cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2020.8.28.226 Par Nicolas Coolman (2020/08/28)
~ Démarré par proprietaire (Administrator) (2020/08/30 10:46:44)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Certificate ZHPDiag: Legal
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\proprietaire\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\proprietaire\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 10 Home, 32-bit (Build 19042)

---\\ NAVIGATEURS INTERNET (3) - 1s
~ GCIE: Google Chrome v85.0.4183.83
~ MSIE: Internet Explorer v11.450.19041.0
~ OBIE: Microsoft Edge v85.0.564.41

---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (8) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows(R) Operating System, RETAIL channel
Windows ID Activation : OK
~ Windows Partial Key : 8HVX7
Windows License : OK
~ Windows Remaining Initializations Number : 1001
Windows Automatic Updates : OK

---\\ LOGICIELS DE PROTECTION (2) - 5s
Malwarebytes version 4.2.0.82 v4.2.0.82 (Protection)
Windows Defender W10 (Activate) (Protection)

---\\ SURVEILLANCE LOGICIEL (3) - 5s
~ Adobe Flash Player 32 NPAPI (Surveillance)
~ Adobe Flash Player 32 PPAPI (Surveillance)
~ Adobe Acrobat Reader DC - Français (Surveillance)

---\\ LOGICIELS D'OPTIMISATION (1) - 5s
~ CCleaner v5.70 (Optimisation)

---\\ INFORMATIONS SUR LE SYSTÈME (6) - 0s
~ Operating System: x86 Family 6 Model 37 Stepping 2, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 2944.5 MB (46% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 182 GB (73%) free of 249 GB : OK =>.Disk Space

---\\ MODE DE CONNEXION AU SYSTÈME (3) - 0s
~ Computer Name: PROPRIETAIRE-PC
~ User Name: proprietaire
~ Logged in as Administrator

---\\ ÉNUMÉRATION DES UNITÉS DE STOCKAGE (2) - 6s
~ Drive C: has 182 GB free of 249 GB (System)
~ Drive E: has 194 GB free of 226 GB

---\\ ÉTAT DU CENTRE DE SÉCURITÉ WINDOWS (8) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ RECHERCHE PARTICULIÈRE DE FICHIERS GÉNÉRIQUES (25) - 2s
[MD5.BCACBDB782A0D1AD4EBBEE43DA490876] - 13/08/2020 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [4003384] =>.Microsoft®
[MD5.4D3D5A68D1B9A98985DCF8F6CABA68F1] - 07/12/2019 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [61440] [Unsigned] =>.Microsoft Corporation
[MD5.5334DDB7BD791C5AB8B82E78BF42D563] - 07/12/2019 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [302360] =>.Microsoft®
[MD5.35EA897764FF8FB6DB5AB757DA73BC64] - 13/08/2020 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [4523520] [Unsigned] =>.Microsoft Corporation
[MD5.7F6282E70C3679E7814BF01FF92142C5] - 07/12/2019 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [694784] [Unsigned] =>.Microsoft Corporation
[MD5.E82CDB0804F5DAACF0288C7A64E63764] - 07/12/2019 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [283648] [Unsigned] =>.Microsoft Corporation
[MD5.27618FAE442F44C1A4B7C428A4030991] - 13/08/2020 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [581576] =>.Microsoft®
[MD5.CDA438D11B818CE7D67FE1488DE30121] - 13/08/2020 - (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\System32\wuaueng.dll [2501120] [Unsigned] =>.Microsoft Corporation
[MD5.3996E9A5F0CC85E93AA7ADE49A892C5E] - 07/12/2019 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] [Unsigned] =>.Microsoft Corporation
[MD5.35ACE438DF8430B3E27A4A1A604C3711] - 13/08/2020 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [517944] =>.Microsoft®
[MD5.8BA383E33E63B7D7D13B182B33A84C1A] - 07/12/2019 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [22840] =>.Microsoft®
[MD5.6EA36F6323C52F317A8B438FA0749087] - 07/12/2019 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [74752] [Unsigned] =>.Microsoft Corporation
[MD5.8E9DEEDDE85B2FFA45BDF642E161DF77] - 07/12/2019 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [126976] [Unsigned] =>.Microsoft Corporation
[MD5.D0056EC11B18A139E0168572B1DCCE69] - 07/12/2019 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [114176] [Unsigned] =>.Microsoft Corporation
[MD5.44CFF03F6C045F4A46D5CB3EA9C34BFD] - 07/12/2019 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [107008] [Unsigned] =>.Microsoft Corporation
[MD5.ECBC11210CE2ACA3F8AB9EC38534F6CA] - 07/12/2019 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [99328] [Unsigned] =>.Microsoft Corporation
[MD5.E9DADA185FA2CB5F74A7DC1EB4A7FEAE] - 07/12/2019 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [186880] [Unsigned] =>.Microsoft Corporation
[MD5.A4F83E2194E840D7C1F229208E1EA086] - 10/06/2020 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [478520] =>.Microsoft®
[MD5.38CC80C4A78E8F84D8A48710878B43A5] - 07/12/2019 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [248320] [Unsigned] =>.Microsoft Corporation
[MD5.0D975C47CB7A0F9554020C9DB97674F9] - 07/12/2019 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2370576] =>.Microsoft®
[MD5.4EF39806C5FF9C2C577850EFBB2DF6DC] - 07/12/2019 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [82944] [Unsigned] =>.Microsoft Corporation
[MD5.EE7ED60EDE0BCBC0F5C88DFEC31028D2] - 07/12/2019 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [78336] [Unsigned] =>.Microsoft Corporation
[MD5.EEE1B806608C78D3818DB30AD8E6CD3A] - 07/12/2019 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [131072] [Unsigned] =>.Microsoft Corporation
[MD5.D1564302EB104268C3B029491A04C48C] - 07/12/2019 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [96296] =>.Microsoft®
[MD5.F76A8A3DA3A1A451EACAEF328EA33DC2] - 07/12/2019 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [357176] =>.Microsoft®

---\\ LISTE DES SERVICES (Non désactivés) (74) - 4s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Inc. - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.®
O23 - Service: C:\Windows\System32\inetsrv\iisres.dll (AppHostSvc) . (.Microsoft Corporation - IIS Application Host Helper Service.) - C:\Windows\System32\inetsrv\apphostsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\AudioEndpointBuilder.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Générateur de points de terminaison du serv.) - C:\Windows\System32\AudioEndpointBuilder.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\audiosrv.dll (Audiosrv) . (.Microsoft Corporation - Service Audio Windows.) - C:\Windows\System32\audiosrv.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\BFE.DLL (BFE) . (.Microsoft Corporation - Moteur de filtrage de base.) - C:\Windows\System32\BFE.DLL [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\qmgr.dll (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) - C:\Windows\System32\qmgr.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
O23 - Service: C:\Windows\System32\bisrv.dll (BrokerInfrastructure) . (.Microsoft Corporation - Process State Manager (PSM) Service.) - C:\Windows\System32\psmsrv.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\cdpusersvc.dll (CDPUserSvc) . (.Microsoft Corporation - Composants utilisateur Microsoft (R) CDP.) - C:\Windows\System32\CDPUserSvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Service pour utilisateur de plateforme d’appareils connecté (CDPUserSvc_1155fcf) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft®
O23 - Service: C:\Windows\System32\coremessaging.dll (CoreMessagingRegistrar) . (.Microsoft Corporation - Microsoft CoreMessaging Dll.) - C:\Windows\System32\coremessaging.dll =>.Microsoft®
O23 - Service: C:\Windows\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Services de chiffrement.) - C:\Windows\System32\cryptsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - Service client DHCP.) - C:\Windows\System32\dhcpcore.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\diagtrack.dll (DiagTrack) . (.Microsoft Corporation - Suivi des diagnostics Microsoft Windows.) - C:\Windows\System32\diagtrack.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dispbroker.desktop.dll (DispBrokerDesktopSvc) . (.Microsoft Corporation - Courtier d'affichage du bureau.) - C:\Windows\System32\DispBroker.Desktop.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - Service de résolution du cache DNS.) - C:\Windows\System32\dnsrslvr.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dosvc.dll (DoSvc) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft®
O23 - Service: Intel(R) Driver & Support Assistant (DSAService) . (.Intel - DSAService.) - C:\Program Files\Intel\Driver and Support Assistant\DSAService.exe =>.IDSA Production signing key®
O23 - Service: C:\Windows\System32\dusmsvc.dll (DusmSvc) . (.Microsoft Corporation - Service Consommation des données.) - C:\Windows\System32\dusmsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Service Mise à jour de Microsoft Edge (edgeupdate) (edgeupdate) . (.Microsoft Corporation - Microsoft Edge Update.) - C:\Program Files\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe =>.Microsoft®
O23 - Service: C:\Windows\System32\wevtsvc.dll (EventLog) . (.Microsoft Corporation - Service journal des événements.) - C:\Windows\System32\wevtsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\FDResPub.dll (FDResPub) . (.Microsoft Corporation - Service de publication des ressources de dé.) - C:\Windows\System32\FDResPub.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Service de cache de police Windows.) - C:\Windows\System32\FntCache.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) - C:\Windows\System32\gpsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: C:\Windows\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) - C:\Windows\System32\iphlpsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - DLL du service Serveur.) - C:\Windows\System32\srvsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - DLL du service Station de travail.) - C:\Windows\System32\wkssvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation®
O23 - Service: C:\Windows\System32\lsm.dll (LSM) . (.Microsoft Corporation - Service du gestionnaire de session locale.) - C:\Windows\System32\lsm.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\moshost.dll (MapsBroker) . (.Microsoft Corporation - Gestionnaire des cartes téléchargées.) - C:\Windows\System32\moshost.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\FirewallAPI.dll (mpssvc) . (.Microsoft Corporation - Service de protection Microsoft.) - C:\Windows\System32\MPSSVC.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: @mqutil.dll,-6102 (MSMQ) . (.Microsoft Corporation - Message Queuing Service.) - C:\Windows\System32\mqsvc.exe [Unsigned] =>.Microsoft Corporation
O23 - Service: Net Driver HPZ12 (Net Driver HPZ12) . (.Hewlett-Packard - Dot4Net Module.) - C:\Windows\System32\HPZinw12.dll [Unsigned] =>.Hewlett-Packard
O23 - Service: C:\Windows\Microsoft.NET\Framework\v4.0.30319\ServiceModelI (NetMsmqActivator) . (.Microsoft Corporation - SMSvcHost.exe.) - C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe =>.Microsoft®
O23 - Service: C:\Windows\Microsoft.NET\Framework\v4.0.30319\ServiceModelI (NetPipeActivator) . (.Microsoft Corporation - SMSvcHost.exe.) - C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe =>.Microsoft®
O23 - Service: C:\Windows\Microsoft.NET\Framework\v4.0.30319\ServiceModelI (NetTcpActivator) . (.Microsoft Corporation - SMSvcHost.exe.) - C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe =>.Microsoft®
O23 - Service: C:\Windows\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Connaissance des emplacements réseau 2.) - C:\Windows\System32\nlasvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Serveur RPC de l’interface du magasin résea.) - C:\Windows\System32\nsisvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\APHostRes.dll (OneSyncSvc) . (.Microsoft Corporation - Accounts Host Service.) - C:\Windows\System32\APHostService.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Hôte de synchronisation_1155fcf (OneSyncSvc_1155fcf) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft®
O23 - Service: Pml Driver HPZ12 (Pml Driver HPZ12) . (.Hewlett-Packard - PmlDrv Module.) - C:\Windows\System32\HPZipm12.dll [Unsigned] =>.Hewlett-Packard
O23 - Service: C:\Windows\System32\umpo.dll (Power) . (.Microsoft Corporation - Service d’alimentation en mode utilisateur.) - C:\Windows\System32\umpo.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\Windows\System32\profsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\rasmans.dll (RasMan) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) - C:\Windows\System32\rasmans.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - Mappeur de point de terminaison RPC.) - C:\Windows\System32\RpcEpMap.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: @combase.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\Windows\System32\rpcss.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) - C:\Windows\System32\schedsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\Sens.dll (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) - C:\Windows\System32\Sens.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\ipnathlp.dll (SharedAccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) - C:\Windows\System32\ipnathlp.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) - C:\Windows\System32\shsvcs.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: @firewallapi.dll,-50303 (SNMP) . (.Microsoft Corporation - Service SNMP.) - C:\Windows\System32\snmp.exe [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Application sous-système spouleur.) - C:\Windows\System32\spoolsv.exe [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Service de la plateforme de protection logi.) - C:\Windows\System32\sppsvc.exe =>.Microsoft®
O23 - Service: C:\Windows\System32\wiaservc.dll (StiSvc) . (.Microsoft Corporation - Service de périphériques d’images fixes.) - C:\Windows\System32\wiaservc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\StorSvc.dll (StorSvc) . (.Microsoft Corporation - Services de stockage.) - C:\Windows\System32\StorSvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\sysmain.dll (SysMain) . (.Microsoft Corporation - Hôte de Service SysMain.) - C:\Windows\System32\sysmain.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\SystemEventsBrokerServer.dll (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) - C:\Windows\System32\SystemEventsBrokerServer.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\themeservice.dll (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) - C:\Windows\System32\themeservice.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Intel(R) Management & Security Application User Notificatio (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation®
O23 - Service: C:\Windows\System32\usermgr.dll (UserManager) . (.Microsoft Corporation - UserMgr.) - C:\Windows\System32\usermgr.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\usosvc.dll (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) - C:\Windows\System32\usosvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\w32time.dll (W32Time) . (.Microsoft Corporation - Service de temps Windows.) - C:\Windows\System32\w32time.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\inetsrv\iisres.dll (W3SVC) . (.Microsoft Corporation - IIS Web Admin Service.) - C:\Windows\System32\inetsrv\iisw3adm.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wcmsvc.dll (Wcmsvc) . (.Microsoft Corporation - DLL du service de gestion des connexions Wi.) - C:\Windows\System32\wcmsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) . (.Microsoft Corporation - Antimalware Service Executable.) - C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2007.8-0\MsMpEng.exe =>.Microsoft®
O23 - Service: C:\Windows\System32\wbem\WMIsvc.dll (winmgmt) . (.Microsoft Corporation - WMI.) - C:\Windows\System32\wbem\WMIsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wlansvc.dll (Wlansvc) . (.Microsoft Corporation - DLL du service de configuration automatique.) - C:\Windows\System32\wlansvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wpnservice.dll (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) - C:\Windows\System32\WpnService.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\WpnUserService.dll (WpnUserService) . (.Microsoft Corporation - Service utilisateur de notifications Push W.) - C:\Windows\System32\WpnUserService.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Service utilisateur de notifications Push Windows_1155fcf (WpnUserService_1155fcf) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft®
O23 - Service: C:\Windows\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Service Centre de sécurité de Windows.) - C:\Windows\System32\wscsvc.dll =>.Microsoft®
O23 - Service: C:\WINDOWS\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - C:\Windows\System32\SearchIndexer.exe [Unsigned] =>.Microsoft Corporation

---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (58) - 8s
SR - Boot [07/12/2019] [ 86032] (3ware) . (.LSI.) - C:\Windows\System32\drivers\3ware.sys =>.Microsoft®
SR - Auto [08/07/2020] [ 169544] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Inc..) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.®
SS - Demand [13/08/2020] [ 335416] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Inc.®
SR - Boot [07/12/2019] [ 1038136] (ADP80XX) . (.PMC-Sierra.) - C:\Windows\System32\drivers\adp80xx.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 75064] (amdsata) . (.Advanced Micro Devices.) - C:\Windows\System32\drivers\amdsata.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 215352] (amdsbs) . (.AMD Technologies Inc..) - C:\Windows\System32\drivers\amdsbs.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 22840] (amdxata) . (.Advanced Micro Devices.) - C:\Windows\System32\drivers\amdxata.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 116536] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\Windows\System32\drivers\arcsas.sys =>.Microsoft®
SR - Demand [16/09/2010] [ 1559552] Wireless Network Adapter (athur) . (.Atheros Communications, Inc..) - C:\Windows\System32\drivers\athur.sys [Unsigned] =>.Atheros Communications, Inc.
SR - Demand [07/12/2019] [ 8192] bcmfn2 Service (bcmfn2) . (...) - C:\Windows\System32\drivers\bcmfn2.sys [Unsigned] =>.Broadcom Corporation
SR - Auto [30/08/2011] [ 390504] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
SR - Demand [05/09/2016] [ 109184] SAMSUNG Mobile USB Com (dg_ssudbus) . (.Samsung Electronics Co., Ltd..) - C:\Windows\System32\drivers\ssudbus.sys =>.Samsung Electronics CO., LTD.®
SR - Auto [31/07/2020] [ 37224] Intel(R) Driver & Support Assistant (DSAService) . (.Intel.) - C:\Program Files\Intel\Driver and Support Assistant\DSAService.exe =>.IDSA Production signing key®
SS - Demand [31/07/2020] [ 146280] Intel(R) Driver & Support Assistant Updater (DSAUpdateService) . (.Intel.) - C:\Program Files\Intel\Driver and Support Assistant\DSAUpdateService.exe =>.IDSA Production signing key®
SS - Demand [23/08/2020] [ 1085424] Google Chrome Elevation Service (GoogleChromeElevationService) . (.Google LLC.) - C:\Program Files\Google\Chrome\Application\85.0.4183.83\elevation_service.exe =>.Google LLC®
SR - Demand [07/12/2019] [ 22016] Intel SoC GPIO Controller Driv (GPIO) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaiogpio.sys [Unsigned] =>.Intel Corporation
SR - Auto [31/08/2015] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [31/08/2015] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [20/08/2012] [ 194032] Google Software Updater (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe =>.Google Inc®
SR - Demand [17/09/2009] [ 41088] Intel(R) Management Engine Interfa (HECI) . (.Intel Corporation.) - C:\Windows\System32\drivers\HECI.sys [Unsigned] =>.Intel Corporation
SR - Boot [07/12/2019] [ 56632] (HpSAMD) . (.Hewlett-Packard Company.) - C:\Windows\System32\drivers\HpSAMD.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 28672] Intel Serial IO GPIO Controlle (iagpio) . (.Intel(R) Corporation.) - C:\Windows\System32\drivers\iagpio.sys [Unsigned] =>.Intel(R) Corporation
SR - Demand [07/12/2019] [ 73728] Intel(R) Serial IO I2C Host Cont (iai2c) . (.Intel(R) Corporation.) - C:\Windows\System32\drivers\iai2c.sys [Unsigned] =>.Intel(R) Corporation
SR - Demand [07/12/2019] [ 57856] Intel(R) Atom(TM) Proces (iaioi2c) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaioi2c.sys [Unsigned] =>.Intel Corporation
SR - Boot [07/12/2019] [ 692536] Intel Chipset SATA RAI (iaStorAVC) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaStorAVC.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 333624] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaStorV.sys =>.Microsoft®
SR - Demand [27/11/2012] [10860032] (igfx) . (.Intel Corporation.) - C:\Windows\System32\drivers\igdkmd32.sys [Unsigned] =>.Intel Corporation
SR - Demand [01/02/2020] [ 4912976] Service for Realtek HD Audio (WDM) (IntcAzAudAddService) . (.Realtek Semiconductor Corp..) - C:\Windows\System32\drivers\RTKVHDA.sys =>.Realtek Semiconductor Corp.®
SR - Demand [30/10/2009] [ 209920] Son Intel(R) pour écrans (IntcDAud) . (.Intel(R) Corporation.) - C:\Windows\System32\drivers\IntcDAud.sys [Unsigned] =>.Intel(R) Corporation
SR - Boot [07/12/2019] [ 139792] (ItSas35i) . (.Avago Technologies.) - C:\Windows\System32\drivers\ItSas35i.sys =>.Microsoft®
SR - Auto [30/09/2009] [ 268824] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation®
SR - Boot [07/12/2019] [ 94224] (LSI_SAS) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_sas.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 103440] (LSI_SAS2i) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_sas2i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 112656] (LSI_SAS3i) . (.Avago Technologies.) - C:\Windows\System32\drivers\lsi_sas3i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 69640] (LSI_SSS) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_sss.sys =>.Microsoft®
SR - Boot [27/08/2020] [ 17360] MbamElam (MbamElam) . (.Malwarebytes.) - C:\Windows\System32\drivers\MbamElam.sys =>.Microsoft®
SS - Demand [27/08/2020] [ 5709640] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc®
SR - Demand [27/08/2020] [ 213912] MBAMSwissArmy (MBAMSwissArmy) . (.Malwarebytes.) - C:\Windows\System32\drivers\mbamswissarmy.sys =>.Malwarebytes Inc®
SR - Boot [07/12/2019] [ 52232] (megasas) . (.Avago Technologies.) - C:\Windows\System32\drivers\megasas.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 72208] (megasas2i) . (.Avago Technologies.) - C:\Windows\System32\drivers\MegaSas2i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 87568] (megasas35i) . (.Avago Technologies.) - C:\Windows\System32\drivers\megasas35i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 464912] (megasr) . (.LSI Corporation, Inc..) - C:\Windows\System32\drivers\megasr.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 58168] (mvumis) . (.Marvell Semiconductor, Inc..) - C:\Windows\System32\drivers\mvumis.sys =>.Microsoft®
SR - Auto [06/08/2010] [ 44032] Net Driver HPZ12 (Net Driver HPZ12) . (.Hewlett-Packard.) - C:\Windows\System32\HPZinw12.dll [Unsigned] =>.Hewlett-Packard
SR - Auto [27/01/2010] [ 50704] NetGroup Packet Filter Driver (npf) . (.CACE Technologies, Inc..) - C:\Windows\System32\drivers\npf.sys =>.CACE Technologies, Inc.®
SR - Boot [07/12/2019] [ 119096] (nvraid) . (.NVIDIA Corporation.) - C:\Windows\System32\drivers\nvraid.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 142136] (nvstor) . (.NVIDIA Corporation.) - C:\Windows\System32\drivers\nvstor.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 51728] (percsas2i) . (.Avago Technologies.) - C:\Windows\System32\drivers\percsas2i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 59408] (percsas3i) . (.Avago Technologies.) - C:\Windows\System32\drivers\percsas3i.sys =>.Microsoft®
SR - Auto [06/08/2010] [ 53760] Pml Driver HPZ12 (Pml Driver HPZ12) . (.Hewlett-Packard.) - C:\Windows\System32\HPZipm12.dll [Unsigned] =>.Hewlett-Packard
SR - Demand [01/02/2020] [ 989984] Realtek RT640 NT Driver (rt640x86) . (.Realtek.) - C:\Windows\System32\drivers\rt640x86.sys =>.Realtek Semiconductor Corp.®
SR - Boot [07/12/2019] [ 41272] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\Windows\System32\drivers\sisraid2.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 79160] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\Windows\System32\drivers\sisraid4.sys =>.Microsoft®
SR - Demand [05/09/2016] [ 147072] SAMSUNG Mobile USB Modem Dr (ssudmdm) . (.Samsung Electronics Co., Ltd..) - C:\Windows\System32\drivers\ssudmdm.sys =>.Samsung Electronics CO., LTD.®
SR - Boot [07/12/2019] [ 26936] (stexstor) . (.Promise Technology, Inc..) - C:\Windows\System32\drivers\stexstor.sys =>.Microsoft®
SR - Auto [30/09/2009] [ 2320920] Intel(R) Management & Security Application User Notificatio (UNS) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation®
SR - Boot [07/12/2019] [ 149816] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\Windows\System32\drivers\vsmraid.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 276792] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\Windows\System32\drivers\VSTXRAID.SYS =>.Microsoft®

