cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2020.7.1.209 Par Nicolas Coolman (2020/07/01)
~ Démarré par DENIS FIACRE RENEE (Administrator) (2020/07/03 21:37:41)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Certificate ZHPDiag: Legal
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\DENIS FIACRE RENEE\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\DENIS FIACRE RENEE\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 10 Home, 32-bit (Build 18362) =>.Microsoft Corporation

---\\ NAVIGATEURS INTERNET (3) - 0s
~ GCIE: Google Chrome v83.0.4103.116
~ MSIE: Internet Explorer v11.900.18362.0
~ OBIE: Microsoft Edge v83.0.478.58

---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (2) - 4s
~ Windows Server License Manager Script : OK
Windows Automatic Updates : OK

---\\ LOGICIELS DE PROTECTION (2) - 5s
Malwarebytes version 4.1.2.73 v4.1.2.73 (Protection)
Windows Defender W10 (Deactivate) (Protection)

---\\ SURVEILLANCE LOGICIEL (2) - 5s
~ Adobe Flash Player 32 PPAPI (Surveillance)
~ Adobe Acrobat Reader DC - Français (Surveillance)

---\\ LOGICIELS D'OPTIMISATION (1) - 5s
~ CCleaner v5.67 (Optimisation)

---\\ INFORMATIONS SUR LE SYSTÈME (6) - 0s
~ Operating System: x86 Family 6 Model 23 Stepping 10, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 3407.028 MB (58% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 191 GB (54%) free of 348 GB : OK =>.Disk Space

---\\ MODE DE CONNEXION AU SYSTÈME (3) - 0s
~ Computer Name: DENISRENEE
~ User Name: DENIS FIACRE RENEE
~ Logged in as Administrator

---\\ ÉNUMÉRATION DES UNITÉS DE STOCKAGE (4) - 0s
~ Drive C: has 191 GB free of 348 GB (System)
~ Drive D: has 138 GB free of 140 GB
~ Drive E: has 48 GB free of 408 GB
~ Drive F: has 25 GB free of 39 GB

---\\ ÉTAT DU CENTRE DE SÉCURITÉ WINDOWS (7) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ RECHERCHE PARTICULIÈRE DE FICHIERS GÉNÉRIQUES (25) - 2s
[MD5.B8744AC6493A5126DA7E2349D3DCAA9A] - 13/05/2020 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [3974376] =>.Microsoft®
[MD5.D0432468FA4B7F66166C430E1334DBDA] - 19/03/2019 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [61952] [Unsigned] =>.Microsoft Corporation
[MD5.62CAAC112386ABF50F635D05F0C67CC8] - 04/10/2019 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [298536] =>.Microsoft®
[MD5.C1B23BFDBD87F77B0D8FCA38CAE608CC] - 17/04/2020 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [4538880] [Unsigned] =>.Microsoft Corporation
[MD5.FAE691B2AF31F988A6761D80AEBF8A90] - 12/03/2020 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [685056] [Unsigned] =>.Microsoft Corporation
[MD5.BEA2A49EB58E46A8392D5F0A7751E2D0] - 12/03/2020 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [287232] [Unsigned] =>.Microsoft Corporation
[MD5.23F45825244CFCB11CC6355690F3FFAB] - 13/05/2020 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [592944] =>.Microsoft®
[MD5.4C84E3886C0DFBD41B6932647B9F62A4] - 13/05/2020 - (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\System32\wuaueng.dll [2377216] [Unsigned] =>.Microsoft Corporation
[MD5.4BB305AEED92BB280760B127548E1DC2] - 19/03/2019 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] [Unsigned] =>.Microsoft Corporation
[MD5.317107B64DD5099326BF34A7F4F2F7DA] - 13/05/2020 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [513336] =>.Microsoft®
[MD5.006C7CDB3050BF9020E8CC05EAE49452] - 12/03/2020 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [22840] =>.Microsoft®
[MD5.07ABEA108AD82B38B37A08FA2CD048ED] - 19/03/2019 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [74752] [Unsigned] =>.Microsoft Corporation
[MD5.C0705BA4CBFA86BE41DA3B37BA1239B3] - 19/03/2019 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [125952] [Unsigned] =>.Microsoft Corporation
[MD5.C37ECB5AC2CFECE6B439C57F13E4A3F8] - 19/03/2019 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [114176] [Unsigned] =>.Microsoft Corporation
[MD5.5B30FDAD97C7B9BEA0B18E73BB954AAB] - 12/03/2020 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [92160] [Unsigned] =>.Microsoft Corporation
[MD5.19E04AC22DA35C44050878077D497CB9] - 19/03/2019 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [99328] [Unsigned] =>.Microsoft Corporation
[MD5.163B48681978DC53BAF0518DA1C63188] - 19/03/2019 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [187392] [Unsigned] =>.Microsoft Corporation
[MD5.2353790D9525E29622C991E12E8F9870] - 11/06/2020 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [462648] =>.Microsoft®
[MD5.8C06E89C711952AB8DA4F64E76CF0F78] - 09/07/2019 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [247808] [Unsigned] =>.Microsoft Corporation
[MD5.BE9AB91E2483FBFAC4768BA33E3A685F] - 12/03/2020 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2203664] =>.Microsoft®
[MD5.DD3C8E703762361BE2BB7DD002B82B3D] - 19/03/2019 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [82944] [Unsigned] =>.Microsoft Corporation
[MD5.6A5EFB03BCBFD104E0613E954E14AA8F] - 19/03/2019 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [79872] [Unsigned] =>.Microsoft Corporation
[MD5.43078298266DE794C8A3B58FC86C37D7] - 11/08/2019 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [131072] [Unsigned] =>.Microsoft Corporation
[MD5.A95F668D4DB65A080BFC574D5954D550] - 19/03/2019 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [95544] =>.Microsoft Windows®
[MD5.3114CEB6A1426D3051A1164971B6220E] - 12/03/2020 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [356368] =>.Microsoft®

---\\ LISTE DES SERVICES (Non désactivés) (75) - 4s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.®
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe [Unsigned] =>.AMD
O23 - Service: C:\Windows\System32\inetsrv\iisres.dll (AppHostSvc) . (.Microsoft Corporation - IIS Application Host Helper Service.) - C:\Windows\System32\inetsrv\apphostsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\AudioEndpointBuilder.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Générateur de points de terminaison du serv.) - C:\Windows\System32\AudioEndpointBuilder.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\audiosrv.dll (Audiosrv) . (.Microsoft Corporation - Service Audio Windows.) - C:\Windows\System32\audiosrv.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\BFE.DLL (BFE) . (.Microsoft Corporation - Moteur de filtrage de base.) - C:\Windows\System32\BFE.DLL [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\bisrv.dll (BrokerInfrastructure) . (.Microsoft Corporation - Process State Manager (PSM) Service.) - C:\Windows\System32\psmsrv.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\cdpusersvc.dll (CDPUserSvc) . (.Microsoft Corporation - Composants utilisateur Microsoft (R) CDP.) - C:\Windows\System32\CDPUserSvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Service pour utilisateur de plateforme d’appareils connecté (CDPUserSvc_65d88) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft Windows Publisher®
O23 - Service: C:\Windows\System32\certprop.dll (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) - C:\Windows\System32\certprop.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\coremessaging.dll (CoreMessagingRegistrar) . (.Microsoft Corporation - Microsoft CoreMessaging Dll.) - C:\Windows\System32\coremessaging.dll =>.Microsoft®
O23 - Service: C:\Windows\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Services de chiffrement.) - C:\Windows\System32\cryptsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\das.dll (DeviceAssociationService) . (.Microsoft Corporation - Service d’association de périphérique.) - C:\Windows\System32\das.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - Service client DHCP.) - C:\Windows\System32\dhcpcore.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\diagtrack.dll (DiagTrack) . (.Microsoft Corporation - Suivi des diagnostics Microsoft Windows.) - C:\Windows\System32\diagtrack.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dispbroker.desktop.dll (DispBrokerDesktopSvc) . (.Microsoft Corporation - Courtier d'affichage du bureau.) - C:\Windows\System32\DispBroker.Desktop.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - Service de résolution du cache DNS.) - C:\Windows\System32\dnsrslvr.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dosvc.dll (DoSvc) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft Windows Publisher®
O23 - Service: C:\Windows\System32\dusmsvc.dll (DusmSvc) . (.Microsoft Corporation - Service Consommation des données.) - C:\Windows\System32\dusmsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Service Mise à jour de Microsoft Edge (edgeupdate) (edgeupdate) . (.Microsoft Corporation - Microsoft Edge Update.) - C:\Program Files\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe =>.Microsoft®
O23 - Service: EPSON V3 Service4(01) (EPSON_PM_RPCV4_01) . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) - C:\ProgramData\EPSON\EPW!3 SSRP\E_S30RP1.EXE [Unsigned] =>.Seiko Epson Corporation
O23 - Service: C:\Windows\System32\wevtsvc.dll (EventLog) . (.Microsoft Corporation - Service journal des événements.) - C:\Windows\System32\wevtsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\FDResPub.dll (FDResPub) . (.Microsoft Corporation - Service de publication des ressources de dé.) - C:\Windows\System32\FDResPub.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Service de cache de police Windows.) - C:\Windows\System32\FntCache.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) - C:\Windows\System32\gpsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: HuaweiHiSuiteService.exe (HuaweiHiSuiteService.exe) . (. - HuaweiHiSuiteService.) - C:\Program Files\HiSuite\HandSetService\HuaweiHiSuiteService.exe [Unsigned] =>.Huawei
O23 - Service: C:\Windows\System32\IKEEXT.DLL (IKEEXT) . (.Microsoft Corporation - Extension IKE.) - C:\Windows\System32\IKEEXT.DLL [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) - C:\Windows\System32\iphlpsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - DLL du service Serveur.) - C:\Windows\System32\srvsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - DLL du service Station de travail.) - C:\Windows\System32\wkssvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\lsm.dll (LSM) . (.Microsoft Corporation - Service du gestionnaire de session locale.) - C:\Windows\System32\lsm.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\moshost.dll (MapsBroker) . (.Microsoft Corporation - Gestionnaire des cartes téléchargées.) - C:\Windows\System32\moshost.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: McAfee WebAdvisor (McAfee WebAdvisor) . (.McAfee, LLC - McAfee WebAdvisor.) - C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe =>.McAfee, LLC®
O23 - Service: McAfee AP Service (McAPExe) . (.McAfee, LLC - McAfee Access Protection.) - C:\Program Files\Common Files\McAfee\VSCore_20_4\mcapexe.exe {76A3C3D3AB0C3E9536C506AE}. =>.McAfee, LLC
O23 - Service: McAfee CSP Service (mccspsvc) . (.McAfee, LLC - McAfee CSP Service Host.) - C:\Program Files\Common Files\McAfee\CSP\3.6.124.0\McCSPServiceHost.exe {76A3C3D3AB0C3E9536C506AE}. =>.McAfee, LLC
O23 - Service: McAfee Service Controller (mfemms) . (.McAfee, LLC - McAfee Management Service.) - C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe =>.McAfee, Inc.®
O23 - Service: McAfee Module Core Service (ModuleCoreService) . (.McAfee, LLC - McAfee Module Core Service.) - C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe =>.McAfee, LLC®
O23 - Service: C:\Windows\System32\FirewallAPI.dll (mpssvc) . (.Microsoft Corporation - Service de protection Microsoft.) - C:\Windows\System32\MPSSVC.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\iscsidsc.dll (MSiSCSI) . (.Microsoft Corporation - Service de découverte iSCSI.) - C:\Windows\System32\iscsiexe.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: @mqutil.dll,-6102 (MSMQ) . (.Microsoft Corporation - Message Queuing Service.) - C:\Windows\System32\mqsvc.exe [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\Microsoft.NET\Framework\v4.0.30319\ServiceModelI (NetMsmqActivator) . (.Microsoft Corporation - SMSvcHost.exe.) - C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe =>.Microsoft®
O23 - Service: C:\Windows\Microsoft.NET\Framework\v4.0.30319\ServiceModelI (NetPipeActivator) . (.Microsoft Corporation - SMSvcHost.exe.) - C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe =>.Microsoft®
O23 - Service: C:\Windows\Microsoft.NET\Framework\v4.0.30319\ServiceModelI (NetTcpActivator) . (.Microsoft Corporation - SMSvcHost.exe.) - C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe =>.Microsoft®
O23 - Service: C:\Windows\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Connaissance des emplacements réseau 2.) - C:\Windows\System32\nlasvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Serveur RPC de l’interface du magasin résea.) - C:\Windows\System32\nsisvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\APHostRes.dll (OneSyncSvc) . (.Microsoft Corporation - Accounts Host Service.) - C:\Windows\System32\APHostService.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Hôte de synchronisation_65d88 (OneSyncSvc_65d88) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft Windows Publisher®
O23 - Service: McAfee PEF Service (PEFService) . (.McAfee, LLC - McAfee PEF Service.) - C:\Program Files\Common Files\McAfee\PEF\CORE\PEFService.exe {76A3C3D3AB0C3E9536C506AE}. =>.McAfee, LLC
O23 - Service: C:\Windows\System32\umpo.dll (Power) . (.Microsoft Corporation - Service d’alimentation en mode utilisateur.) - C:\Windows\System32\umpo.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\Windows\System32\profsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\rasmans.dll (RasMan) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) - C:\Windows\System32\rasmans.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - Mappeur de point de terminaison RPC.) - C:\Windows\System32\RpcEpMap.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: @combase.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\Windows\System32\rpcss.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\SCardSvr.dll (SCardSvr) . (.Microsoft Corporation - Serveur de gestion de ressources des cartes.) - C:\Windows\System32\SCardSvr.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) - C:\Windows\System32\schedsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\Sens.dll (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) - C:\Windows\System32\Sens.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) - C:\Windows\System32\shsvcs.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Application sous-système spouleur.) - C:\Windows\System32\spoolsv.exe [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Service de la plateforme de protection logi.) - C:\Windows\System32\sppsvc.exe =>.Microsoft®
O23 - Service: C:\Windows\System32\wiaservc.dll (StiSvc) . (.Microsoft Corporation - Service de périphériques d’images fixes.) - C:\Windows\System32\wiaservc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\sysmain.dll (SysMain) . (.Microsoft Corporation - Hôte de Service SysMain.) - C:\Windows\System32\sysmain.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\SystemEventsBrokerServer.dll (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) - C:\Windows\System32\SystemEventsBrokerServer.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\themeservice.dll (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) - C:\Windows\System32\themeservice.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\usermgr.dll (UserManager) . (.Microsoft Corporation - UserMgr.) - C:\Windows\System32\usermgr.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\usosvc.dll (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) - C:\Windows\System32\usosvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wcmsvc.dll (Wcmsvc) . (.Microsoft Corporation - DLL du service de gestion des connexions Wi.) - C:\Windows\System32\wcmsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wbem\WMIsvc.dll (winmgmt) . (.Microsoft Corporation - WMI.) - C:\Windows\System32\wbem\WMIsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wlansvc.dll (Wlansvc) . (.Microsoft Corporation - DLL du service de configuration automatique.) - C:\Windows\System32\wlansvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wpnservice.dll (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) - C:\Windows\System32\WpnService.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\WpnUserService.dll (WpnUserService) . (.Microsoft Corporation - Service utilisateur de notifications Push W.) - C:\Windows\System32\WpnUserService.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Service utilisateur de notifications Push Windows_65d88 (WpnUserService_65d88) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft Windows Publisher®
O23 - Service: C:\Windows\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Service Centre de sécurité de Windows.) - C:\Windows\System32\wscsvc.dll =>.Microsoft®
O23 - Service: C:\WINDOWS\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - C:\Windows\System32\SearchIndexer.exe [Unsigned] =>.Microsoft Corporation

---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (70) - 11s
SR - Boot [19/03/2019] [ 85816] (3ware) . (.LSI.) - C:\Windows\System32\drivers\3ware.sys =>.Microsoft Windows®
SR - Auto [25/02/2020] [ 88648] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.®
SS - Demand [10/06/2020] [ 335416] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Inc.®
SR - Boot [19/03/2019] [ 1038352] (ADP80XX) . (.PMC-Sierra.) - C:\Windows\System32\drivers\adp80xx.sys =>.Microsoft Windows®
SR - Auto [13/01/2015] [ 217088] (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe [Unsigned] =>.AMD
SR - Demand [13/01/2015] [10070016] (amdkmdag) . (.Advanced Micro Devices, Inc..) - C:\Windows\System32\drivers\atikmdag.sys [Unsigned] =>.Advanced Micro Devices, Inc.
SR - Demand [13/01/2015] [ 290304] (amdkmdap) . (.Advanced Micro Devices, Inc..) - C:\Windows\System32\drivers\atikmpag.sys [Unsigned] =>.Advanced Micro Devices, Inc.
SR - Boot [19/03/2019] [ 75280] (amdsata) . (.Advanced Micro Devices.) - C:\Windows\System32\drivers\amdsata.sys =>.Microsoft Windows®
SR - Boot [19/03/2019] [ 215560] (amdsbs) . (.AMD Technologies Inc..) - C:\Windows\System32\drivers\amdsbs.sys =>.Microsoft Windows®
SR - Boot [19/03/2019] [ 23080] (amdxata) . (.Advanced Micro Devices.) - C:\Windows\System32\drivers\amdxata.sys =>.Microsoft Windows®
SR - Boot [19/03/2019] [ 116752] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\Windows\System32\drivers\arcsas.sys =>.Microsoft Windows®
SR - Demand [19/03/2019] [ 8192] bcmfn2 Service (bcmfn2) . (...) - C:\Windows\System32\drivers\bcmfn2.sys [Unsigned] =>.Broadcom Corporation
SR - Demand [09/04/2020] [ 71104] McAfee Inc. cfwids (cfwids) . (.McAfee, LLC.) - C:\Windows\System32\drivers\cfwids.sys =>.McAfee, Inc.®
SR - Demand [08/08/2017] [ 89856] SAMSUNG Mobile USB Com (dg_ssudbus) . (.DEVGURU Co., LTD.(www.devguru.co.kr).) - C:\Windows\System32\drivers\ssudbus.sys =>.DEVGURU CO LTD®
SR - Auto [18/04/2006] [ 102400] EPSON V3 Service4(01) (EPSON_PM_RPCV4_01) . (.SEIKO EPSON CORPORATION.) - C:\ProgramData\EPSON\EPW!3 SSRP\E_S30RP1.EXE [Unsigned] =>.Seiko Epson Corporation
SS - Demand [19/06/2020] [ 1052656] Google Chrome Elevation Service (GoogleChromeElevationService) . (.Google LLC.) - C:\Program Files\Google\Chrome\Application\83.0.4103.116\elevation_service.exe =>.Google LLC®
SR - Demand [19/03/2019] [ 22016] Intel SoC GPIO Controller Driv (GPIO) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaiogpio.sys [Unsigned] =>.Intel Corporation
SR - Auto [31/12/2016] [ 153752] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [31/12/2016] [ 153752] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
SR - Demand [26/05/2020] [ 170624] McAfee Inc. HipShieldK (HipShieldK) . (.McAfee, Inc..) - C:\Windows\System32\drivers\HipShieldK.sys =>.McAfee, LLC®
SR - Demand [05/03/2012] [ 48000] HP Keyboard Smart Card Driver (HPKBCCID) . (.Hewlett-Packard Company.) - C:\Windows\System32\drivers\HPKBCCID.sys [Unsigned] =>.Hewlett-Packard Company
SR - Boot [19/03/2019] [ 56848] (HpSAMD) . (.Hewlett-Packard Company.) - C:\Windows\System32\drivers\HpSAMD.sys =>.Microsoft Windows®
SR - Auto [12/12/2018] [ 154432] HuaweiHiSuiteService.exe (HuaweiHiSuiteService.exe) . (...) - C:\Program Files\HiSuite\HandSetService\HuaweiHiSuiteService.exe [Unsigned] =>.Huawei
SR - Demand [19/03/2019] [ 28672] Intel Serial IO GPIO Controlle (iagpio) . (.Intel(R) Corporation.) - C:\Windows\System32\drivers\iagpio.sys [Unsigned] =>.Intel(R) Corporation
SR - Demand [19/03/2019] [ 73728] Intel(R) Serial IO I2C Host Cont (iai2c) . (.Intel(R) Corporation.) - C:\Windows\System32\drivers\iai2c.sys [Unsigned] =>.Intel(R) Corporation
SR - Demand [19/03/2019] [ 57856] Intel(R) Atom(TM) Proces (iaioi2c) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaioi2c.sys [Unsigned] =>.Intel Corporation
SR - Boot [19/03/2019] [ 693048] Intel Chipset SATA RAI (iaStorAVC) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaStorAVC.sys =>.Microsoft Windows®
SR - Boot [19/03/2019] [ 333624] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaStorV.sys =>.Microsoft Windows®
SR - Boot [19/03/2019] [ 121144] (ItSas35i) . (.Avago Technologies.) - C:\Windows\System32\drivers\ItSas35i.sys =>.Microsoft Windows®
SR - Boot [19/03/2019] [ 94008] (LSI_SAS) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_sas.sys =>.Microsoft Windows®
SR - Boot [19/03/2019] [ 103224] (LSI_SAS2i) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_sas2i.sys =>.Microsoft Windows®
SR - Boot [19/03/2019] [ 106296] (LSI_SAS3i) . (.Avago Technologies.) - C:\Windows\System32\drivers\lsi_sas3i.sys =>.Microsoft Windows®
SR - Boot [19/03/2019] [ 69432] (LSI_SSS) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_sss.sys =>.Microsoft Windows®
SR - Boot [03/07/2020] [ 17360] MbamElam (MbamElam) . (.Malwarebytes.) - C:\Windows\System32\drivers\MbamElam.sys =>.Microsoft®
SS - Demand [03/07/2020] [ 5578952] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc®
SR - Boot [03/07/2020] [ 213912] MBAMSwissArmy (MBAMSwissArmy) . (.Malwarebytes.) - C:\Windows\System32\drivers\mbamswissarmy.sys =>.Malwarebytes Inc®
SR - Auto [25/06/2020] [ 723432] McAfee WebAdvisor (McAfee WebAdvisor) . (.McAfee, LLC.) - C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe =>.McAfee, LLC®
SR - Auto [08/06/2020] [ 623600] McAfee AP Service (McAPExe) . (.McAfee, LLC.) - C:\Program Files\Common Files\McAfee\VSCore_20_4\mcapexe.exe {76A3C3D3AB0C3E9536C506AE}. =>.McAfee, LLC
SR - Auto [28/05/2020] [ 2169480] McAfee CSP Service (mccspsvc) . (.McAfee, LLC.) - C:\Program Files\Common Files\McAfee\CSP\3.6.124.0\McCSPServiceHost.exe {76A3C3D3AB0C3E9536C506AE}. =>.McAfee, LLC
SR - Boot [19/03/2019] [ 52024] (megasas) . (.Avago Technologies.) - C:\Windows\System32\drivers\megasas.sys =>.Microsoft Windows®
SR - Boot [19/03/2019] [ 64312] (megasas2i) . (.Avago Technologies.) - C:\Windows\System32\drivers\MegaSas2i.sys =>.Microsoft Windows®
SR - Boot [19/03/2019] [ 79160] (megasas35i) . (.Avago Technologies.) - C:\Windows\System32\drivers\megasas35i.sys =>.Microsoft Windows®
SR - Boot [19/03/2019] [ 464696] (megasr) . (.LSI Corporation, Inc..) - C:\Windows\System32\drivers\megasr.sys =>.Microsoft Windows®
SR - Demand [09/04/2020] [ 405440] McAfee Inc. mfeaack (mfeaack) . (.McAfee, LLC.) - C:\Windows\System32\drivers\mfeaack.sys =>.McAfee, Inc.®
SR - Demand [09/04/2020] [ 296384] McAfee Inc. mfeavfk (mfeavfk) . (.McAfee, LLC.) - C:\Windows\System32\drivers\mfeavfk.sys =>.McAfee, Inc.®
SR - Boot [09/04/2020] [ 74152] McAfee Inc. mfeelamk (mfeelamk) . (.McAfee, LLC.) - C:\Windows\System32\drivers\mfeelamk.sys =>.Microsoft®
SS - Demand [27/03/2020] [ 579112] McAfee Firewall Core Service (mfefire) . (.McAfee, LLC.) - C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe =>.McAfee, Inc.®
SR - Demand [09/04/2020] [ 405440] McAfee Inc. mfefirek (mfefirek) . (.McAfee, LLC.) - C:\Windows\System32\drivers\mfefirek.sys =>.McAfee, Inc.®
SR - Boot [09/04/2020] [ 767936] McAfee Inc. mfehidk (mfehidk) . (.McAfee, LLC.) - C:\Windows\System32\drivers\mfehidk.sys =>.McAfee, Inc.®
SR - Auto [27/03/2020] [ 579112] McAfee Service Controller (mfemms) . (.McAfee, LLC.) - C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe =>.McAfee, Inc.®
SR - Demand [01/05/2020] [ 469640] McAfee LLC. mfencbdc (mfencbdc) . (.McAfee LLC..) - C:\Windows\System32\drivers\mfencbdc.sys =>.McAfee, Inc.®
SR - Demand [01/05/2020] [ 91784] McAfee LLC. mfencrk (mfencrk) . (.McAfee LLC..) - C:\Windows\System32\drivers\mfencrk.sys =>.McAfee, Inc.®
SR - Demand [09/04/2020] [ 99264] McAfee Inc. mfeplk (mfeplk) . (.McAfee, LLC.) - C:\Windows\System32\drivers\mfeplk.sys =>.McAfee, Inc.®
SS - Demand [27/03/2020] [ 579112] McAfee Validation Trust Protection Service (mfevtp) . (.McAfee, LLC.) - C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe =>.McAfee, Inc.®
SR - Boot [09/04/2020] [ 208320] McAfee Inc. mfewfpk (mfewfpk) . (.McAfee, LLC.) - C:\Windows\System32\drivers\mfewfpk.sys =>.McAfee, Inc.®
SR - Auto [15/05/2020] [ 1375008] McAfee Module Core Service (ModuleCoreService) . (.McAfee, LLC.) - C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe =>.McAfee, LLC®
SR - Boot [19/03/2019] [ 58376] (mvumis) . (.Marvell Semiconductor, Inc..) - C:\Windows\System32\drivers\mvumis.sys =>.Microsoft Windows®
SR - Boot [19/03/2019] [ 119312] (nvraid) . (.NVIDIA Corporation.) - C:\Windows\System32\drivers\nvraid.sys =>.Microsoft Windows®
SR - Boot [19/03/2019] [ 142352] (nvstor) . (.NVIDIA Corporation.) - C:\Windows\System32\drivers\nvstor.sys =>.Microsoft Windows®
SR - Auto [27/05/2020] [ 3307864] McAfee PEF Service (PEFService) . (.McAfee, LLC.) - C:\Program Files\Common Files\McAfee\PEF\CORE\PEFService.exe {76A3C3D3AB0C3E9536C506AE}. =>.McAfee, LLC
SR - Boot [19/03/2019] [ 51512] (percsas2i) . (.Avago Technologies.) - C:\Windows\System32\drivers\percsas2i.sys =>.Microsoft Windows®
SR - Boot [19/03/2019] [ 59192] (percsas3i) . (.Avago Technologies.) - C:\Windows\System32\drivers\percsas3i.sys =>.Microsoft Windows®
SR - Demand [10/06/2011] [ 394856] Realtek 8167 NT Driver (RTL8167) . (.Realtek.) - C:\Windows\System32\drivers\Rt86win7.sys =>.Realtek Semiconductor Corp®
SR - Boot [19/03/2019] [ 41488] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\Windows\System32\drivers\sisraid2.sys =>.Microsoft Windows®
SR - Boot [19/03/2019] [ 79368] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\Windows\System32\drivers\sisraid4.sys =>.Microsoft Windows®
SR - Demand [08/08/2017] [ 184192] SAMSUNG Mobile USB Modem Dr (ssudmdm) . (.DEVGURU Co., LTD.(www.devguru.co.kr).) - C:\Windows\System32\drivers\ssudmdm.sys =>.DEVGURU CO LTD®
SR - Boot [19/03/2019] [ 27152] (stexstor) . (.Promise Technology, Inc..) - C:\Windows\System32\drivers\stexstor.sys =>.Microsoft Windows®
SR - Demand [08/06/2020] [ 35008] TAP-Windows Adapter V9 (tap0901) . (.The OpenVPN Project.) - C:\Windows\System32\drivers\tap0901.sys =>.Microsoft®
SR - Boot [19/03/2019] [ 150056] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\Windows\System32\drivers\vsmraid.sys =>.Microsoft Windows®
SR - Boot [19/03/2019] [ 277008] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\Windows\System32\drivers\VSTXRAID.SYS =>.Microsoft Windows®

---\\ TÂCHES PLANIFIÉES EN AUTOMATIQUE (Registre) (22) - 16s
O38 - TASK: {2AA7672E-5091-43B9-B75A-7956E4E36105}[\AdwCleaner_onReboot] - (.Malwarebytes - AdwCleaner.) -- C:/Users/DENIS FIACRE RENEE/Desktop/adwcleaner_8.0.6.exe [8420016] =>.Malwarebytes
O38 - TASK: {340F8DD8-23A9-4FBF-9302-5953993F37C0}[\GoogleUpdateTaskMachineUA] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files\Google\Update\GoogleUpdate.exe [153752] =>.Google Inc.
O38 - TASK: {66C138D2-02C0-428F-ADE9-307ACF76E567}[\McAfeeLogon] - (.McAfee, LLC - McAfee.) -- C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe [628208] =>.McAfee, LLC
O38 - TASK: {8E2C69A3-7B63-4ED5-A58B-1676B78B7135}[\GoogleUpdateTaskMachineCore] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files\Google\Update\GoogleUpdate.exe [153752] =>.Google Inc.
O38 - TASK: {A5E80B4F-4D9C-4B38-94F5-187072EEAA1D}[\Adobe Acrobat Update Task] - (.Adobe Systems - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1242704] =>.Adobe Systems
O38 - TASK: {B8DE279B-B973-455D-A2D9-8E00F701519A}[\McAfee\DAD.Execute.Updates] - (.McAfee, LLC - DAD Updater.) -- C:\Program Files\Common Files\McAfee\DynamicAppDownloader\DADUpdater.exe [3284024] =>.McAfee, LLC
O38 - TASK: {B9277B8A-2F81-4D13-94A6-E371D4E2BCC0}[\CCleaner Update] - (.Piriform Software Ltd - CCleaner emergency updater.) -- C:\Program Files\CCleaner\CCUpdate.exe [686384] =>.Piriform Software Ltd
O38 - TASK: {C17B24DD-5BD4-4F33-9F55-07433733B0A7}[\McAfee\McAfee DAT Built in test] - (.McAfee, LLC. - Dat built in test.) -- C:\Program Files\Common Files\McAfee\AMContent\scanners\x86\datrep\1.0.9.577\mcdatrep.exe [1826656] =>.McAfee, LLC.
O38 - TASK: {CB023435-4284-4EAE-8B77-6DE963E43F7A}[\CCleanerSkipUAC] - (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [24690360] =>.Piriform Software Ltd
O38 - TASK: {D7D82286-B601-4745-9C5E-B10000769909}[\Adobe Flash Player Updater] - (.Adobe - Adobe® Flash® Player Update Service 32.0 r0.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [335416] =>.Adobe
O38 - TASK: {E8053E5F-7E96-472B-B116-5AEA9D790080}[\Adobe Flash Player PPAPI Notifier] - (.Adobe - Adobe® Flash® Player Installer/Uninstaller.) -- C:\Windows\System32\Macromed\Flash\FlashUtil32_32_0_0_387_pepper.exe [1454648] =>.Adobe
C:\WINDOWS\System32\Tasks\AdwCleaner_onReboot - (.Malwarebytes.) -- C:/Users/DENIS FIACRE RENEE/Desktop/adwcleaner_8.0.6.exe [/r] =>.Malwarebytes
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [/ua ./ua] =>.Google Inc.
C:\WINDOWS\System32\Tasks\McAfeeLogon - (.McAfee, LLC.) -- C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe [/platui] =>.McAfee, LLC
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [/c] =>.Google Inc.
C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task - (.Adobe Systems.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [] =>.Adobe Systems
C:\WINDOWS\System32\Tasks\McAfee\DAD.Execute.Updates - (.McAfee, LLC.) -- C:\Program Files\Common Files\McAfee\DynamicAppDownloader\DADUpdater.exe [] =>.McAfee, LLC
C:\WINDOWS\System32\Tasks\CCleaner Update - (.Piriform Software Ltd.) -- C:\Program Files\CCleaner\CCUpdate.exe [] =>.Piriform Software Ltd
C:\WINDOWS\System32\Tasks\McAfee\McAfee DAT Built in test - (.McAfee, LLC..) -- C:\Program Files\Common Files\McAfee\AMContent\scanners\x86\datrep\1.0.9.577\mcdatrep.exe [/hcmode=periodic ./hcmode=periodic] =>.McAfee, LLC.
C:\WINDOWS\System32\Tasks\CCleanerSkipUAC - (.Piriform Software Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [$(Arg0)] =>.Piriform Software Ltd
C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater - (.Adobe.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [] =>.Adobe
C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier - (.Adobe.) -- C:\Windows\System32\Macromed\Flash\FlashUtil32_32_0_0_387_pepper.exe [-check pepperplugin.-check] =>.Adobe

---\\ APPLICATIONS LANCÉES AU DÉMARRAGE DU SYSTÈME (9) - 1s
O4 - HKLM\..\Run: [SecurityHealth] . (. - .) -- HealthSystray.exe =>.SUP.Orphan
O4 - HKCU\..\Run: [EPSON Stylus DX4000 Series] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\System32\spool\drivers\w32x86\3\E_FATIBEE.EXE [Unsigned] =>.Seiko Epson Corporation
O4 - HKCU\..\Run: [CCleaner Smart Cleaning] . (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Software Ltd®
O4 - HKUS\.DEFAULT\..\Run: [CCleaner Smart Cleaning] . (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Software Ltd®
O4 - HKUS\S-1-5-18\..\Run: [CCleaner Smart Cleaning] . (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Software Ltd®
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\System32\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\System32\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-21-4028132002-2266583049-2150520583-1000\..\Run: [EPSON Stylus DX4000 Series] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\System32\spool\drivers\w32x86\3\E_FATIBEE.EXE [Unsigned] =>.Seiko Epson Corporation
O4 - HKUS\S-1-5-21-4028132002-2266583049-2150520583-1000\..\Run: [CCleaner Smart Cleaning] . (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Software Ltd®

---\\ PROCESSUS LANCÉS (20) - 3s
[MD5.C4C9E443A1DA348FFC319826DAF3766A] - (.AMD - AMD External Events Service Module.) -- C:\Windows\System32\atiesrxx.exe [217088] [PID.1696] [Unsigned] =>.AMD
[MD5.5C2CE91E6EBC1E21F945CA8E380A5C78] - (.AMD - AMD External Events Client Module.) -- C:\Windows\System32\atieclxx.exe [453632] [PID.1720] [Unsigned] =>.AMD
[MD5.878A26B96FA0E4821601E570C3BCEDD2] - (.Adobe Systems - Adobe Acrobat Update Service.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [88648] [PID.2552] =>.Adobe Inc.®
[MD5.CDCA791AFA0483F44BBA576DBFAFD04D] - (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\ProgramData\EPSON\EPW!3 SSRP\E_S30RP1.EXE [102400] [PID.2600] [Unsigned] =>.Seiko Epson Corporation
[MD5.E1B22EAB27002CA3C882696691B72306] - (. - HuaweiHiSuiteService.) -- C:\Program Files\HiSuite\HandSetService\HuaweiHiSuiteService.exe [154432] [PID.2616] [Unsigned]
[MD5.C4E820BC5B5E220C5D22F116F343F110] - (.McAfee, LLC - McAfee Module Core Service.) -- C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe [1375008] [PID.2748] =>.McAfee, LLC®
[MD5.A4FC700DD1CF92EE1936CBA19F0CA4CF] - (.McAfee, LLC - McAfee PEF Service.) -- C:\Program Files\Common Files\McAfee\PEF\CORE\PEFService.exe [3307864] [PID.3168] {76A3C3D3AB0C3E9536C506AE}. =>.McAfee, LLC
[MD5.B865F3B3CBAAD778907856D2FE940BF0] - (.McAfee, LLC - McAfee Management Service Host.) -- C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHOST.exe [448488] [PID.3836] {76A3C3D3AB0C3E9536C506AE}. =>.McAfee, LLC
[MD5.7ADFE8D0C1160A6E680359FB8EABEBA7] - (.McAfee, LLC - McAfee Cloud AV.) -- C:\Program Files\McAfee\MfeAV\MfeAVSvc.exe [3372808] [PID.4120] {76A3C3D3AB0C3E9536C506AE}. =>.McAfee, LLC
[MD5.BFBC8B0ECB1DD771934DE1FE62CE64F1] - (.McAfee, LLC - McAfee CSP Service Host.) -- C:\Program Files\Common Files\McAfee\CSP\3.6.124.0\McCSPServiceHost.exe [2169480] [PID.5024] {76A3C3D3AB0C3E9536C506AE}. =>.McAfee, LLC
[MD5.0D1E3F63CB1AAA2DE13CC0DC33B22DE2] - (.McAfee LLC. - McAfee Scanner service.) -- C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [222488] [PID.5116] =>.McAfee, Inc.®
[MD5.EA807392166A1BA51B4D1B9F93B2A63C] - (.McAfee, LLC - McAfee WebAdvisor.) -- C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [723432] [PID.5836] =>.McAfee, LLC®
[MD5.0F16C064DD9051C2C7B3DAA7F21EC70A] - (.McAfee, LLC - McAfee Access Protection.) -- C:\Program Files\Common Files\McAfee\VSCore_20_4\mcapexe.exe [623600] [PID.5972] {76A3C3D3AB0C3E9536C506AE}. =>.McAfee, LLC
[MD5.7EE00FAC8ABA4469F9BC9685F064432C] - (.McAfee, LLC - McAfee WebAdvisor.) -- C:\Program Files\McAfee\WebAdvisor\uihost.exe [722408] [PID.3140] =>.McAfee, LLC®
[MD5.E00C3009A3EF6E01DF15CACBEF8F53DE] - (...) -- C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe [487464] [PID.7644] =>.Microsoft®
[MD5.98EF2F4891F982AAEFBADAC6955761AD] - (...) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.56.102.0_x86__kzf8qxf38zg5c\SkypeBackgroundHost.exe [157184] [PID.6872] [Unsigned] =>.Microsoft Corporation
[MD5.C4E820BC5B5E220C5D22F116F343F110] - (.McAfee, LLC - McAfee Module Core Service.) -- C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe [1375008] [PID.872] =>.McAfee, LLC®
[MD5.564C6065377A4221FE24929863A5376B] - (.McAfee, LLC - McAfee.) -- C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe [628208] [PID.6896] {76A3C3D3AB0C3E9536C506AE}. =>.McAfee, LLC
[MD5.7CC015326B2D3C32A398D6E9CE204A5B] - (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [24690360] [PID.8488] =>.Piriform Software Ltd®
[MD5.0AA2FE031CF63D240C7AD85A07F443FA] - (.Nicolas Coolman - ZHPSuite.) -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\ZHP\ZHPSuite.exe [3442560] [PID.10208] [Unsigned] =>.Nicolas Coolman

---\\ CHROME, Démarrage, Recherche, Extensions (18) - 1s
G2 - GCE: Preference [DENIS FIACRE RENEE][User Data\Default\Extensions] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides}
G2 - GCE: Preference [DENIS FIACRE RENEE][User Data\Default\Extensions] [adnlfjpnmidfimlkaohpidplnoimahfh] YouTube =>.Youtube
G2 - GCE: Preference [DENIS FIACRE RENEE][User Data\Default\Extensions] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs}
G2 - GCE: Preference [DENIS FIACRE RENEE][User Data\Default\Extensions] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive}
G2 - GCE: Preference [DENIS FIACRE RENEE][User Data\Default\Extensions] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube}
G2 - GCE: Preference [DENIS FIACRE RENEE][User Data\Default\Extensions] [felcaaldnbdncclmgdcncolpebgiejap] =>.Google Inc. {Sheets}
G2 - GCE: Preference [DENIS FIACRE RENEE][User Data\Default\Extensions] [fheoggkfdfchfphceeifdbepaooicaho] =>.McAfee {SECURE Safe Browsing}
G2 - GCE: Preference [DENIS FIACRE RENEE][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
G2 - GCE: Preference [DENIS FIACRE RENEE][User Data\Default\Extensions] [jhpmnkappdkobfapmgdlpffjlfijokid] Home =>.Unknown
G2 - GCE: Preference [DENIS FIACRE RENEE][User Data\Default\Extensions] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet}
G2 - GCE: Preference [DENIS FIACRE RENEE][User Data\Default\Extensions] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail}
G2 - GCE: Preference [DENIS FIACRE RENEE][User Data\Default\Extensions] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc.
G2 - GCE: Preference [DENIS FIACRE RENEE][User Data\Default\Local Extension Settings] [fheoggkfdfchfphceeifdbepaooicaho] =>.McAfee {SECURE Safe Browsing}
G2 - GCE: Preference [DENIS FIACRE RENEE][User Data\Default\Local Extension Settings] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
G2 - GCE: Preference [DENIS FIACRE RENEE][User Data\Default\Local Extension Settings] [jhpmnkappdkobfapmgdlpffjlfijokid]
G2 - GCE: Preference [DENIS FIACRE RENEE][User Data\Default\Sync Extension Settings] [bfkmdpfljdpopbemfaelnflapafbflgn]
G2 - GCE: Preference [DENIS FIACRE RENEE][User Data\Default\Sync Extension Settings] [iinglghmhcgdgjjlafobajghjamdchik] =>.SUP.Bitmotion
G2 - GCE: Preference [DENIS FIACRE RENEE][User Data\Default\Sync Extension Settings] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] =>.Google Inc. {Chrome Media Router}

---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (3) - 1s
P2 - EXT FILE: (.Microsoft Corporation - The plugin allows you to have a better expe.) -- C:\Program Files\Mozilla Firefox\Plugins\npMeetingJoinPluginOC.dll =>.Microsoft®
P2 - FPN: [HKCU] [connective.be/BrowserPlugin] - (.Connective n.v..) -- C:\Users\DENIS FIACRE RENEE\AppData\Local\Connective\SigningFirefoxPlugin\npapi-plugin.dll
P2 - FPN: [HKLM] [@mcafee.com/MSC,version=10] - (.McAfee Total Protection MIME Plugin.) -- C:\Program Files\McAfee\MSC\npMcSnFFPl.dll =>.McAfee Total Protection MIME Plugin

---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (9) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.18362.890 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation

---\\ INTERNET EXPLORER, Site de confiance et site sensible (2) - 0s
~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad)
~ Microsoft Internet Explorer Restricted Site(s) EscDomains: 0(Good) / 0(Bad)

---\\ MICROSOFT EDGE, Plugin,Favoris,Démarrage,Recherche,Extension (1) - 0s
E2 - GCE: Preference [DENIS FIACRE RENEE][User Data\Default\Local Extension Settings] [jdiccldimpdaibmpdkjnbmckianbfold] =>.Microsoft Corporation

---\\ INTERNET EXPLORER,Proxy Management (6) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft

---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\WINDOWS\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ ÉTUDE DU FICHIER HOSTS (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (1)

---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (3) - 0s
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files\Microsoft Office\Office15\OCHelper.dll =>.Microsoft®
O2 - BHO: McAfee WebAdvisor - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} . (.McAfee, LLC - McAfee WebAdvisor.) -- C:\Program Files\McAfee\WebAdvisor\win32\ieplugin.dll =>.McAfee, LLC®
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®

---\\ INTERNET EXPLORER, Barre d'outil (Toolbar) (1) - 0s
O3 - Toolbar: 0xB1C218236549D4119B18009027A5CD4F - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} . (...) -- (.not file.)

