cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2019.3.28.40 Par Nicolas Coolman (2019/03/28)
~ Démarré par tofik (Administrator) (2019/04/01 15:45:34)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Certificate ZHPDiag: Legal
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\tofik\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\tofik\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 7 Ultimate, 32-bit Service Pack 1 (Build 7601) =>.Microsoft Corporation

---\\ NAVIGATEURS INTERNET (2) - 0s
~ GCIE: Google Chrome v73.0.3683.86
~ MSIE: Internet Explorer v8.0.7601.17514

---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (4) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK
Windows Activation Technologies : KO

---\\ SURVEILLANCE LOGICIEL (1) - 0s
~ Adobe Flash Player 32 PPAPI (Surveillance)

---\\ LOGICIELS DE PARTAGE P2P (1) - 0s
~ µTorrent v3.5.5.45146 (P2P)

---\\ INFORMATIONS SUR LE SYSTÈME (6) - 0s
~ Operating System: x86 Family 6 Model 58 Stepping 9, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 2772.872 MB (16% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 17 GB (9%) free of 176 GB : ATTENTION =>Warning Disk Space

---\\ MODE DE CONNEXION AU SYSTÈME (3) - 0s
~ Computer Name: TOFIK-PC
~ User Name: tofik
~ Logged in as Administrator

---\\ ÉNUMÉRATION DES UNITÉS DE STOCKAGE (3) - 0s
~ Drive C: has 17 GB free of 176 GB (System)
~ Drive D: has 23 GB free of 476 GB
~ Drive E: has 90 GB free of 300 GB

---\\ ÉTAT DU CENTRE DE SÉCURITÉ WINDOWS (14) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ RECHERCHE PARTICULIÈRE DE FICHIERS GÉNÉRIQUES (25) - 1s
[MD5.40D777B7A95E00593EB1568C68514493] - 20/11/2010 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2616320] =>.Microsoft Corporation
[MD5.51138BEEA3E2C21EC44D0932C71762A8] - 14/07/2009 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [44544] =>.Microsoft Corporation
[MD5.B5C5DCAD3899512020D135600129D665] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [96256] =>.Microsoft Corporation
[MD5.44214C94911C7CFB1D52CB64D5E8368D] - 20/11/2010 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [980992] =>.Microsoft Corporation
[MD5.6D13E1406F50C66E2A95D97F22C47560] - 20/11/2010 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [286720] =>.Microsoft Corporation
[MD5.E3AE23569749DE12D45BA3B489A036AE] - 20/11/2010 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [193536] =>.Microsoft Corporation
[MD5.59DF156711A76BCB993253EC6C9BBF41] - 20/11/2010 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [270336] =>.Microsoft Corporation
[MD5.129F80D7868E30DF3E3DE33A1D3132B4] - 20/11/2010 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation
[MD5.1151FD4FB0216CFED887BFDE29EBD516] - 20/11/2010 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [338944] =>.Microsoft Corporation
[MD5.338C86357871C167A96AB976519BF59E] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [21584] =>.Microsoft Windows®
[MD5.77EA11B065E0A8AB902D78145CA51E10] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [70656] =>.Microsoft Corporation
[MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - 20/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [108544] =>.Microsoft Corporation
[MD5.F024449C97EC1E464AAFFDA18593DB88] - 20/11/2010 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [78336] =>.Microsoft Corporation
[MD5.9036377B8A6C15DC2EEC53E489D159B5] - 20/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [108544] =>.Microsoft Corporation
[MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - 14/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [80896] =>.Microsoft Corporation
[MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [101888] =>.Microsoft Corporation
[MD5.B272B4C3E085EA860C12F2E4FAF2FFA2] - 20/11/2010 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [123904] =>.Microsoft Corporation
[MD5.280122DDCF04B378EDD1AD54D71C1E54] - 20/11/2010 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [187904] =>.Microsoft Corporation
[MD5.33C3093D09017CFE2E219F2472BFF6EB] - 20/11/2010 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1211264] =>.Microsoft Windows®
[MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [79360] =>.Microsoft Corporation
[MD5.D9F91EAFEC2815365CBE6D167E4E332A] - 14/07/2009 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [78848] =>.Microsoft Corporation
[MD5.B973FCFC50DC1434E1970A146F7E3885] - 20/11/2010 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [133632] =>.Microsoft Corporation
[MD5.3E21C083B8A01CB70BA1F09303010FCE] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [71168] =>.Microsoft Corporation
[MD5.B459575348C20E8121D6039DA063C704] - 20/11/2010 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [74752] =>.Microsoft Corporation
[MD5.F497F67932C6FA693D7DE2780631CFE7] - 20/11/2010 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [245632] =>.Microsoft Windows®

---\\ LISTE DES SERVICES (Non désactivés) (52) - 15s
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
O23 - Service: C:\Windows\System32\audiosrv.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Service Audio Windows.) - C:\Windows\System32\audiosrv.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\audiosrv.dll (Audiosrv) . (.Microsoft Corporation - Service Audio Windows.) - C:\Windows\System32\audiosrv.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\BFE.DLL (BFE) . (.Microsoft Corporation - Moteur de filtrage de base.) - C:\Windows\System32\BFE.DLL =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\qmgr.dll (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) - C:\Windows\System32\qmgr.dll =>.Microsoft Corporation
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
O23 - Service: Microsoft .NET Framework NGEN v4.0.30319_X86 (clr_optimization_v4.0.30319_32) . (.Microsoft Corporation - .NET Runtime Optimization Service.) - C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe =>.Microsoft Dynamic Code Publisher®
O23 - Service: C:\Windows\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Services de chiffrement.) - C:\Windows\System32\cryptsvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\cscsvc.dll (CscService) . (.Microsoft Corporation - DLL du service CSC.) - C:\Windows\System32\cscsvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - Service client DHCP.) - C:\Windows\System32\dhcpcore.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - Service de résolution du cache DNS.) - C:\Windows\System32\dnsrslvr.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wevtsvc.dll (eventlog) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft Corporation
O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Service de cache de police Windows.) - C:\Windows\System32\FntCache.dll =>.Microsoft Corporation
O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) - C:\Windows\System32\gpsvc.dll =>.Microsoft Corporation
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\Windows\System32\igfxCUIService.exe =>.Intel Corporation®
O23 - Service: C:\Windows\System32\IKEEXT.DLL (IKEEXT) . (.Microsoft Corporation - Extension IKE.) - C:\Windows\System32\IKEEXT.DLL =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) - C:\Windows\System32\iphlpsvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - DLL du service Serveur.) - C:\Windows\System32\srvsvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - DLL du service Station de travail.) - C:\Windows\System32\wkssvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\lmhsvc.dll (lmhosts) . (.Microsoft Corporation - DLL des services de transport NetBIOS sur T.) - C:\Windows\System32\lmhsvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\mmcss.dll (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) - C:\Windows\System32\mmcss.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\FirewallAPI.dll (MpsSvc) . (.Microsoft Corporation - Service de protection Microsoft.) - C:\Windows\System32\MPSSVC.dll =>.Microsoft Corporation
O23 - Service: @C:\Program Files\Nero\Update\NASvc.exe,-200 (NAUpdate) . (.Nero AG - NeroUpdate.) - C:\Program Files\Nero\Update\NASvc.exe =>.Nero AG®
O23 - Service: C:\Windows\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Connaissance des emplacements réseau 2.) - C:\Windows\System32\nlasvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Serveur RPC de l’interface du magasin résea.) - C:\Windows\System32\nsisvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\pcasvc.dll (PcaSvc) . (.Microsoft Corporation - Service de l’Assistant Compatibilité des pr.) - C:\Windows\System32\pcasvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\umpnpmgr.dll (PlugPlay) . (.Microsoft Corporation - Service mode utilisateur de Plug-and-Play.) - C:\Windows\System32\umpnpmgr.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\umpo.dll (Power) . (.Microsoft Corporation - Service d’alimentation en mode utilisateur.) - C:\Windows\System32\umpo.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\Windows\System32\profsvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - Mappeur de point de terminaison RPC.) - C:\Windows\System32\RpcEpMap.dll =>.Microsoft Corporation
O23 - Service: @oleres.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\Windows\System32\rpcss.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) - C:\Windows\System32\schedsvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\seclogon.dll (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) - C:\Windows\System32\seclogon.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\Sens.dll (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) - C:\Windows\System32\Sens.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) - C:\Windows\System32\shsvcs.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Application sous-système spouleur.) - C:\Windows\System32\spoolsv.exe =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Service de la plateforme de protection logi.) - C:\Windows\System32\sppsvc.exe =>.Microsoft Corporation
O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) . (.DEVGURU Co., LTD. - MSS CS Connectivity Service.) - C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe =>.Samsung Electronics CO., LTD.®
O23 - Service: C:\Windows\System32\wiaservc.dll (StiSvc) . (.Microsoft Corporation - Service de périphériques d’images fixes.) - C:\Windows\System32\wiaservc.dll =>.Microsoft Corporation
O23 - Service: (TenorshareDataRecoveryService) . (...) - C:\Program Files\Tenorshare Any Data Recovery\service\TenorshareDataRecoveryService (.not file.)
O23 - Service: C:\Windows\System32\themeservice.dll (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) - C:\Windows\System32\themeservice.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dwm.exe,-2000 (UxSms) . (.Microsoft Corporation - Microsoft User Experience Session Managemen.) - C:\Windows\System32\uxsms.dll =>.Microsoft Corporation
O23 - Service: @%ProgramFiles%\Windows Defender\MsMpRes.dll,-103 (WinDefend) . (.Microsoft Corporation - Service Module.) - C:\Program Files\Windows Defender\MpSvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wbem\WMIsvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\Windows\System32\wbem\WMIsvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wlansvc.dll (Wlansvc) . (.Microsoft Corporation - DLL du service de configuration automatique.) - C:\Windows\System32\wlansvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Service Centre de sécurité de Windows.) - C:\Windows\System32\wscsvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - C:\Windows\System32\SearchIndexer.exe =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) - C:\Windows\System32\wuaueng.dll =>.Microsoft Windows Component Publisher®
O23 - Service: C:\Windows\System32\WUDFSvc.dll (wudfsvc) . (.Microsoft Corporation - Windows Driver Foundation - Service d’infra.) - C:\Windows\System32\WUDFSvc.dll =>.Microsoft Corporation
O23 - Service: zksrvc (zkservice) . (.ZhangKong Soft - zk core service.) - C:\Program Files\zksoft\marswifi\zkservice.exe =>.Zhangkong Internet Technology Co., Ltd.®

---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (76) - 122s
SR - Demand [14/07/2009] [ 422976] (adp94xx) . (.Adaptec, Inc..) - C:\Windows\System32\drivers\adp94xx.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 297552] (adpahci) . (.Adaptec, Inc..) - C:\Windows\System32\drivers\adpahci.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 146512] (adpu320) . (.Adaptec, Inc..) - C:\Windows\System32\drivers\adpu320.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 70720] (aic78xx) . (.Adaptec, Inc..) - C:\Windows\System32\drivers\djsvs.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 14400] (aliide) . (.Acer Laboratories Inc..) - C:\Windows\System32\drivers\aliide.sys =>.Microsoft Windows®
SR - Demand [20/11/2010] [ 80256] (amdsata) . (.Advanced Micro Devices.) - C:\Windows\System32\drivers\amdsata.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 159312] (amdsbs) . (.AMD Technologies Inc..) - C:\Windows\System32\drivers\amdsbs.sys =>.Microsoft Windows®
SR - Boot [20/11/2010] [ 22400] (amdxata) . (.Advanced Micro Devices.) - C:\Windows\System32\drivers\amdxata.sys =>.Microsoft Windows®
SR - Auto [16/10/2018] [ 67896] Apple Mobile Device (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
SR - Demand [14/07/2009] [ 76368] (arc) . (.Adaptec, Inc..) - C:\Windows\System32\drivers\arc.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 86608] (arcsas) . (.Adaptec, Inc..) - C:\Windows\System32\drivers\arcsas.sys =>.Microsoft Windows®
SR - Demand [13/07/2009] [ 430080] Broadcom NetXtreme II VBD (b06bdrv) . (.Broadcom Corporation.) - C:\Windows\System32\drivers\bxvbdx.sys =>.Broadcom Corporation
SR - Demand [13/07/2009] [ 229888] Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0 (b57nd60x) . (.Broadcom Corporation.) - C:\Windows\System32\drivers\b57nd60x.sys =>.Broadcom Corporation
SR - Demand [07/11/2015] [ 9445152] Pilote pour carte réseau Broadcom 802.11 (BCM43XX) . (.Broadcom Corporation.) - C:\Windows\System32\drivers\BCMWL6.SYS =>.Broadcom Corporation®
SR - Auto [12/08/2015] [ 390416] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
SR - Demand [13/07/2009] [ 13568] Brother USB Mass-Storage Lower Filter Driver (BrFiltLo) . (.Brother Industries, Ltd..) - C:\Windows\System32\drivers\BrFiltLo.sys =>.Brother Industries, Ltd.
SR - Demand [13/07/2009] [ 5248] Brother USB Mass-Storage Upper Filter Driver (BrFiltUp) . (.Brother Industries, Ltd..) - C:\Windows\System32\drivers\BrFiltUp.sys =>.Brother Industries, Ltd.
SR - Demand [14/07/2009] [ 272128] Brother MFC Serial Port Interface Driver (WDM) (Brserid) . (.Brother Industries Ltd..) - C:\Windows\System32\drivers\BrSerId.sys =>.Brother Industries Ltd.
SR - Demand [13/07/2009] [ 62336] Brother WDM Serial driver (BrSerWdm) . (.Brother Industries Ltd..) - C:\Windows\System32\drivers\BrSerWdm.sys =>.Brother Industries Ltd.
SR - Demand [13/07/2009] [ 12160] Brother MFC USB Fax Only Modem (BrUsbMdm) . (.Brother Industries Ltd..) - C:\Windows\System32\drivers\BrUsbMdm.sys =>.Brother Industries Ltd.
SR - Demand [13/07/2009] [ 11904] Brother MFC USB Serial WDM Driver (BrUsbSer) . (.Brother Industries Ltd..) - C:\Windows\System32\drivers\BrUsbSer.sys =>.Brother Industries Ltd.
SS - Demand [26/10/2012] [ 462703] BrYNSvc (BrYNSvc) . (.Brother Industries, Ltd..) - C:\Program Files\Browny02\BrYNSvc.exe =>.Brother Industries, Ltd.
SR - Demand [00/00/0000] [ 0] (catchme) . (...) - C:\Users\tofik\AppData\Local\Temp\catchme.sys (.not file.)
SR - Demand [14/07/2009] [ 15952] (cmdide) . (.CMD Technology, Inc..) - C:\Windows\System32\drivers\cmdide.sys =>.Microsoft Windows®
SS - Demand [13/09/2018] [ 376296] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\System32\IntelCpHeciSvc.exe =>.Intel Corporation®
SR - Demand [00/00/0000] [ 0] cpuz143 (cpuz143) . (...) - C:\Windows\temp\cpuz143\cpuz143_x32.sys (.not file.)
SR - Demand [18/05/2017] [ 109456] SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.) (dg_ssudbus) . (.Samsung Electronics Co., Ltd..) - C:\Windows\System32\drivers\ssudbus.sys =>.Samsung Electronics Co., Ltd.®
SR - Demand [13/07/2009] [ 3100160] Broadcom NetXtreme II 10 GigE VBD (ebdrv) . (.Broadcom Corporation.) - C:\Windows\System32\drivers\evbdx.sys =>.Broadcom Corporation
SR - Demand [14/07/2009] [ 453712] (elxstor) . (.Emulex.) - C:\Windows\System32\drivers\elxstor.sys =>.Microsoft Windows®
SR - Demand [22/10/2018] [ 21960] epmntdrv (epmntdrv) . (...) - C:\Windows\System32\epmntdrv.sys =>.CHENGDU YIWO Tech Development Co., Ltd.®
SR - Boot [18/10/2018] [ 17992] EPMVolFlt (EPMVolFlt) . (.Windows (R) Codename Longhorn DDK provider.) - C:\Windows\System32\drivers\EPMVolFlt.sys =>.CHENGDU YIWO Tech Development Co., Ltd.®
SR - Demand [10/12/2018] [ 14088] EuGdiDrv (EuGdiDrv) . (...) - C:\Windows\System32\EuGdiDrv.sys =>.CHENGDU YIWO Tech Development Co., Ltd.®
SR - Demand [27/05/2016] [ 17696] Gaming Optical Mouse 01 (GMLXDFltr01) . (.LXD Development, Inc..) - C:\Windows\System32\drivers\GMLXDFltr01.sys =>.Microsoft Windows Hardware Compatibility Publisher®
SS - Demand [20/03/2019] [ 1048048] Google Chrome Elevation Service (GoogleChromeElevationService) . (.Google Inc..) - C:\Program Files\Google\Chrome\Application\73.0.3683.86\elevation_service.exe =>.Google LLC®
SR - Auto [04/12/2018] [ 153168] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [04/12/2018] [ 153168] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
SR - Demand [13/07/2009] [ 26624] Hauppauge Consumer Infrared Receiver (hcw85cir) . (.Hauppauge Computer Works, Inc..) - C:\Windows\System32\drivers\hcw85cir.sys =>.Hauppauge Computer Works, Inc.
SR - Demand [14/07/2009] [ 67152] (HpSAMD) . (.Hewlett-Packard Company.) - C:\Windows\System32\drivers\HpSAMD.sys =>.Microsoft Windows®
SR - Boot [05/03/2013] [ 527344] (iaStorA) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaStorA.sys =>.Intel Corporation - Intel® Rapid Storage Technology®
SR - Boot [05/03/2013] [ 26096] (iaStorF) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaStorF.sys =>.Intel Corporation - Intel® Rapid Storage Technology®
SR - Demand [20/11/2010] [ 332160] Contrôleur RAID Intel Windows 7 (iaStorV) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaStorV.sys =>.Microsoft Windows®
SR - Auto [17/10/2016] [ 147120] IDMWFP (IDMWFP) . (.Tonec Inc..) - C:\Windows\System32\drivers\idmwfp.sys =>.Tonec Inc.®
SR - Demand [13/09/2018] [ 3038032] (igfx) . (.Intel Corporation.) - C:\Windows\System32\drivers\igdkmd32.sys =>.Intel Corporation®
SR - Auto [13/09/2018] [ 272872] Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation.) - C:\Windows\System32\igfxCUIService.exe =>.Intel Corporation®
SR - Demand [14/07/2009] [ 41040] (iirsp) . (.Intel Corp./ICP vortex GmbH.) - C:\Windows\System32\drivers\iirsp.sys =>.Microsoft Windows®
SR - Demand [07/11/2018] [ 4995688] Service for Realtek HD Audio (WDM) (IntcAzAudAddService) . (.Realtek Semiconductor Corp..) - C:\Windows\System32\drivers\RTKVHDA.sys =>.Realtek Semiconductor Corp.®
SR - Demand [21/08/2015] [ 379128] Son Intel(R) pour écrans (IntcDAud) . (.Intel(R) Corporation.) - C:\Windows\System32\drivers\IntcDAud.sys =>.Intel Corporation - Client Components Group®
SR - Demand [14/07/2009] [ 95824] (LSI_FC) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_fc.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 89168] (LSI_SAS) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_sas.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 54864] (LSI_SAS2) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_sas2.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 96848] (LSI_SCSI) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_scsi.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 30800] (megasas) . (.LSI Corporation.) - C:\Windows\System32\drivers\megasas.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 235584] (MegaSR) . (.LSI Corporation, Inc..) - C:\Windows\System32\drivers\MegaSR.sys =>.Microsoft Windows®
SR - Auto [25/03/2010] [ 490280] @C:\Program Files\Nero\Update\NASvc.exe,-200 (NAUpdate) . (.Nero AG.) - C:\Program Files\Nero\Update\NASvc.exe =>.Nero AG®
SR - Demand [14/07/2009] [ 44624] (nfrd960) . (.IBM Corporation.) - C:\Windows\System32\drivers\nfrd960.sys =>.Microsoft Windows®
SR - Demand [20/11/2010] [ 117120] (nvraid) . (.NVIDIA Corporation.) - C:\Windows\System32\drivers\nvraid.sys =>.Microsoft Windows®
SR - Demand [20/11/2010] [ 143744] (nvstor) . (.NVIDIA Corporation.) - C:\Windows\System32\drivers\nvstor.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 1383488] (ql2300) . (.QLogic Corporation.) - C:\Windows\System32\drivers\ql2300.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 106064] (ql40xx) . (.QLogic Corporation.) - C:\Windows\System32\drivers\ql40xx.sys =>.Microsoft Windows®
SR - Demand [26/10/2017] [ 299968] Realtek PCIE CardReader Driver (RSPCIESTOR) . (.Realtek Semiconductor Corp..) - C:\Windows\System32\drivers\RtsPStor.sys =>.Realtek Semiconductor Corp.®
SR - Demand [19/05/2015] [ 731904] Realtek 8167 NT Driver (RTL8167) . (.Realtek.) - C:\Windows\System32\drivers\Rt86win7.sys =>.Realtek Semiconductor Corp®
SR - Demand [15/01/2012] [ 10752] Sony Firmware Extension Parser (SFEP) . (.Sony Corporation.) - C:\Windows\System32\drivers\SFEP.sys =>.Sony Corporation
SR - Demand [14/07/2009] [ 40016] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\Windows\System32\drivers\sisraid2.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 77888] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\Windows\System32\drivers\sisraid4.sys =>.Microsoft Windows®
SR - Demand [16/01/2017] [ 147072] SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.) (ssudmdm) . (.Samsung Electronics Co., Ltd..) - C:\Windows\System32\drivers\ssudmdm.sys =>.Samsung Electronics CO., LTD.®
SR - Auto [16/01/2017] [ 752224] SAMSUNG Mobile Connectivity Service (ss_conn_service) . (.DEVGURU Co., LTD..) - C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe =>.Samsung Electronics CO., LTD.®
SR - Demand [14/07/2009] [ 21072] (stexstor) . (.Promise Technology.) - C:\Windows\System32\drivers\stexstor.sys =>.Microsoft Windows®
SR - Auto [00/00/0000] [ 0] (TenorshareDataRecoveryService) . (...) - C:\Program Files\Tenorshare Any Data Recovery\service\TenorshareDataRecoveryService (.not file.)
SR - Demand [23/01/2019] [ 1812584] TESMON (TESMON) . (.Tencent.) - C:\Windows\System32\drivers\TesMon.sys =>.Tencent Technology(Shenzhen) Company Limited®
SR - Demand [23/01/2019] [ 178184] tesrsdt (tesrsdt) . (.TENCENT.) - C:\Windows\System32\drivers\tesrsdt.sys =>.Tencent Technology(Shenzhen) Company Limited®
SR - Demand [22/08/2018] [ 45056] Apple Mobile USB Driver (USBAAPL) . (.Apple, Inc..) - C:\Windows\System32\drivers\usbaapl.sys =>.Apple, Inc.
SR - Demand [14/07/2009] [ 16976] (viaide) . (.VIA Technologies, Inc..) - C:\Windows\System32\drivers\viaide.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 141904] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\Windows\System32\drivers\vsmraid.sys =>.Microsoft Windows®
SR - Demand [16/08/2016] [ 128704] (wdm_usb) . (.MBB.) - C:\Windows\System32\drivers\usb2ser.sys =>.MBB
SR - System [04/12/2018] [ 30472] ZK NET Driver (zknetdrv) . (.ZK Internet.) - C:\Windows\System32\drivers\zknetdrv.sys =>.Zhangkong Internet Technology Co., Ltd.®
SR - Auto [04/12/2018] [ 412424] zksrvc (zkservice) . (.ZhangKong Soft.) - C:\Program Files\zksoft\marswifi\zkservice.exe =>.Zhangkong Internet Technology Co., Ltd.®

---\\ TÂCHES PLANIFIÉES EN AUTOMATIQUE (Registre) (12) - 9s
O38 - TASK: {2A164697-1EED-418C-B038-9BF18D51F19B}[\{8CEF1122-B4AA-46E7-94B0-B82995BC8BEE}] - (.Daring Development Inc. - Horizon.) -- C:\Program Files\Daring Development\Horizon\Horizon.exe [18848368] =>.Daring Development Inc.
O38 - TASK: {6479EC5D-D8AB-4DF1-A948-0F07F46EEFBE}[\Apple\AppleSoftwareUpdate] - (.Apple Inc. - Apple Software Update.) -- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [616320] =>.Apple Inc.
O38 - TASK: {7F50A682-DC72-4BE3-A3D3-72521BB7598D}[\GoogleUpdateTaskMachineCore] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc.
O38 - TASK: {88A85C0D-AC38-42DC-9867-0FAB19375AE3}[\Opera scheduled Autoupdate 1543917294] - (.Opera Software - Opera Internet Browser.) -- C:\Users\tofik\AppData\Local\Programs\Opera\launcher.exe [1252440] =>.Opera Software
O38 - TASK: {B59E7643-0F1B-444E-A231-6D29D8C08B5C}[\Adobe Flash Player PPAPI Notifier] - (.Adobe Systems Incorporated - Adobe® Flash® Player Installer/Uninstaller.) -- C:\Windows\System32\Macromed\Flash\FlashUtil32_32_0_0_156_pepper.exe [1453056] =>.Adobe Systems Incorporated
O38 - TASK: {F6AB778D-D573-4C6B-B14B-7012C3CF5DF6}[\GoogleUpdateTaskMachineUA] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc.
C:\Windows\System32\Tasks\{8CEF1122-B4AA-46E7-94B0-B82995BC8BEE} - (.Daring Development Inc..) -- C:\Program Files\Daring Development\Horizon\Horizon.exe [] =>.Daring Development Inc.
C:\Windows\System32\Tasks\Apple\AppleSoftwareUpdate - (.Apple Inc..) -- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [-task] =>.Apple Inc.
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [/c] =>.Google Inc.
C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1543917294 - (.Opera Software.) -- C:\Users\tofik\AppData\Local\Programs\Opera\launcher.exe [--scheduledautoupdate .--scheduledautoupdate] =>.Opera Software
C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\FlashUtil32_32_0_0_156_pepper.exe [-check pepperplugin.-check] =>.Adobe Systems Incorporated
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [/ua ./ua] =>.Google Inc.