---\\ TÂCHES PLANIFIÉES EN AUTOMATIQUE (Registre) (24) - 11s
O38 - TASK: {035B8197-8DFA-4F00-911F-0D4212C5DE31}[\{088E70AC-5F7A-42C1-89AF-5025A7FA61DA}] - (.Macrovision Corporation - Setup.exe.) -- C:\Program Files\InstallShield Installation Information\{BD9FA1D6-DFA7-4C89-8956-D96CCC7A296A}\setup.exe [372736] =>.Macrovision Corporation
O38 - TASK: {2A7E9300-6415-49B3-B62F-B229CDFFC6CB}[\CCleanerSkipUAC] - (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [24770744] =>.Piriform Software Ltd
O38 - TASK: {2BF06F90-86C2-4BC7-A25C-A6F9B3771107}[\CCleaner Update] - (.Piriform Software Ltd - CCleaner emergency updater.) -- C:\Program Files\CCleaner\CCUpdate.exe [686384] =>.Piriform Software Ltd
O38 - TASK: {2D700970-2EAA-4ED3-8229-276B5A92B579}[\Adobe Acrobat Update Task] - (.Adobe Inc. - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1336400] =>.Adobe Inc.
O38 - TASK: {3F27E369-8597-4E12-BE1C-6CDCF4807B9D}[\{052F80CC-9AC6-4A27-9B4D-B66804EFEEBE}] - (.Antonio Da Cruz - PhotoFiltre.) -- E:\logiciel\photofiltre\PhotoFiltre.exe [2838016] =>.Antonio Da Cruz
O38 - TASK: {4548D722-7A10-4A21-ABE8-6A1C78BD9E47}[\{82891CC1-69AC-4031-9E8E-C5A61C1D0C9F}] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [1974256] =>.Google LLC
O38 - TASK: {5079B4FF-8D8A-49BA-8D6A-1A39DEC84B4F}[\Adobe Flash Player NPAPI Notifier] - (.Adobe - Adobe® Flash® Player Installer/Uninstaller.) -- C:\Windows\System32\Macromed\Flash\FlashUtil32_32_0_0_414_Plugin.exe [1475640] =>.Adobe
O38 - TASK: {99D3FDB0-0D6F-4871-BC9A-62CBA7DC3C23}[\{3F250F12-4AB5-43E7-B291-DD99558051AC}] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [1974256] =>.Google LLC
O38 - TASK: {A0020E52-2F41-4117-8530-E52CF2669399}[\Adobe Flash Player PPAPI Notifier] - (.Adobe - Adobe® Flash® Player Installer/Uninstaller.) -- C:\Windows\System32\Macromed\Flash\FlashUtil32_32_0_0_414_pepper.exe [1471032] =>.Adobe
O38 - TASK: {AA76E8C1-70DA-4362-BB8A-BE730C6111E3}[\GoogleUpdateTaskMachineUA] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc.
O38 - TASK: {D3BC848A-FD86-480F-A5E3-1DC52D19C1C1}[\GoogleUpdateTaskMachineCore] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc.
O38 - TASK: {E4F1307B-A294-42B9-BCED-2BFD7907320F}[\Adobe Flash Player Updater] - (.Adobe - Adobe® Flash® Player Update Service 32.0 r0.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [335416] =>.Adobe
C:\WINDOWS\System32\Tasks\{088E70AC-5F7A-42C1-89AF-5025A7FA61DA} - (.Macrovision Corporation.) -- C:\Program Files\InstallShield Installation Information\{BD9FA1D6-DFA7-4C89-8956-D96CCC7A296A}\setup.exe [C:\Program Files\InstallShield Installation Information\{BD9FA1D6-DFA7-4C89-8956-D96CCC7A296A}\setup] =>.Macrovision Corporation
C:\WINDOWS\System32\Tasks\CCleanerSkipUAC - (.Piriform Software Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [$(Arg0)] =>.Piriform Software Ltd
C:\WINDOWS\System32\Tasks\CCleaner Update - (.Piriform Software Ltd.) -- C:\Program Files\CCleaner\CCUpdate.exe [] =>.Piriform Software Ltd
C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task - (.Adobe Inc..) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [] =>.Adobe Inc.
C:\WINDOWS\System32\Tasks\{052F80CC-9AC6-4A27-9B4D-B66804EFEEBE} - (.Antonio Da Cruz.) -- E:\logiciel\photofiltre\PhotoFiltre.exe [E:\logiciel\photofiltre\PhotoFiltre.exe] =>.Antonio Da Cruz
C:\WINDOWS\System32\Tasks\{82891CC1-69AC-4031-9E8E-C5A61C1D0C9F} - (.Google LLC.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [] =>.Google LLC
C:\WINDOWS\System32\Tasks\Adobe Flash Player NPAPI Notifier - (.Adobe.) -- C:\Windows\System32\Macromed\Flash\FlashUtil32_32_0_0_414_Plugin.exe [-check plugin.-check] =>.Adobe
C:\WINDOWS\System32\Tasks\{3F250F12-4AB5-43E7-B291-DD99558051AC} - (.Google LLC.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [] =>.Google LLC
C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier - (.Adobe.) -- C:\Windows\System32\Macromed\Flash\FlashUtil32_32_0_0_414_pepper.exe [-check pepperplugin.-check] =>.Adobe
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [/ua ./ua] =>.Google Inc.
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [/c] =>.Google Inc.
C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater - (.Adobe.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [] =>.Adobe

---\\ APPLICATIONS LANCÉES AU DÉMARRAGE DU SYSTÈME (18) - 3s
O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Security notification icon.) -- C:\Windows\System32\SecurityHealthSystray.exe [Unsigned] =>.Microsoft Corporation
O4 - HKLM\..\Run: [Microsoft Default Manager] . (.Microsoft Corporation - Microsoft Default Manager.) -- C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe =>.Microsoft Corporation®
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe =>.Intel Corporation - pGFX®
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe =>.Intel Corporation - pGFX®
O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.®
O4 - HKLM\..\Run: [Intel Driver & Support Assistant] . (.Intel - Intel Driver & Support Assistant Tray.) -- C:\Program Files\Intel\Driver and Support Assistant\DSATray.exe =>.IDSA Production signing key®
O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\proprietaire\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - HKCU\..\Run: [Chromium] . (.The Chromium Authors - Chromium.) -- c:\Users\proprietaire\AppData\Local\chromium\application\chrome.exe [Unsigned] =>.The Chromium Authors
O4 - HKCU\..\Run: [CCleaner Smart Cleaning] . (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Software Ltd®
O4 - HKCU\..\RunOnce: [Application Restart #0] . (.Microsoft Corporation - Serveur de personnalisation d’entrée.) -- C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe [Unsigned] =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\System32\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\System32\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-19\..\RunOnce: [WAB Migrate] . (.Microsoft Corporation - Windows Contacts.) -- C:\Program Files\Windows Mail\wab.exe [Unsigned] =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [WAB Migrate] . (.Microsoft Corporation - Windows Contacts.) -- C:\Program Files\Windows Mail\wab.exe [Unsigned] =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-2612108781-1526108736-1666421196-1000\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\proprietaire\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - HKUS\S-1-5-21-2612108781-1526108736-1666421196-1000\..\Run: [Chromium] . (.The Chromium Authors - Chromium.) -- c:\Users\proprietaire\AppData\Local\chromium\application\chrome.exe [Unsigned] =>.The Chromium Authors
O4 - HKUS\S-1-5-21-2612108781-1526108736-1666421196-1000\..\Run: [CCleaner Smart Cleaning] . (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Software Ltd®
O4 - HKUS\S-1-5-21-2612108781-1526108736-1666421196-1000\..\RunOnce: [Application Restart #0] . (.Microsoft Corporation - Serveur de personnalisation d’entrée.) -- C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe [Unsigned] =>.Microsoft Corporation

---\\ PROCESSUS LANCÉS (19) - 4s
[MD5.12CA4638E1DC19C430C56E68F7801C57] - (.Adobe Inc. - Adobe Acrobat Update Service.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [169544] [PID.2432] =>.Adobe Inc.®
[MD5.9CEC398680B0A07F0B0125A7FEDDA58C] - (.Intel - DSAService.) -- C:\Program Files\Intel\Driver and Support Assistant\DSAService.exe [37224] [PID.2440] =>.IDSA Production signing key®
[MD5.DB5BEA73EDAF19AC68B2C0FAD0F92B1A] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [390504] [PID.2448] =>.Apple Inc.®
[MD5.E38775922D4A4C05B5D96733AB4CE169] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [268824] [PID.2524] =>.Intel Corporation®
[MD5.74CDA8051136B80DC3AE4BF86623003C] - (.Google LLC - Google Crash Handler.) -- C:\Program Files\Google\Update\1.3.35.452\GoogleCrashHandler.exe [295368] [PID.4476] =>.Google LLC®
[MD5.BC1363A1ECA3BD26AABB8FE8FF878940] - (.Intel - DSAUpdateService.) -- C:\Program Files\Intel\Driver and Support Assistant\DSAUpdateService.exe [146280] [PID.5060] =>.IDSA Production signing key®
[MD5.02C298382359653BEC4C737C2AB7F9C5] - (.Intel Corporation - User Notification Service.) -- C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2320920] [PID.9564] =>.Intel Corporation®
[MD5.81468ECB1256784B2B0DE1D7059019D0] - (...) -- C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe [493880] [PID.4292] =>.Microsoft®
[MD5.5939FD26D6C3D817538B7B45EFACE365] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [16558928] [PID.4688] =>.Realtek Semiconductor Corp.®
[MD5.60D66CEB34E0F631C206423CEFE35FDB] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [143392] [PID.6616] =>.Intel Corporation - pGFX®
[MD5.2308A07BD53235EC6A0640DE5E58BAE7] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [178208] [PID.9712] =>.Intel Corporation - pGFX®
[MD5.BD7D0E6082E90D3AE3676548F64A8251] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [178720] [PID.6520] =>.Intel Corporation - pGFX®
[MD5.920505A3DC824F6EDD4109AFE5F1EE12] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe [710264] [PID.5648] =>.Oracle America, Inc.®
[MD5.6C684ADD90A086E3ECCD7DCC44EA8DA1] - (.Intel - Intel Driver & Support Assistant Tray.) -- C:\Program Files\Intel\Driver and Support Assistant\DSATray.exe [284520] [PID.2848] =>.IDSA Production signing key®
[MD5.F0828FE78AD4B2956D1E64F65152450E] - (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [24770744] [PID.2656] =>.Piriform Software Ltd®
[MD5.9FB94C971770705983A9CE4BAD251D13] - (...) -- C:\Program Files\WindowsApps\Microsoft.YourPhone_1.20081.116.0_x86__8wekyb3d8bbwe\YourPhoneServer\YourPhoneServer.exe [35328] [PID.7724] [Unsigned]
[MD5.91BF869A2BE34ED882B653016F4FA670] - (...) -- C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2005.23.0_x86__8wekyb3d8bbwe\Calculator.exe [4235264] [PID.8448] [Unsigned] =>.Microsoft Corporation
[MD5.A6BCDB80EE78DF6925B9FDB8BF82A6CF] - (...) -- C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2020.20070.10002.0_x86__8wekyb3d8bbwe\Microsoft.Photos.exe [484864] [PID.11376] [Unsigned] =>.Microsoft Corporation
[MD5.0B9C893723487DC491E8EAC136810BC9] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\proprietaire\AppData\Roaming\ZHP\ZHPDiag3.exe [3304320] [PID.10596] [Unsigned] =>.Nicolas Coolman

---\\ CHROME, Démarrage, Recherche, Extensions (12) - 1s
G2 - GCE: Preference [proprietaire][User Data\Default\Extensions] [agoenciogemlojlhccbcpcfflicgnaak] BIODIGITAL HUMAN =>.biodigital.com
G2 - GCE: Preference [proprietaire][User Data\Default\Extensions] [cfhdojbkjhnklbpkdaibdccddilifddb] eyeo GmbH =>.Eyeo GmbH
G2 - GCE: Preference [proprietaire][User Data\Default\Extensions] [chnamgoimgnbgkabfjkikldbfdhhfhdo] http://tankionline.com
G2 - GCE: Preference [proprietaire][User Data\Default\Extensions] [cnkjkdjlofllcpbemipjbcpfnglbgieh] Spotify - Music for every moment =>.Spotify
G2 - GCE: Preference [proprietaire][User Data\Default\Extensions] [fdcenekolminfbkcbchinlcgfhpmggpk] Mixcloud =>.Mixcloud
G2 - GCE: Preference [proprietaire][User Data\Default\Extensions] [ihmigmmflfcbhdpdgbkkeojchjhhphnh] Color Piano!
G2 - GCE: Preference [proprietaire][User Data\Default\Extensions] [kodigjkcpaoeodlnmcnekemakpnmegnk] Until AM Web App =>.until.am
G2 - GCE: Preference [proprietaire][User Data\Default\Extensions] [mcafejemebbngbglfoinpoaannbihjna] Service for creating stunning floor plans and inte =>.planner5d.com
G2 - GCE: Preference [proprietaire][User Data\Default\Extensions] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet}
G2 - GCE: Preference [proprietaire][User Data\Default\Extensions] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc.
G2 - GCE: Preference [proprietaire][User Data\Default\Local Extension Settings] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
G2 - GCE: Preference [proprietaire][User Data\Default\Sync Extension Settings] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] =>.Google Inc. {Chrome Media Router}

---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (25) - 3s
P2 - EXT FILE: (.Yahoo.) -- C:\Users\proprietaire\AppData\Roaming\Mozilla\Firefox\Profiles\52h4bw97.default\extensions\jid1-16aeif9OQIRKxA@jetpack.xpi [Unsigned]
P2 - EXT FILE: (.Avast Software s.r.o.) -- C:\Users\proprietaire\AppData\Roaming\Mozilla\Firefox\Profiles\52h4bw97.default\extensions\sp@avast.com.xpi [Unsigned] =>.Avast Software s.r.o
P2 - EXT FILE: (.Avast Online Security - Avast Browser Security and Web Reputat.) -- C:\Users\proprietaire\AppData\Roaming\Mozilla\Firefox\Profiles\52h4bw97.default\extensions\wrc@avast.com.xpi [Unsigned] =>.Avast Online Security
P2 - FPN: [HKCU] [vitzo.com/VDownloader] - (...) -- C:\Program Files\VDownloader\Addons\npVDownloader.dll
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_32_0_0_414.dll =>.Adobe
C:\Users\proprietaire\AppData\Roaming\Mozilla\Firefox\Profiles\52h4bw97.default\bookmarkbackups =>Mozilla Corporation
C:\Users\proprietaire\AppData\Roaming\Mozilla\Firefox\Profiles\52h4bw97.default\browser-extension-data =>Mozilla Corporation
C:\Users\proprietaire\AppData\Roaming\Mozilla\Firefox\Profiles\52h4bw97.default\crashes =>Mozilla Corporation
C:\Users\proprietaire\AppData\Roaming\Mozilla\Firefox\Profiles\52h4bw97.default\datareporting =>Mozilla Corporation
C:\Users\proprietaire\AppData\Roaming\Mozilla\Firefox\Profiles\52h4bw97.default\extensions =>Mozilla Corporation
C:\Users\proprietaire\AppData\Roaming\Mozilla\Firefox\Profiles\52h4bw97.default\features =>Mozilla Corporation
C:\Users\proprietaire\AppData\Roaming\Mozilla\Firefox\Profiles\52h4bw97.default\gmp =>Mozilla Corporation
C:\Users\proprietaire\AppData\Roaming\Mozilla\Firefox\Profiles\52h4bw97.default\gmp-eme-adobe =>Mozilla Corporation
C:\Users\proprietaire\AppData\Roaming\Mozilla\Firefox\Profiles\52h4bw97.default\gmp-gmpopenh264 =>Mozilla Corporation
C:\Users\proprietaire\AppData\Roaming\Mozilla\Firefox\Profiles\52h4bw97.default\gmp-widevinecdm =>Mozilla Corporation
C:\Users\proprietaire\AppData\Roaming\Mozilla\Firefox\Profiles\52h4bw97.default\healthreport =>Mozilla Corporation
C:\Users\proprietaire\AppData\Roaming\Mozilla\Firefox\Profiles\52h4bw97.default\minidumps =>Mozilla Corporation
C:\Users\proprietaire\AppData\Roaming\Mozilla\Firefox\Profiles\52h4bw97.default\saved-telemetry-pings =>Mozilla Corporation
C:\Users\proprietaire\AppData\Roaming\Mozilla\Firefox\Profiles\52h4bw97.default\searchplugins =>Mozilla Corporation
C:\Users\proprietaire\AppData\Roaming\Mozilla\Firefox\Profiles\52h4bw97.default\sessionstore-backups =>Mozilla Corporation
C:\Users\proprietaire\AppData\Roaming\Mozilla\Firefox\Profiles\52h4bw97.default\storage =>Mozilla Corporation
C:\Users\proprietaire\AppData\Roaming\Mozilla\Firefox\Profiles\52h4bw97.default\weave =>Mozilla Corporation
C:\Users\proprietaire\AppData\Roaming\Mozilla\Firefox\Profiles\52h4bw97.default\webapps =>Mozilla Corporation
C:\Users\proprietaire\AppData\Roaming\Mozilla\Firefox\Profiles\52h4bw97.default\Yahoo Inc =>Yahoo! Inc.
C:\Users\proprietaire\AppData\Roaming\Mozilla\Firefox\Profiles\52h4bw97.default\browser-extension-data\screenshots@mozilla.org =>Mozilla Corporation