---\\ RACCOURCIS GLOBAL STARTUP (67) - 9s
O4 - GS\Desktop [DENIS FIACRE RENEE]: DOSSIERS RENEE CAPTAIN - Raccourci.lnk . (...) C:\Users\DENIS FIACRE RENEE\Documents\DOSSIERS RENEE CAPTAIN [Unsigned]
O4 - GS\Desktop [DENIS FIACRE RENEE]: PhotoFiltre Studio X.lnk . (.PhotoFiltre - PhotoFiltre Studio X.) C:\Program Files\PhotoFiltre Studio X\pfstudiox.exe [Unsigned] =>.PhotoFiltre
O4 - GS\Desktop [DENIS FIACRE RENEE]: Revo Uninstaller.lnk . (.VS Revo Group - Revo Uninstaller.) C:\Program Files\VS Revo Group\Revo Uninstaller\Revouninstaller.exe =>.VS Revo Group®
O4 - GS\Desktop [DENIS FIACRE RENEE]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\DENIS FIACRE RENEE\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Desktop [DENIS FIACRE RENEE]: ZHPSuite.lnk . (.Nicolas Coolman - ZHPSuite.) C:\Users\DENIS FIACRE RENEE\AppData\Roaming\ZHP\ZHPSuite.exe =>.Nicolas Coolman
O4 - GS\Desktop [DENIS FIACRE RENEE]: Zuma Deluxe.lnk . (...) C:\Program Files\Zuma Deluxe\zuma.exe [Unsigned]
O4 - GS\Quicklaunch [DENIS FIACRE RENEE]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\Quicklaunch [DENIS FIACRE RENEE]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft®
O4 - GS\Quicklaunch [DENIS FIACRE RENEE]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - GS\Quicklaunch [DENIS FIACRE RENEE]: Microsoft Outlook.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files\Microsoft Office\Office15\OUTLOOK.EXE /recycle =>.Microsoft®
O4 - GS\sendTo [DENIS FIACRE RENEE]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [DENIS FIACRE RENEE]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [DENIS FIACRE RENEE]: Réduire ces photographies....lnk . (.Emjysoft - Photo Réducteur.) C:\Program Files\Emjysoft\Photo Réducteur\photo.exe =>.Emjysoft®
O4 - GS\sendTo [DENIS FIACRE RENEE]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [DENIS FIACRE RENEE]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\TaskBar [DENIS FIACRE RENEE]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files\Microsoft\Edge\Application\msedge.exe --profile-directory=Default =>.Microsoft®
O4 - GS\TaskBar [DENIS FIACRE RENEE]: Outlook 2013.lnk . (...) C:\Windows\Installer\{91150000-0011-0000-0000-0000000FF1CE}\outicon.exe =>.Microsoft®
O4 - GS\TaskBar [DENIS FIACRE RENEE]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Startup [DENIS FIACRE RENEE]: Envoyer à OneNote.lnk . (.Microsoft Corporation - Send to OneNote Tool.) C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE /tsr =>.Microsoft®
O4 - GS\Programs [DENIS FIACRE RENEE]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\DENIS FIACRE RENEE\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - GS\CommonDesktop [Public]: Acrobat Reader DC.lnk . (.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) C:\Program Files\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Inc.®
O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Software Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Software Ltd®
O4 - GS\CommonDesktop [Public]: eID Viewer.lnk . (...) C:\Program Files\Belgium Identity Card\EidViewer\eID Viewer.exe =>.Fedict®
O4 - GS\CommonDesktop [Public]: Expert PDF 9 Converter.lnk . (.Visagesoft - Expert PDF 9 Converter.) C:\Program Files\Avanquest\Expert PDF 9 Converter\PDFReader.exe [Unsigned] =>.Visagesoft
O4 - GS\CommonDesktop [Public]: Expert PDF 9 Convertisseur Word.lnk . (.visagesoft - Expert PDF 9 Word converter.) C:\Program Files\Avanquest\Expert PDF 9 Converter\vspdf2word.exe [Unsigned] =>.Visagesoft
O4 - GS\CommonDesktop [Public]: Expert PDF 9 Creator.lnk . (...) C:\Program Files\Avanquest\Expert PDF 9 Converter\vspdfprsrv.exe [Unsigned]
O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\CommonDesktop [Public]: Google Docs.lnk . (...) C:\Program Files\Google\Drive\googledrivesync.exe --new_document =>.Google LLC®
O4 - GS\CommonDesktop [Public]: Google Earth.lnk . (.Google - Google Earth.) C:\Program Files\Google\Google Earth\client\googleearth.exe =>.Google Inc®
O4 - GS\CommonDesktop [Public]: Google Sheets.lnk . (...) C:\Program Files\Google\Drive\googledrivesync.exe --new_spreadsheet =>.Google LLC®
O4 - GS\CommonDesktop [Public]: Google Slides.lnk . (...) C:\Program Files\Google\Drive\googledrivesync.exe --new_presentation =>.Google LLC®
O4 - GS\CommonDesktop [Public]: HiSuite.lnk . (.Huawei - Huawei PC suite.) C:\Program Files\HiSuite\HiSuite.exe [Unsigned] =>.Huawei
O4 - GS\CommonDesktop [Public]: Malwarebytes.lnk . (.Malwarebytes - Malwarebytes.) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.Malwarebytes Inc®
O4 - GS\CommonDesktop [Public]: McAfee® Total Protection.lnk . (.McAfee, LLC - McAfee.) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe /desktopicon /platui {76A3C3D3AB0C3E9536C506AE}. =>.McAfee, LLC
O4 - GS\CommonDesktop [Public]: Photo Réducteur.lnk . (.Emjysoft - Photo Réducteur.) C:\Program Files\Emjysoft\Photo Réducteur\photo.exe =>.Emjysoft®
O4 - GS\CommonDesktop [Public]: PhotoPad Éditeur d’images.lnk . (.NCH Software - PhotoPad Éditeur d’images.) C:\Program Files\NCH Software\PhotoPad\photopad.exe =>.NCH Software, Inc.®
O4 - GS\CommonDesktop [Public]: Pixillion - Convertisseur d'images.lnk . (.NCH Software - Pixillion - Convertisseur d'images.) C:\Program Files\NCH Software\Pixillion\pixillion.exe =>.NCH Software Pty Ltd®
O4 - GS\CommonDesktop [Public]: SimEdit.lnk . (.Realsil - SimEdit.) C:\Program Files\REALTEK\Realtek USB 2.0 Card Reader\SimEdit.exe [Unsigned] =>.Realsil
O4 - GS\CommonDesktop [Public]: TomTom MyDrive Connect.lnk . (.TomTom - TomTom MyDrive Connect.) C:\Program Files\MyDrive Connect\TomTom MyDrive Connect.exe "-startda" =>.TomTom International BV®
O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\CommonDesktop [Public]: VueScan x32.lnk . (.Hamrick Software - VueScan.) C:\Program Files\VueScan\vuescan.exe =>.Hamrick Software®
O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\DENIS FIACRE RENEE\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft®
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) C:\WINDOWS\system32\eudcedit.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Math Input Panel Accessory.) C:\Program Files\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) C:\WINDOWS\system32\mblctr.exe /open =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\WINDOWS\system32\xpsrchvw.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Acrobat Reader DC.lnk . (.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) C:\Program Files\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Inc.®
O4 - GS\ProgramsCommon [Public]: Acrobat Reader DC.lnk . (.Flexera Software LLC - InstallShield.) C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}\SC_Reader.ico [Unsigned] =>.Flexera Software LLC
O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Malwarebytes.lnk . (.Malwarebytes - Malwarebytes.) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.Malwarebytes Inc®
O4 - GS\ProgramsCommon [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: PhotoPad Éditeur d’images.lnk . (.NCH Software - PhotoPad Éditeur d’images.) C:\Program Files\NCH Software\PhotoPad\photopad.exe =>.NCH Software, Inc.®
O4 - GS\ProgramsCommon [Public]: Pixillion - Convertisseur d'images.lnk . (.NCH Software - Pixillion - Convertisseur d'images.) C:\Program Files\NCH Software\Pixillion\pixillion.exe =>.NCH Software Pty Ltd®
O4 - GS\ProgramsCommon [Public]: Shotcut.lnk . (...) C:\Program Files\Shotcut\shotcut.exe =>.Meltytech, LLC®
O4 - GS\ProgramsCommon [Public]: Suite NCH.lnk . (.NCH Software - PhotoPad Éditeur d’images.) C:\Program Files\NCH Software\PhotoPad\photopad.exe -extsuite =>.NCH Software, Inc.®

---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 109.88.203.3 62.197.111.140 =>.VOO
O17 - HKLM\System\CCS\Services\Tcpip\..\{3F84AB76-7EE9-42AA-9C29-24C02BECF845}: DhcpNameServer = 109.88.203.3 62.197.111.140 =>.VOO
O17 - HKLM\System\CCS\Services\Tcpip\..\{CF0EF1CC-72C2-4A0C-A3D4-6AD518E3E457}: DhcpNameServer = 109.88.203.3 62.197.111.140 =>.VOO

---\\ PROTOCOLE ADDITIONNEL (26) - 2s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft®
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files\Microsoft Office\Office15\MSOSB.DLL =>.Microsoft®
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: tbauth - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} . (.McAfee, LLC - McAfee MSC IE plugin DLL.) -- C:\Program Files\McAfee\MSC\McSnIePl.dll {76A3C3D3AB0C3E9536C506AE}. =>.McAfee, LLC
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL =>.Microsoft®

---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s
O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\WINDOWS\System32\userinit.exe =>.Microsoft Corporation

---\\ CLÉ DE REGISTRE EXPLORER StartupApproved (5) - 0s
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Monitoring =>.Piriform Ltd
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:Envoyer à OneNote.lnk =>.Microsoft Corporation
[HKEY_USERS\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Monitoring =>.Piriform Ltd
[HKEY_USERS\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:Envoyer à OneNote.lnk =>.Microsoft Corporation
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SecurityHealth =>.Microsoft Corporation

---\\ COMPOSANTS ACTIVESETUP INSTALLÉS (ASIC) (6) - 1s
O40 - ASIC: Microsoft Windows Media Player 12.0 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Web Platform Customizations - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft Corporation®
O40 - ASIC: Google Chrome - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google LLC - Google Chrome Installer.) -- C:\Program Files\Google\Chrome\Application\83.0.4103.116\Installer\chrmstp.exe =>.Google LLC®
O40 - ASIC: Microsoft Edge - {9459C573-B17A-45AE-9F64-1857B5D58CEE} . (.Microsoft Corporation - Microsoft Edge Installer.) -- C:\Program Files\Microsoft\Edge\Application\83.0.478.58\Installer\setup.exe =>.Microsoft®

---\\ LOGICIELS INSTALLÉS (212) - 42s
O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} [Unsigned] =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Flash Player 32 PPAPI - (.Adobe.) [HKLM] -- Adobe Flash Player PPAPI =>.Adobe Inc.®
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-0804-1033-1959-001824369436} [Unsigned] =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Backup and Sync from Google - (.Google, Inc..) [HKLM] -- {AD393AF0-1097-4528-9D41-D95CDA7AA661} [Unsigned] =>.Google, Inc.
O42 - Logiciel: Belgium e-ID middleware 4.3.2 (build 3551) - (.Belgian Government.) [HKLM] -- {4DDF16AE-8D5D-4027-A2D1-8CBB498E3551} [Unsigned] =>.Belgian Government
O42 - Logiciel: Belgium e-ID viewer 4.2.11 (build 3344) - (.Belgian Government.) [HKLM] -- {F3DC7F06-92FF-4C98-87F5-72C0B7863344} [Unsigned] =>.Belgian Government
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner =>.Piriform Software Ltd®
O42 - Logiciel: Connective Signing Plugins - (.Connective.) [HKLM] -- {8A4F3504-4FB0-4AA7-A145-BCFEBCF3210E} [Unsigned] =>.Connective
O42 - Logiciel: Definition Update for Microsoft Office 2013 (KB3115404) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{96903939-431D-4BD1-ADCD-B578900397D7} =>.Microsoft®
O42 - Logiciel: EPSON Logiciel imprimante - (.SEIKO EPSON Corporation.) [HKLM] -- EPSON Printer and Utilities =>.SEIKO EPSON Corporation®
O42 - Logiciel: Expert PDF 9 Converter - (.Avanquest Software.) [HKLM] -- {FC279721-37A6-4777-AFD8-7A56681EBA14} =>.AVANQUEST SOFTWARE®
O42 - Logiciel: Google Chrome - (.Google LLC.) [HKLM] -- Google Chrome =>.Google LLC®
O42 - Logiciel: Google Earth - (.Google.) [HKLM] -- {F6430171-B86B-4639-839E-374913E7911D} [Unsigned] =>.Google
O42 - Logiciel: Google Update Helper - (.Google LLC.) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} [Unsigned] =>.Google LLC (Hidden)
O42 - Logiciel: HiSuite - (.Huawei Technologies Co.,Ltd.) [HKLM] -- Hi Suite [Unsigned] =>.Huawei Technologies Co.,Ltd
O42 - Logiciel: InPixio Photo Clip 7 Demo - (.InPixio.) [HKCU] -- {84AC98D2-ED9C-417b-BB6B-598FBCBE253C} =>.AVANQUEST SOFTWARE®
O42 - Logiciel: Malwarebytes version 4.1.2.73 - (.Malwarebytes.) [HKLM] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Inc®
O42 - Logiciel: McAfee WebAdvisor - (.McAfee, LLC.) [HKLM] -- {35ED3F83-4BDC-4c44-8EC6-6A8301C7413A} =>.McAfee, LLC®
O42 - Logiciel: McAfee® Total Protection - (.McAfee, LLC.) [HKLM] -- MSC {76A3C3D3AB0C3E9536C506AE}. =>.McAfee, LLC
O42 - Logiciel: Microsoft .NET Framework 4.7.2 - (.Microsoft Corporation.) [HKLM] -- {10C4E843-C226-3FDF-9DD6-F4E3275E734D} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Framework 4.7.2 (FRA) - (.Microsoft Corporation.) [HKLM] -- {D31D8838-C6EB-3D24-8E24-BC6676E9ACE2} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Access MUI (French) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-0015-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft DCF MUI (French) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-0090-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Edge - (.Microsoft Corporation.) [HKLM] -- Microsoft Edge [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Edge Update - (.Microsoft Corporation.) [HKLM] -- Microsoft Edge Update [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Excel MUI (French) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-0016-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Groove MUI (French) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-00BA-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft InfoPath MUI (French) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-0044-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Lync MUI (French) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-012B-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Korrekturhilfen 2013 - Deutsch - (.Microsoft Corporation.) [HKLM] -- {90150000-001F-0407-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office OSM MUI (French) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-00E1-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office OSM UX MUI (French) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-00E2-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Professional Plus 2013 - (.Microsoft Corporation.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Professionnel Plus 2013 - (.Microsoft Corporation.) [HKLM] -- Office15.PROPLUSR =>.Microsoft®
O42 - Logiciel: Microsoft Office Proofing (French) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-002C-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proofing Tools 2013 - English - (.Microsoft Corporation.) [HKLM] -- {90150000-001F-0409-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proofing Tools 2013 - Español - (.Microsoft Corporation.) [HKLM] -- {90150000-001F-0C0A-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proofing Tools 2013 - Nederlands - (.Microsoft Corporation.) [HKLM] -- {90150000-001F-0413-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proofing Tools 2013 - اللغة العربية - (.Microsoft Corporation.) [HKLM] -- {90150000-001F-0401-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Shared MUI (French) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-006E-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU] -- OneDriveSetup.exe =>.Microsoft®
O42 - Logiciel: Microsoft OneNote MUI (French) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-00A1-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Outlook MUI (French) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-001A-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft PowerPoint MUI (French) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-0018-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Publisher MUI (French) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-0019-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 - (.Microsoft Corporation.) [HKLM] -- {CA8A885F-E95B-3FC6-BB91-F4D9377C7686} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM] -- {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 - (.Microsoft Corporation.) [HKLM] -- {e2803110-78b3-4664-a479-3611a381656a} =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24215 - (.Microsoft Corporation.) [HKLM] -- {69BCE4AC-9572-3271-A2FB-9423BDA36A43} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24215 - (.Microsoft Corporation.) [HKLM] -- {BBF2AC74-720C-3CB3-8291-5E34039232FA} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual Studio 2010 Tools for Office Runtime (x86) - (.Microsoft Corporation.) [HKLM] -- {4DC59BF3-0D72-3CE8-BFEF-1E8FAF689EB0} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual Studio 2010 Tools for Office Runtime (x86) - (.Microsoft Corporation.) [HKLM] -- Microsoft Visual Studio 2010 Tools for Office Runtime (x86) =>.Microsoft®
O42 - Logiciel: Microsoft Visual Studio 2010 Tools for Office Runtime (x86) Language Pack - - (.Microsoft Corporation.) [HKLM] -- {EC1FEA55-73CC-3A5F-BF47-B340B842C058} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Word MUI (French) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-001B-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Module linguistique Microsoft Visual Studio 2010 Tools pour Office Runtime - (.Microsoft Corporation.) [HKLM] -- Microsoft Visual Studio 2010 Tools for Office Runtime (x86) Language Pack - FRA =>.Microsoft®
O42 - Logiciel: Outils de vérification linguistique 2013 de Microsoft Office - Français - (.Microsoft Corporation.) [HKLM] -- {90150000-001F-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Package de pilotes Windows - Fedict SmartCard (11/30/2016 4.1.9) - (.Fedict.) [HKLM] -- A9FBB4D4E267FA9BF2CEBF564F02DB39E147B466 =>.Microsoft Windows®
O42 - Logiciel: Photo Réducteur - (.Emjysoft.) [HKLM] -- {DCCC5C32-2C99-485B-9386-D5DF5D0810B1}_is1 =>.Emjysoft®
O42 - Logiciel: PhotoFiltre Studio X - (.Antonio Da Cruz.) [HKCU] -- PhotoFiltre Studio X [Unsigned] =>.Antonio Da Cruz
O42 - Logiciel: PhotoPad Éditeur d’images - (.NCH Software.) [HKLM] -- PhotoPad =>.NCH Software, Inc.®
O42 - Logiciel: Pixillion - Convertisseur d'images - (.NCH Software.) [HKLM] -- Pixillion =>.NCH Software Pty Ltd®
O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM] -- {96AE7E41-E34E-47D0-AC07-1091A8127911} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Revo Uninstaller 1.95 - (.VS Revo Group.) [HKLM] -- Revo Uninstaller [Unsigned] =>.VS Revo Group
O42 - Logiciel: Security Update for Microsoft Access 2013 (KB4462210) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0015-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{E6D6B1D3-004F-4B7B-AC29-9AB8B3A638A9} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Access 2013 (KB4462210) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{E6D6B1D3-004F-4B7B-AC29-9AB8B3A638A9} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Excel 2013 (KB4484410) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0016-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{BF2CB51A-3ED2-4806-8520-AADA6151582B} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Excel 2013 (KB4484410) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0018-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{BF2CB51A-3ED2-4806-8520-AADA6151582B} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Excel 2013 (KB4484410) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001B-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{BF2CB51A-3ED2-4806-8520-AADA6151582B} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Excel 2013 (KB4484410) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-006E-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{BF2CB51A-3ED2-4806-8520-AADA6151582B} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Excel 2013 (KB4484410) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{BF2CB51A-3ED2-4806-8520-AADA6151582B} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB3039746) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{FB111BDB-315E-4D9B-A337-AAA7E4B20571} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB3039794) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{5C7851D1-B548-4BFE-A4FC-DF1967857A47} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB3039798) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{2113B49B-7A19-4592-863E-CD4124792AAE} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB3162051) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0016-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{B42BFC34-EAA9-482C-B4D5-A8EEC0AF0C0C} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB3162051) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0090-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{B42BFC34-EAA9-482C-B4D5-A8EEC0AF0C0C} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB3162051) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{B42BFC34-EAA9-482C-B4D5-A8EEC0AF0C0C} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB3172522) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{C220C72E-39CD-4DC0-A3C1-6C11E988C322} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB3213564) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-006E-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{66B828E2-7C7D-46AF-93AB-5C2DAA285260} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB4011580) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-006E-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{EBB64A55-FA3E-42EE-A4C3-1E427F867C55} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB4022188) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-006E-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{18D2E3B4-34A4-49A7-9E08-6A35049A7F89} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB4022188) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{18D2E3B4-34A4-49A7-9E08-6A35049A7F89} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB4022189) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{1CFB07F8-17F2-4C42-8D83-4E65947141F0} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB4484229) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-006E-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{8669ACE7-563D-41A8-BEA2-8073A177B048} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB4484229) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{8669ACE7-563D-41A8-BEA2-8073A177B048} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB4484260) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{39A0515B-A476-4E7B-BEBA-CBCDFE5743BF} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB4484351) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-006E-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{FF71B0ED-FCAA-48E1-B993-6246CD07A0A1} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB4484351) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{FF71B0ED-FCAA-48E1-B993-6246CD07A0A1} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Outlook 2013 (KB4484281) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001A-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{DBBE009C-43C8-42A5-B7DE-FF353AF5C5C3} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Outlook 2013 (KB4484281) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{DBBE009C-43C8-42A5-B7DE-FF353AF5C5C3} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft PowerPoint 2013 (KB4484226) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0018-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{9BEE662F-00BC-4DCA-9D7B-31188617D6C7} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft PowerPoint 2013 (KB4484226) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{9BEE662F-00BC-4DCA-9D7B-31188617D6C7} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Publisher 2013 (KB3162033) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0019-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{C9C3712D-C393-4389-9A75-C4DBF8075DB5} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Publisher 2013 (KB3162033) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{C9C3712D-C393-4389-9A75-C4DBF8075DB5} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Word 2013 (KB4484361) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001A-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{D8BE9CD3-354A-4137-9EFE-CE976F9C929C} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Word 2013 (KB4484361) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001B-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{D8BE9CD3-354A-4137-9EFE-CE976F9C929C} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Word 2013 (KB4484361) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-012B-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{D8BE9CD3-354A-4137-9EFE-CE976F9C929C} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Word 2013 (KB4484361) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{D8BE9CD3-354A-4137-9EFE-CE976F9C929C} =>.Microsoft®
O42 - Logiciel: Security Update for Skype for Business 2015 (KB3213568) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-012B-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{493C0D37-E88D-48C4-A241-1FB09EFD71A6} =>.Microsoft®
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0015-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{05EEB900-97DD-4974-86FB-46B56E5B122B} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0016-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{05EEB900-97DD-4974-86FB-46B56E5B122B} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0018-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{05EEB900-97DD-4974-86FB-46B56E5B122B} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0019-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{05EEB900-97DD-4974-86FB-46B56E5B122B} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001A-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{05EEB900-97DD-4974-86FB-46B56E5B122B} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001B-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{05EEB900-97DD-4974-86FB-46B56E5B122B} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001F-0401-0000-0000000FF1CE}_Office15.PROPLUSR_{351E3E84-CD58-401D-AEFD-147BDBBAA1C7} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001F-0407-0000-0000000FF1CE}_Office15.PROPLUSR_{55A588B8-2D30-4B60-AB09-5DB57C592B81} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001F-0409-0000-0000000FF1CE}_Office15.PROPLUSR_{1F79A96A-2A70-45B3-8A5C-79DA61952879} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001F-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{9BB6CB7C-80E3-4F73-8A82-E3D88A3721BE} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001F-0413-0000-0000000FF1CE}_Office15.PROPLUSR_{33ADBDF0-040B-4375-8303-0634AB069C5E} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001F-0C0A-0000-0000000FF1CE}_Office15.PROPLUSR_{64B94D95-B6EC-4E25-832F-D15B13ACFB0C} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-002C-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{D90F0B03-8B58-4E72-993E-4ECA65C04BA2} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0044-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{05EEB900-97DD-4974-86FB-46B56E5B122B} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-006E-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{95678FB2-1310-429F-91FC-6FE9B5701E1E} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0090-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{05EEB900-97DD-4974-86FB-46B56E5B122B} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-00A1-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{05EEB900-97DD-4974-86FB-46B56E5B122B} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-00BA-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{05EEB900-97DD-4974-86FB-46B56E5B122B} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-00E1-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{05EEB900-97DD-4974-86FB-46B56E5B122B} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-00E2-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{05EEB900-97DD-4974-86FB-46B56E5B122B} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-012B-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{05EEB900-97DD-4974-86FB-46B56E5B122B} =>.Microsoft® (Hidden)
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{7F6C4883-A18C-459A-82C1-A2F9403F2DA6} =>.Microsoft®
O42 - Logiciel: Shotcut - (.Meltytech, LLC.) [HKLM] -- Shotcut [Unsigned] =>.Meltytech, LLC
O42 - Logiciel: TomTom MyDrive Connect 4.2.2.3561 - (.TomTom.) [HKLM] -- MyDriveConnect =>.TomTom International BV®
O42 - Logiciel: Update for Microsoft InfoPath 2013 (KB3114946) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0044-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{6120444C-EB75-452F-A0EA-1ADADC4B4B3F} =>.Microsoft®
O42 - Logiciel: Update for Microsoft InfoPath 2013 (KB3114946) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-006E-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{6120444C-EB75-452F-A0EA-1ADADC4B4B3F} =>.Microsoft®
O42 - Logiciel: Update for Microsoft InfoPath 2013 (KB3114946) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{6120444C-EB75-452F-A0EA-1ADADC4B4B3F} =>.Microsoft®
O42 - Logiciel: Update for Microsoft InfoPath 2013 (KB4022181) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{19001452-D3D5-43C6-A605-2E14D508031E} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2760344) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{A7610F07-E844-4444-8E1D-D5BC8AD0B4C5} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2760371) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{FFF87DE6-6602-4F65-BD75-D481E0539DCD} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2883095) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{7A9AB1AE-98B5-4B45-86B8-33A7B946D7CA} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2889863) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{52064DE8-AF91-4EAC-8B57-CECA10E8C1C0} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB2899522) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{87F6726E-6F99-42F0-8E11-55D798E57DD5} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3023049) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{E4B6204A-AC54-477D-9AEF-3D420EF162A2} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3023052) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-006E-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{FC017EDD-645B-44D8-9D84-623DE069F1B9} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3023052) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{FC017EDD-645B-44D8-9D84-623DE069F1B9} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039701) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{83DE9B8F-E294-411F-977F-4707E6424BBB} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0015-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0016-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0018-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0019-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001A-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001B-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001F-0401-0000-0000000FF1CE}_Office15.PROPLUSR_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001F-0407-0000-0000000FF1CE}_Office15.PROPLUSR_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001F-0409-0000-0000000FF1CE}_Office15.PROPLUSR_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001F-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001F-0413-0000-0000000FF1CE}_Office15.PROPLUSR_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001F-0C0A-0000-0000000FF1CE}_Office15.PROPLUSR_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-002C-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0044-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-006E-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0090-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-00A1-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-00BA-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-00E1-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-00E2-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-012B-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039720) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{16F64A9D-6561-4378-98F2-BD2095B78511} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039756) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{BF493817-CADD-4F13-BB51-598FBABB521A} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039766) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{4B7382DD-C92C-4942-BFE6-9B892B915E5C} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039778) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{8D1685F4-1C36-4AB5-ACC0-486A6BE71435} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039795) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{36AF42FA-AF90-4A4F-BC2D-2D4863818E65} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3054819) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0016-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{C289B757-6E96-4525-8390-77CFDCF803F8} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3054856) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{FF0A4C57-A2D2-4ACA-9DF5-23DB94A718A1} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3085565) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{B2B5F640-E7C8-4DAC-AF41-35FAE36FE2F6} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3085587) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{AA8C16EA-D595-47E0-9F49-101C11B860E8} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3101503) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{07BE4996-5557-4A17-9B98-AD57883607EA} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3114488) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{5C568FE6-A269-4A88-8256-DC1A8B89E622} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3114499) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{BB92A877-3443-4FAF-B4BB-470B9792AFBE} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3127916) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{C90D79C2-2B75-493B-9850-E8677FD7B1E1} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3172471) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{B61C3564-4E7B-49FE-9220-9836DBC49BB7} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3172473) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{75E6FEE4-6D68-4530-83CE-0EBA30169E3D} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3172523) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{FDF6648B-BF62-4CC7-94D3-0944ACD4A07D} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3172533) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{8EA03F4D-754D-42D0-980B-5D803363EC99} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3172545) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{0D50B52F-AB5A-44B7-A67C-2DE4F61443D0} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3178640) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{0359ABD1-5FD5-489D-851D-303BF7C5BBBE} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3191872) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-0016-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{68AD8B09-DD14-4875-A4DB-E04F6FF7ECCB} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3191872) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{68AD8B09-DD14-4875-A4DB-E04F6FF7ECCB} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB3213536) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{85ABCD64-B0FF-4A00-BFF7-090CDFA96C1C} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4011155) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{A7A41ACD-C1EA-4628-BCD2-8CA7AA8DDB29} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4011677) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001F-0401-0000-0000000FF1CE}_Office15.PROPLUSR_{19141D5E-18DA-4811-A5F0-5D0820BB2170} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4011677) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001F-0407-0000-0000000FF1CE}_Office15.PROPLUSR_{07ED17A8-AA59-47D5-AAB5-059AE484B58D} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4011677) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001F-0409-0000-0000000FF1CE}_Office15.PROPLUSR_{45B5E686-A7A1-457D-B98B-2EE3110B537D} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4011677) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001F-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{883F27D7-997E-4440-A22D-48DF1A228D61} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4011677) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001F-0413-0000-0000000FF1CE}_Office15.PROPLUSR_{C0B7757C-0579-4339-B3DB-BF894A4AFFCC} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4011677) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-001F-0C0A-0000-0000000FF1CE}_Office15.PROPLUSR_{166B105A-EC67-4F45-8824-ABAA0E505BD8} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4018378) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{2FDF7953-75A9-4341-A769-EC0CAA09FFF3} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4022212) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{FC519FD8-5B83-4761-B02C-13DF5B2D9598} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4092455) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{E1D33B9C-5084-455B-B7DC-32420084D759} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4462200) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{1DAE7910-8713-4647-AB09-CD27DA5BA1B7} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4475562) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-006E-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{C9FA9F17-F614-4338-A4CB-40B1E7D57157} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4475562) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{C9FA9F17-F614-4338-A4CB-40B1E7D57157} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2013 (KB4484356) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{D52F15AB-CE75-4624-ACDF-778BE5D77D37} =>.Microsoft®
O42 - Logiciel: Update for Microsoft OneDrive for Business (KB4022226) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-00BA-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{FB83D80E-C78E-41B0-8D08-4FAD6889E867} =>.Microsoft®
O42 - Logiciel: Update for Microsoft OneDrive for Business (KB4022226) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{FB83D80E-C78E-41B0-8D08-4FAD6889E867} =>.Microsoft®
O42 - Logiciel: Update for Microsoft OneNote 2013 (KB4011281) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-00A1-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{AF09D88A-0206-40F1-B7A0-AE15CCFAC61A} =>.Microsoft®
O42 - Logiciel: Update for Microsoft OneNote 2013 (KB4011281) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{AF09D88A-0206-40F1-B7A0-AE15CCFAC61A} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Outlook Social Connector 2013 (KB3054854) 32-Bit Editi - (.Microsoft.) [HKLM] -- {90150000-001A-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{3A2EB2A7-9F2D-4FA0-AE80-AD1A5A02A7AA} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Outlook Social Connector 2013 (KB3054854) 32-Bit Editi - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{3A2EB2A7-9F2D-4FA0-AE80-AD1A5A02A7AA} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Visio Viewer 2013 (KB2817301) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-006E-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{25C61889-2E44-4BE1-9E96-9364BFDCF501} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Visio Viewer 2013 (KB2817301) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{25C61889-2E44-4BE1-9E96-9364BFDCF501} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Word 2013 (KB3162081) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{42064CFD-BA0C-4FA7-BC6B-1192C2F6DDFD} =>.Microsoft®
O42 - Logiciel: Update for Skype for Business 2015 (KB4484289) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90150000-012B-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{F97B139A-D8BF-46FF-A6F6-50710FED8644} =>.Microsoft®
O42 - Logiciel: Update for Skype for Business 2015 (KB4484289) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{F97B139A-D8BF-46FF-A6F6-50710FED8644} =>.Microsoft®
O42 - Logiciel: Visual Studio C++ 10.0 Runtime - (.TomTom International B.V..) [HKLM] -- {4412F224-3849-4461-A3E9-DEEF8D252790} [Unsigned] =>.TomTom International B.V.
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player [Unsigned] =>.VideoLAN
O42 - Logiciel: VueScan x32 - (..) [HKLM] -- VueScan x32 =>.Hamrick Software®
O42 - Logiciel: WhatsApp - (.WhatsApp.) [HKCU] -- WhatsApp =>.WhatsApp, Inc®
O42 - Logiciel: WinRAR 5.90 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver =>.win.rar GmbH®
O42 - Logiciel: Zoom - (.Zoom Video Communications, Inc..) [HKCU] -- ZoomUMX =>.Zoom Video Communications, Inc.®
O42 - Logiciel: Zuma Deluxe RA - (.Games Software.) [HKLM] -- Zuma Deluxe RA [Unsigned] =>.Games Software

