cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2019.11.22.160 Par Nicolas Coolman (2019/11/22)
~ Démarré par ecole (Administrator) (2019/12/02 17:57:04)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Certificate ZHPDiag: Legal
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: U:\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\test\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 8.1 Pro, 64-bit (Build 9600) =>.Microsoft Corporation

---\\ NAVIGATEURS INTERNET (4) - 0s
~ GCIE: Google Chrome v78.0.3904.108
~ MFIE: Mozilla Firefox 70.0.1 (x64 fr)
~ MFIE: Mozilla Thunderbird 31.2.0 (x86 fr)
~ MSIE: Internet Explorer v11.0.9600.19541

---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (3) - 4s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK

---\\ LOGICIELS DE PROTECTION (2) - 0s
Avast Antivirus Gratuit v19.8.2393 (Protection)
Malwarebytes version 3.5.1.2522 v3.5.1.2522 (Protection)

---\\ SURVEILLANCE LOGICIEL (1) - 0s
~ Adobe Flash Player 32 NPAPI (Surveillance)

---\\ LOGICIELS D'OPTIMISATION (1) - 0s
~ CCleaner v5.46 (Optimisation)

---\\ INFORMATIONS SUR LE SYSTÈME (6) - 0s
~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4065.3 MB (9% free) : ATTENTION =>Warning RAM
System Restore: Activé (Enable)
System drive U: has 201 GB (47%) free of 425 GB : OK =>.Disk Space

---\\ MODE DE CONNEXION AU SYSTÈME (3) - 0s
~ Computer Name: PRIMAIRE
~ User Name: ecole
~ Logged in as Administrator

---\\ ÉNUMÉRATION DES UNITÉS DE STOCKAGE (8) - 0s
~ Drive C: has 89 GB free of 216 GB
~ Drive D: has 0 GB free of 0 GB
~ Drive G: has 0 GB free of 15 GB
~ Drive H: has 0 GB free of 0 GB
~ Drive S: has 201 GB free of 425 GB
~ Drive U: has 201 GB free of 425 GB (System)
~ Drive X: has 0 GB free of 0 GB
~ Drive Y: has 0 GB free of 9 GB

---\\ ÉTAT DU CENTRE DE SÉCURITÉ WINDOWS (11) - 0s
[HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ RECHERCHE PARTICULIÈRE DE FICHIERS GÉNÉRIQUES (25) - 2s
[MD5.ED6B4C95E2A6D67480B9DBB8A8E7D9B4] - 27/08/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [2755504] =>.Microsoft®
[MD5.6C308D32AFA41D26CE2A0EA8F7B79565] - 29/10/2014 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [54784] =>.Microsoft Corporation
[MD5.D9516405E05F24EDCD90B1988FAF3948] - 14/01/2017 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [146944] =>.Microsoft Corporation
[MD5.569270B7164A2DBDC6998706D0EF94B1] - 24/10/2019 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [4859392] =>.Microsoft Corporation
[MD5.30B8FF833FB3D892DAB4827E00F530B2] - 31/07/2019 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [571392] =>.Microsoft Corporation
[MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - 18/03/2014 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [447488] =>.Microsoft Corporation
[MD5.C9C6033116C4F7128AC11A7096765E92] - 08/06/2018 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [656384] =>.Microsoft Corporation
[MD5.E38864C62641DF22A4AFD2B6C59BD61B] - 08/06/2018 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [499200] =>.Microsoft Corporation
[MD5.E37F897ED7B5AFF79B1398258DB96BD9] - 18/03/2014 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19456] =>.Microsoft Corporation
[MD5.B246BEE99740A2A357E21D863A18774D] - 10/01/2018 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [559616] =>.Microsoft Corporation
[MD5.74B14192CF79A72F7536B27CB8814FBD] - 22/08/2013 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [26464] =>.Microsoft Corporation
[MD5.C17B61862B3C0D795A3FC68622D6729B] - 09/02/2019 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [88576] =>.Microsoft Corporation
[MD5.D61EDE3D49B04E703AEC3B111C763F42] - 05/12/2017 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [165376] =>.Microsoft Corporation
[MD5.D1049D4D1311D43F6FCF180CAA5BF78B] - 02/01/2018 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [138752] =>.Microsoft Corporation
[MD5.D4B7ED39C7900384D9E5C1283F1E7926] - 24/07/2014 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [76800] =>.Microsoft Corporation
[MD5.49EE0AE9E5B64FFBBD06D55C4984B598] - 04/11/2014 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [108544] =>.Microsoft Corporation
[MD5.B7342B3C58E91107F6E946A93D9D4EFD] - 18/03/2014 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [142848] =>.Microsoft Corporation
[MD5.50342440F4E4CC933D7E6541B63B7B1D] - 06/09/2019 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [401920] =>.Microsoft Corporation
[MD5.ECA8458C5042B5E63AAA8B9EC808F707] - 21/02/2019 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [281088] =>.Microsoft Corporation
[MD5.5A23FFA58B79512F40668836E58E4B22] - 25/05/2019 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2013432] =>.Microsoft Corporation
[MD5.57DCE4FB0467986AE78E1C6FC5240D32] - 11/08/2016 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [96256] =>.Microsoft Corporation
[MD5.235624C147E3CB4C288D5D3D8E8D64A2] - 02/02/2016 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [112640] =>.Microsoft Corporation
[MD5.57B60DC668977AF0F806F25F525CE1D5] - 11/07/2019 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [195072] =>.Microsoft Corporation
[MD5.576FA545FAB846B06E79B324160DE25C] - 02/08/2017 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [107520] =>.Microsoft Corporation
[MD5.17F7B0F2298D97F4B6C7A69511033D3D] - 14/03/2016 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [316760] =>.Microsoft Corporation

---\\ LISTE DES SERVICES (Non désactivés) (66) - 5s
O23 - Service: AnyDesk Service (AnyDesk) . (.philandro Software GmbH - .) - C:\Program Files (x86)\AnyDesk\AnyDesk.exe =>.philandro Software GmbH®
O23 - Service: C:\WINDOWS\System32\AudioEndpointBuilder.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Générateur de points de terminaison du serv.) - C:\WINDOWS\System32\AudioEndpointBuilder.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\audiosrv.dll (Audiosrv) . (.Microsoft Corporation - Service Audio Windows.) - C:\WINDOWS\System32\Audiosrv.dll =>.Microsoft Corporation
O23 - Service: Service %1!s! Update (avast) (avast) . (.AVAST Software - Avast Browser Update.) - C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe =>.AVAST Software s.r.o.®
O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - Avast Antivirus Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software s.r.o.®
O23 - Service: AOMEI Backupper Scheduler Service (Backupper Service) . (.AOMEI Tech Co., Ltd. - AOMEI Backupper Schedule task service.) - C:\Program Files (x86)\AOMEI Backupper\ABService.exe =>.CHENGDU AOMEI Tech Co., Ltd.®
O23 - Service: C:\WINDOWS\System32\bfe.dll (BFE) . (.Microsoft Corporation - Moteur de filtrage de base.) - C:\WINDOWS\System32\bfe.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\qmgr.dll (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) - C:\WINDOWS\System32\qmgr.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\system32\bisrv.dll (BrokerInfrastructure) . (.Microsoft Corporation - Service d’infrastructure des tâches en arri.) - C:\WINDOWS\System32\bisrv.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Services de chiffrement.) - C:\WINDOWS\System32\cryptsvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\cscsvc.dll (CscService) . (.Microsoft Corporation - DLL du service CSC.) - C:\WINDOWS\System32\cscsvc.dll =>.Microsoft Corporation
O23 - Service: CxUtilSvc (CxUtilSvc) . (.Conexant Systems, Inc. - Utility Service.) - C:\Program Files\CONEXANT\SA3\CxUtilSvc.exe =>.Conexant Systems, Inc.®
O23 - Service: C:\WINDOWS\System32\das.dll (DeviceAssociationService) . (.Microsoft Corporation - Service d’association de périphérique.) - C:\WINDOWS\System32\das.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - Service client DHCP.) - C:\Windows\System32\dhcpcore.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\UtcResources.dll (DiagTrack) . (.Microsoft Corporation - Microsoft Windows Diagnostics Tracking.) - C:\WINDOWS\System32\diagtrack.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - Service de résolution du cache DNS.) - C:\WINDOWS\System32\dnsrslvr.dll =>.Microsoft Corporation
O23 - Service: Service Agent EaseUS (EaseUS Agent) . (.CHENGDU YIWO Tech Development Co., Ltd - EaseUS Todo Backup Agent Application.) - C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe =>.CHENGDU YIWO Tech Development Co., Ltd.®
O23 - Service: C:\WINDOWS\System32\efssvc.dll (EFS) . (.Microsoft Corporation - Local Security Authority Process.) - C:\WINDOWS\System32\lsass.exe =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wevtsvc.dll (EventLog) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft®
O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Service de cache de police Windows.) - C:\WINDOWS\System32\FntCache.dll =>.Microsoft Corporation
O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) - C:\WINDOWS\System32\gpsvc.dll =>.Microsoft Corporation
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: Technologie de stockage Intel(R) Rapid (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel Corporation - Intel® Rapid Storage Technology®
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\WINDOWS\System32\igfxCUIService.exe =>.Intel Corporation
O23 - Service: C:\WINDOWS\System32\ikeext.dll (IKEEXT) . (.Microsoft Corporation - Extension IKE.) - C:\WINDOWS\System32\ikeext.dll =>.Microsoft Corporation
O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel® Upgrade Service®
O23 - Service: C:\WINDOWS\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) - C:\WINDOWS\System32\iphlpsvc.dll =>.Microsoft Corporation
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation®
O23 - Service: C:\WINDOWS\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - DLL du service Serveur.) - C:\WINDOWS\System32\srvsvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - DLL du service Station de travail.) - C:\WINDOWS\System32\wkssvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\lmhsvc.dll (lmhosts) . (.Microsoft Corporation - DLL des services de transport NetBIOS sur T.) - C:\WINDOWS\System32\lmhsvc.dll =>.Microsoft Corporation
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation®
O23 - Service: C:\WINDOWS\system32\lsm.dll (LSM) . (.Microsoft Corporation - Service du gestionnaire de session locale.) - C:\WINDOWS\System32\lsm.dll =>.Microsoft Corporation
O23 - Service: Malwarebytes Service (MBAMService) . (.Malwarebytes - Malwarebytes Service.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
O23 - Service: Machine Debug Manager (MDM) . (.Microsoft Corporation - Machine Debug Manager.) - C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE =>.Microsoft Corporation®
O23 - Service: C:\WINDOWS\System32\mmcss.dll (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) - C:\WINDOWS\System32\mmcss.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\FirewallAPI.dll (MpsSvc) . (.Microsoft Corporation - Service de protection Microsoft.) - C:\WINDOWS\System32\mpssvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\netlogon.dll (Netlogon) . (.Microsoft Corporation - Local Security Authority Process.) - C:\WINDOWS\System32\lsass.exe =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Connaissance des emplacements réseau 2.) - C:\WINDOWS\System32\nlasvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Serveur RPC de l’interface du magasin résea.) - C:\WINDOWS\System32\nsisvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\pcasvc.dll (PcaSvc) . (.Microsoft Corporation - Service de l’Assistant Compatibilité des pr.) - C:\WINDOWS\System32\pcasvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\umpo.dll (Power) . (.Microsoft Corporation - Service d’alimentation en mode utilisateur.) - C:\WINDOWS\System32\umpo.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\WINDOWS\System32\profsvc.dll =>.Microsoft Corporation
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.CyberLink - RichVideo Module.) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe =>.CyberLink®
O23 - Service: C:\WINDOWS\system32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - Mappeur de point de terminaison RPC.) - C:\WINDOWS\System32\RpcEpMap.dll =>.Microsoft Corporation
O23 - Service: @combase.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\WINDOWS\System32\rpcss.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) - C:\WINDOWS\System32\schedsvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\Sens.dll (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) - C:\WINDOWS\System32\sens.dll =>.Microsoft Corporation
O23 - Service: SoftThinks Agent Service (SftService) . (.SoftThinks SAS - SoftThinks Agent Service.) - C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe =>.Dell Inc.®
O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) - C:\Windows\System32\shsvcs.dll =>.Microsoft Corporation
O23 - Service: Spiceworks (spiceworks) . (.Spiceworks, Inc. - Spiceworks Application Server.) - C:\Program Files (x86)\Spiceworks\bin\spiceworks.exe {4F4EBF679325DAAE4A24B27CEA10F738}.
O23 - Service: C:\WINDOWS\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Application sous-système spouleur.) - C:\WINDOWS\System32\spoolsv.exe =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Service de la plateforme de protection logi.) - C:\WINDOWS\System32\sppsvc.exe =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wiaservc.dll (stisvc) . (.Microsoft Corporation - Service de périphériques d’images fixes.) - C:\WINDOWS\System32\wiaservc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\sysmain.dll (SysMain) . (.Microsoft Corporation - Hôte de service Superfetch.) - C:\WINDOWS\System32\sysmain.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\system32\SystemEventsBrokerServer.dll (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) - C:\WINDOWS\System32\SystemEventsBrokerServer.dll =>.Microsoft Corporation
O23 - Service: TeamViewer 11 (TeamViewer) . (.TeamViewer GmbH - TeamViewer 11.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer GmbH®
O23 - Service: C:\WINDOWS\System32\themeservice.dll (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) - C:\WINDOWS\System32\themeservice.dll =>.Microsoft Corporation
O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation®
O23 - Service: C:\WINDOWS\System32\wcmsvc.dll (Wcmsvc) . (.Microsoft Corporation - DLL du service de gestion des connexions Wi.) - C:\WINDOWS\System32\wcmsvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wbem\wmisvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\WINDOWS\System32\wbem\WMIsvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wlansvc.dll (WlanSvc) . (.Microsoft Corporation - DLL du service de configuration automatique.) - C:\WINDOWS\System32\wlansvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Service Centre de sécurité de Windows.) - C:\WINDOWS\System32\wscsvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - C:\Windows\System32\SearchIndexer.exe =>.Microsoft Corporation
O23 - Service: ZAtheros Wlan Agent (ZAtheros Wlan Agent) . (.Atheros - Atheros Coex Service Application.) - C:\Program Files (x86)\Dell Wireless\Ath_WlanAgent.exe =>.Atheros

---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (98) - 16s
SR - Boot [22/08/2013] [ 108896] (3ware) . (.LSI.) - C:\WINDOWS\System32\drivers\3ware.sys =>.Microsoft®
SS - Demand [14/11/2019] [ 335416] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Inc.®
SR - Boot [22/08/2013] [ 782176] (ADP80XX) . (.PMC-Sierra.) - C:\WINDOWS\System32\drivers\ADP80XX.SYS =>.Microsoft®
SR - Boot [21/12/2016] [ 51120] ambakdrv (ambakdrv) . (.CHENGDU AOMEI Tech Co., Ltd..) - C:\WINDOWS\System32\ambakdrv.sys =>.CHENGDU AOMEI Tech Co., Ltd.®
SR - Boot [22/08/2013] [ 79200] (amdsata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdsata.sys =>.Microsoft®
SR - Boot [22/08/2013] [ 259424] (amdsbs) . (.AMD Technologies Inc..) - C:\WINDOWS\System32\drivers\amdsbs.sys =>.Microsoft®
SR - Boot [22/08/2013] [ 25952] (amdxata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdxata.sys =>.Microsoft®
SR - Auto [21/12/2016] [ 171952] ammntdrv (ammntdrv) . (.CHENGDU AOMEI Tech Co., Ltd..) - C:\WINDOWS\system32\ammntdrv.sys =>.CHENGDU AOMEI Tech Co., Ltd.®
SR - Auto [01/09/2017] [ 38320] amwrtdrv (amwrtdrv) . (.CHENGDU AOMEI Tech Co., Ltd..) - C:\WINDOWS\system32\amwrtdrv.sys =>.CHENGDU AOMEI Tech Co., Ltd.®
SR - Auto [08/04/2016] [ 1456288] AnyDesk Service (AnyDesk) . (.philandro Software GmbH.) - C:\Program Files (x86)\AnyDesk\AnyDesk.exe =>.philandro Software GmbH®
SR - Boot [22/08/2013] [ 114016] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\WINDOWS\System32\drivers\arcsas.sys =>.Microsoft®
SR - Boot [07/10/2019] [ 37616] aswArDisk (aswArDisk) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswArDisk.sys =>.AVAST Software s.r.o.®
SR - System [07/10/2019] [ 204824] aswArPot (aswArPot) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswArPot.sys =>.AVAST Software s.r.o.®
SR - System [07/10/2019] [ 274456] aswbidsdriver (aswbidsdriver) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswbidsdriver.sys =>.AVAST Software s.r.o.®
SR - Boot [07/10/2019] [ 209552] aswbidsh (aswbidsh) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswbidsh.sys =>.AVAST Software s.r.o.®
SR - Boot [07/10/2019] [ 65120] aswbuniv (aswbuniv) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswbuniv.sys =>.AVAST Software s.r.o.®
SR - System [07/10/2019] [ 276952] aswHdsKe (aswHdsKe) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswHdsKe.sys =>.AVAST Software s.r.o.®
SR - System [07/10/2019] [ 42736] aswKbd (aswKbd) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswKbd.sys =>.AVAST Software s.r.o.®
SR - Auto [07/10/2019] [ 171520] aswMonFlt (aswMonFlt) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswMonFlt.sys =>.AVAST Software s.r.o.®
SR - System [07/10/2019] [ 110320] aswRdr (aswRdr) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswRdr2.sys =>.AVAST Software s.r.o.®
SR - Boot [07/10/2019] [ 83792] aswRvrt (aswRvrt) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswRvrt.sys =>.AVAST Software s.r.o.®
SR - System [07/10/2019] [ 848432] aswSnx (aswSnx) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswSnx.sys =>.AVAST Software s.r.o.®
SR - System [07/10/2019] [ 460448] aswSP (aswSP) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswSP.sys =>.AVAST Software s.r.o.®
SR - Auto [07/10/2019] [ 236024] aswStm (aswStm) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswStm.sys =>.AVAST Software s.r.o.®
SR - Boot [07/10/2019] [ 316528] aswVmm (aswVmm) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswVmm.sys =>.AVAST Software s.r.o.®
SR - Demand [18/06/2013] [ 3680256] Qualcomm Atheros Extens (athr) . (.Qualcomm Atheros Communications, Inc..) - C:\WINDOWS\System32\DRIVERS\athw8x.sys =>.Qualcomm Atheros Communications, Inc.
SR - Auto [05/04/2018] [ 164984] Service %1!s! Update (avast) (avast) . (.AVAST Software.) - C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe =>.AVAST Software s.r.o.®
SR - Auto [07/10/2019] [ 996880] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software s.r.o.®
SS - Demand [05/04/2018] [ 164984] Service %1!s! Update (avastm) (avastm) . (.AVAST Software.) - C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe =>.AVAST Software s.r.o.®
SS - Demand [05/11/2019] [ 970088] Avast Secure Browser Elevation Service (AvastSecureBrowserElevationService) . (.AVAST Software.) - C:\Program Files (x86)\AVAST Software\Browser\Application\77.2.2153.120\elevation_service.exe =>.AVAST Software s.r.o.®
SR - Boot [22/08/2013] [ 531296] Broadcom NetXtreme II VBD (b06bdrv) . (.Broadcom Corporation.) - C:\WINDOWS\System32\drivers\bxvbda.sys =>.Microsoft®
SR - Auto [30/10/2018] [ 454512] AOMEI Backupper Scheduler Service (Backupper Service) . (.AOMEI Tech Co., Ltd..) - C:\Program Files (x86)\AOMEI Backupper\ABService.exe =>.CHENGDU AOMEI Tech Co., Ltd.®
SR - Demand [13/08/2013] [ 17624] bcmfn2 Service (bcmfn2) . (.Broadcom Corporation.) - C:\WINDOWS\System32\drivers\bcmfn2.sys =>.Broadcom Corporation®
SR - System [25/06/2012] [ 92536] CLVirtualDrive (CLVirtualDrive) . (.CyberLink.) - C:\WINDOWS\System32\DRIVERS\CLVirtualDrive.sys =>.CyberLink®
SR - Demand [22/06/2012] [ 1583264] Conexant U (CnxtHdAudService) . (.Conexant Systems Inc..) - C:\WINDOWS\System32\drivers\CHDRT64.sys =>.Conexant Systems, Inc.®
SS - Demand [20/05/2014] [ 278344] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation - pGFX®
SR - Auto [12/10/2011] [ 109184] CxUtilSvc (CxUtilSvc) . (.Conexant Systems, Inc..) - C:\Program Files\CONEXANT\SA3\CxUtilSvc.exe =>.Conexant Systems, Inc.®
SR - Demand [19/10/2012] [ 151968] MS IEEE-1284.4 Driver (dot4) . (.Hewlett-Packard Company.) - C:\WINDOWS\System32\DRIVERS\Dot4.sys =>.Hewlett-Packard Company®
SR - Demand [19/10/2012] [ 27040] Print Class Driver for IEEE-128 (Dot4Print) . (.Hewlett-Packard Company.) - C:\WINDOWS\System32\drivers\Dot4Prt.sys =>.Hewlett-Packard Company®
SR - Auto [22/04/2019] [ 40016] Service Agent EaseUS (EaseUS Agent) . (.CHENGDU YIWO Tech Development Co., Ltd.) - C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe =>.CHENGDU YIWO Tech Development Co., Ltd.®
SR - Boot [22/08/2013] [ 3357024] Broadcom NetXtreme II 10 GigE (ebdrv) . (.Broadcom Corporation.) - C:\WINDOWS\System32\drivers\evbda.sys =>.Microsoft®
SR - System [26/04/2018] [ 152184] Malwarebytes Anti-Exploit (ESProtectionDriver) . (.Malwarebytes.) - C:\WINDOWS\system32\drivers\mbae64.sys =>.Malwarebytes Corporation®
SR - Boot [22/04/2019] [ 74120] EUBAKUP (EUBAKUP) . (.CHENGDU YIWO Tech Development Co., Ltd.) - C:\WINDOWS\System32\drivers\eubakup.sys =>.CHENGDU YIWO Tech Development Co., Ltd.®
SR - Boot [22/04/2019] [ 54152] EUBKMON (EUBKMON) . (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\WINDOWS\System32\drivers\EUBKMON.sys =>.CHENGDU YIWO Tech Development Co., Ltd.®
SR - System [22/04/2019] [ 23432] EUDSKACS (EUDSKACS) . (.CHENGDU YIWO Tech Development Co., Ltd.) - C:\WINDOWS\system32\drivers\eudskacs.sys =>.CHENGDU YIWO Tech Development Co., Ltd.®
SR - System [22/04/2019] [ 344456] EUFDDISK (EUFDDISK) . (.CHENGDU YIWO Tech Development Co., Ltd.) - C:\WINDOWS\system32\drivers\EuFdDisk.sys =>.CHENGDU YIWO Tech Development Co., Ltd.®
SS - Demand [16/11/2019] [ 1110512] Google Chrome Elevation Service (GoogleChromeElevationService) . (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\78.0.3904.108\elevation_service.exe =>.Google LLC®
SR - Auto [28/08/2015] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [28/08/2015] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SR - Boot [22/08/2013] [ 64352] (HpSAMD) . (.Hewlett-Packard Company.) - C:\WINDOWS\System32\drivers\HpSAMD.sys =>.Microsoft®
SR - Demand [30/07/2013] [ 24568] Intel(R) Serial IO (iaLPSSi_GPIO) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys =>.Intel Corporation - Software and Firmware Products®
SR - Demand [25/07/2013] [ 99320] Intel(R) Serial IO I (iaLPSSi_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys =>.Intel Corporation - Software and Firmware Products®
SR - Boot [26/10/2012] [ 651832] (iaStorA) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorA.sys =>.Intel Corporation - Intel® Rapid Storage Technology®
SR - Boot [10/08/2013] [ 651248] Intel(R) SATA RAID Cont (iaStorAV) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorAV.sys =>.Intel Corporation - Intel® Rapid Storage Technology®
SR - Auto [01/09/2012] [ 14904] Technologie de stockage Intel(R) Rapid (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel Corporation - Intel® Rapid Storage Technology®
SR - Boot [22/08/2013] [ 412000] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorV.sys =>.Microsoft®
SR - Demand [20/05/2014] [ 3791872] (igfx) . (.Intel Corporation.) - C:\WINDOWS\System32\DRIVERS\igdkmd64.sys =>.Intel Corporation
SR - Auto [20/05/2014] [ 314696] Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation.) - C:\WINDOWS\System32\igfxCUIService.exe =>.Intel Corporation - pGFX®
SR - Demand [06/05/2014] [ 38296] Intel WiDi Audio Device (intaud_WaveExtensible) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\intelaud.sys =>.Intel Wireless Display®
SR - Demand [19/06/2012] [ 342528] Son Intel(R) pour écrans (IntcDAud) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\DRIVERS\IntcDAud.sys =>.Intel(R) Corporation
SR - Auto [19/06/2012] [ 634632] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel® Upgrade Service®
SR - Demand [06/05/2014] [ 27032] IWD Bus Enumerator (iwdbus) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iwdbus.sys =>.Intel Wireless Display®
SR - Auto [19/07/2012] [ 166720] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation®
SR - Auto [19/07/2012] [ 277824] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation®
SR - Boot [22/08/2013] [ 109408] (LSI_SAS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas.sys =>.Microsoft®
SR - Boot [22/08/2013] [ 93536] (LSI_SAS2) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas2.sys =>.Microsoft®
SR - Boot [22/08/2013] [ 81760] (LSI_SAS3) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas3.sys =>.Microsoft®
SR - Boot [22/08/2013] [ 82784] (LSI_SSS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sss.sys =>.Microsoft®
SR - Auto [02/12/2019] [ 190696] MBAMChameleon (MBAMChameleon) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\MbamChameleon.sys =>.Malwarebytes Corporation®
SR - Demand [02/12/2019] [ 112864] MBAMFarflt (MBAMFarflt) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\farflt.sys =>.Malwarebytes Corporation®
SR - Demand [02/12/2019] [ 44768] MBAMProtection (MBAMProtection) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\mbam.sys =>.Malwarebytes Corporation®
SR - Auto [09/05/2018] [ 6541008] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
SR - Demand [02/12/2019] [ 253664] MBAMSwissArmy (MBAMSwissArmy) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\mbamswissarmy.sys =>.Malwarebytes Corporation®
SR - Demand [02/12/2019] [ 103648] MBAMWebProtection (MBAMWebProtection) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\mwac.sys =>.Malwarebytes Corporation®
SR - Boot [22/08/2013] [ 56672] (megasas) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\megasas.sys =>.Microsoft®
SR - Boot [22/08/2013] [ 575840] (megasr) . (.LSI Corporation, Inc..) - C:\WINDOWS\System32\drivers\megasr.sys =>.Microsoft®
SR - Demand [03/07/2012] [ 62784] Intel(R) Management Engine Interf (MEIx64) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\HECIx64.sys =>.Intel Corporation®
SS - Demand [02/11/2019] [ 242720] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SR - Boot [22/08/2013] [ 63840] (mvumis) . (.Marvell Semiconductor, Inc..) - C:\WINDOWS\System32\drivers\mvumis.sys =>.Microsoft®
SR - Boot [22/08/2013] [ 150368] (nvraid) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvraid.sys =>.Microsoft®
SR - Boot [22/08/2013] [ 168288] (nvstor) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvstor.sys =>.Microsoft®
SR - Auto [25/04/2012] [ 254512] Cyberlink RichVideo Service(CRVS) (RichVideo) . (.CyberLink.) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe =>.CyberLink®
SR - Demand [14/06/2012] [ 252048] RtsUStor.Sys Realtek USB Card Reader (RSUSBSTOR) . (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\Drivers\RtsUStor.sys =>.Realtek Semiconductor Corp®
SR - Demand [18/06/2013] [ 591360] Pilote Realtek (RTL8168) . (.Realtek.) - C:\WINDOWS\System32\DRIVERS\Rt630x64.sys =>.Realtek
SR - Auto [21/11/2013] [ 1915920] SoftThinks Agent Service (SftService) . (.SoftThinks SAS.) - C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe =>.Dell Inc.®
SR - Boot [22/08/2013] [ 44896] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\WINDOWS\System32\drivers\SiSRaid2.sys =>.Microsoft®
SR - Boot [22/08/2013] [ 81760] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\WINDOWS\System32\drivers\sisraid4.sys =>.Microsoft®
SR - Auto [01/04/2016] [ 47344] Spiceworks (spiceworks) . (.Spiceworks, Inc..) - C:\Program Files (x86)\Spiceworks\bin\spiceworks.exe {4F4EBF679325DAAE4A24B27CEA10F738}.
SR - Boot [22/08/2013] [ 31072] (stexstor) . (.Promise Technology, Inc..) - C:\WINDOWS\System32\drivers\stexstor.sys =>.Microsoft®
SR - Auto [16/10/2019] [ 7766360] TeamViewer 11 (TeamViewer) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer GmbH®
SR - Auto [19/07/2012] [ 365376] Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation®
SR - Disabl [00/00/0000] [ 0] VBoxAsw Support Driver (VBoxAswDrv) . (...) - C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys (.not file.) =>.Avast Software s.r.o
SR - Boot [22/08/2013] [ 19808] (viaide) . (.VIA Technologies, Inc..) - C:\WINDOWS\System32\drivers\viaide.sys =>.Microsoft®
SR - Boot [22/08/2013] [ 168800] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\WINDOWS\System32\drivers\vsmraid.sys =>.Microsoft®
SR - Boot [22/08/2013] [ 305504] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\WINDOWS\System32\drivers\vstxraid.sys =>.Microsoft®
SS - Demand [00/00/0000] [ 0] @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) . (...) - U:\Program Files\Windows Defender\NisSrv.exe (.not file.) =>.Microsoft Corporation
SS - Demand [00/00/0000] [ 0] @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) . (...) - U:\Program Files\Windows Defender\MsMpEng.exe (.not file.)
SR - Auto [19/06/2012] [ 77824] ZAtheros Wlan Agent (ZAtheros Wlan Agent) . (.Atheros.) - C:\Program Files (x86)\Dell Wireless\Ath_WlanAgent.exe =>.Atheros