---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (10) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.sfr.fr =>.SFR
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com =>.Google Inc.
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.19041.444 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation

---\\ INTERNET EXPLORER, Site de confiance et site sensible (3) - 0s
~ IE Restricted Site Good: localhost
~ Microsoft Internet Explorer Restricted Site(s) Domains: 1(Good) / 0(Bad)
~ Microsoft Internet Explorer Restricted Site(s) EscDomains: 0(Good) / 0(Bad)

---\\ MICROSOFT EDGE, Plugin,Favoris,Démarrage,Recherche,Extension (3) - 0s
E2 - GCE: Preference [proprietaire][User Data\Default\Extensions] [gmgoamodcdcjnbaobigkjelfplakmdhh] eyeo GmbH =>.Eyeo GmbH
E2 - GCE: Preference [proprietaire][User Data\Default\Local Extension Settings] [jdiccldimpdaibmpdkjnbmckianbfold] =>.Microsoft Corporation
E2 - GCE: Preference [proprietaire][User Data\Default\Sync Extension Settings] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] =>.Google Inc. {Chrome Media Router}

---\\ INTERNET EXPLORER,Proxy Management (9) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value
R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 =>.Default.Value
R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 =>.Default.Value
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft

---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\WINDOWS\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ ÉTUDE DU FICHIER HOSTS (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (5) - 0s
O2 - BHO: IEToEdge BHO - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} . (.Microsoft Corporation - IEToEdge BHO.) -- C:\Program Files\Microsoft\Edge\Application\85.0.564.41\BHO\ie_to_edge_bho.dll =>.Microsoft®
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_261\bin\ssv.dll =>.Oracle America, Inc.®
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll =>.Google Inc®
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_261\bin\jp2ssv.dll =>.Oracle America, Inc.®
O2 - BHO: Adblock Plus for IE Browser Helper Object - {FFCB3198-32F3-4E8B-9539-4324694ED664} . (.Eyeo GmbH - Adblock Plus BHO for Internet Explorer.) -- C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll =>.Eyeo GmbH®

---\\ RACCOURCIS GLOBAL STARTUP (61) - 8s
O4 - GS\Desktop [proprietaire]: AirDroid.lnk . (.Sand Studio - AirDroid 3 Launcher.) C:\Program Files\AirDroid\Launcher.exe {0DAE46486B3CF0B6DF5F76680285EB28}. =>.Sand Studio
O4 - GS\Desktop [proprietaire]: Favoris - Raccourci.lnk . (...) C:\Users\proprietaire\Favorites [Unsigned]
O4 - GS\Desktop [proprietaire]: Google Drive.lnk . (...) C:\Users\proprietaire\Google Drive [Unsigned]
O4 - GS\Desktop [proprietaire]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\proprietaire\AppData\Roaming\ZHP\ZHPCleaner.exe [Unsigned] =>.Nicolas Coolman
O4 - GS\Desktop [proprietaire]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\proprietaire\AppData\Roaming\ZHP\ZHPDiag3.exe [Unsigned] =>.Nicolas Coolman
O4 - GS\Quicklaunch [proprietaire]: AirDroid.lnk . (.Sand Studio - AirDroid 3 Launcher.) C:\Program Files\AirDroid\Launcher.exe {0DAE46486B3CF0B6DF5F76680285EB28}. =>.Sand Studio
O4 - GS\Quicklaunch [proprietaire]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\Quicklaunch [proprietaire]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft®
O4 - GS\Quicklaunch [proprietaire]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - GS\Quicklaunch [proprietaire]: Microsoft Office Outlook.lnk . (.Microsoft Corporation - Microsoft Office Outlook.) C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE /recycle =>.Microsoft Corporation®
O4 - GS\sendTo [proprietaire]: Anti yeux rouges.lnk . (...) E:\logiciel\antiyeuxrouges\redeye.exe [Unsigned]
O4 - GS\sendTo [proprietaire]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo [Unsigned] =>.Microsoft Corporation
O4 - GS\sendTo [proprietaire]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo [Unsigned] =>.Microsoft Corporation
O4 - GS\sendTo [proprietaire]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\TaskBar [proprietaire]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\TaskBar [proprietaire]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - GS\TaskBar [proprietaire]: Microsoft Office Word 2007.lnk . (...) C:\Windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation®
O4 - GS\Programs [proprietaire]: Fonctionnalités optionnelles.lnk . (.Microsoft Corporation - Assistance des fonctionnalités à la demande.) C:\Windows\System32\fodhelper.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Programs [proprietaire]: Microsoft OneDrive (1).lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\proprietaire\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - GS\Programs [proprietaire]: Microsoft OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive Setup.) C:\Program Files\Microsoft OneDrive\OneDriveSetup.exe =>.Microsoft®
O4 - GS\Programs [proprietaire]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\proprietaire\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - GS\CommonDesktop [Public]: Acrobat Reader DC.lnk . (.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) C:\Program Files\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Inc.®
O4 - GS\CommonDesktop [Public]: Ad-Aware SE Personal.lnk . (.Lavasoft Sweden - Ad-Aware SE Core application.) C:\Program Files\Lavasoft\Ad-Aware SE Personal\Ad-Aware.exe [Unsigned]
O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Software Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Software Ltd®
O4 - GS\CommonDesktop [Public]: Google Docs.lnk . (...) C:\Program Files\Google\Drive\googledrivesync.exe --new_document =>.Google LLC®
O4 - GS\CommonDesktop [Public]: Google Earth Pro.lnk . (.Google - Google Earth.) C:\Program Files\Google\Google Earth Pro\client\googleearth.exe =>.Google LLC®
O4 - GS\CommonDesktop [Public]: Google Sheets.lnk . (...) C:\Program Files\Google\Drive\googledrivesync.exe --new_spreadsheet =>.Google LLC®
O4 - GS\CommonDesktop [Public]: Google Slides.lnk . (...) C:\Program Files\Google\Drive\googledrivesync.exe --new_presentation =>.Google LLC®
O4 - GS\CommonDesktop [Public]: Malwarebytes.lnk . (.Malwarebytes - Malwarebytes.) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.Malwarebytes Inc®
O4 - GS\Programs [Public]: Fonctionnalités optionnelles.lnk . (.Microsoft Corporation - Assistance des fonctionnalités à la demande.) C:\Windows\System32\fodhelper.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Programs [Public]: Microsoft OneDrive (1).lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\proprietaire\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - GS\Programs [Public]: Microsoft OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive Setup.) C:\Program Files\Microsoft OneDrive\OneDriveSetup.exe =>.Microsoft®
O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\proprietaire\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft®
O4 - GS\SystemTools [Public]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) C:\WINDOWS\system32\eudcedit.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Math Input Panel Accessory.) C:\Program Files\Common Files\Microsoft Shared\Ink\mip.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) C:\WINDOWS\system32\mblctr.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files\Windows NT\Accessories\wordpad.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\WINDOWS\system32\xpsrchvw.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Acrobat Reader DC.lnk . (.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) C:\Program Files\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Inc.®
O4 - GS\ProgramsCommon [Public]: Acrobat Reader DC.lnk . (.Flexera Software LLC - InstallShield.) C:\WINDOWS\Installer\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}\SC_Reader.ico [Unsigned] =>.Flexera Software LLC
O4 - GS\ProgramsCommon [Public]: Assistant Mise à jour de Windows 10.lnk . (.Microsoft Corporation - Assistant Mise à jour de Windows 10.) C:\Windows10Upgrade\Windows10UpgraderApp.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) C:\Program Files\CDBurnerXP\cdbxpp.exe =>.Canneverbe Limited®
O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\ProgramsCommon [Public]: Google Earth Pro.lnk . (.Google - Google Earth.) C:\Program Files\Google\Google Earth Pro\client\googleearth.exe =>.Google LLC®
O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Intel Driver & Support Assistant.lnk . (.Intel - Intel Driver & Support Assistant Helper.) C:\Program Files\Intel\Driver and Support Assistant\DSAServiceHelper.exe installstartup =>.IDSA Production signing key®
O4 - GS\ProgramsCommon [Public]: Lanceur de tâches Microsoft Works.lnk . (.Microsoft® Corporation - Lanceur de tâches Microsoft Works.) C:\Program Files\Microsoft Works\msworks.exe [Unsigned] =>.Microsoft® Corporation
O4 - GS\ProgramsCommon [Public]: Malwarebytes.lnk . (.Malwarebytes - Malwarebytes.) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.Malwarebytes Inc®
O4 - GS\ProgramsCommon [Public]: Microsoft Default Manager.lnk . (.Microsoft Corporation - Microsoft Default Manager.) C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: Windows Movie Maker 2.6.lnk . (.Microsoft Corporation - Windows Movie Maker.) C:\Windows\Installer\{B3DAF54F-DB25-4586-9EF1-96D24BB14088}\MOVIEMK.exe [Unsigned] =>.Microsoft Corporation

---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (7) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = lan =>.Local Domain
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{2866f1a3-9f3f-4c0c-ad78-c45f5cd6526c}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{2ed29bf9-a7fc-4476-8b3c-af4a42c0983b}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{9b197d75-be09-419b-b020-c79310c82431}: DhcpNameServer = 192.168.1.254 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{e4a99cc1-635d-4aa8-9976-53fbf77d88eb}: DhcpNameServer = 192.168.1.254 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{e4a99cc1-635d-4aa8-9976-53fbf77d88eb}: DhcpDomain = lan =>.Local Domain

---\\ PROTOCOLE ADDITIONNEL (24) - 1s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft®
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: tbauth - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s
O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation

---\\ CLÉ DE REGISTRE EXPLORER StartupApproved (23) - 1s
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Monitoring =>.Piriform Ltd
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:WahOO
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDrive =>.Microsoft Corporation
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Chromium =>.Chromium Team
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:AvastBrowserAutoLaunch_F55A576443E062111872938E09851703 =>PUP.Optional.MyBrowser
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Smart Cleaning =>.Piriform Ltd
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Google Update =>.Google Inc.
[HKEY_USERS\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Monitoring =>.Piriform Ltd
[HKEY_USERS\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:WahOO
[HKEY_USERS\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDrive =>.Microsoft Corporation
[HKEY_USERS\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Chromium =>.Chromium Team
[HKEY_USERS\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:AvastBrowserAutoLaunch_F55A576443E062111872938E09851703 =>PUP.Optional.MyBrowser
[HKEY_USERS\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Smart Cleaning =>.Piriform Ltd
[HKEY_USERS\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Google Update =>.Google Inc.
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SecurityHealth =>.Microsoft Corporation
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:IgfxTray =>.Intel Corporation
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:HotKeysCmds =>.Intel Corporation
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Persistence =>.Intel Corporation
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:RtHDVCpl =>.Realtek Semiconductor Corp.
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:AvastUI.exe =>.Avast Software s.r.o
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SunJavaUpdateSched =>.Oracle
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Microsoft Default Manager =>.Microsoft Corporation
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Intel Driver & Support Assistant

---\\ COMPOSANTS ACTIVESETUP INSTALLÉS (ASIC) (6) - 1s
O40 - ASIC: Microsoft Windows Media Player 12.0 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Web Platform Customizations - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft®
O40 - ASIC: Google Chrome - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google LLC - Google Chrome Installer.) -- C:\Program Files\Google\Chrome\Application\85.0.4183.83\Installer\chrmstp.exe =>.Google LLC®
O40 - ASIC: Microsoft Edge - {9459C573-B17A-45AE-9F64-1857B5D58CEE} . (.Microsoft Corporation - Microsoft Edge Installer.) -- C:\Program Files\Microsoft\Edge\Application\85.0.564.41\Installer\setup.exe =>.Microsoft®

