\Issam\Desktop\AZIHZIDSJ
O43 - CFD: 16/11/2017 - [] D -- C:\Users\Issam\Desktop\DVS
O43 - CFD: 16/06/2018 - [] D -- C:\Users\Issam\Desktop\Embratoria_G10
O43 - CFD: 30/04/2018 - [] D -- C:\Users\Issam\Desktop\Fortnite Fps Boost
O43 - CFD: 12/06/2018 - [] D -- C:\Users\Issam\Desktop\Kaspersky.Reset.Trial.5.1.0.41 =>.Kaspersky Labs
O43 - CFD: 02/05/2018 - [] D -- C:\Users\Issam\Desktop\KMSpico 10.2.0 Final + Portable =>HackTool.KMSpico
O43 - CFD: 16/06/2018 - [] D -- C:\Users\Issam\Desktop\la-casa-de-papel_english-1695239
O43 - CFD: 23/05/2018 - [] RD -- C:\Users\Issam\Desktop\LOGICIELS GIND
O43 - CFD: 26/05/2018 - [] D -- C:\Users\Issam\Desktop\MSI =>.MSI
O43 - CFD: 26/05/2018 - [] D -- C:\Users\Issam\Desktop\RAPPORT MSI
O43 - CFD: 05/11/2017 - [] D -- C:\Users\Issam\Desktop\Tor Browser =>.Roger Dingledine
O43 - CFD: 12/04/2018 - [] RD -- C:\Users\Issam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [] RD -- C:\Users\Issam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [] RD -- C:\Users\Issam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 27/05/2018 - [] D -- C:\Users\Issam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CharlyGraal V5
O43 - CFD: 27/05/2018 - [] D -- C:\Users\Issam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks =>.CodeBlocks Team
O43 - CFD: 27/05/2018 - [] D -- C:\Users\Issam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dacia Media Nav
O43 - CFD: 27/05/2018 - [] D -- C:\Users\Issam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Festo Fluidsim
O43 - CFD: 27/05/2018 - [] D -- C:\Users\Issam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Festo Software
O43 - CFD: 11/05/2018 - [0] D -- C:\Users\Issam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GOCharly4T V5
O43 - CFD: 27/05/2018 - [] D -- C:\Users\Issam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HandBrake =>.Handbrake
O43 - CFD: 27/05/2018 - [] D -- C:\Users\Issam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc
O43 - CFD: 27/05/2018 - [] D -- C:\Users\Issam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kompass CD-ROMs
O43 - CFD: 12/04/2018 - [] D -- C:\Users\Issam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [] D -- C:\Users\Issam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC Remote =>.PC Remote
O43 - CFD: 27/05/2018 - [] D -- C:\Users\Issam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sleepy
O43 - CFD: 27/05/2018 - [] RD -- C:\Users\Issam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] RD -- C:\Users\Issam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [] D -- C:\Users\Issam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer =>.The KMPlayer Team
O43 - CFD: 27/05/2018 - [] D -- C:\Users\Issam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\thriXXX
O43 - CFD: 12/04/2018 - [] RD -- C:\Users\Issam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 10/02/2017 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 25/07/2017 - [0] D -- C:\Users\Default\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 10/02/2017 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 25/07/2017 - [0] D -- C:\Users\Default User\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 04/06/2018 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\CrashDumps =>.Microsoft Corporation
O43 - CFD: 04/06/2018 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\DBG =>.DBG
O43 - CFD: 27/05/2018 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Foxit Software =>.Foxit Software
O43 - CFD: 09/06/2018 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 29/05/2018 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 30/06/2018 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\VMware =>.VMware
O43 - CFD: 01/07/2018 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation
O43 - CFD: 01/07/2018 - [] D -- C:\Users\Issam\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 01/07/2018 - [] D -- C:\Users\Issam\AppData\Local\CrashDumps =>.Microsoft Corporation
O43 - CFD: 01/07/2018 - [] D -- C:\Users\Issam\AppData\Local\Temp =>.Microsoft Corporation

---\\ DERNIERS FICHIERS CRÉÉS DANS WINDOWS Prefetcher (2) - 23s
O45 - LFCP:[MD5.4F79C7A3F7603745107A0CFEA4B3D7A7] 30/06/2018 A -- C:\WINDOWS\Prefetch\FASST.EXE-11237F9D.pf =>PUP.Optional.FAssistant
O45 - LFCP:[MD5.6575BE2AC3CC660907F1D1FE6283F478] 30/06/2018 A -- C:\WINDOWS\Prefetch\FASTDATAX.EXE-1623E353.pf =>Adware.FastDataX

---\\ ShellIconOverlayIdentifiers (SIOI) (6) - 0s
O106 - SIOI: [ IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll =>.Tonec Inc.®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll =>.Microsoft Corporation

---\\ RACCOURCIS DES MENUS CONCEPTUELS (SCMH) (43) - 3s
O108 - CMH1: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Igor Pavlov - 7-Zip Shell Extension.) -- C:\Program Files\7-Zip\7-zip.dll =>.Igor Pavlov
O108 - CMH1: axcrypt.File [64Bits] - {C3DFC144-30F8-4138-81F9-578DBEB9324A} . (.AxCrypt AB - AxCrypt Shell Extension.) -- C:\Program Files\AxCrypt\AxCrypt\ShellExt.dll =>.AxCrypt AB®
O108 - CMH1: Foxit_ConvertToPDF_Reader [64Bits] - {A94757A0-0226-426F-B4F1-4DF381C630D3} . (.Foxit Software Inc. - ConvertToPDFShellExtension.) -- C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\ConvertToPDFShellExtension_x64.dll =>.Foxit Software Incorporated®
O108 - CMH1: Kaspersky Anti-Virus 18.0.0 [64Bits] - {FF48AD48-74C7-4260-B385-FAEB80947450} . (.AO Kaspersky Lab - Shell Extension.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\x64\shellex.dll =>.Kaspersky Lab®
O108 - CMH1: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH1: NP8ShellExtension [64Bits] - {9C4B85B8-956C-49BF-9BA5-101384E562B2} . (.Nitro PDF - Nitro Pro ShellExtension.) -- C:\Program Files\Nitro\Pro 10\NPShellExtension.dll =>.Nitro Software, Inc.®
O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH1: SmartDefragExtension [64Bits] - {189F1E63-33A7-404B-B2F6-8C76A452CC54} . (.IObit - IObit Smart Defrag Extension.) -- C:\Windows\System32\IObitSmartDefragExtension.dll =>.IObit
O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation
O108 - CMH2: NvAppShExt [64Bits] - {A929C4CE-FD36-4270-B4F5-34ECAC5BD63C} . (.NVIDIA Corporation - NVIDIA Shell Extensions.) -- C:\WINDOWS\system32\nv3dappshext.dll =>.NVIDIA Corporation
O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH2: OpenGLShExt [64Bits] - {E97DEC16-A50D-49bb-AE24-CF682282E08D} . (.NVIDIA Corporation - NVIDIA Shell Extensions.) -- C:\WINDOWS\system32\nv3dappshext.dll =>.NVIDIA Corporation
O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH3: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation®
O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH4: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Igor Pavlov - 7-Zip Shell Extension.) -- C:\Program Files\7-Zip\7-zip.dll =>.Igor Pavlov
O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH4: Kaspersky Anti-Virus 18.0.0 [64Bits] - {FF48AD48-74C7-4260-B385-FAEB80947450} . (.AO Kaspersky Lab - Shell Extension.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\x64\shellex.dll =>.Kaspersky Lab®
O108 - CMH4: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll =>.Microsoft Corporation
O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation
O108 - CMH5: igfxDTCM [64Bits] - {9B5F5829-A529-4B12-814A-E81BCB8D93FC} . (.Intel Corporation - igfxDTCM Module.) -- C:\WINDOWS\system32\igfxDTCM.dll =>.Intel Corporation
O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH5: NvCplDesktopContext [64Bits] - {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} . (.NVIDIA Corporation - NVIDIA Display Shell Extension.) -- C:\WINDOWS\System32\nvshext.dll =>.NVIDIA Corporation
O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation
O108 - CMH6: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Igor Pavlov - 7-Zip Shell Extension.) -- C:\Program Files\7-Zip\7-zip.dll =>.Igor Pavlov
O108 - CMH6: axcrypt.File [64Bits] - {C3DFC144-30F8-4138-81F9-578DBEB9324A} . (.AxCrypt AB - AxCrypt Shell Extension.) -- C:\Program Files\AxCrypt\AxCrypt\ShellExt.dll =>.AxCrypt AB®
O108 - CMH6: Foxit_ConvertToPDF_Reader [64Bits] - {A94757A0-0226-426F-B4F1-4DF381C630D3} . (.Foxit Software Inc. - ConvertToPDFShellExtension.) -- C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\ConvertToPDFShellExtension_x64.dll =>.Foxit Software Incorporated®
O108 - CMH6: Kaspersky Anti-Virus 18.0.0 [64Bits] - {FF48AD48-74C7-4260-B385-FAEB80947450} . (.AO Kaspersky Lab - Shell Extension.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\x64\shellex.dll =>.Kaspersky Lab®
O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH6: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation®
O108 - CMH6: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll =>.Microsoft Corporation
O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft Windows®
O108 - CMH6: RUShellExt [64Bits] - {2C5515DC-2A7E-4BFD-B813-CACC2B685EB7} . (.VS Revo Group - Revo Uninstaller Pro Extension.) -- C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RUExt.dll =>.VS Revo Group®
O108 - CMH6: SmartDefragExtension [64Bits] - {189F1E63-33A7-404B-B2F6-8C76A452CC54} . (.IObit - IObit Smart Defrag Extension.) -- C:\Windows\System32\IObitSmartDefragExtension.dll =>.IObit
O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O108 - CMH7: Kaspersky Anti-Virus 18.0.0 [64Bits] - {FF48AD48-74C7-4260-B385-FAEB80947450} . (.AO Kaspersky Lab - Shell Extension.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\x64\shellex.dll =>.Kaspersky Lab®
O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH7: VMDiskMenuHandler [64Bits] - {271DC252-6FE1-4D59-9053-E4CF50AB99DE} . (.Orphan.)
O108 - CMH7: VMDiskMenuHandler64 [64Bits] - {E4D28EDC-8C0B-43EE-9E7D-C8A8682334DC} . (.VMware, Inc. - VMware Workstation.) -- C:\Program Files (x86)\VMware\VMware Workstation\x64\vmdkShellExt64.dll =>.VMware, Inc.®

---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (18) - 2s
O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft Windows®
O50 - IFEO:C:\WINDOWS\System32\drvinst.exe - (.Microsoft Corporation - Module d’installation de pilotes.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft Windows Publisher®
O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MitigationAuditOptions\\17660905521152] =>.Microsoft Windows Publisher®
O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation

---\\ LISTE DES PILOTES DU SYSTÈME (135) - 26s
O58 - SDL:2018/04/12 00:33:48 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107416] =>.Microsoft Windows®
O58 - SDL:2017/02/02 17:35:56 A . (.Lenovo Corporation - ACPI Virtual Power Controller Driver.) -- C:\WINDOWS\System32\drivers\AcpiVpc.sys [42328] =>.LENOVO®
O58 - SDL:2018/04/12 00:33:48 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135520] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:48 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83360] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:48 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259480] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:48 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [27032] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:48 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [132000] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:48 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] =>.Broadcom Corporation
O58 - SDL:2018/04/12 00:33:48 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [533912] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [143768] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [321432] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Chelsio Communications - VF library for Chelsio ® T5/T6 Chipset.) -- C:\WINDOWS\System32\drivers\cht4vfx.sys [29184] =>.Chelsio Communications
O58 - SDL:2018/04/12 00:33:49 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [1836952] =>.Microsoft Windows®
O58 - SDL:2016/12/26 21:27:10 A . (.AO Kaspersky Lab - Cryptographic Module Driver x64 (56 bit).) -- C:\WINDOWS\System32\drivers\cm_km.sys [247008] =>.Kaspersky Lab®
O58 - SDL:2016/07/25 15:52:28 A . (.Siemens AG - DPM Kernel Mode Driver (x64).) -- C:\WINDOWS\System32\drivers\dpmconv.sys [275504] {70A08B4DF1767ACC1C32C34BDBB76B9B} =>.Siemens AG
O58 - SDL:2017/02/02 19:20:12 A . (.ELAN Microelectronics Corp. - ETD Kernel Center.) -- C:\WINDOWS\System32\drivers\ETD.sys [525512] =>.ELAN Microelectronics Corporation®
O58 - SDL:2018/04/12 00:33:48 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3419032] =>.Microsoft Windows®
O58 - SDL:2018/06/30 23:13:23 A . (.Malwarebytes - Malwarebytes Anti-Ransomware Protection.) -- C:\WINDOWS\System32\drivers\farflt.sys [112872] =>.Malwarebytes Corporation®
O58 - SDL:2017/02/20 08:02:44 A . (.VMware, Inc. - VMware USB monitor.) -- C:\WINDOWS\System32\drivers\hcmon.sys [83008] =>.VMware, Inc.®
O58 - SDL:2018/04/12 00:33:48 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64408] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:45 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [36864] =>.Intel(R) Corporation
O58 - SDL:2018/04/12 00:33:45 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [91648] =>.Intel(R) Corporation
O58 - SDL:2018/04/12 00:33:45 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360] =>.Intel Corporation
O58 - SDL:2018/04/12 00:33:45 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [88576] =>.Intel Corporation
O58 - SDL:2018/04/12 00:33:45 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520] =>.Intel Corporation
O58 - SDL:2018/04/12 00:33:45 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [174592] =>.Intel Corporation
O58 - SDL:2018/04/12 00:33:48 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group®
O58 - SDL:2018/04/12 00:33:45 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] =>.Intel Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAVC.sys [885144] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412064] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [526232] =>.Microsoft Windows®
O58 - SDL:2017/02/02 17:36:50 A . (.Intel Corporation - Intel(R) Wireless Bluetooth(R) Driver.) -- C:\WINDOWS\System32\drivers\ibtfltcoex.sys [79632] =>.Intel Corporation-Wireless Connectivity Solutions®
O58 - SDL:2016/10/17 16:35:48 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\WINDOWS\System32\drivers\idmwfp.sys [223464] =>.Tonec Inc.®
O58 - SDL:2017/02/02 20:59:49 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [3811288] =>.Intel(R) pGFX®
O58 - SDL:2015/08/21 12:50:48 N . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [463112] =>.Intel Corporation - Client Components Group®
O58 - SDL:2015/12/01 20:46:03 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\intelaud.sys [50160] =>.Intel(R) Wireless Display®
O58 - SDL:2018/04/12 00:33:48 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\ItSas35i.sys [145816] =>.Microsoft Windows®
O58 - SDL:2015/12/01 20:46:03 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\iwdbus.sys [38896] =>.Intel(R) Wireless Display®
O58 - SDL:2013/06/18 12:33:30 A . (.TCT International Mobile Ltd. - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\jrdusbser.sys [123776] =>.TCT International Mobile Ltd.
O58 - SDL:2016/10/01 03:26:00 A . (.AO Kaspersky Lab - Kaspersky Unified Driver.) -- C:\WINDOWS\System32\drivers\kl1.sys [554408] =>.Kaspersky Lab®
O58 - SDL:2017/12/24 22:18:00 A . (.AO Kaspersky Lab - Backup Disk Filter [fre_wnet_x64].) -- C:\WINDOWS\System32\drivers\klbackupdisk.sys [70880] =>.Kaspersky Lab®
O58 - SDL:2018/06/12 00:50:35 A . (.AO Kaspersky Lab - Backup File Filter [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klbackupflt.sys [120008] =>.Kaspersky Lab®
O58 - SDL:2016/06/01 00:24:06 A . (.AO Kaspersky Lab - Virtual Disk [fre_wnet_x64].) -- C:\WINDOWS\System32\drivers\kldisk.sys [78216] =>.Kaspersky Lab®
O58 - SDL:2016/10/14 03:44:02 A . (.AO Kaspersky Lab - Early Launch Anti-Malware Filter [fre_win8_.) -- C:\WINDOWS\System32\drivers\klelam.sys [29816] =>.Microsoft Windows Early Launch Anti-malware Publisher®
O58 - SDL:2018/06/12 00:51:12 A . (.AO Kaspersky Lab - Filter Core [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klflt.sys [207560] =>.Kaspersky Lab®
O58 - SDL:2018/06/12 00:50:38 A . (.AO Kaspersky Lab - klhk [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klhk.sys [1191616] =>.Kaspersky Lab®
O58 - SDL:2018/06/12 00:50:37 A . (.AO Kaspersky Lab - Core System Interceptors [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klif.sys [1057992] =>.Kaspersky Lab®
O58 - SDL:2018/06/12 00:50:38 A . (.AO Kaspersky Lab - Packet Network Filter [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klim6.sys [57032] =>.Kaspersky Lab®
O58 - SDL:2016/12/23 10:20:56 A . (.AO Kaspersky Lab - Keyboard Device Filter [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klkbdflt.sys [57056] =>.Kaspersky Lab®
O58 - SDL:2016/12/07 10:30:58 A . (.AO Kaspersky Lab - Mouse Device Filter [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klmouflt.sys [58592] =>.Kaspersky Lab®
O58 - SDL:2017/12/24 22:18:00 A . (.AO Kaspersky Lab - Format Recognizer [fre_wnet_x64].) -- C:\WINDOWS\System32\drivers\klpd.sys [50672] =>.Kaspersky Lab®
O58 - SDL:2017/01/20 14:22:24 A . (.AO Kaspersky Lab - Generic PnP filter [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klpnpflt.sys [44768] =>.Kaspersky Lab®
O58 - SDL:2016/06/07 01:31:06 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\kltap.sys [52152] =>.AnchorFree Inc®
O58 - SDL:2018/06/12 00:17:54 A . (.AO Kaspersky Lab - Kaspersky Lab Anti-Rootkit Monitor.) -- C:\WINDOWS\System32\drivers\klupd_klif_arkmon.sys [236488] =>.Kaspersky Lab®
O58 - SDL:2018/06/12 00:17:53 A . (.AO Kaspersky Lab - Kernel heuristics engine.) -- C:\WINDOWS\System32\drivers\klupd_klif_kimul.sys [87584] =>.Kaspersky Lab®
O58 - SDL:2018/06/12 00:27:56 A . (.AO Kaspersky Lab - Kaspersky Lab Anti-Rootkit.) -- C:\WINDOWS\System32\drivers\klupd_klif_klark.sys [258864] =>.Kaspersky Lab®
O58 - SDL:2018/06/12 00:17:55 A . (.AO Kaspersky Lab - Kaspersky Lab Boot Guard Driver.) -- C:\WINDOWS\System32\drivers\klupd_klif_klbg.sys [109248] =>.Kaspersky Lab®
O58 - SDL:2018/06/12 00:17:53 A . (.AO Kaspersky Lab - Kaspersky Lab Anti-Rootkit Engine.) -- C:\WINDOWS\System32\drivers\klupd_klif_mark.sys [177848] =>.Kaspersky Lab®
O58 - SDL:2018/06/12 00:50:44 A . (.AO Kaspersky Lab - WFP Network Filter [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klwfp.sys [93888] =>.Kaspersky Lab®
O58 - SDL:2018/06/12 00:50:40 A . (.AO Kaspersky Lab - WFP Network Connection Filter Driver [fre_w.) -- C:\WINDOWS\System32\drivers\klwtp.sys [141000] =>.Kaspersky Lab®
O58 - SDL:2017/12/24 22:18:00 A . (.AO Kaspersky Lab - Network Processor [fre_wnet_x64].) -- C:\WINDOWS\System32\drivers\kneps.sys [199392] =>.Kaspersky Lab®
O58 - SDL:2014/05/27 06:40:48 A . (.Google Inc - ADB Interface.) -- C:\WINDOWS\System32\drivers\lgandnetadb.sys [31744] =>.Google Inc
O58 - SDL:2014/07/07 11:06:36 A . (.LG Electronics Inc. - LGE AndroidNet Driver.) -- C:\WINDOWS\System32\drivers\lgandnetdiag64.sys [29184] =>.LG Electronics Inc.
O58 - SDL:2014/07/07 11:06:58 A . (.LG Electronics Inc. - LGE AndroidNet Driver.) -- C:\WINDOWS\System32\drivers\lgandnetmodem64.sys [36352] =>.LG Electronics Inc.
O58 - SDL:2017/02/03 00:18:00 A . (.Lenovo. - HD Disk Driver.) -- C:\WINDOWS\System32\drivers\LhdX64.sys [39008] =>.Lenovo (Beijing) Limited®
O58 - SDL:2018/04/12 00:33:48 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108952] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:48 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [124312] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:48 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [128408] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:48 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82848] =>.Microsoft Windows®
O58 - SDL:2008/01/02 11:11:50 A . (.IBM - LUM Runtime.) -- C:\WINDOWS\System32\drivers\LUMDriver.sys [24848] =>.IBM Polska Sp. z o.o.®
O58 - SDL:2018/05/24 06:55:42 A . (.Malwarebytes - Malwarebytes Anti-Exploit.) -- C:\WINDOWS\System32\drivers\mbae64.sys [152184] =>.Malwarebytes Corporation®
O58 - SDL:2018/06/30 23:13:24 A . (.Malwarebytes - Malwarebytes Real-Time Protection.) -- C:\WINDOWS\System32\drivers\mbam.sys [44768] =>.Malwarebytes Corporation®
O58 - SDL:2018/06/30 17:00:33 A . (.Malwarebytes - Malwarebytes Chameleon.) -- C:\WINDOWS\System32\drivers\MbamChameleon.sys [190696] =>.Malwarebytes Corporation®
O58 - SDL:2018/06/30 23:13:15 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys [253664] =>.Malwarebytes Corporation®
O58 - SDL:2018/04/12 00:33:48 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59800] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:48 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [75160] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:48 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas35i.sys [82328] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:48 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575896] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [842648] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:48 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63904] =>.Microsoft Windows®
O58 - SDL:2018/06/30 23:13:21 A . (.Malwarebytes - Malwarebytes Web Protection.) -- C:\WINDOWS\System32\drivers\mwac.sys [103656] =>.Malwarebytes Corporation®
O58 - SDL:2018/04/12 00:33:49 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [108952] =>.Microsoft Windows®
O58 - SDL:2017/04/23 21:19:23 A . (.SoftEther Corporation - SoftEther VPN.) -- C:\WINDOWS\System32\drivers\Neo6_x64_VPN.sys [38216] =>.SoftEther Corporation®
O58 - SDL:2018/04/12 00:33:45 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\WINDOWS\System32\drivers\NETwew01.sys [3343872] =>.Intel Corporation
O58 - SDL:2017/05/02 21:18:34 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\WINDOWS\System32\drivers\nvpciflt.sys [47032] =>.NVIDIA Corporation®
O58 - SDL:2018/04/12 00:33:48 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150424] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:48 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166304] =>.Microsoft Windows®
O58 - SDL:2018/03/15 09:47:24 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\WINDOWS\System32\drivers\nvvad64v.sys [67432] =>.NVIDIA Corporation®
O58 - SDL:2018/04/28 01:25:24 A . (.NVIDIA Corporation - Virtual USB Host Controller driver.) -- C:\WINDOWS\System32\drivers\nvvhci.sys [68112] =>.NVIDIA Corporation®
O58 - SDL:2018/04/12 00:33:49 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58776] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [61848] =>.Microsoft Windows®
O58 - SDL:2017/07/13 12:32:00 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\phantomtap.sys [45056] =>.Avira Operations GmbH & Co. KG®
O58 - SDL:2018/06/16 16:13:03 A . (.Sysinternals - www.sysinternals.com - Process Explorer.) -- C:\WINDOWS\System32\drivers\PROCEXP152.SYS [34328] =>.Sysinternals®
O58 - SDL:2016/12/21 14:52:50 A . (.VS Revo Group - Revo Uninstaller Minifilter.) -- C:\WINDOWS\System32\drivers\revoflt.sys [40240] =>.VS Revo Group®
O58 - SDL:2018/04/12 00:33:49 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.40 64-bit Dri.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [604160] =>.Realtek
O58 - SDL:2018/04/12 00:33:53 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [65536] =>.Realtek
O58 - SDL:2017/02/02 17:39:39 A . (.Realsil Semiconductor Corporation - RTS USB READER Driver.) -- C:\WINDOWS\System32\drivers\RtsUer.sys [422656] =>.Realtek Semiconductor Corp®
O58 - SDL:2017/09/28 19:36:10 A . (.Razer, Inc. - Razer Overlay Support.) -- C:\WINDOWS\System32\drivers\rzpnk.sys [140208] =>.Razer USA Ltd.®
O58 - SDL:2015/11/04 10:36:34 A . (.SIEMENS AG - MPI/PROFIBUS DPX2 Driver.) -- C:\WINDOWS\System32\drivers\s7odpx2x64.sys [94432] =>.Siemens AG®
O58 - SDL:2016/02/23 09:46:04 A . (.SIEMENS AG - PC/PPI Cable Driver.) -- C:\WINDOWS\System32\drivers\s7oppilx64.sys [47448] {6D3195C080ED985732DC694BDDAF61BA} =>.Siemens AG
O58 - SDL:2015/11/04 10:36:34 A . (.SIEMENS AG - PPI Transport Driver.) -- C:\WINDOWS\System32\drivers\s7oppinx64.sys [117472] =>.Siemens AG®
O58 - SDL:2016/02/23 09:46:04 A . (.SIEMENS AG - PPI Serial Cable Driver.) -- C:\WINDOWS\System32\drivers\s7oserix64.sys [148312] {6D3195C080ED985732DC694BDDAF61BA} =>.Siemens AG
O58 - SDL:2015/11/04 10:36:34 A . (.SIEMENS AG - PC Adapter RS232 Device Driver.) -- C:\WINDOWS\System32\drivers\s7osmcax64.sys [228064] =>.Siemens AG®
O58 - SDL:2016/02/23 09:46:04 A . (.SIEMENS AG - Softbus Driver.) -- C:\WINDOWS\System32\drivers\s7osobux64.sys [120152] {6D3195C080ED985732DC694BDDAF61BA} =>.Siemens AG
O58 - SDL:2015/11/04 10:36:34 A . (.SIEMENS AG - Memory Card Driver.) -- C:\WINDOWS\System32\drivers\s7otmcd64x.sys [202976] =>.Siemens AG®
O58 - SDL:2016/04/07 09:55:10 A . (.SIEMENS AG - S7 Transport Driver.) -- C:\WINDOWS\System32\drivers\s7otranx64.sys [280888] {6D3195C080ED985732DC694BDDAF61BA} =>.Siemens AG
O58 - SDL:2015/11/04 10:36:34 A . (.SIEMENS AG - TS Adapter RS232 Device Driver.) -- C:\WINDOWS\System32\drivers\s7otsadx64.sys [221920] =>.Siemens AG®
O58 - SDL:2016/02/23 09:46:04 A . (.SIEMENS AG - S7USB Driver.) -- C:\WINDOWS\System32\drivers\s7ousbu64x.sys [157528] {6D3195C080ED985732DC694BDDAF61BA} =>.Siemens AG
O58 - SDL:2016/08/18 16:15:12 A . (.SIEMENS AG - PnDiscovery Driver.) -- C:\WINDOWS\System32\drivers\s7PnDiscoveryDriver.sys [46824] =>.Siemens AG®
O58 - SDL:2007/04/27 07:40:00 A . (.SafeNet, Inc. - Sentinel System Driver (NT Parallel x64 dri.) -- C:\WINDOWS\System32\drivers\sentinel64.sys [142120] =>.SafeNet, Inc.®
O58 - SDL:2018/04/12 00:33:49 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44952] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81816] =>.Microsoft Windows®
O58 - SDL:2016/03/22 12:02:16 A . (.IObit - SmartDefrag Driver.) -- C:\WINDOWS\System32\drivers\SmartDefragDriver.sys [21360] =>.IObit Information Technology®
O58 - SDL:2016/07/25 15:52:30 A . (. - Sample NDIS 6.0 Filter Driver.) -- C:\WINDOWS\System32\drivers\snpnio.sys [107568] {70A08B4DF1767ACC1C32C34BDBB76B9B}
O58 - SDL:2016/05/02 10:16:28 A . (.Siemens AG - SOFTNET IE ISO Protocol Driver (x64).) -- C:\WINDOWS\System32\drivers\sntie.sys [302392] {70A08B4DF1767ACC1C32C34BDBB76B9B} =>.Siemens AG
O58 - SDL:2017/01/16 07:26:40 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [131712] =>.Samsung Electronics CO., LTD.®
O58 - SDL:2017/01/16 07:26:40 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [165504] =>.Samsung Electronics CO., LTD.®
O58 - SDL:2018/04/12 00:33:49 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31128] =>.Microsoft Windows®
O58 - SDL:2017/03/20 14:51:36 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\tap0901.sys [35784] =>.Avira Operations GmbH & Co. KG®
O58 - SDL:2017/03/21 11:33:26 A . (.Anchorfree Inc. - Anchorfree HSS VPN Adapter.) -- C:\WINDOWS\System32\drivers\taphss6.sys [42064] =>.AnchorFree Inc®
O58 - SDL:2017/02/02 17:35:09 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys [194624] =>.Intel(R) Embedded Subsystems and IP Blocks Group®
O58 - SDL:2018/04/12 00:34:14 A . (...) -- C:\WINDOWS\System32\drivers\UsbPmApi.sys [39936]
O58 - SDL:2017/02/02 17:10:02 A . (.Vimicro Corporation - VM0331 Digital Camera Driver.) -- C:\WINDOWS\System32\drivers\vm331avs.sys [648872] =>.Microsoft Windows Hardware Compatibility Publisher®
O58 - SDL:2016/09/30 01:12:02 A . (.VMware, Inc. - VMware PCI VMCI Bus Device.) -- C:\WINDOWS\System32\drivers\vmci.sys [105024] =>.VMware, Inc.®
O58 - SDL:2017/03/21 19:01:38 A . (.VMware, Inc. - VMware virtual network driver (64-bit).) -- C:\WINDOWS\System32\drivers\vmnet.sys [46032] =>.VMware, Inc.®
O58 - SDL:2017/03/21 19:01:38 A . (.VMware, Inc. - VMware virtual network adapter driver (64-b.) -- C:\WINDOWS\System32\drivers\vmnetadapter.sys [46040] =>.VMware, Inc.®
O58 - SDL:2017/03/21 19:01:38 A . (.VMware, Inc. - VMware bridge driver (64-bit).) -- C:\WINDOWS\System32\drivers\vmnetbridge.sys [66520] =>.VMware, Inc.®
O58 - SDL:2017/03/21 19:01:38 A . (.VMware, Inc. - VMware network application interface driver.) -- C:\WINDOWS\System32\drivers\vmnetuserif.sys [43992] =>.VMware, Inc.®
O58 - SDL:2017/03/21 19:13:04 A . (.VMware, Inc. - VMware kernel driver.) -- C:\WINDOWS\System32\drivers\vmx86.sys [88128] =>.VMware, Inc.®
O58 - SDL:2018/04/12 00:33:49 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166808] =>.Microsoft Windows®
O58 - SDL:2016/07/25 15:52:30 A . (.SIEMENS AG - FDLAda Kernel Mode Driver (x64).) -- C:\WINDOWS\System32\drivers\vsnl2ada.sys [143920] {70A08B4DF1767ACC1C32C34BDBB76B9B} =>.Siemens AG
O58 - SDL:2016/09/30 01:12:02 A . (.VMware, Inc. - VMware vSockets Service.) -- C:\WINDOWS\System32\drivers\vsock.sys [91712] =>.VMware, Inc.®
O58 - SDL:2018/04/12 00:33:49 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305560] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [32152] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [64920] =>.Microsoft Windows®