---\\ TÂCHES PLANIFIÉES EN AUTOMATIQUE (Registre) (26) - 6s
O38 - TASK: {0AEBA041-8333-45E1-A17A-1DAD39008D36} [64Bits][\Adobe Flash Player NPAPI Notifier] - (.Adobe - Adobe® Flash® Player Installer/Uninstaller.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_293_Plugin.exe [1457720] =>.Adobe
O38 - TASK: {12B3181B-240A-45AF-A009-BD4D1E046108} [64Bits][\AvastUpdateTaskMachineUA] - (.AVAST Software - Avast Browser Update.) -- C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984] =>.AVAST Software
O38 - TASK: {18BDA7CE-2B3D-48D1-9C14-EB2E8D463FA2} [64Bits][\GoogleUpdateTaskMachineUA] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc.
O38 - TASK: {3C1A743C-85E0-4920-AC99-56C564D7A77A} [64Bits][\Avast Secure Browser Heartbeat Task (Logon)] - (.AVAST Software - Avast Secure Browser.) -- C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [1857552] =>.AVAST Software
O38 - TASK: {47808F0A-F18B-44B4-8C9D-3E3EA86B00AA} [64Bits][\Avast Secure Browser Heartbeat Task (Hourly)] - (.AVAST Software - Avast Secure Browser.) -- C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [1857552] =>.AVAST Software
O38 - TASK: {70735BEE-3078-4BDA-852D-49A7198A9953} [64Bits][\Avast Emergency Update] - (.AVAST Software - Avast Antivirus Emergency Update.) -- C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3933576] =>.AVAST Software
O38 - TASK: {8221DC87-2E70-4309-9612-9188A519BA56} [64Bits][\Avast Software\Overseer] - (.AVAST Software - Avast Overseer.) -- C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1873288] =>.AVAST Software
O38 - TASK: {8AD14117-21C2-4C4F-BF74-2BB7D95E0828} [64Bits][\CLMLSvc_P2G8] - (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111136] =>.CyberLink
O38 - TASK: {8E34AD71-A572-42EE-B544-75C2C8E733FA} [64Bits][\CCleanerSkipUAC] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [13797712] =>.Piriform Ltd
O38 - TASK: {94BF2CFB-90DE-467D-80F4-7B2203171B25} [64Bits][\CCleaner Update] - (.Piriform Software Ltd - CCleaner emergency updater.) -- C:\Program Files\CCleaner\CCUpdate.exe [619416] =>.Piriform Software Ltd
O38 - TASK: {A55B93EF-2901-4402-94BA-0F73BB71538E} [64Bits][\GoogleUpdateTaskMachineCore] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc.
O38 - TASK: {AD8CC83E-7113-41F3-9649-06D6E7EB0FD6} [64Bits][\AvastUpdateTaskMachineCore] - (.AVAST Software - Avast Browser Update.) -- C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984] =>.AVAST Software
O38 - TASK: {DECA6B86-360B-42AE-932A-F93FDBB66DAE} [64Bits][\Adobe Flash Player Updater] - (.Adobe - Adobe® Flash® Player Update Service 32.0 r0.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416] =>.Adobe
C:\WINDOWS\System32\Tasks\Adobe Flash Player NPAPI Notifier - (.Adobe.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_293_Plugin.exe [-check plugin.-check] =>.Adobe
C:\WINDOWS\System32\Tasks\AvastUpdateTaskMachineUA - (.AVAST Software.) -- C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [/ua ./ua] =>.AVAST Software
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/ua ./ua] =>.Google Inc.
C:\WINDOWS\System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) - (.AVAST Software.) -- C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [--type=heartbeat --logon.--type=heartbeat] =>.AVAST Software
C:\WINDOWS\System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) - (.AVAST Software.) -- C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [--type=heartbeat --hourly.--type=heartbeat] =>.AVAST Software
C:\WINDOWS\System32\Tasks\Avast Emergency Update - (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [] =>.AVAST Software
C:\WINDOWS\System32\Tasks\Avast Software\Overseer - (.AVAST Software.) -- C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [/from_scheduler:1] =>.AVAST Software
C:\WINDOWS\System32\Tasks\CLMLSvc_P2G8 - (.CyberLink.) -- C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [] =>.CyberLink
C:\WINDOWS\System32\Tasks\CCleanerSkipUAC - (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [$(Arg0)] =>.Piriform Ltd
C:\WINDOWS\System32\Tasks\CCleaner Update - (.Piriform Software Ltd.) -- C:\Program Files\CCleaner\CCUpdate.exe [] =>.Piriform Software Ltd
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/c] =>.Google Inc.
C:\WINDOWS\System32\Tasks\AvastUpdateTaskMachineCore - (.AVAST Software.) -- C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [/c] =>.AVAST Software
C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater - (.Adobe.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [] =>.Adobe

---\\ APPLICATIONS LANCÉES AU DÉMARRAGE DU SYSTÈME (12) - 1s
O4 - HKLM\..\Run: [cAudioFilterAgent] . (.Conexant Systems, Inc. - Conexant High Definition Audio Filter Agent.) -- C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe =>.Conexant Systems, Inc.®
O4 - HKLM\..\Run: [SmartAudio] . (.Conexant Systems, Inc. - SmartAudio CPL (32bit).) -- C:\Program Files\CONEXANT\SA3\SAcpl.exe =>.Conexant Systems, Inc.
O4 - HKLM\..\Run: [Classic Start Menu] . (.IvoSoft - Classic Start Menu.) -- C:\Program Files\Classic Shell\ClassicStartMenu.exe =>.IvoSoft
O4 - HKLM\..\Run: [SS0XRCV] . (.SHARP CORPORATION - PC-Fax Job Reciever.) -- C:\WINDOWS\system32\spool\drivers\x64\3\SS0XRCV.exe =>.SHARP Corporation
O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - AvLaunch component.) -- C:\Program Files\AVAST Software\Avast\AvLaunch.exe =>.AVAST Software s.r.o.®
O4 - HKCU\..\Run: [CCleaner Smart Cleaning] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
O4 - HKCU\..\Run: [GoogleDriveSync] . (...) -- C:\Program Files\Google\Drive\googledrivesync.exe =>.Google LLC®
O4 - HKLM\..\Wow6432Node\Run: [IMSS] . (.Intel Corporation - PIcon startup utility.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe =>.Intel Corporation®
O4 - HKLM\..\Wow6432Node\Run: [IAStorIcon] . (.Intel Corporation - Delayed launcher.) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe =>.Intel Corporation®
O4 - HKLM\..\Wow6432Node\Run: [SharpTray.exe] . (.SHARP CORPORATION - SharpTray Module.) -- C:\Program Files (x86)\SHARP\Sharpdesk\SharpTray.exe =>.SHARP Corporation
O4 - HKUS\S-1-5-21-4097367374-2803059708-3808106613-1152\..\Run: [CCleaner Smart Cleaning] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
O4 - HKUS\S-1-5-21-4097367374-2803059708-3808106613-1152\..\Run: [GoogleDriveSync] . (...) -- C:\Program Files\Google\Drive\googledrivesync.exe =>.Google LLC®

---\\ PROCESSUS LANCÉS (61) - 11s
[MD5.7A510A9AFC7955DEE63F8DC243E31292] - (.Intel Corporation - igfxCUIService Module.) -- C:\Windows\System32\igfxCUIService.exe [314696] [PID.1052] =>.Intel Corporation
[MD5.3670FF40AA8B2C5441115FA04A3FD4CE] - (...) -- C:\Program Files (x86)\AnyDesk\AnyDesk.exe [1456288] [PID.1860] =>.philandro Software GmbH®
[MD5.6ED3DD887E28FAA6DAD382D42CCA12E5] - (.AOMEI Tech Co., Ltd. - AOMEI Backupper Schedule task service.) -- C:\Program Files (x86)\AOMEI Backupper\ABService.exe [454512] [PID.1916] =>.CHENGDU AOMEI Tech Co., Ltd.®
[MD5.9A59DF2CA690019FEA3B265D5A7EB619] - (.Conexant Systems, Inc. - Utility Service.) -- C:\Program Files\CONEXANT\SA3\CxUtilSvc.exe [109184] [PID.1956] =>.Conexant Systems, Inc.®
[MD5.4B364A699A80CB934134C297891469A3] - (.CHENGDU YIWO Tech Development Co., Ltd - EaseUS Todo Backup Agent Application.) -- C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe [40016] [PID.1076] =>.CHENGDU YIWO Tech Development Co., Ltd.®
[MD5.B353F1834FCD36D77BE3F74992C147D4] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [634632] [PID.1244] =>.Intel® Upgrade Service®
[MD5.5B7DE9D87B9D2713BDD6A53678DC2A49] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720] [PID.1508] =>.Intel Corporation®
[MD5.41DDCF1ADD1FB7DE23DCF671740DDBE6] - (. - RichVideo Module.) -- C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [254512] [PID.2120] =>.CyberLink®
[MD5.98DB962229B9045FC7C63FA77B0036F0] - (.Spiceworks, Inc. - Spiceworks Application Server.) -- C:\Program Files (x86)\Spiceworks\bin\spiceworks.exe [47344] [PID.2164] {4F4EBF679325DAAE4A24B27CEA10F738}.
[MD5.7F287AA9F70B312C116AC8F45E5E1803] - (.TeamViewer GmbH - TeamViewer 11.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [7766360] [PID.2264] =>.TeamViewer GmbH®
[MD5.67BB3DC074C640AD609B19E0BBA42BDC] - (.Atheros - Atheros Coex Service Application.) -- C:\Program Files (x86)\Dell Wireless\Ath_WlanAgent.exe [77824] [PID.2360] =>.Atheros
[MD5.16DA3F51E70F15B705CE021D490F3793] - (.Apache Software Foundation - Spiceworks Desktop Webserver by Apache.) -- C:\Program Files (x86)\Spiceworks\httpd\bin\spiceworks-httpd.exe [24816] [PID.2904] {4F4EBF679325DAAE4A24B27CEA10F738}. =>.Apache Software Foundation
[MD5.16DA3F51E70F15B705CE021D490F3793] - (.Apache Software Foundation - Spiceworks Desktop Webserver by Apache.) -- C:\Program Files (x86)\Spiceworks\httpd\bin\spiceworks-httpd.exe [24816] [PID.2932] {4F4EBF679325DAAE4A24B27CEA10F738}. =>.Apache Software Foundation
[MD5.AC72A4F0796AFBC72C60DF1A6D12DB0E] - (...) -- C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe [276560] [PID.3704] =>.CHENGDU YIWO Tech Development Co., Ltd.®
[MD5.710130445D9A4A7D5B97B94ACB393D24] - (.AVAST Software - Avast Browser Update.) -- C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984] [PID.5864] =>.AVAST Software s.r.o.®
[MD5.E6E0FAEA10BB8BCF58FCE4B8FE318AF8] - (.TeamViewer GmbH - TeamViewer 11.) -- C:\Program Files (x86)\TeamViewer\TeamViewer.exe [27278112] [PID.4752] =>.TeamViewer GmbH®
[MD5.7D7052DA7900C30427259222D6CF5E17] - (.Intel Corporation - igfxEM Module.) -- C:\WINDOWS\system32\igfxEM.exe [501064] [PID.2300] =>.Intel Corporation
[MD5.460F2652F97052A38F952DD3E2E073D5] - (.Intel Corporation - igfxHK Module.) -- C:\WINDOWS\system32\igfxHK.exe [243528] [PID.2296] =>.Intel Corporation
[MD5.690EB331346D7ADFDA18E50042DEA4B4] - (.IvoSoft - Classic Start Menu.) -- C:\Program Files\Classic Shell\ClassicStartMenu.exe [161984] [PID.5992] =>.IvoSoft
[MD5.E85BD90950497619C39D1F5068228CF4] - (.Intel Corporation - igfxTray Module.) -- C:\WINDOWS\system32\igfxTray.exe [443720] [PID.6028] =>.Intel Corporation
[MD5.ADD1063ADA7D98CE38D210E8A8DA01D2] - (.TeamViewer GmbH - TeamViewer 11.) -- C:\Program Files (x86)\TeamViewer\tv_w32.exe [249176] [PID.6376] =>.TeamViewer GmbH®
[MD5.CFC2C860AE6B26C9F4C44F2C8C495227] - (.TeamViewer GmbH - TeamViewer 11.) -- C:\Program Files (x86)\TeamViewer\tv_x64.exe [286552] [PID.6384] =>.TeamViewer GmbH®
[MD5.CE81555537052D8A6887EFFC16DE480F] - (.AVAST Software - Avast Browser Update.) -- C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.136.333\AvastBrowserCrashHandler.exe [335896] [PID.6964] =>.AVAST Software s.r.o.®
[MD5.3D00233CBE465BAF00EC650D34387BBA] - (.Google LLC - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.35.342\GoogleCrashHandler.exe [299304] [PID.7016] =>.Google Inc®
[MD5.4E2B3D1B77FD1D842BAB244D32F8B0D2] - (.Conexant Systems, Inc. - Conexant High Definition Audio Filter Agent.) -- C:\Program Files\CONEXANT\cAudioFilterAgent\caudiofilteragent64.exe [883840] [PID.7028] =>.Conexant Systems, Inc.®
[MD5.B8E4CFD8B7FD907BBF02F630C0601D5A] - (.Google LLC - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.35.342\GoogleCrashHandler64.exe [380712] [PID.7052] =>.Google Inc®
[MD5.C752FE28D412A3C78E189B06E8D75D62] - (.AVAST Software - Avast Browser Update.) -- C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.136.333\AvastBrowserCrashHandler64.exe [424256] [PID.7060] =>.AVAST Software s.r.o.®
[MD5.1C11AE2182025BDE9421B3C176B5267C] - (.Conexant Systems, Inc. - SmartAudio3 [64-Bit].) -- C:\Program Files\CONEXANT\SA3\SmartAudio3.exe [422560] [PID.7084] =>.Conexant Systems, Inc.®
[MD5.A4A8F6F27354D0B94EE3B4E2639C5359] - (.SHARP CORPORATION - PC-Fax Job Reciever.) -- C:\Windows\System32\spool\drivers\x64\3\SS0XRCV.exe [102400] [PID.7144] =>.SHARP Corporation
[MD5.40840198C14BC3123422793937A76F33] - (...) -- C:\Program Files\Google\Drive\googledrivesync.exe [47774856] [PID.1196] =>.Google LLC®
[MD5.40840198C14BC3123422793937A76F33] - (...) -- C:\Program Files\Google\Drive\googledrivesync.exe [47774856] [PID.6768] =>.Google LLC®
[MD5.3670FF40AA8B2C5441115FA04A3FD4CE] - (...) -- C:\Program Files (x86)\AnyDesk\AnyDesk.exe [1456288] [PID.6832] =>.philandro Software GmbH®
[MD5.FDFFD3F300642FBE94C01C0E1A32CCCF] - (.SHARP CORPORATION - SharpTray Module.) -- C:\Program Files (x86)\SHARP\Sharpdesk\SharpTray.exe [157184] [PID.6896] =>.SHARP Corporation
[MD5.2CF8BF2F48F2333688A4F533A912591D] - (.SHARP CORPORATION - Network Scanner Tool.) -- C:\Program Files (x86)\SHARP\Sharpdesk\FTPServer.exe [820224] [PID.6888] =>.SHARP Corporation
[MD5.F691D67A07DECB156B7456DF43D46DD8] - (.AVAST Software - Avast Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [12128648] [PID.7108] =>.AVAST Software s.r.o.®
[MD5.1CA646E58130106CCC302E4CFE84F161] - (.SHARP CORPORATION - Application and services objects.) -- C:\Program Files (x86)\SHARP\Sharpdesk\nsapp.exe [919552] [PID.6680] =>.SHARP Corporation
[MD5.E2E257A4FCB999AA435D24403C1DB75C] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe [18630056] [PID.6988] =>.Piriform Ltd®
[MD5.F419E9A607B79DAB0AC93119016E8342] - (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111136] [PID.7916] =>.CyberLink Corp.®
[MD5.883B2E1341E5BE906A7507308A6636DF] - (.Intel Corporation - IAStorIcon.) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [285240] [PID.8096] =>.Intel Corporation - Intel® Rapid Storage Technology®
[MD5.0AB254994A460550258446950BB58311] - (.Intel Corporation - IAStorDataSvc.) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [14904] [PID.7192] =>.Intel Corporation - Intel® Rapid Storage Technology®
[MD5.E70FD0D2C95F559A17321D831875593D] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [277824] [PID.6160] =>.Intel Corporation®
[MD5.B2B36D1B62BA24ACA1C114B3936F308D] - (.SoftThinks SAS - SoftThinks Agent Service.) -- C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe [1915920] [PID.6068] =>.Dell Inc.®
[MD5.C485FB802F6C4A306B8F89BA087E5CA2] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [365376] [PID.4236] =>.Intel Corporation®
[MD5.F7265B7490428499F2FE409FA9247866] - (.Malwarebytes - Malwarebytes Service.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6541008] [PID.924] =>.Malwarebytes Corporation®
[MD5.55029D194970FF3A24867BE005870FAB] - (.Malwarebytes - Malwarebytes Tray Application.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe [3768528] [PID.7420] =>.Malwarebytes Corporation®
[MD5.D74329A9304738A9F5D77B8373122C00] - (.Intel Corporation - Intel(R) Management and Security Status.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe [1844544] [PID.2616] =>.Intel Corporation®
[MD5.F691D67A07DECB156B7456DF43D46DD8] - (.AVAST Software - Avast Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [12128648] [PID.7848] =>.AVAST Software s.r.o.®
[MD5.FAF51205413EC5D40129A841D34FB135] - (.Spiceworks, Inc. - Spiceworks Network Scanner and TFTP Server.) -- C:\Program Files (x86)\Spiceworks\bin\spiceworks-finder.exe [46832] [PID.5916] {4F4EBF679325DAAE4A24B27CEA10F738}.
[MD5.150BB63D132E6F3D83692A74D61BCF75] - (.SoftThinks - Dell - Dell Backup And Recovery Update Launcher.) -- C:\Program Files (x86)\Dell Backup and Recovery\COMPONENTS\DBRUPDATE\DBRUpd.exe [490344] [PID.4420] =>.SoftThinks - Dell
[MD5.74A964A5060AE4DC23242092480C67C2] - (.SoftThinks - Dell - Dell Backup And Recovery Toaster.) -- C:\Program Files (x86)\Dell Backup and Recovery\Toaster.exe [4136976] [PID.2652] =>.Dell Inc.®
[MD5.93482A754E242D3BF8A72DBCB7BBCD35] - (. - DBRCrawler.) -- C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBRCrawler.exe [484880] [PID.6872] =>.Dell Inc.®
[MD5.C1A8461F26A7AA5BAEFCC2926FC2F989] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [577568] [PID.2752] =>.Mozilla Corporation®
[MD5.C1A8461F26A7AA5BAEFCC2926FC2F989] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [577568] [PID.8204] =>.Mozilla Corporation®
[MD5.C1A8461F26A7AA5BAEFCC2926FC2F989] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [577568] [PID.8296] =>.Mozilla Corporation®
[MD5.C1A8461F26A7AA5BAEFCC2926FC2F989] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [577568] [PID.8564] =>.Mozilla Corporation®
[MD5.C1A8461F26A7AA5BAEFCC2926FC2F989] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [577568] [PID.8604] =>.Mozilla Corporation®
[MD5.C1A8461F26A7AA5BAEFCC2926FC2F989] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [577568] [PID.8368] =>.Mozilla Corporation®
[MD5.C1A8461F26A7AA5BAEFCC2926FC2F989] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [577568] [PID.9028] =>.Mozilla Corporation®
[MD5.C1A8461F26A7AA5BAEFCC2926FC2F989] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [577568] [PID.10636] =>.Mozilla Corporation®
[MD5.C1A8461F26A7AA5BAEFCC2926FC2F989] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [577568] [PID.8752] =>.Mozilla Corporation®
[MD5.A35531C6C802CFD5D33C2D6DADCA8ECC] - (.Nicolas Coolman - ZHPDiag.) -- \\192.168.0.31\ecole\Downloads\ZHPDiag3.exe [3250560] [PID.7944] =>.Nicolas Coolman

---\\ CHROME, Démarrage, Recherche, Extensions (17) - 0s
G2 - GCE: Preference [ecole][User Data\Default\Extensions] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides}
G2 - GCE: Preference [ecole][User Data\Default\Extensions] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs}
G2 - GCE: Preference [ecole][User Data\Default\Extensions] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive}
G2 - GCE: Preference [ecole][User Data\Default\Extensions] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube}
G2 - GCE: Preference [ecole][User Data\Default\Extensions] [coobgpohoikkiipiblmjeljniedjpjpf] http://www.google.com/ =>.Google Inc. {Hidden Chrome extensions}
G2 - GCE: Preference [ecole][User Data\Default\Extensions] [eofcbnmajmjmplflapaojjnihcjkigck] Avast =>.Avast Software s.r.o
G2 - GCE: Preference [ecole][User Data\Default\Extensions] [felcaaldnbdncclmgdcncolpebgiejap] =>.Google Inc. {Sheets}
G2 - GCE: Preference [ecole][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
G2 - GCE: Preference [ecole][User Data\Default\Extensions] [gighmmpiobklfepjocnamgkkbiglidom] Michael Gundlach =>.Wladimir Palant {AdBlock}
G2 - GCE: Preference [ecole][User Data\Default\Extensions] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security =>.Avast Software s.r.o
G2 - GCE: Preference [ecole][User Data\Default\Extensions] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet}
G2 - GCE: Preference [ecole][User Data\Default\Extensions] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail}
G2 - GCE: Preference [ecole][User Data\Default\Extensions] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc.
G2 - GCE: Preference [ecole][User Data\Default\Local Extension Settings] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
G2 - GCE: Preference [ecole][User Data\Default\Local Extension Settings] [gighmmpiobklfepjocnamgkkbiglidom] =>.Wladimir Palant {AdBlock}
G2 - GCE: Preference [ecole][User Data\Default\Managed Extension Settings] [gighmmpiobklfepjocnamgkkbiglidom] =>.Wladimir Palant {AdBlock}
G2 - GCE: Preference [ecole][User Data\Default\Sync Extension Settings] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] =>.Google Inc. {Chrome Media Router}

---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (33) - 4s
M0 - MFSP: prefs.js [ecole - 17y77f1s.default] http://www.google.fr/ =>.Google Inc.
P2 - EXT FILE: (.Avast Software s.r.o.) -- C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\17y77f1s.default\extensions\sp@avast.com.xpi =>.Avast Software s.r.o
P2 - EXT FILE: (.Avast Online Security - Avast Browser Security and Web Reputat.) -- C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\17y77f1s.default\extensions\wrc@avast.com.xpi =>.Avast Online Security
P2 - EXT FILE: (.Google Inc..) -- C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\17y77f1s.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi =>.Google Inc.
P2 - EXT FILE: (.Tracker Software Products (Canada) Ltd. - PDF-XChange Viewer Netscape Gecko Plugin.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npPDFXCviewNPPlugin.dll =>.Tracker Software Products (Canada) Ltd®
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\formautofill@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\screenshots@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.webcompat.com.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat-reporter@mozilla.org.xpi =>.webcompat.com
P2 - EXT FILE: (.webcompat.com.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi =>.webcompat.com
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_293.dll =>.Adobe
C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\17y77f1s.default\bookmarkbackups =>Mozilla Corporation
C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\17y77f1s.default\browser-extension-data =>Mozilla Corporation
C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\17y77f1s.default\crashes =>Mozilla Corporation
C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\17y77f1s.default\datareporting =>Mozilla Corporation
C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\17y77f1s.default\extensions =>Mozilla Corporation
C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\17y77f1s.default\features =>Mozilla Corporation
C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\17y77f1s.default\gmp =>Mozilla Corporation
C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\17y77f1s.default\gmp-eme-adobe =>Mozilla Corporation
C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\17y77f1s.default\gmp-gmpopenh264 =>Mozilla Corporation
C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\17y77f1s.default\gmp-widevinecdm =>Mozilla Corporation
C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\17y77f1s.default\healthreport =>Mozilla Corporation
C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\17y77f1s.default\minidumps =>Mozilla Corporation
C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\17y77f1s.default\saved-telemetry-pings =>Mozilla Corporation
C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\17y77f1s.default\sessionstore-backups =>Mozilla Corporation
C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\17y77f1s.default\storage =>Mozilla Corporation
C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\17y77f1s.default\weave =>Mozilla Corporation
C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\17y77f1s.default\webapps =>Mozilla Corporation
C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\17y77f1s.default\browser-extension-data\doh-rollout@mozilla.org =>Legitimate
C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\17y77f1s.default\browser-extension-data\etp-search-volume-study@shield.mozilla.org =>Hotspot
C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\17y77f1s.default\browser-extension-data\fxmonitor@mozilla.org =>Firefox Monitor
C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\17y77f1s.default\browser-extension-data\hotfix-update-xpi-intermediate@mozilla.com =>Mozilla Corporation
C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\17y77f1s.default\browser-extension-data\screenshots@mozilla.org =>Mozilla Corporation
C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\17y77f1s.default\browser-extension-data\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} =>Google Inc.

---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (17) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://dell13.msn.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://dell13.msn.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.9600.19541 (winblue_ltsb_escrow.191023-1700)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation
R4 - HKLM\Software\WOW6432Node\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 =>Default.Value

---\\ INTERNET EXPLORER, Site de confiance et site sensible (2) - 0s
~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad)
~ Microsoft Internet Explorer Restricted Site(s) EscDomains: 0(Good) / 0(Bad)

---\\ INTERNET EXPLORER,Proxy Management (5) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft

---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\WINDOWS\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ ÉTUDE DU FICHIER HOSTS (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (3) - 0s
O2 - BHO: ExplorerBHO Class [64Bits] - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} . (.IvoSoft - Adds classic Windows Explorer features.) -- C:\Program Files\Classic Shell\ClassicExplorer64.dll =>.IvoSoft
O2 - BHO: Microsoft SkyDrive Pro Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®
O2 - BHO: ClassicIEBHO Class [64Bits] - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} . (.IvoSoft - Customizations for the title bar and status.) -- C:\Program Files\Classic Shell\ClassicIEDLL_64.dll =>.IvoSoft

---\\ RACCOURCIS GLOBAL STARTUP (53) - 11s
O4 - GS\CommonDesktop [Public]: Avast Antivirus Gratuit.lnk . (.AVAST Software - .) C:\Program Files (x86)\AVAST Software\Avast\AvastUI.exe =>.AVAST Software
O4 - GS\CommonDesktop [Public]: Avast Secure Browser.lnk . (.AVAST Software - Avast Secure Browser.) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe --check-run=src=desktop =>.AVAST Software s.r.o.®
O4 - GS\CommonDesktop [Public]: Charlemagne Administratif.lnk . (.STATIM - Charlemagne Administratif.) C:\Program Files (x86)\alcuin\Administratif.exe {1BC0EAE26535EA1E9D26739E}.
O4 - GS\CommonDesktop [Public]: Charlemagne Comptabilité.lnk . (.STATIM - Charlemagne Comptabilité.) C:\Program Files (x86)\alcuin\Comptabilite.exe {1BC0EAE26535EA1E9D26739E}.
O4 - GS\CommonDesktop [Public]: Charlemagne Compétences.lnk . (.STATIM - Charlemagne Competences.) C:\Program Files (x86)\alcuin\Competences.exe {1BC0EAE26535EA1E9D26739E}.
O4 - GS\CommonDesktop [Public]: Charlemagne Notes.lnk . (.STATIM - Charlemagne Notes.) C:\Program Files (x86)\alcuin\Notes.exe {1BC0EAE26535EA1E9D26739E}.
O4 - GS\CommonDesktop [Public]: Charlemagne Vie Scolaire.lnk . (.STATIM - Charlemagne Vie Scolaire.) C:\Program Files (x86)\alcuin\VieScolaire.exe {1BC0EAE26535EA1E9D26739E}.
O4 - GS\CommonDesktop [Public]: Contes et langage à l’école maternelle - Niveau 1.lnk . (...) C:\Program Files (x86)\jocatop\app\5004.nxt
O4 - GS\CommonDesktop [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\CommonDesktop [Public]: Google Docs.lnk . (...) C:\Program Files (x86)\Google\Drive\googledrivesync.exe --new_document
O4 - GS\CommonDesktop [Public]: Google Sheets.lnk . (...) C:\Program Files (x86)\Google\Drive\googledrivesync.exe --new_spreadsheet
O4 - GS\CommonDesktop [Public]: Google Slides.lnk . (...) C:\Program Files (x86)\Google\Drive\googledrivesync.exe --new_presentation
O4 - GS\CommonDesktop [Public]: LibreOffice 4.2.lnk . (.The Document Foundation - LibreOffice.) C:\Program Files (x86)\LibreOffice 4\program\soffice.exe =>.The Document Foundation
O4 - GS\CommonDesktop [Public]: Malwarebytes.lnk . (.Malwarebytes - Malwarebytes.) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.Malwarebytes Corporation®
O4 - GS\CommonDesktop [Public]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation®
O4 - GS\CommonDesktop [Public]: PDF-Viewer.lnk . (.Tracker Software Products (Canada) Ltd. - PDF-XChange Viewer.) C:\Program Files\Tracker Software\PDF Viewer\PDFXCview.exe =>.Tracker Software Products (Canada) Ltd®
O4 - GS\CommonDesktop [Public]: Recuva.lnk . (.Piriform Ltd - Recuva.) C:\Program Files\Recuva\Recuva64.exe =>.Piriform Ltd®
O4 - GS\CommonDesktop [Public]: TeamViewer 11.lnk . (.TeamViewer GmbH - TeamViewer 11.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer GmbH®
O4 - GS\Programs [Public]: Documents.lnk . (...) U:\Documents
O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [Public]: LogMeIn Client.lnk . (...) C:\Users\test\AppData\Local\LogMeIn Client\LMIIgnition.exe
O4 - GS\Programs [Public]: Pictures.lnk . (...) U:\Pictures =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Startup [Public]: AnyDesk.lnk . (...) C:\Program Files (x86)\AnyDesk\AnyDesk.exe --control =>.philandro Software GmbH®
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\WINDOWS\system32\calc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\WINDOWS\system32\SoundRecorder.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\WINDOWS\system32\StikyNot.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\WINDOWS\system32\xpsrchvw.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Avast Secure Browser.lnk . (.AVAST Software - Avast Secure Browser.) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe --check-run=src=tile =>.AVAST Software s.r.o.®
O4 - GS\ProgramsCommon [Public]: Brackets.lnk . (.brackets.io - Raccourci vers Brackets.) C:\Program Files (x86)\Brackets\Brackets.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Camera.lnk . (.Microsoft Corporation - Camera.) C:\WINDOWS\Camera\Camera.exe =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: FileManager.lnk . (.Microsoft Corporation - OneDrive.) C:\WINDOWS\FileManager\FileManager.exe =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Movie Maker.lnk . (.Microsoft Corporation - Movie Maker.) C:\Program Files (x86)\Windows Live\Photo Gallery\MovieMaker.exe =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation®
O4 - GS\ProgramsCommon [Public]: Photo Gallery.lnk . (.Microsoft Corporation - Photo Gallery.) C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: PhotosApp.lnk . (.Microsoft Corporation - Photos.) C:\WINDOWS\FileManager\PhotosApp.exe =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: Search.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\WINDOWS\system32\rundll32.exe -sta {C90FB8CA-3295-4462-A721-2935E83694BA} =>..Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: TeamViewer 11.lnk . (.TeamViewer GmbH - TeamViewer 11.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer GmbH®
O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Store.lnk . (...) C:\WINDOWS\WinStore\WinStore.htm =>.Microsoft Corporation

---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (2) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = DOMND.LOC
O17 - HKLM\System\CCS\Services\Tcpip\..\{24E8A85B-3354-4FA4-A195-AEB48835A276}: NameServer = 192.168.0.31,192.168.0.32 =>.Local IP Adress

---\\ PROTOCOLE ADDITIONNEL (21) - 1s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL =>.Microsoft®

---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s
O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation

---\\ COMPOSANTS ACTIVESETUP INSTALLÉS (ASIC) (8) - 1s
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (...) -- U:\Program Files\Windows Mail\WinMail.exe (.not file.) =>.SUP.Various
O40 - ASIC: Enable TLS1.1 and 1.2 [64Bits] - {66C64F22-FC60-4E6C-A6B5-F0D580E680CE} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\WINDOWS\System32\ie4uinit.exe =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe =>.Microsoft Corporation
O40 - ASIC: Disable SSL3 [64Bits] - {7D715857-A67C-4C2F-A929-038448584D63} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\WINDOWS\System32\ie4uinit.exe =>.Microsoft Corporation
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft®
O40 - ASIC: Google Chrome [64Bits] - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google LLC - Google Chrome Installer.) -- C:\Program Files (x86)\Google\Chrome\Application\78.0.3904.108\Installer\chrmstp.exe =>.Google LLC®

---\\ LOGICIELS INSTALLÉS (243) - 30s
O42 - Logiciel: Adobe Flash Player 32 NPAPI - (.Adobe.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Inc.®
O42 - Logiciel: AnyDesk - (.philandro Software GmbH.) [HKLM][64Bits] -- AnyDesk =>.philandro Software GmbH®
O42 - Logiciel: AOMEI Backupper Standard - (.AOMEI Technology Co., Ltd..) [HKLM][64Bits] -- {A83692F5-3E9B-4E95-9E7E-B5DF5536CE9D}_is1 =>.AOMEI Technology Co., Ltd.
O42 - Logiciel: Avast Antivirus Gratuit - (.AVAST Software.) [HKLM][64Bits] -- Avast Antivirus =>.AVAST Software s.r.o.®
O42 - Logiciel: Avast Secure Browser - (.Auteurs de Avast Secure Browser.) [HKLM][64Bits] -- Avast Secure Browser =>.AVAST Software s.r.o.®
O42 - Logiciel: Backup and Sync from Google - (.Google, Inc..) [HKLM][64Bits] -- {93EBD8BA-7A14-4636-8F1F-E929ADF2C3A9} =>.Google, Inc.
O42 - Logiciel: Brackets - (.brackets.io.) [HKLM][64Bits] -- {A6147328-3DC0-414E-95DC-100F1D85E084} =>.brackets.io
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd®
O42 - Logiciel: Classic Shell - (.IvoSoft.) [HKLM][64Bits] -- {840C85B7-D3D6-4143-9AF9-DAE80FD54CFC} =>.IvoSoft
O42 - Logiciel: Conexant SmartAudio HD - (.Conexant.) [HKLM][64Bits] -- CNXT_AUDIO_HDA =>.Conexant Systems, Inc.®
O42 - Logiciel: CyberLink Media Suite 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1fD-4101-A42B-0C564F9E8E79} =>.CyberLink Corp.® (Hidden)
O42 - Logiciel: CyberLink Media Suite Essentials - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{8F14AA37-5193-4A14-BD5B-BDF9B361AEF7} =>.CyberLink®
O42 - Logiciel: CyberLink PowerDirector 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {B0B4F6D2-F2AE-451A-9496-6F2F6A897B32} =>.CyberLink Corp.® (Hidden)
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} =>.Microsoft (Hidden)
O42 - Logiciel: Definition Update for Microsoft Office 2013 (KB3115404) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{96903939-431D-4BD1-ADCD-B578900397D7} =>.Microsoft®
O42 - Logiciel: Dell Backup and Recovery - (.Dell Inc..) [HKLM][64Bits] -- {0ED7EE95-6A97-47AA-AD73-152C08A15B04} =>.Dell Inc.
O42 - Logiciel: Dell Backup and Recovery - Support Software - (.Dell Inc..) [HKLM][64Bits] -- {A9668246-FB70-4103-A1E3-66C9BC2EFB49} =>.Dell Inc.
O42 - Logiciel: Dell Wireless Driver Installation - (.Dell.) [HKLM][64Bits] -- {451517F1-7E41-400B-AA36-FB7E2563526D} =>.Dell
O42 - Logiciel: DSC/AA Factory Installer - (.PC-Doctor, Inc..) [HKLM][64Bits] -- {F7A70D00-F283-45C8-B163-49EC365D7E27} =>.PC-Doctor, Inc. (Hidden)
O42 - Logiciel: EaseUS Todo Backup Free 11.5 - (.CHENGDU YIWO Tech Development Co., Ltd.) [HKLM][64Bits] -- EaseUS Todo Backup_is1 =>.CHENGDU YIWO Tech Development Co., Ltd.®
O42 - Logiciel: FileZilla Client 3.13.1 - (.Tim Kosse.) [HKLM][64Bits] -- FileZilla Client =>.Tim Kosse
O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM][64Bits] -- {446CC8CE-0E90-44F7-ADD0-774B243EF090} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Google Chrome - (.Google LLC.) [HKLM][64Bits] -- Google Chrome =>.Google LLC®
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>.Google Inc. (Hidden)
O42 - Logiciel: Google Update Helper - (.Google LLC.) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google LLC (Hidden)
O42 - Logiciel: Intel(R) Control Center - (.Intel Corporation.) [HKLM][64Bits] -- {F8A9085D-4C7A-41a9-8A77-C8998A96C421} =>.Intel Corporation®
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} =>.Intel Corporation®
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation - pGFX®
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC} =>.Intel Corporation®
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {977D1ABF-4089-4CA7-BA33-CC75808B7ACE} =>.Intel Corporation (Hidden)
O42 - Logiciel: Java 7 Update 60 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F03217060FF} =>.Oracle
O42 - Logiciel: LibreOffice 4.2.5.2 - (.The Document Foundation.) [HKLM][64Bits] -- {8D8F47B2-0E03-4C50-9803-A01120878F96} =>.The Document Foundation
O42 - Logiciel: Malwarebytes version 3.5.1.2522 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Corporation®
O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Excel MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0016-040C-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Groove MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00BA-040C-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office 64-bit Components 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-002A-0000-1000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office File Validation Add-In - (.Microsoft Corporation.) [HKLM][64Bits] -- {90140000-2005-0000-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Office Korrekturhilfen 2013 - Deutsch - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001F-0407-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office OSM MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00E1-040C-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office OSM UX MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00E2-040C-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Professional Edition 2003 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9011040C-6000-11D3-8CFE-0150048383C9} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Office Proofing (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-002C-040C-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proofing Tools 2013 - English - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001F-0409-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proofing Tools 2013 - Español - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001F-0C0A-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proofing Tools 2013 - Nederlands - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001F-0413-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proofing Tools 2013 - اللغة العربية - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001F-0401-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Shared 64-bit MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-002A-040C-1000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Shared MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-006E-040C-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Standard 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Standard 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- Office15.STANDARD =>.Microsoft®
O42 - Logiciel: Microsoft OneNote MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00A1-040C-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Outlook MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001A-040C-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft PowerPoint MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0018-040C-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Publisher MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0019-040C-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft SQL Server 2005 Compact Edition [ENU] - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {837b34e3-7c30-493c-8f6a-2b0f04e2912c} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D8E6291-B0D5-35EC-8441-6616F567A0F7} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {ca67548a-5ebe-413a-b50c-4b9ceb6d66c6} =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {33d1fd90-4274-48a1-9bc1-97e33d9c2d6f} =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {37B8F9C7-03FB-3253-8781-2517C99D7C00} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {B175520C-86A2-35A7-8619-86DC379688B9} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BD95A8CD-1D9F-35AD-981A-3E7925026EBB} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {9495AEB4-AB97-39DE-8C42-806EEF75ECA7} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Visual Studio 2010 Tools for Office Runtime (x64) =>.Microsoft®
O42 - Logiciel: Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - - (.Microsoft Corporation.) [HKLM][64Bits] -- {8D0A0EC6-9A3C-354F-9BFC-A61E96BE1846} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Word MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001B-040C-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Module de compatibilité pour Microsoft Office System 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-0020-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Module linguistique Microsoft Visual Studio 2010 Tools pour Office Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - FRA =>.Microsoft®
O42 - Logiciel: Movie Maker - (.Microsoft Corporation.) [HKLM][64Bits] -- {A17946CA-18E5-4CF0-8D55-A56D804718F8} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Movie Maker - (.Microsoft Corporation.) [HKLM][64Bits] -- {ED6C77F9-4D7E-447C-9EC0-9A212D075535} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Mozilla Firefox 70.0.1 (x64 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 70.0.1 (x64 fr) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: Mozilla Thunderbird 31.2.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Thunderbird 31.2.0 (x86 fr) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Thunderbird 38.5.0 (x86 fr) - (.Mozilla.) [HKCU][64Bits] -- Mozilla Thunderbird 38.5.0 (x86 fr) =>.Mozilla Corporation®
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} =>.Microsoft (Hidden)
O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA} =>.Microsoft (Hidden)
O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77} =>.Microsoft (Hidden)
O42 - Logiciel: Notepad++ - (.Notepad++ Team.) [HKLM][64Bits] -- Notepad++ =>.Notepad++ Team
O42 - Logiciel: Outils de vérification linguistique 2013 de Microsoft Office - Français - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001F-040C-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: PDFCreator - (.pdfforge.) [HKLM][64Bits] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D} =>.pdfforge
O42 - Logiciel: PDF-Viewer - (.Tracker Software Products Ltd.) [HKLM][64Bits] -- {A278382D-4F1B-4D47-9885-8523F7261E8D}_is1 =>.Tracker Software Products (Canada) Ltd®
O42 - Logiciel: Photo Common - (.Microsoft Corporation.) [HKLM][64Bits] -- {F54030F3-14B6-432D-9361-78DCB1473920} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Photo Gallery - (.Microsoft Corporation.) [HKLM][64Bits] -- {30F99474-EBE3-4134-A02B-F6CD38CFE243} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {96AE7E41-E34E-47D0-AC07-1091A8127911} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Recuva - (.Piriform.) [HKLM][64Bits] -- Recuva =>.Piriform Ltd®
O42 - Logiciel: Security Update for Microsoft Excel 2013 (KB4484158) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{D2103E62-CA88-4DB3-8505-53BC9ABA5189} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Excel 2013 (KB4484158) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0016-040C-0000-0000000FF1CE}_Office15.STANDARD_{D2103E62-CA88-4DB3-8505-53BC9ABA5189} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Excel 2013 (KB4484158) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0018-040C-0000-0000000FF1CE}_Office15.STANDARD_{D2103E62-CA88-4DB3-8505-53BC9ABA5189} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Excel 2013 (KB4484158) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001B-040C-0000-0000000FF1CE}_Office15.STANDARD_{D2103E62-CA88-4DB3-8505-53BC9ABA5189} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Excel 2013 (KB4484158) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-006E-040C-0000-0000000FF1CE}_Office15.STANDARD_{D2103E62-CA88-4DB3-8505-53BC9ABA5189} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB3039746) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{FB111BDB-315E-4D9B-A337-AAA7E4B20571} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB3039794) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{5C7851D1-B548-4BFE-A4FC-DF1967857A47} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB3039798) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{2113B49B-7A19-4592-863E-CD4124792AAE} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB3039798) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-002A-0000-1000-0000000FF1CE}_Office15.STANDARD_{2113B49B-7A19-4592-863E-CD4124792AAE} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB3162051) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0016-040C-0000-0000000FF1CE}_Office15.STANDARD_{B42BFC34-EAA9-482C-B4D5-A8EEC0AF0C0C} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB3172522) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{C220C72E-39CD-4DC0-A3C1-6C11E988C322} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB3172522) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-002A-0000-1000-0000000FF1CE}_Office15.STANDARD_{C220C72E-39CD-4DC0-A3C1-6C11E988C322} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB3213564) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-006E-040C-0000-0000000FF1CE}_Office15.STANDARD_{66B828E2-7C7D-46AF-93AB-5C2DAA285260} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB4011580) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-006E-040C-0000-0000000FF1CE}_Office15.STANDARD_{EBB64A55-FA3E-42EE-A4C3-1E427F867C55} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB4022188) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{18D2E3B4-34A4-49A7-9E08-6A35049A7F89} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB4022188) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-006E-040C-0000-0000000FF1CE}_Office15.STANDARD_{18D2E3B4-34A4-49A7-9E08-6A35049A7F89} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB4022189) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{1CFB07F8-17F2-4C42-8D83-4E65947141F0} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB4475607) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{F7A566A4-4A21-4568-BDA7-5C9282624111} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB4475607) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-006E-040C-0000-0000000FF1CE}_Office15.STANDARD_{F7A566A4-4A21-4568-BDA7-5C9282624111} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB4484119) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{3B7EE494-CBED-477C-AF90-8B8653C86985} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB4484119) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-006E-040C-0000-0000000FF1CE}_Office15.STANDARD_{3B7EE494-CBED-477C-AF90-8B8653C86985} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB4484152) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{EBF9E031-538E-4A05-8203-E7D8AC8863D7} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft PowerPoint 2013 (KB4461481) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{FFA4C0A1-7F53-4B92-9863-CD7F240E84CC} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft PowerPoint 2013 (KB4461481) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0018-040C-0000-0000000FF1CE}_Office15.STANDARD_{FFA4C0A1-7F53-4B92-9863-CD7F240E84CC} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Project 2013 (KB4464548) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-002A-0000-1000-0000000FF1CE}_Office15.STANDARD_{1153C2AF-F31F-4EDF-8A85-4689367F0909} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Word 2013 (KB4475547) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{54D62C03-4BD3-43DC-A498-2C70C3A7B65E} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Word 2013 (KB4475547) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001A-040C-0000-0000000FF1CE}_Office15.STANDARD_{54D62C03-4BD3-43DC-A498-2C70C3A7B65E} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Word 2013 (KB4475547) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001B-040C-0000-0000000FF1CE}_Office15.STANDARD_{54D62C03-4BD3-43DC-A498-2C70C3A7B65E} =>.Microsoft®
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{7F6C4883-A18C-459A-82C1-A2F9403F2DA6} =>.Microsoft®
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0016-040C-0000-0000000FF1CE}_Office15.STANDARD_{05EEB900-97DD-4974-86FB-46B56E5B122B} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0018-040C-0000-0000000FF1CE}_Office15.STANDARD_{05EEB900-97DD-4974-86FB-46B56E5B122B} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0019-040C-0000-0000000FF1CE}_Office15.STANDARD_{05EEB900-97DD-4974-86FB-46B56E5B122B} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001A-040C-0000-0000000FF1CE}_Office15.STANDARD_{05EEB900-97DD-4974-86FB-46B56E5B122B} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001B-040C-0000-0000000FF1CE}_Office15.STANDARD_{05EEB900-97DD-4974-86FB-46B56E5B122B} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0401-0000-0000000FF1CE}_Office15.STANDARD_{351E3E84-CD58-401D-AEFD-147BDBBAA1C7} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0407-0000-0000000FF1CE}_Office15.STANDARD_{55A588B8-2D30-4B60-AB09-5DB57C592B81} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0409-0000-0000000FF1CE}_Office15.STANDARD_{1F79A96A-2A70-45B3-8A5C-79DA61952879} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-040C-0000-0000000FF1CE}_Office15.STANDARD_{9BB6CB7C-80E3-4F73-8A82-E3D88A3721BE} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0413-0000-0000000FF1CE}_Office15.STANDARD_{33ADBDF0-040B-4375-8303-0634AB069C5E} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0C0A-0000-0000000FF1CE}_Office15.STANDARD_{64B94D95-B6EC-4E25-832F-D15B13ACFB0C} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-002A-0000-1000-0000000FF1CE}_Office15.STANDARD_{7A8FE9A6-2BBC-48F7-A2CF-2578F60EC895} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-002A-040C-1000-0000000FF1CE}_Office15.STANDARD_{09C114DF-869D-44D3-A4A5-FD6539CC6447} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-002C-040C-0000-0000000FF1CE}_Office15.STANDARD_{D90F0B03-8B58-4E72-993E-4ECA65C04BA2} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-006E-040C-0000-0000000FF1CE}_Office15.STANDARD_{95678FB2-1310-429F-91FC-6FE9B5701E1E} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00A1-040C-0000-0000000FF1CE}_Office15.STANDARD_{05EEB900-97DD-4974-86FB-46B56E5B122B} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00BA-040C-0000-0000000FF1CE}_Office15.STANDARD_{05EEB900-97DD-4974-86FB-46B56E5B122B} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00E1-040C-0000-0000000FF1CE}_Office15.STANDARD_{05EEB900-97DD-4974-86FB-46B56E5B122B} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00E2-040C-0000-0000000FF1CE}_Office15.STANDARD_{05EEB900-97DD-4974-86FB-46B56E5B122B} =>.Microsoft® (Hidden)
O42 - Logiciel: Shared C Run-time for x64 - (.McAfee.) [HKLM][64Bits] -- {EF79C448-6946-4D71-8134-03407888C054} =>.McAfee
O42 - Logiciel: SHARP Driver Uninstall Tool - (.SHARP CORPORATION.) [HKLM][64Bits] -- SHARP Driver Uninstall Tool {0F4ECB4847B5D4A99F116BBABE5C5264}. =>.SHARP Corporation
O42 - Logiciel: SHARP MX/MX-C,M/DX Series PC-Fax Driver - (.SHARP.) [HKLM][64Bits] -- SHARP MX-2610 3110 3610 Series PC-Fax Driver =>.Macrovision Corporation®
O42 - Logiciel: SHARP MX/MX-M/DX Series PCL/PS Printer Driver - (.SHARP.) [HKLM][64Bits] -- SHARP MX-2310U PCL PS Printer Driver =>.Macrovision Corporation®
O42 - Logiciel: Sharpdesk - (.SHARP CORPORATION.) [HKLM][64Bits] -- {2A30AFBD-6DA5-499F-A83B-7CB2DFF21C23} =>.SHARP Corporation
O42 - Logiciel: Spiceworks Desktop - (.Spiceworks, Inc..) [HKLM][64Bits] -- Spiceworks
O42 - Logiciel: TeamViewer 11 - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer =>.TeamViewer GmbH®
O42 - Logiciel: Update for Microsoft InfoPath 2013 (KB3114946) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-002A-0000-1000-0000000FF1CE}_Office15.STANDARD_{6120444C-EB75-452F-A0EA-1ADADC4B4B3F} =>.Microsoft®
O42 - Logiciel: Update for Microsoft InfoPath 2013 (KB3114946) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-006E-040C-0000-0000000FF1CE}_Office15.STANDARD_{6120444C-EB75-452F-A0EA-1ADADC4B4B3F} =>.Microsoft®
O42 - Logiciel: Update for Microsoft InfoPath 2013 (KB4022181) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{19001452-D3D5-43C6-A605-2E14D508031E} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2760344) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{A7610F07-E844-4444-8E1D-D5BC8AD0B4C5} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2760371) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{FFF87DE6-6602-4F65-BD75-D481E0539DCD} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2883095) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{7A9AB1AE-98B5-4B45-86B8-33A7B946D7CA} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2889863) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{52064DE8-AF91-4EAC-8B57-CECA10E8C1C0} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2899522) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{87F6726E-6F99-42F0-8E11-55D798E57DD5} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3023049) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{E4B6204A-AC54-477D-9AEF-3D420EF162A2} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3023052) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{FC017EDD-645B-44D8-9D84-623DE069F1B9} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3023052) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-006E-040C-0000-0000000FF1CE}_Office15.STANDARD_{FC017EDD-645B-44D8-9D84-623DE069F1B9} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039701) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{83DE9B8F-E294-411F-977F-4707E6424BBB} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0016-040C-0000-0000000FF1CE}_Office15.STANDARD_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0018-040C-0000-0000000FF1CE}_Office15.STANDARD_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0019-040C-0000-0000000FF1CE}_Office15.STANDARD_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001A-040C-0000-0000000FF1CE}_Office15.STANDARD_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001B-040C-0000-0000000FF1CE}_Office15.STANDARD_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0401-0000-0000000FF1CE}_Office15.STANDARD_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0407-0000-0000000FF1CE}_Office15.STANDARD_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0409-0000-0000000FF1CE}_Office15.STANDARD_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-040C-0000-0000000FF1CE}_Office15.STANDARD_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0413-0000-0000000FF1CE}_Office15.STANDARD_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0C0A-0000-0000000FF1CE}_Office15.STANDARD_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-002A-0000-1000-0000000FF1CE}_Office15.STANDARD_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-002A-040C-1000-0000000FF1CE}_Office15.STANDARD_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-002C-040C-0000-0000000FF1CE}_Office15.STANDARD_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-006E-040C-0000-0000000FF1CE}_Office15.STANDARD_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00A1-040C-0000-0000000FF1CE}_Office15.STANDARD_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00BA-040C-0000-0000000FF1CE}_Office15.STANDARD_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00E1-040C-0000-0000000FF1CE}_Office15.STANDARD_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00E2-040C-0000-0000000FF1CE}_Office15.STANDARD_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039756) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{BF493817-CADD-4F13-BB51-598FBABB521A} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039756) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-002A-0000-1000-0000000FF1CE}_Office15.STANDARD_{BF493817-CADD-4F13-BB51-598FBABB521A} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039766) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{4B7382DD-C92C-4942-BFE6-9B892B915E5C} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039778) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{8D1685F4-1C36-4AB5-ACC0-486A6BE71435} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039795) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{36AF42FA-AF90-4A4F-BC2D-2D4863818E65} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3054819) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0016-040C-0000-0000000FF1CE}_Office15.STANDARD_{C289B757-6E96-4525-8390-77CFDCF803F8} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3054856) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{FF0A4C57-A2D2-4ACA-9DF5-23DB94A718A1} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3085565) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{B2B5F640-E7C8-4DAC-AF41-35FAE36FE2F6} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3085587) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{AA8C16EA-D595-47E0-9F49-101C11B860E8} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3101503) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{07BE4996-5557-4A17-9B98-AD57883607EA} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3114488) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{5C568FE6-A269-4A88-8256-DC1A8B89E622} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3114499) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{BB92A877-3443-4FAF-B4BB-470B9792AFBE} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3127916) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{C90D79C2-2B75-493B-9850-E8677FD7B1E1} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3172443) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{B0C449E5-4975-49B4-8FB4-66DBBB843905} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3172471) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{B61C3564-4E7B-49FE-9220-9836DBC49BB7} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3172473) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{75E6FEE4-6D68-4530-83CE-0EBA30169E3D} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3172523) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{FDF6648B-BF62-4CC7-94D3-0944ACD4A07D} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3172533) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{8EA03F4D-754D-42D0-980B-5D803363EC99} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3172545) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{0D50B52F-AB5A-44B7-A67C-2DE4F61443D0} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3172545) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-002A-0000-1000-0000000FF1CE}_Office15.STANDARD_{0D50B52F-AB5A-44B7-A67C-2DE4F61443D0} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3178640) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{0359ABD1-5FD5-489D-851D-303BF7C5BBBE} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3178640) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-002A-0000-1000-0000000FF1CE}_Office15.STANDARD_{0359ABD1-5FD5-489D-851D-303BF7C5BBBE} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3191872) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{68AD8B09-DD14-4875-A4DB-E04F6FF7ECCB} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3191872) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0016-040C-0000-0000000FF1CE}_Office15.STANDARD_{68AD8B09-DD14-4875-A4DB-E04F6FF7ECCB} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3213536) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{85ABCD64-B0FF-4A00-BFF7-090CDFA96C1C} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4011155) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{A7A41ACD-C1EA-4628-BCD2-8CA7AA8DDB29} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4011677) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0401-0000-0000000FF1CE}_Office15.STANDARD_{19141D5E-18DA-4811-A5F0-5D0820BB2170} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4011677) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0407-0000-0000000FF1CE}_Office15.STANDARD_{07ED17A8-AA59-47D5-AAB5-059AE484B58D} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4011677) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0409-0000-0000000FF1CE}_Office15.STANDARD_{45B5E686-A7A1-457D-B98B-2EE3110B537D} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4011677) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-040C-0000-0000000FF1CE}_Office15.STANDARD_{883F27D7-997E-4440-A22D-48DF1A228D61} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4011677) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0413-0000-0000000FF1CE}_Office15.STANDARD_{C0B7757C-0579-4339-B3DB-BF894A4AFFCC} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4011677) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001F-0C0A-0000-0000000FF1CE}_Office15.STANDARD_{166B105A-EC67-4F45-8824-ABAA0E505BD8} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4018378) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{2FDF7953-75A9-4341-A769-EC0CAA09FFF3} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4022212) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{FC519FD8-5B83-4761-B02C-13DF5B2D9598} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4092455) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{E1D33B9C-5084-455B-B7DC-32420084D759} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4462200) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{1DAE7910-8713-4647-AB09-CD27DA5BA1B7} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4475562) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{C9FA9F17-F614-4338-A4CB-40B1E7D57157} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4475562) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-006E-040C-0000-0000000FF1CE}_Office15.STANDARD_{C9FA9F17-F614-4338-A4CB-40B1E7D57157} =>.Microsoft®
O42 - Logiciel: Update for Microsoft OneDrive for Business (KB4022226) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{FB83D80E-C78E-41B0-8D08-4FAD6889E867} =>.Microsoft®
O42 - Logiciel: Update for Microsoft OneDrive for Business (KB4022226) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-002A-0000-1000-0000000FF1CE}_Office15.STANDARD_{FB83D80E-C78E-41B0-8D08-4FAD6889E867} =>.Microsoft®
O42 - Logiciel: Update for Microsoft OneDrive for Business (KB4022226) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-002A-040C-1000-0000000FF1CE}_Office15.STANDARD_{FB83D80E-C78E-41B0-8D08-4FAD6889E867} =>.Microsoft®
O42 - Logiciel: Update for Microsoft OneDrive for Business (KB4022226) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00BA-040C-0000-0000000FF1CE}_Office15.STANDARD_{FB83D80E-C78E-41B0-8D08-4FAD6889E867} =>.Microsoft®
O42 - Logiciel: Update for Microsoft OneNote 2013 (KB4011281) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{AF09D88A-0206-40F1-B7A0-AE15CCFAC61A} =>.Microsoft®
O42 - Logiciel: Update for Microsoft OneNote 2013 (KB4011281) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-002A-0000-1000-0000000FF1CE}_Office15.STANDARD_{AF09D88A-0206-40F1-B7A0-AE15CCFAC61A} =>.Microsoft®
O42 - Logiciel: Update for Microsoft OneNote 2013 (KB4011281) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00A1-040C-0000-0000000FF1CE}_Office15.STANDARD_{AF09D88A-0206-40F1-B7A0-AE15CCFAC61A} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Outlook 2013 (KB4484096) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{28C20A44-2B81-4D26-A496-259B4F028DB7} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Outlook 2013 (KB4484096) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-001A-040C-0000-0000000FF1CE}_Office15.STANDARD_{28C20A44-2B81-4D26-A496-259B4F028DB7} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Outlook Social Connector 2013 (KB3054854) 32-Bit Editi - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{3A2EB2A7-9F2D-4FA0-AE80-AD1A5A02A7AA} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Outlook Social Connector 2013 (KB3054854) 32-Bit Editi - (.Microsoft.) [HKLM][64Bits] -- {90150000-001A-040C-0000-0000000FF1CE}_Office15.STANDARD_{3A2EB2A7-9F2D-4FA0-AE80-AD1A5A02A7AA} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Publisher 2013 (KB3114329) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{C4B41052-3F51-4B6A-80E3-DE0518506C13} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Publisher 2013 (KB3114329) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0019-040C-0000-0000000FF1CE}_Office15.STANDARD_{C4B41052-3F51-4B6A-80E3-DE0518506C13} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Visio Viewer 2013 (KB2817301) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{25C61889-2E44-4BE1-9E96-9364BFDCF501} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Visio Viewer 2013 (KB2817301) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-006E-040C-0000-0000000FF1CE}_Office15.STANDARD_{25C61889-2E44-4BE1-9E96-9364BFDCF501} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Word 2013 (KB3162081) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0012-0000-0000-0000000FF1CE}_Office15.STANDARD_{42064CFD-BA0C-4FA7-BC6B-1192C2F6DDFD} =>.Microsoft®
O42 - Logiciel: Update for Skype for Business 2015 (KB4475564) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-002A-0000-1000-0000000FF1CE}_Office15.STANDARD_{14E2D22A-5164-4E35-8239-E2DB5D6B9A09} =>.Microsoft®
O42 - Logiciel: Windows Live - (.Microsoft Corporation.) [HKLM][64Bits] -- {8D813AFF-D91D-4EE0-821F-B901FC2E89FA} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows Live - (.Microsoft Corporation.) [HKLM][64Bits] -- WinLiveSuite =>.Microsoft®
O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM][64Bits] -- {0454BB9A-2A7A-4214-BDFF-937F7A711A44} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows Live Installer - (.Microsoft Corporation.) [HKLM][64Bits] -- {C424CD5E-EA05-4D3E-B5DA-F9F149E1D3AC} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows Live Photo Common - (.Microsoft Corporation.) [HKLM][64Bits] -- {C9B6EFD0-4F01-4BBA-8374-39AD99A3ED72} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows Live PIMT Platform - (.Microsoft Corporation.) [HKLM][64Bits] -- {6A8DB215-7BCD-4377-B015-2E4541A3E7C6} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows Live SOXE - (.Microsoft Corporation.) [HKLM][64Bits] -- {FE7C0B3D-50B9-4951-BE78-A321CBF86552} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows Live SOXE Definitions - (.Microsoft Corporation.) [HKLM][64Bits] -- {8A642ACD-CE3A-4A23-A8B1-A0F7EB12B214} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows Live UX Platform - (.Microsoft Corporation.) [HKLM][64Bits] -- {4CCBD1F4-CEEC-452A-9CB8-46564B501315} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows Live UX Platform Language Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {90993BD9-C7D9-4C2F-B56C-2F7AFEBD4CD0} =>.Microsoft Corporation (Hidden)