---\\ APPLICATIONS LANCÉES AU DÉMARRAGE DU SYSTÈME (13) - 2s
O4 - HKLM\..\Run: [NBAgent] . (.Nero AG - Nero BackItUp.) -- C:\Program Files\Nero\Nero 10\Nero BackItUp\NBAgent.exe =>.Nero AG®
O4 - HKLM\..\Run: [marswifi] . (.ZhangKong Soft - marswifi.) -- C:\Program Files\zksoft\marswifi\marswifi.exe =>.Zhangkong Internet Technology Co., Ltd.®
O4 - HKLM\..\Run: [ControlCenter4] . (.Brother Industries, Ltd. - ControlCenter Launcher.) -- C:\Program Files\ControlCenter4\BrCcBoot.exe =>.Brother Industries, Ltd.
O4 - HKLM\..\Run: [BrStsMon00] . (.Brother Industries, Ltd. - Status Monitor Application.) -- C:\Program Files\Browny02\Brother\BrStMonW.exe =>.Brother Industries, Ltd.
O4 - HKLM\..\Run: [BrHelp] . (.Brother Industries, Ltd. - Brother Help Application.) -- C:\Program Files\Brother\Brother Help\BrotherHelp.exe =>.Brother Industries, Ltd.
O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] . (.Microsoft Corporation - Pense-bête.) -- C:\Windows\System32\StikyNot.exe =>.Microsoft Corporation
O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\tofik\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - HKCU\..\Run: [ultracopier] . (.ultracopier.first-world.info - Supercopier under GPL3.) -- C:\Program Files\Supercopier\supercopier.exe =>.ultracopier.first-world.info
O4 - HKUS\S-1-5-21-3488241406-1234818601-2017772557-1000\..\Run: [RESTART_STICKY_NOTES] . (.Microsoft Corporation - Pense-bête.) -- C:\Windows\System32\StikyNot.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-3488241406-1234818601-2017772557-1000\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - HKUS\S-1-5-21-3488241406-1234818601-2017772557-1000\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\tofik\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - HKUS\S-1-5-21-3488241406-1234818601-2017772557-1000\..\Run: [ultracopier] . (.ultracopier.first-world.info - Supercopier under GPL3.) -- C:\Program Files\Supercopier\supercopier.exe =>.ultracopier.first-world.info

---\\ PROCESSUS LANCÉS (22) - 9s
[MD5.9C01FFCFB161C83E28AE860EC2B95859] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [67896] [PID.656] =>.Apple Inc.®
[MD5.01449DEA300EAA1E00E6F7B17B0ABA9D] - (.Opera Software - Opera Internet Browser.) -- C:\Users\tofik\AppData\Local\Programs\Opera\58.0.3135.127\opera.exe [1531992] [PID.3540] =>.Opera Software AS®
[MD5.FC294F0CB862EAF71CA7843ED03C1525] - (.Opera Software - Opera crash-reporter.) -- C:\Users\tofik\AppData\Local\Programs\Opera\58.0.3135.127\opera_crashreporter.exe [1201240] [PID.3916] =>.Opera Software AS®
[MD5.01449DEA300EAA1E00E6F7B17B0ABA9D] - (.Opera Software - Opera Internet Browser.) -- C:\Users\tofik\AppData\Local\Programs\Opera\58.0.3135.127\opera.exe [1531992] [PID.5324] =>.Opera Software AS®
[MD5.01449DEA300EAA1E00E6F7B17B0ABA9D] - (.Opera Software - Opera Internet Browser.) -- C:\Users\tofik\AppData\Local\Programs\Opera\58.0.3135.127\opera.exe [1531992] [PID.3900] =>.Opera Software AS®
[MD5.01449DEA300EAA1E00E6F7B17B0ABA9D] - (.Opera Software - Opera Internet Browser.) -- C:\Users\tofik\AppData\Local\Programs\Opera\58.0.3135.127\opera.exe [1531992] [PID.4372] =>.Opera Software AS®
[MD5.01449DEA300EAA1E00E6F7B17B0ABA9D] - (.Opera Software - Opera Internet Browser.) -- C:\Users\tofik\AppData\Local\Programs\Opera\58.0.3135.127\opera.exe [1531992] [PID.2328] =>.Opera Software AS®
[MD5.01449DEA300EAA1E00E6F7B17B0ABA9D] - (.Opera Software - Opera Internet Browser.) -- C:\Users\tofik\AppData\Local\Programs\Opera\58.0.3135.127\opera.exe [1531992] [PID.5712] =>.Opera Software AS®
[MD5.01449DEA300EAA1E00E6F7B17B0ABA9D] - (.Opera Software - Opera Internet Browser.) -- C:\Users\tofik\AppData\Local\Programs\Opera\58.0.3135.127\opera.exe [1531992] [PID.2452] =>.Opera Software AS®
[MD5.01449DEA300EAA1E00E6F7B17B0ABA9D] - (.Opera Software - Opera Internet Browser.) -- C:\Users\tofik\AppData\Local\Programs\Opera\58.0.3135.127\opera.exe [1531992] [PID.1324] =>.Opera Software AS®
[MD5.73B04314E8D3421308C3B711C021BA10] - (.ZhangKong Soft - marswifi.) -- C:\Program Files\zksoft\marswifi\marswifi.exe [1729040] [PID.3576] =>.Zhangkong Internet Technology Co., Ltd.®
[MD5.68BA632D420ADBB167A3D7879621BC27] - (.Opera Software - Opera Internet Browser.) -- C:\Users\tofik\AppData\Local\Programs\Opera\launcher.exe [1252440] [PID.1392] =>.Opera Software AS®
[MD5.68BA632D420ADBB167A3D7879621BC27] - (.Opera Software - Opera Internet Browser.) -- C:\Users\tofik\AppData\Local\Programs\Opera\launcher.exe [1252440] [PID.3932] =>.Opera Software AS®
[MD5.B4D0E41924954023075A5484A7E8805C] - (.ZhangKong Soft - zk core service.) -- C:\Program Files\zksoft\marswifi\zkservice.exe [412424] [PID.452] =>.Zhangkong Internet Technology Co., Ltd.®
[MD5.41F2A4C031A17AD74F7585771DBAB2CA] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe [4001848] [PID.4604] =>.Tonec Inc.
[MD5.B289C20C10B241F6016FECD92B267098] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files\Internet Download Manager\IEMonitor.exe [275512] [PID.1312] =>.Tonec Inc.®
[MD5.FA4434FE1E4B54F0C80D6754A6F8AC99] - (...) -- C:\UsbFix\UsbFix.exe [2017239] [PID.5052]
[MD5.252FA419AF698868EC5CA078DC7BCD91] - (.NESSPLUS TELECOM - CyberFlexy.) -- D:\CyberFlexy\CyberFlexy.exe [20695797] [PID.3364]
[MD5.DDB11E26E53242B5A48C3AF1E44E73D3] - (...) -- D:\CyberFlexy\db\mysql\bin\mysqld.exe [11202413] [PID.4292]
[MD5.01449DEA300EAA1E00E6F7B17B0ABA9D] - (.Opera Software - Opera Internet Browser.) -- C:\Users\tofik\AppData\Local\Programs\Opera\58.0.3135.127\opera.exe [1531992] [PID.2216] =>.Opera Software AS®
[MD5.68E0268AC657C03ABA91EE61C20F4322] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\tofik\Downloads\Programs\ZHPDiag3.exe [3012480] [PID.5756] =>.Nicolas Coolman
[MD5.92EE791A630830452485E8E375F8DB35] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files\Google\Update\GoogleUpdate.exe [153168] [PID.5448] =>.Google Inc®

---\\ CHROME, Démarrage, Recherche, Extensions (4) - 0s
G2 - GCE: Preference [tofik][User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com =>.Google Inc. {Drive}
G2 - GCE: Preference [tofik][User Data\Default] [ngpampappnmepgilojfohadhhmbhlaek] IDM Integration Module =>.IDM Computer Solutions, Inc.
G2 - GCE: Preference [tofik][User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet}
G2 - GCE: Preference [tofik][User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc.

---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (3) - 0s
P2 - EXT FILE: (.Microsoft Corporation - The plugin allows you to have a better expe.) -- C:\Program Files\Mozilla Firefox\Plugins\npMeetingJoinPluginOC.dll =>.Microsoft Corporation®
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=3] - (.Google LLC.) -- C:\Program Files\Google\Update\1.3.34.7\npGoogleUpdate3.dll
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=9] - (.Google LLC.) -- C:\Program Files\Google\Update\1.3.34.7\npGoogleUpdate3.dll

---\\ OPERA, Démarrage,Recherche,Plugins (2) - 1s
B2 - EXT: [convert2mp3net] C:\Users\tofik\AppData\Roaming\Opera Software\Opera Stable\Extensions\kefimjmcofjhaphjiadipfoojljnoinn
B2 - EXT: [IDM Integration Module] C:\Users\tofik\AppData\Roaming\Opera Software\Opera Stable\Extensions\ngpampappnmepgilojfohadhhmbhlaek =>.IDM Integration Module

---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (5) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (8.00.7600.16385 (win7_rtm.090713-1255)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation

---\\ INTERNET EXPLORER, Site de confiance et site sensible (2) - 0s
~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad)
~ Microsoft Internet Explorer Restricted Site(s) EscDomains: 0(Good) / 0(Bad)

---\\ INTERNET EXPLORER,Proxy Management (6) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft

---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ ÉTUDE DU FICHIER HOSTS (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (3)

---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (4) - 0s
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files\Internet Download Manager\IDMIECC.dll =>.Tonec Inc.®
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Microsoft Lync.) -- C:\Program Files\Microsoft Office\Office15\OCHelper.dll =>.Microsoft Corporation®
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL =>.Microsoft Corporation®
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®

---\\ RACCOURCIS GLOBAL STARTUP (99) - 30s
O4 - GS\Desktop [Administrateur]: 4K Video Downloader.lnk . (.Open Media LLC - 4K Video Downloader.) C:\Program Files\4KDownload\4kvideodownloader\4kvideodownloader.exe =>.Open Media LLC
O4 - GS\Desktop [Administrateur]: Hard Disk Low Level Format Tool.lnk . (...) C:\Program Files\HDDGURU LLF Tool\LLFTOOL.EXE
O4 - GS\Desktop [Administrateur]: iBoysoft Data Recovery.lnk . (.Chengdu Aibo Tech Co., Ltd. - iBoysoft Data Recovery.) C:\Program Files\iBoysoft\iBoysoft Data Recovery Free\iBoysoftDataRecovery.exe =>.Chengdu Aibo Tech Co., Ltd.®
O4 - GS\Desktop [Administrateur]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Desktop [Administrateur]: Navigateur Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Users\tofik\AppData\Local\Programs\Opera\launcher.exe =>.Opera Software AS®
O4 - GS\Desktop [Administrateur]: UsbFix.lnk . (...) C:\UsbFix\UsbFix.exe
O4 - GS\Desktop [Administrateur]: USBUtil v2.0 - Raccourci.lnk . (...) D:\ps3\USBUTIL BY TECMATE\USBUtil v2.0.exe
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\tofik\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Desktop [Administrateur]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\tofik\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\Quicklaunch [Administrateur]: EaseUS Partition Master 13.0.lnk . (.EaseUS - EaseUS Partition Master Loader Application.) C:\Program Files\EaseUS\EaseUS Partition Master 13.0\bin\epm0.exe =>.CHENGDU YIWO Tech Development Co., Ltd.®
O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\Quicklaunch [Administrateur]: Hard Disk Low Level Format Tool.lnk . (...) C:\Program Files\HDDGURU LLF Tool\LLFTOOL.EXE
O4 - GS\Quicklaunch [Administrateur]: Navigateur Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Users\tofik\AppData\Local\Programs\Opera\launcher.exe =>.Opera Software AS®
O4 - GS\Quicklaunch [Administrateur]: uTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Program Files\uTorrent\utorrent.exe =>.BitTorrent Inc®
O4 - GS\Quicklaunch [Administrateur]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\tofik\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\TaskBar [Administrateur]: CyberFlexy.lnk . (.NESSPLUS TELECOM - CyberFlexy.) D:\CyberFlexy\CyberFlexy.exe
O4 - GS\TaskBar [Administrateur]: Navigateur Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Users\tofik\AppData\Local\Programs\Opera\launcher.exe =>.Opera Software AS®
O4 - GS\TaskBar [Administrateur]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Administrateur]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Programs [Administrateur]: Navigateur Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Users\tofik\AppData\Local\Programs\Opera\launcher.exe =>.Opera Software AS®
O4 - GS\Programs [Administrateur]: Start Tor Browser.lnk . (...) C:\Users\tofik\Desktop\Tor Browser\Browser\firefox.exe
O4 - GS\Desktop [tofik]: 4K Video Downloader.lnk . (.Open Media LLC - 4K Video Downloader.) C:\Program Files\4KDownload\4kvideodownloader\4kvideodownloader.exe =>.Open Media LLC
O4 - GS\Desktop [tofik]: Hard Disk Low Level Format Tool.lnk . (...) C:\Program Files\HDDGURU LLF Tool\LLFTOOL.EXE
O4 - GS\Desktop [tofik]: iBoysoft Data Recovery.lnk . (.Chengdu Aibo Tech Co., Ltd. - iBoysoft Data Recovery.) C:\Program Files\iBoysoft\iBoysoft Data Recovery Free\iBoysoftDataRecovery.exe =>.Chengdu Aibo Tech Co., Ltd.®
O4 - GS\Desktop [tofik]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Desktop [tofik]: Navigateur Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Users\tofik\AppData\Local\Programs\Opera\launcher.exe =>.Opera Software AS®
O4 - GS\Desktop [tofik]: UsbFix.lnk . (...) C:\UsbFix\UsbFix.exe
O4 - GS\Desktop [tofik]: USBUtil v2.0 - Raccourci.lnk . (...) D:\ps3\USBUTIL BY TECMATE\USBUtil v2.0.exe
O4 - GS\Desktop [tofik]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\tofik\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Desktop [tofik]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\tofik\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\Quicklaunch [tofik]: EaseUS Partition Master 13.0.lnk . (.EaseUS - EaseUS Partition Master Loader Application.) C:\Program Files\EaseUS\EaseUS Partition Master 13.0\bin\epm0.exe =>.CHENGDU YIWO Tech Development Co., Ltd.®
O4 - GS\Quicklaunch [tofik]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\Quicklaunch [tofik]: Hard Disk Low Level Format Tool.lnk . (...) C:\Program Files\HDDGURU LLF Tool\LLFTOOL.EXE
O4 - GS\Quicklaunch [tofik]: Navigateur Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Users\tofik\AppData\Local\Programs\Opera\launcher.exe =>.Opera Software AS®
O4 - GS\Quicklaunch [tofik]: uTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Program Files\uTorrent\utorrent.exe =>.BitTorrent Inc®
O4 - GS\Quicklaunch [tofik]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\tofik\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\sendTo [tofik]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\TaskBar [tofik]: CyberFlexy.lnk . (.NESSPLUS TELECOM - CyberFlexy.) D:\CyberFlexy\CyberFlexy.exe
O4 - GS\TaskBar [tofik]: Navigateur Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Users\tofik\AppData\Local\Programs\Opera\launcher.exe =>.Opera Software AS®
O4 - GS\TaskBar [tofik]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\TaskBar [tofik]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Programs [tofik]: Navigateur Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Users\tofik\AppData\Local\Programs\Opera\launcher.exe =>.Opera Software AS®
O4 - GS\Programs [tofik]: Start Tor Browser.lnk . (...) C:\Users\tofik\Desktop\Tor Browser\Browser\firefox.exe
O4 - GS\CommonDesktop [Public]: Brother Creative Center.lnk . (...) C:\Program Files\Brother\CreativeCenter\Brother Creative Center.url
O4 - GS\CommonDesktop [Public]: Defraggler.lnk . (.Piriform Ltd - Defraggler.) C:\Program Files\Defraggler\Defraggler.exe =>.Piriform Ltd®
O4 - GS\CommonDesktop [Public]: EaseUS Partition Master 13.0.lnk . (.EaseUS - EaseUS Partition Master Loader Application.) C:\Program Files\EaseUS\EaseUS Partition Master 13.0\bin\epm0.exe =>.CHENGDU YIWO Tech Development Co., Ltd.®
O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\CommonDesktop [Public]: Horizon.lnk . (.Daring Development Inc. - Horizon.) C:\Program Files\Daring Development\Horizon\Horizon.exe =>.Daring Development Inc.®
O4 - GS\CommonDesktop [Public]: ImgBurn.lnk . (.LIGHTNING UK! - ImgBurn - The Ultimate Image Burner!.) C:\Program Files\ImgBurn\ImgBurn.exe =>.LIGHTNING UK!
O4 - GS\CommonDesktop [Public]: Mars WiFi.lnk . (.ZhangKong Soft - marswifi.) C:\Program Files\zksoft\marswifi\marswifi.exe /desktop =>.Zhangkong Internet Technology Co., Ltd.®
O4 - GS\CommonDesktop [Public]: Nero BackItUp 10.lnk . (.Acresso Software Inc. - InstallShield.) C:\Windows\Installer\{68AB6930-5BFF-4FF6-923B-516A91984FE6}\BackItUp._AB9F1F47710540918A47B78D2BED5DAD.exe =>.Nero AG®
O4 - GS\CommonDesktop [Public]: Nero Burning ROM 10.lnk . (.Acresso Software Inc. - InstallShield.) C:\Windows\Installer\{7A5D731D-B4B3-490E-B339-75685712BAAB}\ScBurningROMStartM_7533AE23D677474387D2A66427FA7052.exe =>.Nero AG®
O4 - GS\CommonDesktop [Public]: Nero MediaHub 10.lnk . (.Acresso Software Inc. - InstallShield.) C:\Windows\Installer\{1F7FB68F-52F6-46A3-B42F-38CE46295AE5}\NeroMediaHub._63C8A7B0BBE5459F9AC436392B2FF50D.exe =>.Nero AG®
O4 - GS\CommonDesktop [Public]: Nero StartSmart 10.lnk . (.Acresso Software Inc. - InstallShield.) C:\Windows\Installer\{F61D489E-6C44-49AC-AD02-7DA8ACA73A65}\ScStartSmartDeskto_3AF47A4E14DF4546B1449D27245505A0.exe =>.Nero AG®
O4 - GS\CommonDesktop [Public]: Nero Vision 10.lnk . (.Acresso Software Inc. - InstallShield.) C:\Windows\Installer\{9A4297F3-2A51-4ED9-92CA-4BCB8380947E}\NewShortcut1_28CF345AD4354131AA47B77D4165D813.exe =>.Nero AG®
O4 - GS\CommonDesktop [Public]: SD Card Formatter.lnk . (.Flexera Software LLC - InstallShield.) C:\Windows\Installer\{A61131DC-B92D-4AD8-A925-E2D6D5FE217C}\NewShortcut11_9F21041712364E7FBB19D6D84D3AFF1D.exe =>.Tuxera Inc®
O4 - GS\CommonDesktop [Public]: Tenorshare Any Data Recovery.lnk . (.Tenorshare Co.,Ltd - .) C:\Program Files\Tenorshare Any Data Recovery\DataRecovery.exe =>.Tenorshare Co.,Ltd
O4 - GS\CommonDesktop [Public]: USB Disk Security.lnk . (.Zbshareware Lab - USB Disk Security.) C:\Program Files\USB Disk Security\USBGuard.exe =>.Lanzhou Itanium Software Technology Co., Ltd.®
O4 - GS\CommonDesktop [Public]: Version d’évaluation d’OmniJoin.lnk . (...) C:\Program Files\Brother\OmniJoin\OmniJoin.url
O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\Programs [Public]: Navigateur Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Users\tofik\AppData\Local\Programs\Opera\launcher.exe =>.Opera Software AS®
O4 - GS\Programs [Public]: Start Tor Browser.lnk . (...) C:\Users\tofik\Desktop\Tor Browser\Browser\firefox.exe
O4 - GS\Accessories [Public]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) C:\Windows\system32\cmd.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\system32\calc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Afficher le commutateur.) C:\Windows\system32\displayswitch.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Accessoire du panneau de saisie mathématiqu.) C:\Program Files\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) C:\Windows\system32\mblctr.exe /open =>.Microsoft Corporation
O4 - GS\Accessories [Public]: NetworkProjection.lnk . (.Microsoft Corporation - Connect to a Network Projector.) C:\Windows\system32\NetProj.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\Windows\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) C:\Windows\System32\mobsync.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\system32\rundll32.exe %SystemRoot%\system32\OobeFldr.dll,ShowWelcomeCenter LaunchedBy_StartMenuShortcut =>..Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\Windows\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) C:\Windows\system32\dfrgui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) C:\Windows\system32\cleanmgr.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Moniteur de ressources et de performances.) C:\Windows\system32\perfmon.exe /res =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) C:\Windows\system32\msinfo32.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) C:\Windows\system32\rstrui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc /s =>..Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Application post-migration de transfert de.) C:\Windows\system32\migwiz\postmig.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Application Transfert de fichiers et paramè.) C:\Windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Apple Software Update.lnk . (...) C:\Windows\Installer\{A30EA700-5515-48F0-88B0-9E99DC356B88}\AppleSoftwareUpdateIco.exe =>.Apple Inc.
O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\ProgramsCommon [Public]: Horizon.lnk . (.Daring Development Inc. - Horizon.) C:\Program Files\Daring Development\Horizon\Horizon.exe =>.Daring Development Inc.®
O4 - GS\ProgramsCommon [Public]: ImgBurn.lnk . (.LIGHTNING UK! - ImgBurn - The Ultimate Image Burner!.) C:\Program Files\ImgBurn\ImgBurn.exe =>.LIGHTNING UK!
O4 - GS\ProgramsCommon [Public]: Media Center.lnk . (.Microsoft Corporation - Windows Media Center.) C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Sidebar.lnk . (.Microsoft Corporation - Gadgets du Bureau Windows.) C:\Program Files\Windows Sidebar\sidebar.exe /showgadgets =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows DVD Maker.lnk . (.Microsoft Corporation - Création de DVD Windows.) C:\Program Files\DVD Maker\DVDMaker.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation

---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (2) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 0.0.0.0 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{640A66F5-0584-4DE3-8406-2CE937B53700}: DhcpNameServer = 192.168.1.1 0.0.0.0 =>.Local IP Adress

---\\ PROTOCOLE ADDITIONNEL (26) - 1s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation®
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files\Microsoft Office\Office15\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Filter: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s
O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation

---\\ COMPOSANTS ACTIVESETUP INSTALLÉS (ASIC) (7) - 1s
O40 - ASIC: Microsoft Windows Media Player 12.0 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll =>.Microsoft Corporation
O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - Microsoft(C) Register Server.) -- C:\Windows\System32\regsvr32.exe =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe =>.Microsoft Corporation
O40 - ASIC: Web Platform Customizations - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft Corporation®
O40 - ASIC: Google Chrome - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google Inc. - Google Chrome Installer.) -- C:\Program Files\Google\Chrome\Application\73.0.3683.86\Installer\chrmstp.exe =>.Google LLC®

---\\ LOGICIELS INSTALLÉS (181) - 94s
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU] -- uTorrent =>.BitTorrent Inc®
O42 - Logiciel: 4K Video Downloader 4.1 - (.Open Media LLC.) [HKLM] -- 4K Video Downloader_is1 =>.Open Media LLC®
O42 - Logiciel: Adobe Flash Player 32 PPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player PPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM] -- {5A659BE5-849B-484E-A83B-DCB78407F3A4} =>.Apple Inc.
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {ABDE67C4-5876-4CDB-82A9-0CBACECC1C4A} =>.Apple Inc.
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {A30EA700-5515-48F0-88B0-9E99DC356B88} =>.Apple Inc.
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM] -- {D168AAD0-6686-47C1-B599-CDD4888B9D1A} =>.Apple Inc.
O42 - Logiciel: Brother MFL-Pro Suite DCP-J132W - (.Brother Industries, Ltd..) [HKLM] -- {B742757A-7658-4E09-A51A-085CF0F7F4D3} =>.Macrovision Corporation®
O42 - Logiciel: Cisco EAP-FAST Module - (.Cisco Systems, Inc..) [HKLM] -- {64BF0187-F3D2-498B-99EA-163AF9AE6EC9} =>.Cisco Systems, Inc. (Hidden)
O42 - Logiciel: Cisco LEAP Module - (.Cisco Systems, Inc..) [HKLM] -- {51C7AD07-C3F6-4635-8E8A-231306D810FE} =>.Cisco Systems, Inc. (Hidden)
O42 - Logiciel: Definition Update for Microsoft Office 2013 (KB3115404) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{96903939-431D-4BD1-ADCD-B578900397D7} =>.Microsoft Corporation®
O42 - Logiciel: Defraggler - (.Piriform.) [HKLM] -- Defraggler =>.Piriform Ltd®
O42 - Logiciel: EaseUS Partition Master 13.0 - (.EaseUS.) [HKLM] -- EaseUS Partition Master_is1 =>.CHENGDU YIWO Tech Development Co., Ltd.®
O42 - Logiciel: Epic Games Launcher Prerequisites (x86) - (.Epic Games, Inc..) [HKLM] -- {B633DAAD-9294-4C7D-A625-D5B741A8C2B6} =>.Epic Games, Inc. (Hidden)
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome =>.Google LLC®
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>.Google Inc. (Hidden)
O42 - Logiciel: Google Update Helper - (.Google LLC.) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} (Hidden)
O42 - Logiciel: Hard Disk Low Level Format Tool 4.40 - (.HDDGURU.) [HKLM] -- Hard Disk Low Level Format Tool_is1 =>.HDDGURU
O42 - Logiciel: High-Definition Video Playback 10 - (.Nero AG.) [HKLM] -- {237CCB62-8454-43E3-B158-3ACD0134852E} =>.Nero AG (Hidden)
O42 - Logiciel: Horizon - (.Daring Development Inc..) [HKLM] -- {6b384f34-10c8-4c10-ba08-345168bda7e8} =>.Daring Development Inc.®
O42 - Logiciel: Horizon - (.Daring Development Inc..) [HKLM] -- {6BCA2AC7-7BC2-4011-BE10-143BDFD43D6C} =>.Daring Development Inc. (Hidden)
O42 - Logiciel: iBoysoft Data Recovery Free version 2.0 - (.iBoysoft Data Recovery.) [HKLM] -- {A903CB4A-4687-4D4A-845D-172E5C4A6DD8}}_is1 =>.iBoysoft Data Recovery
O42 - Logiciel: IDM Crack 6.27 build 1 - (.Crackingpatching.com Team.) [HKLM] -- IDM Crack 6.27 build 1 =>.Crackingpatching.com Team
O42 - Logiciel: ImgBurn - (.LIGHTNING UK!.) [HKLM] -- ImgBurn =>.LIGHTNING UK!
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation®
O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM] -- Internet Download Manager =>.Tonec Inc.®
O42 - Logiciel: Langue des info-bulles 2013 de Microsoft Office - Français - (.Microsoft Corporation.) [HKLM] -- {90150000-00BD-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Launcher Prerequisites (x86) - (.Epic Games, Inc..) [HKLM] -- {ec50c375-be9a-4642-9b8c-86dcc42e39c3} =>.Epic Games Inc.® (Hidden)
O42 - Logiciel: Mars WiFi - (.ZK Corporation.) [HKLM] -- marswifi =>.Zhangkong Internet Technology Co., Ltd.®
O42 - Logiciel: Metric Collection SDK 35 - (.Lenovo Group Limited.) [HKLM] -- {C2B5B5B0-2545-4E94-B4BA-548D4BF0B196} =>.Lenovo Group Limited (Hidden)
O42 - Logiciel: Microsoft .NET Framework 4.5 - (.Microsoft Corporation.) [HKLM] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033 =>.Microsoft Corporation®
O42 - Logiciel: Microsoft .NET Framework 4.5 - (.Microsoft Corporation.) [HKLM] -- {9F612429-4A00-3D44-88CF-146DA2EE1F92} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Framework 4.5 FRA Language Pack - (.Microsoft Corporation.) [HKLM] -- {1D7029B7-B42B-3012-B74A-904C81A3662D} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Access MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-0015-0416-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft DCF MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-0090-0416-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Excel MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-0016-0416-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Groove MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-00BA-0416-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft InfoPath MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-0044-0416-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Lync MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-012B-0416-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office OSM MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-00E1-0416-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office OSM UX MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-00E2-0416-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Professional Plus 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-0011-0000-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Professional Plus 2013 - (.Microsoft Corporation.) [HKLM] -- Office15.PROPLUS =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Office Proofing (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-002C-0416-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proofing Tools 2013 - English - (.Microsoft Corporation.) [HKLM] -- {90150000-001F-0409-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proofing Tools 2013 - Español - (.Microsoft Corporation.) [HKLM] -- {90150000-001F-0C0A-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Shared MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-006E-0416-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft OneNote MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-00A1-0416-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Outlook MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-001A-0416-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft PowerPoint MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-0018-0416-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Primary Interoperability Assemblies 2005 - (.Microsoft Corporation.) [HKLM] -- {D24DB8B9-BB6C-4334-9619-BA1C650E13D3} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Publisher MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-0019-0416-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {837b34e3-7c30-493c-8f6a-2b0f04e2912c} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 - (.Microsoft Corporation.) [HKLM] -- {196BB40D-1578-3D01-B289-BEFC77A11A1E} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 - (.Microsoft Corporation.) [HKLM] -- {33d1fd90-4274-48a1-9bc1-97e33d9c2d6f} =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM] -- {B175520C-86A2-35A7-8619-86DC379688B9} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM] -- {BD95A8CD-1D9F-35AD-981A-3E7925026EBB} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2017 Redistributable (x86) - 14.15.26706 - (.Microsoft Corporation.) [HKLM] -- {7e9fae12-5bbf-47fb-b944-09c49e75c061} =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual C++ 2017 x86 Additional Runtime - 14.15.26706 - (.Microsoft Corporation.) [HKLM] -- {2757496A-3E74-320A-B007-36120A9F126D} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2017 x86 Minimum Runtime - 14.15.26706 - (.Microsoft Corporation.) [HKLM] -- {39E15475-23F2-345D-8977-B5DC47A94E26} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual Studio 2010 Tools for Office Runtime (x86) - (.Microsoft Corporation.) [HKLM] -- {4DC59BF3-0D72-3CE8-BFEF-1E8FAF689EB0} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual Studio 2010 Tools for Office Runtime (x86) - (.Microsoft Corporation.) [HKLM] -- Microsoft Visual Studio 2010 Tools for Office Runtime (x86) =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual Studio 2010 Tools for Office Runtime (x86) Language Pack - - (.Microsoft Corporation.) [HKLM] -- {EC1FEA55-73CC-3A5F-BF47-B340B842C058} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Word MUI (Portuguese (Brazil)) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-001B-0416-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Module linguistique de Microsoft .NET Framework 4.5 - FRA - (.Microsoft Corporation.) [HKLM] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1036 =>.Microsoft Corporation®
O42 - Logiciel: Module linguistique Microsoft Visual Studio 2010 Tools pour Office Runtime - (.Microsoft Corporation.) [HKLM] -- Microsoft Visual Studio 2010 Tools for Office Runtime (x86) Language Pack - FRA =>.Microsoft Corporation®
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} =>.Microsoft Corporation
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} =>.Microsoft Corporation
O42 - Logiciel: Nero 10 Menu TemplatePack Basic - (.Nero AG.) [HKLM] -- {63AA3EAB-23BB-48B2-9AD0-44F878075604} =>.Nero AG (Hidden)
O42 - Logiciel: Nero 10 Movie ThemePack Basic - (.Nero AG.) [HKLM] -- {F5CB822F-B365-43D1-BCC0-4FDA1A2017A7} =>.Nero AG (Hidden)
O42 - Logiciel: Nero BackItUp 10 - (.Nero AG.) [HKLM] -- {68AB6930-5BFF-4FF6-923B-516A91984FE6} =>.Nero AG
O42 - Logiciel: Nero BackItUp 10 Help (CHM) - (.Nero AG.) [HKLM] -- {08C8666B-C502-4AB3-B4CB-D74AC42D14FE} =>.Nero AG (Hidden)
O42 - Logiciel: Nero Burning ROM 10 - (.Nero AG.) [HKLM] -- {7A5D731D-B4B3-490E-B339-75685712BAAB} =>.Nero AG
O42 - Logiciel: Nero BurningROM 10 Help (CHM) - (.Nero AG.) [HKLM] -- {9B6B24BE-80E7-46C4-9FA5-B167D5E0F345} =>.Nero AG (Hidden)
O42 - Logiciel: Nero BurnRights 10 - (.Nero AG.) [HKLM] -- {943CFD7D-5336-47AF-9418-E02473A5A517} =>.Nero AG
O42 - Logiciel: Nero BurnRights 10 Help (CHM) - (.Nero AG.) [HKLM] -- {555868C6-49FB-484F-BB43-8980651A1B00} =>.Nero AG (Hidden)
O42 - Logiciel: Nero Control Center 10 - (.Nero AG.) [HKLM] -- {6DFB899F-17A2-48F0-A533-ED8D6866CF38} =>.Nero AG (Hidden)
O42 - Logiciel: Nero ControlCenter 10 Help (CHM) - (.Nero AG.) [HKLM] -- {523B2B1B-D8DB-4B41-90FF-C4D799E2758A} =>.Nero AG (Hidden)
O42 - Logiciel: Nero Core Components 10 - (.Nero AG.) [HKLM] -- {2436F2A8-4B7E-4B6C-AE4E-604C84AA6A4F} =>.Nero AG (Hidden)
O42 - Logiciel: Nero CoverDesigner 10 - (.Nero AG.) [HKLM] -- {FCF00A6E-FB58-477A-ABE9-232907105521} =>.Nero AG
O42 - Logiciel: Nero CoverDesigner 10 Help (CHM) - (.Nero AG.) [HKLM] -- {C3273C55-E1E4-41FF-8D69-0158090DB8D8} =>.Nero AG (Hidden)
O42 - Logiciel: Nero DiscCopy Gadget 10 - (.Nero AG.) [HKLM] -- {92EC1A84-7FFC-42DF-A8F6-79C21C4765A5} =>.Nero AG
O42 - Logiciel: Nero DiscCopyGadget 10 Help (CHM) - (.Nero AG.) [HKLM] -- {5F548A02-80BC-404D-BAE6-F05F9BF6B449} =>.Nero AG (Hidden)
O42 - Logiciel: Nero DiscSpeed 10 - (.Nero AG.) [HKLM] -- {34490F4E-48D0-492E-8249-B48BECF0537C} =>.Nero AG
O42 - Logiciel: Nero DiscSpeed 10 Help (CHM) - (.Nero AG.) [HKLM] -- {C18A0418-442A-4186-AF98-D08F5054A2FC} =>.Nero AG (Hidden)
O42 - Logiciel: Nero Dolby Files 10 - (.Nero AG.) [HKLM] -- {C3580AC4-C827-4332-B935-9A282ED5BB97} =>.Nero AG (Hidden)
O42 - Logiciel: Nero Express 10 - (.Nero AG.) [HKLM] -- {70550193-1C22-445C-8FA4-564E155DB1A7} =>.Nero AG
O42 - Logiciel: Nero Express 10 Help (CHM) - (.Nero AG.) [HKLM] -- {33643918-7957-4839-92C7-EA96CB621A98} =>.Nero AG (Hidden)
O42 - Logiciel: Nero InfoTool 10 - (.Nero AG.) [HKLM] -- {F412B4AF-388C-4FF5-9B2F-33DB1C536953} =>.Nero AG
O42 - Logiciel: Nero InfoTool 10 Help (CHM) - (.Nero AG.) [HKLM] -- {66049135-9659-4AAD-9169-9CCA269EBB3E} =>.Nero AG (Hidden)
O42 - Logiciel: Nero MediaHub 10 - (.Nero AG.) [HKLM] -- {1F7FB68F-52F6-46A3-B42F-38CE46295AE5} =>.Nero AG
O42 - Logiciel: Nero MediaHub 10 Help (CHM) - (.Nero AG.) [HKLM] -- {F467862A-D9CA-47ED-8D81-B4B3C9399272} =>.Nero AG (Hidden)
O42 - Logiciel: Nero Multimedia Suite 10 - (.Nero AG.) [HKLM] -- {277C1559-4CF7-44FF-8D07-98AA9C13AABD} =>.Nero AG
O42 - Logiciel: Nero Recode 10 - (.Nero AG.) [HKLM] -- {8ECEC853-5C3D-4B10-B5C7-FF11FF724807} =>.Nero AG
O42 - Logiciel: Nero Recode 10 Help (CHM) - (.Nero AG.) [HKLM] -- {DB7C1D4A-08BA-4C7E-A8AA-B7F9BB372DCF} =>.Nero AG (Hidden)
O42 - Logiciel: Nero RescueAgent 10 - (.Nero AG.) [HKLM] -- {E337E787-CF61-4B7B-B84F-509202A54023} =>.Nero AG
O42 - Logiciel: Nero RescueAgent 10 Help (CHM) - (.Nero AG.) [HKLM] -- {92E25238-61A3-4ACD-A407-3C480EEF47A7} =>.Nero AG (Hidden)
O42 - Logiciel: Nero SoundTrax 10 - (.Nero AG.) [HKLM] -- {E1EE5339-5D32-458F-BAAB-B19F6301BCE2} =>.Nero AG
O42 - Logiciel: Nero SoundTrax 10 Help (CHM) - (.Nero AG.) [HKLM] -- {16987E99-C95C-4513-9239-7B44A0A71DB5} =>.Nero AG (Hidden)
O42 - Logiciel: Nero StartSmart 10 - (.Nero AG.) [HKLM] -- {F61D489E-6C44-49AC-AD02-7DA8ACA73A65} =>.Nero AG
O42 - Logiciel: Nero StartSmart 10 Help (CHM) - (.Nero AG.) [HKLM] -- {F6117F9C-ADB5-4590-9BE4-12C7BEC28702} =>.Nero AG (Hidden)
O42 - Logiciel: Nero Update - (.Nero AG.) [HKLM] -- {65BB0407-4CC8-4DC7-952E-3EEFDF05602A} =>.Nero AG
O42 - Logiciel: Nero Vision 10 - (.Nero AG.) [HKLM] -- {9A4297F3-2A51-4ED9-92CA-4BCB8380947E} =>.Nero AG
O42 - Logiciel: Nero Vision 10 Help (CHM) - (.Nero AG.) [HKLM] -- {329411A0-19F3-4740-874F-17400B126F27} =>.Nero AG (Hidden)
O42 - Logiciel: Nero WaveEditor 10 - (.Nero AG.) [HKLM] -- {EDCDFAD5-DF80-4600-A493-E9DAD6810230} =>.Nero AG
O42 - Logiciel: Nero WaveEditor 10 Help (CHM) - (.Nero AG.) [HKLM] -- {7A295D8F-484B-4FFB-89AB-C1FD497591FE} =>.Nero AG (Hidden)
O42 - Logiciel: Opera Stable 58.0.3135.127 - (.Opera Software.) [HKCU] -- Opera 58.0.3135.127 =>.Opera Software AS®
O42 - Logiciel: OPPO USB Drivers 2.2.6.0 - (.OPPO mobile telecommunications Corp., LTD.) [HKLM] -- {60092746-6A0F-46A9-B9F1-53B62EC0E0A4}_is1 =>.OPPO mobile telecommunications Corp., LTD
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp.®
O42 - Logiciel: Revisores de Texto do Microsoft Office 2013 – Português do Brasil - (.Microsoft Corporation.) [HKLM] -- {90150000-001F-0416-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Samsung USB Driver for Mobile Phones - (.Samsung Electronics Co., Ltd..) [HKLM] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44} =>.Samsung Electronics CO., LTD.®
O42 - Logiciel: SD Card Formatter - (.SD Association.) [HKLM] -- {A61131DC-B92D-4AD8-A925-E2D6D5FE217C} =>.SD Association
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB2768005) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-006E-0416-0000-0000000FF1CE}_Office15.PROPLUS_{CA196668-C443-4384-85C0-4DD6C6D70FF7} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB2850064) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{4167373A-1EC8-4A54-A168-7A4F418C861C} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB2850064) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-006E-0416-0000-0000000FF1CE}_Office15.PROPLUS_{6D70D611-0B46-4CF7-8E0A-C47C3D6DF846} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB2880463) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001F-0409-0000-0000000FF1CE}_Office15.PROPLUS_{C3B48231-4B0E-4AE9-9671-729335B80171} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB2880463) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001F-0416-0000-0000000FF1CE}_Office15.PROPLUS_{E311D00D-8F0F-4B0F-9099-C883D5549C2F} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB2880463) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001F-0C0A-0000-0000000FF1CE}_Office15.PROPLUS_{FC91A339-D005-4119-91DD-99B85AA6AA30} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB2880502) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{90E7A66B-723D-4790-824A-6E4EEC0C2CBA} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB2910941) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{E0434175-7133-45D2-B53A-78700C2F8BC4} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Skype for Business 2015 (KB3191937) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-012B-0416-0000-0000000FF1CE}_Office15.PROPLUS_{F4C34998-C887-4928-ACC9-E24D3D60211E} =>.Microsoft Corporation®
O42 - Logiciel: Supercopier 1.6.1.4 - (.Supercopier.) [HKLM] -- Supercopier =>.Supercopier
O42 - Logiciel: Tenorshare Any Data Recovery - (.Tenorshare, Inc..) [HKLM] -- {any data recovery}_is1 =>.Tenorshare, Inc.
O42 - Logiciel: TeraCopy 2.27 - (.Code Sector.) [HKLM] -- TeraCopy_is1 =>.Code Sector®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2760249) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{8C07AD38-38EB-4332-BCB3-F55A77C927DF} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2760344) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{A7610F07-E844-4444-8E1D-D5BC8AD0B4C5} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2760371) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{FFF87DE6-6602-4F65-BD75-D481E0539DCD} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2760544) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{45B7D395-EB9B-414F-9E46-5849B42326E2} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2817316) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{670559E6-5725-4B84-A16C-0859771F25DE} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2817316) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0016-0416-0000-0000000FF1CE}_Office15.PROPLUS_{5EFADE14-CE0B-43BF-ADD2-850FCB79485F} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2817316) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0016-0416-0000-0000000FF1CE}_Office15.PROPLUS_{8580F449-EFC0-43BD-9168-50C53D946B73} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2837654) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{6D771289-E5A7-442F-82B5-5EC4217AEF03} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2863843) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{AD7045B8-1D75-4B4C-8120-12F045D206C7} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2880478) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{7C5CEE0F-6823-4BB7-A28F-76FEC14EB6AC} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2880977) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{0F78855B-2181-4FCE-82DD-ED649E985409} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2881035) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{01B80B63-C638-4004-9148-75B8C8518B1E} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2881035) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0016-0416-0000-0000000FF1CE}_Office15.PROPLUS_{01B80B63-C638-4004-9148-75B8C8518B1E} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2881035) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0090-0416-0000-0000000FF1CE}_Office15.PROPLUS_{01B80B63-C638-4004-9148-75B8C8518B1E} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2883036) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{B8E73381-09B1-4895-ACD0-34385B0F526D} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2883095) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{7A9AB1AE-98B5-4B45-86B8-33A7B946D7CA} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2899522) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{87F6726E-6F99-42F0-8E11-55D798E57DD5} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2920754) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{6EEF6E8E-9854-4DCD-862F-422DF2F984F7} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2920754) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-006E-0416-0000-0000000FF1CE}_Office15.PROPLUS_{6EEF6E8E-9854-4DCD-862F-422DF2F984F7} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0015-0416-0000-0000000FF1CE}_Office15.PROPLUS_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0016-0416-0000-0000000FF1CE}_Office15.PROPLUS_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0018-0416-0000-0000000FF1CE}_Office15.PROPLUS_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0019-0416-0000-0000000FF1CE}_Office15.PROPLUS_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001A-0416-0000-0000000FF1CE}_Office15.PROPLUS_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001B-0416-0000-0000000FF1CE}_Office15.PROPLUS_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001F-0409-0000-0000000FF1CE}_Office15.PROPLUS_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001F-0416-0000-0000000FF1CE}_Office15.PROPLUS_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001F-0C0A-0000-0000000FF1CE}_Office15.PROPLUS_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-002C-0416-0000-0000000FF1CE}_Office15.PROPLUS_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0044-0416-0000-0000000FF1CE}_Office15.PROPLUS_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-006E-0416-0000-0000000FF1CE}_Office15.PROPLUS_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0090-0416-0000-0000000FF1CE}_Office15.PROPLUS_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-00A1-0416-0000-0000000FF1CE}_Office15.PROPLUS_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-00BA-0416-0000-0000000FF1CE}_Office15.PROPLUS_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-00E1-0416-0000-0000000FF1CE}_Office15.PROPLUS_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-00E2-0416-0000-0000000FF1CE}_Office15.PROPLUS_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-012B-0416-0000-0000000FF1CE}_Office15.PROPLUS_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft OneNote 2013 (KB2760334) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{3BB02CB1-E79C-47F8-9D0C-6371E899DBB6} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Outlook 2013 (KB2825632) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{00003749-B03A-4E57-8789-853F94D3BE23} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Outlook 2013 (KB2825632) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001A-0416-0000-0000000FF1CE}_Office15.PROPLUS_{12011E8A-087C-488D-9FA0-57AB474B5842} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Publisher 2013 (KB2883048) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{08F93D29-1D44-4E70-B73F-001BF01144F0} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Publisher 2013 (KB2883048) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0019-0416-0000-0000000FF1CE}_Office15.PROPLUS_{08F93D29-1D44-4E70-B73F-001BF01144F0} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft SkyDrive Pro (KB2768356) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{EF982D7F-CD78-4D1B-AAE7-D4044D30FA64} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft SkyDrive Pro (KB2768356) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-00BA-0416-0000-0000000FF1CE}_Office15.PROPLUS_{BE1CF3C8-8180-4B8A-A3BB-FCC8BDF59C7D} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Visio Viewer 2013 (KB2817301) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{25C61889-2E44-4BE1-9E96-9364BFDCF501} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Visio Viewer 2013 (KB2817301) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-006E-0416-0000-0000000FF1CE}_Office15.PROPLUS_{25C61889-2E44-4BE1-9E96-9364BFDCF501} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Word 2013 (KB2878319) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{A7CD05CC-CA85-428C-91FD-74A908D126E1} =>.Microsoft Corporation®
O42 - Logiciel: USB Disk Security - (.Zbshareware Lab.) [HKLM] -- USB Disk Security_is1 =>.Zbshareware Lab
O42 - Logiciel: UsbFix - (.El Desaparecido - www.usbfix.net - www.sosvirus.net.) [HKLM] -- Usbfix =>.El Desaparecido - www.usbfix.net - www.sosvirus.net
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player =>.VideoLAN
O42 - Logiciel: WinRAR 5.61 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver =>.win.rar GmbH®