---\\ LOGICIELS INSTALLÉS (186) - 50s
1
O42 - Logiciel: 32 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM] -- {A80FA752-C491-4ED9-ABF0-4278563160B2} [Unsigned] =>.Hewlett-Packard (Hidden)
O42 - Logiciel: Ad-Aware SE Personal - (.Lavasoft.) [HKLM] -- Ad-Aware SE Personal [Unsigned] =>.Lavasoft
O42 - Logiciel: Adblock Plus for IE - (.Eyeo GmbH.) [HKLM] -- {fd97d1e2-368a-4cd9-af63-8eeff938044a} [Unsigned] =>.Eyeo GmbH
O42 - Logiciel: Adblock Plus pour IE (32-bits) - (.Eyeo GmbH.) [HKLM] -- {61026FB6-44BC-48C5-BD29-4E3F9FCBB33B} [Unsigned] =>.Eyeo GmbH
O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} [Unsigned] =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Flash Player 32 NPAPI - (.Adobe.) [HKLM] -- Adobe Flash Player NPAPI =>.Adobe Inc.®
O42 - Logiciel: Adobe Flash Player 32 PPAPI - (.Adobe.) [HKLM] -- Adobe Flash Player PPAPI =>.Adobe Inc.®
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-0804-1033-1959-000182439564} [Unsigned] =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Adobe Shockwave Player 12.3 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player [Unsigned] =>.Adobe Systems, Inc.
O42 - Logiciel: AirDroid 3.6.5.0 - (.Sand Studio.) [HKLM] -- AirDroid [Unsigned] =>.Sand Studio
O42 - Logiciel: Archiveur WinRAR - (.RarLab.) [HKLM] -- WinRAR archiver [Unsigned] =>.RarLab
O42 - Logiciel: Assistant Mise à jour de Windows 10 - (.Microsoft Corporation.) [HKLM] -- {D5C69738-B486-402E-85AC-2456D98A64E4} =>.Microsoft Corporation®
O42 - Logiciel: AXIS Media Control Embedded - (..) [HKLM] -- AXIS Media Control Embedded [Unsigned]
O42 - Logiciel: AXIS Media Control Embedded - (.Axis Communications.) [HKLM] -- {D8CB35E1-A6A2-4EA6-8260-3C16B3CF7893} [Unsigned] =>.Axis Communications
O42 - Logiciel: Backup and Sync from Google - (.Google, Inc..) [HKLM] -- {AD393AF0-1097-4528-9D41-D95CDA7AA661} [Unsigned] =>.Google, Inc.
O42 - Logiciel: Barre de Confiance - (..) [HKLM] -- TAPBar [Unsigned]
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM] -- {79155F2B-9895-49D7-8612-D92580E0DE5B} [Unsigned] =>.Apple Inc.
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner =>.Piriform Software Ltd®
O42 - Logiciel: CDBurnerXP - (.CDBurnerXP.) [HKLM] -- {7E265513-8CDA-4631-B696-F40D983F3B07}_is1 [Unsigned] =>.CDBurnerXP
O42 - Logiciel: CPUID CPU-Z 1.85 - (.CPUID, Inc..) [HKLM] -- CPUID CPU-Z_is1 [Unsigned] =>.CPUID, Inc.
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} [Unsigned] =>.Microsoft (Hidden)
O42 - Logiciel: Defraggler - (.Piriform.) [HKLM] -- Defraggler =>.Piriform Ltd®
O42 - Logiciel: Digimax 420 - (..) [HKLM] -- {6E90931A-1A03-4B96-8BC2-DE88B8195B5A} =>.InstallShield Software Corporation®
O42 - Logiciel: Feedback Tool - (.Microsoft Corporation.) [HKLM] -- {13A5E785-5197-4EAD-8EE3-D660271E49BC} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: FileZilla Client 3.14.0 - (.Tim Kosse.) [HKLM] -- FileZilla Client [Unsigned] =>.Tim Kosse
O42 - Logiciel: Foto-Mosaik-Edda Standard V7.6.17168.1 - (.Steffen Satrapa.) [HKLM] -- {A2D6ECD0-7E52-42B7-9236-DB2951436616}_is1 [Unsigned]
O42 - Logiciel: Google Chrome - (.Google, Inc..) [HKLM] -- {DF516B2A-71B8-3767-B181-1E217895D122} [Unsigned] =>.Google, Inc.
O42 - Logiciel: Google Earth Pro - (.Google.) [HKLM] -- {59F21DFB-6977-434B-9CB9-67783D6E7B6B} [Unsigned] =>.Google
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {18455581-E099-4BA8-BC6B-F34B2F06600C} [Unsigned] =>.Google Inc. (Hidden)
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F} =>.Google Inc®
O42 - Logiciel: Google Update Helper - (.Google LLC.) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} [Unsigned] =>.Google LLC (Hidden)
O42 - Logiciel: Google Chrome - (.Google LLC.) [HKLM] -- Google Chrome =>.Google LLC®
O42 - Logiciel: HPDiagnosticAlert - (.Microsoft.) [HKLM] -- {846B5DED-DC8C-4E1A-B5B4-9F5B39A0CACE} [Unsigned] =>.Microsoft (Hidden)
O42 - Logiciel: Intel Driver && Support Assistant - (.Intel.) [HKLM] -- {4752D5B7-5943-4607-97E3-683A534A7660} [Unsigned] =>.Intel (Hidden)
O42 - Logiciel: Intel(R) Control Center - (.Intel Corporation.) [HKLM] -- {F8A9085D-4C7A-41a9-8A77-C8998A96C421} =>.Intel Corporation®
O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation®
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} =>.Intel Corporation®
O42 - Logiciel: Intel(R) TV Wizard - (.Intel Corporation.) [HKLM] -- TVWiz [Unsigned] =>.Intel Corporation
O42 - Logiciel: Intel® Driver & Support Assistant - (.Intel.) [HKLM] -- {011c7b89-9b3e-4b2a-8cbc-633ef3c1e10c} =>.IDSA Production signing key®
O42 - Logiciel: Internet TV pour Windows Media Center - (.Microsoft Corporation.) [HKLM] -- {9D318C86-AF4C-409F-A6AC-7183FF4CF424} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Java 8 Update 261 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F32180261F0} [Unsigned] =>.Oracle Corporation
O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM] -- {4A03706F-666A-4037-7777-5F2748764D10} [Unsigned] =>.Oracle Corporation (Hidden)
O42 - Logiciel: Malwarebytes version 4.2.0.82 - (.Malwarebytes.) [HKLM] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Inc®
O42 - Logiciel: Microsoft .NET Framework 4.5.2 - (.Microsoft Corporation.) [HKLM] -- {3911CF56-9EF2-39BA-846A-C27BD3CD0685} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Framework 4.5.2 (FRA) - (.Microsoft Corporation.) [HKLM] -- {AE119B2F-0A12-3FD3-935F-A96D62205681} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM] -- {95120000-00B9-0409-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Default Manager - (.Microsoft Corporation.) [HKLM] -- {1CAC7A41-583B-4483-9FA5-3E5465AFF8C2} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft DVD App Installation for Microsoft.WindowsDVDPlayer_2019.6.13291. - (.Microsoft Corporation.) [HKLM] -- {25E80DAA-FD87-DCE5-202C-CC02F6673002} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Edge - (.Microsoft Corporation.) [HKLM] -- Microsoft Edge =>.Microsoft®
O42 - Logiciel: Microsoft Edge Update - (.Microsoft Corporation.) [HKLM] -- Microsoft Edge Update [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93} [Unsigned] =>.Microsoft
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0015-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8} [Unsigned] =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0016-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8} [Unsigned] =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0018-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8} [Unsigned] =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0019-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8} [Unsigned] =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001A-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8} [Unsigned] =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001B-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8} [Unsigned] =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0044-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8} [Unsigned] =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-006E-040C-0000-0000000FF1CE}_PROPLUS_{8283FD64-6A3B-4104-9E12-7CA25EF29A1A} [Unsigned] =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office Access MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0015-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Excel MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0016-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office File Validation Add-In - (.Microsoft Corporation.) [HKLM] -- {90140000-2005-0000-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Office InfoPath MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0044-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Outlook MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001A-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office PowerPoint MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0018-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Professional Plus 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Professional Plus 2007 - (.Microsoft Corporation.) [HKLM] -- PROPLUS =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Office Proof (Arabic) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0401-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proof (Dutch) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0413-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proof (English) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0409-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proof (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proof (German) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0407-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proof (Spanish) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0C0A-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proofing (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-002C-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0401-0000-0000000FF1CE}_PROPLUS_{3E8EA473-ECCE-405F-A9CA-59446AEADD3A} [Unsigned] =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0407-0000-0000000FF1CE}_PROPLUS_{928D7B99-2BEA-49F9-83B8-20FA57860643} [Unsigned] =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0409-0000-0000000FF1CE}_PROPLUS_{1FF96026-A04A-4C3E-B50A-BB7022654D0F} [Unsigned] =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-040C-0000-0000000FF1CE}_PROPLUS_{71F055E8-E2C6-4214-BB3D-BFE03561B89E} [Unsigned] =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0413-0000-0000000FF1CE}_PROPLUS_{2C95E7EE-FEA7-4B3A-A6E5-DF90A88B816A} [Unsigned] =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0C0A-0000-0000000FF1CE}_PROPLUS_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC} [Unsigned] =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office Publisher MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0019-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Shared MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-006E-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Word MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001B-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU] -- OneDriveSetup.exe =>.Microsoft®
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM] -- {770657D0-A123-3C07-8E44-1C83EC895118} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 - (.Microsoft Corporation.) [HKLM] -- {86CE85E6-DBAC-3FFD-B977-E4B79F83C909} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218 - (.Microsoft Corporation.) [HKLM] -- {E503B4BF-F7BB-3D5F-8BC8-F694B1CFF942} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 - (.Microsoft Corporation.) [HKLM] -- {196BB40D-1578-3D01-B289-BEFC77A11A1E} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 - (.Microsoft Corporation.) [HKLM] -- {33d1fd90-4274-48a1-9bc1-97e33d9c2d6f} =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM] -- {B175520C-86A2-35A7-8619-86DC379688B9} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM] -- {BD95A8CD-1D9F-35AD-981A-3E7925026EBB} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 - (.Microsoft Corporation.) [HKLM] -- {f65db027-aff3-4070-886a-0d87064aabb1} =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM] -- {F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM] -- {13A4EE12-23EA-3371-91EE-EFB36DDFFF3E} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 - (.Microsoft Corporation.) [HKLM] -- {e2803110-78b3-4664-a479-3611a381656a} =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24215 - (.Microsoft Corporation.) [HKLM] -- {69BCE4AC-9572-3271-A2FB-9423BDA36A43} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24215 - (.Microsoft Corporation.) [HKLM] -- {BBF2AC74-720C-3CB3-8291-5E34039232FA} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Works 7.0 - (.Microsoft Corporation.) [HKLM] -- {64D114CE-4234-45C2-B60A-2B07D5A48F72} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Mise à jour Microsoft Office Excel 2007 Help (KB963678) - (.Microsoft.) [HKLM] -- {90120000-0016-040C-0000-0000000FF1CE}_PROPLUS_{B761869A-B85C-40E2-994C-A1CE78AC8F2C} [Unsigned] =>.Microsoft
O42 - Logiciel: Mise à jour Microsoft Office Outlook 2007 Help (KB963677) - (.Microsoft.) [HKLM] -- {90120000-001A-040C-0000-0000000FF1CE}_PROPLUS_{51EFB347-1F3D-4BAC-8B79-F056B904FE21} [Unsigned] =>.Microsoft
O42 - Logiciel: Mise à jour Microsoft Office Powerpoint 2007 Help (KB963669) - (.Microsoft.) [HKLM] -- {90120000-0018-040C-0000-0000000FF1CE}_PROPLUS_{C3DCA38E-005E-41BA-A52A-7C3429F351C3} [Unsigned] =>.Microsoft
O42 - Logiciel: Mise à jour Microsoft Office Word 2007 Help (KB963665) - (.Microsoft.) [HKLM] -- {90120000-001B-040C-0000-0000000FF1CE}_PROPLUS_{81536A04-DBFB-4DB3-978F-0F284590C223} [Unsigned] =>.Microsoft
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} [Unsigned] =>.Microsoft (Hidden)
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: neroxml - (.Nero AG.) [HKLM] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B} [Unsigned] =>.Nero AG (Hidden)
O42 - Logiciel: Photo to Sketch 4.0 - (.Thinker Software, Inc..) [HKLM] -- {42CC40A6-332E-4F53-8FB8-BD6D77D764FB}_is1 [Unsigned] =>.Thinker Software, Inc.
O42 - Logiciel: PhotoFiltre 7 - (.Antonio Da Cruz.) [HKCU] -- PhotoFiltre 7 [Unsigned] =>.Antonio Da Cruz
O42 - Logiciel: Realtek Ethernet Controller Driver For Windows Vista and Later - (.Realtek.) [HKLM] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp.®
O42 - Logiciel: Recuva - (.Piriform.) [HKLM] -- Recuva =>.Piriform Ltd®
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596650) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{DF2F5DAC-93D7-434B-96B1-EAF4D891AD24} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{B145DBBB-7778-4A5D-9D2B-DA6569F02391} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{E34960DB-2A93-45DB-A208-02650F7AB09C} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596825) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{B7727B4D-5EA3-4C11-9D30-15E47616DCAF} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{293FB6BE-D3EB-4162-B522-F9108040B9FE} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596904) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{5BF3F29E-C924-48BB-AA3C-EA2BA14B7027} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{2B3C041A-A7F2-4A24-968D-4BEB6A123D15} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2825645) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{BF11577A-6876-45AA-86C9-2BA4CFB8B019} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2850022) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6B4A3804-666A-4DD8-84A7-B97701416784} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2880507) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{36842896-D83B-4C92-8261-6312B7DEB562} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2880508) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{4C1BE82B-9AC0-4AB9-B76D-5467131955E1} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2881067) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{08F2015D-61E9-4252-9355-AB8D15C73C96} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2956110) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{488CDF0A-098C-4CF5-8552-DA5F2F7B7829} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2984938) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{E359D786-B101-4545-B8AB-8652323CF3CA} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2984943) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{800D1A82-D1B0-4ED4-89B4-C666B570ABA5} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2986253) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{1EBDB402-7B61-4224-994D-6882DC69F493} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB3085549) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{8D2CDFAB-0079-43CC-A289-2F7A67F0A4DE} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB3213641) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{F5E44FF6-5802-4FCC-B0CA-6C2C0C455CA3} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB4011656) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-006E-040C-0000-0000000FF1CE}_PROPLUS_{06180089-0302-4F85-BE6E-D4E0A9906FD9} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB4011715) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{8711951B-FD11-4309-BD11-8A19551CEBC9} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office Access 2007 (KB2596614) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{7F774C8A-B1CE-486C-A64E-EA96AE48B813} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office Compatibility Pack Service Pack 3 (KB4 - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{5C007116-E724-483B-BE67-870B5DB121A5} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office Compatibility Pack Service Pack 3 (KB4 - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{60463207-1C72-43FF-BE7E-E8E3A23FB756} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office Excel 2007 (KB4018353) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{59859CCA-ECF5-407F-801A-99C0AA65DD92} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Editi - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{8F311D6C-D8DD-4C32-9457-1A129CABD1A5} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office InfoPath 2007 (KB3114426) 32-Bit Editi - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{26C5C75F-E1FD-4F95-AA29-CA221C3AFEEE} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office Outlook 2007 (KB4011200) 32-Bit Editio - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6612D084-0180-4A86-B2B3-FDFA4E7F9DF9} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office Outlook 2007 (KB4011200) 32-Bit Editio - (.Microsoft.) [HKLM] -- {90120000-001A-040C-0000-0000000FF1CE}_PROPLUS_{F08C1474-AD3C-43AA-9AB9-C189FD832259} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edi - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{0EF0D4FB-BB23-4515-AAEA-1240AC2DA525} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office PowerPoint 2007 (KB3213642) 32-Bit Edi - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{81769578-260D-428A-90BD-BDC1AD58061A} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office Visio Viewer 2007 (KB2596915) 32-Bit E - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{7FE99CC2-FBE5-422F-A6FB-49E0D8AFE919} [Unsigned] =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office Word 2007 (KB4018355) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6C57A6AB-7AEC-47A2-BDA9-B157361F37DE} [Unsigned] =>.Microsoft
O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} [Unsigned] =>.Adobe Systems, Inc (Hidden)
O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU] -- UnityWebPlayer [Unsigned] =>.Unity Technologies ApS
O42 - Logiciel: Unlocker 1.9.2 - (.Cedrick Collomb.) [HKLM] -- Unlocker [Unsigned] =>.Cedrick Collomb
O42 - Logiciel: Update for 2007 Microsoft Office System (KB967642) - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{C444285D-5E4F-48A4-91DD-47AAAA68E92D} [Unsigned] =>.Microsoft
O42 - Logiciel: Update for Microsoft Office 2007 (KB2508958) - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{0C5823AA-7B6F-44E1-8D5B-8FD1FF0E6438} [Unsigned] =>.Microsoft
O42 - Logiciel: Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{A024FC7B-77DE-45DE-A058-1C049A17BFB3} [Unsigned] =>.Microsoft
O42 - Logiciel: Update for Microsoft Office 2007 suites (KB2596787) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{02206DCC-0CAF-46BB-8EDC-6C281AA21EFA} [Unsigned] =>.Microsoft
O42 - Logiciel: Update for Microsoft Office 2007 suites (KB2596787) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-006E-040C-0000-0000000FF1CE}_PROPLUS_{02206DCC-0CAF-46BB-8EDC-6C281AA21EFA} [Unsigned] =>.Microsoft
O42 - Logiciel: Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{E9A82945-BA29-4EE8-8F2A-2F49545E9CF2} [Unsigned] =>.Microsoft
O42 - Logiciel: Update for Microsoft Office 2007 suites (KB2965286) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{7C3337E5-1294-4270-A64F-DCEF812159E5} [Unsigned] =>.Microsoft
O42 - Logiciel: Update for Microsoft Office 2007 suites (KB3213646) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-006E-040C-0000-0000000FF1CE}_PROPLUS_{54689E6A-2CDC-4B4F-B2FD-78C129EC68B3} [Unsigned] =>.Microsoft
O42 - Logiciel: Update for Microsoft Office 2007 suites (KB3213649) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{E39085A9-74AC-465D-8240-E7AF57F3BA44} [Unsigned] =>.Microsoft
O42 - Logiciel: Update for Microsoft Office Outlook 2007 Junk Email Filter (KB3115461) 32-B - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{8C829BE5-F60C-417A-89E3-9A1B427320F2} [Unsigned] =>.Microsoft
O42 - Logiciel: Update for Microsoft Office Publisher 2007 (KB4011203) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{962B4B3F-E8E5-4E11-B64B-1885D7F41BAA} [Unsigned] =>.Microsoft
O42 - Logiciel: Update for Windows 10 (KB4023057) - (.Microsoft Corporation.) [HKLM] -- {5C207BB6-2176-4CA6-AA4B-99FA42EF5BC1} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Utilitaire client sans fil TP-LINK - (.TP-LINK.) [HKLM] -- {BD9FA1D6-DFA7-4C89-8956-D96CCC7A296A} [Unsigned] =>.TP-LINK
O42 - Logiciel: ViewRight Web PC 3.6.0.0 - (.Verimatrix, Inc..) [HKLM] -- {27961C9F-1965-48D9-A579-40F8EBEA0603} [Unsigned] =>.Verimatrix, Inc.
O42 - Logiciel: Visual C++ 2008 x86 Runtime - (v9.0.30729) - (.Microsoft Corporation.) [HKLM] -- {F333A33D-125C-32A2-8DCE-5C5D14231E27} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player [Unsigned] =>.VideoLAN
O42 - Logiciel: WhoCrashed 6.65 - (.Resplendence Software Projects Sp..) [HKLM] -- WhoCrashed_is1 [Unsigned] =>.Resplendence Software Projects Sp.
O42 - Logiciel: Windows Live - (.Microsoft Corporation.) [HKLM] -- {34319F1F-7CF2-4CC9-B357-1AE7D2FF3AC5} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows Live - (.Microsoft Corporation.) [HKLM] -- WinLiveSuite =>.Microsoft®
O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM] -- {D45240D3-B6B3-4FF9-B243-54ECE3E10066} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows Live ID Sign-in Assistant - (.Microsoft Corporation.) [HKLM] -- {61AD15B2-50DB-4686-A739-14FE180D4429} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows Live Installer - (.Microsoft Corporation.) [HKLM] -- {0B0F231F-CE6A-483D-AA23-77B364F75917} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM] -- {6057E21C-ABE9-4059-AE3E-3BEB9925E660} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM] -- {EB4DF488-AAEF-406F-A341-CB2AAA315B90} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows Live Photo Common - (.Microsoft Corporation.) [HKLM] -- {A9BDCA6B-3653-467B-AC83-94367DA3BFE3} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows Live Photo Common - (.Microsoft Corporation.) [HKLM] -- {C893D8C0-1BA0-4517-B11C-E89B65E72F70} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows Live PIMT Platform - (.Microsoft Corporation.) [HKLM] -- {4CBABDFD-49F8-47FD-BE7D-ECDE7270525A} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows Live SOXE - (.Microsoft Corporation.) [HKLM] -- {682B3E4F-696A-42DE-A41C-4C07EA1678B4} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows Live SOXE Definitions - (.Microsoft Corporation.) [HKLM] -- {200FEC62-3C34-4D60-9CE8-EC372E01C08F} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows Live UX Platform - (.Microsoft Corporation.) [HKLM] -- {CE95A79E-E4FC-4FFF-8A75-29F04B942FF2} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows Live UX Platform Language Pack - (.Microsoft Corporation.) [HKLM] -- {09F56A49-A7B1-4AAB-95B9-D13094254AD1} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows Movie Maker 2.6 - (.Microsoft Corporation.) [HKLM] -- {B3DAF54F-DB25-4586-9EF1-96D24BB14088} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: WinPcap 4.1.1 - (.CACE Technologies.) [HKLM] -- WinPcapInst [Unsigned] =>.CACE Technologies