---\\ CLÉ DE REGISTRE SOFTWARE HKCU & HKLM (164) - 30s
HKLM\SOFTWARE\Atheros =>.Qualcomm Atheros
HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies
HKLM\SOFTWARE\AVAST Software =>.AVAST Software
HKLM\SOFTWARE\Cnxt_Uiu_Parms =>.Conexant Systems, Inc.
HKLM\SOFTWARE\Conexant =>.Conexant Systems, Inc.
HKLM\SOFTWARE\FileZilla 3 =>.FileZilla
HKLM\SOFTWARE\Google =>.Google
HKLM\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKLM\SOFTWARE\InstalledOptions =>.Installed Options
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\IvoSoft =>.IvoSoft
HKLM\SOFTWARE\Khronos =>.Khronos
HKLM\SOFTWARE\LEXMARK =>.Lexmark
HKLM\SOFTWARE\Macromedia =>.Macromedia
HKLM\SOFTWARE\Mozilla =>.Mozilla
HKLM\SOFTWARE\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\PC-Doctor =>.PC-Doctor Inc.
HKLM\SOFTWARE\Piriform =>.Piriform
HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\SHARP =>.SHARP
HKLM\SOFTWARE\Tracker Software =>.Tracker Software
HKLM\SOFTWARE\UIU =>.Legitimate
HKLM\SOFTWARE\Volatile =>.Microsoft Corporation
HKLM\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\Adobe =>.Adobe
HKLM\SOFTWARE\WOW6432Node\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\WOW6432Node\AVAST Software =>.AVAST Software
HKLM\SOFTWARE\WOW6432Node\Brackets =>.Brackets
HKLM\SOFTWARE\WOW6432Node\CyberLink =>.CyberLink Corporation
HKLM\SOFTWARE\WOW6432Node\Cygwin =>.Cygwin
HKLM\SOFTWARE\WOW6432Node\Dell =>.Dell
HKLM\SOFTWARE\WOW6432Node\Dell Inc. =>.Dell Inc.
HKLM\SOFTWARE\WOW6432Node\DellBackupandRecovery =>.Dell Inc.
HKLM\SOFTWARE\WOW6432Node\Dell_Wlan =>.Dell Inc.
HKLM\SOFTWARE\WOW6432Node\EaseUS =>.EaseUS Software
HKLM\SOFTWARE\WOW6432Node\EaseUS Todo Backup =>.EaseUS Software
HKLM\SOFTWARE\WOW6432Node\FileZilla 3 =>.FileZilla
HKLM\SOFTWARE\WOW6432Node\FileZilla Client =>.Tim Kosse
HKLM\SOFTWARE\WOW6432Node\Google =>.Google
HKLM\SOFTWARE\WOW6432Node\Hewlett-Packard =>.Hewlett-Packard
HKLM\SOFTWARE\WOW6432Node\IM Providers =>.IM Providers
HKLM\SOFTWARE\WOW6432Node\InstallShield =>.InstallShield
HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel
HKLM\SOFTWARE\WOW6432Node\JavaSoft =>.JavaSoft
HKLM\SOFTWARE\WOW6432Node\JreMetrics =>.JreMetrics
HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos
HKLM\SOFTWARE\WOW6432Node\Kodak =>.Kodak
HKLM\SOFTWARE\WOW6432Node\Lake =>.Lake Sofware
HKLM\SOFTWARE\WOW6432Node\LibreOffice =>.LibreOffice
HKLM\SOFTWARE\WOW6432Node\Macromedia =>.Macromedia
HKLM\SOFTWARE\WOW6432Node\Malwarebytes' Anti-Malware =>.Malwarebytes' Anti-Malware
HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla
HKLM\SOFTWARE\WOW6432Node\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\WOW6432Node\nanoXT
HKLM\SOFTWARE\WOW6432Node\Notepad++ =>.Don Ho
HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\WOW6432Node\PC-Doctor =>.PC-Doctor Inc.
HKLM\SOFTWARE\WOW6432Node\PDFCreator =>.pdfforge GmbH
HKLM\SOFTWARE\WOW6432Node\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\WOW6432Node\Sharp =>.SHARP
HKLM\SOFTWARE\WOW6432Node\SharpLabs
HKLM\SOFTWARE\WOW6432Node\SoftThinks =>.SoftThinks
HKLM\SOFTWARE\WOW6432Node\Spiceworks =>.Spiceworks
HKLM\SOFTWARE\WOW6432Node\TeamViewer =>.TeamViewer GmbH
HKLM\SOFTWARE\WOW6432Node\The Document Foundation =>.The Document Foundation
HKLM\SOFTWARE\WOW6432Node\TVInstallTemp =>.TeamViewer GmbH
HKLM\SOFTWARE\WOW6432Node\Volatile =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\VolDellBackupAndRecovery
HKCU\SOFTWARE\Adobe =>.Adobe
HKCU\SOFTWARE\AOMEI =>.AOMEI Tech Co
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\AVAST Software =>.AVAST Software
HKCU\SOFTWARE\Brackets =>.Brackets
HKCU\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o
HKCU\SOFTWARE\Chromium =>.Chromium
HKCU\SOFTWARE\Conexant =>.Conexant Systems, Inc.
HKCU\SOFTWARE\CyberLink =>.CyberLink Corporation
HKCU\SOFTWARE\EaseUS =>.EaseUS Software
HKCU\SOFTWARE\Foxit Software =>.Foxit Software
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\Intel =>.Intel
HKCU\SOFTWARE\IvoSoft =>.IvoSoft
HKCU\SOFTWARE\JavaSoft =>.JavaSoft
HKCU\SOFTWARE\Kodak =>.Kodak
HKCU\SOFTWARE\LogMeIn =>.LogMeIn Entreprise
HKCU\SOFTWARE\LogMeIn Ignition =>.LogMeIn Entreprise
HKCU\SOFTWARE\Macromedia =>.Macromedia
HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes
HKCU\SOFTWARE\Mine =>.Microsoft Corporation
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKCU\SOFTWARE\PC SOFT =>.PC SOFT
HKCU\SOFTWARE\Piriform =>.Piriform
HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\SCC
HKCU\SOFTWARE\SHARP =>.SHARP
HKCU\SOFTWARE\SharpLabs
HKCU\SOFTWARE\STATIM
HKCU\SOFTWARE\TeamViewer =>.TeamViewer GmbH
HKCU\SOFTWARE\Thunderbird =>.Thunderbird
HKCU\SOFTWARE\Tracker Software =>.Tracker Software
HKCU\SOFTWARE\Trolltech =>.Trolltech
HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft =>.JavaSoft
HKU\.DEFAULT\SOFTWARE\Acpana
HKU\.DEFAULT\SOFTWARE\Avast Software =>.AVAST Software
HKU\.DEFAULT\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o
HKU\.DEFAULT\SOFTWARE\Conexant =>.Conexant Systems, Inc.
HKU\.DEFAULT\SOFTWARE\CyberLink =>.CyberLink Corporation
HKU\.DEFAULT\SOFTWARE\Google =>.Google
HKU\.DEFAULT\SOFTWARE\Macromedia =>.Macromedia
HKU\.DEFAULT\SOFTWARE\McAfee =>.McAfee Inc.
HKU\.DEFAULT\SOFTWARE\Mozilla =>.Mozilla
HKU\.DEFAULT\SOFTWARE\PDFCreator =>.pdfforge GmbH
HKU\.DEFAULT\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKU\.DEFAULT\SOFTWARE\SHARP =>.SHARP
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\Adobe =>.Adobe
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\AOMEI =>.AOMEI Tech Co
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\AVAST Software =>.AVAST Software
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\Brackets =>.Brackets
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\Chromium =>.Chromium
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\Conexant =>.Conexant Systems, Inc.
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\CyberLink =>.CyberLink Corporation
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\EaseUS =>.EaseUS Software
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\Foxit Software =>.Foxit Software
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\Google =>.Google
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\Intel =>.Intel
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\IvoSoft =>.IvoSoft
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\JavaSoft =>.JavaSoft
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\Kodak =>.Kodak
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\LogMeIn =>.LogMeIn Entreprise
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\LogMeIn Ignition =>.LogMeIn Entreprise
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\Macromedia =>.Macromedia
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\Malwarebytes =>.Malwarebytes
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\Mine =>.Microsoft Corporation
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\Mozilla =>.Mozilla
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\Netscape =>.Netscape
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\PC SOFT =>.PC SOFT
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\Piriform =>.Piriform
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\SCC
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\SHARP =>.SHARP
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\SharpLabs
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\STATIM
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\TeamViewer =>.TeamViewer GmbH
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\Thunderbird =>.Thunderbird
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\Tracker Software =>.Tracker Software
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\Trolltech =>.Trolltech
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKU\S-1-5-21-4097367374-2803059708-3808106613-1152\SOFTWARE\ZHP =>.Nicolas Coolman

---\\ CONTENU DES DOSSIERS PROGRAMMES (217) - 9s
O43 - CFD: 20/05/2019 - [] D -- C:\Program Files (x86)\alcuin {1BC0EAE26535EA1E9D26739E}.
O43 - CFD: 08/04/2016 - [] D -- C:\Program Files (x86)\AnyDesk =>.philandro Software GmbH
O43 - CFD: 02/12/2019 - [] D -- C:\Program Files (x86)\AOMEI Backupper =>.AOMEI Tech Co
O43 - CFD: 05/04/2018 - [] D -- C:\Program Files (x86)\AVAST Software =>.AVAST Software s.r.o.®
O43 - CFD: 31/08/2015 - [] D -- C:\Program Files (x86)\Brackets =>.Adobe Systems Incorporated®
O43 - CFD: 03/12/2015 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation
O43 - CFD: 02/12/2019 - [] D -- C:\Program Files (x86)\CyberLink =>.CyberLink Corporation
O43 - CFD: 02/12/2019 - [] D -- C:\Program Files (x86)\Dell Backup and Recovery =>.Dell Inc.
O43 - CFD: 11/10/2013 - [] D -- C:\Program Files (x86)\Dell Wireless =>.Dell Inc.
O43 - CFD: 20/05/2019 - [] D -- C:\Program Files (x86)\EaseUS =>.EaseUS Software
O43 - CFD: 31/08/2015 - [] D -- C:\Program Files (x86)\FileZilla FTP Client =>.Tim Kosse
O43 - CFD: 05/11/2019 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 17/01/2014 - [0] D -- C:\Program Files (x86)\HP =>.Hewlett-Packard
O43 - CFD: 24/10/2013 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield
O43 - CFD: 11/10/2013 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation
O43 - CFD: 14/11/2019 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 10/07/2014 - [] D -- C:\Program Files (x86)\Java =>.Oracle
O43 - CFD: 05/09/2018 - [] D -- C:\Program Files (x86)\jocatop =>.JOCATOP
O43 - CFD: 10/07/2014 - [] D -- C:\Program Files (x86)\LibreOffice 4 =>.The Document Foundation
O43 - CFD: 16/07/2014 - [] D -- C:\Program Files (x86)\Malwarebytes' Anti-Malware =>.Malwarebytes' Anti-Malware
O43 - CFD: 06/06/2014 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services =>.Microsoft Corporation
O43 - CFD: 20/08/2014 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 11/10/2013 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition =>.Microsoft Corporation
O43 - CFD: 21/10/2013 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio =>.Microsoft Corporation
O43 - CFD: 21/10/2013 - [] D -- C:\Program Files (x86)\Microsoft Works =>.Microsoft Corporation
O43 - CFD: 16/07/2014 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 04/11/2019 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla
O43 - CFD: 04/11/2019 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla
O43 - CFD: 25/04/2016 - [] D -- C:\Program Files (x86)\Mozilla Thunderbird =>.Mozilla
O43 - CFD: 16/07/2014 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation
O43 - CFD: 21/10/2013 - [] D -- C:\Program Files (x86)\MSECache =>.Microsoft Corporation
O43 - CFD: 31/08/2015 - [] D -- C:\Program Files (x86)\Notepad++ =>.Don Ho
O43 - CFD: 21/10/2013 - [] D -- C:\Program Files (x86)\PDFCreator =>.Philip Chinery
O43 - CFD: 11/10/2013 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek
O43 - CFD: 16/07/2014 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 10/04/2019 - [] D -- C:\Program Files (x86)\SHARP =>.Charp Corporation
O43 - CFD: 15/04/2016 - [] D -- C:\Program Files (x86)\Spiceworks =>.Spiceworks
O43 - CFD: 19/11/2019 - [] D -- C:\Program Files (x86)\TeamViewer =>.TeamViewer GmbH
O43 - CFD: 21/08/2015 - [0] HD -- C:\Program Files (x86)\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 14/04/2017 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation
O43 - CFD: 11/10/2013 - [] D -- C:\Program Files (x86)\Windows Live =>.Microsoft Corporation
O43 - CFD: 20/03/2015 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 11/10/2018 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 20/03/2015 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation
O43 - CFD: 20/03/2015 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 20/03/2015 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 16/07/2014 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 20/03/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 30/07/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 14/03/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 08/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AnyDesk =>.philandro Software GmbH
O43 - CFD: 20/05/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Backupper =>.AOMEI Tech Co
O43 - CFD: 16/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Atheros Smart Net =>.Qualcomm Atheros
O43 - CFD: 14/11/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup and Sync from Google
O43 - CFD: 16/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd
O43 - CFD: 04/11/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell =>.Ivo Beltchev
O43 - CFD: 16/07/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink Media Suite =>.CyberLink Corporation
O43 - CFD: 24/11/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell =>.Dell
O43 - CFD: 20/05/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Todo Backup 11.5 =>.EaseUS Software
O43 - CFD: 31/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client =>.Tim Kosse
O43 - CFD: 16/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HotSpot
O43 - CFD: 16/07/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel =>.Intel Corporation
O43 - CFD: 16/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle
O43 - CFD: 16/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 4.2 =>.LibreOffice
O43 - CFD: 22/08/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 02/12/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes =>.Malwarebytes
O43 - CFD: 16/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 14/11/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 =>.Microsoft Corporation
O43 - CFD: 31/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ =>.Don Ho
O43 - CFD: 23/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF-XChange PDF Viewer =>.Tracker Software
O43 - CFD: 16/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator =>.Philip Chinery
O43 - CFD: 21/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pilote de PC-Fax SHARP série MX, MX-C, MX-M, DX
O43 - CFD: 21/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sharpdesk =>.SHARP Corporation
O43 - CFD: 08/04/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation
O43 - CFD: 20/05/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\STATIM - Charlemagne V2
O43 - CFD: 20/03/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 23/03/2015 - [] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 26/06/2018 - [] D -- C:\ProgramData\Alcuin
O43 - CFD: 08/04/2016 - [] D -- C:\ProgramData\AnyDesk =>.philandro Software GmbH
O43 - CFD: 20/05/2019 - [] D -- C:\ProgramData\Aomei =>.AOMEI Tech Co
O43 - CFD: 20/05/2019 - [] D -- C:\ProgramData\AomeiBR =>.AOMEI Technology
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 05/04/2018 - [] D -- C:\ProgramData\AVAST Software =>.AVAST Software
O43 - CFD: 18/10/2013 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation
O43 - CFD: 04/11/2014 - [] D -- C:\ProgramData\ClassicShell =>.SourceForge
O43 - CFD: 11/10/2013 - [] D -- C:\ProgramData\CLSK =>.CLSK
O43 - CFD: 16/07/2014 - [] D -- C:\ProgramData\Conexant =>.Conexant Systems, Inc.
O43 - CFD: 24/10/2013 - [] D -- C:\ProgramData\CyberLink =>.CyberLink Corporation
O43 - CFD: 02/12/2019 - [] D -- C:\ProgramData\Dell =>.Dell
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 17/01/2014 - [] D -- C:\ProgramData\HP =>.Hewlett-Packard
O43 - CFD: 11/10/2013 - [] D -- C:\ProgramData\install_clap =>.Microsoft Corporation
O43 - CFD: 18/10/2013 - [] D -- C:\ProgramData\Intel =>.Intel Corporation
O43 - CFD: 05/09/2018 - [] D -- C:\ProgramData\jocatop =>.JOCATOP
O43 - CFD: 19/01/2015 - [] D -- C:\ProgramData\LogMeIn =>.LogMeIn
O43 - CFD: 15/01/2018 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes
O43 - CFD: 21/10/2013 - [] D -- C:\ProgramData\McAfee =>.McAfee
O43 - CFD: 18/10/2013 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation
O43 - CFD: 15/06/2015 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 02/12/2019 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 18/10/2013 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation
O43 - CFD: 08/02/2019 - [] D -- C:\ProgramData\Mozilla =>.Mozilla Corporation
O43 - CFD: 08/11/2013 - [] D -- C:\ProgramData\MSScanAppDataDir
O43 - CFD: 10/07/2014 - [0] D -- C:\ProgramData\Oracle =>.Oracle
O43 - CFD: 19/01/2016 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation
O43 - CFD: 11/10/2013 - [] D -- C:\ProgramData\PC-Doctor for Windows =>.PC-Doctor Inc.
O43 - CFD: 18/10/2013 - [] D -- C:\ProgramData\PCDr =>.PC-Doctor Inc.
O43 - CFD: 16/07/2014 - [] D -- C:\ProgramData\PRICache =>.Microsoft Corporation
O43 - CFD: 20/03/2015 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation
O43 - CFD: 21/08/2015 - [] D -- C:\ProgramData\Sharp =>.Charp Corporation
O43 - CFD: 21/08/2015 - [] D -- C:\ProgramData\Sharpdesk =>.SHARP Corporation
O43 - CFD: 21/10/2013 - [] D -- C:\ProgramData\softthinks =>.SoftThinks
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation
O43 - CFD: 26/02/2018 - [0] D -- C:\ProgramData\SWCUTemp
O43 - CFD: 20/05/2019 - [] D -- C:\ProgramData\SystemAcCrux
O43 - CFD: 11/10/2013 - [] D -- C:\ProgramData\Temp =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation
O43 - CFD: 02/05/2017 - [] D -- C:\Program Files (x86)\Common Files\AV =>.Avast
O43 - CFD: 11/10/2013 - [] D -- C:\Program Files (x86)\Common Files\CyberLink =>.CyberLink Corporation
O43 - CFD: 06/06/2014 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER =>.Designer
O43 - CFD: 18/07/2014 - [] D -- C:\Program Files (x86)\Common Files\Intel =>.Intel Corporation
O43 - CFD: 11/10/2013 - [] D -- C:\Program Files (x86)\Common Files\Intel Corporation =>.Intel Corporation
O43 - CFD: 25/07/2018 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation
O43 - CFD: 11/10/2013 - [] D -- C:\Program Files (x86)\Common Files\postureAgent =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 21/08/2015 - [] D -- C:\Program Files (x86)\Common Files\Sharp Shared =>.SHARP Corporation
O43 - CFD: 20/03/2015 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation
O43 - CFD: 11/10/2013 - [] D -- C:\Program Files (x86)\Common Files\Windows Live =>.Microsoft Corporation
O43 - CFD: 16/07/2014 - [] D -- C:\Users\test\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 14/05/2018 - [] D -- C:\Users\test\AppData\Roaming\Alcuin
O43 - CFD: 08/04/2016 - [] D -- C:\Users\test\AppData\Roaming\AnyDesk =>.philandro Software GmbH
O43 - CFD: 16/07/2014 - [] D -- C:\Users\test\AppData\Roaming\AVAST Software =>.AVAST Software
O43 - CFD: 31/08/2015 - [] D -- C:\Users\test\AppData\Roaming\Brackets =>.Brackets
O43 - CFD: 02/12/2019 - [] D -- C:\Users\test\AppData\Roaming\ClassicShell =>.SourceForge
O43 - CFD: 03/05/2016 - [] D -- C:\Users\test\AppData\Roaming\CyberLink =>.CyberLink Corporation
O43 - CFD: 31/08/2015 - [] D -- C:\Users\test\AppData\Roaming\FileZilla =>.FileZilla
O43 - CFD: 18/07/2014 - [] D -- C:\Users\test\AppData\Roaming\Identities =>.Microsoft Corporation
O43 - CFD: 21/08/2015 - [] D -- C:\Users\test\AppData\Roaming\InstallShield =>.InstallShield
O43 - CFD: 16/07/2014 - [] D -- C:\Users\test\AppData\Roaming\Intel Corporation =>.Intel Corporation
O43 - CFD: 16/07/2014 - [] D -- C:\Users\test\AppData\Roaming\LibreOffice =>.LibreOffice
O43 - CFD: 16/07/2014 - [] D -- C:\Users\test\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 07/03/2016 - [] SD -- C:\Users\test\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 20/11/2017 - [] D -- C:\Users\test\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 31/08/2015 - [] D -- C:\Users\test\AppData\Roaming\Notepad++ =>.Don Ho
O43 - CFD: 16/07/2014 - [] D -- C:\Users\test\AppData\Roaming\Nuance =>.Nuance
O43 - CFD: 21/08/2015 - [] D -- C:\Users\test\AppData\Roaming\SHARP =>.Charp Corporation
O43 - CFD: 18/12/2015 - [] D -- C:\Users\test\AppData\Roaming\Sharpdesk =>.SHARP Corporation
O43 - CFD: 24/05/2018 - [] D -- C:\Users\test\AppData\Roaming\TeamViewer =>.TeamViewer GmbH
O43 - CFD: 15/10/2014 - [] D -- C:\Users\test\AppData\Roaming\Thunderbird =>.Thunderbird
O43 - CFD: 02/12/2019 - [] D -- C:\Users\test\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 12/12/2014 - [] D -- C:\Users\test\AppData\Local\Adobe =>.Adobe
O43 - CFD: 16/07/2014 - [0] SHD -- C:\Users\test\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 27/08/2018 - [] D -- C:\Users\test\AppData\Local\AVAST Software =>.AVAST Software
O43 - CFD: 25/07/2016 - [] D -- C:\Users\test\AppData\Local\CEF =>.CEF
O43 - CFD: 16/07/2014 - [] D -- C:\Users\test\AppData\Local\Conexant =>.Conexant Systems, Inc.
O43 - CFD: 19/11/2019 - [] D -- C:\Users\test\AppData\Local\CrashDumps =>.Microsoft Corporation
O43 - CFD: 03/05/2016 - [] D -- C:\Users\test\AppData\Local\Cyberlink =>.CyberLink Corporation
O43 - CFD: 02/05/2017 - [0] D -- C:\Users\test\AppData\Local\Diagnostics =>.Microsoft Corporation
O43 - CFD: 15/06/2015 - [0] SHD -- C:\Users\test\AppData\Local\EmieBrowserModeList =>.ATTENTION
O43 - CFD: 15/06/2015 - [0] SHD -- C:\Users\test\AppData\Local\EmieSiteList =>.ATTENTION
O43 - CFD: 15/06/2015 - [0] SHD -- C:\Users\test\AppData\Local\EmieUserList =>.ATTENTION
O43 - CFD: 09/09/2019 - [] D -- C:\Users\test\AppData\Local\Google =>.Google
O43 - CFD: 16/09/2014 - [] D -- C:\Users\test\AppData\Local\GroupPolicy =>.Microsoft Corporation
O43 - CFD: 23/05/2016 - [] D -- C:\Users\test\AppData\Local\GWX =>.GWX
O43 - CFD: 16/07/2014 - [0] SHD -- C:\Users\test\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 19/01/2015 - [] D -- C:\Users\test\AppData\Local\LogMeIn =>.LogMeIn
O43 - CFD: 19/01/2015 - [] D -- C:\Users\test\AppData\Local\LogMeInIgnition =>.LogMeIn Inc
O43 - CFD: 04/11/2014 - [] D -- C:\Users\test\AppData\Local\Macromedia =>.Macromedia
O43 - CFD: 06/07/2017 - [] D -- C:\Users\test\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 10/06/2014 - [0] D -- C:\Users\test\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 16/07/2014 - [] D -- C:\Users\test\AppData\Local\Mozilla =>.Mozilla Corporation
O43 - CFD: 26/11/2019 - [] D -- C:\Users\test\AppData\Local\Packages =>.Microsoft Corporation
O43 - CFD: 16/07/2014 - [] D -- C:\Users\test\AppData\Local\Power2Go8 =>.CyberLink Corporation
O43 - CFD: 23/03/2015 - [] D -- C:\Users\test\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 04/05/2015 - [] D -- C:\Users\test\AppData\Local\TeamViewer =>.TeamViewer GmbH
O43 - CFD: 02/12/2019 - [] D -- C:\Users\test\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 16/07/2014 - [0] SHD -- C:\Users\test\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 15/10/2014 - [] D -- C:\Users\test\AppData\Local\Thunderbird =>.Thunderbird
O43 - CFD: 02/02/2017 - [] D -- C:\Users\test\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 04/03/2019 - [] D -- C:\Users\test\AppData\Local\Windows Live =>.Microsoft Corporation
O43 - CFD: 02/12/2019 - [] D -- C:\Users\test\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 23/03/2015 - [0] D -- C:\Users\test\AppData\Local\Programs\Common =>.Microsoft Corporation
O43 - CFD: 16/07/2014 - [] D -- C:\Users\test\AppData\LocalLow\Adobe =>.Adobe
O43 - CFD: 15/06/2015 - [0] SHD -- C:\Users\test\AppData\LocalLow\EmieBrowserModeList =>.ATTENTION
O43 - CFD: 15/06/2015 - [0] SHD -- C:\Users\test\AppData\LocalLow\EmieSiteList =>.ATTENTION
O43 - CFD: 15/06/2015 - [0] SHD -- C:\Users\test\AppData\LocalLow\EmieUserList =>.ATTENTION
O43 - CFD: 19/07/2016 - [] SD -- C:\Users\test\AppData\LocalLow\Microsoft =>.Microsoft Corporation
O43 - CFD: 02/12/2019 - [] D -- C:\Users\test\AppData\LocalLow\Mozilla =>.Mozilla Corporation
O43 - CFD: 31/08/2015 - [] D -- C:\Users\test\AppData\LocalLow\Sun =>.Oracle
O43 - CFD: 18/01/2016 - [] D -- C:\Users\test\AppData\LocalLow\Temp =>.Microsoft Corporation
O43 - CFD: 02/12/2019 - [] SHD -- U:\Desktop\$RECYCLE.BIN
O43 - CFD: 27/09/2016 - [] D -- U:\Desktop\CE2
O43 - CFD: 30/09/2019 - [] D -- U:\Desktop\dossier CE2 pour Paula
O43 - CFD: 11/03/2019 - [] D -- U:\Desktop\Evaluation nationales CP
O43 - CFD: 15/01/2018 - [] D -- U:\Desktop\Maintenance =>.Microsoft Corporation
O43 - CFD: 23/03/2015 - [] D -- U:\Desktop\Photos soirée
O43 - CFD: 16/07/2014 - [] RD -- U:\Desktop\pre_inscriptions
O43 - CFD: 30/08/2019 - [] D -- U:\Desktop\progression emploi du temps ce1 2019
O43 - CFD: 15/06/2015 - [] D -- U:\Desktop\testdisk-7.0
O43 - CFD: 30/09/2019 - [] D -- U:\Desktop\évalautaion nationale janvier
O43 - CFD: 16/07/2014 - [] RD -- C:\Users\test\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [] RD -- C:\Users\test\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 13/06/2019 - [] RD -- C:\Users\test\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 22/08/2013 - [] D -- C:\Users\test\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 31/08/2015 - [0] D -- C:\Users\test\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++ =>.Don Ho
O43 - CFD: 08/04/2016 - [] D -- C:\Users\test\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spiceworks =>.Spiceworks
O43 - CFD: 13/06/2019 - [] RD -- C:\Users\test\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 16/07/2014 - [] RD -- C:\Users\test\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 04/09/2019 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\CrashDumps =>.Microsoft Corporation
O43 - CFD: 15/09/2014 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Dell_Inc
O43 - CFD: 20/03/2015 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Google =>.Google
O43 - CFD: 16/07/2014 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 12/10/2017 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 25/07/2016 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation

---\\ ShellIconOverlayIdentifiers (SIOI) (11) - 1s
O106 - SIOI: [ GoogleDriveBlacklisted] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}. (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\googledrivesync64.dll =>.Google LLC®
O106 - SIOI: [ GoogleDriveSynced] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}. (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\googledrivesync64.dll =>.Google LLC®
O106 - SIOI: [ GoogleDriveSyncing] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}. (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\googledrivesync64.dll =>.Google LLC®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: avast [00asw] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - Avast Antivirus Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software s.r.o.®
O106 - SIOI: avast [00avast] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - Avast Antivirus Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software s.r.o.®
O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll =>.Microsoft Corporation
O106 - SIOI: ShareOverlay Class [ShareOverlay] - {594D4122-1F87-41E2-96C7-825FB4796516}. (.IvoSoft - Adds classic Windows Explorer features.) -- C:\Program Files\Classic Shell\ClassicExplorer64.dll =>.IvoSoft

---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (37) - 3s
O108 - CMH1: ANotepad++64 [64Bits] - {B298D29A-A6ED-11DE-BA8C-A68E55D89593} . (. - ShellHandler for Notepad++ (64 bit).) -- C:\Program Files (x86)\Notepad++\NppShell_06.dll =>.Don Ho
O108 - CMH1: avast [64Bits] - {472083B0-C522-11CF-8763-00608CC02F24} . (.AVAST Software - Avast Antivirus Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software s.r.o.®
O108 - CMH1: BriefcaseMenu [64Bits] - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll =>.Microsoft Corporation
O108 - CMH1: CLVDShellExt [64Bits] - {3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2} . (.Orphan.)
O108 - CMH1: GDContextMenu [64Bits] - {BB02B294-8425-42E5-983F-41A1FA970CD6} . (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\contextmenu64.dll =>.Google LLC®
O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH1: SimpleShlExt [64Bits] - {45203D3B-3D73-4497-8AFE-D29950AC6C55} . (.CHENGDU YIWO Tech Development Co.,Ltd - EaseUS Todo Backup Application.) -- C:\Program Files (x86)\EaseUS\Todo Backup\bin\x64\ImageSh.dll =>.CHENGDU YIWO Tech Development Co., Ltd.®
O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation
O108 - CMH2: GDContextMenu [64Bits] - {BB02B294-8425-42E5-983F-41A1FA970CD6} . (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\contextmenu64.dll =>.Google LLC®
O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH2: StartMenuExt [64Bits] - {E595F05F-903F-4318-8B0A-7F633B520D2B} . (.IvoSoft - Start Menu Helper Extension.) -- C:\WINDOWS\system32\StartMenuHelper64.dll =>.IvoSoft
O108 - CMH3: 00asw [64Bits] - {472083B0-C522-11CF-8763-00608CC02F24} . (.AVAST Software - Avast Antivirus Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software s.r.o.®
O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH4: GDContextMenu [64Bits] - {BB02B294-8425-42E5-983F-41A1FA970CD6} . (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\contextmenu64.dll =>.Google LLC®
O108 - CMH4: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll =>.Microsoft Corporation
O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH4: SimpleShlExt [64Bits] - {45203D3B-3D73-4497-8AFE-D29950AC6C55} . (.CHENGDU YIWO Tech Development Co.,Ltd - EaseUS Todo Backup Application.) -- C:\Program Files (x86)\EaseUS\Todo Backup\bin\x64\ImageSh.dll =>.CHENGDU YIWO Tech Development Co., Ltd.®
O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation
O108 - CMH5: igfxDTCM [64Bits] - {9B5F5829-A529-4B12-814A-E81BCB8D93FC} . (.Intel Corporation - igfxDTCM Module.) -- C:\WINDOWS\system32\igfxDTCM.dll =>.Intel Corporation
O108 - CMH5: igfxOSP [64Bits] - {FA507C3F-30C6-4DCA-9EE5-2656072EEC14} . (.Intel Corporation - igfxOSP Module.) -- C:\WINDOWS\system32\igfxOSP.dll =>.Intel Corporation
O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation
O108 - CMH6: avast [64Bits] - {472083B0-C522-11CF-8763-00608CC02F24} . (.AVAST Software - Avast Antivirus Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software s.r.o.®
O108 - CMH6: BriefcaseMenu [64Bits] - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll =>.Microsoft Corporation
O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH6: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll =>.Microsoft Corporation
O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH6: StartMenuExt [64Bits] - {E595F05F-903F-4318-8B0A-7F633B520D2B} . (.IvoSoft - Start Menu Helper Extension.) -- C:\WINDOWS\system32\StartMenuHelper64.dll =>.IvoSoft
O108 - CMH7: CLVDShellExt [64Bits] - {3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2} . (.Orphan.)
O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH7: SimpleShlExt [64Bits] - {45203D3B-3D73-4497-8AFE-D29950AC6C55} . (.CHENGDU YIWO Tech Development Co.,Ltd - EaseUS Todo Backup Application.) -- C:\Program Files (x86)\EaseUS\Todo Backup\bin\x64\ImageSh.dll =>.CHENGDU YIWO Tech Development Co., Ltd.®

---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (16) - 1s
O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft®
O50 - IFEO:C:\Windows\System32\drvinst.exe - (.Microsoft Corporation - Module d’installation de pilotes.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation

---\\ LISTE DES PILOTES DU SYSTÈME (352) - 11s
O58 - SDL:2013/08/22 12:38:15 AC . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\WINDOWS\System32\drivers\1394ohci.sys [231424] =>.Microsoft Corporation
O58 - SDL:2013/08/22 13:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [108896] =>.Microsoft®
O58 - SDL:2018/02/10 20:25:56 AC . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\WINDOWS\System32\drivers\acpi.sys [533856] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:49:54 A . (.Microsoft Corporation - ACPIEx Driver.) -- C:\WINDOWS\System32\drivers\acpiex.sys [79712] =>.Microsoft®
O58 - SDL:2013/08/22 12:38:48 AC . (.Microsoft Corporation - ACPI Processor Aggregator Device Driver.) -- C:\WINDOWS\System32\drivers\acpipagr.sys [10240] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:38:53 AC . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\WINDOWS\System32\drivers\acpipmi.sys [12288] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:38:58 AC . (.Microsoft Corporation - ACPI Wake Alarm.) -- C:\WINDOWS\System32\drivers\acpitime.sys [10752] =>.Microsoft Corporation
O58 - SDL:2013/08/22 13:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [782176] =>.Microsoft®
O58 - SDL:2018/01/10 15:48:07 A . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\afd.sys [559616] =>.Microsoft Corporation
O58 - SDL:2016/07/07 23:32:00 A . (.Microsoft Corporation - RAS Agile Vpn Miniport Call Manager.) -- C:\WINDOWS\System32\drivers\agilevpn.sys [95744] =>.Microsoft Corporation
O58 - SDL:2018/02/10 20:29:55 AC . (.Microsoft Corporation - Filtre AGP 440 NT.) -- C:\WINDOWS\System32\drivers\AGP440.sys [62304] =>.Microsoft Windows®
O58 - SDL:2015/03/20 02:56:10 A . (.Microsoft Corporation - Application Compatibility Cache.) -- C:\WINDOWS\System32\drivers\ahcache.sys [80384] =>.Microsoft Corporation
O58 - SDL:2018/06/20 19:48:02 AC . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdk8.sys [95744] =>.Microsoft Corporation
O58 - SDL:2018/06/20 17:58:06 AC . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdppm.sys [98816] =>.Microsoft Corporation
O58 - SDL:2013/08/22 13:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [79200] =>.Microsoft®
O58 - SDL:2013/08/22 13:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] =>.Microsoft®
O58 - SDL:2013/08/22 13:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [25952] =>.Microsoft®
O58 - SDL:2018/06/08 19:47:48 A . (.Microsoft Corporation - AppID Driver.) -- C:\WINDOWS\System32\drivers\appid.sys [83456] =>.Microsoft Corporation
O58 - SDL:2013/08/22 13:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [114016] =>.Microsoft®
O58 - SDL:2019/10/07 07:49:20 A . (.AVAST Software - Avast anti rootkit disk filter.) -- C:\WINDOWS\System32\drivers\aswArDisk.sys [37616] =>.AVAST Software s.r.o.®
O58 - SDL:2019/10/07 07:49:20 A . (.AVAST Software - Avast anti rootkit.) -- C:\WINDOWS\System32\drivers\aswArPot.sys [204824] =>.AVAST Software s.r.o.®
O58 - SDL:2019/10/07 07:49:19 A . (.AVAST Software - IDS Application Activity Monitor Driver..) -- C:\WINDOWS\System32\drivers\aswbidsdriver.sys [274456] =>.AVAST Software s.r.o.®
O58 - SDL:2019/10/07 07:49:19 A . (.AVAST Software - Application Activity Monitor Helper Driver.) -- C:\WINDOWS\System32\drivers\aswbidsh.sys [209552] =>.AVAST Software s.r.o.®
O58 - SDL:2019/10/07 07:49:19 A . (.AVAST Software - Universal Driver.) -- C:\WINDOWS\System32\drivers\aswbuniv.sys [65120] =>.AVAST Software s.r.o.®
O58 - SDL:2019/10/07 07:49:22 A . (.AVAST Software - Home Network Security.) -- C:\WINDOWS\System32\drivers\aswHdsKe.sys [276952] =>.AVAST Software s.r.o.®
O58 - SDL:2019/10/07 07:49:22 A . (.AVAST Software - Avast Keyboard Filter Driver.) -- C:\WINDOWS\System32\drivers\aswKbd.sys [42736] =>.AVAST Software s.r.o.®
O58 - SDL:2019/10/07 07:49:22 A . (.AVAST Software - Avast File System Minifilter for Windows 20.) -- C:\WINDOWS\System32\drivers\aswMonFlt.sys [171520] =>.AVAST Software s.r.o.®
O58 - SDL:2019/10/07 07:49:22 A . (.AVAST Software - Avast WFP Redirect Driver.) -- C:\WINDOWS\System32\drivers\aswRdr2.sys [110320] =>.AVAST Software s.r.o.®
O58 - SDL:2019/10/07 07:49:22 A . (.AVAST Software - Avast Antivirus Revert.) -- C:\WINDOWS\System32\drivers\aswRvrt.sys [83792] =>.AVAST Software s.r.o.® (Avast Software s.r.o)
O58 - SDL:2019/10/07 07:50:02 A . (.AVAST Software - Avast Virtualization Driver.) -- C:\WINDOWS\System32\drivers\aswSnx.sys [848432] =>.AVAST Software s.r.o.®
O58 - SDL:2019/10/07 07:50:02 A . (.AVAST Software - Avast self protection module.) -- C:\WINDOWS\System32\drivers\aswSP.sys [460448] =>.AVAST Software s.r.o.®
O58 - SDL:2019/10/07 07:49:22 A . (.AVAST Software - Stream Filter.) -- C:\WINDOWS\System32\drivers\aswStm.sys [236024] =>.AVAST Software s.r.o.®
O58 - SDL:2019/10/07 07:49:23 A . (.AVAST Software - Avast Antivirus VM Monitor.) -- C:\WINDOWS\System32\drivers\aswVmm.sys [316528] =>.AVAST Software s.r.o.® (Avast Software s.r.o)
O58 - SDL:2013/08/22 12:38:53 A . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\WINDOWS\System32\drivers\asyncmac.sys [26624] =>.Microsoft Corporation
O58 - SDL:2013/08/22 13:43:41 AC . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [26464] =>.Microsoft®
O58 - SDL:2013/08/22 13:43:41 AC . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\WINDOWS\System32\drivers\ataport.sys [199520] =>.Microsoft®
O58 - SDL:2013/06/18 15:45:02 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\athw8x.sys [3680256] =>.Qualcomm Atheros Communications, Inc.
O58 - SDL:2013/08/22 12:39:31 AC . (.Microsoft Corporation - Microsoft Basic Display Driver.) -- C:\WINDOWS\System32\drivers\BasicDisplay.sys [50688] =>.Microsoft Corporation
O58 - SDL:2017/11/08 16:55:00 AC . (.Microsoft Corporation - Microsoft Basic Render Driver.) -- C:\WINDOWS\System32\drivers\BasicRender.sys [32256] =>.Microsoft Corporation
O58 - SDL:2013/08/22 13:49:53 AC . (.Microsoft Corporation - Battery Class Driver.) -- C:\WINDOWS\System32\drivers\battc.sys [35168] =>.Microsoft®
O58 - SDL:2013/08/13 00:25:46 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624] =>.Broadcom Corporation®
O58 - SDL:2013/08/22 12:40:24 A . (.Microsoft Corporation - BEEP Driver.) -- C:\WINDOWS\System32\drivers\beep.sys [7680] =>.Microsoft Corporation
O58 - SDL:2018/07/18 14:34:36 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\WINDOWS\System32\drivers\bowser.sys [101376] =>.Microsoft Corporation
O58 - SDL:2019/02/07 20:38:58 A . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\WINDOWS\System32\drivers\bridge.sys [116224] =>.Microsoft Corporation
O58 - SDL:2014/03/18 11:13:37 AC . (.Microsoft Corporation - Microsoft Bluetooth Audio Multiprofile Mana.) -- C:\WINDOWS\System32\drivers\BtaMPM.sys [19456] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:38:39 AC . (.Microsoft Corporation - HID de contrôle à distance audio/vidéo Blue.) -- C:\WINDOWS\System32\drivers\BthAvrcpTg.sys [36992] =>.Microsoft Corporation
O58 - SDL:2015/03/09 03:02:51 AC . (.Microsoft Corporation - Bluetooth Hands-Free Audio and Call Control.) -- C:\WINDOWS\System32\drivers\bthhfenum.sys [57856] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:38:16 AC . (.Microsoft Corporation - Minipilote HID mains libres Bluetooth.) -- C:\WINDOWS\System32\drivers\BthhfHid.sys [30720] =>.Microsoft Corporation
O58 - SDL:2014/03/18 11:13:37 AC . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\WINDOWS\System32\drivers\bthmodem.sys [64000] =>.Microsoft Corporation
O58 - SDL:2013/08/22 13:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] =>.Microsoft®
O58 - SDL:2019/02/09 18:49:11 A . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\cdfs.sys [88576] =>.Microsoft Corporation
O58 - SDL:2017/12/05 16:24:08 AC . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\cdrom.sys [165376] =>.Microsoft Corporation
O58 - SDL:2012/06/22 21:57:08 A . (.Conexant Systems Inc. - 64-bit High Definition Audio Function Drive.) -- C:\WINDOWS\System32\drivers\CHDRT64.sys [1583264] =>.Conexant Systems, Inc.®
O58 - SDL:2013/08/22 12:38:25 AC . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\WINDOWS\System32\drivers\circlass.sys [44032] =>.Microsoft Corporation
O58 - SDL:2019/05/15 21:33:42 A . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\WINDOWS\System32\drivers\Classpnp.sys [333552] =>.Microsoft Windows®
O58 - SDL:2019/08/15 10:47:36 A . (.Microsoft Corporation - Common Log File System Driver.) -- C:\WINDOWS\System32\drivers\clfs.sys [376568] =>.Microsoft®
O58 - SDL:2012/06/25 09:24:50 A . (.CyberLink - It is a virtual device driver which could c.) -- C:\WINDOWS\System32\drivers\CLVirtualDrive.sys [92536] =>.CyberLink®
O58 - SDL:2013/08/22 12:39:43 AC . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\WINDOWS\System32\drivers\CmBatt.sys [25472] =>.Microsoft Corporation
O58 - SDL:2016/10/10 19:18:14 A . (.Microsoft Corporation - Kernel Configuration Manager Initial Config.) -- C:\WINDOWS\System32\drivers\cmimcext.sys [22360] =>.Microsoft®
O58 - SDL:2019/09/07 02:32:13 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\WINDOWS\System32\drivers\cng.sys [567048] =>.Microsoft®
O58 - SDL:2013/08/22 12:38:48 AC . (.Microsoft Corporation - Multi-Transport Composite Bus Enumerator.) -- C:\WINDOWS\System32\drivers\CompositeBus.sys [36352] =>.Microsoft Corporation
O58 - SDL:2013/08/22 14:25:40 A . (.Microsoft Corporation - Console Driver.) -- C:\WINDOWS\System32\drivers\condrv.sys [43008] =>.Microsoft Corporation
O58 - SDL:2013/08/22 13:43:41 A . (.Microsoft Corporation - Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\crashdmp.sys [68960] =>.Microsoft®
O58 - SDL:2018/06/27 19:10:03 A . (.Microsoft Corporation - Windows Client Side Caching Driver.) -- C:\WINDOWS\System32\drivers\csc.sys [559104] =>.Microsoft Corporation
O58 - SDL:2013/08/22 13:50:19 A . (.Microsoft Corporation - DAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\dam.sys [57696] =>.Microsoft®
O58 - SDL:2018/01/02 06:38:50 A . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\dfsc.sys [138752] =>.Microsoft Corporation
O58 - SDL:2017/07/08 04:14:22 AC . (.Microsoft Corporation - PnP Disk Driver.) -- C:\WINDOWS\System32\drivers\disk.sys [100184] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:40 A . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\WINDOWS\System32\drivers\Diskdump.sys [36192] =>.Microsoft®
O58 - SDL:2013/08/22 12:40:38 A . (.Microsoft Corporation - Boot Over USB Dump Driver.) -- C:\WINDOWS\System32\drivers\Dmpusbstor.sys [13312] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:37:14 A . (.Microsoft Corporation - Dynamic Memory.) -- C:\WINDOWS\System32\drivers\dmvsc.sys [29696] =>.Microsoft Corporation
O58 - SDL:2012/10/19 03:52:32 A . (. - IEEE-1284.4-1999 Driver.) -- C:\WINDOWS\System32\drivers\Dot4.sys [151968] =>.Hewlett-Packard Company®
O58 - SDL:2012/10/19 03:52:30 A . (. - IEEE-1284.4 Print Class Driver.) -- C:\WINDOWS\System32\drivers\Dot4Prt.sys [27040] =>.Hewlett-Packard Company®
O58 - SDL:2012/10/19 03:52:32 A . (.Microsoft Corporation - DOT4USB filter driver.) -- C:\WINDOWS\System32\drivers\Dot4usb.sys [49056] =>.Hewlett-Packard Company®
O58 - SDL:2014/10/29 03:47:38 AC . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmk.sys [89088] =>.Microsoft Corporation
O58 - SDL:2014/10/29 04:58:59 AC . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmkaud.sys [14528] =>.Microsoft®
O58 - SDL:2013/08/22 13:39:46 A . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpata.sys [33632] =>.Microsoft®
O58 - SDL:2016/06/18 21:06:24 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\WINDOWS\System32\drivers\dumpfve.sys [72408] =>.Microsoft®
O58 - SDL:2015/03/13 05:03:30 AC . (.Microsoft Corporation - SD Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsd.sys [154432] =>.Microsoft®
O58 - SDL:2019/08/13 20:09:13 A . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\WINDOWS\System32\drivers\dxgkrnl.sys [1546992] =>.Microsoft®
O58 - SDL:2018/10/06 19:14:31 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms1.sys [388536] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:40 A . (.Microsoft Corporation - Enhanced Storage Class driver for IEEE 1667.) -- C:\WINDOWS\System32\drivers\EhStorClass.sys [82784] =>.Microsoft®
O58 - SDL:2013/08/22 13:43:40 AC . (.Microsoft Corporation - Microsoft driver for storage devices suppor.) -- C:\WINDOWS\System32\drivers\EhStorTcgDrv.sys [114016] =>.Microsoft®
O58 - SDL:2013/08/22 12:38:45 AC . (.Microsoft Corporation - Error Device Driver.) -- C:\WINDOWS\System32\drivers\errdev.sys [10240] =>.Microsoft Corporation
O58 - SDL:2019/04/22 15:57:10 A . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Backup Driver.) -- C:\WINDOWS\System32\drivers\eubakup.sys [74120] =>.CHENGDU YIWO Tech Development Co., Ltd.®
O58 - SDL:2019/04/22 15:57:12 A . (...) -- C:\WINDOWS\System32\drivers\EUBKMON.sys [54152] =>.CHENGDU YIWO Tech Development Co., Ltd.®
O58 - SDL:2019/04/22 15:57:12 A . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Access Driver.) -- C:\WINDOWS\System32\drivers\eudskacs.sys [23432] =>.CHENGDU YIWO Tech Development Co., Ltd.®
O58 - SDL:2019/04/22 15:57:12 A . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Backup Image Preview Driver.) -- C:\WINDOWS\System32\drivers\EuFdDisk.sys [344456] =>.CHENGDU YIWO Tech Development Co., Ltd.®
O58 - SDL:2013/08/22 13:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3357024] =>.Microsoft®
O58 - SDL:2019/02/09 18:49:13 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\WINDOWS\System32\drivers\exfat.sys [200704] =>.Microsoft Corporation
O58 - SDL:2019/12/02 17:33:48 A . (.Malwarebytes - Malwarebytes Anti-Ransomware Protection.) -- C:\WINDOWS\System32\drivers\farflt.sys [112864] =>.Malwarebytes Corporation®
O58 - SDL:2019/02/09 20:36:57 A . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\WINDOWS\System32\drivers\fastfat.sys [218056] =>.Microsoft Windows®
O58 - SDL:2013/08/22 12:40:18 AC . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\WINDOWS\System32\drivers\fdc.sys [30720] =>.Microsoft Corporation
O58 - SDL:2014/03/18 11:13:53 A . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\WINDOWS\System32\drivers\fileinfo.sys [79192] =>.Microsoft®
O58 - SDL:2013/08/22 12:39:41 A . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\WINDOWS\System32\drivers\filetrace.sys [34816] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:40:18 AC . (.Microsoft Corporation - Floppy Driver.) -- C:\WINDOWS\System32\drivers\flpydisk.sys [25088] =>.Microsoft Corporation
O58 - SDL:2019/09/10 22:34:25 A . (.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) -- C:\WINDOWS\System32\drivers\fltMgr.sys [354544] =>.Microsoft®
O58 - SDL:2014/10/15 09:32:36 A . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) -- C:\WINDOWS\System32\drivers\fsdepends.sys [61248] =>.Microsoft®
O58 - SDL:2013/08/22 14:25:40 A . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\WINDOWS\System32\drivers\fs_rec.sys [30048] =>.Microsoft®
O58 - SDL:2018/05/15 09:42:10 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\WINDOWS\System32\drivers\fvevol.sys [590680] =>.Microsoft Windows®
O58 - SDL:2018/05/24 22:29:27 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\WINDOWS\System32\drivers\FWPKCLNT.SYS [428888] =>.Microsoft Windows®
O58 - SDL:2018/06/20 19:48:27 AC . (.Microsoft Corporation - Processor Driver.) -- C:\WINDOWS\System32\drivers\fxppm.sys [27136] =>.Microsoft Corporation
O58 - SDL:2013/08/22 13:43:45 A . (.Microsoft Corporation - Filtre AGPv3.0 générique Microsoft pour pla.) -- C:\WINDOWS\System32\drivers\GAGP30KX.SYS [65888] =>.Microsoft®
O58 - SDL:2014/07/24 12:45:39 AC . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [76800] =>.Microsoft Corporation
O58 - SDL:2012/07/03 00:16:02 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\HECIx64.sys [62784] =>.Intel Corporation®
O58 - SDL:2013/08/22 12:39:01 AC . (.Microsoft Corporation - Hid Battery Driver.) -- C:\WINDOWS\System32\drivers\hidbatt.sys [26624] =>.Microsoft Corporation
O58 - SDL:2015/01/30 04:01:51 AC . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périp.) -- C:\WINDOWS\System32\drivers\hidbth.sys [97792] =>.Microsoft Corporation
O58 - SDL:2016/05/14 00:08:24 AC . (.Microsoft Corporation - Bibliothèque Hid Class.) -- C:\WINDOWS\System32\drivers\hidclass.sys [111616] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:37:28 AC . (.Microsoft Corporation - I2C HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidi2c.sys [41472] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:39:16 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidir.sys [45568] =>.Microsoft Corporation
O58 - SDL:2019/03/06 07:26:45 AC . (.Microsoft Corporation - Hid Parsing Library.) -- C:\WINDOWS\System32\drivers\hidparse.sys [32896] =>.Microsoft Corporation
O58 - SDL:2016/05/14 00:08:13 AC . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidusb.sys [32768] =>.Microsoft Corporation
O58 - SDL:2013/08/22 13:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] =>.Microsoft®
O58 - SDL:2018/01/02 07:35:14 A . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\WINDOWS\System32\drivers\http.sys [989528] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:39:47 A . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\WINDOWS\System32\drivers\hwpolicy.sys [24416] =>.Microsoft®
O58 - SDL:2013/08/22 12:37:49 A . (.Microsoft Corporation - Microsoft VMBus Synthetic Keyboard Driver.) -- C:\WINDOWS\System32\drivers\hyperkbd.sys [13824] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:39:20 A . (.Microsoft Corporation - Microsoft VMBus Video Device Miniport Drive.) -- C:\WINDOWS\System32\drivers\HyperVideo.sys [22016] =>.Microsoft Corporation
O58 - SDL:2014/11/04 07:54:54 AC . (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [108544] =>.Microsoft Corporation
O58 - SDL:2013/07/30 19:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [24568] =>.Intel Corporation - Software and Firmware Products®
O58 - SDL:2013/07/25 20:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [99320] =>.Intel Corporation - Software and Firmware Products®
O58 - SDL:2012/10/26 23:02:10 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [651832] =>.Intel Corporation - Intel® Rapid Storage Technology®
O58 - SDL:2013/08/10 01:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [651248] =>.Intel Corporation - Intel® Rapid Storage Technology®
O58 - SDL:2013/08/22 13:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] =>.Microsoft®
O58 - SDL:2014/05/20 23:33:36 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [3791872] =>.Intel Corporation
O58 - SDL:2012/06/19 16:40:50 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [342528] =>.Intel(R) Corporation
O58 - SDL:2014/05/06 23:39:17 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\intelaud.sys [38296] =>.Intel Wireless Display®
O58 - SDL:2013/08/22 13:43:44 A . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\WINDOWS\System32\drivers\intelide.sys [18272] =>.Microsoft®
O58 - SDL:2014/10/13 03:43:17 AC . (.Microsoft Corporation - Intel Power Engine Plugin.) -- C:\WINDOWS\System32\drivers\intelpep.sys [39744] =>.Microsoft®
O58 - SDL:2018/06/20 17:58:06 AC . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\intelppm.sys [98816] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:35:51 A . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\WINDOWS\System32\drivers\ipfltdrv.sys [84992] =>.Microsoft Corporation
O58 - SDL:2016/02/03 16:14:11 A . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\WINDOWS\System32\drivers\IPMIDrv.sys [80896] =>.Microsoft Corporation
O58 - SDL:2014/03/18 11:14:02 A . (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\ipnat.sys [142848] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:37:35 A . (.Microsoft Corporation - IRDA Protocol Driver.) -- C:\WINDOWS\System32\drivers\irda.sys [118784] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:38:30 A . (.Microsoft Corporation - Infra-Red Bus Enumerator.) -- C:\WINDOWS\System32\drivers\irenum.sys [17920] =>.Microsoft Corporation
O58 - SDL:2018/02/10 20:29:56 AC . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\WINDOWS\System32\drivers\isapnp.sys [21856] =>.Microsoft Windows®
O58 - SDL:2014/05/06 23:39:17 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\iwdbus.sys [27032] =>.Intel Wireless Display®
O58 - SDL:2014/11/04 20:25:09 AC . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\WINDOWS\System32\drivers\kbdclass.sys [59712] =>.Microsoft®
O58 - SDL:2014/11/04 07:54:47 AC . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\WINDOWS\System32\drivers\kbdhid.sys [32256] =>.Microsoft Corporation
O58 - SDL:2019/09/11 17:37:03 A . (.Microsoft Corporation - Keyboard Lockdown Subsystem.) -- C:\WINDOWS\System32\drivers\kbldfltr.sys [22720] =>.Microsoft®
O58 - SDL:2013/08/22 12:38:26 AC . (.Microsoft Corporation - Microsoft Kernel Debugger Network Miniport.) -- C:\WINDOWS\System32\drivers\kdnic.sys [19456] =>.Microsoft Corporation
O58 - SDL:2018/08/23 23:54:52 A . (.Microsoft Corporation - Kernel CSA Library.) -- C:\WINDOWS\System32\drivers\ks.sys [289280] =>.Microsoft Corporation
O58 - SDL:2016/08/22 17:06:00 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecdd.sys [100184] =>.Microsoft®
O58 - SDL:2019/04/05 23:46:57 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecpkg.sys [177608] =>.Microsoft Windows®
O58 - SDL:2013/08/22 12:39:31 A . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\WINDOWS\System32\drivers\ksthunk.sys [21248] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:36:18 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\WINDOWS\System32\drivers\lltdio.sys [59392] =>.Microsoft Corporation
O58 - SDL:2013/08/22 13:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [109408] =>.Microsoft®
O58 - SDL:2013/08/22 13:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2.sys [93536] =>.Microsoft®
O58 - SDL:2013/08/22 13:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3.sys [81760] =>.Microsoft®
O58 - SDL:2013/08/22 13:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] =>.Microsoft®
O58 - SDL:2019/03/30 21:57:20 A . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) -- C:\WINDOWS\System32\drivers\luafv.sys [126464] =>.Microsoft Corporation
O58 - SDL:2018/04/26 05:36:50 A . (.Malwarebytes - Malwarebytes Anti-Exploit.) -- C:\WINDOWS\System32\drivers\mbae64.sys [152184] =>.Malwarebytes Corporation®
O58 - SDL:2019/12/02 17:33:55 A . (.Malwarebytes - Malwarebytes Real-Time Protection.) -- C:\WINDOWS\System32\drivers\mbam.sys [44768] =>.Malwarebytes Corporation®
O58 - SDL:2019/12/02 17:33:48 A . (.Malwarebytes - Malwarebytes Chameleon.) -- C:\WINDOWS\System32\drivers\MbamChameleon.sys [190696] =>.Malwarebytes Corporation®
O58 - SDL:2019/12/02 17:33:40 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys [253664] =>.Malwarebytes Corporation®
O58 - SDL:2013/08/22 12:39:38 A . (.Microsoft Corporation - Medium changer class driver.) -- C:\WINDOWS\System32\drivers\mcd.sys [22016] =>.Microsoft Corporation
O58 - SDL:2013/08/22 13:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [56672] =>.Microsoft®
O58 - SDL:2013/08/22 13:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] =>.Microsoft®
O58 - SDL:2013/08/22 12:40:15 A . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\WINDOWS\System32\drivers\modem.sys [40960] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:36:37 AC . (.Microsoft Corporation - Monitor Driver.) -- C:\WINDOWS\System32\drivers\monitor.sys [30208] =>.Microsoft Corporation
O58 - SDL:2014/11/04 20:25:09 AC . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\WINDOWS\System32\drivers\mouclass.sys [51008] =>.Microsoft®
O58 - SDL:2014/11/04 07:54:47 AC . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\WINDOWS\System32\drivers\mouhid.sys [30208] =>.Microsoft Corporation
O58 - SDL:2017/05/10 19:19:27 A . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\WINDOWS\System32\drivers\mountmgr.sys [101720] =>.Microsoft Windows®
O58 - SDL:2018/08/09 17:41:26 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\WINDOWS\System32\drivers\mpsdrv.sys [73728] =>.Microsoft Corporation
O58 - SDL:2016/09/08 15:00:19 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\WINDOWS\System32\drivers\mrxdav.sys [140800] =>.Microsoft Corporation
O58 - SDL:2019/09/06 17:32:43 A . (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\mrxsmb.sys [401920] =>.Microsoft Corporation
O58 - SDL:2019/02/09 18:46:39 A . (.Microsoft Corporation - Longhorn SMB Downlevel SubRdr.) -- C:\WINDOWS\System32\drivers\mrxsmb10.sys [285184] =>.Microsoft Corporation
O58 - SDL:2017/06/15 07:11:44 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\WINDOWS\System32\drivers\mrxsmb20.sys [201728] =>.Microsoft Corporation
O58 - SDL:2019/02/06 20:32:06 A . (.Microsoft Corporation - Mailslot driver.) -- C:\WINDOWS\System32\drivers\msfs.sys [28672] =>.Microsoft Corporation
O58 - SDL:2014/08/15 01:36:55 A . (.Microsoft Corporation - GPIO Class Extension Driver.) -- C:\WINDOWS\System32\drivers\msgpioclx.sys [146752] =>.Microsoft®
O58 - SDL:2013/08/22 13:43:48 AC . (.Microsoft Corporation - GPIO Button Driver.) -- C:\WINDOWS\System32\drivers\msgpiowin32.sys [41824] =>.Microsoft®
O58 - SDL:2013/08/22 12:39:06 A . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\WINDOWS\System32\drivers\mshidkmdf.sys [8192] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:39:06 A . (.Microsoft Corporation - Pilote direct pour interface HID-UMDF.) -- C:\WINDOWS\System32\drivers\mshidumdf.sys [9728] =>.Microsoft Corporation
O58 - SDL:2018/02/10 20:29:56 AC . (.Microsoft Corporation - ISA Driver.) -- C:\WINDOWS\System32\drivers\msisadrv.sys [17240] =>.Microsoft Windows®
O58 - SDL:2018/03/09 19:57:10 AC . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\WINDOWS\System32\drivers\msiscsi.sys [276816] =>.Microsoft Windows®
O58 - SDL:2013/08/22 12:39:31 A . (.Microsoft Corporation - MS KS Server.) -- C:\WINDOWS\System32\drivers\mskssrv.sys [10624] =>.Microsoft Corporation
O58 - SDL:2014/10/29 03:45:39 A . (.Microsoft Corporation - Pilote de protocole LLDP (Link Layer Discov.) -- C:\WINDOWS\System32\drivers\mslldp.sys [66560] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:39:30 A . (.Microsoft Corporation - MS Proxy Clock.) -- C:\WINDOWS\System32\drivers\mspclock.sys [7040] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:39:31 A . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\WINDOWS\System32\drivers\mspqm.sys [6784] =>.Microsoft Corporation
O58 - SDL:2019/10/15 06:54:21 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\WINDOWS\System32\drivers\msrpc.sys [355576] =>.Microsoft®
O58 - SDL:2013/08/22 13:49:29 AC . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\WINDOWS\System32\drivers\mssmbios.sys [37728] =>.Microsoft®
O58 - SDL:2013/08/22 12:38:38 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\WINDOWS\System32\drivers\mstee.sys [7936] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:37:36 AC . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\WINDOWS\System32\drivers\MTConfig.sys [13312] =>.Microsoft Corporation
O58 - SDL:2016/04/06 22:21:14 A . (.Microsoft Corporation - Pilote de fournisseur UNC multiple.) -- C:\WINDOWS\System32\drivers\mup.sys [114528] =>.Microsoft®
O58 - SDL:2013/08/22 13:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] =>.Microsoft®
O58 - SDL:2019/12/02 17:33:48 A . (.Malwarebytes - Malwarebytes Web Protection.) -- C:\WINDOWS\System32\drivers\mwac.sys [103648] =>.Malwarebytes Corporation®
O58 - SDL:2018/06/30 19:00:50 A . (.Microsoft Corporation - NDIS (Network Driver Interface Specificatio.) -- C:\WINDOWS\System32\drivers\ndis.sys [1113952] =>.Microsoft Windows®
O58 - SDL:2014/10/29 03:46:52 A . (.Microsoft Corporation - Microsoft NDIS Packet Capture Filter Driver.) -- C:\WINDOWS\System32\drivers\ndiscap.sys [43008] =>.Microsoft Corporation
O58 - SDL:2014/10/29 03:45:54 A . (.Microsoft Corporation - Microsoft Network Adapter Multiplexor.) -- C:\WINDOWS\System32\drivers\NdisImPlatform.sys [126464] =>.Microsoft Corporation
O58 - SDL:2014/11/08 05:00:41 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\WINDOWS\System32\drivers\ndistapi.sys [24576] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:37:34 A . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\WINDOWS\System32\drivers\ndisuio.sys [60416] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:36:25 A . (.Microsoft Corporation - Énumérateur de cartes réseau virtuelles Mic.) -- C:\WINDOWS\System32\drivers\NdisVirtualBus.sys [16384] =>.Microsoft Corporation
O58 - SDL:2016/04/05 23:37:24 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\WINDOWS\System32\drivers\ndiswan.sys [205824] =>.Microsoft Corporation
O58 - SDL:2018/01/02 06:39:05 A . (.Microsoft Corporation - NDIS Proxy.) -- C:\WINDOWS\System32\drivers\ndproxy.sys [72192] =>.Microsoft Corporation
O58 - SDL:2014/10/29 03:45:16 A . (.Microsoft Corporation - Windows Network Data Usage Monitoring Drive.) -- C:\WINDOWS\System32\drivers\Ndu.sys [103424] =>.Microsoft Corporation
O58 - SDL:2018/01/02 06:39:31 A . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\WINDOWS\System32\drivers\netbios.sys [48128] =>.Microsoft Corporation
O58 - SDL:2019/02/21 18:34:34 A . (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netbt.sys [281088] =>.Microsoft Corporation
O58 - SDL:2019/10/09 20:38:16 A . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\WINDOWS\System32\drivers\netio.sys [470256] =>.Microsoft®
O58 - SDL:2018/04/05 18:47:55 A . (.Microsoft Corporation - Virtual NDIS6.3 Miniport.) -- C:\WINDOWS\System32\drivers\netvsc63.sys [87552] =>.Microsoft Corporation
O58 - SDL:2019/02/21 18:36:02 A . (.Microsoft Corporation - NPFS Driver.) -- C:\WINDOWS\System32\drivers\npfs.sys [59392] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:38:22 AC . (.Microsoft Corporation - Named pipe service triggers.) -- C:\WINDOWS\System32\drivers\npsvctrig.sys [23040] =>.Microsoft Corporation
O58 - SDL:2017/08/13 18:19:15 A . (.Microsoft Corporation - NSI Proxy.) -- C:\WINDOWS\System32\drivers\nsiproxy.sys [40960] =>.Microsoft Corporation
O58 - SDL:2019/05/25 03:32:39 A . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2013432] =>.Microsoft Windows®
O58 - SDL:2013/08/22 14:25:41 A . (.Microsoft Corporation - NULL Driver.) -- C:\WINDOWS\System32\drivers\null.sys [5632] =>.Microsoft Corporation
O58 - SDL:2013/08/22 13:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] =>.Microsoft®
O58 - SDL:2013/08/22 13:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [168288] =>.Microsoft®
O58 - SDL:2018/02/10 20:29:56 A . (.Microsoft Corporation - Filtre AGP NForce NT.) -- C:\WINDOWS\System32\drivers\NV_AGP.SYS [124760] =>.Microsoft Windows®
O58 - SDL:2018/01/02 06:38:07 A . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\WINDOWS\System32\drivers\nwifi.sys [445952] =>.Microsoft Corporation
O58 - SDL:2018/01/02 06:38:00 A . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\WINDOWS\System32\drivers\pacer.sys [151040] =>.Microsoft Corporation
O58 - SDL:2016/08/11 19:33:00 AC . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\parport.sys [96256] =>.Microsoft Corporation
O58 - SDL:2014/10/15 09:32:36 A . (.Microsoft Corporation - Partition Management Driver.) -- C:\WINDOWS\System32\drivers\partmgr.sys [88896] =>.Microsoft®
O58 - SDL:2018/02/10 20:29:57 AC . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\WINDOWS\System32\drivers\pci.sys [274272] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:31 AC . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\pciide.sys [14688] =>.Microsoft®
O58 - SDL:2013/08/22 13:43:32 AC . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\WINDOWS\System32\drivers\pciidex.sys [48992] =>.Microsoft®
O58 - SDL:2013/08/22 13:49:30 AC . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\WINDOWS\System32\drivers\pcmcia.sys [114528] =>.Microsoft®
O58 - SDL:2013/08/22 13:39:15 A . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\WINDOWS\System32\drivers\pcw.sys [50016] =>.Microsoft®
O58 - SDL:2017/07/08 04:16:36 A . (.Microsoft Corporation - Power Dependency Coordinator Driver.) -- C:\WINDOWS\System32\drivers\pdc.sys [86360] =>.Microsoft Windows®
O58 - SDL:2014/03/18 11:14:00 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\WINDOWS\System32\drivers\PEAuth.sys [663040] =>.Microsoft Corporation
O58 - SDL:2014/10/29 03:46:37 AC . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\WINDOWS\System32\drivers\portcls.sys [272384] =>.Microsoft Corporation
O58 - SDL:2018/06/20 17:58:04 AC . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\processr.sys [92672] =>.Microsoft Corporation
O58 - SDL:2014/10/29 03:47:40 A . (.Microsoft Corporation - Pilote du support de Microsoft Quality Wind.) -- C:\WINDOWS\System32\drivers\qwavedrv.sys [47104] =>.Microsoft Corporation
O58 - SDL:2014/10/29 03:48:01 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\WINDOWS\System32\drivers\rasacd.sys [17408] =>.Microsoft Corporation
O58 - SDL:2016/02/02 19:16:20 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\rasl2tp.sys [112640] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:36:37 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\raspppoe.sys [84992] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:35:51 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\WINDOWS\System32\drivers\raspptp.sys [107520] =>.Microsoft Corporation
O58 - SDL:2014/10/29 03:45:50 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\WINDOWS\System32\drivers\rassstp.sys [93696] =>.Microsoft Corporation
O58 - SDL:2019/09/06 17:33:27 A . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) -- C:\WINDOWS\System32\drivers\rdbss.sys [403456] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:38:52 AC . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\WINDOWS\System32\drivers\rdpbus.sys [22528] =>.Microsoft Corporation
O58 - SDL:2019/07/11 05:02:41 A . (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [195072] =>.Microsoft Corporation
O58 - SDL:2014/10/29 04:56:04 A . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\WINDOWS\System32\drivers\rdpvideominiport.sys [27456] =>.Microsoft®
O58 - SDL:2018/01/02 09:00:28 A . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\WINDOWS\System32\drivers\rdyboost.sys [242520] =>.Microsoft Windows®
O58 - SDL:2019/02/09 19:53:05 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\WINDOWS\System32\drivers\refs.sys [923384] =>.Microsoft Windows®
O58 - SDL:2015/11/05 09:59:33 A . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\WINDOWS\System32\drivers\rmcast.sys [145408] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:38:44 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\WINDOWS\System32\drivers\RNDISMP.sys [32256] =>.Microsoft Corporation
O58 - SDL:2014/10/29 03:48:13 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\WINDOWS\System32\drivers\rootmdm.sys [11776] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:36:34 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) -- C:\WINDOWS\System32\drivers\rspndr.sys [80384] =>.Microsoft Corporation
O58 - SDL:2013/06/18 15:46:17 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Dr.) -- C:\WINDOWS\System32\drivers\Rt630x64.sys [591360] =>.Realtek
O58 - SDL:2012/06/14 03:24:00 A . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/V.) -- C:\WINDOWS\System32\drivers\RtsUStor.sys [252048] =>.Realtek Semiconductor Corp®
O58 - SDL:2013/08/22 13:39:15 AC . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\WINDOWS\System32\drivers\sbp2port.sys [107872] =>.Microsoft®
O58 - SDL:2017/12/05 17:56:22 A . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce.) -- C:\WINDOWS\System32\drivers\scfilter.sys [40960] =>.Microsoft Corporation
O58 - SDL:2013/08/22 13:43:32 A . (.Microsoft Corporation - SCSI Port Driver.) -- C:\WINDOWS\System32\drivers\scsiport.sys [170848] =>.Microsoft®
O58 - SDL:2015/03/13 05:03:31 AC . (.Microsoft Corporation - Pilote du bus numérique sécurisé (SD).) -- C:\WINDOWS\System32\drivers\sdbus.sys [239424] =>.Microsoft®
O58 - SDL:2014/03/18 11:13:37 AC . (.Microsoft Corporation - Pilote de classe de stockage SD.) -- C:\WINDOWS\System32\drivers\sdstor.sys [79192] =>.Microsoft®
O58 - SDL:2013/08/22 16:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [23040] =>.Rovi Corporation
O58 - SDL:2013/08/22 13:43:31 A . (.Microsoft Corporation - Serial Class Extension.) -- C:\WINDOWS\System32\drivers\SerCx.sys [69472] =>.Microsoft®
O58 - SDL:2014/03/18 11:13:57 A . (.Microsoft Corporation - Serial Class Extension V2.) -- C:\WINDOWS\System32\drivers\SerCx2.sys [146776] =>.Microsoft®
O58 - SDL:2016/08/11 19:33:08 AC . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\WINDOWS\System32\drivers\serenum.sys [23040] =>.Microsoft Corporation
O58 - SDL:2016/08/11 19:33:02 AC . (.Microsoft Corporation - Pilote de périphérique série.) -- C:\WINDOWS\System32\drivers\serial.sys [83456] =>.Microsoft Corporation
O58 - SDL:2014/11/04 07:55:15 AC . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\WINDOWS\System32\drivers\sermouse.sys [26112] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:40:00 AC . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\WINDOWS\System32\drivers\sfloppy.sys [17408] =>.Microsoft Corporation
O58 - SDL:2013/08/22 13:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] =>.Microsoft®
O58 - SDL:2013/08/22 13:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] =>.Microsoft®
O58 - SDL:2013/08/22 12:40:16 A . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\WINDOWS\System32\drivers\smclib.sys [19968] =>.Microsoft Corporation
O58 - SDL:2017/01/11 18:28:42 AC . (.Microsoft Corporation - Storage Spaces Driver.) -- C:\WINDOWS\System32\drivers\spaceport.sys [422744] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:31 A . (.Microsoft Corporation - SPB Class Extension.) -- C:\WINDOWS\System32\drivers\SpbCx.sys [72032] =>.Microsoft®
O58 - SDL:2019/02/21 18:34:38 A . (.Microsoft Corporation - Server driver.) -- C:\WINDOWS\System32\drivers\srv.sys [416256] =>.Microsoft Corporation
O58 - SDL:2019/02/21 18:35:13 A . (.Microsoft Corporation - Pilote de serveur SMB 2.0.) -- C:\WINDOWS\System32\drivers\srv2.sys [684032] =>.Microsoft Corporation
O58 - SDL:2019/04/10 10:06:56 A . (.Microsoft Corporation - Server Network driver.) -- C:\WINDOWS\System32\drivers\srvnet.sys [243200] =>.Microsoft Corporation
O58 - SDL:2013/08/22 13:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] =>.Microsoft®
O58 - SDL:2013/08/22 13:43:31 A . (.Microsoft Corporation - MS AHCI Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storahci.sys [107872] =>.Microsoft®
O58 - SDL:2017/05/15 23:09:32 AC . (.Microsoft Corporation - Microsoft NVM Express Storport Miniport Dri.) -- C:\WINDOWS\System32\drivers\stornvme.sys [57688] =>.Microsoft Windows®
O58 - SDL:2017/10/05 08:17:30 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\WINDOWS\System32\drivers\storport.sys [380248] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:36:48 A . (.Microsoft Corporation - Storage VSC Driver.) -- C:\WINDOWS\System32\drivers\storvsc.sys [45888] =>.Microsoft®
O58 - SDL:2017/01/12 16:03:31 A . (.Microsoft Corporation - Storage vsp Driver.) -- C:\WINDOWS\System32\drivers\storvsp.sys [66560] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:39:26 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\WINDOWS\System32\drivers\stream.sys [67584] =>.Microsoft Corporation
O58 - SDL:2014/10/29 04:59:47 AC . (.Microsoft Corporation - Plug and Play Software Device Enumerator.) -- C:\WINDOWS\System32\drivers\swenum.sys [14144] =>.Microsoft®
O58 - SDL:2013/08/22 12:39:50 A . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\WINDOWS\System32\drivers\tape.sys [29696] =>.Microsoft Corporation
O58 - SDL:2014/10/29 05:13:01 A . (.Microsoft Corporation - Export driver for kernel mode TPM API.) -- C:\WINDOWS\System32\drivers\tbs.sys [21824] =>.Microsoft®
O58 - SDL:2019/07/11 07:02:31 A . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\WINDOWS\System32\drivers\tcpip.sys [2446072] =>.Microsoft®
O58 - SDL:2014/07/16 19:05:48 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\WINDOWS\System32\drivers\tcpipreg.sys [49152] =>.Microsoft Corporation
O58 - SDL:2013/08/22 14:25:35 A . (.Microsoft Corporation - TDI Wrapper.) -- C:\WINDOWS\System32\drivers\tdi.sys [30208] =>.Microsoft Corporation
O58 - SDL:2017/08/02 04:17:16 A . (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [107520] =>.Microsoft Corporation
O58 - SDL:2014/03/18 10:41:31 AC . (.Microsoft Corporation - Terminal Server Input Driver.) -- C:\WINDOWS\System32\drivers\terminpt.sys [37216] =>.Microsoft®
O58 - SDL:2019/08/13 18:15:15 A . (.Microsoft Corporation - Kernel Transaction Manager Driver.) -- C:\WINDOWS\System32\drivers\tm.sys [121288] =>.Microsoft®
O58 - SDL:2015/09/29 13:24:42 AC . (.Microsoft Corporation - Pilote de périphérique TPM.) -- C:\WINDOWS\System32\drivers\tpm.sys [155480] =>.Microsoft®
O58 - SDL:2013/08/22 12:37:28 A . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du.) -- C:\WINDOWS\System32\drivers\TsUsbFlt.sys [56320] =>.Microsoft Corporation
O58 - SDL:2014/10/29 03:46:43 AC . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\WINDOWS\System32\drivers\TsUsbGD.sys [29696] =>.Microsoft Corporation
O58 - SDL:2015/09/04 20:24:04 A . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\WINDOWS\System32\drivers\tunnel.sys [154112] =>.Microsoft Corporation
O58 - SDL:2013/08/22 13:43:33 A . (.Microsoft Corporation - Filtre MS AGPv3.5.) -- C:\WINDOWS\System32\drivers\UAGP35.SYS [64864] =>.Microsoft®
O58 - SDL:2013/08/22 13:43:33 AC . (.Microsoft Corporation - Microsoft Uasp Driver.) -- C:\WINDOWS\System32\drivers\uaspstor.sys [74080] =>.Microsoft®
O58 - SDL:2018/05/04 00:02:07 AC . (.Microsoft Corporation - USB Controller Extension.) -- C:\WINDOWS\System32\drivers\UCX01000.SYS [187728] =>.Microsoft Windows®
O58 - SDL:2019/02/09 18:49:13 A . (.Microsoft Corporation - UDF File System Driver.) -- C:\WINDOWS\System32\drivers\udfs.sys [316416] =>.Microsoft Corporation
O58 - SDL:2018/05/23 06:45:28 AC . (.Microsoft Corporation - UEFI Driver for NT.) -- C:\WINDOWS\System32\drivers\uefi.sys [27480] =>.Microsoft Windows®
O58 - SDL:2018/02/10 20:29:57 A . (.Microsoft Corporation - Filtre ULi AGPv3.0 pour plateformes à proce.) -- C:\WINDOWS\System32\drivers\ULIAGPKX.SYS [65888] =>.Microsoft Windows®
O58 - SDL:2013/08/22 12:38:59 AC . (.Microsoft Corporation - User-Mode Bus Enumerator.) -- C:\WINDOWS\System32\drivers\umbus.sys [46080] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:38:58 AC . (.Microsoft Corporation - Generic pass-through driver.) -- C:\WINDOWS\System32\drivers\umpass.sys [11776] =>.Microsoft Corporation
O58 - SDL:2015/04/25 03:25:32 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\WINDOWS\System32\drivers\usb8023.sys [20992] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:39:27 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\WINDOWS\System32\drivers\USBCAMD2.sys [32512] =>.Microsoft Corporation
O58 - SDL:2017/09/07 00:07:47 AC . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\WINDOWS\System32\drivers\usbccgp.sys [158552] =>.Microsoft Windows®
O58 - SDL:2014/10/29 03:47:05 AC . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\WINDOWS\System32\drivers\usbcir.sys [98304] =>.Microsoft Corporation
O58 - SDL:2015/10/11 07:34:30 AC . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\WINDOWS\System32\drivers\usbd.sys [27992] =>.Microsoft®
O58 - SDL:2016/01/09 02:38:04 AC . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbehci.sys [91992] =>.Microsoft®
O58 - SDL:2017/09/06 22:17:03 AC . (.Microsoft Corporation - Pilote de concentrateur USB par défaut.) -- C:\WINDOWS\System32\drivers\usbhub.sys [461144] =>.Microsoft Windows®
O58 - SDL:2015/10/11 07:34:30 AC . (.Microsoft Corporation - Pilote de concentrateur USB3.) -- C:\WINDOWS\System32\drivers\USBHUB3.SYS [468824] =>.Microsoft®
O58 - SDL:2015/10/10 19:41:14 AC . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbohci.sys [30208] =>.Microsoft Corporation
O58 - SDL:2018/05/04 00:02:07 AC . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\WINDOWS\System32\drivers\usbport.sys [439640] =>.Microsoft Windows®
O58 - SDL:2013/08/22 12:36:33 AC . (.Microsoft Corporation - USB Printer driver.) -- C:\WINDOWS\System32\drivers\usbprint.sys [26112] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:39:39 A . (.Microsoft Corporation - Gestionnaire de stratégie de redirection US.) -- C:\WINDOWS\System32\drivers\usbrpm.sys [30720] =>.Microsoft Corporation
O58 - SDL:2016/01/31 20:16:21 AC . (.Microsoft Corporation - Pilote de classe de stockage de masse USB.) -- C:\WINDOWS\System32\drivers\USBSTOR.SYS [148832] =>.Microsoft®
O58 - SDL:2015/10/10 19:41:17 AC . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbuhci.sys [37376] =>.Microsoft Corporation
O58 - SDL:2018/05/04 00:02:07 AC . (.Microsoft Corporation - Pilote XHCI USB.) -- C:\WINDOWS\System32\drivers\USBXHCI.SYS [325456] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:37:27 AC . (.Microsoft Corporation - Virtual Drive Root Enumerator.) -- C:\WINDOWS\System32\drivers\vdrvroot.sys [37728] =>.Microsoft®
O58 - SDL:2014/03/18 11:13:39 A . (.Microsoft Corporation - Driver Verifier Extension.) -- C:\WINDOWS\System32\drivers\VerifierExt.sys [175960] =>.Microsoft®
O58 - SDL:2019/05/25 01:19:16 AC . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\WINDOWS\System32\drivers\vhdmp.sys [551152] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\viaide.sys [19808] =>.Microsoft®
O58 - SDL:2019/09/27 19:14:10 A . (.Microsoft Corporation - Pilote d’infrastructure de virtualisation M.) -- C:\WINDOWS\System32\drivers\Vid.sys [220160] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:39:31 A . (.Microsoft Corporation - Video Port Driver.) -- C:\WINDOWS\System32\drivers\videoprt.sys [49152] =>.Microsoft Corporation
O58 - SDL:2014/10/29 04:56:50 A . (.Microsoft Corporation - Hyper-V VMBus KMCL.) -- C:\WINDOWS\System32\drivers\vmbkmcl.sys [89368] =>.Microsoft®
O58 - SDL:2018/01/02 06:39:34 A . (.Microsoft Corporation - Hyper-V VMBus Root KMCL.) -- C:\WINDOWS\System32\drivers\vmbkmclr.sys [76800] =>.Microsoft Corporation
O58 - SDL:2014/10/29 04:56:50 A . (.Microsoft Corporation - Microsoft Hyper-V Virtual Machine Bus Child.) -- C:\WINDOWS\System32\drivers\vmbus.sys [97048] =>.Microsoft®
O58 - SDL:2013/08/22 12:37:50 A . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\WINDOWS\System32\drivers\VMBusHID.sys [21760] =>.Microsoft Corporation
O58 - SDL:2018/08/13 22:17:20 A . (.Microsoft Corporation - Microsoft Hyper-V Virtual Machine Bus Root.) -- C:\WINDOWS\System32\drivers\vmbusr.sys [130048] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:38:23 A . (.Microsoft Corporation - Virtual Machine Generation Counter.) -- C:\WINDOWS\System32\drivers\vmgencounter.sys [11264] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:38:37 A . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\WINDOWS\System32\drivers\vms3cap.sys [7168] =>.Microsoft Corporation
O58 - SDL:2014/10/29 04:56:50 A . (.Microsoft Corporation - Virtual Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\vmstorfl.sys [49944] =>.Microsoft®
O58 - SDL:2016/04/11 07:21:51 AC . (.Microsoft Corporation - Volume Manager Driver.) -- C:\WINDOWS\System32\drivers\volmgr.sys [74584] =>.Microsoft®
O58 - SDL:2017/07/08 04:46:18 A . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) -- C:\WINDOWS\System32\drivers\volmgrx.sys [377688] =>.Microsoft Windows®
O58 - SDL:2016/03/14 17:50:13 AC . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [316760] =>.Microsoft®
O58 - SDL:2016/01/26 20:15:40 A . (.Microsoft Corporation - Virtual PCI Bus.) -- C:\WINDOWS\System32\drivers\vpci.sys [72024] =>.Microsoft®
O58 - SDL:2018/03/08 20:53:08 A . (.Microsoft Corporation - Virtual PCI VSP Driver.) -- C:\WINDOWS\System32\drivers\vpcivsp.sys [65536] =>.Microsoft Corporation
O58 - SDL:2013/08/22 13:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [168800] =>.Microsoft®
O58 - SDL:2013/08/22 13:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] =>.Microsoft®
O58 - SDL:2016/08/13 01:03:08 A . (.Microsoft Corporation - Pilote de bus WiFi virtuel.) -- C:\WINDOWS\System32\drivers\vwifibus.sys [24576] =>.Microsoft Corporation
O58 - SDL:2016/08/13 01:02:30 A . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\WINDOWS\System32\drivers\vwififlt.sys [71680] =>.Microsoft Corporation
O58 - SDL:2016/08/13 01:01:24 A . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\WINDOWS\System32\drivers\vwifimp.sys [38912] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:39:15 AC . (.Microsoft Corporation - Wacom Serial Pen Tablet HID Driver.) -- C:\WINDOWS\System32\drivers\wacompen.sys [26752] =>.Microsoft Corporation
O58 - SDL:2018/12/08 20:00:49 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\WINDOWS\System32\drivers\wanarp.sys [80384] =>.Microsoft Corporation
O58 - SDL:2014/03/18 11:14:14 A . (.Microsoft Corporation - Watchdog Driver.) -- C:\WINDOWS\System32\drivers\watchdog.sys [54272] =>.Microsoft Corporation
O58 - SDL:2017/02/10 15:37:28 A . (.Microsoft Corporation - Microsoft antimalware boot driver.) -- C:\WINDOWS\System32\drivers\WdBoot.sys [46600] =>.Microsoft®
O58 - SDL:2013/08/22 14:25:41 A . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) -- C:\WINDOWS\System32\drivers\Wdf01000.sys [839488] =>.Microsoft®
O58 - SDL:2017/01/12 17:51:18 A . (.Microsoft Corporation - Microsoft antimalware file system filter dr.) -- C:\WINDOWS\System32\drivers\WdFilter.sys [274776] =>.Microsoft Windows®
O58 - SDL:2013/08/22 14:25:41 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\WINDOWS\System32\drivers\WdfLdr.sys [60224] =>.Microsoft®
O58 - SDL:2017/01/12 17:51:18 A . (.Microsoft Corporation - Microsoft Network Realtime Inspection Drive.) -- C:\WINDOWS\System32\drivers\WdNisDrv.sys [117592] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:39:04 A . (.Microsoft Corporation - Windows Error Reporting Kernel Driver.) -- C:\WINDOWS\System32\drivers\werkernel.sys [38240] =>.Microsoft®
O58 - SDL:2019/04/08 22:40:07 A . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) -- C:\WINDOWS\System32\drivers\wfplwfs.sys [136432] =>.Microsoft Windows®
O58 - SDL:2014/10/29 05:09:06 A . (.Microsoft Corporation - Wim file system Driver.) -- C:\WINDOWS\System32\drivers\wimmount.sys [33600] =>.Microsoft®
O58 - SDL:2014/10/29 04:56:50 A . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\WINDOWS\System32\drivers\winhv.sys [61208] =>.Microsoft®
O58 - SDL:2017/04/09 21:40:03 A . (.Microsoft Corporation - Windows Hypervisor Root Interface Driver.) -- C:\WINDOWS\System32\drivers\winhvr.sys [48128] =>.Microsoft Corporation
O58 - SDL:2015/10/10 19:40:25 AC . (.Microsoft Corporation - Windows WinUSB Class Driver.) -- C:\WINDOWS\System32\drivers\winusb.sys [78848] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:40:04 AC . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\WINDOWS\System32\drivers\wmiacpi.sys [16384] =>.Microsoft Corporation
O58 - SDL:2013/08/22 14:25:41 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\WINDOWS\System32\drivers\wmilib.sys [18272] =>.Microsoft®
O58 - SDL:2019/09/07 20:37:13 A . (.Microsoft Corporation - Windows Overlay Filter.) -- C:\WINDOWS\System32\drivers\wof.sys [157432] =>.Microsoft®
O58 - SDL:2014/10/29 04:57:42 A . (.Microsoft Corporation - Family Safety Filter Driver.) -- C:\WINDOWS\System32\drivers\wpcfltr.sys [54784] =>.Microsoft®
O58 - SDL:2013/08/22 13:36:12 A . (.Microsoft Corporation - Windows Portable Device Upper Class Filter.) -- C:\WINDOWS\System32\drivers\WpdUpFltr.sys [26976] =>.Microsoft®
O58 - SDL:2013/08/22 14:25:41 A . (.Microsoft Corporation - WPP Trace Recorder.) -- C:\WINDOWS\System32\drivers\WppRecorder.sys [23392] =>.Microsoft®
O58 - SDL:2019/08/20 04:49:36 A . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\WINDOWS\System32\drivers\ws2ifsl.sys [22016] =>.Microsoft Corporation
O58 - SDL:2013/08/22 12:39:58 AC . (.Microsoft Corporation - Web Services Print Device Driver.) -- C:\WINDOWS\System32\drivers\WSDPrint.sys [20992] =>.Microsoft Corporation
O58 - SDL:2014/10/29 03:46:27 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFPf.sys [113664] =>.Microsoft Corporation
O58 - SDL:2014/10/29 03:46:13 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFRd.sys [226304] =>.Microsoft Corporation
O58 - SDL:2016/12/21 21:54:56 A . (...) -- C:\WINDOWS\System32\ambakdrv.sys [51120] =>.CHENGDU AOMEI Tech Co., Ltd.®
O58 - SDL:2016/12/21 21:52:42 A . (...) -- C:\WINDOWS\System32\ammntdrv.sys [171952] =>.CHENGDU AOMEI Tech Co., Ltd.®
O58 - SDL:2017/09/01 17:12:38 A . (...) -- C:\WINDOWS\System32\amwrtdrv.sys [38320] =>.CHENGDU AOMEI Tech Co., Ltd.®
O58 - SDL:2012/06/14 01:41:10 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\athw8x.sys [3578368] =>.Qualcomm Atheros Communications, Inc.
O58 - SDL:2019/10/15 04:48:07 A . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\WINDOWS\System32\win32k.sys [4169216] =>.Microsoft Corporation