---\\ DERNIERS FICHIERS MODIFIÉS OU CRÉÉS (Utilisateur) (23) - 253s
O61 - LFC: 2018/06/10 18:39:10 A . (..) -- C:\Users\Issam\Desktop\Embratoria_G10\BeinSave\BeinSave_10-06-2018-17-38-58.dll [5722979]
O61 - LFC: 2018/06/10 18:56:15 A . (..) -- C:\Users\Issam\Desktop\Embratoria_G10\BeinSave\BeinSave_10-06-2018-17-46-37.dll [5722846]
O61 - LFC: 2018/06/10 18:57:44 A . (..) -- C:\Users\Issam\Desktop\Embratoria_G10\BeinSave\BeinSave_10-06-2018-17-57-35.dll [5722984]
O61 - LFC: 2018/06/06 17:28:08 A . (..) -- C:\Users\Issam\Desktop\Embratoria_G10\EmbratoriaG10.exe [572416]
O61 - LFC: 2018/06/06 17:30:48 A . (.Embratoria Copyright © 2018.) -- C:\Users\Issam\Desktop\Embratoria_G10\Fix_Errors.exe [278016]
O61 - LFC: 2018/06/13 20:11:26 A . (..) -- C:\Users\Issam\Desktop\Embratoria_G10\LibsG10.exe [6876160]
O61 - LFC: 2018/06/04 14:20:20 A . (.Copyright Embratoria tv © 2018.) -- C:\Users\Issam\Desktop\Embratoria_G10\Restore_G7-G10.exe [323072]
O61 - LFC: 2018/06/10 18:39:10 A . (..) -- C:\Users\Issam\Desktop\la-casa-de-papel_english-1695239\Embratoria_G10\BeinSave\BeinSave_10-06-2018-17-38-58.dll [5722979]
O61 - LFC: 2018/06/10 18:56:15 A . (..) -- C:\Users\Issam\Desktop\la-casa-de-papel_english-1695239\Embratoria_G10\BeinSave\BeinSave_10-06-2018-17-46-37.dll [5722846]
O61 - LFC: 2018/06/10 18:57:44 A . (..) -- C:\Users\Issam\Desktop\la-casa-de-papel_english-1695239\Embratoria_G10\BeinSave\BeinSave_10-06-2018-17-57-35.dll [5722984]
O61 - LFC: 2018/06/06 17:28:08 A . (..) -- C:\Users\Issam\Desktop\la-casa-de-papel_english-1695239\Embratoria_G10\EmbratoriaG10.exe [572416]
O61 - LFC: 2018/06/06 17:30:48 A . (.Embratoria Copyright © 2018.) -- C:\Users\Issam\Desktop\la-casa-de-papel_english-1695239\Embratoria_G10\Fix_Errors.exe [278016]
O61 - LFC: 2018/06/16 20:49:36 A . (..) -- C:\Users\Issam\Desktop\la-casa-de-papel_english-1695239\Embratoria_G10\LibsG10.exe [6049340]
O61 - LFC: 2018/06/04 14:20:20 A . (.Copyright Embratoria tv © 2018.) -- C:\Users\Issam\Desktop\la-casa-de-papel_english-1695239\Embratoria_G10\Restore_G7-G10.exe [323072]
O61 - LFC: 2018/06/03 20:46:58 A . (..) -- C:\Users\Issam\Downloads\Compressed\Embratoria_G10\Embratoria_G10\EmbratoriaG10.exe [572416]
O61 - LFC: 2018/06/04 01:21:12 A . (.Embratoria Copyright © 2018.) -- C:\Users\Issam\Downloads\Compressed\Embratoria_G10\Embratoria_G10\Fix_Errors.exe [277504]
O61 - LFC: 2018/06/04 00:52:06 A . (..) -- C:\Users\Issam\Downloads\Compressed\Embratoria_G10\Embratoria_G10\LibsG10.exe [6870528]
O61 - LFC: 2018/06/04 01:23:48 A . (..) -- C:\Users\Issam\Downloads\Compressed\Embratoria_G10\Embratoria_G10\Restore_G7-G10.exe [320512]
O61 - LFC: 2018/06/01 23:24:33 A . (..) -- C:\Users\Issam\Downloads\Compressed\EmbratoriaG6.5.1\EmbratoriaG6.5.1\BeinSave\BeinSave_14-03-2017_18-56-06.dll [12471]
O61 - LFC: 2018/06/09 23:45:03 A . (.sourceforge.net/projects/orphamielautoclicker/.) -- C:\Users\Issam\Downloads\Programs\AutoClicker.exe [783175]
O61 - LFC: 2018/06/06 17:30:48 A . (.Embratoria Copyright © 2018.) -- C:\Users\Issam\Pictures\Screenshots\Embratoria_G10\Embratoria_G10\Fix_Errors.exe [278016]
O61 - LFC: 2018/06/07 17:49:08 A . (..) -- C:\Users\Issam\Pictures\Screenshots\Embratoria_G10\Embratoria_G10\LibsG10.exe [6865408]
O61 - LFC: 2018/06/04 14:20:20 A . (.Copyright Embratoria tv © 2018.) -- C:\Users\Issam\Pictures\Screenshots\Embratoria_G10\Embratoria_G10\Restore_G7-G10.exe [323072]

---\\ ASSOCIATION Shell Spawning (10) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value

---\\ MENU DE DÉMARRAGE INTERNET (12) - 0s
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation

---\\ RECHERCHE D'INFECTION SUR LES NAVIGATEURS (2) - 5s
O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com

---\\ ÉNUMÈRE LES SERVICES DÉMARRÉS PAR Svchost (49) - 2s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [188928] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [188928] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [271360] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1267712] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [990208] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [786432] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [30720] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [150528] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [109568] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [889344] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [224256] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [394240] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [397312] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [119808] =>.Microsoft Corporation
O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [1485312] =>.Microsoft Corporation
O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Fournit une prise en charge de l'infrastruc.) -- C:\Windows\System32\LanguageOverlayServer.dll [199680] =>.Microsoft Corporation
O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [195584] =>.Microsoft Corporation
O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [262144] =>.Microsoft Corporation
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1308672] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [167936] =>.Microsoft Corporation
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [824320] =>.Microsoft Corporation
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1115648] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [402944] =>.Microsoft Corporation
O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [824832] =>.Microsoft Corporation
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [335360] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2248192] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [235008] =>.Microsoft Corporation
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [1027584] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [69632] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [58880] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [166912] =>.Microsoft Corporation
O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1395200] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [44544] =>.Microsoft Corporation
O83 - Search Svchost Services: Irmon (Irmon) . (.Microsoft Corporation - Moniteur infrarouge.) -- C:\Windows\System32\irmon.dll [24576] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [104960] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [932352] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [497664] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [73216] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [604672] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [308224] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2902016] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1374208] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [613376] =>.Microsoft Corporation
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [57856] =>.Microsoft Corporation
O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [858112] =>.Microsoft Corporation
O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [280576] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1148928] =>.Microsoft Corporation
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\Windows\System32\usocore.dll [1371648] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [197120] =>.Microsoft Corporation