---\\ CLÉ DE REGISTRE SOFTWARE HKCU & HKLM (180) - 94s
HKCU\Software\undefined =>.SUP.Downloader
HKLM\SOFTWARE\IObit\RealTimeProtector =>.SUP.AdvancedSystemCare
HKLM\SOFTWARE\Iobit\ASC =>.SUP.AdvancedSystemCare
HKLM\SOFTWARE\Adobe =>.Adobe
HKLM\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
HKLM\SOFTWARE\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies
HKLM\SOFTWARE\BlueStacks =>.BlueStack Systems, Inc.
HKLM\SOFTWARE\BlueStacksGP =>.BlueStack Systems, Inc.
HKLM\SOFTWARE\Brother =>.Brother
HKLM\SOFTWARE\Brother Industries, Ltd. =>.Brother Industries, Ltd.
HKLM\SOFTWARE\Code Sector =>.Code Sector
HKLM\SOFTWARE\Dolby =>.Dolby
HKLM\SOFTWARE\DTS =>.Creative Technology
HKLM\SOFTWARE\EaseUS =>.EaseUS Software
HKLM\SOFTWARE\Fortemedia =>.Lugert Europe
HKLM\SOFTWARE\Google =>.Google
HKLM\SOFTWARE\GuidGuid13
HKLM\SOFTWARE\iBoysoft
HKLM\SOFTWARE\IM Providers =>.IM Providers
HKLM\SOFTWARE\ImgBurn =>.Lightning UK
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\Internet Download Manager =>.Tonec Inc
HKLM\SOFTWARE\IObit =>.IObit
HKLM\SOFTWARE\Khronos =>.Khronos
HKLM\SOFTWARE\Knowles =>.Knowles Electronics
HKLM\SOFTWARE\Lenovo =>.Lenovo
HKLM\SOFTWARE\Licenses =>.Microsoft Corporation
HKLM\SOFTWARE\Macromedia =>.Macromedia
HKLM\SOFTWARE\Mozilla =>.Mozilla
HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\Nero =>.Ahead Corporation
HKLM\SOFTWARE\Nuance =>.Nuance
HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\Piriform =>.Piriform
HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\RTLSetup =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\SAMSUNG =>.Samsung Electronics
HKLM\SOFTWARE\Softorino =>.Softorino
HKLM\SOFTWARE\Sonic =>.Sonic
HKLM\SOFTWARE\SonicFocus =>.Sonic Focus
HKLM\SOFTWARE\SOSVirus =>.SosVirus
HKLM\SOFTWARE\SRS Labs =>.SRS Labs
HKLM\SOFTWARE\Swearware =>.Swearware
HKLM\SOFTWARE\Tencent =>.SUP.Tencent
HKLM\SOFTWARE\VideoLAN =>.VideoLan Team
HKLM\SOFTWARE\Volatile =>.Microsoft Corporation
HKLM\SOFTWARE\WinRAR =>.WinRAR
HKLM\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\Xtreme Download Manager
HKLM\SOFTWARE\zksoft
HKCU\SOFTWARE\4kdownload.com =>.4kdownload.com
HKCU\SOFTWARE\7-Zip =>.Igor Pavlov
HKCU\SOFTWARE\Akeo Consulting =>.Akeo Consulting
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\Apple Inc. =>.Apple Inc.
HKCU\SOFTWARE\BcmSetup =>.BCM
HKCU\SOFTWARE\BitTorrent =>.BitTorrent (P2P)
HKCU\SOFTWARE\Brother =>.Brother
HKCU\SOFTWARE\BugSplat =>.Bugsplat Game
HKCU\SOFTWARE\CDDB =>.Cddb Software
HKCU\SOFTWARE\Chromium =>.Chromium
HKCU\SOFTWARE\Code Sector =>.Code Sector
HKCU\SOFTWARE\Cygwin =>.Cygwin
HKCU\SOFTWARE\Daring Development Inc. =>.Daring Development Inc.
HKCU\SOFTWARE\DownloadManager =>.DownloadManager
HKCU\SOFTWARE\DRP
HKCU\SOFTWARE\dSet
HKCU\SOFTWARE\EaseUS =>.EaseUS Software
HKCU\SOFTWARE\EFD Software =>.EFD Software
HKCU\SOFTWARE\Epic Games =>.Epic Games
HKCU\SOFTWARE\Folder Colorizer 2
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\GsmServer =>.GsmServer
HKCU\SOFTWARE\handle
HKCU\SOFTWARE\IM Providers =>.IM Providers
HKCU\SOFTWARE\ImgBurn =>.Lightning UK
HKCU\SOFTWARE\Intel =>.Intel
HKCU\SOFTWARE\Kungsoft =>.Kungsoft
HKCU\SOFTWARE\Lenovo =>.Lenovo
HKCU\SOFTWARE\Licenses =>.Microsoft Corporation
HKCU\SOFTWARE\Macromedia =>.Macromedia
HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes
HKCU\SOFTWARE\Marmiton =>.Marmiton
HKCU\SOFTWARE\MetaQuotes Software =>.MetaQuotes Software
HKCU\SOFTWARE\MiniTool Solution Ltd. =>.MiniTool Solution Ltd.
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKCU\SOFTWARE\MTK =>.MTK
HKCU\SOFTWARE\Nero =>.Ahead Corporation
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKCU\SOFTWARE\Opera Software =>.Opera Software
HKCU\SOFTWARE\OPPO
HKCU\SOFTWARE\Piriform =>.Piriform
HKCU\SOFTWARE\Recover Keys =>.Recover Keys
HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\Samsung =>.Samsung Electronics
HKCU\SOFTWARE\SMADΔV
HKCU\SOFTWARE\Swizzy
HKCU\SOFTWARE\Sysinternals =>.Sysinternals
HKCU\SOFTWARE\Tencent =>.SUP.Tencent
HKCU\SOFTWARE\The Silicon Realms Toolworks =>.The Silicon Realms Toolworks
HKCU\SOFTWARE\Trolltech =>.Trolltech
HKCU\SOFTWARE\Ultracopier =>.Herman Brule
HKCU\SOFTWARE\UsbFix =>.El Desaparecido
HKCU\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation
HKCU\SOFTWARE\Wget =>.Wget
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\WinRecovery =>.WinRecovery Software
HKCU\SOFTWARE\Xtreme Download Manager
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKU\.DEFAULT\SOFTWARE\Apple Inc. =>.Apple Inc.
HKU\.DEFAULT\SOFTWARE\Epic Games =>.Epic Games
HKU\.DEFAULT\SOFTWARE\Piriform =>.Piriform
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\4kdownload.com =>.4kdownload.com
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\7-Zip =>.Igor Pavlov
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Akeo Consulting =>.Akeo Consulting
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Apple Inc. =>.Apple Inc.
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\BcmSetup =>.BCM
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\BitTorrent =>.BitTorrent (P2P)
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Brother =>.Brother
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\BugSplat =>.Bugsplat Game
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\CDDB =>.Cddb Software
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Chromium =>.Chromium
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Code Sector =>.Code Sector
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Cygwin =>.Cygwin
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Daring Development Inc. =>.Daring Development Inc.
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\DownloadManager =>.DownloadManager
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\DRP
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\dSet
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\EaseUS =>.EaseUS Software
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\EFD Software =>.EFD Software
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Epic Games =>.Epic Games
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Folder Colorizer 2
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Google =>.Google
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\GsmServer =>.GsmServer
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\handle
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\IM Providers =>.IM Providers
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\ImgBurn =>.Lightning UK
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Intel =>.Intel
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Kungsoft =>.Kungsoft
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Lenovo =>.Lenovo
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Licenses =>.Microsoft Corporation
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Macromedia =>.Macromedia
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Malwarebytes =>.Malwarebytes
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Marmiton =>.Marmiton
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\MetaQuotes Software =>.MetaQuotes Software
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\MiniTool Solution Ltd. =>.MiniTool Solution Ltd.
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Mozilla =>.Mozilla
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\MTK =>.MTK
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Nero =>.Ahead Corporation
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Netscape =>.Netscape
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Opera Software =>.Opera Software
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\OPPO
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Piriform =>.Piriform
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Recover Keys =>.Recover Keys
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Samsung =>.Samsung Electronics
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\SMADΔV
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Swizzy
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Sysinternals =>.Sysinternals
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Tencent =>.SUP.Tencent
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\The Silicon Realms Toolworks =>.The Silicon Realms Toolworks
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Trolltech =>.Trolltech
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Ultracopier =>.Herman Brule
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\undefined =>.SUP.Downloader
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\UsbFix =>.El Desaparecido
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Wget =>.Wget
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\WinRAR =>.WinRAR
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\WinRAR SFX =>.RarLab
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\WinRecovery =>.WinRecovery Software
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\Xtreme Download Manager
HKU\S-1-5-21-3488241406-1234818601-2017772557-1000\SOFTWARE\ZHP =>.Nicolas Coolman

---\\ CONTENU DES DOSSIERS PROGRAMMES (249) - 31s
O43 - CFD: 30/03/2019 - [] D -- C:\Program Files\4KDownload
O43 - CFD: 13/03/2019 - [] D -- C:\Program Files\Apple Software Update =>.Apple Inc.
O43 - CFD: 13/03/2019 - [] D -- C:\Program Files\Bonjour =>.Apple Inc.
O43 - CFD: 04/12/2018 - [] D -- C:\Program Files\Broadcom =>.Broadcom Corporation®
O43 - CFD: 04/12/2018 - [] D -- C:\Program Files\Brother =>.Brother
O43 - CFD: 01/04/2019 - [] D -- C:\Program Files\Browny02 =>.Brother Industries, Ltd.
O43 - CFD: 04/12/2018 - [] D -- C:\Program Files\Cisco =>.Cisco Systems, Inc.
O43 - CFD: 13/03/2019 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 24/02/2019 - [] D -- C:\Program Files\ControlCenter4 =>.Brother Industries, Ltd
O43 - CFD: 21/03/2019 - [] D -- C:\Program Files\Daring Development =>.Daring Development Inc.®
O43 - CFD: 24/02/2019 - [] D -- C:\Program Files\Defraggler =>.Piriform Ltd
O43 - CFD: 04/01/2019 - [] D -- C:\Program Files\DVD Maker =>.Aone Software
O43 - CFD: 11/03/2019 - [] D -- C:\Program Files\EaseUS =>.EaseUS Software
O43 - CFD: 04/12/2018 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation
O43 - CFD: 04/12/2018 - [] D -- C:\Program Files\Google =>.Google Inc®
O43 - CFD: 24/02/2019 - [] D -- C:\Program Files\HDDGURU LLF Tool
O43 - CFD: 20/03/2019 - [] D -- C:\Program Files\iBoysoft =>.Chengdu Aibo Tech Co., Ltd.®
O43 - CFD: 25/03/2019 - [] D -- C:\Program Files\ImgBurn =>.Lightning UK
O43 - CFD: 04/12/2018 - [] HD -- C:\Program Files\InstallShield Installation Information =>.InstallShield
O43 - CFD: 04/12/2018 - [] D -- C:\Program Files\Intel =>.Intel Corporation
O43 - CFD: 24/02/2019 - [] D -- C:\Program Files\Internet Download Manager =>.Tonec Inc
O43 - CFD: 17/02/2019 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 14/01/2019 - [0] D -- C:\Program Files\IObit =>.IObit
O43 - CFD: 14/03/2019 - [0] D -- C:\Program Files\Malwarebytes =>.Malwarebytes
O43 - CFD: 04/12/2018 - [] D -- C:\Program Files\Microsoft Analysis Services =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Microsoft Games =>.Microsoft Corporation
O43 - CFD: 04/12/2018 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 04/12/2018 - [] D -- C:\Program Files\Microsoft SQL Server =>.Microsoft Corporation
O43 - CFD: 06/12/2018 - [] D -- C:\Program Files\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 04/12/2018 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 11/12/2018 - [0] D -- C:\Program Files\MSXML 4.0 =>.Microsoft Corporation
O43 - CFD: 04/12/2018 - [] D -- C:\Program Files\Nero =>.Ahead Corporation
O43 - CFD: 06/03/2019 - [] D -- C:\Program Files\OPPO
O43 - CFD: 04/12/2018 - [] D -- C:\Program Files\Realtek =>.Realtek
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 21/02/2019 - [] D -- C:\Program Files\Samsung =>.Samsung Electronics
O43 - CFD: 04/12/2018 - [] D -- C:\Program Files\SDA =>.Tuxera Inc®
O43 - CFD: 31/03/2019 - [] D -- C:\Program Files\SMADAV =>.SmadAV
O43 - CFD: 25/03/2019 - [] D -- C:\Program Files\Supercopier =>.SFX Team
O43 - CFD: 20/03/2019 - [] D -- C:\Program Files\Tenorshare Any Data Recovery =>.Tenorshare Co.,Ltd.®
O43 - CFD: 24/02/2019 - [] D -- C:\Program Files\TeraCopy =>.Code Sector Inc.
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 13/03/2019 - [] D -- C:\Program Files\USB Disk Security =>.FlashPeak Inc
O43 - CFD: 24/02/2019 - [] D -- C:\Program Files\uTorrent =>.BitTorrent Inc®
O43 - CFD: 27/12/2018 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team
O43 - CFD: 04/01/2019 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 04/01/2019 - [] D -- C:\Program Files\Windows Journal =>.Microsoft Corporation
O43 - CFD: 24/02/2019 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 04/01/2019 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 04/12/2018 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation
O43 - CFD: 04/01/2019 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 04/01/2019 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 04/01/2019 - [] D -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 24/02/2019 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH®
O43 - CFD: 04/12/2018 - [] D -- C:\Program Files\zksoft =>.Realtek Semiconductor Corp®
O43 - CFD: 30/03/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\4K Download =>.Legitimate
O43 - CFD: 04/12/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 04/12/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 04/12/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother =>.Brother
O43 - CFD: 04/12/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defraggler =>.Piriform Ltd
O43 - CFD: 11/03/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Partition Master 13.0 =>.EaseUS Software
O43 - CFD: 04/12/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
O43 - CFD: 12/12/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HDD Low Level Format Tool
O43 - CFD: 20/03/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iBoysoft Data Recovery Free
O43 - CFD: 25/03/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn =>.Lightning UK
O43 - CFD: 04/12/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 04/12/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\marswifi
O43 - CFD: 11/12/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 =>.Microsoft Corporation
O43 - CFD: 04/12/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero =>.Ahead Corporation
O43 - CFD: 04/12/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SD Association =>.SD Association
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC =>.Wacom Technology
O43 - CFD: 23/01/2019 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tencent Software =>.SUP.Tencent
O43 - CFD: 20/03/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tenorshare Any Data Recovery
O43 - CFD: 04/12/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeraCopy =>.Code Sector Inc.
O43 - CFD: 04/12/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\USB Disk Security =>.FlashPeak Inc
O43 - CFD: 27/12/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team
O43 - CFD: 04/12/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 04/12/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Óòèëèòû
O43 - CFD: 13/03/2019 - [] D -- C:\ProgramData\Apple =>.Apple Inc.
O43 - CFD: 14/01/2019 - [] D -- C:\ProgramData\Apple Computer =>.Apple Inc.
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 17/01/2019 - [] D -- C:\ProgramData\Ashampoo =>.Ashampoo GmbH
O43 - CFD: 04/12/2018 - [] D -- C:\ProgramData\Brother =>.Brother
O43 - CFD: 04/12/2018 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation
O43 - CFD: 04/12/2018 - [] D -- C:\ProgramData\ControlCenter4 =>.Brother Industries, Ltd
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 04/12/2018 - [0] SHD -- C:\ProgramData\Favoris =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites =>.Microsoft Corporation
O43 - CFD: 04/12/2018 - [0] D -- C:\ProgramData\IDM =>.IDM
O43 - CFD: 14/01/2019 - [] D -- C:\ProgramData\IObit =>.IObit
O43 - CFD: 04/01/2019 - [] D -- C:\ProgramData\Logs =>.ABBYY Software
O43 - CFD: 04/12/2018 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation
O43 - CFD: 24/12/2018 - [] D -- C:\ProgramData\MetaQuotes
O43 - CFD: 12/12/2018 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 11/12/2018 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 04/12/2018 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation
O43 - CFD: 04/12/2018 - [] D -- C:\ProgramData\Nero =>.Ahead Corporation
O43 - CFD: 24/02/2019 - [] D -- C:\ProgramData\Oracle =>.Oracle
O43 - CFD: 21/03/2019 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation
O43 - CFD: 13/01/2019 - [] D -- C:\ProgramData\ProductData =>.Microsoft Corporation
O43 - CFD: 31/03/2019 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation
O43 - CFD: 19/02/2019 - [] D -- C:\ProgramData\Samsung =>.Samsung Electronics
O43 - CFD: 13/01/2019 - [] D -- C:\ProgramData\Softorino =>.Softorino
O43 - CFD: 12/01/2019 - [] D -- C:\ProgramData\SP_FT_Logs
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation
O43 - CFD: 11/03/2019 - [] D -- C:\ProgramData\SystemAcCrux
O43 - CFD: 17/02/2019 - [0] AD -- C:\ProgramData\TEMP =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation
O43 - CFD: 23/01/2019 - [] D -- C:\ProgramData\Tencent =>.SUP.Tencent
O43 - CFD: 13/03/2019 - [] D -- C:\Program Files\Common Files\Apple =>.Apple Inc.
O43 - CFD: 10/12/2018 - [] D -- C:\Program Files\Common Files\AV =>.Avast
O43 - CFD: 04/12/2018 - [] D -- C:\Program Files\Common Files\DESIGNER =>.Designer
O43 - CFD: 04/12/2018 - [] D -- C:\Program Files\Common Files\Intel =>.Intel Corporation
O43 - CFD: 13/01/2019 - [] D -- C:\Program Files\Common Files\IObit =>.IObit
O43 - CFD: 04/12/2018 - [] D -- C:\Program Files\Common Files\microsoft shared =>.Microsoft Corporation
O43 - CFD: 04/12/2018 - [] D -- C:\Program Files\Common Files\Nero =>.Ahead Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\SpeechEngines =>.Microsoft Corporation
O43 - CFD: 04/12/2018 - [] D -- C:\Program Files\Common Files\System =>.Microsoft Corporation
O43 - CFD: 04/12/2018 - [] D -- C:\Users\tofik\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 23/01/2019 - [] D -- C:\Users\tofik\AppData\Roaming\AndroidTbox
O43 - CFD: 14/01/2019 - [] D -- C:\Users\tofik\AppData\Roaming\Apple Computer =>.Apple Inc.
O43 - CFD: 04/12/2018 - [] D -- C:\Users\tofik\AppData\Roaming\ControlCenter4 =>.Brother Industries, Ltd
O43 - CFD: 31/03/2019 - [] D -- C:\Users\tofik\AppData\Roaming\DMCache =>.DMCache
O43 - CFD: 13/01/2019 - [] D -- C:\Users\tofik\AppData\Roaming\FolderColorize
O43 - CFD: 04/12/2018 - [] D -- C:\Users\tofik\AppData\Roaming\Identities =>.Microsoft Corporation
O43 - CFD: 27/03/2019 - [] D -- C:\Users\tofik\AppData\Roaming\IDM =>.IDM
O43 - CFD: 25/03/2019 - [] D -- C:\Users\tofik\AppData\Roaming\ImgBurn =>.Lightning UK
O43 - CFD: 04/12/2018 - [] D -- C:\Users\tofik\AppData\Roaming\InstallShield =>.InstallShield
O43 - CFD: 14/01/2019 - [] D -- C:\Users\tofik\AppData\Roaming\IObit =>.IObit
O43 - CFD: 04/12/2018 - [] D -- C:\Users\tofik\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\tofik\AppData\Roaming\Media Center Programs =>.Microsoft Corporation
O43 - CFD: 24/12/2018 - [] D -- C:\Users\tofik\AppData\Roaming\MetaQuotes
O43 - CFD: 30/03/2019 - [] SD -- C:\Users\tofik\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 04/12/2018 - [] D -- C:\Users\tofik\AppData\Roaming\Nero =>.Ahead Corporation
O43 - CFD: 04/12/2018 - [] D -- C:\Users\tofik\AppData\Roaming\Opera Software =>.Opera Software
O43 - CFD: 06/12/2018 - [] D -- C:\Users\tofik\AppData\Roaming\Ps4Tools
O43 - CFD: 19/02/2019 - [] D -- C:\Users\tofik\AppData\Roaming\Samsung =>.Samsung Electronics
O43 - CFD: 31/03/2019 - [] D -- C:\Users\tofik\AppData\Roaming\Smadav =>.SmadAV
O43 - CFD: 23/01/2019 - [] D -- C:\Users\tofik\AppData\Roaming\Tencent =>.SUP.Tencent
O43 - CFD: 27/12/2018 - [] D -- C:\Users\tofik\AppData\Roaming\Tenorshare =>.Tenorshare
O43 - CFD: 04/12/2018 - [] D -- C:\Users\tofik\AppData\Roaming\TeraCopy =>.Code Sector Inc.
O43 - CFD: 23/01/2019 - [] D -- C:\Users\tofik\AppData\Roaming\Tmon
O43 - CFD: 01/04/2019 - [] D -- C:\Users\tofik\AppData\Roaming\uTorrent
O43 - CFD: 21/03/2019 - [] D -- C:\Users\tofik\AppData\Roaming\vlc =>.VideoLan Team
O43 - CFD: 04/12/2018 - [] D -- C:\Users\tofik\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 04/12/2018 - [] D -- C:\Users\tofik\AppData\Roaming\Zbshareware Lab =>.Zbshareware Lab
O43 - CFD: 24/02/2019 - [] D -- C:\Users\tofik\AppData\Roaming\Zentimo
O43 - CFD: 01/04/2019 - [] D -- C:\Users\tofik\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 30/03/2019 - [] D -- C:\Users\tofik\AppData\Local\4kdownload.com =>.4kdownload.com
O43 - CFD: 17/03/2019 - [0] D -- C:\Users\tofik\AppData\Local\Adobe =>.Adobe
O43 - CFD: 28/12/2018 - [] D -- C:\Users\tofik\AppData\Local\Apple =>.Apple Inc.
O43 - CFD: 04/12/2018 - [0] SHD -- C:\Users\tofik\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 06/12/2018 - [] D -- C:\Users\tofik\AppData\Local\Apps =>.Microsoft Corporation
O43 - CFD: 17/01/2019 - [] D -- C:\Users\tofik\AppData\Local\Ashampoo =>.Ashampoo GmbH
O43 - CFD: 27/03/2019 - [] D -- C:\Users\tofik\AppData\Local\BitTorrentHelper
O43 - CFD: 25/01/2019 - [] D -- C:\Users\tofik\AppData\Local\Bluestacks =>.BlueStack Systems, Inc.
O43 - CFD: 23/01/2019 - [] D -- C:\Users\tofik\AppData\Local\CEF =>.CEF
O43 - CFD: 13/02/2019 - [] D -- C:\Users\tofik\AppData\Local\Daring_Development_Inc
O43 - CFD: 21/01/2019 - [0] D -- C:\Users\tofik\AppData\Local\Deployment =>.Microsoft Corporation
O43 - CFD: 23/03/2019 - [0] D -- C:\Users\tofik\AppData\Local\Diagnostics =>.Microsoft Corporation
O43 - CFD: 12/12/2018 - [] D -- C:\Users\tofik\AppData\Local\Downloaded Installations =>.Microsoft Corporation
O43 - CFD: 07/01/2019 - [] D -- C:\Users\tofik\AppData\Local\fontconfig =>.Portable Apps
O43 - CFD: 05/12/2018 - [] D -- C:\Users\tofik\AppData\Local\Google =>.Google
O43 - CFD: 04/12/2018 - [0] SHD -- C:\Users\tofik\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 25/01/2019 - [0] D -- C:\Users\tofik\AppData\Local\Lenovo =>.Lenovo
O43 - CFD: 13/03/2019 - [] D -- C:\Users\tofik\AppData\Local\mbam =>.Malwarebytes
O43 - CFD: 13/03/2019 - [] D -- C:\Users\tofik\AppData\Local\mbamtray =>.Malwarebytes
O43 - CFD: 11/01/2019 - [0] D -- C:\Users\tofik\AppData\Local\Mediatek =>.Mediatek Corporation
O43 - CFD: 19/01/2019 - [] D -- C:\Users\tofik\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 04/12/2018 - [0] D -- C:\Users\tofik\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 04/12/2018 - [] D -- C:\Users\tofik\AppData\Local\Opera Software =>.Opera Software
O43 - CFD: 04/12/2018 - [] D -- C:\Users\tofik\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 06/12/2018 - [] D -- C:\Users\tofik\AppData\Local\SCE =>.SCE
O43 - CFD: 01/04/2019 - [] D -- C:\Users\tofik\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 04/12/2018 - [0] SHD -- C:\Users\tofik\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 10/02/2019 - [] D -- C:\Users\tofik\AppData\Local\UnrealEngine =>.Unreal Software
O43 - CFD: 29/01/2019 - [0] D -- C:\Users\tofik\AppData\Local\VirtualDJ =>.Atomix Production
O43 - CFD: 28/03/2019 - [] D -- C:\Users\tofik\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 13/02/2019 - [] D -- C:\Users\tofik\AppData\Local\XBOX360_ISO_Extract
O43 - CFD: 01/04/2019 - [] D -- C:\Users\tofik\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 04/12/2018 - [0] D -- C:\Users\tofik\AppData\Local\Programs\Common =>.Microsoft Corporation
O43 - CFD: 31/03/2019 - [] D -- C:\Users\tofik\AppData\Local\Programs\Opera =>.Opera Software
O43 - CFD: 14/01/2019 - [] D -- C:\Users\tofik\AppData\LocalLow\IObit =>.IObit
O43 - CFD: 04/12/2018 - [] SHD -- C:\Users\tofik\AppData\LocalLow\Microsoft =>.Microsoft Corporation
O43 - CFD: 16/01/2019 - [0] D -- C:\Users\tofik\AppData\LocalLow\Mozilla =>.Mozilla Corporation
O43 - CFD: 23/02/2019 - [0] SD -- C:\Users\tofik\AppData\LocalLow\Temp =>.Microsoft Corporation
O43 - CFD: 04/12/2018 - [] D -- C:\Users\tofik\Desktop\2017
O43 - CFD: 04/12/2018 - [] D -- C:\Users\tofik\Desktop\2018 new
O43 - CFD: 27/12/2018 - [] D -- C:\Users\tofik\Desktop\2018 sumer
O43 - CFD: 28/03/2019 - [] D -- C:\Users\tofik\Desktop\2019 new
O43 - CFD: 31/12/2018 - [] D -- C:\Users\tofik\Desktop\2019 rai
O43 - CFD: 01/04/2019 - [] D -- C:\Users\tofik\Desktop\2019 sumer
O43 - CFD: 04/12/2018 - [] D -- C:\Users\tofik\Desktop\9dim
O43 - CFD: 24/02/2019 - [] D -- C:\Users\tofik\Desktop\Android Fastboot FRP Reset Tool V1.2 HardReset.info
O43 - CFD: 31/08/2018 - [] D -- C:\Users\tofik\Desktop\Content
O43 - CFD: 24/02/2019 - [] D -- C:\Users\tofik\Desktop\DLC Boot 2017 v3.4 Final
O43 - CFD: 24/03/2019 - [] D -- C:\Users\tofik\Desktop\FLASH 4.84 2XXX
O43 - CFD: 14/01/2019 - [] D -- C:\Users\tofik\Desktop\flash tlf
O43 - CFD: 22/03/2019 - [] D -- C:\Users\tofik\Desktop\GTA Sanandreas
O43 - CFD: 04/12/2018 - [] D -- C:\Users\tofik\Desktop\HACK OFW 4.82 SIN SIN BLOCK
O43 - CFD: 30/03/2019 - [] D -- C:\Users\tofik\Desktop\live 2019
O43 - CFD: 30/03/2019 - [] D -- C:\Users\tofik\Desktop\new 19 live
O43 - CFD: 04/12/2018 - [] D -- C:\Users\tofik\Desktop\Nouveau dossier
O43 - CFD: 24/02/2019 - [] D -- C:\Users\tofik\Desktop\Nouveau dossier (2)
O43 - CFD: 03/12/2018 - [] D -- C:\Users\tofik\Desktop\Nouveau dossier (3)
O43 - CFD: 13/03/2019 - [] D -- C:\Users\tofik\Desktop\Nouveau dossier (5)
O43 - CFD: 24/02/2019 - [] D -- C:\Users\tofik\Desktop\ps
O43 - CFD: 04/12/2018 - [] D -- C:\Users\tofik\Desktop\ps2 flash
O43 - CFD: 24/02/2019 - [] D -- C:\Users\tofik\Desktop\PS3
O43 - CFD: 04/12/2018 - [] D -- C:\Users\tofik\Desktop\ps3 convert pkg
O43 - CFD: 15/09/2018 - [] D -- C:\Users\tofik\Desktop\PS4
O43 - CFD: 11/02/2019 - [] D -- C:\Users\tofik\Desktop\rggada 19
O43 - CFD: 24/02/2019 - [] D -- C:\Users\tofik\Desktop\SP Flash Tool v3.1344.0.212
O43 - CFD: 24/02/2019 - [] D -- C:\Users\tofik\Desktop\SP_Flash_Tool_v5.1824_Win
O43 - CFD: 27/02/2019 - [] D -- C:\Users\tofik\Desktop\Tenorshare ReiBoot 7.2.7.6 Pro Portable
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\tofik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 04/01/2019 - [] RD -- C:\Users\tofik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 22/03/2019 - [] D -- C:\Users\tofik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
O43 - CFD: 04/12/2018 - [] D -- C:\Users\tofik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\tofik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 31/03/2019 - [] D -- C:\Users\tofik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 25/03/2019 - [] D -- C:\Users\tofik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Supercopier =>.SFX Team
O43 - CFD: 04/12/2018 - [] D -- C:\Users\tofik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 04/12/2018 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 11/12/2018 - [0] D -- C:\Users\Default\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 17/02/2019 - [0] D -- C:\Users\Default\AppData\Local\temp =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 04/12/2018 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 11/12/2018 - [0] D -- C:\Users\Default User\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 17/02/2019 - [0] D -- C:\Users\Default User\AppData\Local\temp =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 06/12/2018 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Apps =>.Microsoft Corporation
O43 - CFD: 04/12/2018 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 28/12/2018 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Apple Computer =>.Apple Inc.
O43 - CFD: 13/01/2019 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\IObit =>.IObit
O43 - CFD: 14/07/2009 - [] SD -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 23/01/2019 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Tencent =>.SUP.Tencent
O43 - CFD: 04/01/2019 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Tenorshare =>.Tenorshare