---\\ DERNIERS FICHIERS MODIFIÉS OU CRÉÉS (Utilisateur) (2) - 16s
O61 - LFC: 2019/11/20 19:30:24 A . (..) -- C:\Users\test\Google Drive\Maternelle 2019-2020\Jeu lettres\LETTR.EXE [815872]
O61 - LFC: 2019/11/20 19:30:24 A . (..) -- C:\Users\test\Google Drive\Maternelle 2019-2020\Jeu lettres\SOURIS2.EXE [221440]

---\\ ASSOCIATION Shell Spawning (11) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®

---\\ MENU DE DÉMARRAGE INTERNET (16) - 0s
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.AVAST Software - Avast Secure Browser.) -- C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe =>.AVAST Software s.r.o.®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.AVAST Software - Avast Secure Browser.) -- C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe =>.AVAST Software
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.AVAST Software - Avast Secure Browser.) -- C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe =>.AVAST Software
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.AVAST Software - Avast Secure Browser.) -- C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe =>.AVAST Software
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation

---\\ RECHERCHE D'INFECTION SUR LES NAVIGATEURS (4) - 22s
O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKCU] [64Bits]{EC322C0D-29AC-4199-80D6-FC0F9AFC247B} [DefaultScope] - () - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM] [64Bits]{EC322C0D-29AC-4199-80D6-FC0F9AFC247B} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com

---\\ ÉNUMÈRE LES SERVICES DÉMARRÉS PAR Svchost (36) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\WINDOWS\System32\aelupsvc.dll [214528] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [158720] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [158720] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [329216] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1362432] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1080320] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [929280] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [31744] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [110080] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [151040] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [110592] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1265152] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [230400] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [71168] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [135168] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [228864] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [346112] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [86528] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [101376] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [348672] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service d’infrastructure de localisation Wi.) -- C:\Windows\System32\GeofenceMonitorService.dll [522240] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [1639424] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [59392] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [206848] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [166912] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [102912] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [542720] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [233472] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [73728] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [452608] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [313344] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [3718144] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [933376] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [640000] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [187904] =>.Microsoft Corporation
O83 - Search Svchost Services: MsKeyboardFilter (MsKeyboardFilter) . (.Microsoft Corporation - SvcHost Service for Microsoft Keyboard Filt.) -- C:\Windows\System32\KeyboardFilterSvc.dll [93008] =>.Microsoft Windows®