---\\ CLÉ DE REGISTRE SOFTWARE HKCU & HKLM (145) - 42s
HKLM\SOFTWARE\Adobe =>.Adobe
HKLM\SOFTWARE\AMD =>.AMD
HKLM\SOFTWARE\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies
HKLM\SOFTWARE\Avanquest =>.Avanquest
HKLM\SOFTWARE\BEID =>.BEID
HKLM\SOFTWARE\CBSTEST =>.CBS Test
HKLM\SOFTWARE\CVSM =>.Legitimate
HKLM\SOFTWARE\DefaultUserEnvironment =>.Microsoft Corporation
HKLM\SOFTWARE\EPSON =>.EPSON
HKLM\SOFTWARE\ESET =>.ESET
HKLM\SOFTWARE\Google =>.Google
HKLM\SOFTWARE\Huawei technologies =>.Huawei Technologies
HKLM\SOFTWARE\IM Providers =>.IM Providers
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\JreMetrics =>.JreMetrics
HKLM\SOFTWARE\KeyCryptSDK =>.Zemana Ltd
HKLM\SOFTWARE\Macromedia =>.Macromedia
HKLM\SOFTWARE\Malwarebytes =>.Malwarebytes
HKLM\SOFTWARE\McAfee =>.McAfee Inc.
HKLM\SOFTWARE\McAfee NGI =>.McAfee Inc.
HKLM\SOFTWARE\McAfee.com =>.McAfee Inc.
HKLM\SOFTWARE\McAfee.logging =>.McAfee Inc.
HKLM\SOFTWARE\McAfeeInstaller =>.McAfee Inc.
HKLM\SOFTWARE\MimarSinan =>.Mimar Sinan
HKLM\SOFTWARE\Mozilla =>.Mozilla
HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\NCH Software =>.NCH Software
HKLM\SOFTWARE\NCH Swift Sound =>.NCH Swift Sound
HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\OEM =>.OEM
HKLM\SOFTWARE\OpenSSH =>.OpenBSD
HKLM\SOFTWARE\Oracle =>.Oracle
HKLM\SOFTWARE\Partner =>.Google Inc.
HKLM\SOFTWARE\Piriform =>.Piriform
HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\REALTEK Semiconductor Corp. =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\Shotcut
HKLM\SOFTWARE\Sonic =>.Sonic
HKLM\SOFTWARE\TomTom =>.TomTom
HKLM\SOFTWARE\VideoLAN =>.VideoLan Team
HKLM\SOFTWARE\VueScan =>.Hamrick Software
HKLM\SOFTWARE\WafCX =>.WafCX
HKLM\SOFTWARE\Windows =>.Microsoft Corporation
HKLM\SOFTWARE\WinRAR =>.WinRAR
HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\Zemana =>.Zemana
HKLM\SOFTWARE\ZmnGlobalSDK =>.Zemana Ltd
HKCU\SOFTWARE\Adobe =>.Adobe
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\Avanquest =>.Avanquest
HKCU\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o
HKCU\SOFTWARE\BEID =>.BEID
HKCU\SOFTWARE\CCleaner Browser
HKCU\SOFTWARE\Chromium =>.Chromium
HKCU\SOFTWARE\Connective =>.Connective
HKCU\SOFTWARE\Emjysoft =>.Emjysoft
HKCU\SOFTWARE\EPSON =>.EPSON
HKCU\SOFTWARE\ESET =>.ESET
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\IM Providers =>.IM Providers
HKCU\SOFTWARE\Licenses =>.Microsoft Corporation
HKCU\SOFTWARE\Macromedia =>.Macromedia
HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes
HKCU\SOFTWARE\McAfee =>.McAfee Inc.
HKCU\SOFTWARE\Meltytech =>.Meltytech LLC
HKCU\SOFTWARE\Movavi =>.Movavi
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKCU\SOFTWARE\NCH Software =>.NCH Software
HKCU\SOFTWARE\NCH Swift Sound =>.NCH Swift Sound
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKCU\SOFTWARE\PC SOFT =>.PC SOFT
HKCU\SOFTWARE\PhotoFiltre Studio X =>.Antonio Da Cruz
HKCU\SOFTWARE\Piriform =>.Piriform
HKCU\SOFTWARE\QtProject =>.QtProject
HKCU\SOFTWARE\Realsil =>.Realsil
HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\SyncEngines =>.Microsoft Corporation
HKCU\SOFTWARE\TomTom =>.TomTom
HKCU\SOFTWARE\Trolltech =>.Trolltech
HKCU\SOFTWARE\Unlimited Possibilities =>.Unlimited Possibilities
HKCU\SOFTWARE\VSRevoGroup =>.VS Revo Group
HKCU\SOFTWARE\VueScan =>.Hamrick Software
HKCU\SOFTWARE\Win -Speedup 2018 for DENISRENEE
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\Zemana =>.Zemana
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
HKU\.DEFAULT\SOFTWARE\Adobe =>.Adobe
HKU\.DEFAULT\SOFTWARE\AMD =>.AMD
HKU\.DEFAULT\SOFTWARE\ATI =>.ATI
HKU\.DEFAULT\SOFTWARE\EPSON =>.EPSON
HKU\.DEFAULT\SOFTWARE\ESET =>.ESET
HKU\.DEFAULT\SOFTWARE\Google =>.Google
HKU\.DEFAULT\SOFTWARE\Local AppWizard-Generated Applications =>.ZWCAD
HKU\.DEFAULT\SOFTWARE\Malwarebytes =>.Malwarebytes
HKU\.DEFAULT\SOFTWARE\McAfee =>.McAfee Inc.
HKU\.DEFAULT\SOFTWARE\Netscape =>.Netscape
HKU\.DEFAULT\SOFTWARE\Piriform =>.Piriform
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\Adobe =>.Adobe
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\Avanquest =>.Avanquest
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\BEID =>.BEID
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\CCleaner Browser
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\Chromium =>.Chromium
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\Connective =>.Connective
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\Emjysoft =>.Emjysoft
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\EPSON =>.EPSON
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\ESET =>.ESET
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\Google =>.Google
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\IM Providers =>.IM Providers
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\Licenses =>.Microsoft Corporation
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\Macromedia =>.Macromedia
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\Malwarebytes =>.Malwarebytes
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\McAfee =>.McAfee Inc.
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\Meltytech =>.Meltytech LLC
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\Movavi =>.Movavi
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\Mozilla =>.Mozilla
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\NCH Software =>.NCH Software
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\NCH Swift Sound =>.NCH Swift Sound
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\Netscape =>.Netscape
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\PC SOFT =>.PC SOFT
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\PhotoFiltre Studio X =>.Antonio Da Cruz
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\Piriform =>.Piriform
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\QtProject =>.QtProject
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\Realsil =>.Realsil
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\SyncEngines =>.Microsoft Corporation
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\TomTom =>.TomTom
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\Trolltech =>.Trolltech
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\Unlimited Possibilities =>.Unlimited Possibilities
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\VSRevoGroup =>.VS Revo Group
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\VueScan =>.Hamrick Software
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\Win -Speedup 2018 for DENISRENEE
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\WinRAR =>.WinRAR
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\WinRAR SFX =>.RarLab
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\Zemana =>.Zemana
HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\SOFTWARE\ZHP =>.Nicolas Coolman