---\\ ShellIconOverlayIdentifiers (SIOI) (7) - 6s
O106 - SIOI: IDM Shell Extension [ IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files\Internet Download Manager\IDMShellExt.dll =>.Tonec Inc.®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation
O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation

---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (33) - 12s
O108 - CMH1: BriefcaseMenu - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll =>.Microsoft Corporation
O108 - CMH1: DefragglerShellExtension - {4380C993-0C43-4E02-9A7A-0D40B6EA7590} . (.Piriform Ltd - DefragglerShell.) -- C:\Program Files\Defraggler\DefragglerShell.dll =>.Piriform Ltd®
O108 - CMH1: Open With - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH1: Open With EncryptionMenu - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH1: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH1: ShellExtension - . (.Orphan.)
O108 - CMH1: TeraCopy - {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} . (...) -- C:\Program Files\TeraCopy\TeraCopyExt.dll
O108 - CMH1: WinRAR - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH®
O108 - CMH2: Compatibility - {1d27f844-3a1f-4410-85ac-14651078412d} . (.Microsoft Corporation - Bibliothèque d’extension de l’onglet Compat.) -- C:\Windows\System32\acppage.dll =>.Microsoft Corporation
O108 - CMH2: OpenContainingFolderMenu - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH2: TeraCopy - {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} . (...) -- C:\Program Files\TeraCopy\TeraCopyExt.dll
O108 - CMH3: CopyAsPathMenu - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH3: SendTo - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH4: EncryptionMenu - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH4: Offline Files - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation
O108 - CMH4: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH4: ShellExtension - . (.Orphan.)
O108 - CMH4: TeraCopy - {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} . (...) -- C:\Program Files\TeraCopy\TeraCopyExt.dll
O108 - CMH5: Gadgets - {6B9228DA-9C15-419e-856C-19E768A13BDC} . (.Microsoft Corporation - Zone de déposé du Volet Windows.) -- C:\Program Files\Windows Sidebar\sbdrop.dll =>.Microsoft Corporation
O108 - CMH5: igfxDTCM - {9B5F5829-A529-4B12-814A-E81BCB8D93FC} . (.Intel Corporation - igfxDTCM Module.) -- C:\Windows\System32\igfxDTCM.dll =>.Microsoft Windows Hardware Compatibility Publisher®
O108 - CMH5: New - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH5: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH5: TeraCopy - {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} . (...) -- C:\Program Files\TeraCopy\TeraCopyExt.dll
O108 - CMH6: BriefcaseMenu - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll =>.Microsoft Corporation
O108 - CMH6: DefragglerShellExtension - {4380C993-0C43-4E02-9A7A-0D40B6EA7590} . (.Piriform Ltd - DefragglerShell.) -- C:\Program Files\Defraggler\DefragglerShell.dll =>.Piriform Ltd®
O108 - CMH6: Library Location - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH6: Offline Files - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation
O108 - CMH6: TeraCopy - {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} . (...) -- C:\Program Files\TeraCopy\TeraCopyExt.dll
O108 - CMH6: WinRAR - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH®
O108 - CMH7: EnhancedStorageShell - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O108 - CMH7: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH7: ShellExtension - . (.Orphan.)
O108 - CMH7: TeraCopy - {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} . (...) -- C:\Program Files\TeraCopy\TeraCopyExt.dll

---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (1) - 0s
O50 - IFEO:C:\Windows\System32\FlashPlayerApp.exe - (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) [DisableExceptionChainValidation\\0] =>.Adobe Systems Incorporated®

---\\ ÉNUMÉRATION DES CLÉS StartupReg (1) - 1s
O53 - SMSR:HKLM\...\startupreg\uTorrent [Key] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\tofik\AppData\Roaming\uTorrent\uTorrent.exe =>BitTorrent (P2P)