---\\ LISTE DES EXCEPTIONS DU PAREFEU WINDOWS (50) - 8s
O87 - FAEL: "UDP Query User{F0230E0F-9A4E-408D-8BA3-548A86999A5B}D:\program files (x86)\dassault systemes\b21\intel_a\code\bin\cnext.exe" [In-None-P17-TRUE] .(.Dassault Systemes - CATIA.) -- D:\program files (x86)\dassault systemes\b21\intel_a\code\bin\cnext.exe =>.Dassault Systemes
O87 - FAEL: "TCP Query User{512ECA9D-CD34-40B9-9037-8942D79D4EC1}D:\program files (x86)\dassault systemes\b21\intel_a\code\bin\cnext.exe" [In-None-P6-TRUE] .(.Dassault Systemes - CATIA.) -- D:\program files (x86)\dassault systemes\b21\intel_a\code\bin\cnext.exe =>.Dassault Systemes
O87 - FAEL: "{DD083E71-E6DD-4E17-B5AF-E73543627BA5}" [In-None-P17-FALSE] .(...) -- C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe =>.SafeNet, Inc.®
O87 - FAEL: "{025B83ED-989E-475C-ACE9-4FEFF0EBE388}" [In-None-P6-FALSE] .(...) -- C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe =>.SafeNet, Inc.®
O87 - FAEL: "{56C33F67-AE86-4236-B44E-1AD128C1B061}" [In-None-P17-FALSE] .(.SafeNet, Inc - Sentinel Protection Server for SuperPro and.) -- C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe =>.SafeNet, Inc.®
O87 - FAEL: "{1D85DDCC-20A5-4BD1-A6F3-C4329B4419E5}" [In-None-P6-FALSE] .(.SafeNet, Inc - Sentinel Protection Server for SuperPro and.) -- C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe =>.SafeNet, Inc.®
O87 - FAEL: "{5C04BA7E-C1BD-4305-9EA5-EBA492A920B2}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\Service_KMS.exe (.not file.) =>HackTool.KMSpico
O87 - FAEL: "{A7312912-2E86-4269-9742-0E863FC7B82D}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\Service_KMS.exe (.not file.) =>HackTool.KMSpico
O87 - FAEL: "{F4D7D067-CB1C-490A-9EB5-25FEBC1497C1}" [In-None-P6-TRUE] .(.HP Inc. - HPNetworkCommunicatorCom.) -- C:\Program Files\HP\HP DeskJet 3630 series\Bin\HPNetworkCommunicatorCom.exe =>.Hewlett Packard®
O87 - FAEL: "{C80DDF4C-4EC3-4825-9647-3F83E2BE705B}" [In-None-P6-TRUE] .(.HP Inc. - DeviceSetup.exe.) -- C:\Program Files\HP\HP DeskJet 3630 series\Bin\DeviceSetup.exe =>.Hewlett Packard®
O87 - FAEL: "{5B6808FF-0677-4B44-9CD5-AB5D6E011B96}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Labcenter Electronics\Proteus 8 Professional\BIN\\PDS.EXE =>.Labcenter Electronics
O87 - FAEL: "{9E7F01E4-04D6-466D-BD42-74C31FCAD5CC}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Labcenter Electronics\Proteus 8 Professional\BIN\\PDS.EXE =>.Labcenter Electronics
O87 - FAEL: "{43D0B8C6-AF51-427D-BAF3-D5914516BE25}" [In-None-P6-TRUE] .(.Nero AG - Nero Burning ROM 2017.) -- C:\Program Files (x86)\Nero\Nero 2017\Nero Burning ROM\nero.exe =>.Nero AG®
O87 - FAEL: "{E29C5445-2632-4453-9E75-D85ADD7E72E1}" [In-None-P6-TRUE] .(.Nero AG - Nero MediaHome 2017.) -- C:\Program Files (x86)\Nero\Nero 2017\Nero MediaHome\MediaHome.exe =>.Nero AG®
O87 - FAEL: "{DE1B6932-4C0F-4DF9-8F8A-0F6D87A7EC93}" [In-None-P6-TRUE] .(.Nero AG - OutProc server for DLL loading.) -- C:\Program Files (x86)\Nero\Nero 2017\Nero MediaHome\NMDllHost.exe =>.Nero AG®
O87 - FAEL: "{AD84FB2C-6470-48B4-9ECD-6A0E0743912E}" [In-None-P6-TRUE] .(.Nero AG - Nero Burning ROM 2017 Starter.) -- C:\Program Files (x86)\Nero\Nero 2017\Nero Burning ROM\StartNBR.exe =>.Nero AG®
O87 - FAEL: "{59573032-25C0-457B-99AB-16EFDD40D0C8}" [In-None-P17-TRUE] .(.Kakao - PotPlayer.) -- C:\Program Files\DAUM\PotPlayer\PotPlayerMini64.exe =>.Kakao corp.®
O87 - FAEL: "{2B2B27FA-1743-4A4F-B042-38CE8DD85AC5}" [In-None-P6-TRUE] .(.Kakao - PotPlayer.) -- C:\Program Files\DAUM\PotPlayer\PotPlayerMini64.exe =>.Kakao corp.®
O87 - FAEL: "{1C378F35-98A5-4855-BAAC-6271597EF401}" [In-None-P6-TRUE] .(.SIEMENS AG - Automation License Manager Service.) -- C:\Program Files\Common Files\Siemens\sws\almsrv\almsrv64x.exe {70A08B4DF1767ACC1C32C34BDBB76B9B} =>.Siemens AG
O87 - FAEL: "{39CEA84B-60D6-413A-97E5-325CDCAF9B56}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe =>.VMware, Inc.®
O87 - FAEL: "{7211ACF1-EC22-4901-8DC5-F8F32C88DB4A}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe =>.VMware, Inc.®
O87 - FAEL: "{1278CAAA-4301-4B86-B3B2-45A68DC8886D}" [In-None-P6-TRUE] .(.VMware, Inc. - VMware Authorization Service.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc.®
O87 - FAEL: "{883CEDBE-7F8B-4CB4-ADD9-B329398CF4EA}" [In-None-P6-TRUE] .(.VMware, Inc. - VMware Authorization Service.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc.®
O87 - FAEL: "UDP Query User{36A39E79-CB06-4896-B798-FA55901445F5}C:\braca soft\fmfffffffffffrte 17\amped.exe" [In-None-P17-TRUE] .(.AMPED - AMPED.) -- C:\braca soft\fmfffffffffffrte 17\amped.exe
O87 - FAEL: "TCP Query User{6DD4A9B2-FC00-4E88-89BE-0ED4E00C3F2E}C:\braca soft\fmfffffffffffrte 17\amped.exe" [In-None-P6-TRUE] .(.AMPED - AMPED.) -- C:\braca soft\fmfffffffffffrte 17\amped.exe
O87 - FAEL: "{8EA7F3E8-EC8C-4F8E-BE88-918C24FC8172}" [In-None-P17-TRUE] .(.NVIDIA Corporation - NVIDIA Streamer Server Component.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe =>.NVIDIA Corporation®
O87 - FAEL: "{34576DFB-059B-4339-92B5-A98B465F69EF}" [In-None-P6-TRUE] .(.NVIDIA Corporation - NVIDIA Streamer Server Component.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe =>.NVIDIA Corporation®
O87 - FAEL: "{A8309FC2-8A5C-4A0E-97AB-F528279412F4}" [In-None-P17-TRUE] .(.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.NVIDIA Corporation®
O87 - FAEL: "{18F9DA3F-45F6-4610-9A98-EBD48E3AF4F2}" [In-None-P6-TRUE] .(.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.NVIDIA Corporation®
O87 - FAEL: "{21DB05E0-482F-4A0A-BC98-0FBAF09BA346}" [In-None-P17-TRUE] .(.Embratoria - Embracore.) -- C:\Users\Issam\Downloads\Compressed\EmbratoriaG6.5.1\EmbratoriaG6.5.1\libs.exe =>.Embratoria
O87 - FAEL: "{45C1DFF2-D04D-44F9-8FC6-BB1A299E4D60}" [In-None-P6-TRUE] .(.Embratoria - Embracore.) -- C:\Users\Issam\Downloads\Compressed\EmbratoriaG6.5.1\EmbratoriaG6.5.1\libs.exe =>.Embratoria
O87 - FAEL: "{054D1154-58F1-462E-AFCF-852E6130210D}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Issam\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O87 - FAEL: "{A1F850D8-D081-4091-BC96-EE46E98F30AD}" [Out-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Issam\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O87 - FAEL: "{BF6239EF-A5A7-4229-87D3-C894414CC1FD}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Issam\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O87 - FAEL: "{7D42834D-B0CB-419C-BFF9-8F903177BF2A}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Issam\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O87 - FAEL: "{2EBFD6E7-862F-417A-B454-AA5E2CCF1AFE}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Issam\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O87 - FAEL: "{F96914B0-7090-4F72-AC20-44A018D0A96B}" [Out-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Issam\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O87 - FAEL: "{CD89EB06-BE90-4453-BF92-FF3AD30B1B63}" [In-None-P6-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O87 - FAEL: "{C7B5078E-0E8E-447E-8C75-98BD1CA277F6}" [In-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O87 - FAEL: "{FA77779A-F0EB-4339-AFDA-882997CA7A2C}" [In-None-P6-TRUE] .(.Embratoria - Embracore.) -- C:\Users\Issam\Downloads\Compressed\EmbratoriaG6.5.1\EmbratoriaG6.5.1\libs.exe =>.Embratoria
O87 - FAEL: "{561CB4AD-699B-4026-8381-03E66DD70B5F}" [In-None-P17-TRUE] .(.Embratoria - Embracore.) -- C:\Users\Issam\Downloads\Compressed\EmbratoriaG6.5.1\EmbratoriaG6.5.1\libs.exe =>.Embratoria
O87 - FAEL: "{7217A0AB-5A74-4004-B323-5E8D280FE915}" [In-None-P6-TRUE] .(.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.NVIDIA Corporation®
O87 - FAEL: "{BD562570-18F1-413E-BB95-0106036B1AE8}" [In-None-P17-TRUE] .(.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.NVIDIA Corporation®
O87 - FAEL: "{16D92F36-5C31-4256-811B-BE4AB0FFE44D}" [In-None-P17-TRUE] .(.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.NVIDIA Corporation®
O87 - FAEL: "{DE189443-E166-4873-AA98-918C89E53F2C}" [In-None-P17-TRUE] .(.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.NVIDIA Corporation®
O87 - FAEL: "{C5069FB4-EA16-4EA2-BE88-A6DA0EEE09ED}" [In-None-P6-TRUE] .(.NVIDIA Corporation - NVIDIA Streamer Server Component.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe =>.NVIDIA Corporation®
O87 - FAEL: "{38265FDE-49E8-49D8-BA33-AA4D3633BE59}" [In-None-P17-TRUE] .(.NVIDIA Corporation - NVIDIA Streamer Server Component.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe =>.NVIDIA Corporation®
O87 - FAEL: "TCP Query User{C58EFE59-2989-44B8-A0D1-43A306D42592}C:\program files (x86)\pc remote\pc remote\pcremote.exe" [In-None-P6-TRUE] .(.PC Remote - PC Remote Server.) -- C:\program files (x86)\pc remote\pc remote\pcremote.exe =>.PC Remote®
O87 - FAEL: "UDP Query User{DECEE5DE-EB60-40DF-A7D5-9674A19E576C}C:\program files (x86)\pc remote\pc remote\pcremote.exe" [In-None-P17-TRUE] .(.PC Remote - PC Remote Server.) -- C:\program files (x86)\pc remote\pc remote\pcremote.exe =>.PC Remote®
O87 - FAEL: "{A43CA9BE-FCFD-4795-ADF9-E9029A5397B7}" [In-None-P17-TRUE] .(.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®