---\\ CLÉ DE REGISTRE SOFTWARE HKCU & HKLM (268) - 50s
HKLM\SOFTWARE\Adblock Plus for IE =>.Wladimir Palant
HKLM\SOFTWARE\Adobe =>.Adobe
HKLM\SOFTWARE\AdwCleaner =>.Malwarebytes
HKLM\SOFTWARE\Ahead =>.Ahead
HKLM\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKLM\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
HKLM\SOFTWARE\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\Atheros =>.Qualcomm Atheros
HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies
HKLM\SOFTWARE\AVAST Software =>.AVAST Software
HKLM\SOFTWARE\BlueStacksInstaller
HKLM\SOFTWARE\BrowserChoice =>.Microsoft Corporation
HKLM\SOFTWARE\Bunndle =>.Unknown
HKLM\SOFTWARE\Canneverbe Limited =>.Canneverbe Limited
HKLM\SOFTWARE\CPUID =>.CPUID Inc
HKLM\SOFTWARE\Creative Tech =>.Creative Tech
HKLM\SOFTWARE\CVSM =>.Legitimate
HKLM\SOFTWARE\DefaultUserEnvironment =>.Microsoft Corporation
HKLM\SOFTWARE\Dolby =>.Dolby
HKLM\SOFTWARE\DTS =>.Creative Technology
HKLM\SOFTWARE\DVDVideoSoft =>.DVDVideoSoft
HKLM\SOFTWARE\EID =>.EID
HKLM\SOFTWARE\Electronic Arts =>.Electronic Arts
HKLM\SOFTWARE\FileZilla 3 =>.FileZilla
HKLM\SOFTWARE\FileZilla Client =>.Tim Kosse
HKLM\SOFTWARE\Fortemedia =>.Lugert Europe
HKLM\SOFTWARE\GEAR Software =>.GEAR Software
HKLM\SOFTWARE\Google =>.Google
HKLM\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\InterVideo =>.InterVideo
HKLM\SOFTWARE\JavaSoft =>.JavaSoft
HKLM\SOFTWARE\JreMetrics =>.JreMetrics
HKLM\SOFTWARE\Knowles =>.Knowles Electronics
HKLM\SOFTWARE\Licenses =>.Microsoft Corporation
HKLM\SOFTWARE\Macromedia =>.Macromedia
HKLM\SOFTWARE\Malwarebytes =>.Malwarebytes
HKLM\SOFTWARE\Malwarebytes' Anti-Malware =>.Malwarebytes' Anti-Malware
HKLM\SOFTWARE\McAfee.com =>.McAfee Inc.
HKLM\SOFTWARE\MidasHeurScanner
HKLM\SOFTWARE\MimarSinan =>.Mimar Sinan
HKLM\SOFTWARE\Mozilla =>.Mozilla
HKLM\SOFTWARE\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\Nahimic =>.Nahimic
HKLM\SOFTWARE\Nero =>.Ahead Corporation
HKLM\SOFTWARE\Nuance =>.Nuance
HKLM\SOFTWARE\ObviousIdea =>.ObviousIdea
HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\OEM =>.OEM
HKLM\SOFTWARE\OpenSSH =>.OpenBSD
HKLM\SOFTWARE\Oracle =>.Oracle
HKLM\SOFTWARE\Origin Games =>.Electronic Arts, Inc.
HKLM\SOFTWARE\Partner =>.Google Inc.
HKLM\SOFTWARE\PDF Architect 2 =>.pdfforge GmbH
HKLM\SOFTWARE\Piriform =>.Piriform
HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\RTLSetup =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\Safer Networking Limited =>.Safer Networking Limited
HKLM\SOFTWARE\Samsung =>.Samsung Electronics
HKLM\SOFTWARE\Silicon Laboratories, Inc. =>.Silicon Laboratories, Inc.
HKLM\SOFTWARE\Skype =>.Skype
HKLM\SOFTWARE\Sonic =>.Sonic
HKLM\SOFTWARE\SonicFocus =>.Sonic Focus
HKLM\SOFTWARE\SoundResearch =>.Sound Research
HKLM\SOFTWARE\SRS Labs =>.SRS Labs
HKLM\SOFTWARE\SuppHelpDir =>.Toshiba Corporation
HKLM\SOFTWARE\Symantec =>.Symantec
HKLM\SOFTWARE\TeamViewer =>.TeamViewer GmbH
HKLM\SOFTWARE\thinker software =>.Thinker Software
HKLM\SOFTWARE\TP-LINK =>.TP-LINK
HKLM\SOFTWARE\VDownloader =>.Vitzo Limited
HKLM\SOFTWARE\Verimatrix =>.Verimatrix
HKLM\SOFTWARE\VideoLAN =>.VideoLan Team
HKLM\SOFTWARE\Volatile =>.Microsoft Corporation
HKLM\SOFTWARE\WafCX =>.WafCX
HKLM\SOFTWARE\Waves Audio =>.Waves Audio
HKLM\SOFTWARE\Windows =>.Microsoft Corporation
HKLM\SOFTWARE\WinPcap =>.Riverbed Technology
HKLM\SOFTWARE\Wondershare =>.Wondershare
HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\Yahoo =>.Yahoo! Inc.
HKLM\SOFTWARE\WOW6432Node\Google =>.Google
HKCU\SOFTWARE\AdblockPlus =>.Wladimir Palant
HKCU\SOFTWARE\Adobe =>.Adobe
HKCU\SOFTWARE\Amazon =>.Amazon
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc. =>.Apple Inc.
HKCU\SOFTWARE\Avanquest =>.Avanquest
HKCU\SOFTWARE\AVAST Software =>.AVAST Software
HKCU\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o
HKCU\SOFTWARE\AXEL =>.AXEL
HKCU\SOFTWARE\Axis Communications =>.Axis Communications
HKCU\SOFTWARE\BlueStacksInstaller
HKCU\SOFTWARE\Bossa Studios =>.Bossa Studios
HKCU\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o
HKCU\SOFTWARE\Bugsplat =>.Bugsplat Game
HKCU\SOFTWARE\CamStudioOpenSource for Nick =>.Open Source
HKCU\SOFTWARE\Canneverbe Limited =>.Canneverbe Limited
HKCU\SOFTWARE\ChromeExtension
HKCU\SOFTWARE\Chromium =>.Chromium
HKCU\SOFTWARE\d3Digital illusions
HKCU\SOFTWARE\Digital Photo Software =>.Digital Photo Software
HKCU\SOFTWARE\DownloadCenter =>.DownloadCenter
HKCU\SOFTWARE\Dropbox =>.Dropbox
HKCU\SOFTWARE\DropboxUpdate =>.Dropbox Inc.
HKCU\SOFTWARE\DSS =>.DSS Software
HKCU\SOFTWARE\Electronic Arts =>.Electronic Arts
HKCU\SOFTWARE\FLEXlm License Manager =>.FlexNet
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKCU\SOFTWARE\HookNetwork =>.Hook Network
HKCU\SOFTWARE\HP =>.HP
HKCU\SOFTWARE\IE Tab
HKCU\SOFTWARE\IM Providers =>.IM Providers
HKCU\SOFTWARE\INTEL =>.Intel
HKCU\SOFTWARE\Jasc =>.Jasc
HKCU\SOFTWARE\kde.org =>.kde.org
HKCU\SOFTWARE\Licenses =>.Microsoft Corporation
HKCU\SOFTWARE\Local AppWizard-Generated Applications =>.ZWCAD
HKCU\SOFTWARE\LowRegistry =>.LG Electronics Inc
HKCU\SOFTWARE\Macromedia =>.Macromedia
HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes
HKCU\SOFTWARE\Malwarebytes' Anti-Malware =>.Malwarebytes' Anti-Malware
HKCU\SOFTWARE\MarineCat =>.MarineCat Software
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKCU\SOFTWARE\Nero =>.Ahead Corporation
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\ObviousIdea =>.ObviousIdea
HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKCU\SOFTWARE\Opera Software =>.Opera Software
HKCU\SOFTWARE\Petr Lastovicka
HKCU\SOFTWARE\PhotoFiltre 7 =>.Antonio Da Cruz
HKCU\SOFTWARE\PhotoFiltre Studio X =>.Antonio Da Cruz
HKCU\SOFTWARE\Piriform =>.Piriform
HKCU\SOFTWARE\QtProject =>.QtProject
HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\Resplendence Sp =>.Resplendence Software
HKCU\SOFTWARE\runtastic
HKCU\SOFTWARE\Skype =>.Skype
HKCU\SOFTWARE\SmartDeblur =>.Vladimir Yuzhikov
HKCU\SOFTWARE\Software =>.Unknown
HKCU\SOFTWARE\SyncEngines =>.Microsoft Corporation
HKCU\SOFTWARE\Sysinternals =>.Sysinternals
HKCU\SOFTWARE\TeamViewer =>.TeamViewer GmbH
HKCU\SOFTWARE\Topalt =>.Topalt
HKCU\SOFTWARE\Trolltech =>.Trolltech
HKCU\SOFTWARE\Unity =>.Unity
HKCU\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation
HKCU\SOFTWARE\Verimatrix =>.Verimatrix
HKCU\SOFTWARE\VirtualDJ =>.Atomix Production
HKCU\SOFTWARE\VSRevoGroup =>.VS Revo Group
HKCU\SOFTWARE\WahOO =>.Siber Systems Inc.
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\Wondershare =>.Wondershare
HKCU\SOFTWARE\XnView =>.Pierre-Emmanuel Gougelet
HKCU\SOFTWARE\ZebHelpProcess Helper =>.Nicolas Coolman
HKCU\SOFTWARE\Zeta Uploader
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\AppDataLow\Google =>.Google
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
HKCU\SOFTWARE\AppDataLow\Software\Adobe =>.Adobe
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft =>.JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\Macromedia =>.Macromedia
HKCU\SOFTWARE\AppDataLow\Software\Unity =>.Unity
HKCU\SOFTWARE\AppDataLow\Software\Yahoo =>.Yahoo! Inc.
HKU\.DEFAULT\SOFTWARE\45918InstEnd
HKU\.DEFAULT\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKU\.DEFAULT\SOFTWARE\Apple Inc. =>.Apple Inc.
HKU\.DEFAULT\SOFTWARE\Avast Software =>.AVAST Software
HKU\.DEFAULT\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o
HKU\.DEFAULT\SOFTWARE\Google =>.Google
HKU\.DEFAULT\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKU\.DEFAULT\SOFTWARE\Intel =>.Intel
HKU\.DEFAULT\SOFTWARE\Macromedia =>.Macromedia
HKU\.DEFAULT\SOFTWARE\Malwarebytes =>.Malwarebytes
HKU\.DEFAULT\SOFTWARE\Nahimic =>.Nahimic
HKU\.DEFAULT\SOFTWARE\Netscape =>.Netscape
HKU\.DEFAULT\SOFTWARE\Piriform =>.Piriform
HKU\.DEFAULT\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKU\.DEFAULT\SOFTWARE\SetID =>.Bitdefender
HKU\.DEFAULT\SOFTWARE\WinRAR =>.WinRAR
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\AdblockPlus =>.Wladimir Palant
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Adobe =>.Adobe
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Amazon =>.Amazon
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Apple Inc. =>.Apple Inc.
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Avanquest =>.Avanquest
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\AVAST Software =>.AVAST Software
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\AXEL =>.AXEL
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Axis Communications =>.Axis Communications
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\BlueStacksInstaller
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Bossa Studios =>.Bossa Studios
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Bugsplat =>.Bugsplat Game
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\CamStudioOpenSource for Nick =>.Open Source
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Canneverbe Limited =>.Canneverbe Limited
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\ChromeExtension
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Chromium =>.Chromium
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\d3Digital illusions
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Digital Photo Software =>.Digital Photo Software
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\DownloadCenter =>.DownloadCenter
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Dropbox =>.Dropbox
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\DropboxUpdate =>.Dropbox Inc.
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\DSS =>.DSS Software
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Electronic Arts =>.Electronic Arts
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\FLEXlm License Manager =>.FlexNet
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Google =>.Google
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\HookNetwork =>.Hook Network
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\HP =>.HP
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\IE Tab
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\IM Providers =>.IM Providers
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\INTEL =>.Intel
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Jasc =>.Jasc
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\kde.org =>.kde.org
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Licenses =>.Microsoft Corporation
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Local AppWizard-Generated Applications =>.ZWCAD
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\LowRegistry =>.LG Electronics Inc
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Macromedia =>.Macromedia
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Malwarebytes =>.Malwarebytes
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Malwarebytes' Anti-Malware =>.Malwarebytes' Anti-Malware
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\MarineCat =>.MarineCat Software
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Mozilla =>.Mozilla
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Nero =>.Ahead Corporation
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Netscape =>.Netscape
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\ObviousIdea =>.ObviousIdea
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Opera Software =>.Opera Software
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Petr Lastovicka
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\PhotoFiltre 7 =>.Antonio Da Cruz
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\PhotoFiltre Studio X =>.Antonio Da Cruz
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Piriform =>.Piriform
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\QtProject =>.QtProject
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Resplendence Sp =>.Resplendence Software
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\runtastic
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Skype =>.Skype
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\SmartDeblur =>.Vladimir Yuzhikov
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Software =>.Unknown
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\SyncEngines =>.Microsoft Corporation
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Sysinternals =>.Sysinternals
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\TeamViewer =>.TeamViewer GmbH
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Topalt =>.Topalt
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Trolltech =>.Trolltech
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Unity =>.Unity
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Verimatrix =>.Verimatrix
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\VirtualDJ =>.Atomix Production
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\VSRevoGroup =>.VS Revo Group
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\WahOO =>.Siber Systems Inc.
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\WinRAR =>.WinRAR
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\WinRAR SFX =>.RarLab
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Wondershare =>.Wondershare
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\XnView =>.Pierre-Emmanuel Gougelet
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\ZebHelpProcess Helper =>.Nicolas Coolman
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\Zeta Uploader
HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\SOFTWARE\ZHP =>.Nicolas Coolman

---\\ PACKAGES (13) - 0s
C:\Program Files\WindowsApps\1527c705-839a-4832-9118-54d4Bd6a0c89_10.0.18362.267_neutral_neutral_cw5n1h2txyewy - (..) [][]
C:\Program Files\WindowsApps\19965MATTHAFNER.WIFIANALYZER_2.6.1.0_x86__gs5k5vmxr2ste - (.Matt Hafner.) [18/04/2020][WiFi Analyzer]
C:\Program Files\WindowsApps\9E2F88E3.Twitter_6.1.4.1000_neutral__wgeqdkkx372wm - (.Twitter Inc..) [09/09/2018][Twitter] =>Twitter Inc.
C:\Program Files\WindowsApps\BouyguesTelecom.B.tv_4.52.2.0_x86__zffmaw26y6va6 - (.Bouygues Telecom.) [02/08/2020][B.tv] =>Bouygues Telecom
C:\Program Files\WindowsApps\c5e2524a-ea46-4f67-841f-6a9465d9d515_10.0.18362.267_neutral_neutral_cw5n1h2txyewy - (..) [][]
C:\Program Files\WindowsApps\E2A4F912-2574-4A75-9BB0-0D023378592B_10.0.18362.267_neutral_neutral_cw5n1h2txyewy - (..) [][]
C:\Program Files\WindowsApps\F46D4000-FD22-4DB4-AC8E-4E1DDDE828FE_10.0.18362.267_neutral_neutral_cw5n1h2txyewy - (..) [][]
C:\Program Files\WindowsApps\Facebook.Facebook_186.2619.19263.0_x86__8xx8rvfyw5nnt - (.Facebook Inc.) [10/10/2019][Facebook] =>Facebook Inc
C:\Program Files\WindowsApps\Flipboard.Flipboard_2.1.3.0_neutral__3f5azkryzdbc4 - (.Flipboard.) [15/07/2017][Flipboard] =>Flipboard
C:\Program Files\WindowsApps\king.com.CandyCrushSodaSaga_1.175.200.0_x86__kgqvnymyfvs32 - (.king.com.) [23/08/2020][Candy Crush Soda Saga] =>king.com
C:\Program Files\WindowsApps\MicrosoftWindows.Client.CBS_120.2212.31.0_x86__cw5n1h2txyewy - (..) [][Windows Feature Experience Pack]
C:\Program Files\WindowsApps\MicrosoftWindows.UndockedDevKit_10.0.19041.423_neutral_neutral_cw5n1h2txyewy - (.Microsoft Corporation.) [][UDK Package] =>Microsoft Corporation
C:\Program Files\WindowsApps\NcsiUwpApp_1000.19041.423.0_neutral_neutral_8wekyb3d8bbwe - (.Microsoft.) [][NcsiUwpApp] =>Microsoft