---\\ LISTE DES PILOTES DU SYSTÈME (324) - 112s
O58 - SDL:2009/07/14 00:51:21 A . (.Microsoft Corporation - 1394 Bus Device Driver.) -- C:\Windows\System32\drivers\1394bus.sys [54784] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:01:12 A . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\Windows\System32\drivers\1394ohci.sys [164864] =>.Microsoft Corporation
O58 - SDL:2010/11/20 13:29:15 A . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\Windows\System32\drivers\acpi.sys [274304] =>.Microsoft Windows®
O58 - SDL:2010/11/20 09:47:55 A . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\Windows\System32\drivers\acpipmi.sys [10240] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422976] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:17 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297552] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [146512] =>.Microsoft Windows®
O58 - SDL:2010/11/20 09:40:03 A . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\afd.sys [338944] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:55:00 A . (.Microsoft Corporation - RAS Agile Vpn Miniport Call Manager.) -- C:\Windows\System32\drivers\agilevpn.sys [49152] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:26:15 A . (.Microsoft Corporation - Filtre AGP 440 NT.) -- C:\Windows\System32\drivers\AGP440.sys [53312] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:15 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14400] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:15 A . (.Microsoft Corporation - Filtre AGP AMD NT.) -- C:\Windows\System32\drivers\AMDAGP.SYS [53312] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:15 A . (.Microsoft Corporation - Pilote IDE AMD.) -- C:\Windows\System32\drivers\amdide.sys [14912] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:11:04 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\amdk8.sys [55296] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:11:04 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\amdppm.sys [52736] =>.Microsoft Corporation
O58 - SDL:2010/11/20 13:29:13 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [80256] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:15 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [159312] =>.Microsoft Windows®
O58 - SDL:2010/11/20 13:29:15 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [22400] =>.Microsoft Windows®
O58 - SDL:2010/11/20 10:29:49 A . (.Microsoft Corporation - AppID Driver.) -- C:\Windows\System32\drivers\appid.sys [50176] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [76368] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [86608] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:54:46 A . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\Windows\System32\drivers\asyncmac.sys [17920] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:26:15 A . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [21584] =>.Microsoft Windows®
O58 - SDL:2010/11/20 13:29:12 A . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\Windows\System32\drivers\ataport.sys [132992] =>.Microsoft Windows®
O58 - SDL:2009/07/13 23:02:49 A . (.Broadcom Corporation - Pilote unifié NDIS6.x Broadcom NetXtreme Gi.) -- C:\Windows\System32\drivers\b57nd60x.sys [229888] =>.Broadcom Corporation
O58 - SDL:2009/07/14 02:26:15 A . (.Microsoft Corporation - Battery Class Driver.) -- C:\Windows\System32\drivers\battc.sys [25168] =>.Microsoft Windows®
O58 - SDL:2015/11/07 07:49:14 A . (.Broadcom Corporation - Broadcom 802.11 Network Adapter wireless dr.) -- C:\Windows\System32\drivers\BCMWL6.SYS [9445152] =>.Broadcom Corporation®
O58 - SDL:2009/07/14 00:45:01 A . (.Microsoft Corporation - BEEP Driver.) -- C:\Windows\System32\drivers\beep.sys [6144] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:23:04 A . (.Microsoft Corporation - BLB Drive Driver.) -- C:\Windows\System32\drivers\blbdrive.sys [35328] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:14:22 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\Windows\System32\drivers\bowser.sys [69632] =>.Microsoft Corporation
O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] =>.Brother Industries, Ltd.
O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] =>.Brother Industries, Ltd.
O58 - SDL:2009/07/14 01:41:26 A . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\Windows\System32\drivers\bridge.sys [78336] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:57:25 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [272128] =>.Brother Industries Ltd.
O58 - SDL:2009/07/13 23:53:32 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] =>.Brother Industries Ltd.
O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] =>.Brother Industries Ltd.
O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] =>.Brother Industries Ltd.
O58 - SDL:2009/07/14 00:51:34 A . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\Windows\System32\drivers\bthmodem.sys [56320] =>.Microsoft Corporation
O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbdx.sys [430080] =>.Broadcom Corporation
O58 - SDL:2009/07/14 00:11:15 A . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\cdfs.sys [70656] =>.Microsoft Corporation
O58 - SDL:2010/11/20 09:38:10 A . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\cdrom.sys [108544] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:51:17 A . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\Windows\System32\drivers\circlass.sys [37888] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:26:15 A . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\Windows\System32\drivers\Classpnp.sys [140864] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:19:18 A . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\Windows\System32\drivers\CmBatt.sys [14080] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:26:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [15952] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:17:54 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\Windows\System32\drivers\cng.sys [369568] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:21 A . (.Microsoft Corporation - Composite Battery Driver.) -- C:\Windows\System32\drivers\compbatt.sys [19024] =>.Microsoft Windows®
O58 - SDL:2010/11/20 10:50:21 A . (.Microsoft Corporation - Multi-Transport Composite Bus Enumerator.) -- C:\Windows\System32\drivers\CompositeBus.sys [31232] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:20:28 A . (.Microsoft Corporation - Crash Dump Driver.) -- C:\Windows\System32\drivers\crashdmp.sys [35408] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:28 A . (.Microsoft Corporation - Disk Block Verification Filter Driver.) -- C:\Windows\System32\drivers\crcdisk.sys [22096] =>.Microsoft Windows®
O58 - SDL:2010/11/20 09:44:36 A . (.Microsoft Corporation - Windows Client Side Caching Driver.) -- C:\Windows\System32\drivers\csc.sys [388096] =>.Microsoft Corporation
O58 - SDL:2010/11/20 09:42:32 A . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\dfsc.sys [78336] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:24:05 A . (.Microsoft Corporation - System Indexer/Cache Driver.) -- C:\Windows\System32\drivers\discache.sys [32256] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:20:27 A . (.Microsoft Corporation - PnP Disk Driver.) -- C:\Windows\System32\drivers\disk.sys [57424] =>.Microsoft Windows®
O58 - SDL:2010/11/20 13:29:41 A . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\Windows\System32\drivers\Diskdump.sys [27008] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:28 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [70720] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:41:37 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\drivers\drmk.sys [80896] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:50:57 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\drivers\drmkaud.sys [5120] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:20:28 A . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\Windows\System32\drivers\Dumpata.sys [26704] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:17:54 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\Windows\System32\drivers\dumpfve.sys [55584] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:25:26 A . (.Microsoft Corporation - DirectX API Driver.) -- C:\Windows\System32\drivers\dxapi.sys [13312] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:25:25 A . (.Microsoft Corporation - DirectX Graphics Driver.) -- C:\Windows\System32\drivers\dxg.sys [76288] =>.Microsoft Corporation
O58 - SDL:2010/11/20 13:29:47 A . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\drivers\dxgkrnl.sys [728448] =>.Microsoft Windows®
O58 - SDL:2010/11/20 10:07:10 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\Windows\System32\drivers\dxgmms1.sys [211968] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:20:28 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [453712] =>.Microsoft Windows®
O58 - SDL:2018/10/18 10:49:30 A . (.Windows (R) Codename Longhorn DDK provider - Disk Performance Driver.) -- C:\Windows\System32\drivers\EPMVolFlt.sys [17992] =>.CHENGDU YIWO Tech Development Co., Ltd.®
O58 - SDL:2009/07/14 00:19:19 A . (.Microsoft Corporation - Error Device Driver.) -- C:\Windows\System32\drivers\errdev.sys [7168] =>.Microsoft Corporation
O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbdx.sys [3100160] =>.Broadcom Corporation
O58 - SDL:2009/07/14 00:14:03 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\Windows\System32\drivers\exfat.sys [142336] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:14:02 A . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\Windows\System32\drivers\fastfat.sys [148480] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:45:45 A . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\Windows\System32\drivers\fdc.sys [25088] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:20:28 A . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\Windows\System32\drivers\fileinfo.sys [58448] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:15:29 A . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\Windows\System32\drivers\filetrace.sys [28160] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:45:45 A . (.Microsoft Corporation - Floppy Driver.) -- C:\Windows\System32\drivers\flpydisk.sys [19968] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:20:28 A . (.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) -- C:\Windows\System32\drivers\fltMgr.sys [198208] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:28 A . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) -- C:\Windows\System32\drivers\fsdepends.sys [46160] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:28 A . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\Windows\System32\drivers\fs_rec.sys [19536] =>.Microsoft Windows®
O58 - SDL:2010/11/20 13:24:30 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\Windows\System32\drivers\fvevol.sys [194800] =>.Microsoft Windows®
O58 - SDL:2010/11/20 13:29:53 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\Windows\System32\drivers\FWPKCLNT.SYS [187776] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:28 A . (.Microsoft Corporation - Filtre AGPv3.0 générique Microsoft pour pla.) -- C:\Windows\System32\drivers\GAGP30KX.SYS [57936] =>.Microsoft Windows®
O58 - SDL:2016/05/27 17:20:18 A . (.LXD Development, Inc. - Gaming Mouse 33052 Driver.) -- C:\Windows\System32\drivers\GMLXDFltr01.sys [17696] =>.Microsoft Windows Hardware Compatibility Publisher®
O58 - SDL:2009/07/13 23:54:14 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [26624] =>.Hauppauge Computer Works, Inc.
O58 - SDL:2010/11/20 10:59:29 A . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\hdaudbus.sys [108544] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:00:21 A . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\HdAudio.sys [304128] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:19:21 A . (.Microsoft Corporation - Hid Battery Driver.) -- C:\Windows\System32\drivers\hidbatt.sys [21504] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:51:33 A . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périp.) -- C:\Windows\System32\drivers\hidbth.sys [91136] =>.Microsoft Corporation
O58 - SDL:2010/11/20 10:59:38 A . (.Microsoft Corporation - Hid Class Library.) -- C:\Windows\System32\drivers\hidclass.sys [55808] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:51:05 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\Windows\System32\drivers\hidir.sys [37888] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:51:00 A . (.Microsoft Corporation - Hid Parsing Library.) -- C:\Windows\System32\drivers\hidparse.sys [25728] =>.Microsoft Corporation
O58 - SDL:2010/11/20 10:59:38 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\Windows\System32\drivers\hidusb.sys [24064] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:20:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [67152] =>.Microsoft Windows®
O58 - SDL:2010/11/20 09:40:21 A . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\Windows\System32\drivers\http.sys [513536] =>.Microsoft Corporation
O58 - SDL:2010/11/20 13:29:53 A . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\Windows\System32\drivers\hwpolicy.sys [14208] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:11:24 A . (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [80896] =>.Microsoft Corporation
O58 - SDL:2013/03/05 20:49:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x86.) -- C:\Windows\System32\drivers\iaStorA.sys [527344] =>.Intel Corporation - Intel® Rapid Storage Technology®
O58 - SDL:2013/03/05 20:49:28 A . (.Intel Corporation - Intel Rapid Storage Technology Filter drive.) -- C:\Windows\System32\drivers\iaStorF.sys [26096] =>.Intel Corporation - Intel® Rapid Storage Technology®
O58 - SDL:2010/11/20 13:29:54 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [332160] =>.Microsoft Windows®
O58 - SDL:2016/10/17 16:35:48 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [147120] =>.Tonec Inc.®
O58 - SDL:2018/09/13 12:51:46 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd32.sys [3038032] =>.Intel Corporation®
O58 - SDL:2009/07/14 02:20:36 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41040] =>.Microsoft Windows®
O58 - SDL:2015/08/21 12:05:16 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [379128] =>.Intel Corporation - Client Components Group®
O58 - SDL:2009/07/14 02:20:36 A . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\Windows\System32\drivers\intelide.sys [15424] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:11:04 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\intelppm.sys [53760] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:54:29 A . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\Windows\System32\drivers\ipfltdrv.sys [58880] =>.Microsoft Corporation
O58 - SDL:2010/11/20 10:19:15 A . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\Windows\System32\drivers\IPMIDrv.sys [65536] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:54:29 A . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\ipnat.sys [101888] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:53:32 A . (.Microsoft Corporation - IRDA Protocol Driver.) -- C:\Windows\System32\drivers\irda.sys [96768] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:53:27 A . (.Microsoft Corporation - Infra-Red Bus Enumerator.) -- C:\Windows\System32\drivers\irenum.sys [13824] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:20:36 A . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\Windows\System32\drivers\isapnp.sys [46656] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:36 A . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\Windows\System32\drivers\kbdclass.sys [42576] =>.Microsoft Windows®
O58 - SDL:2010/11/20 10:50:10 A . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\Windows\System32\drivers\kbdhid.sys [28160] =>.Microsoft Corporation
O58 - SDL:2010/11/20 10:50:19 A . (.Microsoft Corporation - Kernel CSA Library.) -- C:\Windows\System32\drivers\ks.sys [190976] =>.Microsoft Corporation
O58 - SDL:2010/11/20 13:30:00 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\drivers\ksecdd.sys [67456] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:36 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\drivers\ksecpkg.sys [133200] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:53:19 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\Windows\System32\drivers\lltdio.sys [48128] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [95824] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:37 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89168] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [54864] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96848] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:15:45 A . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) -- C:\Windows\System32\drivers\luafv.sys [86528] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:45:57 A . (.Microsoft Corporation - Medium changer class driver.) -- C:\Windows\System32\drivers\mcd.sys [18432] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [30800] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [235584] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:55:24 A . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\Windows\System32\drivers\modem.sys [31744] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:25:59 A . (.Microsoft Corporation - Monitor Driver.) -- C:\Windows\System32\drivers\monitor.sys [23552] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:20:44 A . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\Windows\System32\drivers\mouclass.sys [41552] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:45:08 A . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\Windows\System32\drivers\mouhid.sys [26112] =>.Microsoft Corporation
O58 - SDL:2010/11/20 13:30:00 A . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\Windows\System32\drivers\mountmgr.sys [78208] =>.Microsoft Windows®
O58 - SDL:2010/11/20 13:30:01 A . (.Microsoft Corporation - Pilote du bus de prise en charge des chemin.) -- C:\Windows\System32\drivers\mpio.sys [130432] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:52:53 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\Windows\System32\drivers\mpsdrv.sys [60416] =>.Microsoft Corporation
O58 - SDL:2010/11/20 09:42:43 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\Windows\System32\drivers\mrxdav.sys [115712] =>.Microsoft Corporation
O58 - SDL:2010/11/20 09:42:42 A . (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\mrxsmb.sys [123904] =>.Microsoft Corporation
O58 - SDL:2010/11/20 09:44:18 A . (.Microsoft Corporation - Longhorn SMB Downlevel SubRdr.) -- C:\Windows\System32\drivers\mrxsmb10.sys [223232] =>.Microsoft Corporation
O58 - SDL:2010/11/20 09:44:09 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\Windows\System32\drivers\mrxsmb20.sys [96768] =>.Microsoft Corporation
O58 - SDL:2010/11/20 13:30:01 A . (.Microsoft Corporation - MS AHCI 1.0 Standard Driver.) -- C:\Windows\System32\drivers\msahci.sys [28032] =>.Microsoft Windows®
O58 - SDL:2010/11/20 13:30:04 A . (.Microsoft Corporation - Module spécifique de périphériques Microsof.) -- C:\Windows\System32\drivers\msdsm.sys [116096] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:11:26 A . (.Microsoft Corporation - Mailslot driver.) -- C:\Windows\System32\drivers\msfs.sys [22528] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:51:08 A . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\Windows\System32\drivers\mshidkmdf.sys [4096] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:20:43 A . (.Microsoft Corporation - ISA Driver.) -- C:\Windows\System32\drivers\msisadrv.sys [13888] =>.Microsoft Windows®
O58 - SDL:2010/11/20 13:30:05 A . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\Windows\System32\drivers\msiscsi.sys [233344] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:45:08 A . (.Microsoft Corporation - MS KS Server.) -- C:\Windows\System32\drivers\mskssrv.sys [8320] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:45:08 A . (.Microsoft Corporation - MS Proxy Clock.) -- C:\Windows\System32\drivers\mspclock.sys [5888] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:45:07 A . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\Windows\System32\drivers\mspqm.sys [5504] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:20:44 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\Windows\System32\drivers\msrpc.sys [162896] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:44 A . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\Windows\System32\drivers\mssmbios.sys [28240] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:45:08 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\Windows\System32\drivers\mstee.sys [6144] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:46:55 A . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\Windows\System32\drivers\MTConfig.sys [12288] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:20:44 A . (.Microsoft Corporation - Multiple UNC Provider Driver.) -- C:\Windows\System32\drivers\mup.sys [49728] =>.Microsoft Windows®
O58 - SDL:2010/11/20 13:30:06 A . (.Microsoft Corporation - Pilote NDIS 6.20.) -- C:\Windows\System32\drivers\ndis.sys [712576] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:52:44 A . (.Microsoft Corporation - NDIS Packet Capture Filter Driver.) -- C:\Windows\System32\drivers\ndiscap.sys [27136] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:54:24 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\Windows\System32\drivers\ndistapi.sys [20992] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:06:36 A . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\Windows\System32\drivers\ndisuio.sys [46080] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:07:50 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\Windows\System32\drivers\ndiswan.sys [118784] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:07:39 A . (.Microsoft Corporation - NDIS Proxy.) -- C:\Windows\System32\drivers\ndproxy.sys [48640] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:53:54 A . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\Windows\System32\drivers\netbios.sys [36352] =>.Microsoft Corporation
O58 - SDL:2010/11/20 09:39:44 A . (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netbt.sys [187904] =>.Microsoft Corporation
O58 - SDL:2010/11/20 13:30:05 A . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\Windows\System32\drivers\netio.sys [240000] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:44 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [44624] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:11:32 A . (.Microsoft Corporation - NPFS Driver.) -- C:\Windows\System32\drivers\npfs.sys [35328] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:12:08 A . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\drivers\nsiproxy.sys [16896] =>.Microsoft Corporation
O58 - SDL:2010/11/20 13:30:06 A . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1211264] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:11:12 A . (.Microsoft Corporation - NULL Driver.) -- C:\Windows\System32\drivers\null.sys [4608] =>.Microsoft Corporation
O58 - SDL:2010/11/20 13:30:06 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [117120] =>.Microsoft Windows®
O58 - SDL:2010/11/20 13:30:06 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [143744] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:44 A . (.Microsoft Corporation - Filtre AGP NForce NT.) -- C:\Windows\System32\drivers\NV_AGP.SYS [105024] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:52:03 A . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\Windows\System32\drivers\nwifi.sys [267264] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:51:29 A . (.Microsoft Corporation - 1394 OpenHCI Port Driver.) -- C:\Windows\System32\drivers\ohci1394.sys [62464] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:53:58 A . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\Windows\System32\drivers\pacer.sys [104448] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:45:35 A . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\parport.sys [79360] =>.Microsoft Corporation
O58 - SDL:2010/11/20 13:30:06 A . (.Microsoft Corporation - Partition Management Driver.) -- C:\Windows\System32\drivers\partmgr.sys [56192] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:45:29 A . (.Microsoft Corporation - Pilote parallèle VDM.) -- C:\Windows\System32\drivers\parvdm.sys [8704] =>.Microsoft Corporation
O58 - SDL:2010/11/20 13:30:06 A . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\Windows\System32\drivers\pci.sys [153984] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:45 A . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\pciide.sys [12368] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:19:03 A . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\Windows\System32\drivers\pciidex.sys [42560] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:19:03 A . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\Windows\System32\drivers\pcmcia.sys [180288] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:19:04 A . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\Windows\System32\drivers\pcw.sys [43088] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:41:15 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\Windows\System32\drivers\PEAuth.sys [586752] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:51:02 A . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\Windows\System32\drivers\portcls.sys [177152] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:11:04 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\processr.sys [52224] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1383488] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106064] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:54:13 A . (.Microsoft Corporation - Pilote du support de Microsoft Quality Wind.) -- C:\Windows\System32\drivers\qwavedrv.sys [31744] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:54:40 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\Windows\System32\drivers\rasacd.sys [11776] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:54:34 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\rasl2tp.sys [78848] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:54:53 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\Windows\System32\drivers\raspppoe.sys [77824] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:54:48 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\Windows\System32\drivers\raspptp.sys [73728] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:54:58 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\Windows\System32\drivers\rassstp.sys [75264] =>.Microsoft Corporation
O58 - SDL:2010/11/20 09:44:05 A . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) -- C:\Windows\System32\drivers\rdbss.sys [242688] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:02:41 A . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\Windows\System32\drivers\rdpbus.sys [18944] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:22:19 A . (.Microsoft Corporation - RDP Miniport.) -- C:\Windows\System32\drivers\RDPCDD.sys [6656] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:24:46 A . (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [133632] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:01:39 A . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\drivers\RDPENCDD.sys [6656] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:01:41 A . (.Microsoft Corporation - RDP Reflector Driver Miniport.) -- C:\Windows\System32\drivers\RDPREFMP.sys [7168] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:21:14 A . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\Windows\System32\drivers\rdpvideominiport.sys [15872] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:22:29 A . (.Microsoft Corporation - Pilote de pile RDP Terminal.) -- C:\Windows\System32\drivers\rdpwd.sys [183808] =>.Microsoft Corporation
O58 - SDL:2010/11/20 13:30:10 A . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\Windows\System32\drivers\rdyboost.sys [173440] =>.Microsoft Windows®
O58 - SDL:2010/11/20 11:06:36 A . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\Windows\System32\drivers\rmcast.sys [117760] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:54:09 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\Windows\System32\drivers\RNDISMP.sys [33280] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:55:21 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\Windows\System32\drivers\rootmdm.sys [8192] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:53:20 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) -- C:\Windows\System32\drivers\rspndr.sys [60928] =>.Microsoft Corporation
O58 - SDL:2015/05/19 12:39:58 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.20 32-bit Dr.) -- C:\Windows\System32\drivers\Rt86win7.sys [731904] =>.Realtek Semiconductor Corp®
O58 - SDL:2018/11/07 17:22:04 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHDA.sys [4995688] =>.Realtek Semiconductor Corp.®
O58 - SDL:2017/10/26 10:19:48 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\Windows\System32\drivers\RtsPStor.sys [299968] =>.Realtek Semiconductor Corp.®
O58 - SDL:2010/11/20 13:30:10 A . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\Windows\System32\drivers\sbp2port.sys [85376] =>.Microsoft Windows®
O58 - SDL:2010/11/20 10:24:56 A . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce.) -- C:\Windows\System32\drivers\scfilter.sys [26624] =>.Microsoft Corporation
O58 - SDL:2010/11/20 13:30:10 A . (.Microsoft Corporation - SCSI Port Driver.) -- C:\Windows\System32\drivers\scsiport.sys [140160] =>.Microsoft Windows®
O58 - SDL:2009/07/13 21:50:20 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] =>.Rovi Corporation
O58 - SDL:2009/07/14 00:45:28 A . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\Windows\System32\drivers\serenum.sys [17920] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:45:33 A . (.Microsoft Corporation - Pilote de périphérique série.) -- C:\Windows\System32\drivers\serial.sys [83456] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:45:08 A . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\drivers\sermouse.sys [19968] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:14:46 A . (.Microsoft Corporation - Pilote de périphérique Serial Imaging.) -- C:\Windows\System32\drivers\serscan.sys [9216] =>.Microsoft Corporation
O58 - SDL:2012/01/15 23:01:16 A . (.Sony Corporation - Sony Firmware Extension Parser driver.) -- C:\Windows\System32\drivers\SFEP.sys [10752] =>.Sony Corporation
O58 - SDL:2009/07/14 00:45:52 A . (.Microsoft Corporation - Small Form Factor Disk Driver.) -- C:\Windows\System32\drivers\sffdisk.sys [11264] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:45:52 A . (.Microsoft Corporation - Small Form Factor MMC Protocol Driver.) -- C:\Windows\System32\drivers\sffp_mmc.sys [12288] =>.Microsoft Corporation
O58 - SDL:2010/11/20 10:50:49 A . (.Microsoft Corporation - Small Form Factor SD Protocol Driver.) -- C:\Windows\System32\drivers\sffp_sd.sys [12800] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:45:52 A . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\Windows\System32\drivers\sfloppy.sys [13824] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:19:03 A . (.Microsoft Corporation - Filtre SIS NT AGP.) -- C:\Windows\System32\drivers\SISAGP.SYS [52304] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [40016] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [77888] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:53:41 A . (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [71168] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:45:28 A . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\Windows\System32\drivers\smclib.sys [17408] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:19:03 A . (.Microsoft Corporation - loader for security processor.) -- C:\Windows\System32\drivers\spldr.sys [17472] =>.Microsoft Windows®
O58 - SDL:2009/07/13 21:34:43 A . (.Microsoft Corporation - security processor.) -- C:\Windows\System32\drivers\spsys.sys [405504] =>.Microsoft Corporation
O58 - SDL:2010/11/20 09:45:34 A . (.Microsoft Corporation - Server driver.) -- C:\Windows\System32\drivers\srv.sys [311296] =>.Microsoft Corporation
O58 - SDL:2010/11/20 09:44:37 A . (.Microsoft Corporation - Smb 2.0 Server driver.) -- C:\Windows\System32\drivers\srv2.sys [309248] =>.Microsoft Corporation
O58 - SDL:2010/11/20 09:44:29 A . (.Microsoft Corporation - Server Network driver.) -- C:\Windows\System32\drivers\srvnet.sys [114176] =>.Microsoft Corporation
O58 - SDL:2017/05/18 22:17:58 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver.) -- C:\Windows\System32\drivers\ssudbus.sys [109456] =>.Samsung Electronics Co., Ltd.®
O58 - SDL:2017/01/16 07:26:40 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver.) -- C:\Windows\System32\drivers\ssudmdm.sys [147072] =>.Samsung Electronics CO., LTD.®
O58 - SDL:2009/07/14 02:19:04 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [21072] =>.Microsoft Windows®
O58 - SDL:2010/11/20 13:30:12 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\Windows\System32\drivers\storport.sys [148864] =>.Microsoft Windows®
O58 - SDL:2010/11/20 13:30:15 A . (.Microsoft Corporation - Storage VSC Driver.) -- C:\Windows\System32\drivers\storvsc.sys [28032] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:50:57 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\Windows\System32\drivers\stream.sys [53632] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:19:10 A . (.Microsoft Corporation - Plug and Play Software Device Enumerator.) -- C:\Windows\System32\drivers\swenum.sys [12240] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:45:53 A . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\Windows\System32\drivers\tape.sys [24576] =>.Microsoft Corporation
O58 - SDL:2010/11/20 13:30:12 A . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\Windows\System32\drivers\tcpip.sys [1290112] =>.Microsoft Windows®
O58 - SDL:2010/11/20 11:07:13 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\Windows\System32\drivers\tcpipreg.sys [35328] =>.Microsoft Corporation
O58 - SDL:2010/11/20 09:39:18 A . (.Microsoft Corporation - TDI Wrapper.) -- C:\Windows\System32\drivers\tdi.sys [21504] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:21:10 A . (.Microsoft Corporation - Named Pipe Transport Driver.) -- C:\Windows\System32\drivers\tdpipe.sys [18432] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:21:10 A . (.Microsoft Corporation - TCP Transport Driver.) -- C:\Windows\System32\drivers\tdtcp.sys [24576] =>.Microsoft Corporation
O58 - SDL:2010/11/20 09:39:17 A . (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [74752] =>.Microsoft Corporation
O58 - SDL:2010/11/20 13:30:12 A . (.Microsoft Corporation - Remote Desktop Server Driver.) -- C:\Windows\System32\drivers\termdd.sys [53120] =>.Microsoft Windows®
O58 - SDL:2019/01/23 12:41:41 A . (.Tencent - TesMon.) -- C:\Windows\System32\drivers\TesMon.sys [1812584] =>.Tencent Technology(Shenzhen) Company Limited®
O58 - SDL:2019/01/23 12:15:38 A . (.TENCENT - tesrsdt NT Driver.) -- C:\Windows\System32\drivers\tesrsdt.sys [178184] =>.Tencent Technology(Shenzhen) Company Limited®
O58 - SDL:2010/11/20 11:22:20 A . (.Microsoft Corporation - TS Security Filter Driver.) -- C:\Windows\System32\drivers\tssecsrv.sys [31232] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:24:41 A . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du.) -- C:\Windows\System32\drivers\TsUsbFlt.sys [52224] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:06:41 A . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\Windows\System32\drivers\tunnel.sys [108544] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:19:10 A . (.Microsoft Corporation - Filtre MS AGPv3.5.) -- C:\Windows\System32\drivers\UAGP35.SYS [55888] =>.Microsoft Windows®
O58 - SDL:2010/11/20 09:42:28 A . (.Microsoft Corporation - UDF File System Driver.) -- C:\Windows\System32\drivers\udfs.sys [246784] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:19:11 A . (.Microsoft Corporation - Filtre ULi AGPv3.0 pour plateformes à proce.) -- C:\Windows\System32\drivers\ULIAGPKX.SYS [57424] =>.Microsoft Windows®
O58 - SDL:2010/11/20 11:00:24 A . (.Microsoft Corporation - User-Mode Bus Enumerator.) -- C:\Windows\System32\drivers\umbus.sys [39936] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:51:35 A . (.Microsoft Corporation - Generic pass-through driver.) -- C:\Windows\System32\drivers\umpass.sys [8192] =>.Microsoft Corporation
O58 - SDL:2016/08/16 03:18:34 A . (.MBB - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\usb2ser.sys [128704] =>.MBB
O58 - SDL:2009/07/14 00:54:16 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\Windows\System32\drivers\usb8023.sys [15872] =>.Microsoft Corporation
O58 - SDL:2018/08/22 15:45:02 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\drivers\usbaapl.sys [45056] =>.Apple, Inc.
O58 - SDL:2010/11/20 11:00:05 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\Windows\System32\drivers\USBCAMD.sys [25856] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:00:05 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\Windows\System32\drivers\USBCAMD2.sys [25856] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:00:08 A . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\Windows\System32\drivers\usbccgp.sys [75776] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:51:18 A . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\Windows\System32\drivers\usbcir.sys [86016] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:51:05 A . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\Windows\System32\drivers\usbd.sys [5888] =>.Microsoft Corporation
O58 - SDL:2010/11/20 10:59:43 A . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\Windows\System32\drivers\usbehci.sys [42496] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:01:09 A . (.Microsoft Corporation - Default Hub Driver for USB.) -- C:\Windows\System32\drivers\usbhub.sys [258560] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:51:14 A . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\Windows\System32\drivers\usbohci.sys [20480] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:00:06 A . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\Windows\System32\drivers\usbport.sys [284672] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:17:06 A . (.Microsoft Corporation - USB Printer driver.) -- C:\Windows\System32\drivers\usbprint.sys [19968] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:52:01 A . (.Microsoft Corporation - Gestionnaire de stratégie de redirection US.) -- C:\Windows\System32\drivers\usbrpm.sys [26112] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:00:04 A . (.Microsoft Corporation - USB Mass Storage Class Driver.) -- C:\Windows\System32\drivers\USBSTOR.SYS [76288] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:51:10 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\Windows\System32\drivers\usbuhci.sys [24064] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:00:21 A . (.Microsoft Corporation - USB Video Class Driver.) -- C:\Windows\System32\drivers\usbvideo.sys [146432] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:19:10 A . (.Microsoft Corporation - Énumérateur racine de lecteur virtuel.) -- C:\Windows\System32\drivers\vdrvroot.sys [32832] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:25:51 A . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\drivers\vga.sys [25088] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:25:49 A . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\drivers\vgapnp.sys [26112] =>.Microsoft Corporation
O58 - SDL:2010/11/20 13:30:14 A . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\Windows\System32\drivers\vhdmp.sys [160128] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:19:10 A . (.Microsoft Corporation - Filtre VIA NT AGP.) -- C:\Windows\System32\drivers\VIAAGP.SYS [53328] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:11:04 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\viac7.sys [52736] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:19:10 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [16976] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:25:51 A . (.Microsoft Corporation - Video Port Driver.) -- C:\Windows\System32\drivers\videoprt.sys [111616] =>.Microsoft Corporation
O58 - SDL:2010/11/20 13:30:15 A . (.Microsoft Corporation - Virtual Machine Bus.) -- C:\Windows\System32\drivers\vmbus.sys [175360] =>.Microsoft Windows®
O58 - SDL:2010/11/20 10:14:45 A . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\Windows\System32\drivers\VMBusHID.sys [17920] =>.Microsoft Corporation
O58 - SDL:2010/11/20 10:14:41 A . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\Windows\System32\drivers\vms3cap.sys [5632] =>.Microsoft Corporation
O58 - SDL:2010/11/20 13:30:15 A . (.Microsoft Corporation - Virtual Storage Filter Driver.) -- C:\Windows\System32\drivers\vmstorfl.sys [40704] =>.Microsoft Windows®
O58 - SDL:2010/11/20 13:30:16 A . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\drivers\volmgr.sys [53120] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:19:11 A . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) -- C:\Windows\System32\drivers\volmgrx.sys [297040] =>.Microsoft Windows®
O58 - SDL:2010/11/20 13:30:16 A . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [245632] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:19:11 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [141904] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:52:02 A . (.Microsoft Corporation - Pilote de bus WiFi virtuel.) -- C:\Windows\System32\drivers\vwifibus.sys [19968] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:52:04 A . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\Windows\System32\drivers\vwififlt.sys [48128] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:52:10 A . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\Windows\System32\drivers\vwifimp.sys [14336] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:46:53 A . (.Microsoft Corporation - Wacom Serial Pen Tablet HID Driver.) -- C:\Windows\System32\drivers\wacompen.sys [21632] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:07:45 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\Windows\System32\drivers\wanarp.sys [63488] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:24:11 A . (.Microsoft Corporation - Watchdog Driver.) -- C:\Windows\System32\drivers\watchdog.sys [35328] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:19:11 A . (.Microsoft Corporation - Microsoft Watchdog Timer Driver.) -- C:\Windows\System32\drivers\wd.sys [19024] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:19:10 A . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) -- C:\Windows\System32\drivers\Wdf01000.sys [445008] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:19:11 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\Windows\System32\drivers\WdfLdr.sys [38480] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:53:51 A . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) -- C:\Windows\System32\drivers\wfplwf.sys [9728] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:19:10 A . (.Microsoft Corporation - Wim file system Driver.) -- C:\Windows\System32\drivers\wimmount.sys [19008] =>.Microsoft Windows®
O58 - SDL:2010/11/20 13:29:53 A . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\Windows\System32\drivers\winhv.sys [43392] =>.Microsoft Windows®
O58 - SDL:2010/11/20 10:59:44 A . (.Microsoft Corporation - Windows USB Class Driver BETA.) -- C:\Windows\System32\drivers\winusb.sys [35968] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:19:17 A . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\Windows\System32\drivers\wmiacpi.sys [11264] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:19:10 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\Windows\System32\drivers\wmilib.sys [14912] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:55:02 A . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\Windows\System32\drivers\ws2ifsl.sys [16384] =>.Microsoft Corporation
O58 - SDL:2010/11/20 10:58:59 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\Windows\System32\drivers\WUDFPf.sys [92672] =>.Microsoft Corporation
O58 - SDL:2010/11/20 10:59:20 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\Windows\System32\drivers\WUDFRd.sys [132224] =>.Microsoft Corporation
O58 - SDL:2018/12/04 12:01:30 A . (.ZK Internet - ZK Net Driver.) -- C:\Windows\System32\drivers\zknetdrv.sys [30472] =>.Zhangkong Internet Technology Co., Ltd.®
O58 - SDL:2009/07/13 22:40:41 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:26:21 A . (.Microsoft Corporation - Common Log File System Driver.) -- C:\Windows\System32\clfs.sys [249408] =>.Microsoft Windows®
O58 - SDL:2009/07/13 22:40:44 A . (...) -- C:\Windows\System32\country.sys [27097] =>.Microsoft Corporation
O58 - SDL:2018/10/22 18:48:34 A . (...) -- C:\Windows\System32\epmntdrv.sys [21960] =>.CHENGDU YIWO Tech Development Co., Ltd.®
O58 - SDL:2018/10/18 10:49:30 A . (.Windows (R) Codename Longhorn DDK provider - Disk Performance Driver.) -- C:\Windows\System32\EPMVolFlt.sys [17992] =>.CHENGDU YIWO Tech Development Co., Ltd.®
O58 - SDL:2018/12/10 13:06:00 A . (...) -- C:\Windows\System32\EuGdiDrv.sys [14088] =>.CHENGDU YIWO Tech Development Co., Ltd.®
O58 - SDL:2009/07/13 22:40:40 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:23 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:31 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:35 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:39 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:27 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:11 A . (...) -- C:\Windows\System32\NTIO.SYS [33952] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:15 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:17 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:19 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:13 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672] =>.Microsoft Corporation
O58 - SDL:2019/01/23 12:41:32 A . (.TENCENT - Loader NT Driver.) -- C:\Windows\System32\TesSafe.sys [942432] =>.Tencent Technology(Shenzhen) Company Limited®
O58 - SDL:2010/11/20 10:09:20 A . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\Windows\System32\win32k.sys [2329088] =>.Microsoft Corporation

---\\ DERNIERS FICHIERS MODIFIÉS OU CRÉÉS (Utilisateur) (5) - 26s
O61 - LFC: 2019/04/01 15:30:31 N . (..) -- C:\Users\tofik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ocdtoqxw.exe [177664]
O61 - LFC: 2019/03/25 16:30:33 A . (..) -- C:\Users\tofik\Downloads\Music\supercopier-ultimate-windows-x86_64-1.2.3.0-setup.exe [7921230]
O61 - LFC: 2019/04/01 15:34:02 A . (..) -- C:\Users\tofik\Downloads\Programs\marmiton-install.exe [780752]
O61 - LFC: 2019/03/25 19:12:45 A . (..) -- C:\Users\tofik\Downloads\Programs\Setup_ImgBurn_2.5.8.0_dlm_3431893880.exe [2131517]
O61 - LFC: 2019/03/25 17:20:41 A . (..) -- C:\Users\tofik\Downloads\Programs\supercopier-windows-x86-1.6.1.4-setup.exe [12889527]

---\\ ASSOCIATION Shell Spawning (11) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- %SystemRoot%\System32\WScript.exe "%1" %* =>.Default.Value
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Users\tofik\AppData\Local\Programs\Opera\launcher.exe =>.Opera Software AS®

---\\ MENU DE DÉMARRAGE INTERNET (4) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc.