---\\ CODES PRODUITS LOGICIELS (135) - 3s
O90 - PUC: "000051090900C0400100000000F01FEC" [HKLM] . (.Microsoft DCF MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109110000000100000000F01FEC" [HKLM] . (.Microsoft Office Professional Plus 2013.) =>.Microsoft Corporation
O90 - PUC: "000051091A00C0400100000000F01FEC" [HKLM] . (.Microsoft OneNote MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "000051091C0000000100000000F01FEC" [HKLM] . (.Microsoft Office 32-bit Components 2013.) =>.Microsoft Corporation
O90 - PUC: "000051091C00C0400100000000F01FEC" [HKLM] . (.Microsoft Office Shared 32-bit MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "000051091E00C0400100000000F01FEC" [HKLM] . (.Microsoft Office OSM MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "000051092E00C0400100000000F01FEC" [HKLM] . (.Microsoft Office OSM UX MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "000051094400C0400100000000F01FEC" [HKLM] . (.Microsoft InfoPath MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "000051095100C0400100000000F01FEC" [HKLM] . (.Microsoft Access MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "000051096100C0400100000000F01FEC" [HKLM] . (.Microsoft Excel MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "000051098100C0400100000000F01FEC" [HKLM] . (.Microsoft PowerPoint MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "000051099100C0400100000000F01FEC" [HKLM] . (.Microsoft Publisher MUI (French) 2013.) =>.bl.org
O90 - PUC: "00005109A100C0400100000000F01FEC" [HKLM] . (.Microsoft Outlook MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109AB00C0400100000000F01FEC" [HKLM] . (.Microsoft Groove MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109B100C0400100000000F01FEC" [HKLM] . (.Microsoft Word MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109B210C0400100000000F01FEC" [HKLM] . (.Microsoft Lync MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109C200C0400100000000F01FEC" [HKLM] . (.Microsoft Office Proofing (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109E600C0400100000000F01FEC" [HKLM] . (.Microsoft Office Shared MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109F10010400100000000F01FEC" [HKLM] . (.Microsoft Office Proofing Tools 2013 - اللغة العربية.) -- C:\Windows\Installer\{90150000-001F-0401-1000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation
O90 - PUC: "00005109F10031400100000000F01FEC" [HKLM] . (.Microsoft Office Proofing Tools 2013 - Nederlands.) -- C:\Windows\Installer\{90150000-001F-0413-1000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation
O90 - PUC: "00005109F10070400100000000F01FEC" [HKLM] . (.Microsoft Office Korrekturhilfen 2013 - Deutsch.) -- C:\Windows\Installer\{90150000-001F-0407-1000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation
O90 - PUC: "00005109F10090400100000000F01FEC" [HKLM] . (.Microsoft Office Proofing Tools 2013 - English.) -- C:\Windows\Installer\{90150000-001F-0409-1000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation
O90 - PUC: "00005109F100A0C00100000000F01FEC" [HKLM] . (.Microsoft Office Proofing Tools 2013 - Español.) -- C:\Windows\Installer\{90150000-001F-0C0A-1000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation
O90 - PUC: "00005109F100C0400100000000F01FEC" [HKLM] . (.Outils de vérification linguistique 2013 de Microsoft Office - Français.) -- C:\Windows\Installer\{90150000-001F-040C-1000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation
O90 - PUC: "021E56CC980E834418A52E0040816280" [HKLM] . (.Epic Games Launcher.) -- C:\WINDOWS\Installer\{CC65E120-E089-4438-815A-E20004182608}\Installer.ico =>.Epic Games
O90 - PUC: "05D94ECADC916A441B29649F5882B362" [HKLM] . (.Nero PiP Effects Basic.) -- C:\WINDOWS\Installer\{ACE49D50-19CD-44A6-B192-46F985283B26}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "06C0A8DBBEA16D118B1E00205512EA06" [HKLM] . (.VBA (3821b).) =>.Microsoft Corporation
O90 - PUC: "0F18D018844491942BA94B5A53FEE0DF" [HKLM] . (.RevServicesX.) =>Trojan.Agent
O90 - PUC: "11C6590D06F0EF3499DA25E4384317BB" [HKLM] . (.Energy Management.) -- C:\Windows\Installer\{D0956C11-0F60-43FE-99AD-524E833471BB}\ARPPRODUCTICON.exe =>.Lenovo Group Limited
O90 - PUC: "121E2D80A6F7BE3479DF26B944094330" [HKLM] . (.Microsoft_VC90_CRT_x86.) -- C:\WINDOWS\Installer\{08D2E121-7F6A-43EB-97FD-629B44903403}\ARPPRODUCTICON.exe =>.Microsoft Corporation
O90 - PUC: "12D61912DD3F9F4459B2DF21C2DB5162" [HKLM] . (.Nero Launcher.) -- C:\WINDOWS\Installer\{21916D21-F3DD-44F9-952B-FD122CBD1526}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "15E5F6B1E5753964CB2A573475D070D6" [HKLM] . (.Nero Kwik Themes Basic.) -- C:\WINDOWS\Installer\{1B6F5E51-575E-4693-BCA2-7543570D076D}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "1926E8D15D0BCE53481466615F760A7F" [HKLM] . (.Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219.) =>.bl.org
O90 - PUC: "19DA96544F74E9D4F89C17E73CD2A71E" [HKLM] . (.Microsoft_VC80_CRT_x86_x64.) -- C:\WINDOWS\Installer\{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}\ARPPRODUCTICON.exe =>.Microsoft Corporation
O90 - PUC: "1A2751999B8F5E244B587A794255A848" [HKLM] . (.Nero Express.) -- C:\WINDOWS\Installer\{991572A1-F8B9-42E5-B485-A79724558A84}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "1AE2603474946BF4DB19DE3CF5D63BDA" [HKLM] . (.CharlyGraal V5.) -- C:\WINDOWS\Installer\{43062EA1-4947-4FB6-BD91-EDC35F6DB3AD}\_45091238.exe
O90 - PUC: "1af2a8da7e60d0b429d7e6453b3d0182" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable (x64).) =>.bl.org
O90 - PUC: "1D5E3C0FEDA1E123187686FED06E995A" [HKLM] . (.Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219.) =>.bl.org
O90 - PUC: "1DC115BEC78CD0947A1B6D4CF77528F0" [HKLM] . (.Prerequisite installer.) -- C:\WINDOWS\Installer\{EB511CD1-C87C-490D-A7B1-D6C47F57820F}\ARPPRODUCTICON.exe =>.Legitimate
O90 - PUC: "20500C74CAFC3D2408919D5C75DA94DA" [HKLM] . (.Nero Recode.) -- C:\WINDOWS\Installer\{47C00502-CFAC-42D3-8019-D9C557AD49AD}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "20B91A1DE71869244AB57058F37DD475" [HKLM] . (.Microsoft_VC80_MFC_x86.) -- C:\WINDOWS\Installer\{D1A19B02-817E-4296-A45B-07853FD74D57}\ARPPRODUCTICON.exe =>.Microsoft Corporation
O90 - PUC: "21EE4A31AE32173319EEFE3BD6FDFFE3" [HKLM] . (.Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005.) =>.Microsoft Corporation
O90 - PUC: "22BEFC8F7E2A1793E9ADB411DEFE1C58" [HKLM] . (.Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005.) =>.Microsoft Corporation
O90 - PUC: "25BBB29DFF28DE24A8C3E460F249A47B" [HKLM] . (.Microsoft_VC80_MFCLOC_x86.) -- C:\WINDOWS\Installer\{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}\ARPPRODUCTICON.exe =>.Microsoft Corporation
O90 - PUC: "286D3C4DA51E84A47A7BF320A125F5F8" [HKLM] . (.Kaspersky Password Manager.) -- C:\WINDOWS\Installer\{D4C3D682-E15A-4A48-A7B7-3F021A525F8F}\product.ico =>.Western Digital Technologies
O90 - PUC: "35588CBA077879B44BE3A50946A7B536" [HKLM] . (.Nero ControlCenter.) -- C:\WINDOWS\Installer\{ABC88553-8770-4B97-B43E-5A90647A5B63}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "3CC2099603DDF7F41B9316005F184F7D" [HKLM] . (.Proteus 8 Professional.) -- C:\WINDOWS\Installer\{69902CC3-DD30-4F7F-B139-6100F581F4D7}\PDS_1.exe
O90 - PUC: "4135AF478C58A2E409D79DCECC7B077A" [HKLM] . (.Smart Switch.) -- C:\WINDOWS\Installer\{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}\ARPPRODUCTICON.exe =>.Samsung Electronics
O90 - PUC: "436F6625D7B77354DBCD89DDC6CFAB1A" [HKLM] . (.Online Application.) -- C:\WINDOWS\Installer\{5266F634-7B7D-4537-BDDC-98DD6CFCBAA1}\online.exe =>.SUP.Microleaves
O90 - PUC: "48D76F9207A3E65408A62503B12070B0" [HKLM] . (.Nero Effects Basic.) -- C:\WINDOWS\Installer\{29F67D84-3A70-456E-806A-52301B02070B}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "4BEA594979BAED93C82408E6FE57CE7A" [HKLM] . (.Microsoft Visual Studio 2010 Tools for Office Runtime (x64).) =>.Microsoft Corporation
O90 - PUC: "4E5EC0C239217F94D833B558725E59F8" [HKLM] . (.Microsoft Office Remote.) =>.Microsoft Corporation
O90 - PUC: "4E9B274AFFA0B7F42BD56FF4E829A8BA" [HKLM] . (.Microsoft_VC90_MFC_x86_x64.) -- C:\WINDOWS\Installer\{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}\ARPPRODUCTICON.exe =>.Microsoft Corporation
O90 - PUC: "5AB13C1A834570A3E9EE5ABFD2F0ED63" [HKLM] . (.Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.23506.) =>.Microsoft Corporation
O90 - PUC: "5ACEEAD68028AD7428AAB656E33CB179" [HKLM] . (.Nero Burning Core.) =>.Ahead Corporation
O90 - PUC: "5C61D31A9A8369D4697495CFAC1BA258" [HKLM] . (.Visual Basic for Applications (R) Core - English.) -- C:\WINDOWS\Installer\{A13D16C5-38A9-4D96-9647-59FCCAB12A85}\vbasdk.ico,0 =>.Microsoft Corporation
O90 - PUC: "5CD9A3EDD5A9584669264317267C4EAC" [HKLM] . (.French App Name.)
O90 - PUC: "5CE31D8906C0be847AAFB10080CEC4D2" [HKLM] . (.PSIM 9.0.3.)
O90 - PUC: "5D780125CC9A43442960AF10A1BBCD3F" [HKLM] . (.Nero Device Updates.) =>.Ahead Corporation
O90 - PUC: "5DAB1C8C6E456414DA70A3A83D56963C" [HKLM] . (.Microsoft_VC80_MFC_x86_x64.) -- C:\WINDOWS\Installer\{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}\ARPPRODUCTICON.exe =>.Microsoft Corporation
O90 - PUC: "5DE081A51CA0A0147B09E53091DCA039" [HKLM] . (.Sentinel Protection Installer 7.4.0.) -- C:\WINDOWS\Installer\{5A180ED5-0AC1-410A-B790-5E0319CD0A93}\ARPPRODUCTICON.exe =>.SafeNet
O90 - PUC: "62DBF9290209B993A9A757D1160F9B24" [HKLM] . (.Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005.) =>.Microsoft Corporation
O90 - PUC: "64A4693C899096246BDC7F3136822257" [HKLM] . (.SIMATIC Prosave V14.0.) -- C:\WINDOWS\Installer\{C3964A46-0998-4269-B6CD-F71363282275}\ADSProductIcon.ico =>.Siemens
O90 - PUC: "67BCB71E42995DB46B6D053D04B7E447" [HKLM] . (.Nero Disc Menus Basic.) -- C:\WINDOWS\Installer\{E17BCB76-9924-4BD5-B6D6-50D3407B4E74}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "67D6ECF5CD5FBA732B8B22BAC8DE1B4D" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161.) =>.bl.org
O90 - PUC: "696CCB364BF0C9E41844D24A2F84CF71" [HKLM] . (.HP Google Drive Plugin.) -- C:\WINDOWS\Installer\{63BCC696-0FB4-4E9C-8144-2DA4F248FC17}\HPScan.ico =>.Google Inc.