---\\ CONTENU DES DOSSIERS PROGRAMMES (1521) - 208s
O43 - CFD: 28/09/2015 - [] AD -- C:\Program Files\Adblock Plus for IE =>.Adblock
O43 - CFD: 01/11/2015 - [] D -- C:\Program Files\Adobe =>.Adobe Inc.®
O43 - CFD: 11/08/2013 - [] D -- C:\Program Files\adslTV =>.adslTV
O43 - CFD: 20/04/2020 - [] D -- C:\Program Files\AirDroid =>.AirDroid
O43 - CFD: 29/03/2015 - [0] D -- C:\Program Files\AnvSoft =>.AnvSoft Inc
O43 - CFD: 02/12/2010 - [] D -- C:\Program Files\Axis Communications =>.Axis Communications
O43 - CFD: 12/08/2010 - [] D -- C:\Program Files\Barre de Confiance [Unsigned]
O43 - CFD: 14/08/2014 - [] AD -- C:\Program Files\Bonjour =>.Apple Inc.
O43 - CFD: 25/08/2020 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd
O43 - CFD: 15/09/2016 - [] AD -- C:\Program Files\CDBurnerXP =>.Stefan Haglund
O43 - CFD: 20/07/2020 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 09/03/2019 - [] D -- C:\Program Files\CPUID =>.CPUID Inc
O43 - CFD: 23/03/2016 - [] AD -- C:\Program Files\Defraggler =>.Piriform Ltd
O43 - CFD: 18/11/2015 - [] D -- C:\Program Files\DVD Maker =>.Aone Software
O43 - CFD: 23/02/2013 - [] D -- C:\Program Files\EA Games =>.EA Games
O43 - CFD: 30/03/2018 - [] D -- C:\Program Files\Emmet Gray =>.Emmet Gray
O43 - CFD: 26/02/2011 - [] D -- C:\Program Files\Feedback Tool =>.Microsoft Corporation
O43 - CFD: 14/01/2010 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation
O43 - CFD: 21/09/2015 - [] AD -- C:\Program Files\FileZilla FTP Client =>.Tim Kosse
O43 - CFD: 30/01/2018 - [] D -- C:\Program Files\Foto-Mosaik-Edda =>.Steffen Schirmer
O43 - CFD: 13/08/2020 - [] D -- C:\Program Files\Google =>.Google Inc®
O43 - CFD: 19/04/2013 - [] D -- C:\Program Files\HP =>.Hewlett-Packard
O43 - CFD: 17/02/2015 - [] HD -- C:\Program Files\InstallShield Installation Information =>.InstallShield
O43 - CFD: 02/08/2020 - [] AD -- C:\Program Files\Intel =>.Intel Corporation
O43 - CFD: 20/04/2020 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 15/08/2010 - [] D -- C:\Program Files\Jasc Software Inc [Unsigned] =>.Jasc Software Inc
O43 - CFD: 20/07/2020 - [] D -- C:\Program Files\Java =>.Oracle
O43 - CFD: 17/10/2009 - [] D -- C:\Program Files\KompoZer-0.8b1 [Unsigned]
O43 - CFD: 29/08/2020 - [] D -- C:\Program Files\Lavasoft =>.Lavasoft
O43 - CFD: 14/08/2014 - [0] D -- C:\Program Files\LEGO Company =>.LEGO Software
O43 - CFD: 05/11/2017 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes
O43 - CFD: 05/11/2017 - [0] AD -- C:\Program Files\Malwarebytes Anti-Malware =>.Malwarebytes
O43 - CFD: 28/06/2014 - [0] D -- C:\Program Files\Malwarebytes' Anti-Malware =>.Malwarebytes' Anti-Malware
O43 - CFD: 20/04/2020 - [] D -- C:\Program Files\Microsoft =>.Microsoft Corporation
O43 - CFD: 20/04/2020 - [] D -- C:\Program Files\Microsoft Games =>.Microsoft Corporation
O43 - CFD: 29/06/2011 - [] AD -- C:\Program Files\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 29/05/2015 - [] D -- C:\Program Files\Microsoft OneDrive =>.Microsoft Corporation
O43 - CFD: 17/01/2019 - [] AD -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 02/02/2013 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition =>.Microsoft Corporation
O43 - CFD: 30/07/2010 - [] D -- C:\Program Files\Microsoft Visual Studio =>.Microsoft Corporation
O43 - CFD: 30/07/2010 - [] AD -- C:\Program Files\Microsoft Visual Studio 8 =>.Microsoft Corporation
O43 - CFD: 04/08/2010 - [] AD -- C:\Program Files\Microsoft Works =>.Microsoft Corporation
O43 - CFD: 20/04/2020 - [] D -- C:\Program Files\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [0] D -- C:\Program Files\ModifiableWindowsApps =>.Microsoft Corporation
O43 - CFD: 05/01/2014 - [] D -- C:\Program Files\Movie Maker 2.6 =>.Microsoft Corporation
O43 - CFD: 23/11/2018 - [] AD -- C:\Program Files\Mozilla Firefox =>.Mozilla
O43 - CFD: 23/11/2018 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla
O43 - CFD: 20/04/2020 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 30/07/2010 - [0] D -- C:\Program Files\MSXML 4.0 =>.Microsoft Corporation
O43 - CFD: 30/07/2010 - [] D -- C:\Program Files\OpenOffice.org 3 =>.SourceForge
O43 - CFD: 16/04/2018 - [] AD -- C:\Program Files\Photo to Sketch [Unsigned]
O43 - CFD: 17/09/2016 - [] D -- C:\Program Files\photofiltre =>.Antonio Da Cruz
O43 - CFD: 20/04/2020 - [] D -- C:\Program Files\Realtek =>.Realtek
O43 - CFD: 16/11/2019 - [] AD -- C:\Program Files\Recuva =>.Piriform
O43 - CFD: 20/04/2020 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 07/12/2018 - [] D -- C:\Program Files\rempl =>.Microsoft Corporation
O43 - CFD: 30/04/2017 - [] D -- C:\Program Files\Silabs =>.SiLabs
O43 - CFD: 12/09/2015 - [] RD -- C:\Program Files\Skype =>.Skype
O43 - CFD: 13/05/2018 - [0] HD -- C:\Program Files\Temp =>.Microsoft Corporation
O43 - CFD: 24/08/2013 - [] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 23/02/2015 - [] D -- C:\Program Files\Unlocker =>.Cedrick Collomb
O43 - CFD: 05/04/2016 - [] AD -- C:\Program Files\Verimatrix =>.Verimatrix Inc
O43 - CFD: 11/08/2013 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team
O43 - CFD: 10/02/2020 - [] AD -- C:\Program Files\WhoCrashed =>.Resplendence Software
O43 - CFD: 20/04/2020 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 05/01/2014 - [] AD -- C:\Program Files\Windows Live =>.Microsoft Corporation
O43 - CFD: 15/07/2020 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 10/06/2020 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation
O43 - CFD: 10/06/2020 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows Security =>.Microsoft Corporation
O43 - CFD: 20/04/2020 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 29/08/2020 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 24/09/2012 - [] D -- C:\Program Files\WinPcap =>.Riverbed Technology
O43 - CFD: 14/01/2010 - [] D -- C:\Program Files\WinRAR [Unsigned] =>.WinRAR
O43 - CFD: 19/10/2019 - [] D -- C:\Program Files\Yahoo! =>.Yahoo!
O43 - CFD: 05/03/2016 - [] AD -- C:\Program Files\ZHPFix =>.Nicolas Coolman
O43 - CFD: 13/08/2020 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 13/08/2020 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 13/08/2020 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 20/04/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AirDroid =>.AirDroid
O43 - CFD: 10/07/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup and Sync from Google
O43 - CFD: 25/08/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd
O43 - CFD: 20/04/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID =>.CPUID Inc
O43 - CFD: 20/04/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client =>.Tim Kosse
O43 - CFD: 20/04/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foto-Mosaik-Edda =>.Steffen Schirmer
O43 - CFD: 28/03/2015 - [0] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
O43 - CFD: 20/04/2020 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel =>.Intel Corporation
O43 - CFD: 20/04/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Jasc Software =>.Jasc Software Inc.
O43 - CFD: 20/07/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle
O43 - CFD: 19/10/2019 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft =>.Lavasoft
O43 - CFD: 29/08/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft Ad-Aware SE Personal
O43 - CFD: 07/12/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 20/04/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 20/04/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 20/04/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works =>.Microsoft Corporation
O43 - CFD: 23/03/2017 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin =>.Electronic Arts, Inc.
O43 - CFD: 20/04/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo to Sketch
O43 - CFD: 20/04/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recuva =>.Piriform
O43 - CFD: 07/12/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 20/04/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team
O43 - CFD: 20/04/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WhoCrashed =>.Resplendence Software
O43 - CFD: 07/12/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation
O43 - CFD: 20/04/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\AirDroid =>.AirDroid
O43 - CFD: 12/09/2015 - [] D -- C:\ProgramData\Apple =>.Apple Inc.
O43 - CFD: 25/01/2014 - [] D -- C:\ProgramData\Apple Computer =>.Apple Inc.
O43 - CFD: 20/04/2020 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 17/02/2015 - [] D -- C:\ProgramData\Avanquest =>.Avanquest
O43 - CFD: 19/02/2015 - [] D -- C:\ProgramData\Avanquest Software =>.Avanquest Software
O43 - CFD: 20/08/2019 - [] D -- C:\ProgramData\AVAST Software =>.AVAST Software
O43 - CFD: 24/08/2010 - [] D -- C:\ProgramData\BitDefender =>.Bitdefender
O43 - CFD: 14/01/2010 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation
O43 - CFD: 28/08/2010 - [] D -- C:\ProgramData\Canneverbe Limited =>.Canneverbe Limited
O43 - CFD: 16/07/2016 - [0] D -- C:\ProgramData\Comms =>.Microsoft Corporation
O43 - CFD: 17/02/2015 - [] D -- C:\ProgramData\Configuration
O43 - CFD: 20/04/2020 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation
O43 - CFD: 20/04/2020 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 31/12/2016 - [] D -- C:\ProgramData\Electronic Arts =>.Electronic Arts
O43 - CFD: 14/01/2010 - [0] SHD -- C:\ProgramData\Favoris =>.Microsoft Corporation
O43 - CFD: 20/04/2020 - [0] SHD -- C:\ProgramData\Favorites =>.Microsoft Corporation
O43 - CFD: 24/07/2011 - [] D -- C:\ProgramData\Google =>.Google
O43 - CFD: 19/04/2013 - [] D -- C:\ProgramData\HP =>.Hewlett-Packard
O43 - CFD: 01/02/2020 - [] D -- C:\ProgramData\Intel =>.Intel Corporation
O43 - CFD: 14/02/2018 - [] D -- C:\ProgramData\Lavasoft =>.Lavasoft
O43 - CFD: 07/08/2019 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes
O43 - CFD: 24/02/2011 - [] D -- C:\ProgramData\McAfee =>.McAfee
O43 - CFD: 14/01/2010 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation
O43 - CFD: 29/08/2020 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 20/04/2020 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation
O43 - CFD: 02/02/2013 - [] D -- C:\ProgramData\Microsoft SkyDrive =>.Microsoft Corporation
O43 - CFD: 14/01/2010 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation
O43 - CFD: 18/05/2015 - [] D -- C:\ProgramData\Mozilla =>.Mozilla Corporation
O43 - CFD: 11/01/2011 - [] D -- C:\ProgramData\Nero =>.Ahead Corporation
O43 - CFD: 22/02/2011 - [] D -- C:\ProgramData\Norton =>.Symantec Corporation
O43 - CFD: 10/11/2010 - [] D -- C:\ProgramData\NortonInstaller =>.Symantec
O43 - CFD: 25/08/2014 - [] D -- C:\ProgramData\Oracle =>.Oracle
O43 - CFD: 31/12/2016 - [] D -- C:\ProgramData\Origin =>.Electronic Arts, Inc.
O43 - CFD: 02/08/2020 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation
O43 - CFD: 20/04/2020 - [] D -- C:\ProgramData\Packages =>.Microsoft Corporation
O43 - CFD: 29/05/2014 - [] D -- C:\ProgramData\PDF Architect 2 =>.pdfforge GmbH
O43 - CFD: 30/08/2020 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation
O43 - CFD: 12/09/2015 - [] D -- C:\ProgramData\Skype =>.Skype
O43 - CFD: 07/12/2019 - [0] D -- C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation
O43 - CFD: 20/04/2020 - [0] D -- C:\ProgramData\ssh
O43 - CFD: 20/04/2020 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation
O43 - CFD: 10/11/2010 - [] D -- C:\ProgramData\Symantec =>.Symantec
O43 - CFD: 23/09/2013 - [0] AD -- C:\ProgramData\TEMP =>.Microsoft Corporation
O43 - CFD: 20/04/2020 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation
O43 - CFD: 14/05/2012 - [] D -- C:\ProgramData\TP-LINK =>.TP-LINK
O43 - CFD: 20/04/2020 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation
O43 - CFD: 19/05/2015 - [] D -- C:\ProgramData\Verimatrix =>.Verimatrix Inc
O43 - CFD: 30/07/2010 - [] D -- C:\ProgramData\WEBREG =>.Hewlett-Packard
O43 - CFD: 14/08/2010 - [] D -- C:\ProgramData\Windows Genuine Advantage =>.Microsoft Corporation
O43 - CFD: 17/05/2019 - [0] D -- C:\ProgramData\WLInstaller =>.Microsoft Corporation
O43 - CFD: 20/03/2020 - [] AD -- C:\Program Files\Common Files\Adobe =>.Adobe
O43 - CFD: 31/08/2017 - [0] D -- C:\Program Files\Common Files\AV =>.Avast
O43 - CFD: 24/08/2010 - [] D -- C:\Program Files\Common Files\BitDefender =>.Bitdefender
O43 - CFD: 14/05/2014 - [] AD -- C:\Program Files\Common Files\DESIGNER =>.Designer
O43 - CFD: 19/12/2015 - [] HD -- C:\Program Files\Common Files\EAInstaller =>.Electronic Arts, Inc.
O43 - CFD: 30/07/2010 - [] D -- C:\Program Files\Common Files\Hewlett-Packard =>.Hewlett-Packard
O43 - CFD: 14/01/2010 - [] D -- C:\Program Files\Common Files\InstallShield =>.InstallShield
O43 - CFD: 09/06/2010 - [] D -- C:\Program Files\Common Files\Intel =>.Intel Corporation
O43 - CFD: 20/07/2020 - [] D -- C:\Program Files\Common Files\Java =>.Oracle
O43 - CFD: 20/04/2020 - [] D -- C:\Program Files\Common Files\Microsoft Shared =>.Microsoft Corporation
O43 - CFD: 20/07/2020 - [] D -- C:\Program Files\Common Files\Oracle =>.Oracle
O43 - CFD: 10/11/2012 - [] D -- C:\Program Files\Common Files\PC Tools =>.PC Tools
O43 - CFD: 09/06/2010 - [] D -- C:\Program Files\Common Files\postureAgent =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 12/09/2015 - [0] D -- C:\Program Files\Common Files\Skype =>.Skype
O43 - CFD: 20/04/2020 - [] D -- C:\Program Files\Common Files\SpeechEngines =>.Microsoft Corporation
O43 - CFD: 15/07/2020 - [] D -- C:\Program Files\Common Files\System =>.Microsoft Corporation
O43 - CFD: 31/07/2010 - [] D -- C:\Program Files\Common Files\Windows Live =>.Microsoft Corporation
O43 - CFD: 24/01/2015 - [] D -- C:\Users\proprietaire\AppData\Roaming\.ascentia =>.Ascentia
O43 - CFD: 17/02/2016 - [] D -- C:\Users\proprietaire\AppData\Roaming\.minecraft =>.Microsoft Corporation
O43 - CFD: 03/03/2014 - [] D -- C:\Users\proprietaire\AppData\Roaming\7 Sticky Notes =>.Fabio Martin
O43 - CFD: 04/11/2014 - [] D -- C:\Users\proprietaire\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 20/04/2020 - [] D -- C:\Users\proprietaire\AppData\Roaming\AirDroid =>.AirDroid
O43 - CFD: 29/03/2015 - [] D -- C:\Users\proprietaire\AppData\Roaming\AnvSoft =>.AnvSoft Inc
O43 - CFD: 23/08/2014 - [] D -- C:\Users\proprietaire\AppData\Roaming\Apple Computer =>.Apple Inc.
O43 - CFD: 30/07/2010 - [] D -- C:\Users\proprietaire\AppData\Roaming\BitDefender =>.Bitdefender
O43 - CFD: 28/08/2010 - [] D -- C:\Users\proprietaire\AppData\Roaming\Canneverbe Limited =>.Canneverbe Limited
O43 - CFD: 04/06/2011 - [] D -- C:\Users\proprietaire\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant =>.Adobe Inc.
O43 - CFD: 10/12/2018 - [] D -- C:\Users\proprietaire\AppData\Roaming\dvdcss =>.VideoLan Team
O43 - CFD: 25/09/2012 - [] D -- C:\Users\proprietaire\AppData\Roaming\DVDVideoSoft =>.DVDVideoSoft
O43 - CFD: 21/05/2014 - [] D -- C:\Users\proprietaire\AppData\Roaming\F-Secure =>.F-Secure
O43 - CFD: 29/08/2019 - [] D -- C:\Users\proprietaire\AppData\Roaming\FileZilla =>.FileZilla
O43 - CFD: 06/02/2020 - [] D -- C:\Users\proprietaire\AppData\Roaming\Google =>.Google
O43 - CFD: 01/08/2010 - [] D -- C:\Users\proprietaire\AppData\Roaming\HP =>.Hewlett-Packard
O43 - CFD: 01/01/2012 - [] D -- C:\Users\proprietaire\AppData\Roaming\HpUpdate =>.Hewlett-Packard
O43 - CFD: 16/05/2020 - [] D -- C:\Users\proprietaire\AppData\Roaming\Identities =>.Microsoft Corporation
O43 - CFD: 14/03/2011 - [] D -- C:\Users\proprietaire\AppData\Roaming\Jasc =>.Jasc
O43 - CFD: 24/01/2015 - [] D -- C:\Users\proprietaire\AppData\Roaming\java =>.Oracle
O43 - CFD: 29/03/2011 - [] D -- C:\Users\proprietaire\AppData\Roaming\kompozer.net
O43 - CFD: 29/08/2020 - [] D -- C:\Users\proprietaire\AppData\Roaming\Lavasoft =>.Lavasoft
O43 - CFD: 17/04/2014 - [] D -- C:\Users\proprietaire\AppData\Roaming\LEGO Company =>.LEGO Software
O43 - CFD: 30/07/2010 - [] D -- C:\Users\proprietaire\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 28/06/2014 - [0] D -- C:\Users\proprietaire\AppData\Roaming\Malwarebytes =>.Malwarebytes
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\proprietaire\AppData\Roaming\Media Center Programs =>.Microsoft Corporation
O43 - CFD: 30/10/2010 - [] D -- C:\Users\proprietaire\AppData\Roaming\Media Player Classic =>.Microsoft Corporation
O43 - CFD: 20/04/2020 - [] SD -- C:\Users\proprietaire\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 18/11/2017 - [] D -- C:\Users\proprietaire\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 06/11/2016 - [] D -- C:\Users\proprietaire\AppData\Roaming\MyImgur
O43 - CFD: 11/05/2017 - [] D -- C:\Users\proprietaire\AppData\Roaming\NCH Software =>.NCH Software
O43 - CFD: 11/01/2011 - [] D -- C:\Users\proprietaire\AppData\Roaming\Nero =>.Ahead Corporation
O43 - CFD: 29/03/2013 - [] D -- C:\Users\proprietaire\AppData\Roaming\Neuronyx =>.Neuronyx
O43 - CFD: 05/04/2020 - [] D -- C:\Users\proprietaire\AppData\Roaming\ObviousIdea =>.ObviousIdea
O43 - CFD: 30/07/2010 - [] D -- C:\Users\proprietaire\AppData\Roaming\OpenOffice.org =>.OpenOffice.org
O43 - CFD: 14/02/2018 - [0] D -- C:\Users\proprietaire\AppData\Roaming\Opera Software =>.Opera Software
O43 - CFD: 11/10/2013 - [] D -- C:\Users\proprietaire\AppData\Roaming\Orbit =>.Orbit
O43 - CFD: 19/12/2015 - [] D -- C:\Users\proprietaire\AppData\Roaming\Origin =>.Electronic Arts, Inc.
O43 - CFD: 29/05/2014 - [] D -- C:\Users\proprietaire\AppData\Roaming\PDF Architect 2 =>.pdfforge GmbH
O43 - CFD: 16/08/2010 - [] D -- C:\Users\proprietaire\AppData\Roaming\PhotoFiltre =>.Antonio Da Cruz
O43 - CFD: 01/01/2016 - [] D -- C:\Users\proprietaire\AppData\Roaming\PhotoFiltre Studio X =>.Antonio Da Cruz
O43 - CFD: 07/08/2014 - [] D -- C:\Users\proprietaire\AppData\Roaming\redsn0w
O43 - CFD: 15/07/2020 - [] D -- C:\Users\proprietaire\AppData\Roaming\Skype =>.Skype
O43 - CFD: 20/07/2020 - [] D -- C:\Users\proprietaire\AppData\Roaming\Sun =>.Oracle
O43 - CFD: 10/01/2015 - [0] D -- C:\Users\proprietaire\AppData\Roaming\TaiG =>.TaiG JailbreakTeam
O43 - CFD: 29/09/2017 - [] D -- C:\Users\proprietaire\AppData\Roaming\TeamViewer =>.TeamViewer GmbH
O43 - CFD: 04/08/2010 - [] D -- C:\Users\proprietaire\AppData\Roaming\Template =>.Microsoft Corporation
O43 - CFD: 04/11/2015 - [] D -- C:\Users\proprietaire\AppData\Roaming\Thinstall =>.VMare
O43 - CFD: 05/03/2014 - [] D -- C:\Users\proprietaire\AppData\Roaming\Unity =>.Unity
O43 - CFD: 14/02/2018 - [] D -- C:\Users\proprietaire\AppData\Roaming\uTorrent
O43 - CFD: 05/04/2016 - [] D -- C:\Users\proprietaire\AppData\Roaming\Verimatrix =>.Verimatrix Inc
O43 - CFD: 04/07/2020 - [] D -- C:\Users\proprietaire\AppData\Roaming\vlc =>.VideoLan Team
O43 - CFD: 02/02/2013 - [0] D -- C:\Users\proprietaire\AppData\Roaming\Windows Live Writer =>.Microsoft Corporation
O43 - CFD: 24/09/2018 - [] D -- C:\Users\proprietaire\AppData\Roaming\XnSketch =>.XnSoft
O43 - CFD: 23/04/2017 - [] D -- C:\Users\proprietaire\AppData\Roaming\Yahoo
O43 - CFD: 16/02/2016 - [0] D -- C:\Users\proprietaire\AppData\Roaming\Yahoo! =>.Yahoo!
O43 - CFD: 30/08/2020 - [] D -- C:\Users\proprietaire\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 18/11/2015 - [0] D -- C:\Users\proprietaire\AppData\Local\ActiveSync =>.Microsoft Corporation
O43 - CFD: 13/08/2020 - [] D -- C:\Users\proprietaire\AppData\Local\Adobe =>.Adobe
O43 - CFD: 11/08/2013 - [] D -- C:\Users\proprietaire\AppData\Local\adslTV =>.adslTV
O43 - CFD: 04/11/2016 - [0] D -- C:\Users\proprietaire\AppData\Local\Amazon =>.Amazon
O43 - CFD: 17/01/2011 - [] D -- C:\Users\proprietaire\AppData\Local\Apple =>.Apple Inc.
O43 - CFD: 25/01/2014 - [] D -- C:\Users\proprietaire\AppData\Local\Apple Computer =>.Apple Inc.
O43 - CFD: 20/04/2020 - [0] SHD -- C:\Users\proprietaire\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 16/09/2010 - [] D -- C:\Users\proprietaire\AppData\Local\Apps =>.Microsoft Corporation
O43 - CFD: 17/02/2015 - [0] D -- C:\Users\proprietaire\AppData\Local\Avanquest =>.Avanquest
O43 - CFD: 14/05/2019 - [] D -- C:\Users\proprietaire\AppData\Local\AVAST Software =>.AVAST Software
O43 - CFD: 13/08/2014 - [0] D -- C:\Users\proprietaire\AppData\Local\BeamNG =>.BeamNG
O43 - CFD: 01/11/2019 - [] D -- C:\Users\proprietaire\AppData\Local\BlueStacks =>.BlueStack Systems, Inc.
O43 - CFD: 28/03/2020 - [] D -- C:\Users\proprietaire\AppData\Local\cache =>.Legitimate
O43 - CFD: 01/11/2015 - [] D -- C:\Users\proprietaire\AppData\Local\CEF =>.CEF
O43 - CFD: 14/02/2018 - [] D -- C:\Users\proprietaire\AppData\Local\chromium =>.Chromium
O43 - CFD: 16/12/2015 - [] D -- C:\Users\proprietaire\AppData\Local\Comms =>.Microsoft Corporation
O43 - CFD: 08/12/2018 - [] D -- C:\Users\proprietaire\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation
O43 - CFD: 29/08/2020 - [] D -- C:\Users\proprietaire\AppData\Local\CrashDumps =>.Microsoft Corporation
O43 - CFD: 05/09/2019 - [] D -- C:\Users\proprietaire\AppData\Local\D3DSCache =>.Legitimate
O43 - CFD: 26/04/2017 - [0] D -- C:\Users\proprietaire\AppData\Local\DBG =>.DBG
O43 - CFD: 02/08/2020 - [0] D -- C:\Users\proprietaire\AppData\Local\Diagnostics =>.Microsoft Corporation
O43 - CFD: 30/03/2018 - [] D -- C:\Users\proprietaire\AppData\Local\Downloaded Installations =>.Microsoft Corporation
O43 - CFD: 22/12/2019 - [0] D -- C:\Users\proprietaire\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation
O43 - CFD: 10/06/2015 - [0] SHD -- C:\Users\proprietaire\AppData\Local\EmieBrowserModeList =>.ATTENTION
O43 - CFD: 10/06/2015 - [0] SHD -- C:\Users\proprietaire\AppData\Local\EmieSiteList =>.ATTENTION
O43 - CFD: 10/06/2015 - [0] SHD -- C:\Users\proprietaire\AppData\Local\EmieUserList =>.ATTENTION
O43 - CFD: 30/03/2018 - [] D -- C:\Users\proprietaire\AppData\Local\Emmet_Gray
O43 - CFD: 16/10/2019 - [] D -- C:\Users\proprietaire\AppData\Local\Google =>.Google
O43 - CFD: 01/06/2015 - [] D -- C:\Users\proprietaire\AppData\Local\GWX =>.GWX
O43 - CFD: 20/04/2020 - [0] SHD -- C:\Users\proprietaire\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 28/05/2011 - [] D -- C:\Users\proprietaire\AppData\Local\Hook Network =>.Hook Network
O43 - CFD: 01/08/2010 - [] D -- C:\Users\proprietaire\AppData\Local\HP =>.Hewlett-Packard
O43 - CFD: 18/02/2016 - [] D -- C:\Users\proprietaire\AppData\Local\IE Tab =>.Hong Jen Yee
O43 - CFD: 28/08/2010 - [] D -- C:\Users\proprietaire\AppData\Local\IP_service
O43 - CFD: 29/03/2011 - [] D -- C:\Users\proprietaire\AppData\Local\kompozer.net
O43 - CFD: 25/08/2015 - [] D -- C:\Users\proprietaire\AppData\Local\KowMedia =>.Kow Media
O43 - CFD: 19/05/2015 - [] D -- C:\Users\proprietaire\AppData\Local\Macromedia =>.Macromedia
O43 - CFD: 20/11/2018 - [] D -- C:\Users\proprietaire\AppData\Local\mbam =>.Malwarebytes
O43 - CFD: 20/11/2018 - [] D -- C:\Users\proprietaire\AppData\Local\mbamtray =>.Malwarebytes
O43 - CFD: 20/04/2020 - [] D -- C:\Users\proprietaire\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 26/11/2010 - [] D -- C:\Users\proprietaire\AppData\Local\Microsoft Games =>.Microsoft Corporation
O43 - CFD: 08/05/2018 - [] D -- C:\Users\proprietaire\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 19/11/2015 - [] D -- C:\Users\proprietaire\AppData\Local\MicrosoftEdge =>.Microsoft Corporation
O43 - CFD: 18/05/2015 - [] D -- C:\Users\proprietaire\AppData\Local\Mozilla =>.Mozilla Corporation
O43 - CFD: 18/11/2015 - [0] D -- C:\Users\proprietaire\AppData\Local\NetworkTiles =>.NetworkTiles
O43 - CFD: 31/08/2018 - [] D -- C:\Users\proprietaire\AppData\Local\OneDrive =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [0] D -- C:\Users\proprietaire\AppData\Local\Opera Software =>.Opera Software
O43 - CFD: 18/07/2020 - [] D -- C:\Users\proprietaire\AppData\Local\Packages =>.Microsoft Corporation
O43 - CFD: 02/04/2020 - [] D -- C:\Users\proprietaire\AppData\Local\PackageStaging =>.Apcera
O43 - CFD: 18/04/2020 - [] D -- C:\Users\proprietaire\AppData\Local\Patquoi.fr =>.Patquoi.fr
O43 - CFD: 10/05/2020 - [] D -- C:\Users\proprietaire\AppData\Local\PlaceholderTileLogoFolder =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [] D -- C:\Users\proprietaire\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 11/09/2018 - [] D -- C:\Users\proprietaire\AppData\Local\Publishers =>.Microsoft Corporation
O43 - CFD: 22/04/2017 - [] D -- C:\Users\proprietaire\AppData\Local\Recovery =>.Recovery Labs
O43 - CFD: 29/08/2016 - [] D -- C:\Users\proprietaire\AppData\Local\Setup34028953
O43 - CFD: 21/02/2015 - [] D -- C:\Users\proprietaire\AppData\Local\Skype =>.Skype
O43 - CFD: 23/12/2019 - [] D -- C:\Users\proprietaire\AppData\Local\speech =>.Microsoft Corporation
O43 - CFD: 30/08/2020 - [] D -- C:\Users\proprietaire\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 20/04/2020 - [0] SHD -- C:\Users\proprietaire\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 04/11/2015 - [] D -- C:\Users\proprietaire\AppData\Local\Thinstall =>.VMare
O43 - CFD: 11/12/2017 - [] D -- C:\Users\proprietaire\AppData\Local\TileDataLayer =>.Microsoft Corporation
O43 - CFD: 03/04/2018 - [] D -- C:\Users\proprietaire\AppData\Local\Topalt =>.Topalt
O43 - CFD: 11/06/2016 - [] D -- C:\Users\proprietaire\AppData\Local\Unity =>.Unity
O43 - CFD: 03/01/2019 - [] D -- C:\Users\proprietaire\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 05/01/2014 - [] D -- C:\Users\proprietaire\AppData\Local\Windows Live =>.Microsoft Corporation
O43 - CFD: 02/02/2013 - [] D -- C:\Users\proprietaire\AppData\Local\Windows Live Writer =>.Microsoft Corporation
O43 - CFD: 10/02/2019 - [0] D -- C:\Users\proprietaire\AppData\Local\WMTools Downloaded Files =>.WMTools
O43 - CFD: 18/03/2015 - [] D -- C:\Users\proprietaire\AppData\Local\Wondershare =>.Wondershare
O43 - CFD: 09/10/2017 - [] D -- C:\Users\proprietaire\AppData\Local\Zeta Uploader
O43 - CFD: 30/08/2020 - [] D -- C:\Users\proprietaire\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 29/08/2016 - [] D -- C:\Users\proprietaire\AppData\Local\{A8C19E7A-8D93-F30C-E6A5-D4DE3A7729E0}
O43 - CFD: 03/01/2013 - [0] D -- C:\Users\proprietaire\AppData\Local\Programs\Common =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [] D -- C:\Users\proprietaire\AppData\Local\Programs\Opera =>.Opera Software
O43 - CFD: 02/10/2018 - [] AD -- C:\Users\proprietaire\AppData\LocalLow\Adblock Plus for IE =>.Adblock
O43 - CFD: 02/10/2018 - [] D -- C:\Users\proprietaire\AppData\LocalLow\Adobe =>.Adobe
O43 - CFD: 17/01/2011 - [] D -- C:\Users\proprietaire\AppData\LocalLow\Apple Computer =>.Apple Inc.
O43 - CFD: 10/06/2015 - [0] SHD -- C:\Users\proprietaire\AppData\LocalLow\EmieBrowserModeList =>.ATTENTION
O43 - CFD: 10/06/2015 - [0] SHD -- C:\Users\proprietaire\AppData\LocalLow\EmieSiteList =>.ATTENTION