---\\ LISTE DES EXCEPTIONS DU PAREFEU WINDOWS (84) - 6s
O87 - FAEL: "WMP-In-UDP" [In-None-P17-TRUE] .(...) -- U:\Program Files\Windows Media Player\wmplayer.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "WMP-Out-UDP" [Out-None-P17-TRUE] .(...) -- U:\Program Files\Windows Media Player\wmplayer.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "WMP-Out-TCP" [Out-None-P6-TRUE] .(...) -- U:\Program Files\Windows Media Player\wmplayer.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "WMPNSS-WMP-In-UDP-NoScope" [In-None-P17-FALSE] .(...) -- U:\Program Files\Windows Media Player\wmplayer.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "WMPNSS-WMP-Out-UDP-NoScope" [Out-None-P17-FALSE] .(...) -- U:\Program Files\Windows Media Player\wmplayer.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "WMPNSS-WMP-Out-TCP-NoScope" [Out-None-P6-FALSE] .(...) -- U:\Program Files\Windows Media Player\wmplayer.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "WMPNSS-In-UDP-NoScope" [In-None-P17-FALSE] .(...) -- U:\Program Files\Windows Media Player\wmpnetwk.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "WMPNSS-Out-UDP-NoScope" [Out-None-P17-FALSE] .(...) -- U:\Program Files\Windows Media Player\wmpnetwk.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "WMPNSS-In-TCP-NoScope" [In-None-P6-FALSE] .(...) -- U:\Program Files\Windows Media Player\wmpnetwk.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "WMPNSS-Out-TCP-NoScope" [Out-None-P6-FALSE] .(...) -- U:\Program Files\Windows Media Player\wmpnetwk.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "WMPNSS-WMP-In-UDP" [In-None-P17-TRUE] .(...) -- U:\Program Files\Windows Media Player\wmplayer.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "WMPNSS-WMP-Out-UDP" [Out-None-P17-TRUE] .(...) -- U:\Program Files\Windows Media Player\wmplayer.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "WMPNSS-WMP-Out-TCP" [Out-None-P6-TRUE] .(...) -- U:\Program Files\Windows Media Player\wmplayer.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "WMPNSS-In-UDP" [In-None-P17-TRUE] .(...) -- U:\Program Files\Windows Media Player\wmpnetwk.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "WMPNSS-Out-UDP" [Out-None-P17-TRUE] .(...) -- U:\Program Files\Windows Media Player\wmpnetwk.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "WMPNSS-In-TCP" [In-None-P6-TRUE] .(...) -- U:\Program Files\Windows Media Player\wmpnetwk.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "WMPNSS-Out-TCP" [Out-None-P6-TRUE] .(...) -- U:\Program Files\Windows Media Player\wmpnetwk.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "WMP-Out-TCP_1" [Out-None-P6-FALSE] .(...) -- U:\Program Files\Windows Media Player\wmplayer.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "WMP-Out-UDP_1" [Out-None-P17-FALSE] .(...) -- U:\Program Files\Windows Media Player\wmplayer.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "WMP-In-UDP_1" [In-None-P17-FALSE] .(...) -- U:\Program Files\Windows Media Player\wmplayer.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "WMPNSS-Out-TCP_1" [Out-None-P6-FALSE] .(...) -- U:\Program Files\Windows Media Player\wmpnetwk.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "WMPNSS-In-TCP_1" [In-None-P6-FALSE] .(...) -- U:\Program Files\Windows Media Player\wmpnetwk.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "WMPNSS-Out-UDP_1" [Out-None-P17-FALSE] .(...) -- U:\Program Files\Windows Media Player\wmpnetwk.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "WMPNSS-In-UDP_1" [In-None-P17-FALSE] .(...) -- U:\Program Files\Windows Media Player\wmpnetwk.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "WMPNSS-WMP-Out-TCP_1" [Out-None-P6-FALSE] .(...) -- U:\Program Files\Windows Media Player\wmplayer.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "WMPNSS-WMP-Out-UDP_1" [Out-None-P17-FALSE] .(...) -- U:\Program Files\Windows Media Player\wmplayer.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "WMPNSS-WMP-In-UDP_1" [In-None-P17-FALSE] .(...) -- U:\Program Files\Windows Media Player\wmplayer.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{E58DBC2D-275D-457A-BA59-0AFF8BF97E4B}" [In-None-P17-TRUE] .(...) -- C:\Users\pflores\AppData\Local\Temp\7zS51A8\hppiw.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{ED646490-1884-4EA0-BF70-D08B61336F25}" [In-None-P6-TRUE] .(...) -- C:\Users\pflores\AppData\Local\Temp\7zS51A8\hppiw.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "UDP Query User{3C8AEE0A-D529-44D2-A416-BB9BBC51318A}C:\program files (x86)\sharp\sharpdesk\ftpserver.exe" [In-None-P17-TRUE] .(.SHARP CORPORATION - Network Scanner Tool.) -- C:\program files (x86)\sharp\sharpdesk\ftpserver.exe =>.SHARP Corporation
O87 - FAEL: "TCP Query User{9A376745-B87D-4042-A219-1C339B3658C7}C:\program files (x86)\sharp\sharpdesk\ftpserver.exe" [In-None-P6-TRUE] .(.SHARP CORPORATION - Network Scanner Tool.) -- C:\program files (x86)\sharp\sharpdesk\ftpserver.exe =>.SHARP Corporation
O87 - FAEL: "UDP Query User{4219D009-34C8-471D-AFEA-E02830994C11}C:\program files (x86)\sharp\sharpdesk\ftpserver.exe" [In-None-P17-TRUE] .(.SHARP CORPORATION - Network Scanner Tool.) -- C:\program files (x86)\sharp\sharpdesk\ftpserver.exe =>.SHARP Corporation
O87 - FAEL: "TCP Query User{D4D0C912-D455-4CCE-B874-7BF45779FEDA}C:\program files (x86)\sharp\sharpdesk\ftpserver.exe" [In-None-P6-TRUE] .(.SHARP CORPORATION - Network Scanner Tool.) -- C:\program files (x86)\sharp\sharpdesk\ftpserver.exe =>.SHARP Corporation
O87 - FAEL: "{BDD55A19-C8FE-4BAE-A03C-7CAD0A0619EB}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{2FB89C8D-BFEA-45C9-8AD2-3BDC42704010}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{C87523A3-DAB3-480A-8D9C-2D72396C3909}" [In-None-P6-TRUE] .(.CyberLink Corp. - PowerDVD 10.0.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD10.EXE =>.CyberLink Corp.®
O87 - FAEL: "{BCD6E491-3FAF-4BE7-A3A1-723AB5BF87FF}" [In-None-P6-TRUE] .(.CyberLink Corp. - CyberLink PowerDVD Cinema 10 Main Program.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD Cinema\PowerDVDCinema10.exe =>.CyberLink Corp.®
O87 - FAEL: "{7C86E9C9-1739-4F46-9AAE-E8DCBD25458A}" [In-None-P6-TRUE] .(.CyberLink Corp. - PowerDirector 10.) -- C:\Program Files (x86)\CyberLink\PowerDirector10\PDR10.EXE =>.CyberLink Corp.®
O87 - FAEL: "TCP Query User{F404D79E-9BD9-4C4C-9A30-997C7D9B4313}C:\program files (x86)\sharp\sharpdesk\ftpserver.exe" [In-None-P6-TRUE] .(.SHARP CORPORATION - Network Scanner Tool.) -- C:\program files (x86)\sharp\sharpdesk\ftpserver.exe =>.SHARP Corporation
O87 - FAEL: "UDP Query User{910ADBFB-1A92-4348-85C0-5987D0C5C250}C:\program files (x86)\sharp\sharpdesk\ftpserver.exe" [In-None-P17-TRUE] .(.SHARP CORPORATION - Network Scanner Tool.) -- C:\program files (x86)\sharp\sharpdesk\ftpserver.exe =>.SHARP Corporation
O87 - FAEL: "TCP Query User{16C03704-D654-4FD4-A9D9-C7B1AEDAA48E}C:\users\test\appdata\local\temp\igne14f.tmp\lmiignition.exe" [In-None-P6-TRUE] .(...) -- C:\users\test\appdata\local\temp\igne14f.tmp\lmiignition.exe (.not file.) =>.Temporary file not necessary
O87 - FAEL: "UDP Query User{B66A5F0A-D16B-45BB-9B9C-2C1B9D69347C}C:\users\test\appdata\local\temp\igne14f.tmp\lmiignition.exe" [In-None-P17-TRUE] .(...) -- C:\users\test\appdata\local\temp\igne14f.tmp\lmiignition.exe (.not file.) =>.Temporary file not necessary
O87 - FAEL: "TCP Query User{77F08732-1C6A-4C7F-86D5-B163E88D9678}C:\users\test\appdata\local\temp\ign6248.tmp\lmiignition.exe" [In-None-P6-TRUE] .(...) -- C:\users\test\appdata\local\temp\ign6248.tmp\lmiignition.exe (.not file.) =>.Temporary file not necessary
O87 - FAEL: "UDP Query User{F73983A5-A14B-4A9F-849F-97819C015B40}C:\users\test\appdata\local\temp\ign6248.tmp\lmiignition.exe" [In-None-P17-TRUE] .(...) -- C:\users\test\appdata\local\temp\ign6248.tmp\lmiignition.exe (.not file.) =>.Temporary file not necessary
O87 - FAEL: "{EF5B6D64-E6FF-4C20-AE6A-911EC7BDC8C9}" [In-None-P6-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O87 - FAEL: "{2581E938-F1A0-41BF-9D15-EF05B5044CCB}" [In-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O87 - FAEL: "TCP Query User{10DD01B0-DA42-4D7D-B412-AFA869359F2D}C:\windows\system32\spool\drivers\x64\3\ss0xnjr.exe" [In-None-P6-TRUE] .(.SHARP CORPORATION - PC-Fax Notify Job Results.) -- C:\windows\system32\spool\drivers\x64\3\ss0xnjr.exe =>.SHARP Corporation
O87 - FAEL: "UDP Query User{32505398-79CC-4B06-BC74-B58FC572E195}C:\windows\system32\spool\drivers\x64\3\ss0xnjr.exe" [In-None-P17-TRUE] .(.SHARP CORPORATION - PC-Fax Notify Job Results.) -- C:\windows\system32\spool\drivers\x64\3\ss0xnjr.exe =>.SHARP Corporation
O87 - FAEL: "TCP Query User{8AF207EB-3098-4FDC-A5E2-9FBE1643D0B2}C:\program files (x86)\brackets\node.exe" [In-None-P6-TRUE] .(.Joyent, Inc - Evented I/O for V8 JavaScript.) -- C:\program files (x86)\brackets\node.exe =>.Adobe Systems Incorporated®
O87 - FAEL: "UDP Query User{68CC72F3-20FA-4BCE-9B98-D3D57BB98DA7}C:\program files (x86)\brackets\node.exe" [In-None-P17-TRUE] .(.Joyent, Inc - Evented I/O for V8 JavaScript.) -- C:\program files (x86)\brackets\node.exe =>.Adobe Systems Incorporated®
O87 - FAEL: "{6A39E621-A43C-4052-A2EC-6B6843E1A21C}" [In-None-P6-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O87 - FAEL: "{8077EA9F-02F7-47F1-944A-3E24B934DC77}" [In-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O87 - FAEL: "TCP Query User{1B3228F8-9082-48BD-BD8E-2AD900ED9621}C:\program files (x86)\libreoffice 4\program\soffice.bin" [In-None-P6-TRUE] .(.The Document Foundation - LibreOffice.) -- C:\program files (x86)\libreoffice 4\program\soffice.bin =>.The Document Foundation
O87 - FAEL: "UDP Query User{DF894A7F-BFF1-4128-9E18-3FDC5C9FB0F3}C:\program files (x86)\libreoffice 4\program\soffice.bin" [In-None-P17-TRUE] .(.The Document Foundation - LibreOffice.) -- C:\program files (x86)\libreoffice 4\program\soffice.bin =>.The Document Foundation
O87 - FAEL: "{465A61AE-1725-4697-8E99-C8F636433200}" [In-None-P6-TRUE] .(.TeamViewer GmbH - TeamViewer 11.) -- C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer GmbH®
O87 - FAEL: "{41B4A6C7-011E-437F-94E8-5A1B43D16C63}" [In-None-P17-TRUE] .(.TeamViewer GmbH - TeamViewer 11.) -- C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer GmbH®
O87 - FAEL: "{D987B07D-9B79-4553-B875-44EFF568D10A}" [In-None-P6-TRUE] .(.TeamViewer GmbH - TeamViewer 11.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer GmbH®
O87 - FAEL: "{479520C8-7B57-4BB5-8127-480826ABDDD0}" [In-None-P17-TRUE] .(.TeamViewer GmbH - TeamViewer 11.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer GmbH®
O87 - FAEL: "{4D767994-1B38-4E44-81EB-9CCFC7D4EB69}" [In-None-P6-TRUE] .(.Piriform Software Ltd - CCleaner emergency updater.) -- C:\Program Files\CCleaner\CCUpdate.exe =>.Piriform Software Ltd®
O87 - FAEL: "{1575A110-2952-46B6-8DD6-9BFE261B89C1}" [In-None-P17-TRUE] .(.Piriform Software Ltd - CCleaner emergency updater.) -- C:\Program Files\CCleaner\CCUpdate.exe =>.Piriform Software Ltd®
O87 - FAEL: "{D69A624A-4D90-4A61-B3A7-A15B4E25E59B}" [In-None-P6-TRUE] .(.AOMEI Tech Co., Ltd. - AOMEI Backupper Schedule task service.) -- C:\Program Files (x86)\AOMEI Backupper\ABService.exe =>.CHENGDU AOMEI Tech Co., Ltd.®
O87 - FAEL: "{616F62A7-BE2B-48E1-96C0-7A74A93207B2}" [In-None-P17-TRUE] .(.AOMEI Tech Co., Ltd. - AOMEI Backupper Schedule task service.) -- C:\Program Files (x86)\AOMEI Backupper\ABService.exe =>.CHENGDU AOMEI Tech Co., Ltd.®
O87 - FAEL: "{E2E31300-6C18-465C-82B1-4181F075EEFE}" [In-None-P6-TRUE] .(.CHENGDU YIWO Tech Development Co., Ltd - EaseUS Todo Backup Application.) -- C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbService.exe =>.CHENGDU YIWO Tech Development Co., Ltd.®
O87 - FAEL: "{8BEB7C45-2C61-4C6F-B348-57E63FA9E90F}" [In-None-P17-TRUE] .(.CHENGDU YIWO Tech Development Co., Ltd - EaseUS Todo Backup Application.) -- C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbService.exe =>.CHENGDU YIWO Tech Development Co., Ltd.®
O87 - FAEL: "{F88057AF-1E85-44D1-B98F-C94B42BD511C}" [In-None-P6-TRUE] .(.CHENGDU YIWO Tech Development Co., Ltd - EaseUS Todo Backup Application.) -- C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBConsoleUI.exe =>.CHENGDU YIWO Tech Development Co., Ltd.®
O87 - FAEL: "{F65F05DE-AEFB-4F2D-861B-93DAFC49A2D6}" [In-None-P17-TRUE] .(.CHENGDU YIWO Tech Development Co., Ltd - EaseUS Todo Backup Application.) -- C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBConsoleUI.exe =>.CHENGDU YIWO Tech Development Co., Ltd.®
O87 - FAEL: "{CC0D8EF7-49BA-4F20-903F-8A3C03A6C54B}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe =>.CHENGDU YIWO Tech Development Co., Ltd.®
O87 - FAEL: "{6424A971-80B1-492C-8AD0-E1FF7E58725C}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe =>.CHENGDU YIWO Tech Development Co., Ltd.®
O87 - FAEL: "{1BAA821A-83CF-477B-A16D-AE934CB18163}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe =>.CHENGDU YIWO Tech Development Co., Ltd.®
O87 - FAEL: "{EAB8ED98-E626-4AA8-BC87-28CED66FA8B0}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe =>.CHENGDU YIWO Tech Development Co., Ltd.®
O87 - FAEL: "{0F4DA22C-1AE1-417C-A9BC-051130B50ECA}" [In-None-P6-TRUE] .(.AOMEI Tech Co., Ltd. - AOMEI Backupper Schedule task service.) -- C:\Program Files (x86)\AOMEI Backupper\ABService.exe =>.CHENGDU AOMEI Tech Co., Ltd.®
O87 - FAEL: "{2E521A5F-95F3-4D99-8456-72742AF09BB1}" [In-None-P17-TRUE] .(.AOMEI Tech Co., Ltd. - AOMEI Backupper Schedule task service.) -- C:\Program Files (x86)\AOMEI Backupper\ABService.exe =>.CHENGDU AOMEI Tech Co., Ltd.®
O87 - FAEL: "{896AF331-30AF-4118-AC86-E381EF483184}" [In-None-P17-TRUE] .(.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O87 - FAEL: "{BB412776-FB0B-4D41-A42C-2CED338ED6F7}" [In-None-P6-TRUE] .(.TeamViewer GmbH - TeamViewer 11.) -- C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer GmbH®
O87 - FAEL: "{CAC794E4-4050-416F-B600-217A78903C16}" [In-None-P17-TRUE] .(.TeamViewer GmbH - TeamViewer 11.) -- C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer GmbH®
O87 - FAEL: "{1E3FB684-3D29-4B2C-9FE5-41634627BAFC}" [In-None-P6-TRUE] .(.TeamViewer GmbH - TeamViewer 11.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer GmbH®
O87 - FAEL: "{FEDB34F2-ADAB-476C-B4A4-6F839A7E626B}" [In-None-P17-TRUE] .(.TeamViewer GmbH - TeamViewer 11.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer GmbH®
O87 - FAEL: "{1845FE1B-3D5C-4EA9-82D5-04732A292E7C}" [In-None-P17-TRUE] .(.AVAST Software - Avast Secure Browser.) -- C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe =>.AVAST Software s.r.o.®
O87 - FAEL: "{A176CBE5-111E-4738-A363-0341E9CE747D}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\AnyDesk\AnyDesk.exe =>.philandro Software GmbH®
O87 - FAEL: "{838E5B24-51FD-4CB2-9EC6-34A46A2D84DC}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\AnyDesk\AnyDesk.exe =>.philandro Software GmbH®
O87 - FAEL: "{5A42694B-032F-47D8-9AB4-A243E3339B83}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\AnyDesk\AnyDesk.exe =>.philandro Software GmbH®
O87 - FAEL: "{51F12237-BD31-4FB2-9C7C-F707569AA001}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\AnyDesk\AnyDesk.exe =>.philandro Software GmbH®
O87 - FAEL: "{D2804B42-681B-45DC-B856-B2AF412A411C}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\AnyDesk\AnyDesk.exe =>.philandro Software GmbH®
O87 - FAEL: "{784C21E1-BDAF-43AF-95B2-10D216D72319}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\AnyDesk\AnyDesk.exe =>.philandro Software GmbH®

---\\ CODES PRODUITS LOGICIELS (72) - 2s
O90 - PUC: "000021090200C0400000000000F01FEC" [HKLM] . (.Module de compatibilité pour Microsoft Office System 2007.) -- C:\Windows\Installer\{90120000-0020-040C-0000-0000000FF1CE}\O12ConvIcon.exe =>.Microsoft Corporation
O90 - PUC: "000021599B0090400100000000F01FEC" [HKLM] . (.Microsoft Application Error Reporting.) =>.Microsoft Corporation
O90 - PUC: "00004109500200000000000000F01FEC" [HKLM] . (.Microsoft Office File Validation Add-In.) =>.Microsoft Corporation
O90 - PUC: "000051091A00C0400000000000F01FEC" [HKLM] . (.Microsoft OneNote MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "000051091E00C0400000000000F01FEC" [HKLM] . (.Microsoft Office OSM MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109210000000000000000F01FEC" [HKLM] . (.Microsoft Office Standard 2013.) =>.Microsoft Corporation
O90 - PUC: "000051092E00C0400000000000F01FEC" [HKLM] . (.Microsoft Office OSM UX MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "000051096100C0400000000000F01FEC" [HKLM] . (.Microsoft Excel MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "000051098100C0400000000000F01FEC" [HKLM] . (.Microsoft PowerPoint MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "000051099100C0400000000000F01FEC" [HKLM] . (.Microsoft Publisher MUI (French) 2013.) =>.bl.org
O90 - PUC: "00005109A100C0400000000000F01FEC" [HKLM] . (.Microsoft Outlook MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109A20000000100000000F01FEC" [HKLM] . (.Microsoft Office 64-bit Components 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109A200C0400100000000F01FEC" [HKLM] . (.Microsoft Office Shared 64-bit MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109AB00C0400000000000F01FEC" [HKLM] . (.Microsoft Groove MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109B100C0400000000000F01FEC" [HKLM] . (.Microsoft Word MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109C200C0400000000000F01FEC" [HKLM] . (.Microsoft Office Proofing (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109E600C0400000000000F01FEC" [HKLM] . (.Microsoft Office Shared MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109F10010400000000000F01FEC" [HKLM] . (.Microsoft Office Proofing Tools 2013 - اللغة العربية.) -- C:\Windows\Installer\{90150000-001F-0401-0000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation
O90 - PUC: "00005109F10031400000000000F01FEC" [HKLM] . (.Microsoft Office Proofing Tools 2013 - Nederlands.) -- C:\Windows\Installer\{90150000-001F-0413-0000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation
O90 - PUC: "00005109F10070400000000000F01FEC" [HKLM] . (.Microsoft Office Korrekturhilfen 2013 - Deutsch.) -- C:\Windows\Installer\{90150000-001F-0407-0000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation
O90 - PUC: "00005109F10090400000000000F01FEC" [HKLM] . (.Microsoft Office Proofing Tools 2013 - English.) -- C:\Windows\Installer\{90150000-001F-0409-0000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation
O90 - PUC: "00005109F100A0C00000000000F01FEC" [HKLM] . (.Microsoft Office Proofing Tools 2013 - Español.) -- C:\Windows\Installer\{90150000-001F-0C0A-0000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation
O90 - PUC: "00005109F100C0400000000000F01FEC" [HKLM] . (.Outils de vérification linguistique 2013 de Microsoft Office - Français.) -- C:\Windows\Installer\{90150000-001F-040C-0000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation
O90 - PUC: "00D07A7F382F8C541B3694CE63D5E772" [HKLM] . (.DSC/AA Factory Installer.)
O90 - PUC: "0DFE6B9C10F4ABB4384793DA993ADE27" [HKLM] . (.Windows Live Photo Common.) =>.CyberLink Corporation
O90 - PUC: "1926E8D15D0BCE53481466615F760A7F" [HKLM] . (.Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219.) =>.bl.org
O90 - PUC: "1D034B0FAA6BD374B960AAD30DF10D8B" [HKLM] . (.Microsoft SQL Server 2005 Compact Edition [ENU].) -- C:\Windows\Installer\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}\ProductIcon =>.Microsoft Corporation
O90 - PUC: "1D5E3C0FEDA1E123187686FED06E995A" [HKLM] . (.Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219.) =>.bl.org
O90 - PUC: "2B74F8D830E005C489300A110278F869" [HKLM] . (.LibreOffice 4.2.5.2.) -- C:\Windows\Installer\{8D8F47B2-0E03-4C50-9803-A01120878F96}\soffice.ico =>.Open Source
O90 - PUC: "2D6F4B0BEA2FA1544969F6F2A698B723" [HKLM] . (.PowerDirector.) -- C:\Windows\Installer\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}\ARPPRODUCTICON.exe =>.CyberLink Corporation
O90 - PUC: "3e43b73803c7c394f8a6b2f0402e19c2" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org
O90 - PUC: "3F03045F6B41D234391687CD1B749302" [HKLM] . (.Photo Common.) =>.CyberLink Corporation
O90 - PUC: "42C6FBF1Df1C10144AB2C065F4E9E897" [HKLM] . (.Media Suite.) -- C:\Windows\Installer\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}\ARPPRODUCTICON.exe =>.CyberLink Corporation
O90 - PUC: "47499F033EBE43140AB26FDC83FC2E34" [HKLM] . (.Photo Gallery.) =>.CyberLink Corporation
O90 - PUC: "4BEA594979BAED93C82408E6FE57CE7A" [HKLM] . (.Microsoft Visual Studio 2010 Tools for Office Runtime (x64).) =>.Microsoft Corporation
O90 - PUC: "4EA42A62D9304AC4784BF230120706FF" [HKLM] . (.Java 7 Update 60.) =>.Sun Microsystems
O90 - PUC: "4F1DBCC4CEECA254C98B6465B4053151" [HKLM] . (.Windows Live UX Platform.) =>.Legitimate
O90 - PUC: "512BD8A6DCB777340B51E254143A7E6C" [HKLM] . (.Windows Live PIMT Platform.) =>.Legitimate
O90 - PUC: "6CE0A0D8C3A9F453B9CF6AE169EB8164" [HKLM] . (.Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - FRA.) =>.Microsoft Corporation
O90 - PUC: "6E815EB96CCE9A53884E7857C57002F0" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161.) =>.bl.org
O90 - PUC: "7B58C0486D3D3414A99FAD8EF05DC4CF" [HKLM] . (.Classic Shell.) -- C:\WINDOWS\Installer\{840C85B7-D3D6-4143-9AF9-DAE80FD54CFC}\icon.ico =>.Legitimate
O90 - PUC: "7BD4C90EC03660F46A13E87A329932FA" [HKLM] . (.D3DX10.) =>.Microsoft Corporation
O90 - PUC: "7C9F8B73BF303523781852719CD9C700" [HKLM] . (.Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "8237416A0CD3E41459CD01F0D1580E48" [HKLM] . (.Brackets.) -- C:\WINDOWS\Installer\{A6147328-3DC0-414E-95DC-100F1D85E084}\appicon.ico =>.Amazon Corporation
O90 - PUC: "844C97FE649617D41843300487880C45" [HKLM] . (.Shared C Run-time for x64.) =>.Legitimate
O90 - PUC: "8CDD41E806AE81E43B3E917301D4B5AD" [HKLM] . (.MSVCRT110.) =>.Advanced Micro Devices Inc
O90 - PUC: "93BAD29AC2E44034A96BCB446EB8552E" [HKLM] . (.Google Update Helper.) =>.Google Inc.
O90 - PUC: "9DB399099D7CF2C45BC6F2A7EFDBC40D" [HKLM] . (.Windows Live UX Platform Language Pack.) =>.Legitimate
O90 - PUC: "9F77C6DEE7D4C744E90CA912D2705553" [HKLM] . (.Movie Maker.) =>.CyberLink Corporation
O90 - PUC: "A089CE062ADB6BC44A720BA745894BAC" [HKLM] . (.Google Update Helper.) =>.Google Inc.
O90 - PUC: "A6C64DD86500CEF47BA082BB611A1FF1" [HKLM] . (.MSVCRT.) =>.Advanced Micro Devices Inc
O90 - PUC: "A9BB4540A7A24124DBFF39F7A717A144" [HKLM] . (.Windows Live Communications Platform.) =>.Legitimate
O90 - PUC: "AB8DBE3941A76364F8F19E92DA2F3C9A" [HKLM] . (.Backup and Sync from Google.) -- C:\WINDOWS\Installer\{93EBD8BA-7A14-4636-8F1F-E929ADF2C3A9}\DriveIcon =>.Google Inc.
O90 - PUC: "AC64971A5E810FC4D8555AD60874818F" [HKLM] . (.Movie Maker.) =>.CyberLink Corporation
O90 - PUC: "C025571B2A687A53689168CD7369889B" [HKLM] . (.Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "C040110900063D11C8EF10054038389C" [HKLM] . (.Microsoft Office Professional Edition 2003.) -- C:\Windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\misc.exe,6 =>.Microsoft Corporation
O90 - PUC: "c1c4f01781cc94c4c8fb1542c0981a2a" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org
O90 - PUC: "C3AEB2FCAE628F23AAB933F1E743AB79" [HKLM] . (.Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "C971C95CD8669A946BAE1012CCCF2134" [HKLM] . (.LabelPrint.) -- C:\Windows\Installer\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\ARPPRODUCTICON.exe =>.CyberLink Corporation
O90 - PUC: "D20352A90C039D93DBF6126ECE614057" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17.) =>.bl.org
O90 - PUC: "D3B0C7EF9B051594EB873A12BC8F5625" [HKLM] . (.Windows Live SOXE.) =>.Microsoft Corporation
O90 - PUC: "D84D78A2FDF3df1479DC1A3E07FEFF2E" [HKLM] . (.Power2Go.) -- C:\Windows\Installer\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}\ARPPRODUCTICON.exe =>.CyberLink Corporation
O90 - PUC: "DBFA03A25AD6F9948AB3C72BFD2FC132" [HKLM] . (.Sharpdesk.) -- C:\WINDOWS\Installer\{2A30AFBD-6DA5-499F-A83B-7CB2DFF21C23}\ARPPRODUCTICON.exe
O90 - PUC: "DC249F662ACBC4D4488BB8B6909FECD5" [HKLM] . (.Dell Update.) -- C:\WINDOWS\Installer\{66F942CD-BCA2-4D4C-84B8-8B6B09F9CE5D}\dnd.ico =>.Dell Inc.
O90 - PUC: "DC8A59DBF9D1DA5389A1E3975220E6BB" [HKLM] . (.Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "DCA246A8A3EC32A48A1B0A7FBE212B41" [HKLM] . (.Windows Live SOXE Definitions.) =>.Microsoft Corporation
O90 - PUC: "DE532CED4A8571542A874CE1D8EABAB3" [HKLM] . (.PowerDVD.) -- C:\Windows\Installer\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}\ARPPRODUCTICON.exe =>.CyberLink Corporation
O90 - PUC: "E5DC424C50AEE3D45BAD9F1F941E3DCA" [HKLM] . (.Windows Live Installer.) =>.Microsoft Corporation
O90 - PUC: "EC8CC64409E07F44DA0D77B442E30F09" [HKLM] . (.Galerie de photos.) =>.CyberLink Corporation
O90 - PUC: "F187AF9E08E3993428A5DAE3112CC877" [HKLM] . (.MSVCRT110_amd64.) =>.Advanced Micro Devices Inc
O90 - PUC: "FBA1D77998047AC4AB33CC5708B8A7EC" [HKLM] . (.Intel® Trusted Connect Service Client.) =>.Intel Corporation
O90 - PUC: "FFA318D8D19D0EE428F19B10CFE298AF" [HKLM] . (.Windows Live.) =>.Microsoft Corporation