O90 - PUC: "6AC6FB4ABA81A1C4E8E2BF495841D99C" [HKLM] . (.Nero Burning ROM.) -- C:\WINDOWS\Installer\{A4BF6CA6-18AB-4C1A-8E2E-FB9485149DC9}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "6C0B5F80D42D7234AB658F0EC0A18687" [HKLM] . (.HP DeskJet 3630 series Aide.) -- C:\Windows\Installer\{08F5B0C6-D24D-4327-BA56-F8E00C1A6878}\ARP_Icon =>.Hewlett-Packard
O90 - PUC: "6CE0A0D8C3A9F453B9CF6AE169EB8164" [HKLM] . (.Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - FRA.) =>.Microsoft Corporation
O90 - PUC: "6D57573569B3C474DBF8FD6F7663D3DB" [HKLM] . (.Naviextras Toolbox Prerequesities.) =>.Hewlett-Packard
O90 - PUC: "6E815EB96CCE9A53884E7857C57002F0" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161.) =>.bl.org
O90 - PUC: "6E8D947A316B3EB3F8F540C548BE2AB9" [HKLM] . (.Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005.) =>.Microsoft Corporation
O90 - PUC: "6F9E66FF7E38E3A3FA41D89E8A906A4A" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.) =>.bl.org
O90 - PUC: "7040BB568CC47CD459E2E3FEFD5006A2" [HKLM] . (.Nero Update.) -- C:\WINDOWS\Installer\{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "7170C33F40E85BE4098C74222178BDF4" [HKLM] . (.Kaspersky Secure Connection.) -- C:\WINDOWS\Installer\{F33C0717-8E04-4EB5-90C8-47221287DB4F}\arp.ico =>.Kaspersky Labs
O90 - PUC: "77EAAEFBF7DB43542B68C9C54B96E71B" [HKLM] . (.PDF Settings CS6.) =>.Adobe Inc.
O90 - PUC: "7C9F8B73BF303523781852719CD9C700" [HKLM] . (.Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "7CDA8182BF1C8A04EBB6636B62289E8E" [HKLM] . (.PICkit 2 v2.61.)
O90 - PUC: "811CF9E1D156439479EB5EC3EAC5D754" [HKLM] . (.Microsoft_VC80_MFCLOC_x86_x64.) -- C:\WINDOWS\Installer\{1E9FC118-651D-4934-97BE-E53CAE5C7D45}\ARPPRODUCTICON.exe =>.Microsoft Corporation
O90 - PUC: "81CF047D2BAF1ED49A5F7E8BA175C8FC" [HKLM] . (.Nero RescueAgent.) -- C:\WINDOWS\Installer\{D740FC18-FAB2-4DE1-A9F5-E7B81A578CCF}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "821B6C5004B15944C99B90B063B8AFA0" [HKLM] . (.Nero Video Samples.) -- C:\WINDOWS\Installer\{05C6B128-1B40-4495-9CB9-090B368BFA0A}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "846A7150B5C02243AB08E1C6DD79D28A" [HKLM] . (.Microsoft Visual C++ 2017 x86 Additional Runtime - 14.10.24728.) =>.Microsoft Corporation
O90 - PUC: "887A45B6A55AB47458DAD05FC3C7023D" [HKLM] . (.Nitro Pro 10.) -- C:\Windows\Installer\{6B54A788-A55A-474B-85AD-0DF53C7C20D3}\Professional.ico =>.Nitro
O90 - PUC: "895BE1FC424BA6341BF57B3648B69A07" [HKLM] . (.Dassault Systemes Software Prerequisites x86-x64.) =>.Legitimate
O90 - PUC: "8979493F4453B3345BBA6AF1230F83F6" [HKLM] . (.Music Recorder.) =>.Legitimate
O90 - PUC: "8D8474FD2CF215D4780D598AC1AC69B2" [HKLM] . (.Nero MediaHome.) -- C:\WINDOWS\Installer\{DF4748D8-2FC2-4D51-87D0-95A81CCA962B}\NeroKwikMedia._63C8A7B0BBE5459F9AC436392B2FF50D.exe =>.Ahead Corporation
O90 - PUC: "8EFB030F674880C45A3532D38EA0B21E" [HKLM] . (.Nero Info.) -- C:\WINDOWS\Installer\{F030BFE8-8476-4C08-A553-233DE80A2BE1}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "8F491B0BEC0EEF33AA113646824A7BD3" [HKLM] . (.Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.23506.) =>.Microsoft Corporation
O90 - PUC: "902F2DECE8843B34EB3EEF18C91BA9A2" [HKLM] . (.Siemens Automation License Manager V5.3 + SP3 + Upd1.) -- C:\WINDOWS\Installer\{CED2F209-488E-43B3-BEE3-FE819CB19A2A}\ADSProductIcon.ico =>.Western Digital Technologies
O90 - PUC: "90626C05D93D5B14192D767AF8F3432D" [HKLM] . (.TIA Portal Multiuser Server V14 - TIA Portal Multiuser Server Single SetupPackage V14.0.) -- C:\WINDOWS\Installer\{50C62609-D39D-41B5-91D2-67A78F3F34D2}\ARPProductIcon.ico =>.Siemens
O90 - PUC: "91785D291CBB3CC40AB8659C8E48CCC2" [HKLM] . (.Microsoft_VC80_CRT_x86.) -- C:\WINDOWS\Installer\{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}\ARPPRODUCTICON.exe =>.Microsoft Corporation
O90 - PUC: "985E2342652631540BFBFE8A3E525D0F" [HKLM] . (.Nero SharedVideoCodecs.) =>.Ahead Corporation
O90 - PUC: "9A6ACC8DAC0E9854AB71459C901B8C5B" [HKLM] . (.Nero CoverDesigner.) -- C:\WINDOWS\Installer\{D8CCA6A9-E0CA-4589-BA17-54C909B1C8B5}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "9B8BD42DC6BB43346991ABC156E0313D" [HKLM] . (.Microsoft Primary Interoperability Assemblies 2005.) -- C:\WINDOWS\Installer\{D24DB8B9-BB6C-4334-9619-BA1C650E13D3}\[SystemFolder]msiexec.exe =>.bl.org
O90 - PUC: "9eab5ec6ac3d99b498a1d16c1c815acf" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable (x64).) =>.bl.org
O90 - PUC: "A089CE062ADB6BC44A720BA745894BAC" [HKLM] . (.Google Update Helper.) =>.Google Inc.
O90 - PUC: "A1156CE537C26889FE3E6E6F3C7C625F" [HKLM] . (.AxCrypt 2.1.1541.0.) -- C:\WINDOWS\Installer\{5EC6511A-2C73-9886-EFE3-E6F6C3C726F5}\axcrypt.ico =>.Axantum
O90 - PUC: "A8EBD2D00D340387A77EACC6998A237E" [HKLM] . (.Adobe Community Help.) =>.Adobe Inc.
O90 - PUC: "A9931046AD5F40C478AA8E01D70F7015" [HKLM] . (.HP Dropbox Plugin.) -- C:\WINDOWS\Installer\{6401399A-F5DA-4C04-87AA-E8107DF00751}\HPScan.ico =>.Dropbox Inc.
O90 - PUC: "b25099274a207264182f8181add555d0" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org
O90 - PUC: "B354D6E6EDAA41F4796FB9644488CB35" [HKLM] . (.Nero Disc to Device.) =>.Ahead Corporation
O90 - PUC: "B5DEF536D6C2EB94786EA7F6DC22CBA5" [HKLM] . (.Microsoft_VC90_MFC_x86.) -- C:\WINDOWS\Installer\{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}\ARPPRODUCTICON.exe =>.Microsoft Corporation
O90 - PUC: "BAC784446729D0E3C9BC8A5F9F843D0C" [HKLM] . (.Microsoft Visual C++ 2017 x86 Minimum Runtime - 14.10.24728.) =>.Microsoft Corporation
O90 - PUC: "BE4C175A26B32AC42A3BDA5B357833B9" [HKLM] . (.Logiciel de base du périphérique HP DeskJet 3630 series.) -- C:\WINDOWS\Installer\{A571C4EB-3B62-4CA2-A2B3-ADB55387339B}\ARP_Icon =>.Hewlett-Packard
O90 - PUC: "C025571B2A687A53689168CD7369889B" [HKLM] . (.Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "c1c4f01781cc94c4c8fb1542c0981a2a" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org
O90 - PUC: "C358A937F17DB404E9A610D29381DE75" [HKLM] . (.Adobe AIR.) =>.Adobe Inc.
O90 - PUC: "C3AEB2FCAE628F23AAB933F1E743AB79" [HKLM] . (.Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "C7654A4A92C5657499D28FD428054C53" [HKLM] . (.VC User 71 RTL X86 ---.)
O90 - PUC: "C7937558D24AF684793B2ABC2C735239" [HKLM] . (.Microsoft_VC90_ATL_x86_x64.) -- C:\WINDOWS\Installer\{8557397C-A42D-486F-97B3-A2CBC2372593}\ARPPRODUCTICON.exe =>.Microsoft Corporation
O90 - PUC: "CFD2C1F142D260E3CB8B271543DA9F98" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148.) =>.bl.org
O90 - PUC: "D0AC3A29DC55D5C4AB59C562002CF062" [HKLM] . (.Microsoft_VC90_CRT_x86_x64.) -- C:\WINDOWS\Installer\{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}\ARPPRODUCTICON.exe =>.Microsoft Corporation
O90 - PUC: "D43EEBEB2A48DDE4B8AE69CC45732136" [HKLM] . (.Nero Core Components.) =>.Ahead Corporation
O90 - PUC: "D7314F9862C648A4DB8BE2A5B47BE100" [HKLM] . (.Microsoft Silverlight.) -- c:\WINDOWS\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon =>.Microsoft Corporation
O90 - PUC: "D7600A1A8EBD1674D885EAE88CC4D9D5" [HKLM] . (.VMware Workstation.) =>.VMware
O90 - PUC: "D976D971F740D19478384DEB95D62224" [HKLM] . (.Visual Basic for Applications (R) Core.) -- C:\WINDOWS\Installer\{179D679D-047F-491D-8783-D4BE596D2242}\vbasdk.ico,0 =>.Microsoft Corporation
O90 - PUC: "DAD7801F942F883448A44AEB42FBB59B" [HKLM] . (.Nero 2017.) -- C:\WINDOWS\Installer\{F1087DAD-F249-4388-844A-A4BE24BF5BB9}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "DC8A59DBF9D1DA5389A1E3975220E6BB" [HKLM] . (.Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "DD032CCC45A36D11298A000A42B5A36C" [HKLM] . (.SIMATIC HMI License Manager Panel Plugin (x64).) =>.Western Digital Technologies
O90 - PUC: "DDA10CCC45A36D11298A000A42B5A36C" [HKLM] . (.SIMATIC Device Drivers WoW.) =>.Siemens
O90 - PUC: "DDA10CCC45A36D51298A000A42B5A36C" [HKLM] . (.SIMATIC Device Drivers.) =>.Siemens
O90 - PUC: "DDF51CCC45A36D11298A000A42B5A36C" [HKLM] . (.SIMATIC HMI ProSave.) =>.Siemens
O90 - PUC: "DED05DA841EECEF4CBC22F923CEBEF85" [HKLM] . (.Camtasia 9.) -- C:\WINDOWS\Installer\{8AD50DED-EE14-4FEC-BC2C-F229C3BEFE58}\CamStudio.ico =>.Camtasia
O90 - PUC: "DFB07147C05A9D64A82FFAA0C00E71DD" [HKLM] . (.Visual Basic for Applications (R) Core.) -- C:\WINDOWS\Installer\{74170BFD-A50C-46D9-8AF2-AF0A0CE017DD}\vbasdk.ico,0 =>.Microsoft Corporation
O90 - PUC: "E873E3303DA65DA4DBBEBC6DB91340C6" [HKLM] . (.Microsoft_VC90_ATL_x86.) -- C:\WINDOWS\Installer\{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}\ARPPRODUCTICON.exe =>.Microsoft Corporation
O90 - PUC: "EEF4BFBEBE2C3EE48A23BD58D05EF487" [HKLM] . (.Nero Video.) -- C:\WINDOWS\Installer\{EBFB4FEE-C2EB-4EE3-A832-DB850DE54F78}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "F4339ACB9C6B56F4A937CAA523A9D440" [HKLM] . (.PlayReady PC Runtime amd64.) =>.Microsoft Corporation
O90 - PUC: "F4D7C09A2F03E8A47A6D00F3769E34C3" [HKLM] . (.Étude pour l'amélioration du produit HP DeskJet 3630 series.) -- C:\WINDOWS\Installer\{A90C7D4F-30F2-4A8E-A7D6-003F67E9433C}\ARP_Icon =>.Hewlett-Packard
O90 - PUC: "F8385C66458B55A4986E6A3178744AFD" [HKLM] . (.Epic Games Launcher Prerequisites (x64).) -- C:\WINDOWS\Installer\{66C5838F-B854-4A55-89E6-A6138747A4DF}\UnrealEngineLauncher.ico =>.Legitimate
O90 - PUC: "FC03D219E93F13B4DAA921C3B697E42E" [HKLM] . (.HP Update.) -- C:\Windows\Installer\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}\ARPPRODUCTICON.exe =>.Hewlett-Packard
O90 - PUC: "FF16EAA5E858E3548B3F496481419957" [HKLM] . (.Kaspersky Total Security.) -- C:\WINDOWS\Installer\{5AAE61FF-858E-453E-B8F3-944618149975}\arp.ico =>.Kaspersky Labs
O90 - PUC: "47FD439C9D0DC54409AA4310A2401ED1" [HKCU] . (.PC Remote.) -- %APPDATA%\Microsoft\Installer\{C934DF74-D0D9-445C-90AA-34012A04E11D}\PCRemoteIcon.exe =>.American Systems
O90 - PUC: "9C67B3E4657CABE4A9B33436A2D77306" [HKCU] . (.FST 4.21.)
O90 - PUC: "47FD439C9D0DC54409AA4310A2401ED1" [HKU] . (.PC Remote.) -- %APPDATA%\Microsoft\Installer\{C934DF74-D0D9-445C-90AA-34012A04E11D}\PCRemoteIcon.exe =>.American Systems
O90 - PUC: "9C67B3E4657CABE4A9B33436A2D77306" [HKU] . (.FST 4.21.)