---\\ RECHERCHE D'INFECTION SUR LES NAVIGATEURS (2) - 0s
O69 - SBI: SearchScopes [HKCU]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com

---\\ ÉNUMÈRE LES SERVICES DÉMARRÉS PAR Svchost (33) - 2s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [62464] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168960] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [593408] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [674304] =>.Microsoft Corporation
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [473600] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [286208] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [49664] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [300544] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242176] =>.Microsoft Corporation
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [521216] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1933848] =>.Microsoft Windows Component Publisher®
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [585728] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [499712] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [21504] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [47104] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [49664] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [61440] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [98304] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [164352] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [750592] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [71168] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [113664] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [102400] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [37376] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [76800] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [149504] =>.Microsoft Corporation

---\\ LISTE DES EXCEPTIONS DU PAREFEU WINDOWS (43) - 3s
O87 - FAEL: "{3F22FD95-F754-4D74-9346-1FACE24995EF}" [In-None-P17-TRUE] .(.ZhangKong Soft - marswifi.) -- C:\Program Files\zksoft\marswifi\marswifi.exe =>.Zhangkong Internet Technology Co., Ltd.®
O87 - FAEL: "{8398D2DF-CAB8-41A6-8D95-CE495861DCB0}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\tofik\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O87 - FAEL: "{B9C44923-8333-4062-ABD3-D01D70885045}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\tofik\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O87 - FAEL: "TCP Query User{9BE41B0F-FB1A-440B-999B-7BCC2467DFE6}C:\users\tofik\appdata\local\programs\opera\launcher.exe" [In-None-P6-TRUE] .(.Opera Software - Opera Internet Browser.) -- C:\users\tofik\appdata\local\programs\opera\launcher.exe =>.Opera Software AS®
O87 - FAEL: "UDP Query User{DC875F41-D5D7-440B-B137-EB59BD4AA757}C:\users\tofik\appdata\local\programs\opera\launcher.exe" [In-None-P17-TRUE] .(.Opera Software - Opera Internet Browser.) -- C:\users\tofik\appdata\local\programs\opera\launcher.exe =>.Opera Software AS®
O87 - FAEL: "{A859F4DE-2044-4089-B9D5-404A54606B7C}" [In-None-P17-TRUE] .(.Opera Software - Opera Internet Browser.) -- C:\users\tofik\appdata\local\programs\opera\launcher.exe =>.Opera Software AS®
O87 - FAEL: "{59915985-3AC4-4677-A489-3E6C4E37F194}" [In-None-P6-TRUE] .(.Opera Software - Opera Internet Browser.) -- C:\users\tofik\appdata\local\programs\opera\launcher.exe =>.Opera Software AS®
O87 - FAEL: "TCP Query User{6C950925-1122-439D-9860-AD3DAD6CA3A2}C:\users\tofik\desktop\ps\bin\uniserverz\unicontroller.exe" [In-None-P6-TRUE] .(.Uniform Server - Controller for UniServer Zero XIII.) -- C:\users\tofik\desktop\ps\bin\uniserverz\unicontroller.exe =>.Uniform Server
O87 - FAEL: "UDP Query User{BFE6540D-F3A1-411B-95B8-87D00F28BA5D}C:\users\tofik\desktop\ps\bin\uniserverz\unicontroller.exe" [In-None-P17-TRUE] .(.Uniform Server - Controller for UniServer Zero XIII.) -- C:\users\tofik\desktop\ps\bin\uniserverz\unicontroller.exe =>.Uniform Server
O87 - FAEL: "{31833B29-1FBC-4B24-9AB3-998F65848C14}" [In-None-P17-TRUE] .(.Uniform Server - Controller for UniServer Zero XIII.) -- C:\users\tofik\desktop\ps\bin\uniserverz\unicontroller.exe =>.Uniform Server
O87 - FAEL: "{465458B2-7B6F-47D7-BD92-71A726F0ECCF}" [In-None-P6-TRUE] .(.Uniform Server - Controller for UniServer Zero XIII.) -- C:\users\tofik\desktop\ps\bin\uniserverz\unicontroller.exe =>.Uniform Server
O87 - FAEL: "TCP Query User{DE9D0536-7E55-46BB-A04C-45C9635AE5D0}C:\users\tofik\desktop\ps\bin\uniserverz\core\apache2\bin\httpd_z.exe" [In-None-P6-TRUE] .(.Apache Software Foundation - Apache HTTP Server.) -- C:\users\tofik\desktop\ps\bin\uniserverz\core\apache2\bin\httpd_z.exe =>.Apache Software Foundation
O87 - FAEL: "UDP Query User{2CD75EE9-E826-4B75-B233-28D4671B786E}C:\users\tofik\desktop\ps\bin\uniserverz\core\apache2\bin\httpd_z.exe" [In-None-P17-TRUE] .(.Apache Software Foundation - Apache HTTP Server.) -- C:\users\tofik\desktop\ps\bin\uniserverz\core\apache2\bin\httpd_z.exe =>.Apache Software Foundation
O87 - FAEL: "{EB647E60-8C48-4BB4-B207-CE3D07817620}" [In-None-P6-TRUE] .(.Tencent - 腾讯游戏云加速下载引擎(旋风Inside).) -- C:\Users\tofik\AppData\Roaming\Tencent\TxGameAssistant\GameDownload\TenioDL.exe =>.SUP.Tencent
O87 - FAEL: "{177AB1E2-980B-4504-8A93-E20393AF244C}" [In-None-P17-TRUE] .(.Tencent - 腾讯游戏云加速下载引擎(旋风Inside).) -- C:\Users\tofik\AppData\Roaming\Tencent\TxGameAssistant\GameDownload\TenioDL.exe =>.SUP.Tencent
O87 - FAEL: "{3CDC4A04-3019-4ABC-AB75-060FD2BED702}" [In-None-P6-TRUE] .(.Tencent - 腾讯游戏云加速下载引擎(旋风Inside).) -- C:\Users\tofik\AppData\Roaming\Tencent\TxGameAssistant\GameDownload\TenioDL.exe =>.SUP.Tencent
O87 - FAEL: "{E379D89F-4E32-4F6C-9616-68184DBF5354}" [In-None-P17-TRUE] .(.Tencent - 腾讯游戏云加速下载引擎(旋风Inside).) -- C:\Users\tofik\AppData\Roaming\Tencent\TxGameAssistant\GameDownload\TenioDL.exe =>.SUP.Tencent
O87 - FAEL: "{D6BD3245-525D-4267-A34D-E594F73B8ABF}" [In-None-P6-TRUE] .(.Tencent - 腾讯游戏云加速下载引擎(旋风Inside).) -- C:\Users\tofik\AppData\Roaming\Tencent\TxGameAssistant\GameDownload\TenioDL.exe =>.SUP.Tencent
O87 - FAEL: "{EC916F52-E15B-4C71-8591-BEEC208C2F99}" [In-None-P17-TRUE] .(.Tencent - 腾讯游戏云加速下载引擎(旋风Inside).) -- C:\Users\tofik\AppData\Roaming\Tencent\TxGameAssistant\GameDownload\TenioDL.exe =>.SUP.Tencent
O87 - FAEL: "TCP Query User{3B4EF7FB-2A3E-4033-BF0E-DD51A49AFF13}C:\program files\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe" [In-None-P6-TRUE] .(...) -- C:\program files\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "UDP Query User{BDA70B80-A18D-4189-947D-3714AC13AE91}C:\program files\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe" [In-None-P17-TRUE] .(...) -- C:\program files\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{009F866C-2229-4187-94DB-76803A476E2B}" [In-None-P17-TRUE] .(...) -- C:\program files\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{D6580F9A-A495-4D5A-A220-8A547816F1EE}" [In-None-P6-TRUE] .(...) -- C:\program files\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "TCP Query User{1CD59032-A393-4830-BF59-018873E7EF6E}C:\program files\internet explorer\iexplore.exe" [In-None-P6-TRUE] .(...) -- C:\program files\internet explorer\iexplore.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "UDP Query User{2158882A-B1A0-4DB0-B23F-135027171875}C:\program files\internet explorer\iexplore.exe" [In-None-P17-TRUE] .(...) -- C:\program files\internet explorer\iexplore.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "TCP Query User{FF774BF9-9CD6-45AD-A2D7-F735F8BE97D8}C:\program files\videolan\vlc\vlc.exe" [In-None-P6-TRUE] .(.VideoLAN - VLC media player.) -- C:\program files\videolan\vlc\vlc.exe =>.VideoLAN®
O87 - FAEL: "UDP Query User{C271AE53-719A-4083-87B9-D090B9A213F0}C:\program files\videolan\vlc\vlc.exe" [In-None-P17-TRUE] .(.VideoLAN - VLC media player.) -- C:\program files\videolan\vlc\vlc.exe =>.VideoLAN®
O87 - FAEL: "{03A23E44-4330-4B0E-A3B9-EBB09907CCF6}" [In-None-P17-TRUE] .(.VideoLAN - VLC media player.) -- C:\program files\videolan\vlc\vlc.exe =>.VideoLAN®
O87 - FAEL: "{AD67DA6E-F12E-461C-AC80-6E76B6E6DC32}" [In-None-P6-TRUE] .(.VideoLAN - VLC media player.) -- C:\program files\videolan\vlc\vlc.exe =>.VideoLAN®
O87 - FAEL: "TCP Query User{8B8FEB81-429E-4A02-9FBC-86EF208D080C}D:\cyberflexy\db\mysql\bin\mysqld.exe" [In-None-P6-TRUE] .(...) -- D:\cyberflexy\db\mysql\bin\mysqld.exe =>.Legitimate
O87 - FAEL: "UDP Query User{DB65CA87-AAD0-4161-9DE5-8295D4C6F441}D:\cyberflexy\db\mysql\bin\mysqld.exe" [In-None-P17-TRUE] .(...) -- D:\cyberflexy\db\mysql\bin\mysqld.exe =>.Legitimate
O87 - FAEL: "{B231E50D-8D64-4667-B262-8D25516A2824}" [In-None-P6-TRUE] .(.NESSPLUS TELECOM - CyberFlexy.) -- D:\CyberFlexy\CyberFlexy.exe
O87 - FAEL: "{280AA693-FFAC-4CE1-9478-E1C70974BB81}" [In-None-P17-TRUE] .(.NESSPLUS TELECOM - CyberFlexy.) -- D:\CyberFlexy\CyberFlexy.exe
O87 - FAEL: "{4906AAB9-670F-4011-BA72-EE4A40B52617}" [In-None-P6-FALSE] .(.NESSPLUS TELECOM - CyberFlexy.) -- D:\CyberFlexy\CyberFlexy.exe =>.SUP.Orphan
O87 - FAEL: "{42AE24B7-05BC-4864-967E-64AE57AD869C}" [In-None-P17-FALSE] .(.NESSPLUS TELECOM - CyberFlexy.) -- D:\CyberFlexy\CyberFlexy.exe =>.SUP.Orphan
O87 - FAEL: "TCP Query User{45E45302-89D4-49A0-AA33-A25D23B83C74}D:\0101\db\mysql\bin\mysqld.exe" [In-None-P6-TRUE] .(...) -- D:\0101\db\mysql\bin\mysqld.exe =>.Legitimate
O87 - FAEL: "UDP Query User{29753D6E-C588-42C7-9548-41FAF35E02A0}D:\0101\db\mysql\bin\mysqld.exe" [In-None-P17-TRUE] .(...) -- D:\0101\db\mysql\bin\mysqld.exe =>.Legitimate
O87 - FAEL: "{50AA3D7A-BC4C-43C1-A8B4-5ADF042CCC11}" [In-None-P17-TRUE] .(...) -- D:\0101\db\mysql\bin\mysqld.exe =>.Legitimate
O87 - FAEL: "{E54107B2-3063-4E35-B708-B587B6E11D16}" [In-None-P6-TRUE] .(...) -- D:\0101\db\mysql\bin\mysqld.exe =>.Legitimate
O87 - FAEL: "{1779181A-5F51-4CA8-A544-10D9F2992230}" [In-None-P6-TRUE] .(.Apple Inc. - Apple Push.) -- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe =>.Apple Inc.®
O87 - FAEL: "{201AA5B9-E685-473F-8EFD-F2D9F5E44C25}" [In-None-P6-TRUE] .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
O87 - FAEL: "{660554B5-4356-4365-9B77-E9BC7ABE3B5B}" [In-None-P17-TRUE] .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
O87 - FAEL: "{B27BF365-8E6E-49B7-88A2-6704746D0511}" [In-None-P17-TRUE] .(.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC®

---\\ CODES PRODUITS LOGICIELS (88) - 3s
O90 - PUC: "00005109090061400000000000F01FEC" [HKLM] . (.Microsoft DCF MUI (Portuguese (Brazil)) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109110000000000000000F01FEC" [HKLM] . (.Microsoft Office Professional Plus 2013.) =>.Microsoft Corporation
O90 - PUC: "000051091A0061400000000000F01FEC" [HKLM] . (.Microsoft OneNote MUI (Portuguese (Brazil)) 2013.) =>.Microsoft Corporation
O90 - PUC: "000051091E0061400000000000F01FEC" [HKLM] . (.Microsoft Office OSM MUI (Portuguese (Brazil)) 2013.) =>.Microsoft Corporation
O90 - PUC: "000051092E0061400000000000F01FEC" [HKLM] . (.Microsoft Office OSM UX MUI (Portuguese (Brazil)) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109440061400000000000F01FEC" [HKLM] . (.Microsoft InfoPath MUI (Portuguese (Brazil)) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109510061400000000000F01FEC" [HKLM] . (.Microsoft Access MUI (Portuguese (Brazil)) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109610061400000000000F01FEC" [HKLM] . (.Microsoft Excel MUI (Portuguese (Brazil)) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109810061400000000000F01FEC" [HKLM] . (.Microsoft PowerPoint MUI (Portuguese (Brazil)) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109910061400000000000F01FEC" [HKLM] . (.Microsoft Publisher MUI (Portuguese (Brazil)) 2013.) =>.bl.org
O90 - PUC: "00005109A10061400000000000F01FEC" [HKLM] . (.Microsoft Outlook MUI (Portuguese (Brazil)) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109AB0061400000000000F01FEC" [HKLM] . (.Microsoft Groove MUI (Portuguese (Brazil)) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109B10061400000000000F01FEC" [HKLM] . (.Microsoft Word MUI (Portuguese (Brazil)) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109B21061400000000000F01FEC" [HKLM] . (.Microsoft Lync MUI (Portuguese (Brazil)) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109C20061400000000000F01FEC" [HKLM] . (.Microsoft Office Proofing (Portuguese (Brazil)) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109DB00C0400000000000F01FEC" [HKLM] . (.Langue des info-bulles 2013 de Microsoft Office - Français.) -- C:\Windows\Installer\{90150000-00BD-040C-0000-0000000FF1CE}\UICaptionsIcon =>.Microsoft Corporation
O90 - PUC: "00005109E60061400000000000F01FEC" [HKLM] . (.Microsoft Office Shared MUI (Portuguese (Brazil)) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109F10061400000000000F01FEC" [HKLM] . (.Revisores de Texto do Microsoft Office 2013 – Português do Brasil.) -- C:\Windows\Installer\{90150000-001F-0416-0000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation
O90 - PUC: "00005109F10090400000000000F01FEC" [HKLM] . (.Microsoft Office Proofing Tools 2013 - English.) -- C:\Windows\Installer\{90150000-001F-0409-0000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation
O90 - PUC: "00005109F100A0C00000000000F01FEC" [HKLM] . (.Microsoft Office Proofing Tools 2013 - Español.) -- C:\Windows\Installer\{90150000-001F-0C0A-0000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation
O90 - PUC: "007AE03A51550F84880BE999CD53B688" [HKLM] . (.Apple Software Update.) -- C:\Windows\Installer\{A30EA700-5515-48F0-88B0-9E99DC356B88}\Installer.ico =>.Apple Inc.
O90 - PUC: "0396BA86FFB56FF429B315A61989F46E" [HKLM] . (.Nero BackItUp 10.) -- C:\Windows\Installer\{68AB6930-5BFF-4FF6-923B-516A91984FE6}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "0A1149233F91047478F47104B021F672" [HKLM] . (.Nero Vision 10 Help (CHM).) -- C:\Windows\Installer\{329411A0-19F3-4740-874F-17400B126F27}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698 =>.Ahead Corporation
O90 - PUC: "0B5B5B2C545249E44BAB45D8B40F1B69" [HKLM] . (.Metric Collection SDK 35.) =>.Lenovo Group Limited
O90 - PUC: "0DAA861D68661C745B99DC4D88B8D9A1" [HKLM] . (.Bonjour.) -- C:\Windows\Installer\{D168AAD0-6686-47C1-B599-CDD4888B9D1A}\Bonjour.ico =>.Microsoft Corporation
O90 - PUC: "20A845F5CB08D404AB6E0FF5B96F4B94" [HKLM] . (.Nero DiscCopyGadget 10 Help (CHM).) -- C:\Windows\Installer\{5F548A02-80BC-404D-BAE6-F05F9BF6B449}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698 =>.Ahead Corporation
O90 - PUC: "26BCC73245483E341B85A3DC104358E2" [HKLM] . (.High-Definition Video Playback 10.) -- C:\Windows\Installer\{237CCB62-8454-43E3-B158-3ACD0134852E}\ARPPRODUCTICON.exe
O90 - PUC: "358CECE8D3C501B45B7CFF11FF278470" [HKLM] . (.Nero Recode 10.) -- C:\Windows\Installer\{8ECEC853-5C3D-4B10-B5C7-FF11FF724807}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "3910550722C1C544F84A65E451D51B7A" [HKLM] . (.Nero Express 10.) -- C:\Windows\Installer\{70550193-1C22-445C-8FA4-564E155DB1A7}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "3e43b73803c7c394f8a6b2f0402e19c2" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org
O90 - PUC: "3F7924A915A29DE429ACB4BC380849E7" [HKLM] . (.Nero Vision 10.) -- C:\Windows\Installer\{9A4297F3-2A51-4ED9-92CA-4BCB8380947E}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "3FB95CD427D08EC3FBFEE1F8FA86E90B" [HKLM] . (.Microsoft Visual Studio 2010 Tools for Office Runtime (x86).) =>.Microsoft Corporation
O90 - PUC: "48A1CE29CFF7FD248A6F972CC174565A" [HKLM] . (.Nero DiscCopy Gadget 10.) -- C:\Windows\Installer\{92EC1A84-7FFC-42DF-A8F6-79C21C4765A5}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "4C76EDBA6785BDC4289AC0ABECCCC1A4" [HKLM] . (.Apple Mobile Device Support.) -- C:\Windows\Installer\{ABDE67C4-5876-4CDB-82A9-0CBACECC1C4A}\Installer.ico =>.Apple Inc.
O90 - PUC: "4CA0853C728C23349B53A982E25DBB79" [HKLM] . (.Nero Dolby Files 10.) -- C:\Windows\Installer\{C3580AC4-C827-4332-B935-9A282ED5BB97}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "531940669569DAA41996C9AC62E9BBE3" [HKLM] . (.Nero InfoTool 10 Help (CHM).) -- C:\Windows\Installer\{66049135-9659-4AAD-9169-9CCA269EBB3E}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698 =>.Ahead Corporation
O90 - PUC: "55AEF1CECC37F5A3FB743B048B240C85" [HKLM] . (.Microsoft Visual Studio 2010 Tools for Office Runtime (x86) Language Pack - FRA.) =>.Microsoft Corporation
O90 - PUC: "55C3723C4E1EFF14D896108590D08B8D" [HKLM] . (.Nero CoverDesigner 10 Help (CHM).) -- C:\Windows\Installer\{C3273C55-E1E4-41FF-8D69-0158090DB8D8}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698 =>.Ahead Corporation
O90 - PUC: "57451E932F32D54398775BCD749AE462" [HKLM] . (.Microsoft Visual C++ 2017 x86 Minimum Runtime - 14.15.26706.) =>.Microsoft Corporation
O90 - PUC: "5DAFDCDE08FD00644A399EAD6D182003" [HKLM] . (.Nero WaveEditor 10.) -- C:\Windows\Installer\{EDCDFAD5-DF80-4600-A493-E9DAD6810230}\ARPPRODUCTICON.exe =>.Nero Digital
O90 - PUC: "5EB956A5B948E4848AB3CD7B48703F4A" [HKLM] . (.Apple Application Support (32 bits).) -- C:\Windows\Installer\{5A659BE5-849B-484E-A83B-DCB78407F3A4}\WinInstall.ico =>.Apple Inc.
O90 - PUC: "6C868555BF94F484BB34980856A1B100" [HKLM] . (.Nero BurnRights 10 Help (CHM).) -- C:\Windows\Installer\{555868C6-49FB-484F-BB43-8980651A1B00}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698 =>.Ahead Corporation
O90 - PUC: "6E815EB96CCE9A53884E7857C57002F0" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161.) =>.bl.org
O90 - PUC: "6E8A266FCD4F2A1409E1C8110F44DBCE" [HKLM] . (.MSXML 4.0 SP2 (KB973688).) =>.Microsoft Corporation
O90 - PUC: "7040BB568CC47CD459E2E3FEFD5006A2" [HKLM] . (.Nero Update.) -- C:\Windows\Installer\{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "70DA7C156F3C5364E8A83231608D01EF" [HKLM] . (.Cisco LEAP Module.) =>.Cisco Systems, Inc.
O90 - PUC: "7810FB462D3FB89499AE61A39FEAE69C" [HKLM] . (.Cisco EAP-FAST Module.) =>.Cisco Systems, Inc.
O90 - PUC: "787E733E16FCB7B48BF40529205A0432" [HKLM] . (.Nero RescueAgent 10.) -- C:\Windows\Installer\{E337E787-CF61-4B7B-B84F-509202A54023}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "7B9207D1B24B21037BA409C4183A66D2" [HKLM] . (.Microsoft .NET Framework 4.5 FRA Language Pack.) =>.Microsoft Corporation
O90 - PUC: "7CA2ACB62CB71104EB0141B3FD4DD3C6" [HKLM] . (.Horizon.)
O90 - PUC: "8140A81CA2446814FA890DF805452ACF" [HKLM] . (.Nero DiscSpeed 10 Help (CHM).) -- C:\Windows\Installer\{C18A0418-442A-4186-AF98-D08F5054A2FC}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698 =>.Ahead Corporation
O90 - PUC: "8193463375979384297CAE69BC26A189" [HKLM] . (.Nero Express 10 Help (CHM).) -- C:\Windows\Installer\{33643918-7957-4839-92C7-EA96CB621A98}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698 =>.Ahead Corporation
O90 - PUC: "83252E293A16DCA44A70C384E0FE747A" [HKLM] . (.Nero RescueAgent 10 Help (CHM).) -- C:\Windows\Installer\{92E25238-61A3-4ACD-A407-3C480EEF47A7}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698 =>.Ahead Corporation
O90 - PUC: "8A2F6342E7B4C6B4EAE406C448AAA6F4" [HKLM] . (.Nero Core Components 10.) =>.Ahead Corporation
O90 - PUC: "924216F900A444D388FC41D62AEEF129" [HKLM] . (.Microsoft .NET Framework 4.5.) =>.Microsoft Corporation
O90 - PUC: "9335EE1E23D5F854ABBA1BF93610CB2E" [HKLM] . (.Nero SoundTrax 10.) -- C:\Windows\Installer\{E1EE5339-5D32-458F-BAAB-B19F6301BCE2}\ARPPRODUCTICON.exe =>.Nero Digital
O90 - PUC: "93BAD29AC2E44034A96BCB446EB8552E" [HKLM] . (.Google Update Helper.) =>.Google Inc.
O90 - PUC: "9551C7727FC4FF44D87089AAC931AADB" [HKLM] . (.Nero Multimedia Suite 10.) -- C:\Windows\Installer\{277C1559-4CF7-44FF-8D07-98AA9C13AABD}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "99E78961C59C31542993B7440A7AD15B" [HKLM] . (.Nero SoundTrax 10 Help (CHM).) -- C:\Windows\Installer\{16987E99-C95C-4513-9239-7B44A0A71DB5}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698 =>.Nero Digital
O90 - PUC: "9B8BD42DC6BB43346991ABC156E0313D" [HKLM] . (.Microsoft Primary Interoperability Assemblies 2005.) -- C:\Windows\Installer\{D24DB8B9-BB6C-4334-9619-BA1C650E13D3}\[SystemFolder]msiexec.exe =>.bl.org
O90 - PUC: "A089CE062ADB6BC44A720BA745894BAC" [HKLM] . (.Google Update Helper.) =>.Google Inc.
O90 - PUC: "A268764FAC9DDE74D8184B3B9C932927" [HKLM] . (.Nero MediaHub 10 Help (CHM).) -- C:\Windows\Installer\{F467862A-D9CA-47ED-8D81-B4B3C9399272}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698 =>.Ahead Corporation
O90 - PUC: "A4D1C7BDAB80E7C48AAA7B9FBB73D2FC" [HKLM] . (.Nero Recode 10 Help (CHM).) -- C:\Windows\Installer\{DB7C1D4A-08BA-4C7E-A8AA-B7F9BB372DCF}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698 =>.Ahead Corporation
O90 - PUC: "A694757247E3A0230B706321A0F921D6" [HKLM] . (.Microsoft Visual C++ 2017 x86 Additional Runtime - 14.15.26706.) =>.Microsoft Corporation
O90 - PUC: "B1B2B325BD8D14B409FF4C7D992E57A8" [HKLM] . (.Nero ControlCenter 10 Help (CHM).) -- C:\Windows\Installer\{523B2B1B-D8DB-4B41-90FF-C4D799E2758A}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698 =>.Ahead Corporation
O90 - PUC: "B6668C80205C3BA44BBC7DA44CD241EF" [HKLM] . (.Nero BackItUp 10 Help (CHM).) -- C:\Windows\Installer\{08C8666B-C502-4AB3-B4CB-D74AC42D14FE}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698 =>.Ahead Corporation
O90 - PUC: "BAE3AA36BB322B84A90D448F87706540" [HKLM] . (.Nero 10 Menu TemplatePack Basic.) -- C:\Windows\Installer\{63AA3EAB-23BB-48B2-9AD0-44F878075604}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "C025571B2A687A53689168CD7369889B" [HKLM] . (.Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "c1c4f01781cc94c4c8fb1542c0981a2a" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org
O90 - PUC: "C9F7116F5BDA0954B94E217CEB2C7820" [HKLM] . (.Nero StartSmart 10 Help (CHM).) -- C:\Windows\Installer\{F6117F9C-ADB5-4590-9BE4-12C7BEC28702}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698 =>.Ahead Corporation
O90 - PUC: "CD13116AD29B8DA49A522E6D5DEF12C7" [HKLM] . (.SD Card Formatter.) -- C:\Windows\Installer\{A61131DC-B92D-4AD8-A925-E2D6D5FE217C}\ARPPRODUCTICON.exe =>.Legitimate
O90 - PUC: "CFD2C1F142D260E3CB8B271543DA9F98" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148.) =>.bl.org
O90 - PUC: "D04BB691875110D32B98EBCF771AA1E1" [HKLM] . (.Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319.) =>.bl.org
O90 - PUC: "D137D5A73B4BE0943B9357867521ABBA" [HKLM] . (.Nero Burning ROM 10.) -- C:\Windows\Installer\{7A5D731D-B4B3-490E-B339-75685712BAAB}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "D20352A90C039D93DBF6126ECE614057" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17.) =>.bl.org
O90 - PUC: "D7DFC3496335FA7449810E42375A5A71" [HKLM] . (.Nero BurnRights 10.) -- C:\Windows\Installer\{943CFD7D-5336-47AF-9418-E02473A5A517}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "DAAD336B4929D7C46A525D7B148A2C6B" [HKLM] . (.Epic Games Launcher Prerequisites (x86).) -- C:\Windows\Installer\{B633DAAD-9294-4C7D-A625-D5B741A8C2B6}\UnrealEngineLauncher.ico =>.Legitimate
O90 - PUC: "DC8A59DBF9D1DA5389A1E3975220E6BB" [HKLM] . (.Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "DDA39468D428E8B4DB27C8D5DC5CA217" [HKLM] . (.MSXML 4.0 SP2 (KB954430).) =>.Microsoft Corporation
O90 - PUC: "E4F094430D84E29428944BB8CE0F35C7" [HKLM] . (.Nero DiscSpeed 10.) -- C:\Windows\Installer\{34490F4E-48D0-492E-8249-B48BECF0537C}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "E6A00FCF85BFA774BA9E329270015512" [HKLM] . (.Nero CoverDesigner 10.) -- C:\Windows\Installer\{FCF00A6E-FB58-477A-ABE9-232907105521}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "E984D16F44C6CA94DA20D78ACA7AA356" [HKLM] . (.Nero StartSmart 10.) -- C:\Windows\Installer\{F61D489E-6C44-49AC-AD02-7DA8ACA73A65}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "EB42B6B97E084C64F95A1B765D0E3F54" [HKLM] . (.Nero BurningROM 10 Help (CHM).) -- C:\Windows\Installer\{9B6B24BE-80E7-46C4-9FA5-B167D5E0F345}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698 =>.Ahead Corporation
O90 - PUC: "F228BC5F563B1D34CB0CF4ADA102717A" [HKLM] . (.Nero 10 Movie ThemePack Basic.) -- C:\Windows\Installer\{F5CB822F-B365-43D1-BCC0-4FDA1A2017A7}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "F86BF7F16F253A644BF283EC6492A55E" [HKLM] . (.Nero MediaHub 10.) -- C:\Windows\Installer\{1F7FB68F-52F6-46A3-B42F-38CE46295AE5}\NeroMediaHub._63C8A7B0BBE5459F9AC436392B2FF50D.exe =>.Ahead Corporation
O90 - PUC: "F8D592A7B484BFF498BA1CDF945719EF" [HKLM] . (.Nero WaveEditor 10 Help (CHM).) -- C:\Windows\Installer\{7A295D8F-484B-4FFB-89AB-C1FD497591FE}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698 =>.Nero Digital
O90 - PUC: "F998BFD62A710F845A33DED88666FC83" [HKLM] . (.Nero Control Center 10.) -- C:\Windows\Installer\{6DFB899F-17A2-48F0-A533-ED8D6866CF38}\ARPPRODUCTICON.exe =>.Ahead Corporation
O90 - PUC: "FA4B214FC8835FF4B9F233BDC1359635" [HKLM] . (.Nero InfoTool 10.) -- C:\Windows\Installer\{F412B4AF-388C-4FF5-9B2F-33DB1C536953}\ARPPRODUCTICON.exe =>.Ahead Corporation