---\\ PACKAGES WINDOWS INSTALLER (49) - 49s
[MD5.A3E5FA26A51A09098CFC6A5E60B735E8] [WIS][2014/09/29 08:31:32] (.Dell Inc. - Dell Update Installer.) -- C:\WINDOWS\Installer\425a4b16.msi [655360] =>.Dell Inc.
[MD5.41F30F07BA328C77150B8FCF87025ED4] [WIS][2014/11/04 15:29:51] (.IvoSoft - Classic Shell.) -- C:\WINDOWS\Installer\4355c3be.msi [4685824] =>.IvoSoft
[MD5.406DF90D4A6A6D38E724F455AF3E90D2] [WIS][2019/10/25 16:07:09] (.Google, Inc. - Backup and Sync from Google.) -- C:\WINDOWS\Installer\46c34.msi [58720256] =>.Google, Inc.
[MD5.EB033C07C238FD1660D32F1BDB3D35B3] [WIS][2015/08/31 14:39:08] (.brackets.io - Brackets.) -- C:\WINDOWS\Installer\53e87a.msi [38436864] =>.brackets.io
[MD5.57929290C0351084ED79ABE77BBAE9EF] [WIS][2012/06/19 19:18:50] (.Intel Corporation - Intel(R) Trusted Connect Service Client.) -- C:\WINDOWS\Installer\6ddf2.msi [5349376] =>.Intel Corporation
[MD5.BE826B897C243DFF4DE51FAC4B8B728D] [WIS][2013/02/14 23:28:24] (.PC-Doctor, Inc. - DSC/AA Factory Installer.) -- C:\WINDOWS\Installer\6ddfe.msi [286720] =>.PC-Doctor, Inc.
[MD5.365EBEFCE9E934B34B657845090C50A6] [WIS][2013/02/19 08:07:10] (.Ravikiran - Sharpdesk.) -- C:\WINDOWS\Installer\8124bb63.msi [14074368]
[MD5.DF6D6541D3E016CE6DABC9DE1B7A28E4] [WIS][2019/11/05 12:45:40] (.Google LLC - Google Update Helper.) -- C:\WINDOWS\Installer\a10e1.msi [40960] =>.Google LLC
[MD5.72BF0B7142646F1CD0FA7C872DB106D6] [WIS][2015/03/20 12:51:58] (.Google Inc. - Google Update Helper.) -- C:\WINDOWS\Installer\cc58c.msi [26112] =>.Google Inc.
[MD5.7231F1A5AEB0B637565FFF05632E2F7C] [WIS][2014/07/10 14:01:30] (.Oracle - Java SE Runtime Environment 7.0.) -- C:\WINDOWS\Installer\d1e876.msi [25674752] =>.Oracle
[MD5.6DF06DC3E8EA802B05EA67357BA3ECED] [WIS][2014/07/10 14:00:13] (.The Document Foundation - LibreOffice 4.2.) -- C:\WINDOWS\Installer\d1f20f.msi [219574272] =>.The Document Foundation
[MD5.4C3D00941F0996C75683D143198A2D5A] [WIS][2012/09/11 01:48:46] (.CyberLink Corp. - InstallShield® 12 - Premier Edition 12.0.) -- C:\WINDOWS\Installer\ed9f.msi [7923712] =>.CyberLink Corp.
[MD5.092400D51D897811BDE154E0666EFB56] [WIS][2012/12/10 21:11:52] (.Macrovision Corporation - InstallShield® 12 - Premier Edition 12.0.) -- C:\WINDOWS\Installer\eda8.msi [328704] =>.Macrovision Corporation
[MD5.ADC3851112E9F3AF6051A69A1272AE6F] [WIS][2013/01/09 02:19:18] (.CyberLink Corp. - InstallShield® 12 - Premier Edition 12.0.) -- C:\WINDOWS\Installer\edad.msi [441856] =>.CyberLink Corp.
[MD5.A3F72C6020C240CE374460948DE09A92] [WIS][2013/01/03 02:27:30] (.CyberLink Corp. - InstallShield® 12 - Premier Edition 12.0.) -- C:\WINDOWS\Installer\edb9.msi [8488448] =>.CyberLink Corp.
[MD5.4BA6CEA3419683ED2D91B93F5C606DEA] [WIS][2012/12/25 05:58:48] (.Macrovision Corporation - InstallShield® 12 - Premier Edition 12.0.) -- C:\WINDOWS\Installer\edbe.msi [394240] =>.Macrovision Corporation
[MD5.73EB6B068B819C2BC1CB07103210C7B6] [WIS][2012/11/16 14:47:06] (.McAfee.) -- C:\WINDOWS\Installer\ee03.msi [1448448] =>.McAfee
[MD5.71821E08746137362033EA234EC9CED4] [WIS][2010/03/30 11:34:48] (..) -- C:\WINDOWS\Installer\1380d7cb.msp [3826688]
[MD5.858E0288D15D122160EA2748581C7BAB] [WIS][2013/11/20 18:35:18] (..) -- C:\WINDOWS\Installer\1380d801.msp [6696448]
[MD5.90367B9C8AA86A7B19F4D70CE5A49C7B] [WIS][2010/08/25 16:06:30] (..) -- C:\WINDOWS\Installer\1380d856.msp [6479360]
[MD5.F1C8682370B1874EDB939A70C5CBE5EB] [WIS][2010/11/12 10:42:32] (..) -- C:\WINDOWS\Installer\1380d86b.msp [879616]
[MD5.75ACB931545D85C00626EABDE1C3E7CF] [WIS][2008/07/28 14:09:10] (..) -- C:\WINDOWS\Installer\1380d880.msp [160768]
[MD5.BB17F518915D3EFD3CB0281A58E23172] [WIS][2014/03/13 15:26:22] (..) -- C:\WINDOWS\Installer\1380d8de.msp [3982848]
[MD5.DCDE7D9C5FE199A7BB04CA8C68B7F1F6] [WIS][2011/05/23 13:15:48] (..) -- C:\WINDOWS\Installer\1380d8f2.msp [3617792]
[MD5.39281BD1CACF16B1BD6676212AC27597] [WIS][2013/05/29 13:19:46] (..) -- C:\WINDOWS\Installer\1380d930.msp [6832640]
[MD5.4E3BED37901306A7E79B96609DB39E89] [WIS][2007/10/06 07:42:44] (..) -- C:\WINDOWS\Installer\1380d936.msp [203264]
[MD5.885E0E3A4EC858FDEF6A5298266FE0B3] [WIS][2009/12/16 21:58:22] (..) -- C:\WINDOWS\Installer\1380d950.msp [5382144]
[MD5.8D41631C6A7145FD9A803E3F18FCC022] [WIS][2011/04/29 12:04:54] (..) -- C:\WINDOWS\Installer\1380d971.msp [5053440]
[MD5.07384B09C4CA81F9BBBFBF3ADF14A04F] [WIS][2013/08/14 12:11:04] (..) -- C:\WINDOWS\Installer\1380d986.msp [6743040]
[MD5.3240D2D3AB5B0F136D42823210FEC96C] [WIS][2011/05/17 17:28:52] (..) -- C:\WINDOWS\Installer\1380d9e5.msp [6862848]
[MD5.152E6EC0B1AFBF0E74C533C46B08CF50] [WIS][2013/10/08 13:59:22] (..) -- C:\WINDOWS\Installer\1380d9fc.msp [627200]
[MD5.B070DC6F478165ADEFB308008987FA2C] [WIS][2008/01/14 15:53:34] (..) -- C:\WINDOWS\Installer\1380dbb6.msp [5213696]
[MD5.4089D7EE9B04BB9EB586A8AF27FB3198] [WIS][2012/12/12 09:40:24] (..) -- C:\WINDOWS\Installer\138c31d0.msp [6141440]
[MD5.DE22BB56B351E2015121E10E7E35267A] [WIS][2013/08/06 08:55:42] (..) -- C:\WINDOWS\Installer\138c31e7.msp [10988032]
[MD5.55DDC5AA8B2C0D6120540BACD2401E7F] [WIS][2009/07/01 12:21:28] (..) -- C:\WINDOWS\Installer\138c3224.msp [8891904]
[MD5.E8F7E8FF5EAE5E626AC1266BB4850F5F] [WIS][2009/07/01 12:19:52] (..) -- C:\WINDOWS\Installer\138c3225.msp [10607104]
[MD5.23ECC2EB4B5A0061020049741AB987AB] [WIS][2012/09/26 13:03:58] (..) -- C:\WINDOWS\Installer\138c323c.msp [6063616]
[MD5.80B1190D0A468ED60D08D021E85D251D] [WIS][2010/06/11 16:55:00] (..) -- C:\WINDOWS\Installer\138c3257.msp [1827328]
[MD5.CBF9CBE9463AF73F789874F208C3C6EF] [WIS][2010/06/11 16:52:10] (..) -- C:\WINDOWS\Installer\138c3258.msp [45542912]
[MD5.74D6B9D3123A336BD27B6D4FEA6E887F] [WIS][2009/08/20 04:02:38] (..) -- C:\WINDOWS\Installer\138c32d7.msp [5204992]
[MD5.4A1DBEB5EA6A8912B8E01460D66D7DAA] [WIS][2011/05/24 15:27:26] (..) -- C:\WINDOWS\Installer\138c357b.msp [60928]
[MD5.FFFFEF207D38A5303EE3DC578E3495EA] [WIS][2010/10/22 14:45:16] (..) -- C:\WINDOWS\Installer\138c35a9.msp [8444928]
[MD5.7B845AB08977EC096C5B16D388E759B8] [WIS][2005/10/26 13:59:54] (..) -- C:\WINDOWS\Installer\138c35bf.msp [2883072]
[MD5.66227B208B38027C783CD0DD8C5E6734] [WIS][2013/11/27 08:33:20] (..) -- C:\WINDOWS\Installer\138c35d5.msp [5518848]
[MD5.3BF62476CE1C841D9DACC3B5BEC8780F] [WIS][2014/03/20 10:47:22] (..) -- C:\WINDOWS\Installer\138c362e.msp [7678464]
[MD5.CD519BAA86DC7E2E35A7433A5FE4B0E6] [WIS][2010/08/05 11:03:52] (..) -- C:\WINDOWS\Installer\138c3657.msp [4043776]
[MD5.3D7E66F66C099A2210A45DF056DAED62] [WIS][2012/11/15 11:44:38] (..) -- C:\WINDOWS\Installer\138c368f.msp [43956736]
[MD5.6388E4343B5EAA29FB52E1E67A3D67C2] [WIS][2007/07/27 08:30:28] (..) -- C:\WINDOWS\Installer\5774a.msp [135083008]
[MD5.593AC9C9A460D308281F68FE2C47C823] [WIS][2017/06/02 23:35:02] (..) -- C:\WINDOWS\Installer\ae11f400.msp [6668288]

---\\ FEATURE CONTROL. (877) - 3s
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:TBConsoleUI.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:Dbr.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:mbamtray.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:mbam.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOSREC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:WORDICON.EXE =>.Legitimate

---\\ SCAN ADDITIONNEL (66) - 38s
HKLM\Software\WOW6432Node\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C} =>.SUP.Various
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\CLVDShellExt =>.SUP.Orphan
HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\CLVDShellExt =>.SUP.Orphan
C:\Users\test\AppData\Local\Temp\tmp-1ir.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-1pg.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-1vy.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-2zb.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-4gw.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-5zb.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-6u7.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-72e.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-773.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-7za.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-82x.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-876.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-9xm.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-a2e.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-a6l.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-bdx.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-c4b.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-cp5.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-cpj.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-eoz.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-esl.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-fdy.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-g29.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-hde.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-hdi.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-jqu.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-kga.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-lqt.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-lvd.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-lvw.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-m1i.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-m7l.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-mke.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-mkk.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-mwo.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-nc3.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-new.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-nxq.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-p78.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-qg4.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-qqn.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-rg5.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-rk8.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-rvo.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-s0e.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-sed.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-sr0.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-t92.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-tsi.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-txk.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-u3x.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-ul2.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-uua.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-v0w.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-vmm.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-vp9.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-vvy.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-yul.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-z45.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Temp\tmp-zk.xpi =>.SUP.Temporary.Firefox
C:\Users\test\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.audienceinsights.net_0.localstorage =>.SUP.AudienceInsights
C:\Users\test\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.audienceinsights.net_0.localstorage-journal =>.SUP.AudienceInsights
C:\Users\test\AppData\Local\Google\Chrome\User Data\Default\File System\000 =>.SUP.Temporary.Chrome

---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS SUR VOTRE STATION (5) - 0s
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Various
https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary.Firefox
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.AudienceInsights
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary.Chrome

---\\ NUMEROS DE SÉRIE
[01E93999F3871D1091DC1E8D58B8D405] [05/11/2019] (.AVAST Software s.r.o..) - C:\Program Files (x86)\AVAST Software\Browser\Application\77.2.2153.120\elevation_service.exe =>.AVAST Software s.r.o.
[01E93999F3871D1091DC1E8D58B8D405] [05/11/2019] (.AVAST Software s.r.o..) - C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe =>.AVAST Software s.r.o.
[01E93999F3871D1091DC1E8D58B8D405] [07/10/2019] (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software s.r.o.
[01E93999F3871D1091DC1E8D58B8D405] [07/10/2019] (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\AvastUI.exe =>.AVAST Software s.r.o.
[01E93999F3871D1091DC1E8D58B8D405] [07/10/2019] (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\AvLaunch.exe =>.AVAST Software s.r.o.
[01E93999F3871D1091DC1E8D58B8D405] [07/10/2019] (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\setup\instup.exe =>.AVAST Software s.r.o.
[03471E2C8171B1679D898AC19BDA37BB] [16/10/2019] (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer GmbH
[03471E2C8171B1679D898AC19BDA37BB] [16/10/2019] (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer GmbH
[03471E2C8171B1679D898AC19BDA37BB] [16/10/2019] (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\tv_w32.exe =>.TeamViewer GmbH
[03471E2C8171B1679D898AC19BDA37BB] [16/10/2019] (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\tv_x64.exe =>.TeamViewer GmbH
[03471E2C8171B1679D898AC19BDA37BB] [16/10/2019] (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\uninstall.exe =>.TeamViewer GmbH
[036939C475D53C1D70992DB8A87EB7D3] [20/01/2007] (.Macrovision Corporation.) - C:\Program Files (x86)\InstallShield Installation Information\{673E2CB8-8306-4F99-9DF9-6492C2F57072}\setup.exe =>.Macrovision Corporation
[044E3BF58976880FFD074448A8F7A058] [02/12/2019] (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes\Anti-Malware\unins001.exe =>.Malwarebytes Corporation
[044E3BF58976880FFD074448A8F7A058] [02/12/2019] (.Malwarebytes Corporation.) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\Actions.dll =>.Malwarebytes Corporation
[044E3BF58976880FFD074448A8F7A058] [02/12/2019] (.Malwarebytes Corporation.) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\BrowserSDKDLL.dll =>.Malwarebytes Corporation
[044E3BF58976880FFD074448A8F7A058] [02/12/2019] (.Malwarebytes Corporation.) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\MBAMCore.dll =>.Malwarebytes Corporation
[044E3BF58976880FFD074448A8F7A058] [02/12/2019] (.Malwarebytes Corporation.) - C:\WINDOWS\System32\DRIVERS\farflt.sys =>.Malwarebytes Corporation
[044E3BF58976880FFD074448A8F7A058] [02/12/2019] (.Malwarebytes Corporation.) - C:\WINDOWS\System32\DRIVERS\mbam.sys =>.Malwarebytes Corporation
[044E3BF58976880FFD074448A8F7A058] [02/12/2019] (.Malwarebytes Corporation.) - C:\WINDOWS\System32\Drivers\MbamChameleon.sys =>.Malwarebytes Corporation
[044E3BF58976880FFD074448A8F7A058] [02/12/2019] (.Malwarebytes Corporation.) - C:\WINDOWS\System32\Drivers\mbamswissarmy.sys =>.Malwarebytes Corporation
[044E3BF58976880FFD074448A8F7A058] [02/12/2019] (.Malwarebytes Corporation.) - C:\WINDOWS\System32\DRIVERS\mwac.sys =>.Malwarebytes Corporation
[044E3BF58976880FFD074448A8F7A058] [03/05/2018] (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.Malwarebytes Corporation
[044E3BF58976880FFD074448A8F7A058] [03/05/2018] (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe =>.Malwarebytes Corporation
[044E3BF58976880FFD074448A8F7A058] [09/05/2018] (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation
[044E3BF58976880FFD074448A8F7A058] [26/04/2018] (.Malwarebytes Corporation.) - C:\WINDOWS\system32\drivers\mbae64.sys =>.Malwarebytes Corporation
[0511EAF8579E2662BE622DE5AE0CD408] [25/04/2016] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation
[0511EAF8579E2662BE622DE5AE0CD408] [25/04/2016] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Thunderbird\uninstall\helper.exe =>.Mozilla Corporation
[0523409B9FB5C3B8C0C463A318723FF9] [05/02/2019] (.Piriform Software Ltd.) - C:\Program Files\CCleaner\CCUpdate.exe =>.Piriform Software Ltd
[07C70F7CAB145BC1ED385FBE69FA3130] [05/04/2018] (.AVAST Software s.r.o..) - C:\Program Files (x86)\AVAST Software\Browser\AvastBrowserUninstall.exe =>.AVAST Software s.r.o.
[07C70F7CAB145BC1ED385FBE69FA3130] [05/04/2018] (.AVAST Software s.r.o..) - C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.136.333\AvastBrowserCrashHandler.exe =>.AVAST Software s.r.o.
[07C70F7CAB145BC1ED385FBE69FA3130] [05/04/2018] (.AVAST Software s.r.o..) - C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.136.333\AvastBrowserCrashHandler64.exe =>.AVAST Software s.r.o.
[07C70F7CAB145BC1ED385FBE69FA3130] [05/04/2018] (.AVAST Software s.r.o..) - C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe =>.AVAST Software s.r.o.
[07C70F7CAB145BC1ED385FBE69FA3130] [07/10/2019] (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software s.r.o.
[07C70F7CAB145BC1ED385FBE69FA3130] [07/10/2019] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswArDisk.sys =>.AVAST Software s.r.o.
[07C70F7CAB145BC1ED385FBE69FA3130] [07/10/2019] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswArPot.sys =>.AVAST Software s.r.o.
[07C70F7CAB145BC1ED385FBE69FA3130] [07/10/2019] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswbidsdriver.sys =>.AVAST Software s.r.o.
[07C70F7CAB145BC1ED385FBE69FA3130] [07/10/2019] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswbidsh.sys =>.AVAST Software s.r.o.
[07C70F7CAB145BC1ED385FBE69FA3130] [07/10/2019] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswbuniv.sys =>.AVAST Software s.r.o.
[07C70F7CAB145BC1ED385FBE69FA3130] [07/10/2019] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswHdsKe.sys =>.AVAST Software s.r.o.
[07C70F7CAB145BC1ED385FBE69FA3130] [07/10/2019] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswKbd.sys =>.AVAST Software s.r.o.
[07C70F7CAB145BC1ED385FBE69FA3130] [07/10/2019] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswMonFlt.sys =>.AVAST Software s.r.o.
[07C70F7CAB145BC1ED385FBE69FA3130] [07/10/2019] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswRdr2.sys =>.AVAST Software s.r.o.
[07C70F7CAB145BC1ED385FBE69FA3130] [07/10/2019] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswRvrt.sys =>.AVAST Software s.r.o.
[07C70F7CAB145BC1ED385FBE69FA3130] [07/10/2019] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswSnx.sys =>.AVAST Software s.r.o.
[07C70F7CAB145BC1ED385FBE69FA3130] [07/10/2019] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswSP.sys =>.AVAST Software s.r.o.
[07C70F7CAB145BC1ED385FBE69FA3130] [07/10/2019] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswStm.sys =>.AVAST Software s.r.o.
[07C70F7CAB145BC1ED385FBE69FA3130] [07/10/2019] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswVmm.sys =>.AVAST Software s.r.o.
[0B1F8CD59E64746BEAE153ECCA21066B] [02/11/2019] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation
[0B1F8CD59E64746BEAE153ECCA21066B] [02/11/2019] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
[0B1F8CD59E64746BEAE153ECCA21066B] [02/11/2019] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation
[0B6DE0A1B910529ED0179BEB38DC384C] [02/02/2015] (.Tracker Software Products (Canada) Ltd.) - C:\Program Files (x86)\Mozilla Firefox\Plugins\npPDFXCviewNPPlugin.dll =>.Tracker Software Products (Canada) Ltd
[0B6DE0A1B910529ED0179BEB38DC384C] [02/02/2015] (.Tracker Software Products (Canada) Ltd.) - C:\Program Files\Tracker Software\PDF Viewer\PDFXCview.exe =>.Tracker Software Products (Canada) Ltd
[0B6DE0A1B910529ED0179BEB38DC384C] [23/03/2015] (.Tracker Software Products (Canada) Ltd.) - C:\Program Files\Tracker Software\PDF Viewer\unins000.exe =>.Tracker Software Products (Canada) Ltd
[0C15BE4A15BB0903C901B1D6C265302F] [16/11/2019] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\78.0.3904.108\elevation_service.exe =>.Google LLC
[0C15BE4A15BB0903C901B1D6C265302F] [16/11/2019] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC
[0C15BE4A15BB0903C901B1D6C265302F] [19/11/2019] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\78.0.3904.108\Installer\chrmstp.exe =>.Google LLC
[0C15BE4A15BB0903C901B1D6C265302F] [19/11/2019] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\78.0.3904.108\Installer\setup.exe =>.Google LLC
[0C15BE4A15BB0903C901B1D6C265302F] [24/10/2019] (.Google LLC.) - C:\Program Files\Google\Drive\contextmenu64.dll =>.Google LLC
[0C15BE4A15BB0903C901B1D6C265302F] [24/10/2019] (.Google LLC.) - C:\Program Files\Google\Drive\googledrivesync.exe =>.Google LLC
[0C15BE4A15BB0903C901B1D6C265302F] [24/10/2019] (.Google LLC.) - C:\Program Files\Google\Drive\googledrivesync64.dll =>.Google LLC
[0C5396DCB2949C70FAC48AB08A07338E] [04/11/2019] (.Mozilla Corporation.) - C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\17y77f1s.default\gmp-gmpopenh264\1.8.1.1\gmpopenh264.dll =>.Mozilla Corporation
[0D2CACCD3E9EEC06738410BA31BF6595] [14/11/2019] (.Adobe Inc..) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Inc.
[0D2CACCD3E9EEC06738410BA31BF6595] [14/11/2019] (.Adobe Inc..) - C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_293_Plugin.exe =>.Adobe Inc.
[0F4ECB4847B5D4A99F116BBABE5C5264] [06/11/2018] (.Sharp Corporation.) - C:\Program Files (x86)\SHARP\673E2CB8-8306-4F99-9DF9-6492C2F57072\setup.exe =>.Not verified
[1121EAA40803A9226F303743EE537D5CD62D] [08/04/2016] (.philandro Software GmbH.) - C:\Program Files (x86)\AnyDesk\AnyDesk.exe =>.philandro Software GmbH
[14F8FDD167F92402B1570B5DC495C815] [05/11/2019] (.Google Inc.) - C:\Program Files (x86)\Google\Update\1.3.35.342\GoogleCrashHandler.exe =>.Google Inc
[14F8FDD167F92402B1570B5DC495C815] [05/11/2019] (.Google Inc.) - C:\Program Files (x86)\Google\Update\1.3.35.342\GoogleCrashHandler64.exe =>.Google Inc
[1A9548620001000005F5] [21/11/2013] (.Dell Inc..) - C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBRCrawler.exe =>.Dell Inc.
[1A9548620001000005F5] [21/11/2013] (.Dell Inc..) - C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe =>.Dell Inc.
[1A9548620001000005F5] [21/11/2013] (.Dell Inc..) - C:\Program Files (x86)\Dell Backup and Recovery\Toaster.exe =>.Dell Inc.
[1BC0EAE26535EA1E9D26739E] [01/03/2019] (.STATIM SAS.) - C:\Program Files (x86)\alcuin\Comptabilite.exe =>.Not verified
[1BC0EAE26535EA1E9D26739E] [16/04/2019] (.STATIM SAS.) - C:\Program Files (x86)\alcuin\Notes.exe =>.Not verified
[1BC0EAE26535EA1E9D26739E] [29/10/2019] (.STATIM SAS.) - C:\Program Files (x86)\alcuin\Competences.exe =>.Not verified
[1BC0EAE26535EA1E9D26739E] [29/10/2019] (.STATIM SAS.) - C:\Program Files (x86)\alcuin\VieScolaire.exe =>.Not verified
[1BC0EAE26535EA1E9D26739E] [31/10/2019] (.STATIM SAS.) - C:\Program Files (x86)\alcuin\Administratif.exe =>.Not verified
[1D226108CBB0EB7B504697BDFEC66A8B] [25/04/2012] (.CyberLink.) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe =>.CyberLink
[1D226108CBB0EB7B504697BDFEC66A8B] [25/06/2012] (.CyberLink.) - C:\WINDOWS\System32\DRIVERS\CLVirtualDrive.sys =>.CyberLink
[1D226108CBB0EB7B504697BDFEC66A8B] [29/10/2012] (.CyberLink.) - C:\Program Files (x86)\InstallShield Installation Information\{8F14AA37-5193-4A14-BD5B-BDF9B361AEF7}\Setup.exe =>.CyberLink
[1DE909DE446485F9C6F4B405E24F687D] [13/08/2013] (.Broadcom Corporation.) - C:\WINDOWS\System32\drivers\bcmfn2.sys =>.Broadcom Corporation
[217A8364000100006426] [19/06/2012] (.Intel® Upgrade Service.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel® Upgrade Service
[28736D0D296789512BAC66CCE86C4A00] [01/09/2017] (.CHENGDU AOMEI Tech Co., Ltd..) - C:\WINDOWS\system32\amwrtdrv.sys =>.CHENGDU AOMEI Tech Co., Ltd.
[28736D0D296789512BAC66CCE86C4A00] [21/12/2016] (.CHENGDU AOMEI Tech Co., Ltd..) - C:\WINDOWS\System32\ambakdrv.sys =>.CHENGDU AOMEI Tech Co., Ltd.
[28736D0D296789512BAC66CCE86C4A00] [21/12/2016] (.CHENGDU AOMEI Tech Co., Ltd..) - C:\WINDOWS\system32\ammntdrv.sys =>.CHENGDU AOMEI Tech Co., Ltd.
[28736D0D296789512BAC66CCE86C4A00] [30/10/2018] (.CHENGDU AOMEI Tech Co., Ltd..) - C:\Program Files (x86)\AOMEI Backupper\ABService.exe =>.CHENGDU AOMEI Tech Co., Ltd.
[2912C70C9A2B8A3EF6F6074662D68B8D] [28/08/2015] (.Google Inc.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc
[2C80892E0115B0B77AA3594B9A733953] [14/06/2012] (.Realtek Semiconductor Corp.) - C:\WINDOWS\System32\Drivers\RtsUStor.sys =>.Realtek Semiconductor Corp
[2C80892E0115B0B77AA3594B9A733953] [14/10/2010] (.Realtek Semiconductor Corp.) - C:\Program Files (x86)\InstallShield Installation Information\{96AE7E41-E34E-47D0-AC07-1091A8127911}\setup.exe =>.Realtek Semiconductor Corp
[2F5A8C1E932EDBFD4893916FC880DFE7] [17/12/2010] (.Piriform Ltd.) - C:\Program Files\Recuva\Recuva64.exe =>.Piriform Ltd
[2F5A8C1E932EDBFD4893916FC880DFE7] [17/12/2010] (.Piriform Ltd.) - C:\Program Files\Recuva\uninst.exe =>.Piriform Ltd
[33452E431642467148D7E7D56329D828] [27/07/2015] (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Brackets\Brackets.exe =>.Adobe Systems Incorporated
[33452E431642467148D7E7D56329D828] [27/07/2015] (.Adobe Systems Incorporated.) - C:\program files (x86)\brackets\node.exe =>.Adobe Systems Incorporated
[3D3C455A5C7B7B2666915EB21857D7EA] [10/09/2018] (.Piriform Ltd.) - C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd
[3D3C455A5C7B7B2666915EB21857D7EA] [10/09/2018] (.Piriform Ltd.) - C:\Program Files\CCleaner\uninst.exe =>.Piriform Ltd
[44BC63EA9D7FB68CBCD9101F391CA145] [19/10/2012] (.Hewlett-Packard Company.) - C:\WINDOWS\System32\DRIVERS\Dot4.sys =>.Hewlett-Packard Company
[44BC63EA9D7FB68CBCD9101F391CA145] [19/10/2012] (.Hewlett-Packard Company.) - C:\WINDOWS\System32\drivers\Dot4Prt.sys =>.Hewlett-Packard Company
[44BC63EA9D7FB68CBCD9101F391CA145] [19/10/2012] (.Hewlett-Packard Company.) - C:\WINDOWS\System32\drivers\Dot4usb.sys =>.Hewlett-Packard Company
[4D1169658D9D5F5778B18A3619C60B57] [01/08/2012] (.Conexant Systems, Inc..) - C:\Program Files\CONEXANT\SA3\SmartAudio3.exe =>.Conexant Systems, Inc.
[4D1169658D9D5F5778B18A3619C60B57] [12/10/2011] (.Conexant Systems, Inc..) - C:\Program Files\CONEXANT\SA3\CxUtilSvc.exe =>.Conexant Systems, Inc.
[4D1169658D9D5F5778B18A3619C60B57] [22/06/2012] (.Conexant Systems, Inc..) - C:\WINDOWS\System32\drivers\CHDRT64.sys =>.Conexant Systems, Inc.
[4D1169658D9D5F5778B18A3619C60B57] [24/07/2012] (.Conexant Systems, Inc..) - C:\Program Files\CONEXANT\CNXT_AUDIO_HDA\UIU64a.exe =>.Conexant Systems, Inc.
[4D1169658D9D5F5778B18A3619C60B57] [28/03/2012] (.Conexant Systems, Inc..) - C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe =>.Conexant Systems, Inc.
[4F4EBF679325DAAE4A24B27CEA10F738] [01/04/2016] (.Spiceworks, Inc.) - C:\Program Files (x86)\Spiceworks\bin\spiceworks.exe =>.Not verified
[4F4EBF679325DAAE4A24B27CEA10F738] [01/04/2016] (.Spiceworks, Inc.) - C:\Program Files (x86)\Spiceworks\bin\spiceworks-finder.exe =>.Not verified
[4F4EBF679325DAAE4A24B27CEA10F738] [03/03/2016] (.Spiceworks, Inc.) - C:\Program Files (x86)\Spiceworks\httpd\bin\spiceworks-httpd.exe =>.Not verified
[73CCB86B36F6C0236FEA22D15300AD19] [20/05/2019] (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\Program Files (x86)\EaseUS\Todo Backup\unins000.exe =>.CHENGDU YIWO Tech Development Co., Ltd.
[73CCB86B36F6C0236FEA22D15300AD19] [22/04/2019] (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe =>.CHENGDU YIWO Tech Development Co., Ltd.
[73CCB86B36F6C0236FEA22D15300AD19] [22/04/2019] (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBConsoleUI.exe =>.CHENGDU YIWO Tech Development Co., Ltd.
[73CCB86B36F6C0236FEA22D15300AD19] [22/04/2019] (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbService.exe =>.CHENGDU YIWO Tech Development Co., Ltd.
[73CCB86B36F6C0236FEA22D15300AD19] [22/04/2019] (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe =>.CHENGDU YIWO Tech Development Co., Ltd.
[73CCB86B36F6C0236FEA22D15300AD19] [22/04/2019] (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\Program Files (x86)\EaseUS\Todo Backup\bin\x64\ImageSh.dll =>.CHENGDU YIWO Tech Development Co., Ltd.
[73CCB86B36F6C0236FEA22D15300AD19] [22/04/2019] (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\WINDOWS\System32\drivers\eubakup.sys =>.CHENGDU YIWO Tech Development Co., Ltd.
[73CCB86B36F6C0236FEA22D15300AD19] [22/04/2019] (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\WINDOWS\System32\drivers\EUBKMON.sys =>.CHENGDU YIWO Tech Development Co., Ltd.
[73CCB86B36F6C0236FEA22D15300AD19] [22/04/2019] (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\WINDOWS\system32\drivers\eudskacs.sys =>.CHENGDU YIWO Tech Development Co., Ltd.
[73CCB86B36F6C0236FEA22D15300AD19] [22/04/2019] (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\WINDOWS\system32\drivers\EuFdDisk.sys =>.CHENGDU YIWO Tech Development Co., Ltd.
[799AC3976095546D05DE5395166BFF83] [02/01/2013] (.CyberLink Corp..) - C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD10.EXE =>.CyberLink Corp.
[799AC3976095546D05DE5395166BFF83] [03/12/2012] (.CyberLink Corp..) - C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe =>.CyberLink Corp.
[799AC3976095546D05DE5395166BFF83] [07/01/2013] (.CyberLink Corp..) - C:\Program Files (x86)\CyberLink\PowerDirector10\PDR10.EXE =>.CyberLink Corp.
[799AC3976095546D05DE5395166BFF83] [09/01/2013] (.CyberLink Corp..) - C:\Program Files (x86)\InstallShield Installation Information\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}\Setup.exe =>.CyberLink Corp.
[799AC3976095546D05DE5395166BFF83] [25/12/2012] (.CyberLink Corp..) - C:\Program Files (x86)\InstallShield Installation Information\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}\Setup.exe =>.CyberLink Corp.
[799AC3976095546D05DE5395166BFF83] [28/12/2012] (.CyberLink Corp..) - C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD Cinema\PowerDVDCinema10.exe =>.CyberLink Corp.

~ Unselected Options: O82,
~ End of the scan, 10593 items in 04mn31s (2985)(0)

Publicité


Signaler le contenu de ce document

Publicité