O43 - CFD: 10/06/2015 - [0] SHD -- C:\Users\proprietaire\AppData\LocalLow\EmieUserList =>.ATTENTION
O43 - CFD: 11/09/2012 - [] D -- C:\Users\proprietaire\AppData\LocalLow\Google =>.Google
O43 - CFD: 14/09/2010 - [] D -- C:\Users\proprietaire\AppData\LocalLow\Macromedia =>.Macromedia
O43 - CFD: 09/08/2018 - [] SD -- C:\Users\proprietaire\AppData\LocalLow\Microsoft =>.Microsoft Corporation
O43 - CFD: 18/11/2018 - [0] D -- C:\Users\proprietaire\AppData\LocalLow\Mozilla =>.Mozilla Corporation
O43 - CFD: 25/08/2014 - [] D -- C:\Users\proprietaire\AppData\LocalLow\Oracle =>.Oracle
O43 - CFD: 14/01/2010 - [] D -- C:\Users\proprietaire\AppData\LocalLow\Sun =>.Oracle
O43 - CFD: 15/12/2015 - [] D -- C:\Users\proprietaire\AppData\LocalLow\Temp =>.Microsoft Corporation
O43 - CFD: 02/07/2017 - [] D -- C:\Users\proprietaire\AppData\LocalLow\Unity =>.Unity
O43 - CFD: 12/05/2019 - [0] HD -- C:\Users\proprietaire\Desktop\.tmp.drivedownload
O43 - CFD: 23/03/2020 - [] RD -- C:\Users\proprietaire\Desktop\Captvty =>.Guillaume
O43 - CFD: 07/12/2019 - [] RD -- C:\Users\proprietaire\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 20/04/2020 - [] RD -- C:\Users\proprietaire\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 20/04/2020 - [] RD -- C:\Users\proprietaire\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 20/04/2020 - [] D -- C:\Users\proprietaire\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Defraggler =>.Piriform Ltd
O43 - CFD: 08/11/2012 - [0] D -- C:\Users\proprietaire\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\Users\proprietaire\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 20/04/2020 - [] D -- C:\Users\proprietaire\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7 =>.Antonio Da Cruz
O43 - CFD: 20/04/2020 - [] D -- C:\Users\proprietaire\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recuva =>.Piriform
O43 - CFD: 20/04/2020 - [] D -- C:\Users\proprietaire\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Speccy =>.Piriform
O43 - CFD: 20/04/2020 - [] RD -- C:\Users\proprietaire\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] RD -- C:\Users\proprietaire\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 20/04/2020 - [] D -- C:\Users\proprietaire\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker =>.Cedrick Collomb
O43 - CFD: 20/04/2020 - [] D -- C:\Users\proprietaire\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation
O43 - CFD: 14/01/2010 - [0] D -- C:\Users\proprietaire\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 20/04/2020 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 21/09/2016 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 20/04/2020 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 21/09/2016 - [0] D -- C:\Users\Default\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 20/04/2020 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 20/04/2020 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 21/09/2016 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 20/04/2020 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 21/09/2016 - [0] D -- C:\Users\Default User\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 20/04/2020 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 12/05/2020 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Adobe =>.Adobe
O43 - CFD: 20/04/2020 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\D3DSCache =>.Legitimate
O43 - CFD: 22/04/2020 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\DataSharing =>.DataSharing
O43 - CFD: 21/04/2020 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 14/08/2020 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Packages =>.Microsoft Corporation
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1050-2734-2a417f2a.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1050-2734-2a41840e.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1050-2734-2a41843f.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1050-2734-2a4184ce.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1050-2734-2a41850e.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1050-2734-2a4185db.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1050-2734-2a41862b.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1050-2734-2a41865c.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1050-2734-2a4186ac.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1050-2734-2a4186ce.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1050-2734-2a41872d.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1050-2734-2a41874f.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1050-2734-2a4187be.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1050-2734-2a41880e.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1050-2734-2a41885e.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1050-2734-2a4188ce.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1050-2734-2a41892d.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1050-2734-2a4189db.tmp
O43 - CFD: 01/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1050-2734-2a418a0c.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1364-514-29cbec69.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1364-514-29cbecb9.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1364-514-29cbecea.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1364-514-29cbed0b.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1364-514-29cbed1d.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1364-514-29cbed4e.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1364-514-29cbed8e.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1364-514-29cbedcf.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1364-514-29cbee00.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1364-514-29cbee40.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1364-514-29cbee71.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1364-514-29cbeec1.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1364-514-29cbef8e.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1364-514-29cbefde.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1364-514-29cbf00f.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1364-514-29cbf05f.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1364-514-29cbf081.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1364-514-29cbf0c1.tmp
O43 - CFD: 29/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1364-514-29cbf111.tmp
O43 - CFD: 24/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1408-1f90-a61162a.tmp
O43 - CFD: 24/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1408-1f90-a6116a9.tmp
O43 - CFD: 24/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1408-1f90-a611aa2.tmp
O43 - CFD: 24/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1408-1f90-a612080.tmp
O43 - CFD: 24/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1408-1f90-a61213e.tmp
O43 - CFD: 24/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1408-1f90-a6121ec.tmp
O43 - CFD: 24/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1408-1f90-a61220d.tmp
O43 - CFD: 24/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1408-1f90-a61227c.tmp
O43 - CFD: 24/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1408-1f90-a6122ad.tmp
O43 - CFD: 24/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1408-1f90-a6122ee.tmp
O43 - CFD: 24/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1408-1f90-a61232e.tmp
O43 - CFD: 24/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1408-1f90-a61236f.tmp
O43 - CFD: 24/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1408-1f90-a612390.tmp
O43 - CFD: 24/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1408-1f90-a6123c1.tmp
O43 - CFD: 24/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1408-1f90-a612401.tmp
O43 - CFD: 24/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1408-1f90-a612432.tmp
O43 - CFD: 24/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1408-1f90-a612482.tmp
O43 - CFD: 24/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1408-1f90-a612511.tmp
O43 - CFD: 24/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1408-1f90-a612561.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1510-297c-2eb078e0.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1510-297c-2eb07dc4.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1510-297c-2eb07fba.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1510-297c-2eb082ba.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1510-297c-2eb0858b.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1510-297c-2eb08732.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1510-297c-2eb088ea.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1510-297c-2eb08a44.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1510-297c-2eb08af2.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1510-297c-2eb08bce.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1510-297c-2eb093df.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1510-297c-2eb095e4.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1510-297c-2eb09dd6.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1510-297c-2eb09f01.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1510-297c-2eb0a01c.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1510-297c-2eb0a09b.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1510-297c-2eb0a178.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1510-297c-2eb0a245.tmp
O43 - CFD: 22/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1510-297c-2eb0a5e1.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1624-27d8-588a0e00.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1624-27d8-588a13ce.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1624-27d8-588a1612.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1624-27d8-588a1866.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1624-27d8-588a19fe.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1624-27d8-588a1aeb.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1624-27d8-588a1e29.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1624-27d8-588a2119.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1624-27d8-588a21c7.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1624-27d8-588a2227.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1624-27d8-588a22a6.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1624-27d8-588a2305.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1624-27d8-588a2336.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1624-27d8-588a2367.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1624-27d8-588a2398.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1624-27d8-588a23aa.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1624-27d8-588a23da.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1624-27d8-588a24f6.tmp
O43 - CFD: 08/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1624-27d8-588a2527.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1638-22b0-4def9b3.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1638-22b0-4defbb8.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1638-22b0-4defbda.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1638-22b0-4defc39.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1638-22b0-4defc7a.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1638-22b0-4defce9.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1638-22b0-4defd0a.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1638-22b0-4defd6a.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1638-22b0-4defdca.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1638-22b0-4defdeb.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1638-22b0-4defe3b.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1638-22b0-4defeab.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1638-22b0-4defefb.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1638-22b0-4deff6a.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1638-22b0-4df018f.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1638-22b0-4df01c0.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1638-22b0-4df0220.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1638-22b0-4df02ae.tmp
O43 - CFD: 03/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1638-22b0-4df037b.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16cc-17e4-1045b6e7.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16cc-17e4-1045b90c.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16cc-17e4-1045b94c.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16cc-17e4-1045b9eb.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16cc-17e4-1045ba0c.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16cc-17e4-1045ba9b.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16cc-17e4-1045bb29.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16cc-17e4-1045bba8.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16cc-17e4-1045bc08.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16cc-17e4-1045bd33.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16cc-17e4-1045bd93.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16cc-17e4-1045bdd3.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16cc-17e4-1045be14.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16cc-17e4-1045be44.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16cc-17e4-1045bea4.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16cc-17e4-1045bec5.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16cc-17e4-1045bf64.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16cc-17e4-1045c002.tmp
O43 - CFD: 20/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-16cc-17e4-1045c1f8.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1774-2ba4-9e4bb91.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1774-2ba4-9e4bd87.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1774-2ba4-9e4be54.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1774-2ba4-9e4bf22.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1774-2ba4-9e4bfc0.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1774-2ba4-9e4c0db.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1774-2ba4-9e4c12b.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1774-2ba4-9e4c1aa.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1774-2ba4-9e4c1eb.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1774-2ba4-9e4c364.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1774-2ba4-9e4c385.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1774-2ba4-9e4c4ee.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1774-2ba4-9e4c53e.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1774-2ba4-9e4c5bd.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1774-2ba4-9e4c63c.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1774-2ba4-9e4c68d.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1774-2ba4-9e4c873.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1774-2ba4-9e4c96f.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1774-2ba4-9e4c9af.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-182c-267c-1aafb9ce.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-182c-267c-1aafbb18.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-182c-267c-1aafbcc0.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-182c-267c-1aafbd6e.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-182c-267c-1aafbe0c.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-182c-267c-1aafbe8b.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-182c-267c-1aafbf0a.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-182c-267c-1aafc64f.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-182c-267c-1aafd2c5.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-182c-267c-1aafd3a2.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-182c-267c-1aafd440.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-182c-267c-1aafd4de.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-182c-267c-1aafd50f.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-182c-267c-1aafd56f.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-182c-267c-1aafd62c.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-182c-267c-1aafd69c.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-182c-267c-1aafd7b7.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-182c-267c-1aafd894.tmp
O43 - CFD: 26/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-182c-267c-1aafd903.tmp
O43 - CFD: 04/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-18cc-e74-250151.tmp
O43 - CFD: 04/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-18cc-e74-2502ab.tmp
O43 - CFD: 04/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-18cc-e74-2502dc.tmp
O43 - CFD: 04/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-18cc-e74-25031c.tmp
O43 - CFD: 04/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-18cc-e74-25035d.tmp
O43 - CFD: 04/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-18cc-e74-2503ec.tmp
O43 - CFD: 04/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-18cc-e74-2504f7.tmp
O43 - CFD: 04/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-18cc-e74-250518.tmp
O43 - CFD: 04/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-18cc-e74-250549.tmp
O43 - CFD: 04/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-18cc-e74-25056b.tmp
O43 - CFD: 04/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-18cc-e74-2505bb.tmp
O43 - CFD: 04/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-18cc-e74-2505fb.tmp
O43 - CFD: 04/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-18cc-e74-25062c.tmp
O43 - CFD: 04/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-18cc-e74-2506da.tmp
O43 - CFD: 04/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-18cc-e74-25071a.tmp
O43 - CFD: 04/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-18cc-e74-2507d8.tmp
O43 - CFD: 04/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-18cc-e74-250922.tmp
O43 - CFD: 04/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-18cc-e74-2509d0.tmp
O43 - CFD: 04/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-18cc-e74-250a9d.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-193c-182c-2f498d99.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-193c-182c-2f498e56.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-193c-182c-2f498e58.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-193c-182c-2f498ed7.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-193c-182c-2f4992c1.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-193c-182c-2f499488.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-193c-182c-2f4994b9.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-193c-182c-2f4996a0.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-193c-182c-2f499867.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-193c-182c-2f499963.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-193c-182c-2f499994.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-193c-182c-2f499a32.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-193c-182c-2f499aef.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-193c-182c-2f499b6e.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-193c-182c-2f499b90.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-193c-182c-2f499bb1.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-193c-182c-2f499da7.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-193c-182c-2f499e84.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-193c-182c-2f499eb4.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1954-26f4-10413343.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1954-26f4-10413597.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1954-26f4-104135e7.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1954-26f4-10413608.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1954-26f4-10413678.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1954-26f4-10413706.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1954-26f4-10413766.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1954-26f4-104137a7.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1954-26f4-104137f7.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1954-26f4-10413857.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1954-26f4-10413887.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1954-26f4-104139b2.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1954-26f4-10413a8f.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1954-26f4-10413b9b.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1954-26f4-10413c49.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1954-26f4-10413ca8.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1954-26f4-10413cf8.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1954-26f4-10413d49.tmp
O43 - CFD: 13/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1954-26f4-10413dc8.tmp
O43 - CFD: 25/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-19f0-1aec-2ef357.tmp
O43 - CFD: 25/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-19f0-1aec-2ef3b6.tmp
O43 - CFD: 25/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-19f0-1aec-2ef406.tmp
O43 - CFD: 25/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-19f0-1aec-2ef679.tmp
O43 - CFD: 25/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-19f0-1aec-2ef6ba.tmp
O43 - CFD: 25/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-19f0-1aec-2ef6db.tmp
O43 - CFD: 25/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-19f0-1aec-2ef72b.tmp
O43 - CFD: 25/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-19f0-1aec-2ef76c.tmp
O43 - CFD: 25/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-19f0-1aec-2ef7cc.tmp
O43 - CFD: 25/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-19f0-1aec-2efb39.tmp
O43 - CFD: 25/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-19f0-1aec-2efdac.tmp
O43 - CFD: 25/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-19f0-1aec-2f0280.tmp
O43 - CFD: 25/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-19f0-1aec-2f066a.tmp
O43 - CFD: 25/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-19f0-1aec-2f09e7.tmp
O43 - CFD: 25/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-19f0-1aec-2f0f67.tmp
O43 - CFD: 25/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-19f0-1aec-2f1247.tmp
O43 - CFD: 25/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-19f0-1aec-2f18a2.tmp
O43 - CFD: 25/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-19f0-1aec-2f1912.tmp
O43 - CFD: 25/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-19f0-1aec-2f1991.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ad4-1b98-118af5.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ad4-1b98-118d97.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ad4-1b98-118dc8.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ad4-1b98-118e47.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ad4-1b98-118e97.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ad4-1b98-11937b.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ad4-1b98-119c56.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ad4-1b98-11a0ae.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ad4-1b98-11a13c.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ad4-1b98-11a18d.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ad4-1b98-11a1bd.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ad4-1b98-11a22d.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ad4-1b98-11a26d.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ad4-1b98-11a28f.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ad4-1b98-11a2b0.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ad4-1b98-11a300.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ad4-1b98-11a3bd.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ad4-1b98-11a44c.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1ad4-1b98-11a4fa.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b30-20cc-deadb.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b30-20cc-deafc.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b30-20cc-deb0e.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b30-20cc-deb2f.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b30-20cc-deb31.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b30-20cc-deb43.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b30-20cc-deb55.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b30-20cc-deb66.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b30-20cc-deb78.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b30-20cc-deb7a.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b30-20cc-deb9b.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b30-20cc-deb9d.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b30-20cc-debaf.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b30-20cc-debd0.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b30-20cc-debf1.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b30-20cc-dec12.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b30-20cc-dec43.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b30-20cc-dec74.tmp
O43 - CFD: 08/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1b30-20cc-decb5.tmp
O43 - CFD: 28/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c88-1e4c-a8bcc4e.tmp
O43 - CFD: 28/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c88-1e4c-a8bccdd.tmp
O43 - CFD: 28/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c88-1e4c-a8bccfe.tmp
O43 - CFD: 28/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c88-1e4c-a8bcd4e.tmp
O43 - CFD: 28/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c88-1e4c-a8bcdae.tmp
O43 - CFD: 28/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c88-1e4c-a8bce2d.tmp
O43 - CFD: 28/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c88-1e4c-a8bce5e.tmp
O43 - CFD: 28/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c88-1e4c-a8bcebe.tmp
O43 - CFD: 28/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c88-1e4c-a8bcefe.tmp
O43 - CFD: 28/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c88-1e4c-a8bcf10.tmp
O43 - CFD: 28/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c88-1e4c-a8bcf60.tmp
O43 - CFD: 28/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c88-1e4c-a8bcf91.tmp
O43 - CFD: 28/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c88-1e4c-a8bcfc2.tmp
O43 - CFD: 28/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c88-1e4c-a8bd002.tmp
O43 - CFD: 28/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c88-1e4c-a8bd17b.tmp
O43 - CFD: 28/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c88-1e4c-a8bd1ac.tmp
O43 - CFD: 28/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c88-1e4c-a8bd1dd.tmp