---\\ CONTENU DES DOSSIERS PROGRAMMES (2355) - 350s
O43 - CFD: 07/05/2020 - [] D -- C:\Program Files\Adobe =>.Adobe Inc.®
O43 - CFD: 07/02/2018 - [] D -- C:\Program Files\AntiLogger =>.Zemana Ltd
O43 - CFD: 04/01/2017 - [] D -- C:\Program Files\Avanquest [Unsigned] =>.Avanquest
O43 - CFD: 24/08/2018 - [] D -- C:\Program Files\Belgium Identity Card =>.Belgium Identity Card
O43 - CFD: 12/08/2019 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd
O43 - CFD: 11/08/2019 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 24/05/2017 - [] D -- C:\Program Files\DIFX =>.Microsoft Corporation
O43 - CFD: 11/08/2019 - [] D -- C:\Program Files\DVD Maker =>.Aone Software
O43 - CFD: 28/02/2017 - [] D -- C:\Program Files\Emjysoft =>.Emjysoft
O43 - CFD: 31/12/2016 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation
O43 - CFD: 05/06/2020 - [] D -- C:\Program Files\Google =>.Google Inc®
O43 - CFD: 10/01/2019 - [] D -- C:\Program Files\HiSuite =>.Huawei Technologies Co.,Ltd
O43 - CFD: 14/08/2019 - [] HD -- C:\Program Files\InstallShield Installation Information =>.InstallShield
O43 - CFD: 14/05/2020 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 03/07/2020 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes
O43 - CFD: 03/07/2020 - [] D -- C:\Program Files\McAfee =>.McAfee
O43 - CFD: 09/07/2019 - [] D -- C:\Program Files\McAfee.com =>.McAfee Inc.
O43 - CFD: 09/06/2020 - [] D -- C:\Program Files\Microsoft =>.Microsoft Corporation
O43 - CFD: 31/12/2016 - [] D -- C:\Program Files\Microsoft Analysis Services =>.Microsoft Corporation
O43 - CFD: 11/08/2019 - [] D -- C:\Program Files\Microsoft Games =>.Microsoft Corporation
O43 - CFD: 12/10/2017 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 31/12/2016 - [] D -- C:\Program Files\Microsoft SQL Server =>.Microsoft Corporation
O43 - CFD: 11/08/2019 - [] D -- C:\Program Files\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [0] D -- C:\Program Files\ModifiableWindowsApps
O43 - CFD: 06/07/2018 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla
O43 - CFD: 11/08/2019 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 13/08/2018 - [] D -- C:\Program Files\MyDrive Connect =>.TomTom
O43 - CFD: 16/01/2019 - [] D -- C:\Program Files\NCH Software =>.NCH Software
O43 - CFD: 16/04/2020 - [] D -- C:\Program Files\PhotoFiltre Studio X =>.Antonio Da Cruz
O43 - CFD: 12/08/2019 - [] D -- C:\Program Files\REALTEK =>.Realtek
O43 - CFD: 11/08/2019 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 06/04/2020 - [] D -- C:\Program Files\Shotcut [Unsigned]
O43 - CFD: 12/08/2017 - [] D -- C:\Program Files\TomTom International B.V =>.TomTom
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 30/05/2020 - [] D -- C:\Program Files\UNP =>.Microsoft Corporation
O43 - CFD: 06/01/2017 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team
O43 - CFD: 12/08/2019 - [] D -- C:\Program Files\VS Revo Group =>.VS Revo Group
O43 - CFD: 19/01/2017 - [] D -- C:\Program Files\VueScan =>.Tufts University
O43 - CFD: 13/03/2020 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 11/08/2019 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 11/06/2020 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 11/08/2019 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation
O43 - CFD: 11/06/2020 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] D -- C:\Program Files\Windows Security =>.Microsoft Corporation
O43 - CFD: 11/08/2019 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 03/07/2020 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 03/07/2020 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH®
O43 - CFD: 20/11/2018 - [] D -- C:\Program Files\Zuma Deluxe [Unsigned]
O43 - CFD: 19/03/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 11/06/2020 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 11/06/2020 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 11/08/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avanquest =>.Avanquest
O43 - CFD: 03/07/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup and Sync from Google
O43 - CFD: 11/08/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belgium - eID =>.eID Belgium
O43 - CFD: 11/08/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd
O43 - CFD: 11/08/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON =>.EPSON
O43 - CFD: 31/12/2016 - [0] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
O43 - CFD: 05/05/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth =>.Google Earth
O43 - CFD: 11/08/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HiSuite =>.Huawei Technologies Co.,Ltd
O43 - CFD: 11/08/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lecteur de cartes SIMEdit
O43 - CFD: 19/03/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 06/04/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee =>.McAfee
O43 - CFD: 11/06/2020 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 =>.Microsoft Corporation
O43 - CFD: 11/08/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Réducteur =>.Emjysoft
O43 - CFD: 19/03/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation
O43 - CFD: 13/03/2020 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 11/08/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TomTom =>.TomTom
O43 - CFD: 11/08/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team
O43 - CFD: 01/07/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 11/08/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zuma Deluxe RA
O43 - CFD: 07/05/2020 - [] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 11/08/2019 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 04/01/2017 - [] D -- C:\ProgramData\Avanquest =>.Avanquest
O43 - CFD: 04/01/2017 - [] D -- C:\ProgramData\Avanquest Software =>.Avanquest Software
O43 - CFD: 24/08/2018 - [] D -- C:\ProgramData\Belgium Identity Card =>.Belgium Identity Card
O43 - CFD: 31/12/2016 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation
O43 - CFD: 11/08/2019 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 19/01/2017 - [] D -- C:\ProgramData\EPSON =>.EPSON
O43 - CFD: 04/01/2017 - [0] D -- C:\ProgramData\Expert PDF 9
O43 - CFD: 04/01/2017 - [0] D -- C:\ProgramData\Expert PDF Jobs =>.Avanquest Software Publishing Ltd
O43 - CFD: 31/12/2016 - [0] SHD -- C:\ProgramData\Favoris =>.Microsoft Corporation
O43 - CFD: 03/07/2020 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes
O43 - CFD: 29/08/2019 - [] D -- C:\ProgramData\McAfee =>.McAfee
O43 - CFD: 31/12/2016 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation
O43 - CFD: 09/06/2020 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 11/06/2020 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 11/08/2019 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation
O43 - CFD: 31/12/2016 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation
O43 - CFD: 16/01/2019 - [] D -- C:\ProgramData\NCH Software =>.NCH Software
O43 - CFD: 11/02/2018 - [] D -- C:\ProgramData\Oracle =>.Oracle
O43 - CFD: 07/02/2018 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation
O43 - CFD: 01/11/2019 - [] D -- C:\ProgramData\Packages =>.Microsoft Corporation
O43 - CFD: 07/05/2020 - [] D -- C:\ProgramData\regid.1986-12.com.adobe =>.Adobe Inc.
O43 - CFD: 03/07/2020 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [0] D -- C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation
O43 - CFD: 12/02/2020 - [0] D -- C:\ProgramData\ssh
O43 - CFD: 11/08/2019 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation
O43 - CFD: 11/08/2019 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation
O43 - CFD: 13/06/2018 - [] D -- C:\ProgramData\wsr
O43 - CFD: 07/05/2020 - [] D -- C:\Program Files\Common Files\Adobe =>.Adobe
O43 - CFD: 09/07/2019 - [] D -- C:\Program Files\Common Files\AV =>.Avast
O43 - CFD: 31/12/2016 - [] D -- C:\Program Files\Common Files\DESIGNER =>.Designer
O43 - CFD: 03/07/2020 - [] D -- C:\Program Files\Common Files\McAfee =>.McAfee
O43 - CFD: 11/08/2019 - [] D -- C:\Program Files\Common Files\Microsoft Shared =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] D -- C:\Program Files\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 11/08/2019 - [] D -- C:\Program Files\Common Files\SpeechEngines =>.Microsoft Corporation
O43 - CFD: 11/08/2019 - [] D -- C:\Program Files\Common Files\System =>.Microsoft Corporation
O43 - CFD: 07/05/2020 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 24/07/2017 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\Avanquest Software =>.Avanquest Software
O43 - CFD: 15/03/2017 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\Downloaded Installations =>.Microsoft Corporation
O43 - CFD: 20/11/2018 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\dvdcss =>.VideoLan Team
O43 - CFD: 28/02/2017 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\Emjysoft =>.Emjysoft
O43 - CFD: 24/02/2019 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\ESET =>.ESET
O43 - CFD: 04/01/2017 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\Expert PDF 9
O43 - CFD: 16/04/2020 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\Identities =>.Microsoft Corporation
O43 - CFD: 15/01/2017 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 12/04/2011 - [0] D -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\Media Center Programs =>.Microsoft Corporation
O43 - CFD: 02/05/2020 - [] SD -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 26/01/2020 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\NCH Software =>.NCH Software
O43 - CFD: 16/04/2020 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\PhotoFiltre Studio X =>.Antonio Da Cruz
O43 - CFD: 09/01/2019 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\Skype =>.Skype
O43 - CFD: 01/07/2020 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\vlc =>.VideoLan Team
O43 - CFD: 09/06/2020 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\WhatsApp =>.WhatsApp
O43 - CFD: 14/03/2017 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 03/07/2020 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 23/04/2020 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\Zoom =>.ZOOM
O43 - CFD: 07/05/2020 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\Adobe =>.Adobe
O43 - CFD: 11/08/2019 - [0] SHD -- C:\Users\DENIS FIACRE RENEE\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 31/12/2016 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\Apps =>.Microsoft Corporation
O43 - CFD: 24/08/2018 - [0] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\Avanquest =>.Avanquest
O43 - CFD: 02/01/2017 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\CEF =>.CEF
O43 - CFD: 11/08/2019 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\Comms =>.Microsoft Corporation
O43 - CFD: 17/08/2019 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation
O43 - CFD: 04/01/2019 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\Connective =>.Connective
O43 - CFD: 31/07/2019 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\CrashRpt
O43 - CFD: 20/10/2019 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\D3DSCache =>.Legitimate
O43 - CFD: 03/07/2020 - [0] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\Diagnostics =>.Microsoft Corporation
O43 - CFD: 19/03/2020 - [0] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation
O43 - CFD: 28/02/2017 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\Emjysoft =>.Emjysoft
O43 - CFD: 23/02/2019 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\ESET =>.ESET
O43 - CFD: 05/06/2020 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\Google =>.Google
O43 - CFD: 06/04/2020 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\Greenshot =>.Greenshot
O43 - CFD: 11/08/2019 - [0] SHD -- C:\Users\DENIS FIACRE RENEE\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 10/01/2019 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\Hisuite =>.Huawei Technologies Co.,Ltd
O43 - CFD: 10/08/2019 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\InPixio =>.InPixio
O43 - CFD: 20/09/2018 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\mbam =>.Malwarebytes
O43 - CFD: 20/09/2018 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\mbamtray =>.Malwarebytes
O43 - CFD: 31/07/2019 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\Meltytech
O43 - CFD: 09/06/2020 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 31/10/2018 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\Microsoft Games =>.Microsoft Corporation
O43 - CFD: 31/12/2016 - [0] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 11/08/2019 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\MicrosoftEdge =>.Microsoft Corporation
O43 - CFD: 31/07/2019 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\Movavi =>.Movavi
O43 - CFD: 17/08/2019 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\OneDrive =>.Microsoft Corporation
O43 - CFD: 26/06/2020 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\Packages =>.Microsoft Corporation
O43 - CFD: 17/06/2020 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\PlaceholderTileLogoFolder =>.Microsoft Corporation
O43 - CFD: 28/02/2017 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 06/04/2020 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\Publishers =>.Microsoft Corporation
O43 - CFD: 11/08/2019 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\speech =>.Microsoft Corporation
O43 - CFD: 09/06/2020 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\SquirrelTemp =>.Squirrels
O43 - CFD: 03/07/2020 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 11/08/2019 - [0] SHD -- C:\Users\DENIS FIACRE RENEE\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 07/02/2018 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\TomTom =>.TomTom
O43 - CFD: 31/07/2019 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\videocapture
O43 - CFD: 31/07/2019 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\VideoEditorPlus
O43 - CFD: 21/10/2017 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 09/06/2020 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\WhatsApp =>.WhatsApp
O43 - CFD: 07/02/2018 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\Zemana =>.Zemana
O43 - CFD: 01/05/2020 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 28/02/2017 - [0] D -- C:\Users\DENIS FIACRE RENEE\AppData\Local\Programs\Common =>.Microsoft Corporation
O43 - CFD: 08/10/2018 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\LocalLow\Adobe =>.Adobe
O43 - CFD: 05/05/2020 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\LocalLow\Google =>.Google
O43 - CFD: 03/07/2020 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\LocalLow\IGDump
O43 - CFD: 24/04/2017 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\LocalLow\Microsoft =>.Microsoft Corporation
O43 - CFD: 04/05/2020 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\LocalLow\Temp =>.Microsoft Corporation
O43 - CFD: 03/04/2019 - [] D -- C:\Users\DENIS FIACRE RENEE\Desktop\2019-02-24 Facture achat aspirateur Bosch =>.Bosch
O43 - CFD: 04/06/2020 - [] D -- C:\Users\DENIS FIACRE RENEE\Desktop\Nouveau dossier
O43 - CFD: 19/03/2019 - [] RD -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 11/08/2019 - [] RD -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 12/06/2020 - [] RD -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 11/08/2019 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome =>.Google Inc.
O43 - CFD: 19/03/2019 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 16/04/2020 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre Studio X =>.Antonio Da Cruz
O43 - CFD: 12/08/2019 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller =>.VS Revo Group
O43 - CFD: 12/06/2020 - [] RD -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] RD -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] RD -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation
O43 - CFD: 01/07/2020 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 23/04/2020 - [] D -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom =>.ZOOM
O43 - CFD: 20/11/2018 - [0] D -- C:\Users\DENIS FIACRE RENEE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zuma Deluxe RA
O43 - CFD: 11/08/2019 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 03/07/2020 - [] D -- C:\Users\Default\AppData\Local\Google =>.Google
O43 - CFD: 31/12/2016 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 06/04/2020 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 31/01/2017 - [0] D -- C:\Users\Default\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 11/08/2019 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 11/08/2019 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 03/07/2020 - [] D -- C:\Users\Default User\AppData\Local\Google =>.Google
O43 - CFD: 31/12/2016 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 06/04/2020 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 31/01/2017 - [0] D -- C:\Users\Default User\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 11/08/2019 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 18/10/2019 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Adobe =>.Adobe
O43 - CFD: 11/08/2019 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\D3DSCache =>.Legitimate
O43 - CFD: 12/08/2019 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\DataSharing =>.DataSharing
O43 - CFD: 12/08/2019 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 04/06/2020 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Packages =>.Microsoft Corporation
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1044-102c-a5ddc.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1044-102c-a5dde.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1044-102c-a5de0.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1044-102c-a5df2.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1044-102c-a5df4.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1044-102c-a5e05.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1044-102c-a5e07.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1044-102c-a5e19.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1044-102c-a5e2b.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1044-102c-a5e3c.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1044-102c-a5e3e.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1044-102c-a5e40.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1044-102c-a5e52.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1044-102c-a5e63.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1044-102c-a5e65.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1044-102c-a5e87.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1044-102c-a5e98.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1044-102c-a5eba.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1044-102c-a5ebc.tmp
O43 - CFD: 30/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-107e8-11a78-529d3a04.tmp
O43 - CFD: 30/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-107e8-11a78-529d3a06.tmp
O43 - CFD: 30/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-107e8-11a78-529d3a18.tmp
O43 - CFD: 30/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-107e8-11a78-529d3a1a.tmp
O43 - CFD: 30/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-107e8-11a78-529d3a2b.tmp
O43 - CFD: 30/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-107e8-11a78-529d3a2d.tmp
O43 - CFD: 30/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-107e8-11a78-529d3a2f.tmp
O43 - CFD: 30/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-107e8-11a78-529d3a41.tmp
O43 - CFD: 30/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-107e8-11a78-529d3a43.tmp
O43 - CFD: 30/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-107e8-11a78-529d3a55.tmp
O43 - CFD: 30/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-107e8-11a78-529d3a57.tmp
O43 - CFD: 30/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-107e8-11a78-529d3a59.tmp
O43 - CFD: 30/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-107e8-11a78-529d3a6a.tmp
O43 - CFD: 30/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-107e8-11a78-529d3a7c.tmp
O43 - CFD: 30/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-107e8-11a78-529d3a7e.tmp
O43 - CFD: 30/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-107e8-11a78-529d3a80.tmp
O43 - CFD: 30/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-107e8-11a78-529d3a92.tmp
O43 - CFD: 30/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-107e8-11a78-529d3a94.tmp
O43 - CFD: 30/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-107e8-11a78-529d3aa5.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1090-1980-13455845.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1090-1980-134558a5.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1090-1980-134558f5.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1090-1980-13455945.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1090-1980-13455966.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1090-1980-134559d6.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1090-1980-13455a45.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1090-1980-13455a85.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1090-1980-13455ae5.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1090-1980-13455b35.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1090-1980-13455bc4.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1090-1980-13455c43.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1090-1980-13455c64.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1090-1980-13455c76.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1090-1980-13455ca7.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1090-1980-13455cc8.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1090-1980-13455cf9.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1090-1980-13455d78.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1090-1980-13455d89.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-10e34-102c0-4255cafb.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-10e34-102c0-4255cb0c.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-10e34-102c0-4255cb0e.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-10e34-102c0-4255cb20.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-10e34-102c0-4255cb22.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-10e34-102c0-4255cb34.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-10e34-102c0-4255cb36.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-10e34-102c0-4255cb47.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-10e34-102c0-4255cb59.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-10e34-102c0-4255cb5b.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-10e34-102c0-4255cb6c.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-10e34-102c0-4255cb6e.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-10e34-102c0-4255cb70.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-10e34-102c0-4255cb82.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-10e34-102c0-4255cb84.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-10e34-102c0-4255cb86.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-10e34-102c0-4255cb98.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-10e34-102c0-4255cb9a.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-10e34-102c0-4255cbab.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11064-e50c-48705924.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11064-e50c-48705926.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11064-e50c-48705937.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11064-e50c-48705939.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11064-e50c-4870593b.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11064-e50c-4870594d.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11064-e50c-4870594f.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11064-e50c-48705961.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11064-e50c-48705972.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11064-e50c-48705974.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11064-e50c-48705976.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11064-e50c-48705988.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11064-e50c-4870598a.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11064-e50c-4870599b.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11064-e50c-487059ad.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11064-e50c-487059af.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11064-e50c-487059b1.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11064-e50c-487059c3.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11064-e50c-487059c5.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-112c0-10c38-4a25e50b.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-112c0-10c38-4a25e56a.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-112c0-10c38-4a25e56c.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-112c0-10c38-4a25e56e.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-112c0-10c38-4a25e59f.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-112c0-10c38-4a25e5a1.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-112c0-10c38-4a25e5b3.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-112c0-10c38-4a25e5b5.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-112c0-10c38-4a25e5c6.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-112c0-10c38-4a25e5c8.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-112c0-10c38-4a25e5da.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-112c0-10c38-4a25e5dc.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-112c0-10c38-4a25e5de.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-112c0-10c38-4a25e5f0.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-112c0-10c38-4a25e601.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-112c0-10c38-4a25e603.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-112c0-10c38-4a25e625.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-112c0-10c38-4a25e636.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-112c0-10c38-4a25e657.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-113c8-e4e0-47abd3b1.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-113c8-e4e0-47abd3c3.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-113c8-e4e0-47abd3c5.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-113c8-e4e0-47abd3f5.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-113c8-e4e0-47abd474.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-113c8-e4e0-47abd65b.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-113c8-e4e0-47abd69b.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-113c8-e4e0-47abd6ad.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-113c8-e4e0-47abd6bf.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-113c8-e4e0-47abd6e0.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-113c8-e4e0-47abd6e2.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-113c8-e4e0-47abd703.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-113c8-e4e0-47abd734.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-113c8-e4e0-47abd755.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-113c8-e4e0-47abd776.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-113c8-e4e0-47abd778.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-113c8-e4e0-47abd78a.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-113c8-e4e0-47abd79c.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-113c8-e4e0-47abd79e.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11b34-11dbc-4e23412e.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11b34-11dbc-4e234150.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11b34-11dbc-4e234190.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11b34-11dbc-4e2341a2.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11b34-11dbc-4e2341a4.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11b34-11dbc-4e2341b5.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11b34-11dbc-4e2341d7.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11b34-11dbc-4e2341e8.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11b34-11dbc-4e2341fa.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11b34-11dbc-4e2341fc.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11b34-11dbc-4e2341fe.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11b34-11dbc-4e23420f.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11b34-11dbc-4e234211.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11b34-11dbc-4e234233.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11b34-11dbc-4e234235.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11b34-11dbc-4e234246.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11b34-11dbc-4e234258.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11b34-11dbc-4e23425a.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-11b34-11dbc-4e23426c.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-120d0-13e40-5c5c39af.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-120d0-13e40-5c5c39c0.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-120d0-13e40-5c5c39d2.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-120d0-13e40-5c5c39f3.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-120d0-13e40-5c5c39f5.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-120d0-13e40-5c5c3a07.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-120d0-13e40-5c5c3a09.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-120d0-13e40-5c5c3a2a.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-120d0-13e40-5c5c3a2c.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-120d0-13e40-5c5c3a3e.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-120d0-13e40-5c5c3a40.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-120d0-13e40-5c5c3aaf.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-120d0-13e40-5c5c3ab1.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-120d0-13e40-5c5c3ac3.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-120d0-13e40-5c5c3ac5.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-120d0-13e40-5c5c3ad6.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-120d0-13e40-5c5c3ad8.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-120d0-13e40-5c5c3aea.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-120d0-13e40-5c5c3aec.tmp
O43 - CFD: 31/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-13418-11b7c-5750f6c1.tmp
O43 - CFD: 31/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-13418-11b7c-5750f6f2.tmp
O43 - CFD: 31/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-13418-11b7c-5750f713.tmp
O43 - CFD: 31/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-13418-11b7c-5750f715.tmp
O43 - CFD: 31/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-13418-11b7c-5750f737.tmp
O43 - CFD: 31/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-13418-11b7c-5750f748.tmp
O43 - CFD: 31/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-13418-11b7c-5750f75a.tmp
O43 - CFD: 31/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-13418-11b7c-5750f77b.tmp
O43 - CFD: 31/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-13418-11b7c-5750f77d.tmp
O43 - CFD: 31/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-13418-11b7c-5750f78f.tmp
O43 - CFD: 31/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-13418-11b7c-5750f791.tmp
O43 - CFD: 31/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-13418-11b7c-5750f7a2.tmp
O43 - CFD: 31/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-13418-11b7c-5750f7b4.tmp
O43 - CFD: 31/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-13418-11b7c-5750f7b6.tmp
O43 - CFD: 31/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-13418-11b7c-5750f7b8.tmp
O43 - CFD: 31/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-13418-11b7c-5750f7ca.tmp
O43 - CFD: 31/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-13418-11b7c-5750f7cc.tmp
O43 - CFD: 31/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-13418-11b7c-5750f7dd.tmp
O43 - CFD: 31/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-13418-11b7c-5750f7df.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-139a0-eecc-51884d8f.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-139a0-eecc-51884d91.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-139a0-eecc-51884da3.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-139a0-eecc-51884da5.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-139a0-eecc-51884db7.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-139a0-eecc-51884db9.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-139a0-eecc-51884dca.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-139a0-eecc-51884dcc.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-139a0-eecc-51884dce.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-139a0-eecc-51884de0.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-139a0-eecc-51884de2.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-139a0-eecc-51884df4.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-139a0-eecc-51884df6.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-139a0-eecc-51884e07.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-139a0-eecc-51884e09.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-139a0-eecc-51884e1b.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-139a0-eecc-51884e1d.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-139a0-eecc-51884e1f.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-139a0-eecc-51884e30.tmp
O43 - CFD: 29/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14a74-10e04-57222d66.tmp
O43 - CFD: 29/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14a74-10e04-57222da7.tmp
O43 - CFD: 29/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14a74-10e04-57222eb2.tmp
O43 - CFD: 29/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14a74-10e04-57222ee3.tmp
O43 - CFD: 29/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14a74-10e04-57222f24.tmp
O43 - CFD: 29/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14a74-10e04-57222f45.tmp
O43 - CFD: 29/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14a74-10e04-57222fb4.tmp
O43 - CFD: 29/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14a74-10e04-57223052.tmp
O43 - CFD: 29/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14a74-10e04-572231db.tmp
O43 - CFD: 29/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14a74-10e04-5722322b.tmp
O43 - CFD: 29/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14a74-10e04-5722325c.tmp
O43 - CFD: 29/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14a74-10e04-57223423.tmp
O43 - CFD: 29/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14a74-10e04-572235bb.tmp
O43 - CFD: 29/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14a74-10e04-572235fc.tmp
O43 - CFD: 29/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14a74-10e04-5722364c.tmp
O43 - CFD: 29/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14a74-10e04-5722365e.tmp
O43 - CFD: 29/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14a74-10e04-572236ae.tmp
O43 - CFD: 29/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14a74-10e04-57223817.tmp
O43 - CFD: 29/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14a74-10e04-572239de.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14ca4-480c-80d2fa76.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14ca4-480c-80d2fad5.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14ca4-480c-80d2fb54.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14ca4-480c-80d2fbc4.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14ca4-480c-80d2fca0.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14ca4-480c-80d2fcf1.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14ca4-480c-80d2fd12.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14ca4-480c-80d2fd91.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14ca4-480c-80d2fdf1.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14ca4-480c-80d2fe12.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14ca4-480c-80d2fe23.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14ca4-480c-80d2fe54.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14ca4-480c-80d2fe85.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14ca4-480c-80d2feb6.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14ca4-480c-80d2fed7.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14ca4-480c-80d2fee9.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14ca4-480c-80d2ff1a.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14ca4-480c-80d2ff4b.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14ca4-480c-80d2ff6c.tmp
O43 - CFD: 22/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14fc-1890-2c881ec7.tmp
O43 - CFD: 22/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14fc-1890-2c881ed8.tmp
O43 - CFD: 22/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14fc-1890-2c881eea.tmp
O43 - CFD: 22/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14fc-1890-2c881efc.tmp
O43 - CFD: 22/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14fc-1890-2c881f0d.tmp
O43 - CFD: 22/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14fc-1890-2c881f1f.tmp
O43 - CFD: 22/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14fc-1890-2c881f30.tmp
O43 - CFD: 22/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14fc-1890-2c881f42.tmp
O43 - CFD: 22/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14fc-1890-2c881f44.tmp
O43 - CFD: 22/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14fc-1890-2c881f56.tmp
O43 - CFD: 22/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14fc-1890-2c881f67.tmp
O43 - CFD: 22/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14fc-1890-2c881f69.tmp
O43 - CFD: 22/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14fc-1890-2c881f8b.tmp
O43 - CFD: 22/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14fc-1890-2c881f9c.tmp
O43 - CFD: 22/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14fc-1890-2c881fae.tmp
O43 - CFD: 22/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14fc-1890-2c881fcf.tmp
O43 - CFD: 22/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14fc-1890-2c881fe1.tmp
O43 - CFD: 22/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14fc-1890-2c881fe3.tmp
O43 - CFD: 22/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-14fc-1890-2c881ff4.tmp
O43 - CFD: 03/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1520c-3010-669b51e4.tmp
O43 - CFD: 03/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1520c-3010-669b5224.tmp
O43 - CFD: 03/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1520c-3010-669b5255.tmp
O43 - CFD: 03/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1520c-3010-669b5286.tmp
O43 - CFD: 03/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1520c-3010-669b5334.tmp
O43 - CFD: 03/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1520c-3010-669b547e.tmp
O43 - CFD: 03/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1520c-3010-669b549f.tmp
O43 - CFD: 03/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1520c-3010-669b559b.tmp
O43 - CFD: 03/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1520c-3010-669b5687.tmp
O43 - CFD: 03/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1520c-3010-669b5afe.tmp
O43 - CFD: 03/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1520c-3010-669b5f46.tmp
O43 - CFD: 03/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1520c-3010-669b6cb5.tmp
O43 - CFD: 03/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1520c-3010-669b6d63.tmp
O43 - CFD: 03/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1520c-3010-669b6d84.tmp
O43 - CFD: 03/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1520c-3010-669b6de4.tmp
O43 - CFD: 03/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1520c-3010-669b73b3.tmp
O43 - CFD: 03/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1520c-3010-669b73c4.tmp
O43 - CFD: 03/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1520c-3010-669b752e.tmp
O43 - CFD: 03/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1520c-3010-669b75cc.tmp
O43 - CFD: 30/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16298-130c8-5cc77047.tmp
O43 - CFD: 30/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16298-130c8-5cc77097.tmp
O43 - CFD: 30/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16298-130c8-5cc770b8.tmp
O43 - CFD: 30/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16298-130c8-5cc770d9.tmp
O43 - CFD: 30/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16298-130c8-5cc7711a.tmp
O43 - CFD: 30/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16298-130c8-5cc7715a.tmp
O43 - CFD: 30/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16298-130c8-5cc771aa.tmp
O43 - CFD: 30/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16298-130c8-5cc771bc.tmp
O43 - CFD: 30/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16298-130c8-5cc771fd.tmp
O43 - CFD: 30/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16298-130c8-5cc7721e.tmp
O43 - CFD: 30/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16298-130c8-5cc7723f.tmp
O43 - CFD: 30/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16298-130c8-5cc77260.tmp
O43 - CFD: 30/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16298-130c8-5cc7739b.tmp
O43 - CFD: 30/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16298-130c8-5cc773ac.tmp
O43 - CFD: 30/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16298-130c8-5cc773ce.tmp
O43 - CFD: 30/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16298-130c8-5cc773df.tmp
O43 - CFD: 30/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16298-130c8-5cc773f1.tmp
O43 - CFD: 30/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16298-130c8-5cc77412.tmp
O43 - CFD: 30/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16298-130c8-5cc77443.tmp
O43 - CFD: 30/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16f8-5b14-54faf2e6.tmp
O43 - CFD: 30/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16f8-5b14-54faf2e8.tmp
O43 - CFD: 30/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16f8-5b14-54faf328.tmp
O43 - CFD: 30/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16f8-5b14-54faf349.tmp
O43 - CFD: 30/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16f8-5b14-54faf34b.tmp
O43 - CFD: 30/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16f8-5b14-54faf36d.tmp
O43 - CFD: 30/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16f8-5b14-54faf37e.tmp
O43 - CFD: 30/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16f8-5b14-54faf390.tmp
O43 - CFD: 30/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16f8-5b14-54faf3b1.tmp
O43 - CFD: 30/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16f8-5b14-54faf3c3.tmp
O43 - CFD: 30/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16f8-5b14-54faf422.tmp
O43 - CFD: 30/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16f8-5b14-54faf434.tmp
O43 - CFD: 30/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16f8-5b14-54faf465.tmp
O43 - CFD: 30/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16f8-5b14-54faf477.tmp
O43 - CFD: 30/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16f8-5b14-54faf488.tmp
O43 - CFD: 30/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16f8-5b14-54faf49a.tmp
O43 - CFD: 30/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16f8-5b14-54faf4bb.tmp
O43 - CFD: 30/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16f8-5b14-54faf4cd.tmp
O43 - CFD: 30/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16f8-5b14-54faf4ee.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-173d0-170d8-610aed9a.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-173d0-170d8-610aed9c.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-173d0-170d8-610aedae.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-173d0-170d8-610aedb0.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-173d0-170d8-610aedb2.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-173d0-170d8-610aedc3.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-173d0-170d8-610aedc5.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-173d0-170d8-610aedc7.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-173d0-170d8-610aedd9.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-173d0-170d8-610aeddb.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-173d0-170d8-610aeded.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-173d0-170d8-610aedef.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-173d0-170d8-610aedf1.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-173d0-170d8-610aee02.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-173d0-170d8-610aee04.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-173d0-170d8-610aee06.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-173d0-170d8-610aee18.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-173d0-170d8-610aee1a.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-173d0-170d8-610aee2b.tmp
O43 - CFD: 09/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ab8-510-137cb3.tmp
O43 - CFD: 09/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ab8-510-137cd4.tmp
O43 - CFD: 09/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ab8-510-137ce6.tmp
O43 - CFD: 09/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ab8-510-137ce8.tmp
O43 - CFD: 09/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ab8-510-137cf9.tmp
O43 - CFD: 09/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ab8-510-137cfb.tmp
O43 - CFD: 09/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ab8-510-137cfd.tmp
O43 - CFD: 09/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ab8-510-137d0f.tmp
O43 - CFD: 09/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ab8-510-137d11.tmp
O43 - CFD: 09/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ab8-510-137d23.tmp
O43 - CFD: 09/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ab8-510-137d25.tmp
O43 - CFD: 09/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ab8-510-137d27.tmp
O43 - CFD: 09/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ab8-510-137d38.tmp
O43 - CFD: 09/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ab8-510-137d3a.tmp
O43 - CFD: 09/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ab8-510-137d4c.tmp
O43 - CFD: 09/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ab8-510-137d4e.tmp
O43 - CFD: 09/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ab8-510-137d50.tmp
O43 - CFD: 09/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ab8-510-137d61.tmp
O43 - CFD: 09/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ab8-510-137d73.tmp
O43 - CFD: 02/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ac8-6b4-64d4254b.tmp
O43 - CFD: 02/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ac8-6b4-64d4254d.tmp
O43 - CFD: 02/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ac8-6b4-64d4255e.tmp
O43 - CFD: 02/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ac8-6b4-64d42560.tmp
O43 - CFD: 02/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ac8-6b4-64d42572.tmp
O43 - CFD: 02/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ac8-6b4-64d42574.tmp
O43 - CFD: 02/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ac8-6b4-64d42586.tmp
O43 - CFD: 02/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ac8-6b4-64d42588.tmp
O43 - CFD: 02/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ac8-6b4-64d42599.tmp
O43 - CFD: 02/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ac8-6b4-64d4259b.tmp
O43 - CFD: 02/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ac8-6b4-64d425ad.tmp
O43 - CFD: 02/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ac8-6b4-64d425af.tmp
O43 - CFD: 02/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ac8-6b4-64d425b1.tmp
O43 - CFD: 02/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ac8-6b4-64d425c2.tmp
O43 - CFD: 02/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ac8-6b4-64d425d4.tmp
O43 - CFD: 02/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ac8-6b4-64d425d6.tmp
O43 - CFD: 02/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ac8-6b4-64d425e8.tmp
O43 - CFD: 02/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ac8-6b4-64d425ea.tmp
O43 - CFD: 02/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ac8-6b4-64d425fb.tmp
O43 - CFD: 12/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b50-22fc-1c7c6ab2.tmp
O43 - CFD: 12/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b50-22fc-1c7c6ac3.tmp
O43 - CFD: 12/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b50-22fc-1c7c6ac5.tmp
O43 - CFD: 12/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b50-22fc-1c7c6ad7.tmp
O43 - CFD: 12/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b50-22fc-1c7c6ad9.tmp
O43 - CFD: 12/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b50-22fc-1c7c6adb.tmp
O43 - CFD: 12/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b50-22fc-1c7c6aec.tmp
O43 - CFD: 12/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b50-22fc-1c7c6afe.tmp
O43 - CFD: 12/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b50-22fc-1c7c6b00.tmp
O43 - CFD: 12/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b50-22fc-1c7c6b12.tmp
O43 - CFD: 12/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b50-22fc-1c7c6b14.tmp
O43 - CFD: 12/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b50-22fc-1c7c6b16.tmp
O43 - CFD: 12/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b50-22fc-1c7c6b27.tmp
O43 - CFD: 12/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b50-22fc-1c7c6b29.tmp
O43 - CFD: 12/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b50-22fc-1c7c6b3b.tmp
O43 - CFD: 12/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b50-22fc-1c7c6b3d.tmp
O43 - CFD: 12/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b50-22fc-1c7c6b3f.tmp
O43 - CFD: 12/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b50-22fc-1c7c6b51.tmp
O43 - CFD: 12/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b50-22fc-1c7c6b53.tmp
O43 - CFD: 19/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b6c-2f1c-97d40a9.tmp
O43 - CFD: 19/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b6c-2f1c-97d40cb.tmp
O43 - CFD: 19/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b6c-2f1c-97d40cd.tmp
O43 - CFD: 19/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b6c-2f1c-97d40de.tmp
O43 - CFD: 19/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b6c-2f1c-97d40e0.tmp
O43 - CFD: 19/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b6c-2f1c-97d4102.tmp
O43 - CFD: 19/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b6c-2f1c-97d4104.tmp
O43 - CFD: 19/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b6c-2f1c-97d4106.tmp
O43 - CFD: 19/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b6c-2f1c-97d4117.tmp
O43 - CFD: 19/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b6c-2f1c-97d4119.tmp
O43 - CFD: 19/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b6c-2f1c-97d412b.tmp
O43 - CFD: 19/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b6c-2f1c-97d412d.tmp
O43 - CFD: 19/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b6c-2f1c-97d412f.tmp
O43 - CFD: 19/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b6c-2f1c-97d416f.tmp
O43 - CFD: 19/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b6c-2f1c-97d4181.tmp
O43 - CFD: 19/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b6c-2f1c-97d4183.tmp
O43 - CFD: 19/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b6c-2f1c-97d4195.tmp
O43 - CFD: 19/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b6c-2f1c-97d4197.tmp
O43 - CFD: 19/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b6c-2f1c-97d41a8.tmp
O43 - CFD: 14/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1eac-44f8-27d12761.tmp
O43 - CFD: 14/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1eac-44f8-27d12782.tmp
O43 - CFD: 14/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1eac-44f8-27d127a3.tmp
O43 - CFD: 14/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1eac-44f8-27d12841.tmp
O43 - CFD: 14/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1eac-44f8-27d12853.tmp
O43 - CFD: 14/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1eac-44f8-27d12855.tmp
O43 - CFD: 14/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1eac-44f8-27d12857.tmp
O43 - CFD: 14/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1eac-44f8-27d12869.tmp
O43 - CFD: 14/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1eac-44f8-27d1286b.tmp
O43 - CFD: 14/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1eac-44f8-27d1287c.tmp
O43 - CFD: 14/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1eac-44f8-27d1288e.tmp
O43 - CFD: 14/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1eac-44f8-27d12890.tmp
O43 - CFD: 14/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1eac-44f8-27d128a2.tmp
O43 - CFD: 14/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1eac-44f8-27d128a4.tmp
O43 - CFD: 14/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1eac-44f8-27d128a6.tmp
O43 - CFD: 14/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1eac-44f8-27d128b7.tmp
O43 - CFD: 14/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1eac-44f8-27d128c9.tmp
O43 - CFD: 14/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1eac-44f8-27d128da.tmp
O43 - CFD: 14/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1eac-44f8-27d128dc.tmp
O43 - CFD: 09/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1fd4-1314-d0d7ee7.tmp
O43 - CFD: 09/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1fd4-1314-d0d7f28.tmp
O43 - CFD: 09/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1fd4-1314-d0d7f39.tmp
O43 - CFD: 09/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1fd4-1314-d0d7f5a.tmp
O43 - CFD: 09/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1fd4-1314-d0d7f6c.tmp
O43 - CFD: 09/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1fd4-1314-d0d7f8d.tmp
O43 - CFD: 09/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1fd4-1314-d0d7fdd.tmp
O43 - CFD: 09/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1fd4-1314-d0d7fff.tmp
O43 - CFD: 09/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1fd4-1314-d0d805e.tmp
O43 - CFD: 09/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1fd4-1314-d0d8070.tmp
O43 - CFD: 09/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1fd4-1314-d0d80df.tmp
O43 - CFD: 09/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1fd4-1314-d0d8110.tmp
O43 - CFD: 09/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1fd4-1314-d0d8122.tmp
O43 - CFD: 09/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1fd4-1314-d0d8134.tmp
O43 - CFD: 09/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1fd4-1314-d0d8155.tmp
O43 - CFD: 09/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1fd4-1314-d0d8186.tmp
O43 - CFD: 09/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1fd4-1314-d0d8197.tmp
O43 - CFD: 09/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1fd4-1314-d0d81a9.tmp
O43 - CFD: 09/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1fd4-1314-d0d81ab.tmp
O43 - CFD: 14/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-200-15b8-33eaa13.tmp
O43 - CFD: 14/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-200-15b8-33eaa15.tmp
O43 - CFD: 14/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-200-15b8-33eaa37.tmp
O43 - CFD: 14/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-200-15b8-33eaa39.tmp
O43 - CFD: 14/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-200-15b8-33eab25.tmp
O43 - CFD: 14/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-200-15b8-33eab37.tmp
O43 - CFD: 14/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-200-15b8-33eab39.tmp
O43 - CFD: 14/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-200-15b8-33eab3b.tmp
O43 - CFD: 14/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-200-15b8-33eab4c.tmp
O43 - CFD: 14/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-200-15b8-33eab4e.tmp
O43 - CFD: 14/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-200-15b8-33eab60.tmp
O43 - CFD: 14/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-200-15b8-33eab62.tmp
O43 - CFD: 14/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-200-15b8-33eab73.tmp
O43 - CFD: 14/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-200-15b8-33eab85.tmp
O43 - CFD: 14/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-200-15b8-33eab97.tmp
O43 - CFD: 14/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-200-15b8-33eab99.tmp
O43 - CFD: 14/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-200-15b8-33eabaa.tmp
O43 - CFD: 14/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-200-15b8-33eabac.tmp
O43 - CFD: 14/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-200-15b8-33eabbe.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2044-25f4-14d82c.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2044-25f4-14d82e.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2044-25f4-14d840.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2044-25f4-14d842.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2044-25f4-14d844.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2044-25f4-14d855.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2044-25f4-14d857.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2044-25f4-14d878.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2044-25f4-14d87a.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2044-25f4-14d87c.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2044-25f4-14d88e.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2044-25f4-14d890.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2044-25f4-14d8a2.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2044-25f4-14d8a4.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2044-25f4-14d8b5.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2044-25f4-14d8b7.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2044-25f4-14d8b9.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2044-25f4-14d8cb.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2044-25f4-14d8cd.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2074-3374-13b16027.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2074-3374-13b160d5.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2074-3374-13b16173.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2074-3374-13b16231.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2074-3374-13b16530.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2074-3374-13b165cf.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2074-3374-13b16600.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2074-3374-13b167a7.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2074-3374-13b167f8.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2074-3374-13b168e4.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2074-3374-13b16915.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2074-3374-13b16936.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2074-3374-13b16948.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2074-3374-13b16969.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2074-3374-13b169d8.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2074-3374-13b16a96.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2074-3374-13b16ba1.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2074-3374-13b16c5f.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2074-3374-13b16d5b.tmp
O43 - CFD: 17/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-23d0-2674-1246bb3d.tmp
O43 - CFD: 17/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-23d0-2674-1246bb4f.tmp
O43 - CFD: 17/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-23d0-2674-1246bb60.tmp
O43 - CFD: 17/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-23d0-2674-1246bb72.tmp
O43 - CFD: 17/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-23d0-2674-1246bb84.tmp
O43 - CFD: 17/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-23d0-2674-1246bbe3.tmp
O43 - CFD: 17/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-23d0-2674-1246bbf5.tmp
O43 - CFD: 17/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-23d0-2674-1246bbf7.tmp
O43 - CFD: 17/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-23d0-2674-1246bc76.tmp
O43 - CFD: 17/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-23d0-2674-1246bc88.tmp
O43 - CFD: 17/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-23d0-2674-1246bc99.tmp
O43 - CFD: 17/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-23d0-2674-1246bc9b.tmp
O43 - CFD: 17/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-23d0-2674-1246bcad.tmp
O43 - CFD: 17/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-23d0-2674-1246bcaf.tmp
O43 - CFD: 17/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-23d0-2674-1246bcd0.tmp
O43 - CFD: 17/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-23d0-2674-1246bcd2.tmp
O43 - CFD: 17/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-23d0-2674-1246bcf3.tmp
O43 - CFD: 17/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-23d0-2674-1246bd05.tmp
O43 - CFD: 17/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-23d0-2674-1246bd17.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2420-158c-201cc1.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2420-158c-201cf2.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2420-158c-201d04.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2420-158c-201d06.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2420-158c-201d17.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2420-158c-201d19.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2420-158c-201d1b.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2420-158c-201d2d.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2420-158c-201d2f.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2420-158c-201d40.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2420-158c-201d81.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2420-158c-201db2.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2420-158c-201db4.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2420-158c-201dd5.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2420-158c-201de7.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2420-158c-201df8.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2420-158c-201e0a.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2420-158c-201e2b.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2420-158c-201e4c.tmp
O43 - CFD: 15/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2544-1c40-2d570ad2.tmp
O43 - CFD: 15/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2544-1c40-2d570ae4.tmp
O43 - CFD: 15/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2544-1c40-2d570ae6.tmp
O43 - CFD: 15/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2544-1c40-2d570ba4.tmp
O43 - CFD: 15/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2544-1c40-2d570bc5.tmp
O43 - CFD: 15/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2544-1c40-2d570bd6.tmp
O43 - CFD: 15/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2544-1c40-2d570bd8.tmp
O43 - CFD: 15/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2544-1c40-2d570bea.tmp
O43 - CFD: 15/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2544-1c40-2d570bec.tmp
O43 - CFD: 15/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2544-1c40-2d570bfe.tmp
O43 - CFD: 15/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2544-1c40-2d570c00.tmp
O43 - CFD: 15/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2544-1c40-2d570c11.tmp
O43 - CFD: 15/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2544-1c40-2d570c13.tmp
O43 - CFD: 15/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2544-1c40-2d570c25.tmp
O43 - CFD: 15/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2544-1c40-2d570c27.tmp
O43 - CFD: 15/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2544-1c40-2d570c39.tmp
O43 - CFD: 15/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2544-1c40-2d570c3b.tmp
O43 - CFD: 15/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2544-1c40-2d570c3d.tmp
O43 - CFD: 15/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2544-1c40-2d570c4e.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26c-1390-5401476.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26c-1390-5401515.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26c-1390-54015b3.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26c-1390-5401680.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26c-1390-54016a1.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26c-1390-54016e2.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26c-1390-5401790.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26c-1390-54017a1.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26c-1390-540189d.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26c-1390-54019b9.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26c-1390-5401ab5.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26c-1390-5401b91.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26c-1390-5401c30.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26c-1390-5401cce.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26c-1390-5401d0e.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26c-1390-5401d8d.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26c-1390-5401ec8.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26c-1390-5401f66.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26c-1390-5401f87.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26f0-1b30-114968.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26f0-1b30-114b2f.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26f0-1b30-114bae.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26f0-1b30-114dd3.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26f0-1b30-115046.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26f0-1b30-115161.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26f0-1b30-11548f.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26f0-1b30-115a10.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26f0-1b30-115c83.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26f0-1b30-116196.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26f0-1b30-1161d6.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26f0-1b30-116294.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26f0-1b30-116545.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26f0-1b30-1169fa.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26f0-1b30-116efd.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26f0-1b30-1171af.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26f0-1b30-1179cf.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26f0-1b30-11874e.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26f0-1b30-118f7e.tmp
O43 - CFD: 07/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2960-4e8-4767819.tmp
O43 - CFD: 07/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2960-4e8-476781b.tmp
O43 - CFD: 07/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2960-4e8-476782c.tmp
O43 - CFD: 07/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2960-4e8-476782e.tmp
O43 - CFD: 07/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2960-4e8-4767830.tmp
O43 - CFD: 07/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2960-4e8-4767842.tmp
O43 - CFD: 07/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2960-4e8-4767844.tmp
O43 - CFD: 07/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2960-4e8-4767856.tmp
O43 - CFD: 07/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2960-4e8-4767858.tmp
O43 - CFD: 07/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2960-4e8-476785a.tmp
O43 - CFD: 07/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2960-4e8-476786b.tmp
O43 - CFD: 07/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2960-4e8-476786d.tmp
O43 - CFD: 07/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2960-4e8-476787f.tmp
O43 - CFD: 07/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2960-4e8-4767881.tmp
O43 - CFD: 07/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2960-4e8-4767883.tmp
O43 - CFD: 07/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2960-4e8-47678a4.tmp
O43 - CFD: 07/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2960-4e8-47678a6.tmp
O43 - CFD: 07/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2960-4e8-47678b8.tmp
O43 - CFD: 07/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2960-4e8-47678ba.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2994-137c-a716640.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2994-137c-a716642.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2994-137c-a716653.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2994-137c-a716655.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2994-137c-a716657.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2994-137c-a716669.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2994-137c-a71666b.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2994-137c-a71667d.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2994-137c-a71667f.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2994-137c-a716681.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2994-137c-a716692.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2994-137c-a716694.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2994-137c-a7166a6.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2994-137c-a7166a8.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2994-137c-a7166b9.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2994-137c-a7166bb.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2994-137c-a7166bd.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2994-137c-a7166cf.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2994-137c-a7166d1.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b4-2b68-68b19db.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b4-2b68-68b19ed.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b4-2b68-68b19ff.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b4-2b68-68b1a2f.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b4-2b68-68b1a41.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b4-2b68-68b1a53.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b4-2b68-68b1a64.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b4-2b68-68b1a76.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b4-2b68-68b1a88.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b4-2b68-68b1a99.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b4-2b68-68b1aba.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b4-2b68-68b1acc.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b4-2b68-68b1ade.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b4-2b68-68b1aef.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b4-2b68-68b1b01.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b4-2b68-68b1b13.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b4-2b68-68b1b24.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b4-2b68-68b1b36.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b4-2b68-68b1b47.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c48-2110-57b84f4.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c48-2110-57b8506.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c48-2110-57b8585.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c48-2110-57b85a6.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c48-2110-57b85b8.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c48-2110-57b85c9.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c48-2110-57b85db.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c48-2110-57b85ed.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c48-2110-57b862d.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c48-2110-57b865e.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c48-2110-57b8660.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c48-2110-57b8672.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c48-2110-57b8674.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c48-2110-57b8685.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c48-2110-57b8697.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c48-2110-57b8699.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c48-2110-57b86ab.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c48-2110-57b86ad.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c48-2110-57b86af.tmp
O43 - CFD: 11/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c8-1ac-173a1ac0.tmp
O43 - CFD: 11/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c8-1ac-173a1ac2.tmp
O43 - CFD: 11/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c8-1ac-173a1ac4.tmp
O43 - CFD: 11/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c8-1ac-173a1ad5.tmp
O43 - CFD: 11/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c8-1ac-173a1ad7.tmp
O43 - CFD: 11/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c8-1ac-173a1ae9.tmp
O43 - CFD: 11/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c8-1ac-173a1aeb.tmp
O43 - CFD: 11/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c8-1ac-173a1aed.tmp
O43 - CFD: 11/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c8-1ac-173a1aff.tmp
O43 - CFD: 11/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c8-1ac-173a1b01.tmp
O43 - CFD: 11/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c8-1ac-173a1b03.tmp
O43 - CFD: 11/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c8-1ac-173a1b14.tmp
O43 - CFD: 11/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c8-1ac-173a1b16.tmp
O43 - CFD: 11/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c8-1ac-173a1b28.tmp
O43 - CFD: 11/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c8-1ac-173a1b2a.tmp
O43 - CFD: 11/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c8-1ac-173a1b2c.tmp
O43 - CFD: 11/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c8-1ac-173a1b3d.tmp
O43 - CFD: 11/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c8-1ac-173a1b3f.tmp
O43 - CFD: 11/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c8-1ac-173a1b51.tmp
O43 - CFD: 08/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c90-26b0-7d26bdd.tmp
O43 - CFD: 08/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c90-26b0-7d26bef.tmp
O43 - CFD: 08/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c90-26b0-7d26bf1.tmp
O43 - CFD: 08/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c90-26b0-7d26bf3.tmp
O43 - CFD: 08/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c90-26b0-7d26c04.tmp
O43 - CFD: 08/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c90-26b0-7d26c06.tmp
O43 - CFD: 08/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c90-26b0-7d26c18.tmp
O43 - CFD: 08/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c90-26b0-7d26c1a.tmp
O43 - CFD: 08/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c90-26b0-7d26c1c.tmp
O43 - CFD: 08/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c90-26b0-7d26c2d.tmp
O43 - CFD: 08/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c90-26b0-7d26c2f.tmp
O43 - CFD: 08/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c90-26b0-7d26c41.tmp
O43 - CFD: 08/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c90-26b0-7d26c53.tmp
O43 - CFD: 08/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c90-26b0-7d26c55.tmp
O43 - CFD: 08/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c90-26b0-7d26c57.tmp
O43 - CFD: 08/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c90-26b0-7d26c68.tmp
O43 - CFD: 08/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c90-26b0-7d26c6a.tmp
O43 - CFD: 08/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c90-26b0-7d26c6c.tmp
O43 - CFD: 08/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2c90-26b0-7d26c7e.tmp
O43 - CFD: 14/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d80-3620-9e36f89.tmp
O43 - CFD: 14/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d80-3620-9e36fba.tmp
O43 - CFD: 14/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d80-3620-9e36fdb.tmp
O43 - CFD: 14/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d80-3620-9e36fed.tmp
O43 - CFD: 14/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d80-3620-9e3700e.tmp
O43 - CFD: 14/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d80-3620-9e37030.tmp
O43 - CFD: 14/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d80-3620-9e37051.tmp
O43 - CFD: 14/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d80-3620-9e37072.tmp
O43 - CFD: 14/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d80-3620-9e37084.tmp
O43 - CFD: 14/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d80-3620-9e370b5.tmp
O43 - CFD: 14/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d80-3620-9e370d6.tmp
O43 - CFD: 14/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d80-3620-9e370e7.tmp
O43 - CFD: 14/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d80-3620-9e37109.tmp
O43 - CFD: 14/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d80-3620-9e3711a.tmp
O43 - CFD: 14/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d80-3620-9e3712c.tmp
O43 - CFD: 14/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d80-3620-9e3715d.tmp
O43 - CFD: 14/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d80-3620-9e3716e.tmp
O43 - CFD: 14/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d80-3620-9e37190.tmp
O43 - CFD: 14/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d80-3620-9e371b1.tmp
O43 - CFD: 18/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d8c-2fe4-280671b.tmp
O43 - CFD: 18/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d8c-2fe4-280673c.tmp
O43 - CFD: 18/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d8c-2fe4-280674e.tmp
O43 - CFD: 18/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d8c-2fe4-28067bd.tmp
O43 - CFD: 18/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d8c-2fe4-28067cf.tmp
O43 - CFD: 18/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d8c-2fe4-28067e0.tmp
O43 - CFD: 18/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d8c-2fe4-28067f2.tmp
O43 - CFD: 18/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d8c-2fe4-2806804.tmp
O43 - CFD: 18/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d8c-2fe4-2806815.tmp
O43 - CFD: 18/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d8c-2fe4-2806827.tmp
O43 - CFD: 18/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d8c-2fe4-2806839.tmp
O43 - CFD: 18/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d8c-2fe4-280684a.tmp
O43 - CFD: 18/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d8c-2fe4-280685c.tmp
O43 - CFD: 18/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d8c-2fe4-280686d.tmp
O43 - CFD: 18/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d8c-2fe4-280687f.tmp
O43 - CFD: 18/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d8c-2fe4-2806891.tmp
O43 - CFD: 18/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d8c-2fe4-28068a2.tmp
O43 - CFD: 18/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d8c-2fe4-28068c4.tmp
O43 - CFD: 18/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d8c-2fe4-28068e5.tmp
O43 - CFD: 14/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2e44-194c-18f7f5.tmp
O43 - CFD: 14/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2e44-194c-18f7f7.tmp
O43 - CFD: 14/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2e44-194c-18f809.tmp
O43 - CFD: 14/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2e44-194c-18f80b.tmp
O43 - CFD: 14/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2e44-194c-18f80d.tmp
O43 - CFD: 14/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2e44-194c-18f81e.tmp
O43 - CFD: 14/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2e44-194c-18f840.tmp
O43 - CFD: 14/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2e44-194c-18f842.tmp
O43 - CFD: 14/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2e44-194c-18f853.tmp
O43 - CFD: 14/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2e44-194c-18f920.tmp
O43 - CFD: 14/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2e44-194c-18f932.tmp
O43 - CFD: 14/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2e44-194c-18f982.tmp
O43 - CFD: 14/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2e44-194c-18f984.tmp
O43 - CFD: 14/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2e44-194c-18f996.tmp
O43 - CFD: 14/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2e44-194c-18f9d6.tmp
O43 - CFD: 14/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2e44-194c-18f9d8.tmp
O43 - CFD: 14/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2e44-194c-18f9fa.tmp
O43 - CFD: 14/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2e44-194c-18fa2a.tmp
O43 - CFD: 14/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2e44-194c-18fa3c.tmp
O43 - CFD: 18/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31b8-2f18-177dbe2e.tmp
O43 - CFD: 18/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31b8-2f18-177dbe3f.tmp
O43 - CFD: 18/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31b8-2f18-177dbe41.tmp
O43 - CFD: 18/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31b8-2f18-177dbe43.tmp
O43 - CFD: 18/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31b8-2f18-177dbe55.tmp
O43 - CFD: 18/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31b8-2f18-177dbe57.tmp
O43 - CFD: 18/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31b8-2f18-177dbe69.tmp
O43 - CFD: 18/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31b8-2f18-177dbe6b.tmp
O43 - CFD: 18/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31b8-2f18-177dbe6d.tmp
O43 - CFD: 18/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31b8-2f18-177dbe7e.tmp
O43 - CFD: 18/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31b8-2f18-177dbe80.tmp
O43 - CFD: 18/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31b8-2f18-177dbeb1.tmp
O43 - CFD: 18/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31b8-2f18-177dbec3.tmp
O43 - CFD: 18/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31b8-2f18-177dbec5.tmp
O43 - CFD: 18/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31b8-2f18-177dbed6.tmp
O43 - CFD: 18/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31b8-2f18-177dbed8.tmp
O43 - CFD: 18/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31b8-2f18-177dbeda.tmp
O43 - CFD: 18/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31b8-2f18-177dbeec.tmp
O43 - CFD: 18/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31b8-2f18-177dbeee.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31c8-2dac-fabf66e.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31c8-2dac-fabf67f.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31c8-2dac-fabf691.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31c8-2dac-fabf693.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31c8-2dac-fabf6a5.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31c8-2dac-fabf6b6.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31c8-2dac-fabf6b8.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31c8-2dac-fabf708.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31c8-2dac-fabf739.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31c8-2dac-fabf73b.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31c8-2dac-fabf74d.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31c8-2dac-fabf74f.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31c8-2dac-fabf761.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31c8-2dac-fabf763.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31c8-2dac-fabf774.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31c8-2dac-fabf786.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31c8-2dac-fabf788.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31c8-2dac-fabf7b9.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31c8-2dac-fabf7bb.tmp
O43 - CFD: 16/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31f0-1da8-dc6dddc.tmp
O43 - CFD: 16/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31f0-1da8-dc6dded.tmp
O43 - CFD: 16/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31f0-1da8-dc6ddef.tmp
O43 - CFD: 16/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31f0-1da8-dc6ddf1.tmp
O43 - CFD: 16/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31f0-1da8-dc6de03.tmp
O43 - CFD: 16/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31f0-1da8-dc6de05.tmp
O43 - CFD: 16/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31f0-1da8-dc6de07.tmp
O43 - CFD: 16/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31f0-1da8-dc6de19.tmp
O43 - CFD: 16/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31f0-1da8-dc6de1b.tmp
O43 - CFD: 16/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31f0-1da8-dc6de2c.tmp
O43 - CFD: 16/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31f0-1da8-dc6de2e.tmp
O43 - CFD: 16/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31f0-1da8-dc6de30.tmp
O43 - CFD: 16/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31f0-1da8-dc6de42.tmp
O43 - CFD: 16/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31f0-1da8-dc6de44.tmp
O43 - CFD: 16/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31f0-1da8-dc6de56.tmp
O43 - CFD: 16/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31f0-1da8-dc6de58.tmp
O43 - CFD: 16/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31f0-1da8-dc6de5a.tmp
O43 - CFD: 16/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31f0-1da8-dc6de7b.tmp
O43 - CFD: 16/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-31f0-1da8-dc6de7d.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3208-351c-c7d02ce.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3208-351c-c7d036c.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3208-351c-c7d03cc.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3208-351c-c7d065e.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3208-351c-c7d071c.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3208-351c-c7d0866.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3208-351c-c7d0cec.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3208-351c-c7d102a.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3208-351c-c7d1184.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3208-351c-c7d134b.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3208-351c-c7d1409.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3208-351c-c7d14c6.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3208-351c-c7d1526.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3208-351c-c7d169f.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3208-351c-c7d1a98.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3208-351c-c7d1c60.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3208-351c-c7d1d8a.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3208-351c-c7d1f42.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3208-351c-c7d1f92.tmp
O43 - CFD: 16/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3328-22dc-31c5213d.tmp
O43 - CFD: 16/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3328-22dc-31c5217d.tmp
O43 - CFD: 16/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3328-22dc-31c5217f.tmp
O43 - CFD: 16/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3328-22dc-31c521a1.tmp
O43 - CFD: 16/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3328-22dc-31c521c2.tmp
O43 - CFD: 16/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3328-22dc-31c521d4.tmp
O43 - CFD: 16/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3328-22dc-31c521e5.tmp
O43 - CFD: 16/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3328-22dc-31c521f7.tmp
O43 - CFD: 16/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3328-22dc-31c52208.tmp
O43 - CFD: 16/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3328-22dc-31c5222a.tmp
O43 - CFD: 16/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3328-22dc-31c5223b.tmp
O43 - CFD: 16/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3328-22dc-31c5224d.tmp
O43 - CFD: 16/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3328-22dc-31c5225f.tmp
O43 - CFD: 16/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3328-22dc-31c52270.tmp
O43 - CFD: 16/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3328-22dc-31c52291.tmp
O43 - CFD: 16/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3328-22dc-31c522a3.tmp
O43 - CFD: 16/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3328-22dc-31c522b5.tmp
O43 - CFD: 16/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3328-22dc-31c522c6.tmp
O43 - CFD: 16/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3328-22dc-31c522d8.tmp
O43 - CFD: 19/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a0-4498-1d640e9f.tmp
O43 - CFD: 19/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a0-4498-1d640eb0.tmp
O43 - CFD: 19/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a0-4498-1d640eb2.tmp
O43 - CFD: 19/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a0-4498-1d640ec4.tmp
O43 - CFD: 19/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a0-4498-1d640ec6.tmp
O43 - CFD: 19/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a0-4498-1d640ed8.tmp
O43 - CFD: 19/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a0-4498-1d640eda.tmp
O43 - CFD: 19/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a0-4498-1d640eeb.tmp
O43 - CFD: 19/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a0-4498-1d640eed.tmp
O43 - CFD: 19/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a0-4498-1d640eff.tmp
O43 - CFD: 19/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a0-4498-1d640f01.tmp
O43 - CFD: 19/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a0-4498-1d640f03.tmp
O43 - CFD: 19/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a0-4498-1d640f15.tmp
O43 - CFD: 19/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a0-4498-1d640f17.tmp
O43 - CFD: 19/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a0-4498-1d640f28.tmp
O43 - CFD: 19/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a0-4498-1d640f2a.tmp
O43 - CFD: 19/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a0-4498-1d640f3c.tmp
O43 - CFD: 19/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a0-4498-1d640f3e.tmp
O43 - CFD: 19/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a0-4498-1d640f4f.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a4-2eb8-13c68b19.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a4-2eb8-13c68b5a.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a4-2eb8-13c68b7b.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a4-2eb8-13c68b9c.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a4-2eb8-13c68bae.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a4-2eb8-13c68bbf.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a4-2eb8-13c68bf0.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a4-2eb8-13c68c12.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a4-2eb8-13c68c14.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a4-2eb8-13c68c25.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a4-2eb8-13c68c66.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a4-2eb8-13c68c77.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a4-2eb8-13c68c89.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a4-2eb8-13c68caa.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a4-2eb8-13c68d1a.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a4-2eb8-13c68e06.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a4-2eb8-13c68e85.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a4-2eb8-13c68ee5.tmp
O43 - CFD: 10/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-34a4-2eb8-13c68f16.tmp
O43 - CFD: 15/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3a88-284c-4e9ef0f.tmp
O43 - CFD: 15/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3a88-284c-4e9ef11.tmp
O43 - CFD: 15/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3a88-284c-4e9ef22.tmp
O43 - CFD: 15/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3a88-284c-4e9ef34.tmp
O43 - CFD: 15/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3a88-284c-4e9ef36.tmp
O43 - CFD: 15/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3a88-284c-4e9ef38.tmp
O43 - CFD: 15/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3a88-284c-4e9ef59.tmp
O43 - CFD: 15/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3a88-284c-4e9ef6b.tmp
O43 - CFD: 15/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3a88-284c-4e9ef6d.tmp
O43 - CFD: 15/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3a88-284c-4e9ef7e.tmp
O43 - CFD: 15/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3a88-284c-4e9ef90.tmp
O43 - CFD: 15/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3a88-284c-4e9efa2.tmp
O43 - CFD: 15/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3a88-284c-4e9efa4.tmp
O43 - CFD: 15/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3a88-284c-4e9efc5.tmp
O43 - CFD: 15/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3a88-284c-4e9eff6.tmp
O43 - CFD: 15/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3a88-284c-4e9eff8.tmp
O43 - CFD: 15/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3a88-284c-4e9f009.tmp
O43 - CFD: 15/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3a88-284c-4e9f03a.tmp
O43 - CFD: 15/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3a88-284c-4e9f03c.tmp
O43 - CFD: 22/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b0c-1a38-16ac8ff2.tmp
O43 - CFD: 22/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b0c-1a38-16ac9004.tmp
O43 - CFD: 22/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b0c-1a38-16ac9006.tmp
O43 - CFD: 22/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b0c-1a38-16ac9008.tmp
O43 - CFD: 22/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b0c-1a38-16ac901a.tmp
O43 - CFD: 22/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b0c-1a38-16ac901c.tmp
O43 - CFD: 22/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b0c-1a38-16ac902d.tmp
O43 - CFD: 22/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b0c-1a38-16ac902f.tmp
O43 - CFD: 22/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b0c-1a38-16ac9041.tmp
O43 - CFD: 22/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b0c-1a38-16ac9043.tmp
O43 - CFD: 22/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b0c-1a38-16ac9054.tmp
O43 - CFD: 22/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b0c-1a38-16ac9056.tmp
O43 - CFD: 22/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b0c-1a38-16ac9068.tmp
O43 - CFD: 22/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b0c-1a38-16ac906a.tmp
O43 - CFD: 22/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b0c-1a38-16ac906c.tmp
O43 - CFD: 22/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b0c-1a38-16ac907e.tmp
O43 - CFD: 22/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b0c-1a38-16ac9080.tmp
O43 - CFD: 22/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b0c-1a38-16ac9091.tmp
O43 - CFD: 22/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b0c-1a38-16ac9093.tmp
O43 - CFD: 13/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3ca8-2a3c-21954b86.tmp
O43 - CFD: 13/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3ca8-2a3c-21954b97.tmp
O43 - CFD: 13/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3ca8-2a3c-21954b99.tmp
O43 - CFD: 13/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3ca8-2a3c-21954bab.tmp
O43 - CFD: 13/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3ca8-2a3c-21954bad.tmp
O43 - CFD: 13/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3ca8-2a3c-21954bbe.tmp
O43 - CFD: 13/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3ca8-2a3c-21954bc0.tmp
O43 - CFD: 13/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3ca8-2a3c-21954bc2.tmp
O43 - CFD: 13/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3ca8-2a3c-21954bd4.tmp
O43 - CFD: 13/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3ca8-2a3c-21954bf5.tmp
O43 - CFD: 13/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3ca8-2a3c-21954bf7.tmp
O43 - CFD: 13/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3ca8-2a3c-21954c09.tmp
O43 - CFD: 13/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3ca8-2a3c-21954c2a.tmp
O43 - CFD: 13/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3ca8-2a3c-21954c3c.tmp
O43 - CFD: 13/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3ca8-2a3c-21954c5d.tmp
O43 - CFD: 13/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3ca8-2a3c-21954c7e.tmp
O43 - CFD: 13/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3ca8-2a3c-21954caf.tmp
O43 - CFD: 13/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3ca8-2a3c-21954d3e.tmp
O43 - CFD: 13/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3ca8-2a3c-21954d7e.tmp
O43 - CFD: 24/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3e8c-3d28-20ea984e.tmp