---\\ PACKAGES WINDOWS INSTALLER (81) - 47s
[MD5.8D8F40683F437D459C4502DED01878CE] [WIS][2017/02/09 10:46:14] (.HP Inc. - HP DeskJet 3630 series Basic Device Softwar.) -- C:\WINDOWS\Installer\10316c32.msi [5234688] =>.HP Inc.
[MD5.DCE26B760904BDD10C8DE0353B390ECF] [WIS][2017/02/09 10:46:20] (.HP - HP Scan Dropbox destination plugin.) -- C:\WINDOWS\Installer\10316c38.msi [155648] =>.HP
[MD5.2CE0DB9583DFC9D6A0B956D3B1BEEDF5] [WIS][2017/02/09 10:46:21] (.HP - HP Scan Google Drive destination plugin.) -- C:\WINDOWS\Installer\10316c3e.msi [155648] =>.HP
[MD5.0314EFCF75E40B37DF064EE96DD01AF2] [WIS][2017/02/09 10:46:18] (.HP Inc. - Product Improvement Study for HP DeskJet 36.) -- C:\WINDOWS\Installer\10316c4b.msi [290816] =>.HP Inc.
[MD5.86348D2C37407629D03AF368BBA24D36] [WIS][2017/01/24 20:06:48] (.TechSmith Corporation - Camtasia 9.0.3.1627 64-bit.) -- C:\WINDOWS\Installer\112f6f4a.msi [284270592] =>.TechSmith Corporation
[MD5.E4AF16B0574B2598AADD353A35A3722B] [WIS][2014/03/13 14:34:06] (.Adobe.) -- C:\WINDOWS\Installer\1328bf9f.msi [2211328] =>.Adobe
[MD5.78B41A323699DAF1C25265890733BE26] [WIS][2014/03/13 14:33:52] (.Adobe.) -- C:\WINDOWS\Installer\1328bfa6.msi [1997312] =>.Adobe
[MD5.8BAD3B4225E4D8C0746ED2CF02A0B249] [WIS][2014/03/13 14:34:14] (.Adobe.) -- C:\WINDOWS\Installer\1328bfab.msi [725504] =>.Adobe
[MD5.E85D953AE603484B31869F1D44B53B18] [WIS][2014/03/13 14:34:30] (.Adobe.) -- C:\WINDOWS\Installer\1328bfb0.msi [3670016] =>.Adobe
[MD5.95B5A4285B03437E4D83FB3615B9A10C] [WIS][2014/03/13 14:32:14] (.Adobe.) -- C:\WINDOWS\Installer\1328bfb5.msi [606208] =>.Adobe
[MD5.5807A6A79EBF57203BA6FD68E93A676C] [WIS][2014/03/13 14:34:40] (.Adobe.) -- C:\WINDOWS\Installer\1328bfba.msi [12719104] =>.Adobe
[MD5.3841F694ABB9528590CE22BA4A0346D4] [WIS][2014/03/13 14:32:14] (.Adobe.) -- C:\WINDOWS\Installer\1328bfbf.msi [532992] =>.Adobe
[MD5.79591E19208DC5B86BD93D4616BA05DA] [WIS][2014/03/13 14:34:30] (.Adobe.) -- C:\WINDOWS\Installer\1328bfc4.msi [1528320] =>.Adobe
[MD5.EC37C69FC4DB82A4070EB540177852C6] [WIS][2014/03/13 14:34:46] (.Adobe.) -- C:\WINDOWS\Installer\1328bfc9.msi [9998336] =>.Adobe
[MD5.79EA33E70239A72CA62346CFB64D2F64] [WIS][2017/07/29 19:35:22] (.Adobe Systems Incorporated - Adobe Help.) -- C:\WINDOWS\Installer\1328bfd3.msi [23040] =>.Adobe Systems Incorporated
[MD5.F156597BB08A28CEF382D400174143A1] [WIS][2014/03/13 14:34:12] (.Adobe.) -- C:\WINDOWS\Installer\1328bfd8.msi [1911808] =>.Adobe
[MD5.5FE7FABB34FC006A8E695768312BE6AF] [WIS][2014/03/13 14:34:28] (.Adobe.) -- C:\WINDOWS\Installer\1328bfdd.msi [620032] =>.Adobe
[MD5.C373839181FE00CDF257141CC2E06F66] [WIS][2014/03/13 14:34:38] (.Adobe.) -- C:\WINDOWS\Installer\1328bfe2.msi [3123200] =>.Adobe
[MD5.426D065204231CDC747B8D4BA86E1ABB] [WIS][2017/07/29 19:39:46] (.Adobe Systems Incorporated - Adobe Media Player.) -- C:\WINDOWS\Installer\1328bfe7.msi [22528] =>.Adobe Systems Incorporated
[MD5.BC81D0A57D134966E2BBCA3F9C218CC7] [WIS][2017/05/20 20:21:14] (.Kaspersky Lab - Kaspersky Password Manager.) -- C:\WINDOWS\Installer\14f41b51.msi [25251840] =>.Kaspersky Lab
[MD5.F03BF2AFC405A9875099A838646032A1] [WIS][2018/02/24 23:08:06] (.Samsung Electronics Co., Ltd..) -- C:\WINDOWS\Installer\183d711.msi [38498304] =>.Samsung Electronics Co., Ltd.
[MD5.8968FF302EE00D4A74DF6AA930F2D709] [WIS][2007/09/04 12:11:40] (.Charlyrobot - CharlyGraal V5.) -- C:\WINDOWS\Installer\1e662fc1.msi [184320]
[MD5.31691ADD771D3CFEC6BE5ED1171256AC] [WIS][2017/02/03 00:17:50] (.Lenovo.) -- C:\WINDOWS\Installer\20042d.msi [76877824] =>.Lenovo
[MD5.283395EEAADF4D58E4CD144176531AE4] [WIS][2017/06/29 15:12:02] (.Nero AG - Nero 2017.) -- C:\WINDOWS\Installer\2d7bd04f.msi [28043264] =>.Nero AG
[MD5.6469900908EB24728B85E784AF5B8D99] [WIS][2017/06/29 15:14:13] (.Nero AG - NeroControlCenter.) -- C:\WINDOWS\Installer\2d7bd055.msi [3675136] =>.Nero AG
[MD5.41473E6E05E73563255D99AE130FCCB9] [WIS][2017/06/29 15:14:09] (.Nero AG - Nero Core Components.) -- C:\WINDOWS\Installer\2d7bd05c.msi [4368896] =>.Nero AG
[MD5.5C48784412433E81C3042EB7DCA8E8CF] [WIS][2017/06/29 15:13:11] (.Nero AG - Nero 12 Disc Menus Basic.) -- C:\WINDOWS\Installer\2d7bd063.msi [1199104] =>.Nero AG
[MD5.5D45ACFD67B27A1827ED7DE9394BD6A7] [WIS][2017/06/29 15:13:08] (.Nero AG - Nero 12 Kwik Themes Basic.) -- C:\WINDOWS\Installer\2d7bd06a.msi [1216000] =>.Nero AG
[MD5.C7A02429DABA8B98746839295329F999] [WIS][2017/06/29 15:14:15] (.Nero AG - Nero Burning ROM 15.) -- C:\WINDOWS\Installer\2d7bd071.msi [3159552] =>.Nero AG
[MD5.3CBA1EE77FAD369495F65B961C610306] [WIS][2017/06/29 15:13:49] (.Nero AG - Nero 12 Effects Basic.) -- C:\WINDOWS\Installer\2d7bd078.msi [1216000] =>.Nero AG
[MD5.B20E93BB8832968008E1C02EC1AC68E7] [WIS][2017/06/29 15:13:06] (.Nero AG - Nero 12 PiP Effects Basic.) -- C:\WINDOWS\Installer\2d7bd07f.msi [1217536] =>.Nero AG
[MD5.F309F9A5B61687F41B1751F38DBC0721] [WIS][2017/06/29 15:13:05] (.Nero AG - Nero Prerequisites.) -- C:\WINDOWS\Installer\2d7bd086.msi [3815936] =>.Nero AG
[MD5.C44B9C174FF1B1A2A69B962360BF2272] [WIS][2017/06/29 15:12:43] (.Nero AG - Nero SharedVideoCodecs.) -- C:\WINDOWS\Installer\2d7bd08d.msi [866304] =>.Nero AG
[MD5.F7CE41D712528A2E7F161C2504A70D21] [WIS][2017/06/29 15:13:59] (.Nero AG - Nero CoverDesigner.) -- C:\WINDOWS\Installer\2d7bd094.msi [1812992] =>.Nero AG
[MD5.7C5A696D5BCDC9D1A3DB160D0878EA00] [WIS][2017/06/29 15:13:49] (.Nero AG - Nero Express 15.) -- C:\WINDOWS\Installer\2d7bd09b.msi [3006464] =>.Nero AG
[MD5.DB4F92889B441AB528EAE256D9F60112] [WIS][2017/06/29 15:13:24] (.Nero AG - Nero MediaHome.) -- C:\WINDOWS\Installer\2d7bd0a2.msi [3638272] =>.Nero AG
[MD5.32ADB203A53F4DD325A71DE3EACFFE48] [WIS][2017/06/29 15:12:47] (.Nero AG - Nero RescueAgent 2017.) -- C:\WINDOWS\Installer\2d7bd0a9.msi [5207040] =>.Nero AG
[MD5.F492882E1038FD36E58D5BBB86AD3806] [WIS][2017/06/29 15:12:51] (.Nero AG - Nero Recode.) -- C:\WINDOWS\Installer\2d7bd0b0.msi [4475392] =>.Nero AG
[MD5.3C8AB28BC6BC56E3E2CDEC420478300C] [WIS][2017/06/29 15:12:08] (.Nero AG - Nero Video 2017.) -- C:\WINDOWS\Installer\2d7bd0b7.msi [5765632] =>.Nero AG
[MD5.5E1F140F41530269EFDD0DBEE93DEFBF] [WIS][2017/06/29 15:12:45] (.Nero AG - Nero 12 Video Samples.) -- C:\WINDOWS\Installer\2d7bd0be.msi [1181696] =>.Nero AG
[MD5.1411D00156B0A48CF4D9ED1DC40FD5E3] [WIS][2017/06/29 15:12:42] (.Nero AG - Nero Update.) -- C:\WINDOWS\Installer\2d7bd0c4.msi [1418240] =>.Nero AG
[MD5.565F241F58F715EF06EB7D7825A2A254] [WIS][2017/06/29 15:13:13] (.Nero AG - Nero Launcher.) -- C:\WINDOWS\Installer\2d7bd0ca.msi [4124160] =>.Nero AG
[MD5.88498A1432EC3BBBD903E13DE820F7A0] [WIS][2017/06/29 15:13:50] (.Nero AG - Nero Disc to Device.) -- C:\WINDOWS\Installer\2d7bd0d1.msi [3717632] =>.Nero AG
[MD5.6009FAC527335485E9F27DD47013F79E] [WIS][2017/06/29 15:14:15] (.Nero AG - Nero BurningCore 15.) -- C:\WINDOWS\Installer\2d7bd0d8.msi [2833920] =>.Nero AG
[MD5.3A02DD49CA724B3CB96D482AE3999597] [WIS][2017/06/29 15:13:48] (.Nero AG - Nero Info.) -- C:\WINDOWS\Installer\2d7bd0e1.msi [2698752] =>.Nero AG
[MD5.7C8096FBB380769BBB7DCDCF0D8BDB04] [WIS][2017/06/29 15:13:59] (.Nero AG - Nero Device Updates.) -- C:\WINDOWS\Installer\2d7bd0e7.msi [866816] =>.Nero AG
[MD5.EF34305DB2E5B2A8034A584379F197A2] [WIS][2017/06/29 15:12:42] (.Nero AG - Music Recorder.) -- C:\WINDOWS\Installer\2d7bd0ee.msi [2380288] =>.Nero AG
[MD5.D1D928C822203CD401796202A60564B5] [WIS][2018/04/27 23:51:33] (.Epic Games, Inc. - Epic Games Launcher.) -- C:\WINDOWS\Installer\34d9f590.msi [32366592] =>.Epic Games, Inc.
[MD5.7873ACD3BFA53B19469E6AB5606C80FE] [WIS][2015/11/19 10:56:58] (.Epic Games, Inc. - Epic Games Launcher Prerequisites (x64).) -- C:\WINDOWS\Installer\34d9f595.msi [11919360] =>.Epic Games, Inc.
[MD5.85FD4BCF8AB11B6AD113C2A922368EE7] [WIS][2011/07/21 11:27:04] (.Festo AG & Co. KG - FST 4.21.) -- C:\WINDOWS\Installer\421c82.msi [15856128]
[MD5.ADB577C01BDE56E9A36FB46D260329C8] [WIS][2017/04/08 19:28:01] (.VMware, Inc. - VMware Workstation.) -- C:\WINDOWS\Installer\43b2f88d.msi [409083904] =>.VMware, Inc.
[MD5.50EA7A4D9481B12A97070942F474D918] [WIS][2018/05/16 21:52:25] (.Google Inc. - Google Update Helper.) -- C:\WINDOWS\Installer\4a64dfa.msi [40960] =>.Google Inc.
[MD5.BDE0D76EF26B78395DB2A35F77A98995] [WIS][2014/08/11 07:42:24] (.Hewlett-Packard - HP Update.) -- C:\WINDOWS\Installer\4e05a.msi [966656] =>.Hewlett-Packard
[MD5.EA41AD58B9B965766101B4742D8B912D] [WIS][2014/11/07 02:55:36] (.Hewlett Packard - HP DeskJet 3630 series Get product specific.) -- C:\WINDOWS\Installer\4e060.msi [163840] =>.Hewlett Packard
[MD5.7B73D800C47F36DA6C3E804D34E4B855] [WIS][2008/04/15 14:35:46] (.Dassault Systemes - Dassault Systemes Prerequisites (8.1.3).) -- C:\WINDOWS\Installer\57c3dcb.msi [8513024] =>.Dassault Systemes
[MD5.F81764B70AF127C5AD95764F8EE6A546] [WIS][2009/03/24 13:36:14] (.MTI.) -- C:\WINDOWS\Installer\5b2a314.msi [4230144]
[MD5.12B16E46161E02A01458D1E27BC7497D] [WIS][2018/06/12 00:10:41] (.Kaspersky Lab - Kaspersky Total Security.) -- C:\WINDOWS\Installer\61baa1.msi [11046912] =>.Kaspersky Lab
[MD5.01BBFE2E88B704B5B6853C08E21BE278] [WIS][2016/04/20 13:32:20] (.NNG Llc..) -- C:\WINDOWS\Installer\701e11b.msi [4228608] =>.NNG Llc.
[MD5.5EE609A2EEC40D710274413D4DD40ABB] [WIS][2017/07/18 03:57:03] (.Adobe Systems Incorporated - PDF Settings CS6.) -- C:\WINDOWS\Installer\7daa80e.msi [2259968] =>.Adobe Systems Incorporated
[MD5.BAB85911E99F454B8231466E33969F7C] [WIS][2017/11/02 12:18:13] (.Microleaves - Online Application.) -- C:\WINDOWS\Installer\94a126.msi [2806272] =>.SUP.Microleaves
[MD5.56C688583DAAF10C8C9B137524AC1B69] [WIS][2018/06/24 14:18:42] (.SystemaRev - RevServicesX.) -- C:\WINDOWS\Installer\94a12b.msi [2101248] =>Trojan.Agent
[MD5.FB4C0F152C7F5A3DDF3FEDDCC739F207] [WIS][2018/05/11 22:00:08] (.SafeNet, Inc. - Sentinel Protection Installer 7.4.0.) -- C:\WINDOWS\Installer\9e4c0c6.msi [6024192] =>.SafeNet, Inc.
[MD5.66C870FDB2781782F568E893944FDBD5] [WIS][2017/08/31 15:27:28] (.Kaspersky Lab - Kaspersky Secure Connection.) -- C:\WINDOWS\Installer\ad7bc.msi [9408512] =>.Kaspersky Lab
[MD5.6EB9C243AF9E5A637EA63C428126ACB8] [WIS][2017/02/03 00:34:18] (.Nitro - Nitro Pro 10.5.4.16.) -- C:\WINDOWS\Installer\cc144.msi [449462272] =>.Nitro
[MD5.9324990235C300079A92CF12CEA14525] [WIS][2016/09/15 18:34:54] (.Siemens AG - TIA Shared Component setup.) -- C:\WINDOWS\Installer\cc914.msi [5614080] =>.Siemens AG
[MD5.A8D557A8B3C9B7326FEE25DB65006D2A] [WIS][2016/09/15 18:34:54] (.Siemens AG - TIA Shared Component setup.) -- C:\WINDOWS\Installer\cc919.msi [4109824] =>.Siemens AG
[MD5.C55CF4FFFB165156B7360F3B0E408249] [WIS][2016/09/15 18:34:38] (.Siemens AG - TIA Product Setup.) -- C:\WINDOWS\Installer\cc974.msi [19419136] =>.Siemens AG
[MD5.590F3481341586A5DE524730FE909918] [WIS][2016/09/15 21:13:00] (.Siemens AG - TIA Shared Component setup.) -- C:\WINDOWS\Installer\cc979.msi [5535744] =>.Siemens AG
[MD5.E42AB43259B70CFF268F18392EAE45D4] [WIS][2016/09/15 21:38:12] (.Siemens AG - TIA Product Setup.) -- C:\WINDOWS\Installer\cc97f.msi [14168064] =>.Siemens AG
[MD5.72511671E114A6BB70F781B165A5FAB0] [WIS][2016/09/15 21:13:34] (.Siemens AG - TIA Shared Component setup.) -- C:\WINDOWS\Installer\cc985.msi [4284928] =>.Siemens AG
[MD5.97D74874AD23944CDE7584FCD6A7ACD5] [WIS][2016/09/15 21:36:46] (.Siemens AG - MUSERVER.) -- C:\WINDOWS\Installer\cc9a3.msi [4016640] =>.Siemens AG
[MD5.74EA85EA3AB702E590B2A6A82ECE0524] [WIS][2017/02/16 22:38:49] (.Powersim - PSIM 9.0.) -- C:\WINDOWS\Installer\d0f4ef.msi [71154176] =>.Powersim
[MD5.330496CA9D4827FF53BC89F099EE83A2] [WIS][2017/12/27 08:35:31] (.Labcenter Electronics - Proteus 8 Professional.) -- C:\WINDOWS\Installer\d96594a.msi [6351872] =>.Labcenter Electronics
[MD5.7B73D800C47F36DA6C3E804D34E4B855] [WIS][2008/04/15 14:35:46] (.Dassault Systemes - Dassault Systemes Prerequisites (8.1.3).) -- C:\WINDOWS\Installer\df9ca45.msi [8513024] =>.Dassault Systemes
[MD5.2AD8B7E6343C87332B01CD9CED16B2AE] [WIS][2007/10/24 09:06:22] (.jjames - Visual Basic for Applications (R) Core - En.) -- C:\WINDOWS\Installer\df9ca52.msi [5172736] =>.jjames
[MD5.2E62A656AACE90995CDCF9039C9BFC8F] [WIS][2018/05/26 17:20:59] (.PC Remote - PC Remote Server - Installer.) -- C:\WINDOWS\Installer\e1829.msi [1183744] =>.PC Remote
[MD5.6D26AC031A53B7E7ED352A57132E7CE8] [WIS][2017/09/14 02:18:25] (.Adobe Systems Incorporated - Adobe AIR Installer.) -- C:\WINDOWS\Installer\eff0f.msi [45056] =>.Adobe Systems Incorporated
[MD5.28B4CF001B7C8143AD9D6455031D618D] [WIS][2017/09/12 12:32:50] (.AxCrypt AB - AxCrypt 2.1.1541.0.) -- C:\WINDOWS\Installer\f5948dd.msi [3424256] =>.AxCrypt AB
[MD5.834919D74149700138C36FB0483F2753] [WIS][2017/12/14 14:08:19] (.Kaspersky Lab.) -- C:\WINDOWS\Installer\10bc739.msp [65536] =>.Kaspersky Lab
[MD5.BDD814128A73CC48D0F7386E1536D1D3] [WIS][2018/06/12 00:50:33] (.Kaspersky Lab.) -- C:\WINDOWS\Installer\c531b.msp [53248] =>.Kaspersky Lab
[MD5.62FCFD32A396FE4FA327499AFA790DCE] [WIS][2018/06/12 00:51:08] (.Kaspersky Lab.) -- C:\WINDOWS\Installer\c5321.msp [17260544] =>.Kaspersky Lab