---\\ PACKAGES WINDOWS INSTALLER (52) - 19s
[MD5.BC2703B6E27C16242284F831C44AD3EA] [WIS][2019/03/28 15:42:30] (.Google LLC - Google Update Helper.) -- C:\Windows\Installer\131eefe.msi [40960]
[MD5.DB3016F143D92CCE2F37329BF6526B29] [WIS][2017/02/06 08:26:48] (.Daring Development Inc. - Horizon.) -- C:\Windows\Installer\13c1bfc.msi [13316096] =>.Daring Development Inc.
[MD5.72BF0B7142646F1CD0FA7C872DB106D6] [WIS][2018/12/04 15:22:30] (.Google Inc. - Google Update Helper.) -- C:\Windows\Installer\167026.msi [26112] =>.Google Inc.
[MD5.C047F94F26B687559174D1A74578586A] [WIS][2019/02/24 15:20:48] (.subhra Das Gupta - Xtreme Download Manager 2018.) -- C:\Windows\Installer\199cbe.msi [36180992]
[MD5.858DA0DF9C06825CC19A46CBFD87154E] [WIS][2018/12/04 11:20:51] (.Nero AG - Nero Multimedia Suite 10.) -- C:\Windows\Installer\1e4a7.msi [12591616] =>.Nero AG
[MD5.EF6AB9763DE44FCD97824DF100CA4509] [WIS][2018/12/04 11:21:44] (.Nero AG - NeroControlCenter.) -- C:\Windows\Installer\1e4af.msi [2034176] =>.Nero AG
[MD5.B66B8F88DAF59EC2F6F3E545CE370FEA] [WIS][2018/12/04 11:21:43] (.Nero AG - Nero Core Components 10.) -- C:\Windows\Installer\1e4b8.msi [10167808] =>.Nero AG
[MD5.CD1E064CB1ACF3D6CC22FC68D1BC9D96] [WIS][2018/12/04 11:21:22] (.Nero AG - Nero Dolby Files 10.) -- C:\Windows\Installer\1e4c1.msi [1066496] =>.Nero AG
[MD5.3CCD7889DF5D47230157F3E9FE1A6F02] [WIS][2018/12/04 11:21:50] (.Nero AG - Nero BDCore 10.) -- C:\Windows\Installer\1e4ca.msi [1233920] =>.Nero AG
[MD5.EE806668368DC48CFD83D2F313D1A6B2] [WIS][2018/12/04 11:21:08] (.Nero AG - Nero 10 Menu TemplatePack Basic.) -- C:\Windows\Installer\1e4d3.msi [1335808] =>.Nero AG
[MD5.FACDC9B8FE012481C570640A7B3B7475] [WIS][2018/12/04 11:21:08] (.Nero AG - Nero Movie 10 ThemePack Basic.) -- C:\Windows\Installer\1e4dc.msi [1350656] =>.Nero AG
[MD5.02725D59E6FF93E4F86E675E59E3033F] [WIS][2018/12/04 11:21:47] (.Nero AG - Nero Burning ROM 10.) -- C:\Windows\Installer\1e4e5.msi [11721216] =>.Nero AG
[MD5.7A93053FC6B0834302B6A41739423827] [WIS][2018/12/04 11:21:46] (.Nero AG - Nero BurnRights 10.) -- C:\Windows\Installer\1e4ee.msi [1531392] =>.Nero AG
[MD5.2BA7CF2D35A0A6C3157CD1ABFC262EB6] [WIS][2018/12/04 11:21:57] (.Nero AG - Nero BackItUp 10.) -- C:\Windows\Installer\1e4f7.msi [6398464] =>.Nero AG
[MD5.BA40F8C682AAC3354FD7B4CDEC72368E] [WIS][2018/12/04 11:21:36] (.Nero AG - Nero CoverDesigner 10.) -- C:\Windows\Installer\1e500.msi [2838528] =>.Nero AG
[MD5.79CFC03A9765AC66DD2B6114DE0D12EA] [WIS][2018/12/04 11:21:28] (.Nero AG - Nero DiscCopy Gadget 10.) -- C:\Windows\Installer\1e509.msi [1622528] =>.Nero AG
[MD5.2DED93EC17BDA12E5881F07B2C5927C3] [WIS][2018/12/04 11:21:23] (.Nero AG - Nero DiscSpeed 10.) -- C:\Windows\Installer\1e512.msi [2125312] =>.Nero AG
[MD5.1DFE1708E550558DF6FF592EF92CBC32] [WIS][2018/12/04 11:21:20] (.Nero AG - Nero Express 10.) -- C:\Windows\Installer\1e51b.msi [8760320] =>.Nero AG
[MD5.D852DF828C812D9F8159BAC20979F957] [WIS][2018/12/04 11:21:15] (.Nero AG - Nero InfoTool 10.) -- C:\Windows\Installer\1e524.msi [2124800] =>.Nero AG
[MD5.F8422F0C3266038400857C5613492B9B] [WIS][2018/12/04 11:21:14] (.Nero AG - Nero MediaHub 10.) -- C:\Windows\Installer\1e52d.msi [3468800] =>.Nero AG
[MD5.C8A0C63D1AD50492F8ED8A9D362C9C01] [WIS][2018/12/04 11:21:07] (.Nero AG - Nero RescueAgent 10.) -- C:\Windows\Installer\1e536.msi [2125312] =>.Nero AG
[MD5.606078B26DC15E5E5D9D866297AE3B9C] [WIS][2018/12/04 11:21:07] (.Nero AG - Nero Recode 10.) -- C:\Windows\Installer\1e53f.msi [20566528] =>.Nero AG
[MD5.708FDFE0F8BDE6A8783D429069B63B47] [WIS][2018/12/04 11:20:51] (.Nero AG - Nero Vision 10.) -- C:\Windows\Installer\1e548.msi [3600384] =>.Nero AG
[MD5.DBBCD2715136B01497130849607A5F11] [WIS][2018/12/04 11:21:06] (.Nero AG - Nero SoundTrax 10.) -- C:\Windows\Installer\1e551.msi [8159744] =>.Nero AG
[MD5.8DF62A80B33DA6AAF888F0BDBA052610] [WIS][2018/12/04 11:20:51] (.Nero AG - Nero WaveEditor 10.) -- C:\Windows\Installer\1e55a.msi [1940480] =>.Nero AG
[MD5.5DBBB7532884123F229AF9C61599B10E] [WIS][2018/12/04 11:21:02] (.Nero AG - Nero StartSmart 10.) -- C:\Windows\Installer\1e564.msi [2910208] =>.Nero AG
[MD5.73EC1CDA661A98E0118C2680895E63D5] [WIS][2018/12/04 11:21:51] (.Nero AG - Nero BackItUp 10 Help (CHM).) -- C:\Windows\Installer\1e56d.msi [1616384] =>.Nero AG
[MD5.C039339A8F9A155E70CFE1ED7884B0DC] [WIS][2018/12/04 11:21:46] (.Nero AG - Nero Burning ROM 10 Help (CHM).) -- C:\Windows\Installer\1e576.msi [1616896] =>.Nero AG
[MD5.9019CB5A0618C0089D59D4D43399B4A2] [WIS][2018/12/04 11:21:44] (.Nero AG - Nero ControlCenter 10 Help (CHM).) -- C:\Windows\Installer\1e57f.msi [1616896] =>.Nero AG
[MD5.74CD8A8AC4EF4923240E113DC3E3B96C] [WIS][2018/12/04 11:21:45] (.Nero AG - Nero BurnRights 10 Help (CHM).) -- C:\Windows\Installer\1e588.msi [1616384] =>.Nero AG
[MD5.861C9862CBA64E0AAD440171A4F416C5] [WIS][2018/12/04 11:21:36] (.Nero AG - Nero CoverDesigner 10 Help (CHM).) -- C:\Windows\Installer\1e591.msi [1616896] =>.Nero AG
[MD5.1FF98EC1A6A9B33330C810BB08108276] [WIS][2018/12/04 11:21:23] (.Nero AG - Nero DiscCopy Gadget 10 Help (CHM).) -- C:\Windows\Installer\1e59a.msi [1616896] =>.Nero AG
[MD5.F98D07A4A66377DD4AA5B32EECD26673] [WIS][2018/12/04 11:21:22] (.Nero AG - Nero DiscSpeed 10 Help (CHM).) -- C:\Windows\Installer\1e5a3.msi [1616384] =>.Nero AG
[MD5.60CB995F99F4EFF4AF962BE35DB6F9F9] [WIS][2018/12/04 11:21:20] (.Nero AG - Nero Express 10 Help (CHM).) -- C:\Windows\Installer\1e5ac.msi [1616384] =>.Nero AG
[MD5.38DAD3E9F5306BDE5CC11185F3304620] [WIS][2018/12/04 11:21:15] (.Nero AG - Nero InfoTool 10 Help (CHM).) -- C:\Windows\Installer\1e5b5.msi [1616384] =>.Nero AG
[MD5.8DEFADD9D23CBB008328D733EE780166] [WIS][2018/12/04 11:21:14] (.Nero AG - Nero MediaHub 10 Help (CHM).) -- C:\Windows\Installer\1e5be.msi [1616384] =>.Nero AG
[MD5.E921FAEA1FAE36DECDFAA9E150E6A851] [WIS][2018/12/04 11:21:07] (.Nero AG - Nero Recode 10 Help (CHM).) -- C:\Windows\Installer\1e5c7.msi [1616384] =>.Nero AG
[MD5.D24C6542E2148FC166E785E11FFBE352] [WIS][2018/12/04 11:21:07] (.Nero AG - Nero RescueAgent 10 Help (CHM).) -- C:\Windows\Installer\1e5d0.msi [1616896] =>.Nero AG
[MD5.6C6AEFA0BD0A6422F91E1E525567F273] [WIS][2018/12/04 11:21:06] (.Nero AG - Nero SoundTrax 10 Help (CHM).) -- C:\Windows\Installer\1e5d9.msi [1616384] =>.Nero AG
[MD5.B409DC69C648034692A70638A344CD34] [WIS][2018/12/04 11:21:00] (.Nero AG - Nero StartSmart 10 Help (CHM).) -- C:\Windows\Installer\1e5e2.msi [1616896] =>.Nero AG
[MD5.BB03E8E385059AD34C7E814848E2AFCA] [WIS][2018/12/04 11:20:51] (.Nero AG - Nero Vision 10 Help (CHM).) -- C:\Windows\Installer\1e5eb.msi [1616384] =>.Nero AG
[MD5.1CA37C2D0755B2BF625E43AD12821B4B] [WIS][2018/12/04 11:20:51] (.Nero AG - Nero WaveEditor 10 Help (CHM).) -- C:\Windows\Installer\1e5f4.msi [1616384] =>.Nero AG
[MD5.1261FF23934E92660E4F0BF5E1F3736B] [WIS][2018/12/04 11:21:00] (.Nero AG - Nero Update.) -- C:\Windows\Installer\1e5fc.msi [2082816] =>.Nero AG
[MD5.3A6F581777F935A2223C6FB5DB7452D0] [WIS][2019/01/25 19:03:42] (.Lenovo Group Limited - Metric Collection SDK Redistributable.) -- C:\Windows\Installer\47ada4.msi [2161152] =>.Lenovo Group Limited
[MD5.20504BC8E6D72F580BCDACAC7B094351] [WIS][2018/12/04 10:33:22] (.Cisco Systems, Inc..) -- C:\Windows\Installer\48616.msi [1544704] =>.Cisco Systems, Inc.
[MD5.B216CF48909F129A831A2BEAFA2232BE] [WIS][2018/12/04 10:33:22] (.Cisco Systems, Inc..) -- C:\Windows\Installer\4861d.msi [829440] =>.Cisco Systems, Inc.
[MD5.0AB9032A138B15C50F116F02B4F72B40] [WIS][2019/01/23 16:30:38] (.Apple Inc. - Apple Application Support Installer.) -- C:\Windows\Installer\657843.msi [49147904] =>.Apple Inc.
[MD5.47A5695B1A43D3A4A46FC26D35295BBC] [WIS][2019/01/15 03:44:40] (.Apple Inc. - Apple Mobile Device Support Installer.) -- C:\Windows\Installer\65784a.msi [11300864] =>.Apple Inc.
[MD5.FE167CDD26D09BB444034C8276F7BFF0] [WIS][2019/01/15 03:46:36] (.Apple Inc. - [ProductName] Installer.) -- C:\Windows\Installer\657851.msi [2404352] =>.Apple Inc.
[MD5.0D54B7E528B43CAFA7860F6752745234] [WIS][2019/01/15 03:47:16] (.Apple Inc. - Apple Software Update Installer.) -- C:\Windows\Installer\657858.msi [3612672] =>.Apple Inc.
[MD5.398DDBF39AD98D9EE3E40FF4E2012D1E] [WIS][2018/12/04 15:10:05] (.SD Association - SD Card Formatter.) -- C:\Windows\Installer\75b0d.msi [4210688] =>.SD Association
[MD5.2D7A4A8A727933EBCF529B74B9B9BA7D] [WIS][2015/11/19 10:56:50] (.Epic Games, Inc. - Epic Games Launcher Prerequisites (x86).) -- C:\Windows\Installer\bb66d.msi [9900032] =>.Epic Games, Inc.

---\\ RECHERCHE DE CLÉS DE REGISTRE Tracing (2) - 4s
HKLM\SOFTWARE\Microsoft\Tracing\RASCCP =>.SUP.AdvancedSystemCare
HKLM\SOFTWARE\Microsoft\Tracing\svchost_RASCHAP =>.SUP.AdvancedSystemCare

---\\ FEATURE CONTROLE. (870) - 2s
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:msn6.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:WiseDataRecovery.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:Main.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_ISO_2022_JP_SNIFFING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HIGH_CONTRAST_BACKGROUND_IMAGES]:sidebar.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn6.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:ONENOTE.EXE =>.Legitimate

---\\ SCAN ADDITIONNEL (16) - 11s
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tencent Software =>.SUP.Tencent
C:\ProgramData\Tencent =>.SUP.Tencent
C:\Users\tofik\AppData\Roaming\Tencent =>.SUP.Tencent
C:\Windows\System32\Config\systemprofile\AppData\Roaming\Tencent =>.SUP.Tencent
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ShellExtension =>.SUP.Orphan
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\ShellExtension =>.SUP.Orphan
HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\ShellExtension =>.SUP.Orphan
C:\Users\tofik\AppData\Roaming\uTorrent\uTorrent.exe =>BitTorrent (P2P)
HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\uTorrent =>BitTorrent (P2P)
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\RASCCP =>.SUP.AdvancedSystemCare
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\svchost_RASCHAP =>.SUP.AdvancedSystemCare
C:\Users\tofik\AppData\Local\Google\Chrome\User Data\Default\File System\000 =>.SUP.Temporary.Chrome
C:\Users\tofik\AppData\Local\Google\Chrome\User Data\Default\File System\001 =>.SUP.Temporary.Chrome
HKCU\Software\undefined =>.SUP.Downloader
HKLM\SOFTWARE\IObit\RealTimeProtector =>.SUP.AdvancedSystemCare
HKLM\SOFTWARE\Iobit\ASC =>.SUP.AdvancedSystemCare

---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS SUR VOTRE STATION (6) - 0s
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>BitTorrent (P2P)
https://nicolascoolman.eu/2017/02/23/tencentadressbar/ =>.SUP.Tencent
https://nicolascoolman.eu/2017/12/22/sup-downloader/ =>.SUP.Downloader
https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan
https://nicolascoolman.eu/2017/12/26/sup-advancedsystemcare/ =>.SUP.AdvancedSystemCare
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary.Chrome

~ Unselected Options:
~ End of the scan, 11280 items in 09mn35s (2619)(0)

Publicité


Signaler le contenu de ce document

Publicité