O43 - CFD: 24/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3e8c-3d28-20ea985f.tmp
O43 - CFD: 24/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3e8c-3d28-20ea9871.tmp
O43 - CFD: 24/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3e8c-3d28-20ea9882.tmp
O43 - CFD: 24/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3e8c-3d28-20ea98a4.tmp
O43 - CFD: 24/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3e8c-3d28-20ea98b5.tmp
O43 - CFD: 24/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3e8c-3d28-20ea98b7.tmp
O43 - CFD: 24/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3e8c-3d28-20ea98c9.tmp
O43 - CFD: 24/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3e8c-3d28-20ea98cb.tmp
O43 - CFD: 24/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3e8c-3d28-20ea98ec.tmp
O43 - CFD: 24/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3e8c-3d28-20ea98ee.tmp
O43 - CFD: 24/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3e8c-3d28-20ea9900.tmp
O43 - CFD: 24/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3e8c-3d28-20ea9911.tmp
O43 - CFD: 24/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3e8c-3d28-20ea9923.tmp
O43 - CFD: 24/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3e8c-3d28-20ea9925.tmp
O43 - CFD: 24/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3e8c-3d28-20ea9956.tmp
O43 - CFD: 24/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3e8c-3d28-20ea9958.tmp
O43 - CFD: 24/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3e8c-3d28-20ea9979.tmp
O43 - CFD: 24/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3e8c-3d28-20ea999a.tmp
O43 - CFD: 20/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-437c-1080-2396adda.tmp
O43 - CFD: 20/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-437c-1080-2396aec7.tmp
O43 - CFD: 20/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-437c-1080-2396af26.tmp
O43 - CFD: 20/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-437c-1080-2396afd4.tmp
O43 - CFD: 20/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-437c-1080-2396b044.tmp
O43 - CFD: 20/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-437c-1080-2396b074.tmp
O43 - CFD: 20/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-437c-1080-2396b096.tmp
O43 - CFD: 20/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-437c-1080-2396b0b7.tmp
O43 - CFD: 20/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-437c-1080-2396b0d8.tmp
O43 - CFD: 20/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-437c-1080-2396b0ea.tmp
O43 - CFD: 20/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-437c-1080-2396b10b.tmp
O43 - CFD: 20/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-437c-1080-2396b12c.tmp
O43 - CFD: 20/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-437c-1080-2396b14e.tmp
O43 - CFD: 20/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-437c-1080-2396b1ad.tmp
O43 - CFD: 20/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-437c-1080-2396b1cf.tmp
O43 - CFD: 20/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-437c-1080-2396b1f0.tmp
O43 - CFD: 20/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-437c-1080-2396b211.tmp
O43 - CFD: 20/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-437c-1080-2396b242.tmp
O43 - CFD: 20/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-437c-1080-2396b263.tmp
O43 - CFD: 11/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-44e8-480-b2d7cf2.tmp
O43 - CFD: 11/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-44e8-480-b2d7d61.tmp
O43 - CFD: 11/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-44e8-480-b2d7df0.tmp
O43 - CFD: 11/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-44e8-480-b2d7e11.tmp
O43 - CFD: 11/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-44e8-480-b2d7e61.tmp
O43 - CFD: 11/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-44e8-480-b2d7ea2.tmp
O43 - CFD: 11/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-44e8-480-b2d7ed3.tmp
O43 - CFD: 11/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-44e8-480-b2d7ee4.tmp
O43 - CFD: 11/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-44e8-480-b2d7f25.tmp
O43 - CFD: 11/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-44e8-480-b2d7f75.tmp
O43 - CFD: 11/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-44e8-480-b2d7fc5.tmp
O43 - CFD: 11/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-44e8-480-b2d8015.tmp
O43 - CFD: 11/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-44e8-480-b2d80b3.tmp
O43 - CFD: 11/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-44e8-480-b2d80c5.tmp
O43 - CFD: 11/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-44e8-480-b2d80f6.tmp
O43 - CFD: 11/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-44e8-480-b2d8127.tmp
O43 - CFD: 11/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-44e8-480-b2d8196.tmp
O43 - CFD: 11/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-44e8-480-b2d81f6.tmp
O43 - CFD: 11/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-44e8-480-b2d8246.tmp
O43 - CFD: 27/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-470-58d4-45c6853a.tmp
O43 - CFD: 27/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-470-58d4-45c6854c.tmp
O43 - CFD: 27/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-470-58d4-45c6854e.tmp
O43 - CFD: 27/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-470-58d4-45c68550.tmp
O43 - CFD: 27/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-470-58d4-45c68561.tmp
O43 - CFD: 27/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-470-58d4-45c68573.tmp
O43 - CFD: 27/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-470-58d4-45c68575.tmp
O43 - CFD: 27/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-470-58d4-45c68587.tmp
O43 - CFD: 27/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-470-58d4-45c68589.tmp
O43 - CFD: 27/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-470-58d4-45c6859a.tmp
O43 - CFD: 27/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-470-58d4-45c6859c.tmp
O43 - CFD: 27/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-470-58d4-45c6859e.tmp
O43 - CFD: 27/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-470-58d4-45c685b0.tmp
O43 - CFD: 27/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-470-58d4-45c685b2.tmp
O43 - CFD: 27/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-470-58d4-45c685c3.tmp
O43 - CFD: 27/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-470-58d4-45c685c5.tmp
O43 - CFD: 27/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-470-58d4-45c685d7.tmp
O43 - CFD: 27/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-470-58d4-45c685d9.tmp
O43 - CFD: 27/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-470-58d4-45c685eb.tmp
O43 - CFD: 25/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4754-5ae0-3ba721c8.tmp
O43 - CFD: 25/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4754-5ae0-3ba721ca.tmp
O43 - CFD: 25/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4754-5ae0-3ba721db.tmp
O43 - CFD: 25/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4754-5ae0-3ba721dd.tmp
O43 - CFD: 25/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4754-5ae0-3ba7227c.tmp
O43 - CFD: 25/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4754-5ae0-3ba7227e.tmp
O43 - CFD: 25/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4754-5ae0-3ba7228f.tmp
O43 - CFD: 25/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4754-5ae0-3ba72291.tmp
O43 - CFD: 25/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4754-5ae0-3ba722a3.tmp
O43 - CFD: 25/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4754-5ae0-3ba722a5.tmp
O43 - CFD: 25/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4754-5ae0-3ba722a7.tmp
O43 - CFD: 25/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4754-5ae0-3ba722b8.tmp
O43 - CFD: 25/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4754-5ae0-3ba722ca.tmp
O43 - CFD: 25/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4754-5ae0-3ba722cc.tmp
O43 - CFD: 25/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4754-5ae0-3ba722de.tmp
O43 - CFD: 25/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4754-5ae0-3ba722e0.tmp
O43 - CFD: 25/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4754-5ae0-3ba722e2.tmp
O43 - CFD: 25/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4754-5ae0-3ba722f3.tmp
O43 - CFD: 25/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4754-5ae0-3ba722f5.tmp
O43 - CFD: 16/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4904-4e48-a8ac54e.tmp
O43 - CFD: 16/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4904-4e48-a8ac560.tmp
O43 - CFD: 16/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4904-4e48-a8ac562.tmp
O43 - CFD: 16/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4904-4e48-a8ac564.tmp
O43 - CFD: 16/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4904-4e48-a8ac575.tmp
O43 - CFD: 16/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4904-4e48-a8ac577.tmp
O43 - CFD: 16/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4904-4e48-a8ac589.tmp
O43 - CFD: 16/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4904-4e48-a8ac58b.tmp
O43 - CFD: 16/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4904-4e48-a8ac58d.tmp
O43 - CFD: 16/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4904-4e48-a8ac59f.tmp
O43 - CFD: 16/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4904-4e48-a8ac5a1.tmp
O43 - CFD: 16/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4904-4e48-a8ac5b2.tmp
O43 - CFD: 16/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4904-4e48-a8ac5b4.tmp
O43 - CFD: 16/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4904-4e48-a8ac5b6.tmp
O43 - CFD: 16/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4904-4e48-a8ac5c8.tmp
O43 - CFD: 16/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4904-4e48-a8ac5ca.tmp
O43 - CFD: 16/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4904-4e48-a8ac5cc.tmp
O43 - CFD: 16/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4904-4e48-a8ac5dd.tmp
O43 - CFD: 16/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4904-4e48-a8ac5df.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4940-4bb0-1499d918.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4940-4bb0-1499d91a.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4940-4bb0-1499d92b.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4940-4bb0-1499d92d.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4940-4bb0-1499d93f.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4940-4bb0-1499d941.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4940-4bb0-1499d943.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4940-4bb0-1499d955.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4940-4bb0-1499d957.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4940-4bb0-1499d968.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4940-4bb0-1499d96a.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4940-4bb0-1499d97c.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4940-4bb0-1499d97e.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4940-4bb0-1499d98f.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4940-4bb0-1499d991.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4940-4bb0-1499d993.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4940-4bb0-1499d9a5.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4940-4bb0-1499d9a7.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4940-4bb0-1499d9c8.tmp
O43 - CFD: 23/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-49d8-3168-315ed82e.tmp
O43 - CFD: 23/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-49d8-3168-315ed84f.tmp
O43 - CFD: 23/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-49d8-3168-315ed880.tmp
O43 - CFD: 23/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-49d8-3168-315ed8ff.tmp
O43 - CFD: 23/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-49d8-3168-315ed94f.tmp
O43 - CFD: 23/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-49d8-3168-315ed990.tmp
O43 - CFD: 23/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-49d8-3168-315ed9a1.tmp
O43 - CFD: 23/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-49d8-3168-315eda11.tmp
O43 - CFD: 23/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-49d8-3168-315eda70.tmp
O43 - CFD: 23/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-49d8-3168-315edb0f.tmp
O43 - CFD: 23/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-49d8-3168-315edb7e.tmp
O43 - CFD: 23/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-49d8-3168-315edbaf.tmp
O43 - CFD: 23/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-49d8-3168-315edc1e.tmp
O43 - CFD: 23/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-49d8-3168-315edc9d.tmp
O43 - CFD: 23/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-49d8-3168-315edcbf.tmp
O43 - CFD: 23/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-49d8-3168-315edcff.tmp
O43 - CFD: 23/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-49d8-3168-315edd40.tmp
O43 - CFD: 23/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-49d8-3168-315edd80.tmp
O43 - CFD: 23/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-49d8-3168-315edda1.tmp
O43 - CFD: 24/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4bb4-36dc-368a069e.tmp
O43 - CFD: 24/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4bb4-36dc-368a06bf.tmp
O43 - CFD: 24/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4bb4-36dc-368a06d0.tmp
O43 - CFD: 24/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4bb4-36dc-368a06f2.tmp
O43 - CFD: 24/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4bb4-36dc-368a0723.tmp
O43 - CFD: 24/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4bb4-36dc-368a0744.tmp
O43 - CFD: 24/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4bb4-36dc-368a0775.tmp
O43 - CFD: 24/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4bb4-36dc-368a0796.tmp
O43 - CFD: 24/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4bb4-36dc-368a07a8.tmp
O43 - CFD: 24/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4bb4-36dc-368a0817.tmp
O43 - CFD: 24/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4bb4-36dc-368a0829.tmp
O43 - CFD: 24/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4bb4-36dc-368a083a.tmp
O43 - CFD: 24/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4bb4-36dc-368a084c.tmp
O43 - CFD: 24/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4bb4-36dc-368a085d.tmp
O43 - CFD: 24/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4bb4-36dc-368a086f.tmp
O43 - CFD: 24/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4bb4-36dc-368a0881.tmp
O43 - CFD: 24/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4bb4-36dc-368a0892.tmp
O43 - CFD: 24/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4bb4-36dc-368a08a4.tmp
O43 - CFD: 24/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4bb4-36dc-368a08b6.tmp
O43 - CFD: 23/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4ed0-1eb8-1c5952de.tmp
O43 - CFD: 23/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4ed0-1eb8-1c5952f0.tmp
O43 - CFD: 23/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4ed0-1eb8-1c595301.tmp
O43 - CFD: 23/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4ed0-1eb8-1c595313.tmp
O43 - CFD: 23/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4ed0-1eb8-1c595315.tmp
O43 - CFD: 23/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4ed0-1eb8-1c595336.tmp
O43 - CFD: 23/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4ed0-1eb8-1c595348.tmp
O43 - CFD: 23/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4ed0-1eb8-1c595369.tmp
O43 - CFD: 23/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4ed0-1eb8-1c59537b.tmp
O43 - CFD: 23/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4ed0-1eb8-1c59538c.tmp
O43 - CFD: 23/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4ed0-1eb8-1c59539e.tmp
O43 - CFD: 23/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4ed0-1eb8-1c5953b0.tmp
O43 - CFD: 23/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4ed0-1eb8-1c5953c1.tmp
O43 - CFD: 23/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4ed0-1eb8-1c5953d3.tmp
O43 - CFD: 23/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4ed0-1eb8-1c5953f4.tmp
O43 - CFD: 23/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4ed0-1eb8-1c595415.tmp
O43 - CFD: 23/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4ed0-1eb8-1c595427.tmp
O43 - CFD: 23/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4ed0-1eb8-1c595439.tmp
O43 - CFD: 23/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4ed0-1eb8-1c59546a.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4f7c-1804-107ac954.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4f7c-1804-107ac966.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4f7c-1804-107ac968.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4f7c-1804-107ac979.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4f7c-1804-107ac97b.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4f7c-1804-107ac98d.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4f7c-1804-107ac98f.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4f7c-1804-107ac9a1.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4f7c-1804-107ac9a3.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4f7c-1804-107ac9a5.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4f7c-1804-107ac9b6.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4f7c-1804-107ac9b8.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4f7c-1804-107ac9ca.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4f7c-1804-107ac9cc.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4f7c-1804-107ac9ce.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4f7c-1804-107ac9ef.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4f7c-1804-107ac9f1.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4f7c-1804-107ac9f3.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4f7c-1804-107aca05.tmp
O43 - CFD: 17/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4fa0-4ec4-3636fdb8.tmp
O43 - CFD: 17/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4fa0-4ec4-3636fdca.tmp
O43 - CFD: 17/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4fa0-4ec4-3636fdcc.tmp
O43 - CFD: 17/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4fa0-4ec4-3636fdce.tmp
O43 - CFD: 17/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4fa0-4ec4-3636fddf.tmp
O43 - CFD: 17/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4fa0-4ec4-3636fdf1.tmp
O43 - CFD: 17/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4fa0-4ec4-3636fdf3.tmp
O43 - CFD: 17/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4fa0-4ec4-3636fe04.tmp
O43 - CFD: 17/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4fa0-4ec4-3636fe06.tmp
O43 - CFD: 17/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4fa0-4ec4-3636fe18.tmp
O43 - CFD: 17/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4fa0-4ec4-3636fe1a.tmp
O43 - CFD: 17/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4fa0-4ec4-3636fe1c.tmp
O43 - CFD: 17/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4fa0-4ec4-3636fe2e.tmp
O43 - CFD: 17/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4fa0-4ec4-3636fe30.tmp
O43 - CFD: 17/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4fa0-4ec4-3636fe41.tmp
O43 - CFD: 17/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4fa0-4ec4-3636fe43.tmp
O43 - CFD: 17/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4fa0-4ec4-3636fe55.tmp
O43 - CFD: 17/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4fa0-4ec4-3636fe57.tmp
O43 - CFD: 17/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-4fa0-4ec4-3636fe59.tmp
O43 - CFD: 15/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-514c-2908-ee7e64a.tmp
O43 - CFD: 15/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-514c-2908-ee7e64c.tmp
O43 - CFD: 15/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-514c-2908-ee7e64e.tmp
O43 - CFD: 15/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-514c-2908-ee7e660.tmp
O43 - CFD: 15/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-514c-2908-ee7e662.tmp
O43 - CFD: 15/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-514c-2908-ee7e674.tmp
O43 - CFD: 15/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-514c-2908-ee7e676.tmp
O43 - CFD: 15/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-514c-2908-ee7e687.tmp
O43 - CFD: 15/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-514c-2908-ee7e689.tmp
O43 - CFD: 15/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-514c-2908-ee7e68b.tmp
O43 - CFD: 15/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-514c-2908-ee7e69d.tmp
O43 - CFD: 15/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-514c-2908-ee7e69f.tmp
O43 - CFD: 15/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-514c-2908-ee7e6df.tmp
O43 - CFD: 15/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-514c-2908-ee7e6e1.tmp
O43 - CFD: 15/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-514c-2908-ee7e6e3.tmp
O43 - CFD: 15/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-514c-2908-ee7e6f5.tmp
O43 - CFD: 15/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-514c-2908-ee7e707.tmp
O43 - CFD: 15/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-514c-2908-ee7e718.tmp
O43 - CFD: 15/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-514c-2908-ee7e72a.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5394-48cc-76aef4eb.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5394-48cc-76aef50c.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5394-48cc-76aef52d.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5394-48cc-76aef53f.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5394-48cc-76aef550.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5394-48cc-76aef562.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5394-48cc-76aef574.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5394-48cc-76aef5d3.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5394-48cc-76aef5e5.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5394-48cc-76aef683.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5394-48cc-76aef6c4.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5394-48cc-76aef743.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5394-48cc-76aef84e.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5394-48cc-76aef870.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5394-48cc-76aef8cf.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5394-48cc-76aef910.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5394-48cc-76aef931.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5394-48cc-76aef9b0.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5394-48cc-76aef9c2.tmp
O43 - CFD: 28/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-564c-6630-4b14bfa6.tmp
O43 - CFD: 28/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-564c-6630-4b14bfa8.tmp
O43 - CFD: 28/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-564c-6630-4b14bfb9.tmp
O43 - CFD: 28/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-564c-6630-4b14bfbb.tmp
O43 - CFD: 28/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-564c-6630-4b14bfcd.tmp
O43 - CFD: 28/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-564c-6630-4b14bfcf.tmp
O43 - CFD: 28/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-564c-6630-4b14bfe1.tmp
O43 - CFD: 28/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-564c-6630-4b14bfe3.tmp
O43 - CFD: 28/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-564c-6630-4b14bfe5.tmp
O43 - CFD: 28/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-564c-6630-4b14bff6.tmp
O43 - CFD: 28/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-564c-6630-4b14bff8.tmp
O43 - CFD: 28/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-564c-6630-4b14c00a.tmp
O43 - CFD: 28/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-564c-6630-4b14c00c.tmp
O43 - CFD: 28/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-564c-6630-4b14c06c.tmp
O43 - CFD: 28/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-564c-6630-4b14c07d.tmp
O43 - CFD: 28/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-564c-6630-4b14c07f.tmp
O43 - CFD: 28/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-564c-6630-4b14c091.tmp
O43 - CFD: 28/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-564c-6630-4b14c093.tmp
O43 - CFD: 28/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-564c-6630-4b14c095.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-56cc-93e4-28e09259.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-56cc-93e4-28e0927b.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-56cc-93e4-28e0927d.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-56cc-93e4-28e0929e.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-56cc-93e4-28e092cf.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-56cc-93e4-28e092e0.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-56cc-93e4-28e092f2.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-56cc-93e4-28e09313.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-56cc-93e4-28e09334.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-56cc-93e4-28e09336.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-56cc-93e4-28e09387.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-56cc-93e4-28e093a8.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-56cc-93e4-28e093c9.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-56cc-93e4-28e093cb.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-56cc-93e4-28e093fc.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-56cc-93e4-28e0941d.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-56cc-93e4-28e0942f.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-56cc-93e4-28e094dd.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-56cc-93e4-28e094ee.tmp
O43 - CFD: 18/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5774-8160-1fc5d3e1.tmp
O43 - CFD: 18/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5774-8160-1fc5d402.tmp
O43 - CFD: 18/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5774-8160-1fc5d423.tmp
O43 - CFD: 18/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5774-8160-1fc5d435.tmp
O43 - CFD: 18/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5774-8160-1fc5d446.tmp
O43 - CFD: 18/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5774-8160-1fc5d458.tmp
O43 - CFD: 18/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5774-8160-1fc5d479.tmp
O43 - CFD: 18/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5774-8160-1fc5d48b.tmp
O43 - CFD: 18/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5774-8160-1fc5d49d.tmp
O43 - CFD: 18/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5774-8160-1fc5d4ae.tmp
O43 - CFD: 18/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5774-8160-1fc5d53d.tmp
O43 - CFD: 18/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5774-8160-1fc5d56e.tmp
O43 - CFD: 18/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5774-8160-1fc5d57f.tmp
O43 - CFD: 18/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5774-8160-1fc5d5a1.tmp
O43 - CFD: 18/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5774-8160-1fc5d5b2.tmp
O43 - CFD: 18/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5774-8160-1fc5d5c4.tmp
O43 - CFD: 18/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5774-8160-1fc5d5d5.tmp
O43 - CFD: 18/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5774-8160-1fc5d5e7.tmp
O43 - CFD: 18/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5774-8160-1fc5d5f9.tmp
O43 - CFD: 26/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5858-34ec-40d03cf7.tmp
O43 - CFD: 26/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5858-34ec-40d053bd.tmp
O43 - CFD: 26/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5858-34ec-40d05863.tmp
O43 - CFD: 26/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5858-34ec-40d05cca.tmp
O43 - CFD: 26/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5858-34ec-40d06121.tmp
O43 - CFD: 26/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5858-34ec-40d066e0.tmp
O43 - CFD: 26/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5858-34ec-40d069c0.tmp
O43 - CFD: 26/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5858-34ec-40d06c62.tmp
O43 - CFD: 26/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5858-34ec-40d06f62.tmp
O43 - CFD: 26/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5858-34ec-40d0761b.tmp
O43 - CFD: 26/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5858-34ec-40d079b7.tmp
O43 - CFD: 26/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5858-34ec-40d07d91.tmp
O43 - CFD: 26/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5858-34ec-40d08302.tmp
O43 - CFD: 26/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5858-34ec-40d08630.tmp
O43 - CFD: 26/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5858-34ec-40d08a1a.tmp
O43 - CFD: 26/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5858-34ec-40d093e0.tmp
O43 - CFD: 26/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5858-34ec-40d09af7.tmp
O43 - CFD: 26/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5858-34ec-40d0a1de.tmp
O43 - CFD: 26/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5858-34ec-40d0bb73.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5a04-6548-14850185.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5a04-6548-14850197.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5a04-6548-14850199.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5a04-6548-148501ab.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5a04-6548-148501bc.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5a04-6548-148501be.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5a04-6548-148501d0.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5a04-6548-148501d2.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5a04-6548-148501d4.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5a04-6548-148501e6.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5a04-6548-148501f7.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5a04-6548-148501f9.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5a04-6548-1485020b.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5a04-6548-1485020d.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5a04-6548-1485020f.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5a04-6548-14850220.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5a04-6548-14850222.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5a04-6548-14850234.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-5a04-6548-14850236.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6254-7fa8-7a9e9a41.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6254-7fa8-7a9e9a62.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6254-7fa8-7a9e9a64.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6254-7fa8-7a9e9a76.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6254-7fa8-7a9e9a78.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6254-7fa8-7a9e9a89.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6254-7fa8-7a9e9a9b.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6254-7fa8-7a9e9aac.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6254-7fa8-7a9e9aae.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6254-7fa8-7a9e9ab0.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6254-7fa8-7a9e9ac2.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6254-7fa8-7a9e9ac4.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6254-7fa8-7a9e9ac6.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6254-7fa8-7a9e9ad8.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6254-7fa8-7a9e9ada.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6254-7fa8-7a9e9aeb.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6254-7fa8-7a9e9aed.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6254-7fa8-7a9e9aef.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6254-7fa8-7a9e9b01.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6424-2554-19627132.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6424-2554-19627153.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6424-2554-19627165.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6424-2554-19627176.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6424-2554-19627188.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6424-2554-1962719a.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6424-2554-196271ab.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6424-2554-196271bd.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6424-2554-196271ce.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6424-2554-196271e0.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6424-2554-19627201.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6424-2554-19627213.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6424-2554-19627234.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-67c8-46a0-14c3c516.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-67c8-46a0-14c3c528.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-67c8-46a0-14c3c52a.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-67c8-46a0-14c3c53c.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-67c8-46a0-14c3c53e.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-67c8-46a0-14c3c54f.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-67c8-46a0-14c3c551.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-67c8-46a0-14c3c553.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-67c8-46a0-14c3c565.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-67c8-46a0-14c3c576.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-67c8-46a0-14c3c578.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-67c8-46a0-14c3c57a.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-67c8-46a0-14c3c58c.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-67c8-46a0-14c3c58e.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-67c8-46a0-14c3c5a0.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-67c8-46a0-14c3c5a2.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-67c8-46a0-14c3c5a4.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-67c8-46a0-14c3c5b5.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-67c8-46a0-14c3c5b7.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6ad4-f010-3860db45.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6ad4-f010-3860db47.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6ad4-f010-3860db59.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6ad4-f010-3860db5b.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6ad4-f010-3860db5d.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6ad4-f010-3860db6e.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6ad4-f010-3860db80.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6ad4-f010-3860db82.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6ad4-f010-3860db93.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6ad4-f010-3860db95.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6ad4-f010-3860dba7.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6ad4-f010-3860dba9.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6ad4-f010-3860dbab.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6ad4-f010-3860dbbd.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6ad4-f010-3860dbbf.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6ad4-f010-3860dbd0.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6ad4-f010-3860dbd2.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6ad4-f010-3860dbe4.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6ad4-f010-3860dbe6.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6b60-5b0c-200e87a2.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6b60-5b0c-200e87a4.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6b60-5b0c-200e87a6.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6b60-5b0c-200e87b8.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6b60-5b0c-200e87ba.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6b60-5b0c-200e87cb.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6b60-5b0c-200e87cd.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6b60-5b0c-200e87cf.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6b60-5b0c-200e87e1.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6b60-5b0c-200e87e3.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6b60-5b0c-200e87f5.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6b60-5b0c-200e87f7.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6b60-5b0c-200e8808.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6b60-5b0c-200e881a.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6b60-5b0c-200e882b.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6b60-5b0c-200e882d.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6b60-5b0c-200e88ac.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6b60-5b0c-200e88be.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6b60-5b0c-200e88c0.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6fdc-6a58-19fb6977.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6fdc-6a58-19fb6979.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6fdc-6a58-19fb698b.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6fdc-6a58-19fb698d.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6fdc-6a58-19fb698f.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6fdc-6a58-19fb69a0.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6fdc-6a58-19fb69a2.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6fdc-6a58-19fb69b4.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6fdc-6a58-19fb69c5.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6fdc-6a58-19fb69c7.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6fdc-6a58-19fb69c9.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6fdc-6a58-19fb69db.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6fdc-6a58-19fb69dd.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6fdc-6a58-19fb69ef.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6fdc-6a58-19fb69f1.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6fdc-6a58-19fb6a02.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6fdc-6a58-19fb6a04.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6fdc-6a58-19fb6a16.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-6fdc-6a58-19fb6a18.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7538-63a0-1e985bbb.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7538-63a0-1e985bdc.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7538-63a0-1e985bee.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7538-63a0-1e985bff.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7538-63a0-1e985cec.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7538-63a0-1e985d2c.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7538-63a0-1e985d4e.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7538-63a0-1e985d5f.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7538-63a0-1e985d71.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7538-63a0-1e985d82.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7538-63a0-1e985d94.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7538-63a0-1e985da6.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7538-63a0-1e985db7.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7538-63a0-1e985dc9.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7538-63a0-1e985ddb.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7538-63a0-1e985e69.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7538-63a0-1e985e7b.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7538-63a0-1e985e8c.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7538-63a0-1e985e9e.tmp
O43 - CFD: 09/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-75c4-a0d8-24c55885.tmp
O43 - CFD: 09/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-75c4-a0d8-24c55887.tmp
O43 - CFD: 09/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-75c4-a0d8-24c558a8.tmp
O43 - CFD: 09/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-75c4-a0d8-24c558d9.tmp
O43 - CFD: 09/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-75c4-a0d8-24c5590a.tmp
O43 - CFD: 09/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-75c4-a0d8-24c55989.tmp
O43 - CFD: 09/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-75c4-a0d8-24c5598b.tmp
O43 - CFD: 09/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-75c4-a0d8-24c5598d.tmp
O43 - CFD: 09/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-75c4-a0d8-24c5599e.tmp
O43 - CFD: 09/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-75c4-a0d8-24c559a0.tmp
O43 - CFD: 09/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-75c4-a0d8-24c559b2.tmp
O43 - CFD: 09/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-75c4-a0d8-24c559c4.tmp
O43 - CFD: 09/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-75c4-a0d8-24c559e5.tmp
O43 - CFD: 09/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-75c4-a0d8-24c559e7.tmp
O43 - CFD: 09/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-75c4-a0d8-24c559e9.tmp
O43 - CFD: 09/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-75c4-a0d8-24c559fa.tmp
O43 - CFD: 09/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-75c4-a0d8-24c55a0c.tmp
O43 - CFD: 09/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-75c4-a0d8-24c55a9b.tmp
O43 - CFD: 09/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-75c4-a0d8-24c55aac.tmp
O43 - CFD: 01/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7758-74c8-5f4eedc9.tmp
O43 - CFD: 01/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7758-74c8-5f4eedda.tmp
O43 - CFD: 01/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7758-74c8-5f4eedec.tmp
O43 - CFD: 01/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7758-74c8-5f4eedee.tmp
O43 - CFD: 01/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7758-74c8-5f4eedf0.tmp
O43 - CFD: 01/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7758-74c8-5f4eee01.tmp
O43 - CFD: 01/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7758-74c8-5f4eee03.tmp
O43 - CFD: 01/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7758-74c8-5f4eee15.tmp
O43 - CFD: 01/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7758-74c8-5f4eee17.tmp
O43 - CFD: 01/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7758-74c8-5f4eee29.tmp
O43 - CFD: 01/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7758-74c8-5f4eee2b.tmp
O43 - CFD: 01/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7758-74c8-5f4eee3c.tmp
O43 - CFD: 01/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7758-74c8-5f4eee3e.tmp
O43 - CFD: 01/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7758-74c8-5f4eee40.tmp
O43 - CFD: 01/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7758-74c8-5f4eee52.tmp
O43 - CFD: 01/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7758-74c8-5f4eee54.tmp
O43 - CFD: 01/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7758-74c8-5f4eee66.tmp
O43 - CFD: 01/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7758-74c8-5f4eee68.tmp
O43 - CFD: 01/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7758-74c8-5f4eee79.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7978-62ac-7947d7db.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7978-62ac-7947d7dd.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7978-62ac-7947d7ee.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7978-62ac-7947d7f0.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7978-62ac-7947d802.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7978-62ac-7947d804.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7978-62ac-7947d806.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7978-62ac-7947d817.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7978-62ac-7947d829.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7978-62ac-7947d82b.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7978-62ac-7947d83d.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7978-62ac-7947d83f.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7978-62ac-7947d841.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7978-62ac-7947d852.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7978-62ac-7947d854.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7978-62ac-7947d866.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7978-62ac-7947d868.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7978-62ac-7947d86a.tmp
O43 - CFD: 06/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7978-62ac-7947d87c.tmp
O43 - CFD: 17/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7c18-789c-18f31c26.tmp
O43 - CFD: 17/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7c18-789c-18f31c38.tmp
O43 - CFD: 17/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7c18-789c-18f31c3a.tmp
O43 - CFD: 17/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7c18-789c-18f31c4b.tmp
O43 - CFD: 17/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7c18-789c-18f31c4d.tmp
O43 - CFD: 17/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7c18-789c-18f31c5f.tmp
O43 - CFD: 17/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7c18-789c-18f31c61.tmp
O43 - CFD: 17/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7c18-789c-18f31c63.tmp
O43 - CFD: 17/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7c18-789c-18f31c75.tmp
O43 - CFD: 17/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7c18-789c-18f31c77.tmp
O43 - CFD: 17/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7c18-789c-18f31cc7.tmp
O43 - CFD: 17/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7c18-789c-18f31d17.tmp
O43 - CFD: 17/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7c18-789c-18f31d86.tmp
O43 - CFD: 17/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7c18-789c-18f31e73.tmp
O43 - CFD: 17/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7c18-789c-18f31e75.tmp
O43 - CFD: 17/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7c18-789c-18f31f22.tmp
O43 - CFD: 17/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7c18-789c-18f31f24.tmp
O43 - CFD: 17/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7c18-789c-18f31f36.tmp
O43 - CFD: 17/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7c18-789c-18f31f38.tmp
O43 - CFD: 03/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-1a20-6a292ffa.tmp
O43 - CFD: 03/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-1a20-6a29300b.tmp
O43 - CFD: 03/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-1a20-6a29303c.tmp
O43 - CFD: 03/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-1a20-6a29304e.tmp
O43 - CFD: 03/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-1a20-6a2930cd.tmp
O43 - CFD: 03/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-1a20-6a2930ee.tmp
O43 - CFD: 03/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-1a20-6a29310f.tmp
O43 - CFD: 03/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-1a20-6a293121.tmp
O43 - CFD: 03/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-1a20-6a293133.tmp
O43 - CFD: 03/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-1a20-6a293144.tmp
O43 - CFD: 03/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-1a20-6a2931f2.tmp
O43 - CFD: 03/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-1a20-6a293233.tmp
O43 - CFD: 03/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-1a20-6a293235.tmp
O43 - CFD: 03/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-1a20-6a293237.tmp
O43 - CFD: 03/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-1a20-6a293248.tmp
O43 - CFD: 03/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-1a20-6a293269.tmp
O43 - CFD: 03/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-1a20-6a29326b.tmp
O43 - CFD: 03/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-1a20-6a29328d.tmp
O43 - CFD: 03/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-1a20-6a2933a8.tmp
O43 - CFD: 04/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-59f8-6ef667e8.tmp
O43 - CFD: 04/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-59f8-6ef667ea.tmp
O43 - CFD: 04/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-59f8-6ef667ec.tmp
O43 - CFD: 04/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-59f8-6ef667fe.tmp
O43 - CFD: 04/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-59f8-6ef66800.tmp
O43 - CFD: 04/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-59f8-6ef66811.tmp
O43 - CFD: 04/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-59f8-6ef66833.tmp
O43 - CFD: 04/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-59f8-6ef66835.tmp
O43 - CFD: 04/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-59f8-6ef66837.tmp
O43 - CFD: 04/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-59f8-6ef66848.tmp
O43 - CFD: 04/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-59f8-6ef6684a.tmp
O43 - CFD: 04/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-59f8-6ef6684c.tmp
O43 - CFD: 04/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-59f8-6ef66987.tmp
O43 - CFD: 04/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-59f8-6ef66998.tmp
O43 - CFD: 04/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-59f8-6ef669c9.tmp
O43 - CFD: 04/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-59f8-6ef669db.tmp
O43 - CFD: 04/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-59f8-6ef669dd.tmp
O43 - CFD: 04/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-59f8-6ef669ef.tmp
O43 - CFD: 04/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7d30-59f8-6ef66a00.tmp
O43 - CFD: 25/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7eb0-80b8-268867e5.tmp
O43 - CFD: 25/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7eb0-80b8-26886ce8.tmp
O43 - CFD: 25/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7eb0-80b8-26886d19.tmp
O43 - CFD: 25/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7eb0-80b8-26886d4a.tmp
O43 - CFD: 25/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7eb0-80b8-26886db9.tmp
O43 - CFD: 25/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7eb0-80b8-26886dcb.tmp
O43 - CFD: 25/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7eb0-80b8-26886dfb.tmp
O43 - CFD: 25/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7eb0-80b8-26886e9a.tmp
O43 - CFD: 25/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7eb0-80b8-26886eab.tmp
O43 - CFD: 25/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7eb0-80b8-26886f2a.tmp
O43 - CFD: 25/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7eb0-80b8-26886f5b.tmp
O43 - CFD: 25/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7eb0-80b8-26886f7c.tmp
O43 - CFD: 25/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7eb0-80b8-26886fbd.tmp
O43 - CFD: 25/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7eb0-80b8-26886ffd.tmp
O43 - CFD: 25/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7eb0-80b8-268870ab.tmp
O43 - CFD: 25/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7eb0-80b8-2688714a.tmp
O43 - CFD: 25/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7eb0-80b8-2688719a.tmp
O43 - CFD: 25/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7eb0-80b8-26887209.tmp
O43 - CFD: 25/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7eb0-80b8-2688723a.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7f14-7f0c-6b77295a.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7f14-7f0c-6b772a37.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7f14-7f0c-6b772a87.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7f14-7f0c-6b772af6.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7f14-7f0c-6b772b75.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7f14-7f0c-6b772be4.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7f14-7f0c-6b772dbb.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7f14-7f0c-6b772e0b.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7f14-7f0c-6b772e3c.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7f14-7f0c-6b772eea.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7f14-7f0c-6b772f1b.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7f14-7f0c-6b772f4c.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7f14-7f0c-6b772f9c.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7f14-7f0c-6b772ffc.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7f14-7f0c-6b77300d.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7f14-7f0c-6b77305d.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7f14-7f0c-6b77308e.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7f14-7f0c-6b77312d.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-7f14-7f0c-6b773267.tmp
O43 - CFD: 05/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8038-72a0-7488780d.tmp
O43 - CFD: 05/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8038-72a0-7488781f.tmp
O43 - CFD: 05/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8038-72a0-74887821.tmp
O43 - CFD: 05/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8038-72a0-74887832.tmp
O43 - CFD: 05/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8038-72a0-74887834.tmp
O43 - CFD: 05/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8038-72a0-74887836.tmp
O43 - CFD: 05/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8038-72a0-74887848.tmp
O43 - CFD: 05/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8038-72a0-7488784a.tmp
O43 - CFD: 05/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8038-72a0-7488784c.tmp
O43 - CFD: 05/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8038-72a0-7488785d.tmp
O43 - CFD: 05/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8038-72a0-7488785f.tmp
O43 - CFD: 05/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8038-72a0-74887871.tmp
O43 - CFD: 05/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8038-72a0-74887873.tmp
O43 - CFD: 05/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8038-72a0-74887875.tmp
O43 - CFD: 05/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8038-72a0-74887887.tmp
O43 - CFD: 05/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8038-72a0-74887889.tmp
O43 - CFD: 05/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8038-72a0-748878aa.tmp
O43 - CFD: 05/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8038-72a0-748878ac.tmp
O43 - CFD: 05/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8038-72a0-748878be.tmp
O43 - CFD: 21/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-820-42e8-27542fdd.tmp
O43 - CFD: 21/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-820-42e8-27542fee.tmp
O43 - CFD: 21/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-820-42e8-27543000.tmp
O43 - CFD: 21/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-820-42e8-27543011.tmp
O43 - CFD: 21/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-820-42e8-27543023.tmp
O43 - CFD: 21/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-820-42e8-27543025.tmp
O43 - CFD: 21/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-820-42e8-27543037.tmp
O43 - CFD: 21/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-820-42e8-27543039.tmp
O43 - CFD: 21/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-820-42e8-2754303b.tmp
O43 - CFD: 21/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-820-42e8-2754304c.tmp
O43 - CFD: 21/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-820-42e8-2754304e.tmp
O43 - CFD: 21/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-820-42e8-27543050.tmp
O43 - CFD: 21/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-820-42e8-27543062.tmp
O43 - CFD: 21/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-820-42e8-27543064.tmp
O43 - CFD: 21/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-820-42e8-27543076.tmp
O43 - CFD: 21/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-820-42e8-27543078.tmp
O43 - CFD: 21/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-820-42e8-2754307a.tmp
O43 - CFD: 21/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-820-42e8-2754308b.tmp
O43 - CFD: 21/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-820-42e8-2754308d.tmp
O43 - CFD: 05/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8584-b34-7122b0c8.tmp
O43 - CFD: 05/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8584-b34-7122b0e9.tmp
O43 - CFD: 05/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8584-b34-7122b0eb.tmp
O43 - CFD: 05/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8584-b34-7122b0fd.tmp
O43 - CFD: 05/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8584-b34-7122b0ff.tmp
O43 - CFD: 05/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8584-b34-7122b111.tmp
O43 - CFD: 05/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8584-b34-7122b113.tmp
O43 - CFD: 05/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8584-b34-7122b143.tmp
O43 - CFD: 05/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8584-b34-7122b155.tmp
O43 - CFD: 05/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8584-b34-7122b157.tmp
O43 - CFD: 05/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8584-b34-7122b169.tmp
O43 - CFD: 05/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8584-b34-7122b1f7.tmp
O43 - CFD: 05/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8584-b34-7122b209.tmp
O43 - CFD: 05/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8584-b34-7122b20b.tmp
O43 - CFD: 05/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8584-b34-7122b21d.tmp
O43 - CFD: 05/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8584-b34-7122b21f.tmp
O43 - CFD: 05/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8584-b34-7122b230.tmp
O43 - CFD: 05/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8584-b34-7122b232.tmp
O43 - CFD: 05/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8584-b34-7122b244.tmp
O43 - CFD: 15/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8ac-232c-8509ac8.tmp
O43 - CFD: 15/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8ac-232c-8509ad9.tmp
O43 - CFD: 15/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8ac-232c-8509adb.tmp
O43 - CFD: 15/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8ac-232c-8509add.tmp
O43 - CFD: 15/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8ac-232c-8509aef.tmp
O43 - CFD: 15/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8ac-232c-8509af1.tmp
O43 - CFD: 15/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8ac-232c-8509af3.tmp
O43 - CFD: 15/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8ac-232c-8509b05.tmp
O43 - CFD: 15/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8ac-232c-8509b07.tmp
O43 - CFD: 15/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8ac-232c-8509b18.tmp
O43 - CFD: 15/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8ac-232c-8509b1a.tmp
O43 - CFD: 15/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8ac-232c-8509b1c.tmp
O43 - CFD: 15/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8ac-232c-8509b2e.tmp
O43 - CFD: 15/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8ac-232c-8509b30.tmp
O43 - CFD: 15/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8ac-232c-8509b42.tmp
O43 - CFD: 15/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8ac-232c-8509b53.tmp
O43 - CFD: 15/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8ac-232c-8509b55.tmp
O43 - CFD: 15/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8ac-232c-8509b67.tmp
O43 - CFD: 15/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8ac-232c-8509b69.tmp
O43 - CFD: 04/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8c4c-6588-6ba41e14.tmp
O43 - CFD: 04/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8c4c-6588-6ba41e45.tmp
O43 - CFD: 04/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8c4c-6588-6ba41e57.tmp
O43 - CFD: 04/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8c4c-6588-6ba41e59.tmp
O43 - CFD: 04/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8c4c-6588-6ba41e6a.tmp
O43 - CFD: 04/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8c4c-6588-6ba41e7c.tmp
O43 - CFD: 04/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8c4c-6588-6ba41ebc.tmp
O43 - CFD: 04/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8c4c-6588-6ba41ede.tmp
O43 - CFD: 04/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8c4c-6588-6ba41eef.tmp
O43 - CFD: 04/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8c4c-6588-6ba41f30.tmp
O43 - CFD: 04/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8c4c-6588-6ba41f51.tmp
O43 - CFD: 04/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8c4c-6588-6ba41f63.tmp
O43 - CFD: 04/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8c4c-6588-6ba41f84.tmp
O43 - CFD: 04/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8c4c-6588-6ba41fa5.tmp
O43 - CFD: 04/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8c4c-6588-6ba41fc6.tmp
O43 - CFD: 04/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8c4c-6588-6ba41fc8.tmp
O43 - CFD: 04/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8c4c-6588-6ba41fda.tmp
O43 - CFD: 04/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8c4c-6588-6ba41ffb.tmp
O43 - CFD: 04/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8c4c-6588-6ba4202c.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8f48-f870-7b33c2e2.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8f48-f870-7b33c381.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8f48-f870-7b33c3c1.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8f48-f870-7b33c3d3.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8f48-f870-7b33c432.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8f48-f870-7b33c492.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8f48-f870-7b33c4e2.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8f48-f870-7b33c513.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8f48-f870-7b33c554.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8f48-f870-7b33c585.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8f48-f870-7b33c642.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8f48-f870-7b33c683.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8f48-f870-7b33c6d3.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8f48-f870-7b33c6f4.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8f48-f870-7b33c763.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8f48-f870-7b33c7d3.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8f48-f870-7b33c7f4.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8f48-f870-7b33c834.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-8f48-f870-7b33c856.tmp
O43 - CFD: 21/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-906c-9fc4-25ab3b88.tmp
O43 - CFD: 21/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-906c-9fc4-25ab3b9a.tmp
O43 - CFD: 21/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-906c-9fc4-25ab3b9c.tmp
O43 - CFD: 21/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-906c-9fc4-25ab3bad.tmp
O43 - CFD: 21/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-906c-9fc4-25ab3baf.tmp
O43 - CFD: 21/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-906c-9fc4-25ab3bb1.tmp
O43 - CFD: 21/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-906c-9fc4-25ab3bc3.tmp
O43 - CFD: 21/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-906c-9fc4-25ab3bc5.tmp
O43 - CFD: 21/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-906c-9fc4-25ab3bd7.tmp
O43 - CFD: 21/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-906c-9fc4-25ab3be8.tmp
O43 - CFD: 21/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-906c-9fc4-25ab3bfa.tmp
O43 - CFD: 21/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-906c-9fc4-25ab3bfc.tmp
O43 - CFD: 21/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-906c-9fc4-25ab3c0d.tmp
O43 - CFD: 21/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-906c-9fc4-25ab3c0f.tmp
O43 - CFD: 21/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-906c-9fc4-25ab3c11.tmp
O43 - CFD: 21/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-906c-9fc4-25ab3c23.tmp
O43 - CFD: 21/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-906c-9fc4-25ab3c25.tmp
O43 - CFD: 21/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-906c-9fc4-25ab3c37.tmp
O43 - CFD: 21/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-906c-9fc4-25ab3c39.tmp
O43 - CFD: 27/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-967c-5258-301f419b.tmp
O43 - CFD: 27/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-967c-5258-301f42e5.tmp
O43 - CFD: 27/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-967c-5258-301f42f6.tmp
O43 - CFD: 27/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-967c-5258-301f4375.tmp
O43 - CFD: 27/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-967c-5258-301f4377.tmp
O43 - CFD: 27/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-967c-5258-301f4389.tmp
O43 - CFD: 27/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-967c-5258-301f438b.tmp
O43 - CFD: 27/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-967c-5258-301f43ac.tmp
O43 - CFD: 27/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-967c-5258-301f43ae.tmp
O43 - CFD: 27/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-967c-5258-301f43c0.tmp
O43 - CFD: 27/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-967c-5258-301f43c2.tmp
O43 - CFD: 27/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-967c-5258-301f43c4.tmp
O43 - CFD: 27/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-967c-5258-301f43e5.tmp
O43 - CFD: 27/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-967c-5258-301f43e7.tmp
O43 - CFD: 27/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-967c-5258-301f43f9.tmp
O43 - CFD: 27/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-967c-5258-301f440a.tmp
O43 - CFD: 27/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-967c-5258-301f441c.tmp
O43 - CFD: 27/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-967c-5258-301f441e.tmp
O43 - CFD: 27/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-967c-5258-301f4430.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-98e8-9b38-2bb9592f.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-98e8-9b38-2bb959ec.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-98e8-9b38-2bb95a0d.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-98e8-9b38-2bb95a1f.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-98e8-9b38-2bb95a31.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-98e8-9b38-2bb95a42.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-98e8-9b38-2bb95a64.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-98e8-9b38-2bb95a85.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-98e8-9b38-2bb95a96.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-98e8-9b38-2bb95ac7.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-98e8-9b38-2bb95b37.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-98e8-9b38-2bb95b48.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-98e8-9b38-2bb95b6a.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-98e8-9b38-2bb95b7b.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-98e8-9b38-2bb95bdb.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-98e8-9b38-2bb95c89.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-98e8-9b38-2bb95c8b.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-98e8-9b38-2bb95cbc.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-98e8-9b38-2bb95cdd.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9f54-bd94-3ac33295.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9f54-bd94-3ac332b7.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9f54-bd94-3ac333d2.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9f54-bd94-3ac33422.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9f54-bd94-3ac33434.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9f54-bd94-3ac33436.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9f54-bd94-3ac33447.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9f54-bd94-3ac33459.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9f54-bd94-3ac3347a.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9f54-bd94-3ac3347c.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9f54-bd94-3ac3348e.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9f54-bd94-3ac33490.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9f54-bd94-3ac334a1.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9f54-bd94-3ac334a3.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9f54-bd94-3ac334b5.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9f54-bd94-3ac334c7.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9f54-bd94-3ac334d8.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9f54-bd94-3ac33603.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9f54-bd94-3ac33605.tmp
O43 - CFD: 10/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a06c-ba44-299bc8fc.tmp
O43 - CFD: 10/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a06c-ba44-299bc90e.tmp
O43 - CFD: 10/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a06c-ba44-299bc91f.tmp
O43 - CFD: 10/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a06c-ba44-299bc950.tmp
O43 - CFD: 10/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a06c-ba44-299bc971.tmp
O43 - CFD: 10/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a06c-ba44-299bc9b2.tmp
O43 - CFD: 10/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a06c-ba44-299bca8f.tmp
O43 - CFD: 10/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a06c-ba44-299bcadf.tmp
O43 - CFD: 10/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a06c-ba44-299bcaf0.tmp
O43 - CFD: 10/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a06c-ba44-299bcb12.tmp
O43 - CFD: 10/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a06c-ba44-299bcb23.tmp
O43 - CFD: 10/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a06c-ba44-299bcb35.tmp
O43 - CFD: 10/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a06c-ba44-299bcb56.tmp
O43 - CFD: 10/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a06c-ba44-299bcba6.tmp
O43 - CFD: 10/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a06c-ba44-299bcbc8.tmp
O43 - CFD: 10/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a06c-ba44-299bcbd9.tmp
O43 - CFD: 10/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a06c-ba44-299bcbfa.tmp
O43 - CFD: 10/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a06c-ba44-299bccf6.tmp
O43 - CFD: 10/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a06c-ba44-299bcd47.tmp
O43 - CFD: 22/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a2d4-9784-3296ec06.tmp
O43 - CFD: 22/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a2d4-9784-3296ec08.tmp
O43 - CFD: 22/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a2d4-9784-3296ec1a.tmp
O43 - CFD: 22/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a2d4-9784-3296ec1c.tmp
O43 - CFD: 22/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a2d4-9784-3296ec1e.tmp
O43 - CFD: 22/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a2d4-9784-3296ec30.tmp
O43 - CFD: 22/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a2d4-9784-3296ec32.tmp
O43 - CFD: 22/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a2d4-9784-3296ec34.tmp
O43 - CFD: 22/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a2d4-9784-3296ec45.tmp
O43 - CFD: 22/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a2d4-9784-3296ec47.tmp
O43 - CFD: 22/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a2d4-9784-3296ec59.tmp
O43 - CFD: 22/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a2d4-9784-3296ec5b.tmp
O43 - CFD: 22/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a2d4-9784-3296ec6d.tmp
O43 - CFD: 22/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a2d4-9784-3296ec6f.tmp
O43 - CFD: 22/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a2d4-9784-3296ec80.tmp
O43 - CFD: 22/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a2d4-9784-3296ec82.tmp
O43 - CFD: 22/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a2d4-9784-3296ec94.tmp
O43 - CFD: 22/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a2d4-9784-3296ec96.tmp
O43 - CFD: 22/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-a2d4-9784-3296eca7.tmp
O43 - CFD: 29/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ad0-6ba4-505b524a.tmp
O43 - CFD: 29/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ad0-6ba4-505b525c.tmp
O43 - CFD: 29/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ad0-6ba4-505b525e.tmp
O43 - CFD: 29/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ad0-6ba4-505b5270.tmp
O43 - CFD: 29/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ad0-6ba4-505b5272.tmp
O43 - CFD: 29/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ad0-6ba4-505b5283.tmp
O43 - CFD: 29/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ad0-6ba4-505b5285.tmp
O43 - CFD: 29/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ad0-6ba4-505b5297.tmp
O43 - CFD: 29/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ad0-6ba4-505b5299.tmp
O43 - CFD: 29/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ad0-6ba4-505b52ab.tmp
O43 - CFD: 29/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ad0-6ba4-505b52ad.tmp
O43 - CFD: 29/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ad0-6ba4-505b52be.tmp
O43 - CFD: 29/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ad0-6ba4-505b52c0.tmp
O43 - CFD: 29/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ad0-6ba4-505b52d2.tmp
O43 - CFD: 29/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ad0-6ba4-505b52d4.tmp
O43 - CFD: 29/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ad0-6ba4-505b52e5.tmp
O43 - CFD: 29/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ad0-6ba4-505b52e7.tmp
O43 - CFD: 29/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ad0-6ba4-505b52f9.tmp
O43 - CFD: 29/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ad0-6ba4-505b52fb.tmp
O43 - CFD: 11/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-afc4-635c-2e073b60.tmp
O43 - CFD: 11/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-afc4-635c-2e073b62.tmp
O43 - CFD: 11/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-afc4-635c-2e073b74.tmp
O43 - CFD: 11/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-afc4-635c-2e073b76.tmp
O43 - CFD: 11/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-afc4-635c-2e073b87.tmp
O43 - CFD: 11/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-afc4-635c-2e073b89.tmp
O43 - CFD: 11/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-afc4-635c-2e073b9b.tmp
O43 - CFD: 11/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-afc4-635c-2e073b9d.tmp
O43 - CFD: 11/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-afc4-635c-2e073b9f.tmp
O43 - CFD: 11/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-afc4-635c-2e073bb1.tmp
O43 - CFD: 11/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-afc4-635c-2e073bb3.tmp
O43 - CFD: 11/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-afc4-635c-2e073c9f.tmp
O43 - CFD: 11/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-afc4-635c-2e073cb1.tmp
O43 - CFD: 11/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-afc4-635c-2e073cb3.tmp
O43 - CFD: 11/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-afc4-635c-2e073cc4.tmp
O43 - CFD: 11/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-afc4-635c-2e073cc6.tmp
O43 - CFD: 11/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-afc4-635c-2e073cd8.tmp
O43 - CFD: 11/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-afc4-635c-2e073cda.tmp
O43 - CFD: 11/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-afc4-635c-2e073cdc.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b23c-9d40-28861b99.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b23c-9d40-28861b9b.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b23c-9d40-28861bac.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b23c-9d40-28861bae.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b23c-9d40-28861bc0.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b23c-9d40-28861bc2.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b23c-9d40-28861bc4.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b23c-9d40-28861bd6.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b23c-9d40-28861bd8.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b23c-9d40-28861c08.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b23c-9d40-28861c1a.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b23c-9d40-28861c1c.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b23c-9d40-28861c2e.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b23c-9d40-28861c30.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b23c-9d40-28861c32.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b23c-9d40-28861c43.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b23c-9d40-28861c45.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b23c-9d40-28861c47.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b23c-9d40-28861c59.tmp
O43 - CFD: 23/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ba88-e0b0-38132058.tmp
O43 - CFD: 23/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ba88-e0b0-381320d7.tmp
O43 - CFD: 23/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ba88-e0b0-38132117.tmp
O43 - CFD: 23/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ba88-e0b0-381321f4.tmp
O43 - CFD: 23/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ba88-e0b0-38132215.tmp
O43 - CFD: 23/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ba88-e0b0-38132246.tmp
O43 - CFD: 23/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ba88-e0b0-38132268.tmp
O43 - CFD: 23/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ba88-e0b0-381322b8.tmp
O43 - CFD: 23/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ba88-e0b0-38132394.tmp
O43 - CFD: 23/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ba88-e0b0-381323a6.tmp
O43 - CFD: 23/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ba88-e0b0-38132435.tmp
O43 - CFD: 23/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ba88-e0b0-38132475.tmp
O43 - CFD: 23/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ba88-e0b0-38132504.tmp
O43 - CFD: 23/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ba88-e0b0-38132525.tmp
O43 - CFD: 23/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ba88-e0b0-38132566.tmp
O43 - CFD: 23/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ba88-e0b0-38132652.tmp
O43 - CFD: 23/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ba88-e0b0-38132673.tmp
O43 - CFD: 23/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ba88-e0b0-38132711.tmp
O43 - CFD: 23/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ba88-e0b0-38132771.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-bb48-c254-2e44c393.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-bb48-c254-2e44c3b4.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-bb48-c254-2e44c3c5.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-bb48-c254-2e44c3c7.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-bb48-c254-2e44c3c9.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-bb48-c254-2e44c3db.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-bb48-c254-2e44c3dd.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-bb48-c254-2e44c4d9.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-bb48-c254-2e44c4eb.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-bb48-c254-2e44c4ed.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-bb48-c254-2e44c4ef.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-bb48-c254-2e44c500.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-bb48-c254-2e44c502.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-bb48-c254-2e44c514.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-bb48-c254-2e44c516.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-bb48-c254-2e44c518.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-bb48-c254-2e44c51a.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-bb48-c254-2e44c52c.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-bb48-c254-2e44c52e.tmp
O43 - CFD: 25/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c260-dc4c-41fd7fc5.tmp
O43 - CFD: 25/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c260-dc4c-41fd7fe6.tmp
O43 - CFD: 25/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c260-dc4c-41fd7ff8.tmp
O43 - CFD: 25/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c260-dc4c-41fd8019.tmp
O43 - CFD: 25/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c260-dc4c-41fd802b.tmp
O43 - CFD: 25/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c260-dc4c-41fd803c.tmp
O43 - CFD: 25/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c260-dc4c-41fd804e.tmp
O43 - CFD: 25/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c260-dc4c-41fd805f.tmp
O43 - CFD: 25/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c260-dc4c-41fd8071.tmp
O43 - CFD: 25/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c260-dc4c-41fd80b2.tmp
O43 - CFD: 25/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c260-dc4c-41fd80c3.tmp
O43 - CFD: 25/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c260-dc4c-41fd80d5.tmp
O43 - CFD: 25/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c260-dc4c-41fd8154.tmp
O43 - CFD: 25/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c260-dc4c-41fd8175.tmp
O43 - CFD: 25/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c260-dc4c-41fd8187.tmp
O43 - CFD: 25/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c260-dc4c-41fd81c7.tmp
O43 - CFD: 25/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c260-dc4c-41fd81e8.tmp
O43 - CFD: 25/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c260-dc4c-41fd8239.tmp
O43 - CFD: 25/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c260-dc4c-41fd8269.tmp
O43 - CFD: 28/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c558-a9e4-35510cda.tmp
O43 - CFD: 28/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c558-a9e4-35510d0b.tmp
O43 - CFD: 28/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c558-a9e4-35510d0d.tmp
O43 - CFD: 28/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c558-a9e4-35510d1e.tmp
O43 - CFD: 28/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c558-a9e4-35510d20.tmp
O43 - CFD: 28/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c558-a9e4-35510d32.tmp
O43 - CFD: 28/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c558-a9e4-35510d34.tmp
O43 - CFD: 28/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c558-a9e4-35510d55.tmp
O43 - CFD: 28/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c558-a9e4-35510d57.tmp
O43 - CFD: 28/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c558-a9e4-35510d69.tmp
O43 - CFD: 28/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c558-a9e4-35510d6b.tmp
O43 - CFD: 28/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c558-a9e4-35510d7c.tmp
O43 - CFD: 28/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c558-a9e4-35510d7e.tmp
O43 - CFD: 28/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c558-a9e4-35510d90.tmp
O43 - CFD: 28/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c558-a9e4-35510d92.tmp
O43 - CFD: 28/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c558-a9e4-35510db3.tmp
O43 - CFD: 28/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c558-a9e4-35510dc5.tmp
O43 - CFD: 28/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c558-a9e4-35510dc7.tmp
O43 - CFD: 28/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-c558-a9e4-35510de8.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-cf20-bc8-3398c5f9.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-cf20-bc8-3398c669.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-cf20-bc8-3398c6a9.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-cf20-bc8-3398c6ca.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-cf20-bc8-3398c6dc.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-cf20-bc8-3398c6de.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-cf20-bc8-3398c6f0.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-cf20-bc8-3398c701.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-cf20-bc8-3398c723.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-cf20-bc8-3398c744.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-cf20-bc8-3398c746.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-cf20-bc8-3398c757.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-cf20-bc8-3398c759.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-cf20-bc8-3398c75b.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-cf20-bc8-3398c77d.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-cf20-bc8-3398c78e.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-cf20-bc8-3398c790.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-cf20-bc8-3398c7a2.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-cf20-bc8-3398c7a4.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d470-bfd8-356d5813.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d470-bfd8-356d5844.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d470-bfd8-356d5846.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d470-bfd8-356d5858.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d470-bfd8-356d585a.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d470-bfd8-356d586b.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d470-bfd8-356d586d.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d470-bfd8-356d587f.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d470-bfd8-356d5881.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d470-bfd8-356d5893.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d470-bfd8-356d58a4.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d470-bfd8-356d58c6.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d470-bfd8-356d58d7.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d470-bfd8-356d5975.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d470-bfd8-356d5987.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d470-bfd8-356d5989.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d470-bfd8-356d599b.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d470-bfd8-356d599d.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d470-bfd8-356d59ae.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ebb4-9360-3ff80f3b.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ebb4-9360-3ff80f8b.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ebb4-9360-3ff80f9d.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ebb4-9360-3ff80fae.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ebb4-9360-3ff80fef.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ebb4-9360-3ff81000.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ebb4-9360-3ff81002.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ebb4-9360-3ff81014.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ebb4-9360-3ff81026.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ebb4-9360-3ff81028.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ebb4-9360-3ff81039.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ebb4-9360-3ff8105b.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ebb4-9360-3ff8106c.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ebb4-9360-3ff8106e.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ebb4-9360-3ff81080.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ebb4-9360-3ff81091.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ebb4-9360-3ff810a3.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ebb4-9360-3ff810b5.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ebb4-9360-3ff810d6.tmp
O43 - CFD: 26/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ee8c-cfb4-3d63f14d.tmp
O43 - CFD: 26/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ee8c-cfb4-3d63f14f.tmp
O43 - CFD: 26/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ee8c-cfb4-3d63f170.tmp
O43 - CFD: 26/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ee8c-cfb4-3d63f172.tmp
O43 - CFD: 26/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ee8c-cfb4-3d63f184.tmp
O43 - CFD: 26/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ee8c-cfb4-3d63f186.tmp
O43 - CFD: 26/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ee8c-cfb4-3d63f188.tmp
O43 - CFD: 26/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ee8c-cfb4-3d63f1a9.tmp
O43 - CFD: 26/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ee8c-cfb4-3d63f1ab.tmp
O43 - CFD: 26/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ee8c-cfb4-3d63f1bd.tmp
O43 - CFD: 26/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ee8c-cfb4-3d63f1bf.tmp
O43 - CFD: 26/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ee8c-cfb4-3d63f1c1.tmp
O43 - CFD: 26/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ee8c-cfb4-3d63f1d2.tmp
O43 - CFD: 26/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ee8c-cfb4-3d63f1d4.tmp
O43 - CFD: 26/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ee8c-cfb4-3d63f1d6.tmp
O43 - CFD: 26/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ee8c-cfb4-3d63f1e8.tmp
O43 - CFD: 26/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ee8c-cfb4-3d63f1ea.tmp
O43 - CFD: 26/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ee8c-cfb4-3d63f1fc.tmp
O43 - CFD: 26/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ee8c-cfb4-3d63f1fe.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f0c-bb4-da5c4.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f0c-bb4-da5e5.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f0c-bb4-da616.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f0c-bb4-da676.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f0c-bb4-da714.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f0c-bb4-da793.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f0c-bb4-da821.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f0c-bb4-da8b0.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f0c-bb4-da8d1.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f0c-bb4-da941.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f0c-bb4-daa1d.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f0c-bb4-daa7d.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f0c-bb4-daa9e.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f0c-bb4-daacf.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f0c-bb4-dab2f.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f0c-bb4-dab60.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f0c-bb4-dab81.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f0c-bb4-daba2.tmp
O43 - CFD: 13/03/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f0c-bb4-dac02.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f1b0-eda4-3925e9dd.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f1b0-eda4-3925ea6c.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f1b0-eda4-3925eaac.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f1b0-eda4-3925ec64.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f1b0-eda4-3925ece3.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f1b0-eda4-3925ef56.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f1b0-eda4-3925ef77.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f1b0-eda4-3925f044.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f1b0-eda4-3925f094.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f1b0-eda4-3925f161.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f1b0-eda4-3925f2cb.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f1b0-eda4-3925f2fc.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f1b0-eda4-3925f36b.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f1b0-eda4-3925f4d4.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f1b0-eda4-3925f61e.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f1b0-eda4-3925f67e.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f1b0-eda4-3925f7f7.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f1b0-eda4-3925f8e4.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f1b0-eda4-3925f963.tmp
O43 - CFD: 24/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f444-f458-3d48c9f2.tmp
O43 - CFD: 24/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f444-f458-3d48c9f4.tmp
O43 - CFD: 24/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f444-f458-3d48c9f6.tmp
O43 - CFD: 24/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f444-f458-3d48ca08.tmp
O43 - CFD: 24/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f444-f458-3d48ca0a.tmp
O43 - CFD: 24/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f444-f458-3d48ca1b.tmp
O43 - CFD: 24/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f444-f458-3d48ca1d.tmp
O43 - CFD: 24/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f444-f458-3d48ca1f.tmp
O43 - CFD: 24/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f444-f458-3d48ca31.tmp
O43 - CFD: 24/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f444-f458-3d48ca33.tmp
O43 - CFD: 24/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f444-f458-3d48cac2.tmp
O43 - CFD: 24/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f444-f458-3d48cad3.tmp
O43 - CFD: 24/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f444-f458-3d48cad5.tmp
O43 - CFD: 24/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f444-f458-3d48cae7.tmp
O43 - CFD: 24/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f444-f458-3d48cae9.tmp
O43 - CFD: 24/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f444-f458-3d48caeb.tmp
O43 - CFD: 24/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f444-f458-3d48cafd.tmp
O43 - CFD: 24/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f444-f458-3d48caff.tmp
O43 - CFD: 24/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f444-f458-3d48cb10.tmp
O43 - CFD: 27/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f984-127d0-4c5cb21e.tmp
O43 - CFD: 27/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f984-127d0-4c5cb22f.tmp
O43 - CFD: 27/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f984-127d0-4c5cb231.tmp
O43 - CFD: 27/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f984-127d0-4c5cb252.tmp
O43 - CFD: 27/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f984-127d0-4c5cb254.tmp
O43 - CFD: 27/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f984-127d0-4c5cb266.tmp
O43 - CFD: 27/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f984-127d0-4c5cb268.tmp
O43 - CFD: 27/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f984-127d0-4c5cb27a.tmp
O43 - CFD: 27/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f984-127d0-4c5cb27c.tmp
O43 - CFD: 27/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f984-127d0-4c5cb3a7.tmp
O43 - CFD: 27/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f984-127d0-4c5cb3a9.tmp
O43 - CFD: 27/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f984-127d0-4c5cb3ab.tmp
O43 - CFD: 27/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f984-127d0-4c5cb3bc.tmp
O43 - CFD: 27/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f984-127d0-4c5cb3be.tmp
O43 - CFD: 27/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f984-127d0-4c5cb3d0.tmp
O43 - CFD: 27/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f984-127d0-4c5cb3e1.tmp
O43 - CFD: 27/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f984-127d0-4c5cb403.tmp
O43 - CFD: 27/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f984-127d0-4c5cb414.tmp
O43 - CFD: 27/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-f984-127d0-4c5cb416.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ff5c-10d64-45340f83.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ff5c-10d64-45340fa5.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ff5c-10d64-45340fa7.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ff5c-10d64-45340fb8.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ff5c-10d64-45340fba.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ff5c-10d64-45340fcc.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ff5c-10d64-45340fce.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ff5c-10d64-45340fe0.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ff5c-10d64-45340fe2.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ff5c-10d64-45341080.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ff5c-10d64-45341082.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ff5c-10d64-45341093.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ff5c-10d64-45341095.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ff5c-10d64-453410a7.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ff5c-10d64-453410b9.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ff5c-10d64-453410bb.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ff5c-10d64-453410cc.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ff5c-10d64-453410de.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ff5c-10d64-453410e0.tmp
O43 - CFD: 11/08/2019 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 09/06/2020 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation

---\\ ShellIconOverlayIdentifiers (SIOI) (7) - 1s
O106 - SIOI: Google Drive Shell extension [ GoogleDriveBlacklisted] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}. (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\googledrivesync32.dll =>.Google LLC®
O106 - SIOI: Google Drive Shell extension [ GoogleDriveSynced] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}. (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\googledrivesync32.dll =>.Google LLC®
O106 - SIOI: Google Drive Shell extension [ GoogleDriveSyncing] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}. (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\googledrivesync32.dll =>.Google LLC®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation

---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (32) - 2s
O108 - CMH1: GDContextMenu - {BB02B294-8425-42E5-983F-41A1FA970CD6} . (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\contextmenu32.dll =>.Google LLC®
O108 - CMH1: McCtxMenuFrmWrk - {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} . (.McAfee, LLC - McAfee ContextMenu Framework.) -- C:\Program Files\McAfee\MSC\McCtxMenuFrmWrk.dll {76A3C3D3AB0C3E9536C506AE}. =>.McAfee, LLC
O108 - CMH1: ModernSharing - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH1: Open With - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH1: Open With EncryptionMenu - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH1: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH1: WinRAR - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH®
O108 - CMH1: WorkFolders - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH2: GDContextMenu - {BB02B294-8425-42E5-983F-41A1FA970CD6} . (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\contextmenu32.dll =>.Google LLC®
O108 - CMH2: McCtxMenuFrmWrk - {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} . (.McAfee, LLC - McAfee ContextMenu Framework.) -- C:\Program Files\McAfee\MSC\McCtxMenuFrmWrk.dll {76A3C3D3AB0C3E9536C506AE}. =>.McAfee, LLC
O108 - CMH2: OpenContainingFolderMenu - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH2: WinRAR - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH®
O108 - CMH3: CopyAsPathMenu - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH3: MBAMShlExt - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation®
O108 - CMH3: SendTo - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH4: EncryptionMenu - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH4: GDContextMenu - {BB02B294-8425-42E5-983F-41A1FA970CD6} . (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\contextmenu32.dll =>.Google LLC®
O108 - CMH4: Offline Files - [CC]{474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Orphan.) [Unsigned]
O108 - CMH4: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH4: WorkFolders - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH5: Gadgets - {6B9228DA-9C15-419e-856C-19E768A13BDC} . (.Orphan.) [Unsigned]
O108 - CMH5: New - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH5: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH5: WorkFolders - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH6: Library Location - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH6: MBAMShlExt - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation®
O108 - CMH6: McCtxMenuFrmWrk - {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} . (.McAfee, LLC - McAfee ContextMenu Framework.) -- C:\Program Files\McAfee\MSC\McCtxMenuFrmWrk.dll {76A3C3D3AB0C3E9536C506AE}. =>.McAfee, LLC
O108 - CMH6: Offline Files - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Orphan.) [Unsigned]
O108 - CMH6: PintoStartScreen - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft®
O108 - CMH6: WinRAR - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH®
O108 - CMH7: EnhancedStorageShell - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH7: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation

---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (19) - 3s
O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft Windows®
O50 - IFEO:C:\Windows\System32\drvinst.exe - (.Microsoft Corporation - Module d’installation de pilotes.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\FlashPlayerApp.exe - (.Adobe - Adobe Flash Player Control Panel Applet.) [DisableExceptionChainValidation\\0] =>.Microsoft®
O50 - IFEO:C:\Windows\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] =>.Microsoft®
O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] =>.Microsoft Windows®
O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft Windows Publisher®
O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation

---\\ LISTE DES PILOTES DU SYSTÈME (414) - 24s
O58 - SDL:2019/03/19 04:39:26 A . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\WINDOWS\System32\drivers\1394ohci.sys [190464] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:26 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [85816] =>.Microsoft Windows®
O58 - SDL:2019/09/12 09:05:59 A . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\WINDOWS\System32\drivers\acpi.sys [603960] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:26 A . (.Microsoft Corporation - ACPI Devices Driver.) -- C:\WINDOWS\System32\drivers\AcpiDev.sys [14336] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:36 A . (.Microsoft Corporation - ACPIEx Driver.) -- C:\WINDOWS\System32\drivers\acpiex.sys [96272] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:26 A . (.Microsoft Corporation - ACPI Processor Aggregator Device Driver.) -- C:\WINDOWS\System32\drivers\acpipagr.sys [9216] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:24 A . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\WINDOWS\System32\drivers\acpipmi.sys [11264] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:26 A . (.Microsoft Corporation - ACPI Wake Alarm.) -- C:\WINDOWS\System32\drivers\acpitime.sys [9216] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/03/12 13:20:53 A . (.Microsoft Corporation - Audio KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\Acx01000.sys [241664] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:26 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1038352] =>.Microsoft Windows®
O58 - SDL:2020/05/13 18:55:22 A . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\afd.sys [513336] =>.Microsoft®
O58 - SDL:2020/03/12 13:21:40 A . (.Microsoft Corporation - AF_UNIX socket provider.) -- C:\WINDOWS\System32\drivers\afunix.sys [29696] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/03/12 13:21:41 A . (.Microsoft Corporation - Gestionnaire d'appels RAS Agile Vpn Minipor.) -- C:\WINDOWS\System32\drivers\agilevpn.sys [93696] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/03/12 13:21:39 A . (.Microsoft Corporation - Application Compatibility Cache.) -- C:\WINDOWS\System32\drivers\ahcache.sys [231936] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/03/12 13:20:41 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdk8.sys [156984] =>.Microsoft®
O58 - SDL:2020/03/12 13:20:41 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdppm.sys [160568] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:26 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [75280] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:26 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [215560] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:26 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [23080] =>.Microsoft Windows®
O58 - SDL:2019/11/14 10:11:18 A . (.Microsoft Corporation - AppID Driver.) -- C:\WINDOWS\System32\drivers\appid.sys [162856] =>.Microsoft®
O58 - SDL:2019/11/14 10:11:18 A . (.Microsoft Corporation - Applocker Filter.) -- C:\WINDOWS\System32\drivers\applockerfltr.sys [13312] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:26 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [116752] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:40:48 A . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\WINDOWS\System32\drivers\asyncmac.sys [20480] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/03/12 13:20:41 A . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [22840] =>.Microsoft®
O58 - SDL:2020/03/12 13:20:41 A . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\WINDOWS\System32\drivers\ataport.sys [156984] =>.Microsoft®
O58 - SDL:2015/01/13 17:40:18 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\atikmdag.sys [10070016] [Unsigned] =>.Advanced Micro Devices, Inc.
O58 - SDL:2015/01/13 16:20:36 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\WINDOWS\System32\drivers\atikmpag.sys [290304] [Unsigned] =>.Advanced Micro Devices, Inc.
O58 - SDL:2019/03/19 04:40:21 A . (.Microsoft Corporation - BAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\bam.sys [57144] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:26 A . (.Microsoft Corporation - Battery Class Driver.) -- C:\WINDOWS\System32\drivers\battc.sys [35128] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:20 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [8192] [Unsigned] =>.Broadcom Corporation
O58 - SDL:2019/03/19 04:39:46 A . (.Microsoft Corporation - BEEP Driver.) -- C:\WINDOWS\System32\drivers\beep.sys [7168] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/02/12 13:47:33 A . (.Microsoft Corporation - Windows Bind Filter Driver.) -- C:\WINDOWS\System32\drivers\bindflt.sys [89912] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:40 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\WINDOWS\System32\drivers\bowser.sys [76800] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:59 A . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\WINDOWS\System32\drivers\bridge.sys [96256] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:20 A . (.Microsoft Corporation - Microsoft Bluetooth Audio Multiprofile Mana.) -- C:\WINDOWS\System32\drivers\BtaMPM.sys [27648] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/09/12 09:05:58 A . (.Microsoft Corporation - Bluetooth A2DP Driver.) -- C:\WINDOWS\System32\drivers\BthA2dp.sys [165376] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/03/12 13:20:41 A . (.Microsoft Corporation - Extension de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthenum.sys [92672] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:20 A . (.Microsoft Corporation - Bluetooth Hands-Free Audio and Call Control.) -- C:\WINDOWS\System32\drivers\BthHfEnum.sys [94720] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/03/12 13:20:41 A . (.Microsoft Corporation - Bluetooth Transport Extensibility Miniport.) -- C:\WINDOWS\System32\drivers\BthMini.SYS [25600] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:23 A . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\WINDOWS\System32\drivers\bthmodem.sys [52736] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/03/12 13:20:41 A . (.Microsoft Corporation - Pilote de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthport.sys [1091584] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/03/12 13:20:41 A . (.Microsoft Corporation - Pilote de Miniport Bluetooth.) -- C:\WINDOWS\System32\drivers\BTHUSB.SYS [71168] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:29 A . (.Microsoft Corporation - Button Converter Driver.) -- C:\WINDOWS\System32\drivers\buttonconverter.sys [29696] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:21 A . (.Microsoft Corporation - Charge Arbiration Driver.) -- C:\WINDOWS\System32\drivers\CAD.sys [53560] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:40:56 A . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\cdfs.sys [74752] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:26 A . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\cdrom.sys [125952] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:02 A . (.Microsoft Corporation - Event Aggregation Kernel Mode Library.) -- C:\WINDOWS\System32\drivers\CEA.sys [61752] =>.Microsoft Windows®
O58 - SDL:2020/04/09 15:15:26 A . (.McAfee, LLC - McAfee Personal Firewall IDS Plugin.) -- C:\WINDOWS\System32\drivers\cfwids.sys [71104] =>.McAfee, Inc.®
O58 - SDL:2019/03/19 04:39:21 A . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\WINDOWS\System32\drivers\circlass.sys [39424] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/02/12 13:47:43 A . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\WINDOWS\System32\drivers\Classpnp.sys [353080] =>.Microsoft®
O58 - SDL:2020/05/13 18:55:11 A . (.Microsoft Corporation - Cloud Files Mini Filter Driver.) -- C:\WINDOWS\System32\drivers\cldflt.sys [351232] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/05/13 18:55:24 A . (.Microsoft Corporation - Common Log File System Driver.) -- C:\WINDOWS\System32\drivers\clfs.sys [277304] =>.Microsoft®
O58 - SDL:2019/10/04 23:59:10 A . (.Microsoft Corporation - CLIP Service.) -- C:\WINDOWS\System32\drivers\ClipSp.sys [824120] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:26 A . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\WINDOWS\System32\drivers\CmBatt.sys [26624] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:36 A . (.Microsoft Corporation - Noyau Gestionnaire de configuration Configu.) -- C:\WINDOWS\System32\drivers\cmimcext.sys [25616] =>.Microsoft Windows®
O58 - SDL:2020/05/13 18:55:20 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\WINDOWS\System32\drivers\cng.sys [553656] =>.Microsoft®
O58 - SDL:2019/03/19 04:40:03 A . (.Microsoft Corporation - CNG Hardware Assist algorithm provider.) -- C:\WINDOWS\System32\drivers\cnghwassist.sys [32568] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:40:02 A . (.Microsoft Corporation - Console Driver.) -- C:\WINDOWS\System32\drivers\condrv.sys [44560] =>.Microsoft Windows®
O58 - SDL:2020/03/12 13:21:22 A . (.Microsoft Corporation - Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\crashdmp.sys [80912] =>.Microsoft®
O58 - SDL:2019/03/19 04:40:21 A . (.Microsoft Corporation - DAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\dam.sys [81208] =>.Microsoft Windows®
O58 - SDL:2019/08/11 17:19:22 A . (.Microsoft Corporation - Xbox Device Authentication Driver.) -- C:\WINDOWS\System32\drivers\devauthe.sys [36352] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:19 A . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\dfsc.sys [114176] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:26 A . (.Microsoft Corporation - PnP Disk Driver.) -- C:\WINDOWS\System32\drivers\disk.sys [77624] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:40:29 A . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\WINDOWS\System32\drivers\Diskdump.sys [31032] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:40:29 A . (.Microsoft Corporation - Boot Over USB Dump Driver.) -- C:\WINDOWS\System32\drivers\Dmpusbstor.sys [11264] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:30 A . (.Microsoft Corporation - Mémoire dynamique.) -- C:\WINDOWS\System32\drivers\dmvsc.sys [49464] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:23 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmk.sys [70144] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:23 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmkaud.sys [14696] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:40:14 A . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpata.sys [30736] =>.Microsoft Windows®
O58 - SDL:2019/08/14 20:03:17 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\WINDOWS\System32\drivers\dumpfve.sys [75696] =>.Microsoft®
O58 - SDL:2020/04/17 14:08:33 A . (.Microsoft Corporation - SD Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsd.sys [158736] =>.Microsoft®
O58 - SDL:2019/03/19 04:40:03 A . (.Microsoft Corporation - SD Host Controller Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsdport.sys [23040] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:29 A . (.Microsoft Corporation - Storport Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpstorport.sys [28680] =>.Microsoft Windows®
O58 - SDL:2020/06/11 17:18:18 A . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\WINDOWS\System32\drivers\dxgkrnl.sys [2755912] =>.Microsoft®
O58 - SDL:2020/06/11 17:18:18 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms1.sys [344376] =>.Microsoft®
O58 - SDL:2020/06/11 17:18:18 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms2.sys [689464] =>.Microsoft®
O58 - SDL:2019/03/19 04:40:59 A . (.Microsoft Corporation - Enhanced Storage Class driver for IEEE 1667.) -- C:\WINDOWS\System32\drivers\EhStorClass.sys [69944] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:21 A . (.Microsoft Corporation - Microsoft driver for storage devices suppor.) -- C:\WINDOWS\System32\drivers\EhStorTcgDrv.sys [97808] =>.Microsoft Windows®
O58 - SDL:2018/10/17 16:37:58 A . (.ESET - Epfw NDIS LightWeight Filter.) -- C:\WINDOWS\System32\drivers\EpfwLWF.sys [54240] =>.ESET, spol. s r.o.®
O58 - SDL:2019/03/19 04:39:26 A . (.Microsoft Corporation - Error Device Driver.) -- C:\WINDOWS\System32\drivers\errdev.sys [9728] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/10 23:20:28 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\WINDOWS\System32\drivers\exfat.sys [306176] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/10 23:20:28 A . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\WINDOWS\System32\drivers\fastfat.sys [320016] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:26 A . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\WINDOWS\System32\drivers\fdc.sys [26112] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:36 A . (.Microsoft Corporation - Windows sandboxing and encryption filter.) -- C:\WINDOWS\System32\drivers\filecrypt.sys [45568] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:14 A . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\WINDOWS\System32\drivers\fileinfo.sys [69944] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:40:14 A . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\WINDOWS\System32\drivers\filetrace.sys [29184] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/04/17 14:08:33 A . (.Microsoft Corporation - Floppy Driver.) -- C:\WINDOWS\System32\drivers\flpydisk.sys [20992] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/08/11 17:19:54 A . (.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) -- C:\WINDOWS\System32\drivers\fltMgr.sys [309048] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:36 A . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) -- C:\WINDOWS\System32\drivers\fsdepends.sys [53048] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:40:17 A . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\WINDOWS\System32\drivers\fs_rec.sys [28168] =>.Microsoft Windows®
O58 - SDL:2019/08/11 17:20:29 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\WINDOWS\System32\drivers\fvevol.sys [650552] =>.Microsoft®
O58 - SDL:2020/05/13 18:55:23 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\WINDOWS\System32\drivers\FWPKCLNT.SYS [331064] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:32 A . (.Microsoft Corporation - GPU Energy Kernel Driver.) -- C:\WINDOWS\System32\drivers\gpuenergydrv.sys [8192] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/03/12 13:20:40 A . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [92160] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/09/12 09:05:58 A . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\HdAudio.sys [357376] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:26 A . (.Microsoft Corporation - Hid Battery Driver.) -- C:\WINDOWS\System32\drivers\hidbatt.sys [30008] =>.Microsoft Windows®
O58 - SDL:2020/05/13 18:54:06 A . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périp.) -- C:\WINDOWS\System32\drivers\hidbth.sys [99840] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/07/09 03:36:07 A . (.Microsoft Corporation - Bibliothèque Hid Class.) -- C:\WINDOWS\System32\drivers\hidclass.sys [142336] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:29 A . (.Microsoft Corporation - I2C HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidi2c.sys [39424] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:29 A . (.Microsoft Corporation - HID Button over Interrupt Driver.) -- C:\WINDOWS\System32\drivers\hidinterrupt.sys [40248] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:23 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidir.sys [38912] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/07/09 03:36:07 A . (.Microsoft Corporation - Hid Parsing Library.) -- C:\WINDOWS\System32\drivers\hidparse.sys [31232] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/10/04 23:58:56 A . (.Microsoft Corporation - SPI HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidspi.sys [43520] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/07/09 03:36:07 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidusb.sys [31232] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/05/26 00:11:56 A . (.McAfee, Inc. - McAfee HIP IPS Driver.) -- C:\WINDOWS\System32\drivers\HipShieldK.sys [170624] =>.McAfee, LLC®
O58 - SDL:2012/03/05 23:04:00 A . (.Hewlett-Packard Company - PC-SC Driver for HP USB Smartcard Keyboard.) -- C:\WINDOWS\System32\drivers\HPKBCCID.sys [48000] [Unsigned] =>.Hewlett-Packard Company
O58 - SDL:2019/03/19 04:39:26 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [56848] =>.Microsoft Windows®
O58 - SDL:2020/04/17 14:09:08 A . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\WINDOWS\System32\drivers\http.sys [880952] =>.Microsoft®
O58 - SDL:2019/03/19 04:41:17 A . (.Microsoft Corporation - Microsoft Hyper-V Socket Provider.) -- C:\WINDOWS\System32\drivers\hvsocket.sys [105784] =>.Microsoft Windows®
O58 - SDL:2020/04/17 14:09:09 A . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\WINDOWS\System32\drivers\hwpolicy.sys [31544] =>.Microsoft®
O58 - SDL:2018/12/12 12:32:56 A . (.Huawei Technologies Co., Ltd. - ew_cdcacm Driver.) -- C:\WINDOWS\System32\drivers\hw_cdcacm.sys [113792] [Unsigned] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2018/12/12 12:32:56 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\hw_quusbmdm.sys [199680] [Unsigned] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2018/12/12 12:32:56 A . (.Huawei Technologies Co., Ltd. - USB NDIS Miniport Driver.) -- C:\WINDOWS\System32\drivers\hw_quusbnet.sys [249856] [Unsigned] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2018/12/12 12:32:56 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\hw_usbdev.sys [102272] [Unsigned] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2019/03/19 04:39:30 A . (.Microsoft Corporation - Microsoft VMBus Synthetic Keyboard Driver.) -- C:\WINDOWS\System32\drivers\hyperkbd.sys [21304] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:30 A . (.Microsoft Corporation - Microsoft VMBus Video Device Miniport Drive.) -- C:\WINDOWS\System32\drivers\HyperVideo.sys [33808] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:29 A . (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [99328] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:20 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [28672] [Unsigned] =>.Intel(R) Corporation
O58 - SDL:2019/03/19 04:39:20 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [73728] [Unsigned] =>.Intel(R) Corporation
O58 - SDL:2019/03/19 04:39:26 A . (.Intel Corporation - Intel(R) Atom(TM) Processor GPIO Controller.) -- C:\WINDOWS\System32\drivers\iaiogpio.sys [22016] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/03/19 04:39:26 A . (.Intel Corporation - Intel(R) Atom(TM) Processor I2C Controller.) -- C:\WINDOWS\System32\drivers\iaioi2c.sys [57856] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/03/19 04:39:27 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAVC.sys [693048] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:27 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [333624] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:40:02 A . (.Microsoft Corporation - Indirect displays kernel-mode filter driver.) -- C:\WINDOWS\System32\drivers\IndirectKmd.sys [32768] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/03/12 13:20:41 A . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\WINDOWS\System32\drivers\intelide.sys [17208] =>.Microsoft®
O58 - SDL:2020/03/12 13:20:40 A . (.Microsoft Corporation - Intel Power Engine Plugin.) -- C:\WINDOWS\System32\drivers\intelpep.sys [319976] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:20 A . (.Microsoft Corporation - Intel Power Limit Driver.) -- C:\WINDOWS\System32\drivers\intelpmax.sys [19456] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/03/12 13:20:41 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\intelppm.sys [173880] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:30 A . (.Microsoft Corporation - Filtre de contrôle de taux d’E/S.) -- C:\WINDOWS\System32\drivers\iorate.sys [45064] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:40:48 A . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\WINDOWS\System32\drivers\ipfltdrv.sys [63488] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:27 A . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\WINDOWS\System32\drivers\IPMIDrv.sys [90936] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:40:02 A . (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\ipnat.sys [187392] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:34 A . (.Microsoft Corporation - IPT Driver.) -- C:\WINDOWS\System32\drivers\ipt.sys [39944] =>.Microsoft Windows®
O58 - SDL:2019/08/11 17:19:22 A . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\WINDOWS\System32\drivers\isapnp.sys [47928] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:26 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\ItSas35i.sys [121144] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:29 A . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\WINDOWS\System32\drivers\kbdclass.sys [51000] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:29 A . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\WINDOWS\System32\drivers\kbdhid.sys [33280] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:30 A . (.Microsoft Corporation - Microsoft Kernel Debugger Network Miniport.) -- C:\WINDOWS\System32\drivers\kdnic.sys [26424] =>.Microsoft Windows®
O58 - SDL:2020/05/13 18:54:07 A . (.Microsoft Corporation - Network Power Dependency Broker.) -- C:\WINDOWS\System32\drivers\KNetPwrDepBroker.sys [23040] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/07/09 03:36:24 A . (.Microsoft Corporation - Kernel CSA Library.) -- C:\WINDOWS\System32\drivers\ks.sys [314368] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/07/09 03:36:21 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecdd.sys [108048] =>.Microsoft Windows®
O58 - SDL:2020/06/11 17:18:24 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecpkg.sys [142648] =>.Microsoft®
O58 - SDL:2019/03/19 04:40:32 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\WINDOWS\System32\drivers\lltdio.sys [49664] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:26 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [94008] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:26 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [103224] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:26 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [106296] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:26 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [69432] =>.Microsoft Windows®
O58 - SDL:2019/07/09 03:36:24 A . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) -- C:\WINDOWS\System32\drivers\luafv.sys [103424] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:27 A . (.Microsoft Corporation - MA-USB Host Controller Driver.) -- C:\WINDOWS\System32\drivers\mausbhost.sys [425784] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:27 A . (.Microsoft Corporation - MA-USB IP Driver.) -- C:\WINDOWS\System32\drivers\mausbip.sys [46392] =>.Microsoft Windows®
O58 - SDL:2020/07/03 21:09:51 A . (.Malwarebytes - Malwarebytes Anti-Exploit.) -- C:\WINDOWS\System32\drivers\mbae.sys [129056] =>.Malwarebytes Corporation®
O58 - SDL:2020/07/03 21:09:51 A . (.Malwarebytes - Malwarebytes Early Launch Anti-Malware Driv.) -- C:\WINDOWS\System32\drivers\MbamElam.sys [17360] =>.Microsoft®
O58 - SDL:2020/07/03 21:10:21 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys [213912] =>.Malwarebytes Inc®
O58 - SDL:2019/11/14 10:10:17 A . (.Microsoft Corporation - Windows Mobile Broadband Class Extension.) -- C:\WINDOWS\System32\drivers\MbbCx.sys [274432] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:46 A . (.Microsoft Corporation - Medium changer class driver.) -- C:\WINDOWS\System32\drivers\mcd.sys [17408] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:26 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [52024] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:26 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [64312] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:26 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas35i.sys [79160] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:26 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [464696] =>.Microsoft Windows®
O58 - SDL:2020/04/09 15:15:26 A . (.McAfee, LLC - McAfee Arbitrary Access Control Driver.) -- C:\WINDOWS\System32\drivers\mfeaack.sys [405440] =>.McAfee, Inc.®
O58 - SDL:2020/04/09 15:15:26 A . (.McAfee, LLC - Anti-Virus File System Filter Driver.) -- C:\WINDOWS\System32\drivers\mfeavfk.sys [296384] =>.McAfee, Inc.®
O58 - SDL:2020/05/01 08:55:06 A . (.McAfee LLC. - McAfee Driver Cleaning Driver.) -- C:\WINDOWS\System32\drivers\mfeclnrk.sys [28296] =>.McAfee, Inc.®
O58 - SDL:2020/04/09 15:15:26 A . (.McAfee, LLC - McAfee ELAM Driver.) -- C:\WINDOWS\System32\drivers\mfeelamk.sys [74152] =>.Microsoft®
O58 - SDL:2020/04/09 15:15:26 A . (.McAfee, LLC - McAfee Core Firewall Engine Driver.) -- C:\WINDOWS\System32\drivers\mfefirek.sys [405440] =>.McAfee, Inc.®
O58 - SDL:2020/04/09 15:15:24 A . (.McAfee, LLC - McAfee Link Driver.) -- C:\WINDOWS\System32\drivers\mfehidk.sys [767936] =>.McAfee, Inc.®
O58 - SDL:2020/05/01 08:55:06 A . (.McAfee LLC. - Event Driver.) -- C:\WINDOWS\System32\drivers\mfencbdc.sys [469640] =>.McAfee, Inc.®
O58 - SDL:2020/05/01 08:55:06 A . (.McAfee LLC. - Detection driver.) -- C:\WINDOWS\System32\drivers\mfencrk.sys [91784] =>.McAfee, Inc.®
O58 - SDL:2020/04/09 15:15:26 A . (.McAfee, LLC - AAC Protected Launch Plugin Driver.) -- C:\WINDOWS\System32\drivers\mfeplk.sys [99264] =>.McAfee, Inc.®
O58 - SDL:2020/04/09 15:15:26 A . (.McAfee, LLC - Anti-Virus Mini-Firewall Driver.) -- C:\WINDOWS\System32\drivers\mfewfpk.sys [208320] =>.McAfee, Inc.®
O58 - SDL:2019/03/19 04:39:20 A . (.Microsoft Corporation - Pilote de transport Microsoft Bluetooth Avr.) -- C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [46080] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:29 A . (.Microsoft Corporation - Legacy Bluetooth LE Bus Enumerator.) -- C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [73216] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:34 A . (.Microsoft Corporation - MMCSS Driver.) -- C:\WINDOWS\System32\drivers\mmcss.sys [37888] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:41:15 A . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\WINDOWS\System32\drivers\modem.sys [32256] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/03/12 13:20:40 A . (.Microsoft Corporation - Monitor Driver.) -- C:\WINDOWS\System32\drivers\monitor.sys [53760] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:29 A . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\WINDOWS\System32\drivers\mouclass.sys [48440] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:29 A . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\WINDOWS\System32\drivers\mouhid.sys [24576] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/11/14 10:11:22 A . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\WINDOWS\System32\drivers\mountmgr.sys [86056] =>.Microsoft®
O58 - SDL:2019/03/19 04:40:00 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\WINDOWS\System32\drivers\mpsdrv.sys [56832] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/08/11 17:15:32 A . (.Microsoft Corporation - Message Queuing Device Driver.) -- C:\WINDOWS\System32\drivers\mqac.sys [128512] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/10/05 00:00:31 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\WINDOWS\System32\drivers\mrxdav.sys [122880] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/06/11 17:18:33 A . (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\mrxsmb.sys [462648] =>.Microsoft®
O58 - SDL:2020/03/12 13:21:23 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\WINDOWS\System32\drivers\mrxsmb20.sys [205840] =>.Microsoft®
O58 - SDL:2019/08/11 17:19:54 A . (.Microsoft Corporation - Mailslot driver.) -- C:\WINDOWS\System32\drivers\msfs.sys [33592] =>.Microsoft®
O58 - SDL:2019/09/12 09:06:17 A . (.Microsoft Corporation - GPIO Class Extension Driver.) -- C:\WINDOWS\System32\drivers\msgpioclx.sys [139576] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:30 A . (.Microsoft Corporation - GPIO Button Driver.) -- C:\WINDOWS\System32\drivers\msgpiowin32.sys [40248] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:40:03 A . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\WINDOWS\System32\drivers\mshidkmdf.sys [6144] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:48 A . (.Microsoft Corporation - Pilote direct pour interface HID-UMDF.) -- C:\WINDOWS\System32\drivers\mshidumdf.sys [9216] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:02 A . (.Microsoft Corporation - Hardware Notification Class Extension Drive.) -- C:\WINDOWS\System32\drivers\mshwnclx.sys [19968] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/08/11 17:19:22 A . (.Microsoft Corporation - ISA Driver.) -- C:\WINDOWS\System32\drivers\msisadrv.sys [16696] =>.Microsoft®
O58 - SDL:2019/11/14 10:10:11 A . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\WINDOWS\System32\drivers\msiscsi.sys [239928] =>.Microsoft®
O58 - SDL:2019/07/09 03:36:24 A . (.Microsoft Corporation - MS KS Server.) -- C:\WINDOWS\System32\drivers\mskssrv.sys [25600] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:45 A . (.Microsoft Corporation - Pilote de protocole LLDP (Link Layer Discov.) -- C:\WINDOWS\System32\drivers\mslldp.sys [60928] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:35 A . (.Microsoft Corporation - MS Proxy Clock.) -- C:\WINDOWS\System32\drivers\mspclock.sys [8192] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:35 A . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\WINDOWS\System32\drivers\mspqm.sys [8192] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/11/14 10:11:22 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\WINDOWS\System32\drivers\msrpc.sys [193552] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:27 A . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\WINDOWS\System32\drivers\mssmbios.sys [35128] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:40:35 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\WINDOWS\System32\drivers\mstee.sys [9216] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:26 A . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\WINDOWS\System32\drivers\MTConfig.sys [11776] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/07/09 03:36:21 A . (.Microsoft Corporation - Pilote de fournisseur UNC multiples.) -- C:\WINDOWS\System32\drivers\mup.sys [104976] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:26 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [58376] =>.Microsoft Windows®
O58 - SDL:2020/03/12 13:21:21 A . (.Microsoft Corporation - NDIS (Network Driver Interface Specificatio.) -- C:\WINDOWS\System32\drivers\ndis.sys [1071120] =>.Microsoft®
O58 - SDL:2019/03/19 04:41:11 A . (.Microsoft Corporation - Microsoft NDIS Packet Capture Filter Driver.) -- C:\WINDOWS\System32\drivers\ndiscap.sys [35328] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/03/12 13:21:40 A . (.Microsoft Corporation - Microsoft Network Adapter Multiplexor.) -- C:\WINDOWS\System32\drivers\NdisImPlatform.sys [109568] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/10/05 00:00:04 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\WINDOWS\System32\drivers\ndistapi.sys [20992] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:17 A . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\WINDOWS\System32\drivers\ndisuio.sys [50688] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:45 A . (.Microsoft Corporation - Énumérateur de cartes réseau virtuelles Mic.) -- C:\WINDOWS\System32\drivers\NdisVirtualBus.sys [15872] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/03/12 13:21:42 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\WINDOWS\System32\drivers\ndiswan.sys [166912] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/10/05 00:00:05 A . (.Microsoft Corporation - NDIS Proxy.) -- C:\WINDOWS\System32\drivers\ndproxy.sys [207872] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:53 A . (.Microsoft Corporation - Windows Network Data Usage Monitoring Drive.) -- C:\WINDOWS\System32\drivers\Ndu.sys [105984] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:17 A . (.Microsoft Corporation - Network Adapter Class Extension for WDF.) -- C:\WINDOWS\System32\drivers\NetAdapterCx.sys [130560] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:43 A . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\WINDOWS\System32\drivers\netbios.sys [47928] =>.Microsoft Windows®
O58 - SDL:2019/07/09 03:36:26 A . (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netbt.sys [247808] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/11/14 10:11:22 A . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\WINDOWS\System32\drivers\netio.sys [398864] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:30 A . (.Microsoft Corporation - Miniport NDIS virtuel.) -- C:\WINDOWS\System32\drivers\netvsc.sys [166712] =>.Microsoft Windows®
O58 - SDL:2019/08/11 17:19:54 A . (.Microsoft Corporation - NPFS Driver.) -- C:\WINDOWS\System32\drivers\npfs.sys [66872] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:30 A . (.Microsoft Corporation - Named pipe service triggers.) -- C:\WINDOWS\System32\drivers\npsvctrig.sys [19968] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/11/14 10:11:23 A . (.Microsoft Corporation - NSI Proxy.) -- C:\WINDOWS\System32\drivers\nsiproxy.sys [29696] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/03/12 13:21:20 A . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2203664] =>.Microsoft®
O58 - SDL:2019/03/19 04:40:36 A . (.Microsoft Corporation - NTOS extension host driver.) -- C:\WINDOWS\System32\drivers\ntosext.sys [17448] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:40:17 A . (.Microsoft Corporation - NULL Driver.) -- C:\WINDOWS\System32\drivers\null.sys [5120] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:26 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [119312] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:26 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [142352] =>.Microsoft Windows®
O58 - SDL:2019/10/04 23:59:01 A . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\WINDOWS\System32\drivers\nwifi.sys [498688] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:02 A . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\WINDOWS\System32\drivers\pacer.sys [133136] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:27 A . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\parport.sys [82944] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/04/17 14:09:10 A . (.Microsoft Corporation - Partition driver.) -- C:\WINDOWS\System32\drivers\partmgr.sys [136504] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:27 A . (.Microsoft Corporation - Pilote parallèle VDM.) -- C:\WINDOWS\System32\drivers\parvdm.sys [9216] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/04/17 14:08:33 A . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\WINDOWS\System32\drivers\pci.sys [325136] =>.Microsoft®
O58 - SDL:2020/03/12 13:20:41 A . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\pciide.sys [14648] =>.Microsoft®
O58 - SDL:2020/03/12 13:20:41 A . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\WINDOWS\System32\drivers\pciidex.sys [41784] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:21 A . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\WINDOWS\System32\drivers\pcmcia.sys [98320] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:40:16 A . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\WINDOWS\System32\drivers\pcw.sys [43536] =>.Microsoft Windows®
O58 - SDL:2020/03/12 13:20:53 A . (.Microsoft Corporation - Power Dependency Coordinator Driver.) -- C:\WINDOWS\System32\drivers\pdc.sys [142648] =>.Microsoft®
O58 - SDL:2019/08/14 20:02:49 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\WINDOWS\System32\drivers\PEAuth.sys [693248] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:26 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [51512] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:26 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [59192] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:41:11 A . (.Microsoft Corporation - Pilote du moniteur de paquets.) -- C:\WINDOWS\System32\drivers\PktMon.sys [79888] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:24 A . (.Microsoft Corporation - Pilote mémoire Plug and Play.) -- C:\WINDOWS\System32\drivers\pnpmem.sys [13312] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:03 A . (.Microsoft Corporation - Port Device Class Configuration Filter Driv.) -- C:\WINDOWS\System32\drivers\portcfg.sys [18944] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:23 A . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\WINDOWS\System32\drivers\portcls.sys [279552] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/03/12 13:20:41 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\processr.sys [167224] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:59 A . (.Microsoft Corporation - Process Launch Monitor driver.) -- C:\WINDOWS\System32\drivers\ProcLaunchMon.sys [26888] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:40:45 A . (.Microsoft Corporation - Pilote du support de Microsoft Quality Wind.) -- C:\WINDOWS\System32\drivers\qwavedrv.sys [32768] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:36 A . (.Microsoft Corporation - RAM Disk Driver.) -- C:\WINDOWS\System32\drivers\ramdisk.sys [33592] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:40:48 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\WINDOWS\System32\drivers\rasacd.sys [12288] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:48 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\rasl2tp.sys [79872] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:48 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\raspppoe.sys [67584] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:48 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\WINDOWS\System32\drivers\raspptp.sys [73728] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:48 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\WINDOWS\System32\drivers\rassstp.sys [65536] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/04/17 14:09:11 A . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) -- C:\WINDOWS\System32\drivers\rdbss.sys [361784] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:30 A . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\WINDOWS\System32\drivers\rdpbus.sys [21504] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/08/11 17:20:15 A . (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [131072] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/03/12 13:21:58 A . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\WINDOWS\System32\drivers\rdpvideominiport.sys [23864] =>.Microsoft®
O58 - SDL:2019/03/19 04:41:18 A . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\WINDOWS\System32\drivers\rdyboost.sys [218936] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:29 A . (.Microsoft Corporation - Bluetooth RFCOMM Driver.) -- C:\WINDOWS\System32\drivers\rfcomm.sys [160256] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:30 A . (.Microsoft Corporation - Transport d’ordinateur virtuel Microsoft Re.) -- C:\WINDOWS\System32\drivers\RfxVmt.sys [31744] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:24 A . (.Microsoft Corporation - ResourceHub Proxy Driver.) -- C:\WINDOWS\System32\drivers\rhproxy.sys [76800] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:41:02 A . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\WINDOWS\System32\drivers\rmcast.sys [122368] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:48 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\WINDOWS\System32\drivers\RNDISMP.sys [25600] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:41:15 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\WINDOWS\System32\drivers\rootmdm.sys [8704] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:33 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) -- C:\WINDOWS\System32\drivers\rspndr.sys [64000] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2011/06/10 06:34:52 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.20 32-bit Dr.) -- C:\WINDOWS\System32\drivers\Rt86win7.sys [394856] =>.Realtek Semiconductor Corp®
O58 - SDL:2019/03/19 04:39:34 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [45568] [Unsigned] =>.Realtek
O58 - SDL:2015/01/15 13:53:00 A . (.Realtek Semiconductor Corp. - Realtek Smartcard Reader Driver for 2K/XP/V.) -- C:\WINDOWS\System32\drivers\RtsUCcid.sys [44032] [Unsigned] =>.Realtek Semiconductor Corp.
O58 - SDL:2015/01/15 13:53:00 A . (.Realtek Semiconductor Corp. - Realtek USB IR Driver for 2K/XP/Vista.) -- C:\WINDOWS\System32\drivers\RtsUIr.sys [17536] [Unsigned] =>.Realtek Semiconductor Corp.
O58 - SDL:2019/03/19 04:39:26 A . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\WINDOWS\System32\drivers\sbp2port.sys [88072] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:40:53 A . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce.) -- C:\WINDOWS\System32\drivers\scfilter.sys [35840] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:46 A . (.Microsoft Corporation - SCSI Port Driver.) -- C:\WINDOWS\System32\drivers\scsiport.sys [144696] =>.Microsoft Windows®
O58 - SDL:2020/04/17 14:08:33 A . (.Microsoft Corporation - Pilote du bus numérique sécurisé (SD).) -- C:\WINDOWS\System32\drivers\sdbus.sys [235320] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:36 A . (.Microsoft Corporation - SD Host Controller Port Driver.) -- C:\WINDOWS\System32\drivers\sdport.sys [78136] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:29 A . (.Microsoft Corporation - Pilote de classe de stockage SD.) -- C:\WINDOWS\System32\drivers\sdstor.sys [76088] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:40:03 A . (.Microsoft Corporation - Serial Class Extension.) -- C:\WINDOWS\System32\drivers\SerCx.sys [65336] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:40:03 A . (.Microsoft Corporation - Serial Class Extension V2.) -- C:\WINDOWS\System32\drivers\SerCx2.sys [129336] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:27 A . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\WINDOWS\System32\drivers\serenum.sys [17920] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:27 A . (.Microsoft Corporation - Pilote de périphérique série.) -- C:\WINDOWS\System32\drivers\serial.sys [76800] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:29 A . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\WINDOWS\System32\drivers\sermouse.sys [20992] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/04/17 14:08:33 A . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\WINDOWS\System32\drivers\sfloppy.sys [13312] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:26 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [41488] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:26 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [79368] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:40:17 A . (.Microsoft Corporation - Sleep Study Helper.) -- C:\WINDOWS\System32\drivers\SleepStudyHelper.sys [30008] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:40:53 A . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\WINDOWS\System32\drivers\smclib.sys [17920] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/11/14 10:10:11 A . (.Microsoft Corporation - Storage Spaces Dump Driver.) -- C:\WINDOWS\System32\drivers\spacedump.sys [162320] =>.Microsoft®
O58 - SDL:2019/11/14 10:10:11 A . (.Microsoft Corporation - Storage Spaces Driver.) -- C:\WINDOWS\System32\drivers\spaceport.sys [504848] =>.Microsoft®
O58 - SDL:2019/03/19 04:40:03 A . (.Microsoft Corporation - SPB Class Extension.) -- C:\WINDOWS\System32\drivers\SpbCx.sys [64312] =>.Microsoft Windows®
O58 - SDL:2020/04/17 14:09:11 A . (.Microsoft Corporation - Pilote de serveur SMB 2.0.) -- C:\WINDOWS\System32\drivers\srv2.sys [660480] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/06/11 17:18:33 A . (.Microsoft Corporation - Server Network driver.) -- C:\WINDOWS\System32\drivers\srvnet.sys [224768] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/08/08 09:25:36 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [89856] =>.DEVGURU CO LTD®
O58 - SDL:2017/08/08 09:25:36 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [184192] =>.DEVGURU CO LTD®
O58 - SDL:2019/03/19 04:39:26 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [27152] =>.Microsoft Windows®
O58 - SDL:2020/03/12 13:20:41 A . (.Microsoft Corporation - MS AHCI Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storahci.sys [144400] =>.Microsoft®
O58 - SDL:2020/03/12 13:20:41 A . (.Microsoft Corporation - Microsoft NVM Express Storport Miniport Dri.) -- C:\WINDOWS\System32\drivers\stornvme.sys [105272] =>.Microsoft®
O58 - SDL:2020/05/13 18:54:10 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\WINDOWS\System32\drivers\storport.sys [537920] =>.Microsoft®
O58 - SDL:2019/03/19 04:40:03 A . (.Microsoft Corporation - Filtre de qualité de service de stockage.) -- C:\WINDOWS\System32\drivers\storqosflt.sys [73744] =>.Microsoft Windows®
O58 - SDL:2020/05/13 18:54:05 A . (.Microsoft Corporation - MS UFS Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storufs.sys [47416] =>.Microsoft®
O58 - SDL:2019/10/04 23:58:57 A . (.Microsoft Corporation - Storage VSC Driver.) -- C:\WINDOWS\System32\drivers\storvsc.sys [29712] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:46 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\WINDOWS\System32\drivers\stream.sys [54784] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:30 A . (.Microsoft Corporation - VSC vidéo Synth3D RemoteFX Microsoft.) -- C:\WINDOWS\System32\drivers\Synth3dVsc.sys [50688] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/06/08 11:47:14 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\tap0901.sys [35008] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:46 A . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\WINDOWS\System32\drivers\tape.sys [23552] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/03/12 13:20:54 A . (.Microsoft Corporation - Export driver for kernel mode TPM API.) -- C:\WINDOWS\System32\drivers\tbs.sys [23864] =>.Microsoft®
O58 - SDL:2020/05/13 18:55:23 A . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\WINDOWS\System32\drivers\tcpip.sys [2235192] =>.Microsoft®
O58 - SDL:2019/03/19 04:40:43 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\WINDOWS\System32\drivers\tcpipreg.sys [41984] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:17 A . (.Microsoft Corporation - TDI Wrapper.) -- C:\WINDOWS\System32\drivers\tdi.sys [32784] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:40:53 A . (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [95544] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:30 A . (.Microsoft Corporation - Terminal Server Input Driver.) -- C:\WINDOWS\System32\drivers\terminpt.sys [33832] =>.Microsoft Windows®
O58 - SDL:2019/09/12 09:07:05 A . (.Microsoft Corporation - Kernel Transaction Manager Driver.) -- C:\WINDOWS\System32\drivers\tm.sys [100152] =>.Microsoft®
O58 - SDL:2020/05/13 18:54:06 A . (.Microsoft Corporation - Pilote de périphérique TPM.) -- C:\WINDOWS\System32\drivers\tpm.sys [192328] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:36 A . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du.) -- C:\WINDOWS\System32\drivers\TsUsbFlt.sys [50688] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/05/13 18:54:05 A . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\WINDOWS\System32\drivers\TsUsbGD.sys [27136] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/11/14 10:12:11 A . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\WINDOWS\System32\drivers\tunnel.sys [100864] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/10/04 23:58:56 A . (.Microsoft Corporation - Microsoft Uasp Driver.) -- C:\WINDOWS\System32\drivers\uaspstor.sys [57656] =>.Microsoft®
O58 - SDL:2019/03/19 04:40:03 A . (.Microsoft Corporation - USB Connector Manager KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmCx.sys [112128] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:03 A . (.Microsoft Corporation - UCM-TCPCI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmTcpciCx.sys [129024] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:29 A . (.Microsoft Corporation - UCM-UCSI ACPI Client Driver.) -- C:\WINDOWS\System32\drivers\UcmUcsiAcpiClient.sys [23552] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:03 A . (.Microsoft Corporation - UCM-UCSI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmUcsiCx.sys [78848] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:36 A . (.Microsoft Corporation - USB Controller Extension.) -- C:\WINDOWS\System32\drivers\Ucx01000.sys [196408] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:36 A . (.Microsoft Corporation - "udecx.DRIVER".) -- C:\WINDOWS\System32\drivers\Udecx.sys [35328] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:41:15 A . (.Microsoft Corporation - UDF File System Driver.) -- C:\WINDOWS\System32\drivers\udfs.sys [262144] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:03 A . (.Microsoft Corporation - USB Function Driver Class Extension.) -- C:\WINDOWS\System32\drivers\ufx01000.sys [239928] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:29 A . (.Microsoft Corporation - UFX Synopsys Client Driver.) -- C:\WINDOWS\System32\drivers\ufxsynopsys.sys [140600] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:29 A . (.Microsoft Corporation - Generic pass-through driver.) -- C:\WINDOWS\System32\drivers\umpass.sys [9216] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:03 A . (.Microsoft Corporation - USB Role-Switch Class Extension.) -- C:\WINDOWS\System32\drivers\urscx01000.sys [54072] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:40:48 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\WINDOWS\System32\drivers\usb8023.sys [15872] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:23 A . (.Microsoft Corporation - USB Audio Class Driver.) -- C:\WINDOWS\System32\drivers\USBAUDIO.sys [134144] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/07/09 03:36:06 A . (.Microsoft Corporation - Microsoft USB Audio Class 2.0 Driver.) -- C:\WINDOWS\System32\drivers\usbaudio2.sys [177152] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:36 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\WINDOWS\System32\drivers\USBCAMD.sys [27136] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:36 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\WINDOWS\System32\drivers\USBCAMD2.sys [27136] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/03/12 13:20:41 A . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\WINDOWS\System32\drivers\usbccgp.sys [133432] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:23 A . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\WINDOWS\System32\drivers\usbcir.sys [89088] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:29 A . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\WINDOWS\System32\drivers\usbd.sys [25400] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:29 A . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbehci.sys [73016] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:29 A . (.Microsoft Corporation - Pilote de concentrateur USB par défaut.) -- C:\WINDOWS\System32\drivers\usbhub.sys [384824] =>.Microsoft Windows®
O58 - SDL:2020/05/13 18:54:06 A . (.Microsoft Corporation - Pilote de concentrateur USB3.) -- C:\WINDOWS\System32\drivers\USBHUB3.SYS [496440] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:29 A . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbohci.sys [21504] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/10/04 23:59:18 A . (...) -- C:\WINDOWS\System32\drivers\UsbPmApi.sys [33792] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:29 A . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\WINDOWS\System32\drivers\usbport.sys [381240] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:24 A . (.Microsoft Corporation - USB Printer driver.) -- C:\WINDOWS\System32\drivers\usbprint.sys [23040] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/01/17 00:58:10 A . (.Microsoft Corporation - USB Scanner Driver.) -- C:\WINDOWS\System32\drivers\usbscan.sys [38912] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:27 A . (.Microsoft Corporation - USB Serial Driver.) -- C:\WINDOWS\System32\drivers\usbser.sys [58880] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:29 A . (.Microsoft Corporation - Pilote de classe de stockage de masse USB.) -- C:\WINDOWS\System32\drivers\USBSTOR.SYS [105784] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:29 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbuhci.sys [24576] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/03/12 13:20:41 A . (.Microsoft Corporation - Pilote XHCI USB.) -- C:\WINDOWS\System32\drivers\USBXHCI.SYS [425272] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:27 A . (.Microsoft Corporation - Virtual Drive Root Enumerator.) -- C:\WINDOWS\System32\drivers\vdrvroot.sys [55608] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:40:17 A . (.Microsoft Corporation - Extension du vérificateur de pilotes.) -- C:\WINDOWS\System32\drivers\VerifierExt.sys [235024] =>.Microsoft Windows®
O58 - SDL:2020/02/12 13:47:05 A . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\WINDOWS\System32\drivers\vhdmp.sys [564536] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:26 A . (.Microsoft Corporation - Virtual HID Framework (VHF) Driver.) -- C:\WINDOWS\System32\drivers\vhf.sys [28672] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/03/12 13:20:41 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\viac7.sys [145920] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:19 A . (.Microsoft Corporation - Video Port Driver.) -- C:\WINDOWS\System32\drivers\videoprt.sys [35840] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/10/05 00:00:23 A . (.Microsoft Corporation - Hyper-V VMBus KMCL.) -- C:\WINDOWS\System32\drivers\vmbkmcl.sys [71992] =>.Microsoft®
O58 - SDL:2020/03/12 13:20:41 A . (.Microsoft Corporation - Pilote enfant de bus VMBus sous Microsoft H.) -- C:\WINDOWS\System32\drivers\vmbus.sys [109072] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:30 A . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\WINDOWS\System32\drivers\VMBusHID.sys [28472] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:30 A . (.Microsoft Corporation - Virtual Machine Generation Counter.) -- C:\WINDOWS\System32\drivers\vmgencounter.sys [18744] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:30 A . (.Microsoft Corporation - Virtual Machine Guest Infrastructure Driver.) -- C:\WINDOWS\System32\drivers\vmgid.sys [17208] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:30 A . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\WINDOWS\System32\drivers\vms3cap.sys [15160] =>.Microsoft Windows®
O58 - SDL:2019/10/04 23:58:56 A . (.Microsoft Corporation - Pilote de filtre de stockage virtuel.) -- C:\WINDOWS\System32\drivers\vmstorfl.sys [42808] =>.Microsoft®
O58 - SDL:2020/04/17 14:08:33 A . (.Microsoft Corporation - Pilote du gestionnaire de volumes.) -- C:\WINDOWS\System32\drivers\volmgr.sys [66872] =>.Microsoft®
O58 - SDL:2019/03/19 04:40:56 A . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) -- C:\WINDOWS\System32\drivers\volmgrx.sys [308752] =>.Microsoft Windows®
O58 - SDL:2020/03/12 13:21:23 A . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [356368] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:26 A . (.Microsoft Corporation - Volume driver.) -- C:\WINDOWS\System32\drivers\volume.sys [14136] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:26 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR X86-32.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [150056] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:26 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [277008] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:42 A . (.Microsoft Corporation - Virtual Wireless Bus Driver.) -- C:\WINDOWS\System32\drivers\vwifibus.sys [20992] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:42 A . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\WINDOWS\System32\drivers\vwififlt.sys [61952] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:42 A . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\WINDOWS\System32\drivers\vwifimp.sys [34816] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:26 A . (.Microsoft Corporation - Pilote de tablette Wacom à stylet série.) -- C:\WINDOWS\System32\drivers\wacompen.sys [21504] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/10/05 00:00:05 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\WINDOWS\System32\drivers\wanarp.sys [65024] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:52 A . (.Microsoft Corporation - Watchdog Driver.) -- C:\WINDOWS\System32\drivers\watchdog.sys [47104] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/03/12 13:21:10 A . (.Microsoft Corporation - Windows Container Isolation FS Filter Drive.) -- C:\WINDOWS\System32\drivers\wcifs.sys [152080] =>.Microsoft®
O58 - SDL:2019/03/19 04:40:02 A . (.Microsoft Corporation - Windows Container Name Virtualization FS Fi.) -- C:\WINDOWS\System32\drivers\wcnfs.sys [70656] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:43 A . (.Microsoft Corporation - Microsoft antimalware boot driver.) -- C:\WINDOWS\System32\drivers\WdBoot.sys [38280] =>.Microsoft®
O58 - SDL:2020/05/13 18:55:22 A . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) -- C:\WINDOWS\System32\drivers\Wdf01000.sys [606520] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:43 A . (.Microsoft Corporation - Microsoft antimalware file system filter dr.) -- C:\WINDOWS\System32\drivers\WdFilter.sys [268768] =>.Microsoft®
O58 - SDL:2020/05/13 18:55:22 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\WINDOWS\System32\drivers\WdfLdr.sys [47632] =>.Microsoft®
O58 - SDL:2019/10/04 23:59:01 A . (.Microsoft Corporation - WDI Driver Framework Driver.) -- C:\WINDOWS\System32\drivers\WdiWiFi.sys [654848] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:07 A . (.Microsoft Corporation - WDM Companion Filter.) -- C:\WINDOWS\System32\drivers\WdmCompanionFilter.sys [17720] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:43 A . (.Microsoft Corporation - Windows Defender Network Stream Filter.) -- C:\WINDOWS\System32\drivers\WdNisDrv.sys [47584] =>.Microsoft®
O58 - SDL:2019/03/19 04:40:17 A . (.Microsoft Corporation - Windows Error Reporting Kernel Driver.) -- C:\WINDOWS\System32\drivers\werkernel.sys [41272] =>.Microsoft Windows®
O58 - SDL:2019/07/09 03:36:17 A . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) -- C:\WINDOWS\System32\drivers\wfplwfs.sys [91664] =>.Microsoft Windows®
O58 - SDL:2020/02/12 13:47:40 A . (.Microsoft Corporation - Wim file system Driver.) -- C:\WINDOWS\System32\drivers\wimmount.sys [31032] =>.Microsoft®
O58 - SDL:2019/03/19 04:40:03 A . (.Microsoft Corporation - Windows Trusted Runtime Interface Driver.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRT.sys [55784] =>.Microsoft®
O58 - SDL:2019/03/19 04:39:30 A . (.Microsoft Corporation - Windows Trusted Runtime Service Proxy Drive.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys [15336] =>.Microsoft®
O58 - SDL:2019/03/19 04:41:16 A . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\WINDOWS\System32\drivers\winhv.sys [26936] =>.Microsoft Windows®
O58 - SDL:2020/05/13 18:54:09 A . (.Microsoft Corporation - Pilote NAT Windows.) -- C:\WINDOWS\System32\drivers\winnat.sys [196608] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/07/09 03:36:20 A . (.Microsoft Corporation - Windows QUIC Driver.) -- C:\WINDOWS\System32\drivers\winquic.sys [164664] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:39:29 A . (.Microsoft Corporation - Windows WinUSB Class Driver.) -- C:\WINDOWS\System32\drivers\winusb.sys [78848] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:27 A . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\WINDOWS\System32\drivers\wmiacpi.sys [12288] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:17 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\WINDOWS\System32\drivers\wmilib.sys [17424] =>.Microsoft Windows®
O58 - SDL:2019/10/09 14:36:52 A . (.Microsoft Corporation - Filtre de superposition Windows.) -- C:\WINDOWS\System32\drivers\wof.sys [177976] =>.Microsoft®
O58 - SDL:2019/03/19 09:19:46 A . (.Microsoft Corporation - Windows Portable Device Upper Class Filter.) -- C:\WINDOWS\System32\drivers\WpdUpFltr.sys [24376] =>.Microsoft Windows®
O58 - SDL:2019/03/19 04:40:17 A . (.Microsoft Corporation - WPP Trace Recorder.) -- C:\WINDOWS\System32\drivers\WppRecorder.sys [32776] =>.Microsoft Windows®
O58 - SDL:2019/09/12 09:07:06 A . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\WINDOWS\System32\drivers\ws2ifsl.sys [16896] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:36 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFPf.sys [87552] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:36 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFRd.sys [207360] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/08/11 17:19:22 A . (.Microsoft Corporation - Game Input Protocol Driver.) -- C:\WINDOWS\System32\drivers\xboxgip.sys [254976] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:39:20 A . (.Microsoft Corporation - XINPUT filter driver for HID.) -- C:\WINDOWS\System32\drivers\xinputhid.sys [36864] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:45 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\ANSI.SYS [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:45 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\country.sys [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:45 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\HIMEM.SYS [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:45 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\KEY01.SYS [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:45 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\KEYBOARD.SYS [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:46 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\NTDOS.SYS [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:46 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\NTDOS404.SYS [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:46 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\NTDOS411.SYS [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:46 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\NTDOS412.SYS [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:46 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\NTDOS804.SYS [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:46 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\NTIO.SYS [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:46 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\NTIO404.SYS [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:46 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\NTIO411.SYS [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:46 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\NTIO412.SYS [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:46 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\NTIO804.SYS [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/06/11 17:18:21 A . (.Microsoft Corporation - Full/Desktop Multi-User Win32 Driver.) -- C:\WINDOWS\System32\win32k.sys [324096] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/06/11 17:18:18 A . (.Microsoft Corporation - Pilote du noyau Base Win32k.) -- C:\WINDOWS\System32\win32kbase.sys [2059264] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/06/11 17:18:21 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\WINDOWS\System32\win32kfull.sys [2798592] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/19 04:40:02 A . (.Microsoft Corporation - Win32k non session driver.) -- C:\WINDOWS\System32\win32kns.sys [20480] [Unsigned] =>.Microsoft Corporation

---\\ ASSOCIATION Shell Spawning (10) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value

---\\ MENU DE DÉMARRAGE INTERNET (12) - 1s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\Windows\System32\ie4ushowIE.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\Windows\System32\ie4ushowIE.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation

---\\ RECHERCHE D'INFECTION SUR NAVIGATEURS (5) - 0s
O69 - SBI: SearchScopes [HKCU]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKCU]{6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - http://www.google.com/ =>.Google Inc.
O69 - SBI: SearchScopes [HKCU]{B5533939-A60F-490A-B8CC-CB395092455B} [DefaultScope] - (Recherche sécurisée) - http://fr.search.yahoo.com/ =>.Yahoo! Inc.
O69 - SBI: SearchScopes [HKLM]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM]{6A1806CD-94D4-4689-BA73-E35EA1EA9990} [DefaultScope] - (Google) - http://www.google.com/ =>.Google Inc.