---\\ FEATURE CONTROLE. (887) - 2s
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:AppSharingHookController64.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:UNPUXHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:CamtasiaStudio.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:AppSharingHookController64.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:AppSharingHookController64.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:AppSharingHookController64.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:AppSharingHookController64.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:AppSharingHookController64.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:AppSharingHookController64.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:AppSharingHookController64.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:AppSharingHookController64.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:AppSharingHookController64.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:AppSharingHookController64.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:AppSharingHookController64.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:AppSharingHookController64.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:AppSharingHookController64.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:AppSharingHookController64.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:AppSharingHookController64.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OUTLOOK.EXE =>.Legitimate

---\\ SCAN ADDITIONNEL (51) - 34s
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F710F7E5-A520-471D-989C-F653AC328FB2} =>.SUP.Orphan
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F710F7E5-A520-471D-989C-F653AC328FB2} =>.SUP.Orphan
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F710F7E5-A520-471D-989C-F653AC328FB2} =>.SUP.Orphan
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Festo Fluidsim_is1 =>.SUP.MyCompanyInc
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Festo Fluidsim_is1 =>.SUP.MyCompanyInc
C:\Program Files\KMSpico =>HackTool.KMSpico
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico =>HackTool.KMSpico
C:\Users\Issam\AppData\Roaming\HMYGSetting =>Adware.Suspect
C:\Users\Issam\AppData\Local\AdvinstAnalytics =>.SUP.Various
C:\Users\Issam\AppData\Local\XService =>Adware.Razy
C:\Users\Issam\Desktop\KMSpico 10.2.0 Final + Portable =>HackTool.KMSpico
C:\WINDOWS\Prefetch\FASST.EXE-11237F9D.pf =>PUP.Optional.FAssistant
C:\WINDOWS\Prefetch\FASTDATAX.EXE-1623E353.pf =>Adware.FastDataX
HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\VMDiskMenuHandler =>.SUP.Orphan
HKLM\Software\Classes\CLSID\{271DC252-6FE1-4D59-9053-E4CF50AB99DE} =>.SUP.Orphan
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{5C04BA7E-C1BD-4305-9EA5-EBA492A920B2} =>HackTool.KMSpico
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{A7312912-2E86-4269-9742-0E863FC7B82D} =>HackTool.KMSpico
HKLM\SOFTWARE\Wow6432Node\Classes\Installer\Products\0F18D018844491942BA94B5A53FEE0DF =>Trojan.Agent
HKLM\SOFTWARE\Wow6432Node\Classes\Installer\Features\0F18D018844491942BA94B5A53FEE0DF =>Trojan.Agent
HKLM\SOFTWARE\Wow6432Node\Classes\Installer\Products\436F6625D7B77354DBCD89DDC6CFAB1A =>.SUP.Microleaves
HKLM\SOFTWARE\Wow6432Node\Classes\Installer\Features\436F6625D7B77354DBCD89DDC6CFAB1A =>.SUP.Microleaves
C:\WINDOWS\Installer\94a126.msi =>.SUP.Microleaves
C:\WINDOWS\Installer\94a12b.msi =>Trojan.Agent
C:\Program Files (x86)\Common Files\cnex-demo.exe =>Heuristic.Suspect
C:\Program Files (x86)\Common Files\cnex.exe =>Heuristic.Suspect
C:\Users\Issam\AppData\Local\Google\Chrome\User Data\Default\File System\000 =>.SUP.Temporary.Chrome
C:\Users\Issam\AppData\Local\Google\Chrome\User Data\Default\File System\001 =>.SUP.Temporary.Chrome
C:\Users\Issam\AppData\Local\Google\Chrome\User Data\Default\File System\002 =>.SUP.Temporary.Chrome
C:\Users\Issam\AppData\Local\Google\Chrome\User Data\Default\File System\003 =>.SUP.Temporary.Chrome
C:\Users\Issam\AppData\Local\Google\Chrome\User Data\Default\File System\004 =>.SUP.Temporary.Chrome
C:\Users\Issam\AppData\Local\Google\Chrome\User Data\Default\File System\005 =>.SUP.Temporary.Chrome
C:\Users\Issam\AppData\Local\Google\Chrome\User Data\Default\File System\006 =>.SUP.Temporary.Chrome
C:\Users\Issam\AppData\Local\Google\Chrome\User Data\Default\File System\007 =>.SUP.Temporary.Chrome
C:\Users\Issam\AppData\Local\Google\Chrome\User Data\Default\File System\008 =>.SUP.Temporary.Chrome
C:\Users\Issam\AppData\Local\Google\Chrome\User Data\Default\File System\009 =>.SUP.Temporary.Chrome
C:\Users\Issam\AppData\Local\Google\Chrome\User Data\Default\File System\010 =>.SUP.Temporary.Chrome
C:\Users\Issam\AppData\Local\Google\Chrome\User Data\Default\File System\011 =>.SUP.Temporary.Chrome
C:\Users\Issam\AppData\Local\Google\Chrome\User Data\Default\File System\012 =>.SUP.Temporary.Chrome
C:\Users\Issam\AppData\Local\Google\Chrome\User Data\Default\File System\013 =>.SUP.Temporary.Chrome
C:\Users\Issam\AppData\Local\Google\Chrome\User Data\Default\File System\014 =>.SUP.Temporary.Chrome
C:\Users\Issam\AppData\Local\Google\Chrome\User Data\Default\File System\015 =>.SUP.Temporary.Chrome
C:\Users\Issam\AppData\Local\Google\Chrome\User Data\Default\File System\016 =>.SUP.Temporary.Chrome
C:\Users\Issam\AppData\Local\Google\Chrome\User Data\Default\File System\017 =>.SUP.Temporary.Chrome
C:\Users\Issam\AppData\Local\Google\Chrome\User Data\Default\File System\018 =>.SUP.Temporary.Chrome
C:\Users\Issam\AppData\Local\Google\Chrome\User Data\Default\File System\019 =>.SUP.Temporary.Chrome
C:\Users\Issam\AppData\Local\Google\Chrome\User Data\Default\File System\020 =>.SUP.Temporary.Chrome
C:\Users\Issam\AppData\Local\Google\Chrome\User Data\Default\File System\021 =>.SUP.Temporary.Chrome
C:\Users\Issam\AppData\Local\Google\Chrome\User Data\Default\File System\022 =>.SUP.Temporary.Chrome
C:\Users\Issam\AppData\Local\Google\Chrome\User Data\Default\File System\023 =>.SUP.Temporary.Chrome
C:\Users\Issam\AppData\Local\Google\Chrome\User Data\Default\File System\024 =>.SUP.Temporary.Chrome
C:\Users\Issam\AppData\Local\Google\Chrome\User Data\Default\File System\025 =>.SUP.Temporary.Chrome

---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS SUR VOTRE STATION (15) - 1s
https://nicolascoolman.eu/2017/11/10/hijacker-browser-3/ =>Hijacker.Browser
https://nicolascoolman.eu/2017/04/03/hijacker-proxy/ =>Hijacker.Proxy
https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>BitTorrent (P2P)
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.MyCompanyInc
https://nicolascoolman.eu/2017/12/24/sup-microleaves/ =>.SUP.Microleaves
https://nicolascoolman.eu/2017/02/16/hacktool-kmspico/ =>HackTool.KMSpico
https://nicolascoolman.eu/2017/03/02/adware-suspect/ =>Adware.Suspect
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Various
https://www.anti-malware.top/2016/11/04/adware-razy/ =>Adware.Razy
https://nicolascoolman.eu/2018/06/11/pup-optional-fassistant/ =>PUP.Optional.FAssistant
https://nicolascoolman.eu/2017/06/21/adware-fastdatax/ =>Adware.FastDataX
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Trojan.Agent
https://nicolascoolman.eu/2017/01/28/heuristic-suspect/ =>Heuristic.Suspect
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary.Chrome

~ Unselected Options: O82,
~ End of the scan, 41111 items in 10mn35s (3405)(0)

Publicité


Signaler le contenu de ce document

Publicité