---\\ ÉNUMÈRE LES SERVICES DÉMARRÉS PAR Svchost (49) - 3s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [183296] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [183296] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [210944] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1125376] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [738304] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [706048] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [24064] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114176] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [90624] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [657408] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [189952] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [348160] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [417280] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [90624] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [788992] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [651776] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [1737216] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [169984] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Fournit une prise en charge de l'infrastruc.) -- C:\Windows\System32\LanguageOverlayServer.dll [223744] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: TroubleshootingSvc (TroubleshootingSvc) . (.Microsoft Corporation - MitigationClient.) -- C:\Windows\System32\MitigationClient.dll [306688] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [193536] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [55296] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [142848] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [230912] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [207360] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: WManSvc (WManSvc) . (.Microsoft Corporation - DLL du Service de gestion de Windows.) -- C:\Windows\System32\Windows.Management.Service.dll [646656] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [140288] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [673280] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [307712] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [233472] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90112] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [798720] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [403456] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [57344] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [531456] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [252928] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2377216] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1006592] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [197120] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [38912] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [1661952] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) -- C:\Windows\System32\usosvc.dll [420352] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [1069568] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1004032] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1245696] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [53248] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [729600] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [48128] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [444928] [Unsigned] =>.Microsoft Corporation

---\\ LISTE DES EXCEPTIONS PAREFEU WINDOWS (3) - 2s
O87 - FAEL: "{19EE8468-75A9-40E5-943D-3EB54A0E6FB6}" [In-None-P17-TRUE] .(.McAfee, LLC - McAfee Service Host.) -- C:\Program Files\Common Files\Mcafee\Platform\McSvcHost\McSvHost.exe {76A3C3D3AB0C3E9536C506AE}. =>.McAfee, LLC
O87 - FAEL: "{8545F649-3016-43FE-87F1-AD43CA8663EF}" [In-None-P17-TRUE] .(.McAfee, LLC - McAfee Management Service Host.) -- C:\Program Files\Common Files\Mcafee\MMSSHost\MMSSHost.exe {76A3C3D3AB0C3E9536C506AE}. =>.McAfee, LLC
O87 - FAEL: "{2253F4BB-46DD-46E2-AB1A-28B8398C9F3C}" [In-None-P17-TRUE] .(.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC®

---\\ CODES PRODUITS LOGICIELS (42) - 1s
O90 - PUC: "000051090900C0400000000000F01FEC" [HKLM] . (.Microsoft DCF MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "000051091A00C0400000000000F01FEC" [HKLM] . (.Microsoft OneNote MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "000051091E00C0400000000000F01FEC" [HKLM] . (.Microsoft Office OSM MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "000051092E00C0400000000000F01FEC" [HKLM] . (.Microsoft Office OSM UX MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "000051094400C0400000000000F01FEC" [HKLM] . (.Microsoft InfoPath MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "000051095100C0400000000000F01FEC" [HKLM] . (.Microsoft Access MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "000051096100C0400000000000F01FEC" [HKLM] . (.Microsoft Excel MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "000051098100C0400000000000F01FEC" [HKLM] . (.Microsoft PowerPoint MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "000051099100C0400000000000F01FEC" [HKLM] . (.Microsoft Publisher MUI (French) 2013.) =>.bl.org
O90 - PUC: "00005109A100C0400000000000F01FEC" [HKLM] . (.Microsoft Outlook MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109AB00C0400000000000F01FEC" [HKLM] . (.Microsoft Groove MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109B100C0400000000000F01FEC" [HKLM] . (.Microsoft Word MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109B210C0400000000000F01FEC" [HKLM] . (.Microsoft Lync MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109C200C0400000000000F01FEC" [HKLM] . (.Microsoft Office Proofing (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109E600C0400000000000F01FEC" [HKLM] . (.Microsoft Office Shared MUI (French) 2013.) =>.Microsoft Corporation
O90 - PUC: "00005109F10010400000000000F01FEC" [HKLM] . (.Microsoft Office Proofing Tools 2013 - اللغة العربية.) -- C:\Windows\Installer\{90150000-001F-0401-0000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation
O90 - PUC: "00005109F10031400000000000F01FEC" [HKLM] . (.Microsoft Office Proofing Tools 2013 - Nederlands.) -- C:\Windows\Installer\{90150000-001F-0413-0000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation
O90 - PUC: "00005109F10070400000000000F01FEC" [HKLM] . (.Microsoft Office Korrekturhilfen 2013 - Deutsch.) -- C:\Windows\Installer\{90150000-001F-0407-0000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation
O90 - PUC: "00005109F10090400000000000F01FEC" [HKLM] . (.Microsoft Office Proofing Tools 2013 - English.) -- C:\Windows\Installer\{90150000-001F-0409-0000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation
O90 - PUC: "00005109F100A0C00000000000F01FEC" [HKLM] . (.Microsoft Office Proofing Tools 2013 - Español.) -- C:\Windows\Installer\{90150000-001F-0C0A-0000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation
O90 - PUC: "00005109F100C0400000000000F01FEC" [HKLM] . (.Outils de vérification linguistique 2013 de Microsoft Office - Français.) -- C:\Windows\Installer\{90150000-001F-040C-0000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation
O90 - PUC: "00005119110000000000000000F01FEC" [HKLM] . (.Microsoft Office Professional Plus 2013.) =>.Microsoft Corporation
O90 - PUC: "0FA393DA79018254D9149DC5ADA76A16" [HKLM] . (.Backup and Sync from Google.) -- C:\WINDOWS\Installer\{AD393AF0-1097-4528-9D41-D95CDA7AA661}\DriveIcon =>.Google Inc.
O90 - PUC: "1710346FB68B936438E97394317E19D1" [HKLM] . (.Google Earth.) -- C:\WINDOWS\Installer\{F6430171-B86B-4639-839E-374913E7911D}\MainIcon.ico =>.Google Inc.
O90 - PUC: "1D5E3C0FEDA1E123187686FED06E995A" [HKLM] . (.Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219.) =>.bl.org
O90 - PUC: "348E4C01622CFDF3D96D4F3E72E537D4" [HKLM] . (.Microsoft .NET Framework 4.7.2.) =>.Microsoft Corporation
O90 - PUC: "3FB95CD427D08EC3FBFEE1F8FA86E90B" [HKLM] . (.Microsoft Visual Studio 2010 Tools for Office Runtime (x86).) =>.Microsoft Corporation
O90 - PUC: "422F2144948316443A9EEDFED8527209" [HKLM] . (.Visual Studio C++ 10.0 Runtime.) =>.Microsoft Corporation
O90 - PUC: "47CA2FBBC0273BC32819E543302923AF" [HKLM] . (.Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24215.) =>.Microsoft Corporation
O90 - PUC: "55AEF1CECC37F5A3FB743B048B240C85" [HKLM] . (.Microsoft Visual Studio 2010 Tools for Office Runtime (x86) Language Pack - FRA.) =>.Microsoft Corporation
O90 - PUC: "60F7CD3FFF2989C4785F270C7B683344" [HKLM] . (.Belgium e-ID viewer 4.2.11 (build 3344).) -- C:\Windows\Installer\{F3DC7F06-92FF-4C98-87F5-72C0B7863344}\eid.ico =>.e-ID
O90 - PUC: "68AB67CA408033019195008142634963" [HKLM] . (.Adobe Refresh Manager.) -- C:\WINDOWS\Installer\{AC76BA86-0804-1033-1959-001824369436}\ARPPRODUCTICON.exe =>.Western Digital Technologies
O90 - PUC: "68AB67CA7DA76301B744CAF070E41400" [HKLM] . (.Adobe Acrobat Reader DC - Français.) -- C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}\SC_Reader.ico =>.Adobe Inc.
O90 - PUC: "6E815EB96CCE9A53884E7857C57002F0" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161.) =>.bl.org
O90 - PUC: "8388D13DBE6C42D3E842CB66679ECA2E" [HKLM] . (.Microsoft .NET Framework 4.7.2 (FRA).) =>.Microsoft Corporation
O90 - PUC: "A089CE062ADB6BC44A720BA745894BAC" [HKLM] . (.Google Update Helper.) =>.Google Inc.
O90 - PUC: "CA4ECB96275917232ABF4932DB3AA634" [HKLM] . (.Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24215.) =>.Microsoft Corporation
O90 - PUC: "D20352A90C039D93DBF6126ECE614057" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17.) =>.bl.org
O90 - PUC: "EA61FDD4D5D872042A1DC8BB94E85315" [HKLM] . (.Belgium e-ID middleware 4.3.2 (build 3551).) -- C:\Windows\Installer\{4DDF16AE-8D5D-4027-A2D1-8CBB498E3551}\eid.ico =>.e-ID
O90 - PUC: "F588A8ACB59E6CF3BB194F9D73C76768" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.) =>.bl.org
O90 - PUC: "4053F4A80BF47AA41A54CBEFCB3F12E0" [HKCU] . (.Connective Signing Plugins.)
O90 - PUC: "4053F4A80BF47AA41A54CBEFCB3F12E0" [HKU] . (.Connective Signing Plugins.)

---\\ PACKAGES WINDOWS INSTALLER (27) - 58s
[MD5.EC30C3DFEE4574BC065D2EC65CC38689] [WIS][2020/05/05 14:55:30] (.Google - Google Earth.) -- C:\WINDOWS\Installer\10a0098e.msi [29057024] =>.Google
[MD5.1504667BA3C10D841C0B76B6412FAFB5] [WIS][2015/03/17 10:41:29] (.Adobe Systems Incorporated.) -- C:\WINDOWS\Installer\2411b6d.msi [2805760] =>.Adobe Systems Incorporated
[MD5.1766B021B0BAB4F82259974154C5A920] [WIS][2020/03/20 22:50:10] (.Google LLC - Google Update Helper.) -- C:\WINDOWS\Installer\2491fc5d.msi [40960] =>.Google LLC
[MD5.2DB7783F52B255CF9B4B7B275279FC79] [WIS][2017/11/17 12:10:08] (.Belgian Government - Belgium e-ID middleware 4.3.2 (build 3551).) -- C:\WINDOWS\Installer\2554d96.msi [2519040] =>.Belgian Government
[MD5.F6E45E9F0199AAF7E4A4583A9EB81224] [WIS][2017/08/10 13:34:16] (.Belgian Government - Belgium e-ID viewer 4.2.11 (build 3344).) -- C:\WINDOWS\Installer\2554da9.msi [1679360] =>.Belgian Government
[MD5.EC3E4A04E3E037DB8BF81C83555895FC] [WIS][2020/03/14 11:38:23] (.Adobe Systems Incorporated - Adobe ARM Installer.) -- C:\WINDOWS\Installer\3404778.msi [911360] =>.Adobe Systems Incorporated
[MD5.5E8FF949A6A09C5F01F7ED211F8C30C0] [WIS][2020/06/16 18:31:29] (.Google, Inc. - Backup and Sync from Google.) -- C:\WINDOWS\Installer\6d941dd8.msi [56238080] =>.Google, Inc.
[MD5.972EA51134E50933BD6EB5F60A2CFEF6] [WIS][2017/08/04 12:18:08] (.TomTom.) -- C:\WINDOWS\Installer\80a26f.msi [751104] =>.TomTom
[MD5.8601DD5A0AFC755378D3C492CF74E693] [WIS][2019/01/04 12:55:36] (.Connective - Connective Signing Plugins.) -- C:\WINDOWS\Installer\d25029.msi [4984832] =>.Connective
[MD5.16551A09D3B9A3BC9049D098FBB4D529] [WIS][2019/05/13 08:57:34] (.Adobe Inc..) -- C:\WINDOWS\Installer\18c9b4e.msp [59400192] =>.Adobe Inc.
[MD5.DB596E2ADC480687F78F34B7D452D2CB] [WIS][2020/03/16 08:28:35] (.Adobe Inc..) -- C:\WINDOWS\Installer\18fff6d1.msp [8130560] =>.Adobe Inc.
[MD5.5705BA59CE2D386789436E2C34FC5635] [WIS][2019/12/19 10:53:18] (.Adobe Inc..) -- C:\WINDOWS\Installer\28b8e972.msp [1863680] =>.Adobe Inc.
[MD5.04B8B2DEC9DFE83D56183D74F3ED40FB] [WIS][2019/08/22 13:14:18] (.Adobe Inc..) -- C:\WINDOWS\Installer\2a080887.msp [2002944] =>.Adobe Inc.
[MD5.F82BDB155BDC9BFEE380D077D1119380] [WIS][2019/10/17 00:41:59] (.Adobe Inc..) -- C:\WINDOWS\Installer\2a2e6075.msp [242802688] =>.Adobe Inc.
[MD5.BD4173F416AC180D7AD46CB583BAB949] [WIS][2020/05/21 18:16:51] (.Adobe Inc..) -- C:\WINDOWS\Installer\2be31cef.msp [1392640] =>.Adobe Inc.
[MD5.7F1419CD81DEB4E238B7F0426B0782B7] [WIS][2020/05/11 08:43:48] (.Adobe Inc..) -- C:\WINDOWS\Installer\3a80683d.msp [50810880] =>.Adobe Inc.
[MD5.2CD061E09E48D7EFD5571169C5BB1386] [WIS][2019/10/24 14:03:06] (.Adobe Inc..) -- C:\WINDOWS\Installer\4a5d2541.msp [4616192] =>.Adobe Inc.
[MD5.3F05B763DB06D5375D569FF10EAC1CF8] [WIS][2019/04/08 08:22:42] (.Adobe Inc..) -- C:\WINDOWS\Installer\61069a3.msp [7155712] =>.Adobe Inc.
[MD5.923228256AD8BBCA145AE48027AA92BF] [WIS][2020/06/02 14:40:08] (.Adobe Inc..) -- C:\WINDOWS\Installer\6dd786f6.msp [3026944] =>.Adobe Inc.
[MD5.B2D96888BC6646EBDEEFB59B363FD015] [WIS][2019/12/09 10:07:55] (.Adobe Inc..) -- C:\WINDOWS\Installer\9076309.msp [30273536] =>.Adobe Inc.
[MD5.4777B622A4EA5AE5F2B67516AB0254AD] [WIS][2019/08/12 08:29:03] (.Adobe Inc..) -- C:\WINDOWS\Installer\ca677.msp [50438144] =>.Adobe Inc.
[MD5.79254CC5CD24307A97C66DE7D7AD4B08] [WIS][2019/01/03 11:17:04] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\cc3d61.msp [1720320] =>.Adobe Systems, Incorporated
[MD5.158DB85A7E9649803519367B8E1A7CD7] [WIS][2019/02/11 08:36:53] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\cc4213.msp [8757248] =>.Adobe Systems, Incorporated
[MD5.59E0FCA0A7F48848A6EF34ED7AC987C0] [WIS][2019/06/13 14:38:00] (.Adobe Inc..) -- C:\WINDOWS\Installer\cc5e78.msp [2260992] =>.Adobe Inc.
[MD5.26712DE883E87BB94D42E4EEA32B7E9E] [WIS][2019/02/20 14:28:20] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\cc7f1f.msp [1986560] =>.Adobe Systems, Incorporated
[MD5.31A1DBE1A433F065C401CD0A73642712] [WIS][2019/11/13 13:16:36] (.Adobe Inc..) -- C:\WINDOWS\Installer\ce8bb4.msp [1527808] =>.Adobe Inc.
[MD5.497275FFB9E10B5A29223D2A99322F49] [WIS][2020/02/10 09:01:58] (.Adobe Inc..) -- C:\WINDOWS\Installer\cf00d8.msp [25227264] =>.Adobe Inc.

---\\ FEATURE CONTROL. (883) - 3s
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_96DPI_PIXEL]:WindowsAnytimeUpgradeUI.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:Common.DBConnection.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:Common.DBConnection64.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:Common.ShowHelp.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:UNPUXHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:CCleaner.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:googledrivesync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:mbam.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:mbamtray.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_ISO_2022_JP_SNIFFING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HIGH_CONTRAST_BACKGROUND_IMAGES]:sidebar.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:Common.DBConnection.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:Common.DBConnection64.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:Common.ShowHelp.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:Common.DBConnection.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:Common.DBConnection64.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:Common.DBConnection.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:Common.DBConnection64.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:Common.DBConnection.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:Common.DBConnection64.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:Common.DBConnection.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:Common.DBConnection64.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:Common.ShowHelp.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:Common.DBConnection.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:Common.DBConnection64.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:Common.DBConnection.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:Common.DBConnection64.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:Common.DBConnection.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:Common.DBConnection64.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:Common.ShowHelp.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:filecompare.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:Common.DBConnection.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:Common.DBConnection64.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:Common.ShowHelp.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:Common.DBConnection.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:Common.DBConnection64.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:Common.ShowHelp.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:Common.DBConnection.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:Common.DBConnection64.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:Common.ShowHelp.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:Common.DBConnection.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:Common.DBConnection64.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:Common.ShowHelp.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSPPSVC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:FLTLDR.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOSQM.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:CMigrate.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:protocolhandler.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:CSISYNCCLIENT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:DW20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:DWTRIG20.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOHTMED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOXMLED.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:msoia.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:SmartTagInstall.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:SQLDumper.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:EXCEL.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:XLICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:INFOPATH.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:GROOVE.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:lynchtmlconv.exe =>.Legitimate

---\\ SCAN ADDITIONNEL (5) - 10s
C:\Users\DENIS FIACRE RENEE\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\iinglghmhcgdgjjlafobajghjamdchik =>.SUP.Bitmotion
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\Offline Files =>.SUP.Orphan
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\Gadgets =>.SUP.Orphan
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\Offline Files =>.SUP.Orphan
[HKU\S-1-5-21-4028132002-2266583049-2150520583-1000\Software\Google\Chrome\PreferenceMACs\Default\extensions.settings]:oahfdmfkjolpipiffmcnipnpjilkjnmd =>.SUP.TelevisionFanatic

---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS (3) - 0s
https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan
https://nicolascoolman.eu/forum/Topic/bitmotion-extension-potentiellement-superflue-eps/ =>.SUP.Bitmotion
https://nicolascoolman.eu/2017/03/15/superfluous-televisionfanatic/ =>.SUP.TelevisionFanatic

---\\ NUMEROS DE SÉRIE
[017BF223028469B14729A770A1F0EA2D] [03/07/2013] (.VS Revo Group.) - C:\Program Files\VS Revo Group\Revo Uninstaller\Revouninstaller.exe =>.VS Revo Group
[0271E10D9F2E8264FCE4B2669A6299CE] [09/06/2020] (.WhatsApp, Inc.) - C:\Users\DENIS FIACRE RENEE\AppData\Local\WhatsApp\app-2.2021.4\ffmpeg.dll =>.WhatsApp, Inc
[0271E10D9F2E8264FCE4B2669A6299CE] [09/06/2020] (.WhatsApp, Inc.) - C:\Users\DENIS FIACRE RENEE\AppData\Local\WhatsApp\app-2.2021.4\libEGL.dll =>.WhatsApp, Inc
[0271E10D9F2E8264FCE4B2669A6299CE] [09/06/2020] (.WhatsApp, Inc.) - C:\Users\DENIS FIACRE RENEE\AppData\Local\WhatsApp\app-2.2021.4\libGLESv2.dll =>.WhatsApp, Inc
[0271E10D9F2E8264FCE4B2669A6299CE] [09/06/2020] (.WhatsApp, Inc.) - C:\Users\DENIS FIACRE RENEE\AppData\Local\WhatsApp\app-2.2021.4\squirrel.exe =>.WhatsApp, Inc
[0271E10D9F2E8264FCE4B2669A6299CE] [09/06/2020] (.WhatsApp, Inc.) - C:\Users\DENIS FIACRE RENEE\AppData\Local\WhatsApp\app-2.2021.4\vk_swiftshader.dll =>.WhatsApp, Inc
[0271E10D9F2E8264FCE4B2669A6299CE] [09/06/2020] (.WhatsApp, Inc.) - C:\Users\DENIS FIACRE RENEE\AppData\Local\WhatsApp\app-2.2021.4\WhatsApp.exe =>.WhatsApp, Inc
[0271E10D9F2E8264FCE4B2669A6299CE] [09/06/2020] (.WhatsApp, Inc.) - C:\Users\DENIS FIACRE RENEE\AppData\Local\WhatsApp\Update.exe =>.WhatsApp, Inc
[0271E10D9F2E8264FCE4B2669A6299CE] [09/06/2020] (.WhatsApp, Inc.) - C:\Users\DENIS FIACRE RENEE\AppData\Local\WhatsApp\WhatsApp.exe =>.WhatsApp, Inc
[02FA994D660DE659EE9037ECB437D766] [22/05/2020] (.Piriform Software Ltd.) - C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Software Ltd
[02FA994D660DE659EE9037ECB437D766] [22/05/2020] (.Piriform Software Ltd.) - C:\Program Files\CCleaner\uninst.exe =>.Piriform Software Ltd
[044E3BF58976880FFD074448A8F7A058] [03/07/2020] (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation
[044E3BF58976880FFD074448A8F7A058] [03/07/2020] (.Malwarebytes Corporation.) - C:\WINDOWS\System32\drivers\mbae.sys =>.Malwarebytes Corporation
[0510C6B2FF7AB71C786EF572239B1243] [23/04/2020] (.Zoom Video Communications, Inc..) - C:\Users\DENIS FIACRE RENEE\AppData\Roaming\Zoom\uninstall\Installer.exe =>.Zoom Video Communications, Inc.
[0572F6D5E559563497F353315B4E8147] [02/11/2018] (.NCH Software Pty Ltd.) - C:\Program Files\NCH Software\Pixillion\pixillion.exe =>.NCH Software Pty Ltd
[05E5C9A2B0F62005FEFDA2811E2B1992] [15/06/2019] (.Meltytech, LLC.) - C:\Program Files\Shotcut\shotcut.exe =>.Meltytech, LLC
[08A2EC4E78A09E174B192E5535984B59] [03/07/2020] (.Malwarebytes Inc.) - C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [03/07/2020] (.Malwarebytes Inc.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [03/07/2020] (.Malwarebytes Inc.) - C:\Program Files\Malwarebytes\Anti-Malware\mbuns.exe =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [03/07/2020] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisPlugins\mbam_dna_r03_bg_freecon.1.0.2.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [03/07/2020] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisPlugins\mbam_modal_bg_freecon_r03.1.0.3.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [03/07/2020] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisPlugins\TrayPlugin.EXPT-47.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [03/07/2020] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisPlugins\TrayPlugin.EXPT-58.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [03/07/2020] (.Malwarebytes Inc.) - C:\Users\DENIS FIACRE RENEE\AppData\LocalLow\IGDump\ksizhzbcflpanrogakhxogodafqwjkkh\sample.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [03/07/2020] (.Malwarebytes Inc.) - C:\Windows\System32\drivers\mbamswissarmy.sys =>.Malwarebytes Inc
[0A01C3FF8855F008C8E4FA63973252E6] [03/04/2020] (.NCH Software, Inc..) - C:\Program Files\NCH Software\PhotoPad\photopad.exe =>.NCH Software, Inc.
[0C15BE4A15BB0903C901B1D6C265302F] [15/06/2020] (.Google LLC.) - C:\Program Files\Google\Drive\contextmenu32.dll =>.Google LLC
[0C15BE4A15BB0903C901B1D6C265302F] [15/06/2020] (.Google LLC.) - C:\Program Files\Google\Drive\googledrivesync.exe =>.Google LLC
[0C15BE4A15BB0903C901B1D6C265302F] [15/06/2020] (.Google LLC.) - C:\Program Files\Google\Drive\googledrivesync32.dll =>.Google LLC
[0C15BE4A15BB0903C901B1D6C265302F] [19/06/2020] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\83.0.4103.116\elevation_service.exe =>.Google LLC
[0C15BE4A15BB0903C901B1D6C265302F] [19/06/2020] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC
[0C15BE4A15BB0903C901B1D6C265302F] [24/06/2020] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\83.0.4103.116\Installer\chrmstp.exe =>.Google LLC
[0C15BE4A15BB0903C901B1D6C265302F] [24/06/2020] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\83.0.4103.116\Installer\setup.exe =>.Google LLC
[0C15BE4A15BB0903C901B1D6C265302F] [26/06/2020] (.Google LLC.) - C:\Users\DENIS FIACRE RENEE\AppData\Local\Google\Chrome\User Data\SwReporter\83.238.200\software_reporter_tool.exe =>.Google LLC
[0D2CACCD3E9EEC06738410BA31BF6595] [09/06/2020] (.Adobe Inc..) - C:\Users\DENIS FIACRE RENEE\AppData\Local\Google\Chrome\User Data\PepperFlash\32.0.0.387\pepflashplayer.dll =>.Adobe Inc.
[0D2CACCD3E9EEC06738410BA31BF6595] [10/06/2020] (.Adobe Inc..) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Inc.
[0D2CACCD3E9EEC06738410BA31BF6595] [10/06/2020] (.Adobe Inc..) - C:\Windows\System32\Macromed\Flash\FlashUtil32_32_0_0_387_pepper.exe =>.Adobe Inc.
[0D8970466E635B3D2993BE8BF78D437E] [16/06/2009] (.SEIKO EPSON Corporation.) - C:\Windows\System32\spool\drivers\w32x86\3\EPUPDATE.EXE =>.SEIKO EPSON Corporation
[0E3580050E04BCD215040A908ECA4FCA] [19/01/2017] (.Hamrick Software.) - C:\Program Files\VueScan\vuescan.exe =>.Hamrick Software
[0EE3F1C8F451CBF21203341A53F23E71] [04/05/2020] (.Adobe Inc..) - C:\Program Files\Adobe\Acrobat Reader DC\Reader\AcroBroker.exe =>.Adobe Inc.
[0EE3F1C8F451CBF21203341A53F23E71] [25/02/2020] (.Adobe Inc..) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.
[0EE3F1C8F451CBF21203341A53F23E71] [30/05/2020] (.Adobe Inc..) - C:\Program Files\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Inc.
[0FA5B80428F4624CF9672211E1956FBE] [23/04/2020] (.VideoLAN.) - C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN
[1044F31AE1F93A0BB95F19AB9FAAC6BB] [03/07/2020] (.ESET, spol. s r.o..) - C:\Users\DENIS FIACRE RENEE\AppData\Local\Google\Chrome\User Data\SwReporter\83.238.200\edls_32.dll =>.ESET, spol. s r.o.
[1044F31AE1F93A0BB95F19AB9FAAC6BB] [03/07/2020] (.ESET, spol. s r.o..) - C:\Users\DENIS FIACRE RENEE\AppData\Local\Google\Chrome\User Data\SwReporter\83.238.200\em000_32.dll =>.ESET, spol. s r.o.
[1044F31AE1F93A0BB95F19AB9FAAC6BB] [03/07/2020] (.ESET, spol. s r.o..) - C:\Users\DENIS FIACRE RENEE\AppData\Local\Google\Chrome\User Data\SwReporter\83.238.200\em001_32.dll =>.ESET, spol. s r.o.
[1044F31AE1F93A0BB95F19AB9FAAC6BB] [03/07/2020] (.ESET, spol. s r.o..) - C:\Users\DENIS FIACRE RENEE\AppData\Local\Google\Chrome\User Data\SwReporter\83.238.200\em002_32.dll =>.ESET, spol. s r.o.
[1044F31AE1F93A0BB95F19AB9FAAC6BB] [03/07/2020] (.ESET, spol. s r.o..) - C:\Users\DENIS FIACRE RENEE\AppData\Local\Google\Chrome\User Data\SwReporter\83.238.200\em003_32.dll =>.ESET, spol. s r.o.
[1044F31AE1F93A0BB95F19AB9FAAC6BB] [03/07/2020] (.ESET, spol. s r.o..) - C:\Users\DENIS FIACRE RENEE\AppData\Local\Google\Chrome\User Data\SwReporter\83.238.200\em004_32.dll =>.ESET, spol. s r.o.
[1044F31AE1F93A0BB95F19AB9FAAC6BB] [03/07/2020] (.ESET, spol. s r.o..) - C:\Users\DENIS FIACRE RENEE\AppData\Local\Google\Chrome\User Data\SwReporter\83.238.200\em005_32.dll =>.ESET, spol. s r.o.
[1121CEF2F1E54F510E2AF26F1B2EFC409004] [10/08/2017] (.Fedict.) - C:\Program Files\Belgium Identity Card\EidViewer\eID Viewer.exe =>.Fedict
[1AF531CA7078AAEEAD41E76733668FC4] [24/07/2018] (.TomTom International BV.) - C:\Program Files\MyDrive Connect\TomTom MyDrive Connect.exe =>.TomTom International BV
[1AF531CA7078AAEEAD41E76733668FC4] [24/07/2018] (.TomTom International BV.) - C:\Program Files\MyDrive Connect\Uninstall TomTom MyDrive Connect.exe =>.TomTom International BV
[1DE10DED541D51E73BC486F492498836] [17/10/2018] (.ESET, spol. s r.o..) - C:\WINDOWS\System32\drivers\EpfwLWF.sys =>.ESET, spol. s r.o.
[2A9C21ACAAA63A3C58A7B9322BEE948D] [17/01/2017] (.Google Inc.) - C:\Program Files\Google\Google Earth\client\googleearth.exe =>.Google Inc
[2C80892E0115B0B77AA3594B9A733953] [10/06/2011] (.Realtek Semiconductor Corp.) - C:\Windows\System32\drivers\Rt86win7.sys =>.Realtek Semiconductor Corp
[3030232482EA69A8E8694BCB] [01/05/2020] (.McAfee, Inc..) - C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe =>.McAfee, Inc.
[3030232482EA69A8E8694BCB] [01/05/2020] (.McAfee, Inc..) - C:\WINDOWS\System32\drivers\mfeclnrk.sys =>.McAfee, Inc.
[3030232482EA69A8E8694BCB] [01/05/2020] (.McAfee, Inc..) - C:\Windows\System32\drivers\mfencbdc.sys =>.McAfee, Inc.
[3030232482EA69A8E8694BCB] [01/05/2020] (.McAfee, Inc..) - C:\Windows\System32\drivers\mfencrk.sys =>.McAfee, Inc.
[3030232482EA69A8E8694BCB] [09/04/2020] (.McAfee, Inc..) - C:\Windows\System32\drivers\cfwids.sys =>.McAfee, Inc.
[3030232482EA69A8E8694BCB] [09/04/2020] (.McAfee, Inc..) - C:\Windows\System32\drivers\mfeaack.sys =>.McAfee, Inc.
[3030232482EA69A8E8694BCB] [09/04/2020] (.McAfee, Inc..) - C:\Windows\System32\drivers\mfeavfk.sys =>.McAfee, Inc.
[3030232482EA69A8E8694BCB] [09/04/2020] (.McAfee, Inc..) - C:\Windows\System32\drivers\mfefirek.sys =>.McAfee, Inc.
[3030232482EA69A8E8694BCB] [09/04/2020] (.McAfee, Inc..) - C:\Windows\System32\drivers\mfehidk.sys =>.McAfee, Inc.
[3030232482EA69A8E8694BCB] [09/04/2020] (.McAfee, Inc..) - C:\Windows\System32\drivers\mfeplk.sys =>.McAfee, Inc.
[3030232482EA69A8E8694BCB] [09/04/2020] (.McAfee, Inc..) - C:\Windows\System32\drivers\mfewfpk.sys =>.McAfee, Inc.
[3030232482EA69A8E8694BCB] [27/03/2020] (.McAfee, Inc..) - C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe =>.McAfee, Inc.
[30AA59DD718CFBDE163AB821] [15/05/2020] (.McAfee, LLC.) - C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe =>.McAfee, LLC
[30AA59DD718CFBDE163AB821] [25/06/2020] (.McAfee, LLC.) - C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe =>.McAfee, LLC
[30AA59DD718CFBDE163AB821] [25/06/2020] (.McAfee, LLC.) - C:\Program Files\McAfee\WebAdvisor\uihost.exe =>.McAfee, LLC
[30AA59DD718CFBDE163AB821] [25/06/2020] (.McAfee, LLC.) - C:\Program Files\McAfee\WebAdvisor\Uninstaller.exe =>.McAfee, LLC
[30AA59DD718CFBDE163AB821] [25/06/2020] (.McAfee, LLC.) - C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll =>.McAfee, LLC
[30AA59DD718CFBDE163AB821] [26/05/2020] (.McAfee, LLC.) - C:\Windows\System32\drivers\HipShieldK.sys =>.McAfee, LLC
[4C40DBA5F988FAE57A57D6457495F98B] [31/12/2016] (.Google Inc.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc
[529E3F9FCF7D58D520D607AB74395002] [26/03/2020] (.win.rar GmbH.) - C:\Program Files\WinRAR\Rar.exe =>.win.rar GmbH
[529E3F9FCF7D58D520D607AB74395002] [26/03/2020] (.win.rar GmbH.) - C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH
[529E3F9FCF7D58D520D607AB74395002] [26/03/2020] (.win.rar GmbH.) - C:\Program Files\WinRAR\uninstall.exe =>.win.rar GmbH
[540111A74550BE599425CA3EA7643599] [02/05/2018] (.Emjysoft.) - C:\Program Files\Emjysoft\Photo Réducteur\unins000.exe =>.Emjysoft
[540111A74550BE599425CA3EA7643599] [11/12/2017] (.Emjysoft.) - C:\Program Files\Emjysoft\Photo Réducteur\photo.exe =>.Emjysoft
[5E6DDC87375082845814F442D1D82A25] [15/01/2015] (.Realtek Semiconductor Corp.) - C:\Program Files\InstallShield Installation Information\{96AE7E41-E34E-47D0-AC07-1091A8127911}\setup.exe =>.Realtek Semiconductor Corp
[63E1989CF4AE5350298FA168D0921309] [08/08/2017] (.DEVGURU CO LTD.) - C:\Windows\System32\drivers\ssudbus.sys =>.DEVGURU CO LTD
[63E1989CF4AE5350298FA168D0921309] [08/08/2017] (.DEVGURU CO LTD.) - C:\Windows\System32\drivers\ssudmdm.sys =>.DEVGURU CO LTD
[6720EB953FB3B3DD5351FF987A4D7CD7] [02/06/2016] (.AVANQUEST SOFTWARE.) - C:\Users\DENIS FIACRE RENEE\AppData\Roaming\Avanquest Software\SetupAQ\{84AC98D2-ED9C-417b-BB6B-598FBCBE253C}\SetupAQ.exe =>.AVANQUEST SOFTWARE
[76A3C3D3AB0C3E9536C506AE] [08/06/2020] (.McAfee, LLC.) - C:\Program Files\Common Files\Mcafee\Platform\McSvcHost\McSvHost.exe =>.Not verified
[76A3C3D3AB0C3E9536C506AE] [08/06/2020] (.McAfee, LLC.) - C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe =>.Not verified
[76A3C3D3AB0C3E9536C506AE] [08/06/2020] (.McAfee, LLC.) - C:\Program Files\Common Files\McAfee\VSCore_20_4\mcapexe.exe =>.Not verified
[76A3C3D3AB0C3E9536C506AE] [08/06/2020] (.McAfee, LLC.) - C:\Program Files\McAfee\MSC\McCtxMenuFrmWrk.dll =>.Not verified
[76A3C3D3AB0C3E9536C506AE] [08/06/2020] (.McAfee, LLC.) - C:\Program Files\McAfee\MSC\McSnIePl.dll =>.Not verified
[76A3C3D3AB0C3E9536C506AE] [08/06/2020] (.McAfee, LLC.) - C:\Program Files\McAfee\MSC\mcuihost.exe =>.Not verified
[76A3C3D3AB0C3E9536C506AE] [09/06/2020] (.McAfee, LLC.) - C:\Program Files\McAfee\MfeAV\MfeAVSvc.exe =>.Not verified
[76A3C3D3AB0C3E9536C506AE] [13/05/2020] (.McAfee, LLC.) - C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHOST.exe =>.Not verified
[76A3C3D3AB0C3E9536C506AE] [27/05/2020] (.McAfee, LLC.) - C:\Program Files\Common Files\McAfee\PEF\CORE\PEFService.exe =>.Not verified
[76A3C3D3AB0C3E9536C506AE] [28/05/2020] (.McAfee, LLC.) - C:\Program Files\Common Files\McAfee\CSP\3.6.124.0\McCSPServiceHost.exe =>.Not verified
[79CC3E5A3DB621E78898C3B669104F68] [22/05/2013] (.AVANQUEST SOFTWARE.) - C:\Program Files\InstallShield Installation Information\{FC279721-37A6-4777-AFD8-7A56681EBA14}\ISAdmin.exe =>.AVANQUEST SOFTWARE

~ Unselected Options:
~ End of the scan, 10007 items in 10mn38s (4838)(0)

Publicité


Signaler le contenu de ce document

Publicité