O43 - CFD: 28/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c88-1e4c-a8bd2c9.tmp
O43 - CFD: 28/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c88-1e4c-a8bd423.tmp
O43 - CFD: 15/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c98-1b4c-cc757b.tmp
O43 - CFD: 15/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c98-1b4c-cc7639.tmp
O43 - CFD: 15/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c98-1b4c-cc766a.tmp
O43 - CFD: 15/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c98-1b4c-cc76aa.tmp
O43 - CFD: 15/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c98-1b4c-cc76fa.tmp
O43 - CFD: 15/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c98-1b4c-cc776a.tmp
O43 - CFD: 15/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c98-1b4c-cc77aa.tmp
O43 - CFD: 15/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c98-1b4c-cc77db.tmp
O43 - CFD: 15/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c98-1b4c-cc783b.tmp
O43 - CFD: 15/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c98-1b4c-cc78c9.tmp
O43 - CFD: 15/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c98-1b4c-cc7958.tmp
O43 - CFD: 15/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c98-1b4c-cc7999.tmp
O43 - CFD: 15/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c98-1b4c-cc79f8.tmp
O43 - CFD: 15/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c98-1b4c-cc7a68.tmp
O43 - CFD: 15/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c98-1b4c-cc7aa8.tmp
O43 - CFD: 15/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c98-1b4c-cc7b46.tmp
O43 - CFD: 15/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c98-1b4c-cc7b97.tmp
O43 - CFD: 15/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c98-1b4c-cc7bd7.tmp
O43 - CFD: 15/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1c98-1b4c-cc7bf8.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1cf8-794-1fb64a47.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1cf8-794-1fb64b82.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1cf8-794-1fb64bc2.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1cf8-794-1fb64c51.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1cf8-794-1fb64cd0.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1cf8-794-1fb64d7e.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1cf8-794-1fb64dbe.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1cf8-794-1fb64eaa.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1cf8-794-1fb64efb.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1cf8-794-1fb64f5a.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1cf8-794-1fb64f8b.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1cf8-794-1fb64fbc.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1cf8-794-1fb6501c.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1cf8-794-1fb6504d.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1cf8-794-1fb651f5.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1cf8-794-1fb65254.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1cf8-794-1fb652b4.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1cf8-794-1fb65343.tmp
O43 - CFD: 16/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1cf8-794-1fb654ac.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1d60-31d0-e8cd202.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1d60-31d0-e8cd2de.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1d60-31d0-e8cd3ea.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1d60-31d0-e8cd3ec.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1d60-31d0-e8cd40d.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1d60-31d0-e8cd46d.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1d60-31d0-e8cd4fc.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1d60-31d0-e8cd50d.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1d60-31d0-e8cd56d.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1d60-31d0-e8cd5dc.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1d60-31d0-e8cd62c.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1d60-31d0-e8cd66d.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1d60-31d0-e8cd68e.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1d60-31d0-e8cd6af.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1d60-31d0-e8cd6d1.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1d60-31d0-e8cd6e2.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1d60-31d0-e8cd704.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1d60-31d0-e8cd734.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1d60-31d0-e8cd811.tmp
O43 - CFD: 18/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1e3c-1ef8-10eb55c4.tmp
O43 - CFD: 18/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1e3c-1ef8-10eb55f5.tmp
O43 - CFD: 18/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1e3c-1ef8-10eb5730.tmp
O43 - CFD: 18/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1e3c-1ef8-10eb58e7.tmp
O43 - CFD: 18/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1e3c-1ef8-10eb5937.tmp
O43 - CFD: 18/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1e3c-1ef8-10eb5ab0.tmp
O43 - CFD: 18/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1e3c-1ef8-10eb5c58.tmp
O43 - CFD: 18/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1e3c-1ef8-10eb5d06.tmp
O43 - CFD: 18/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1e3c-1ef8-10eb5dc4.tmp
O43 - CFD: 18/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1e3c-1ef8-10eb5edf.tmp
O43 - CFD: 18/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1e3c-1ef8-10eb5f4e.tmp
O43 - CFD: 18/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1e3c-1ef8-10eb6089.tmp
O43 - CFD: 18/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1e3c-1ef8-10eb61d3.tmp
O43 - CFD: 18/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1e3c-1ef8-10eb6204.tmp
O43 - CFD: 18/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1e3c-1ef8-10eb6225.tmp
O43 - CFD: 18/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1e3c-1ef8-10eb62c3.tmp
O43 - CFD: 18/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1e3c-1ef8-10eb6584.tmp
O43 - CFD: 18/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1e3c-1ef8-10eb6661.tmp
O43 - CFD: 18/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-1e3c-1ef8-10eb670f.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-205c-1164-33cf8a.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-205c-1164-33cfda.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-205c-1164-33cffc.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-205c-1164-33d00d.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-205c-1164-33d01f.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-205c-1164-33d040.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-205c-1164-33d052.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-205c-1164-33d073.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-205c-1164-33d085.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-205c-1164-33d0b5.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-205c-1164-33d0c7.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-205c-1164-33d0e8.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-205c-1164-33d10a.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-205c-1164-33d11b.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-205c-1164-33d13c.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-205c-1164-33d14e.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-205c-1164-33d16f.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-205c-1164-33d181.tmp
O43 - CFD: 28/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-205c-1164-33d1a2.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-210-2068-1ad57346.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-210-2068-1ad57617.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-210-2068-1ad57713.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-210-2068-1ad577e0.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-210-2068-1ad577f2.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-210-2068-1ad57890.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-210-2068-1ad578ff.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-210-2068-1ad57921.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-210-2068-1ad57961.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-210-2068-1ad579b1.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-210-2068-1ad579f2.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-210-2068-1ad57a52.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-210-2068-1ad57a82.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-210-2068-1ad57ab3.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-210-2068-1ad57af4.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-210-2068-1ad57b15.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-210-2068-1ad57b36.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-210-2068-1ad57b86.tmp
O43 - CFD: 29/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-210-2068-1ad57bd7.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-211c-1140-6b24969.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-211c-1140-6b24a27.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-211c-1140-6b24a67.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-211c-1140-6b24a79.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-211c-1140-6b24b08.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-211c-1140-6b24b67.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-211c-1140-6b24b89.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-211c-1140-6b24be8.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-211c-1140-6b24c67.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-211c-1140-6b24c79.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-211c-1140-6b24c9a.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-211c-1140-6b24cdb.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-211c-1140-6b24d0c.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-211c-1140-6b24d4c.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-211c-1140-6b24d7d.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-211c-1140-6b24d9e.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-211c-1140-6b24dc0.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-211c-1140-6b24df0.tmp
O43 - CFD: 25/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-211c-1140-6b25025.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-214c-72c-19ee26a1.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-214c-72c-19ee2829.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-214c-72c-19ee29b2.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-214c-72c-19ee2a31.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-214c-72c-19ee2a62.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-214c-72c-19ee2a83.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-214c-72c-19ee2ae3.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-214c-72c-19ee2b62.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-214c-72c-19ee2be1.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-214c-72c-19ee2c12.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-214c-72c-19ee2c62.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-214c-72c-19ee2cf1.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-214c-72c-19ee2d60.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-214c-72c-19ee2d91.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-214c-72c-19ee2dd1.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-214c-72c-19ee2f1b.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-214c-72c-19ee2faa.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-214c-72c-19ee3048.tmp
O43 - CFD: 18/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-214c-72c-19ee30e7.tmp
O43 - CFD: 26/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-21f0-3b4-49b139.tmp
O43 - CFD: 26/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-21f0-3b4-49b207.tmp
O43 - CFD: 26/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-21f0-3b4-49b370.tmp
O43 - CFD: 26/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-21f0-3b4-49b3b0.tmp
O43 - CFD: 26/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-21f0-3b4-49b4bc.tmp
O43 - CFD: 26/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-21f0-3b4-49b51c.tmp
O43 - CFD: 26/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-21f0-3b4-49b5d9.tmp
O43 - CFD: 26/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-21f0-3b4-49b639.tmp
O43 - CFD: 26/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-21f0-3b4-49b735.tmp
O43 - CFD: 26/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-21f0-3b4-49b7a4.tmp
O43 - CFD: 26/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-21f0-3b4-49b90e.tmp
O43 - CFD: 26/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-21f0-3b4-49b94e.tmp
O43 - CFD: 26/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-21f0-3b4-49b970.tmp
O43 - CFD: 26/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-21f0-3b4-49bac9.tmp
O43 - CFD: 26/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-21f0-3b4-49baeb.tmp
O43 - CFD: 26/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-21f0-3b4-49bbf6.tmp
O43 - CFD: 26/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-21f0-3b4-49bc94.tmp
O43 - CFD: 26/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-21f0-3b4-49bcb6.tmp
O43 - CFD: 26/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-21f0-3b4-49bd92.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2274-125c-b71b954.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2274-125c-b71ba21.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2274-125c-b71ba71.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2274-125c-b71bac1.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2274-125c-b71bb12.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2274-125c-b71bb62.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2274-125c-b71bbb2.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2274-125c-b71bc02.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2274-125c-b71bc33.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2274-125c-b71bc54.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2274-125c-b71bc95.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2274-125c-b71be3c.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2274-125c-b71be5e.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2274-125c-b71be7f.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2274-125c-b71bea0.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2274-125c-b71beb2.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2274-125c-b71bed3.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2274-125c-b71c00e.tmp
O43 - CFD: 12/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2274-125c-b71c0bb.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-227c-19b4-491d1fbb.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-227c-19b4-491d202a.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-227c-19b4-491d205b.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-227c-19b4-491d207c.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-227c-19b4-491d209e.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-227c-19b4-491d20af.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-227c-19b4-491d20d1.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-227c-19b4-491d2101.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-227c-19b4-491d2132.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-227c-19b4-491d2144.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-227c-19b4-491d2175.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-227c-19b4-491d2196.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-227c-19b4-491d21a8.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-227c-19b4-491d21d9.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-227c-19b4-491d21fa.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-227c-19b4-491d223a.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-227c-19b4-491d228a.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-227c-19b4-491d22db.tmp
O43 - CFD: 07/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-227c-19b4-491d22fc.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2338-1ae4-11c94a7.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2338-1ae4-11c98fe.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2338-1ae4-11c999c.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2338-1ae4-11c99cd.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2338-1ae4-11c9a5c.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2338-1ae4-11c9a8d.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2338-1ae4-11c9aae.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2338-1ae4-11c9aee.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2338-1ae4-11c9b5e.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2338-1ae4-11c9c3b.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2338-1ae4-11c9c6b.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2338-1ae4-11c9d77.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2338-1ae4-11c9de6.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2338-1ae4-11c9ea4.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2338-1ae4-11c9ed5.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2338-1ae4-11c9f73.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2338-1ae4-11c9f94.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2338-1ae4-11ca052.tmp
O43 - CFD: 24/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2338-1ae4-11ca12f.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2464-2cd8-3eccd0c9.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2464-2cd8-3eccd2a0.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2464-2cd8-3eccd2d1.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2464-2cd8-3eccd340.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2464-2cd8-3eccd361.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2464-2cd8-3eccd509.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2464-2cd8-3eccd559.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2464-2cd8-3eccd59a.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2464-2cd8-3eccd5f9.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2464-2cd8-3eccd63a.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2464-2cd8-3eccd65b.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2464-2cd8-3eccd6ea.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2464-2cd8-3eccd769.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2464-2cd8-3eccd7c9.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2464-2cd8-3eccd838.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2464-2cd8-3eccd888.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2464-2cd8-3eccd8b9.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2464-2cd8-3eccd919.tmp
O43 - CFD: 03/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2464-2cd8-3eccd998.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2494-650-346dfe92.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2494-650-346dfef1.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2494-650-346dff13.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2494-650-346dff24.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2494-650-346dff36.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2494-650-346dff57.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2494-650-346dffb7.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2494-650-346dffc8.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2494-650-346e00e4.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2494-650-346e0192.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2494-650-346e01b3.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2494-650-346e01e4.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2494-650-346e01f5.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2494-650-346e02c2.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2494-650-346e03ce.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2494-650-346e03ff.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2494-650-346e0420.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2494-650-346e0461.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2494-650-346e0482.tmp
O43 - CFD: 05/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2570-1cd8-4aec2dd.tmp
O43 - CFD: 05/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2570-1cd8-4aec31e.tmp
O43 - CFD: 05/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2570-1cd8-4aec33f.tmp
O43 - CFD: 05/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2570-1cd8-4aec37f.tmp
O43 - CFD: 05/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2570-1cd8-4aec3a1.tmp
O43 - CFD: 05/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2570-1cd8-4aec3c2.tmp
O43 - CFD: 05/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2570-1cd8-4aec3f3.tmp
O43 - CFD: 05/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2570-1cd8-4aec3f5.tmp
O43 - CFD: 05/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2570-1cd8-4aec416.tmp
O43 - CFD: 05/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2570-1cd8-4aec447.tmp
O43 - CFD: 05/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2570-1cd8-4aec458.tmp
O43 - CFD: 05/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2570-1cd8-4aec46a.tmp
O43 - CFD: 05/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2570-1cd8-4aec47c.tmp
O43 - CFD: 05/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2570-1cd8-4aec49d.tmp
O43 - CFD: 05/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2570-1cd8-4aec4fd.tmp
O43 - CFD: 05/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2570-1cd8-4aec50e.tmp
O43 - CFD: 05/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2570-1cd8-4aec530.tmp
O43 - CFD: 05/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2570-1cd8-4aec551.tmp
O43 - CFD: 05/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2570-1cd8-4aec562.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-261c-e70-14147fa.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-261c-e70-14148d7.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-261c-e70-1414927.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-261c-e70-1414967.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-261c-e70-1414ae0.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-261c-e70-1414b50.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-261c-e70-1414bfd.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-261c-e70-1414c3e.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-261c-e70-1414c6f.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-261c-e70-1414cee.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-261c-e70-1414cff.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-261c-e70-1414d9e.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-261c-e70-1414daf.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-261c-e70-1414dd1.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-261c-e70-1414df2.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-261c-e70-1414e52.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-261c-e70-1414e92.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-261c-e70-1414ec3.tmp
O43 - CFD: 10/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-261c-e70-1414f42.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26ec-27a8-15d5ebc4.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26ec-27a8-15d5ed1e.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26ec-27a8-15d5ee58.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26ec-27a8-15d5ef45.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26ec-27a8-15d5f002.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26ec-27a8-15d5f033.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26ec-27a8-15d5f083.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26ec-27a8-15d5f0d3.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26ec-27a8-15d5f0f4.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26ec-27a8-15d5f135.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26ec-27a8-15d5f28f.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26ec-27a8-15d5f417.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26ec-27a8-15d5f487.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26ec-27a8-15d5f4c7.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26ec-27a8-15d5f4f8.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26ec-27a8-15d5f539.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26ec-27a8-15d5f663.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26ec-27a8-15d5f731.tmp
O43 - CFD: 28/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-26ec-27a8-15d5f781.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-1618-43ddf0c0.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-1618-43ddf0f1.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-1618-43ddf141.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-1618-43ddf172.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-1618-43ddf193.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-1618-43ddf1b4.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-1618-43ddf1d6.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-1618-43ddf216.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-1618-43ddf237.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-1618-43ddf268.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-1618-43ddf383.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-1618-43ddf3c4.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-1618-43ddf414.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-1618-43ddf435.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-1618-43ddf476.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-1618-43ddf4d6.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-1618-43ddf506.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-1618-43ddf576.tmp
O43 - CFD: 04/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-1618-43ddf597.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-874-436bb43e.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-874-436bb598.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-874-436bb711.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-874-436bb7af.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-874-436bb7e0.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-874-436bb821.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-874-436bb94b.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-874-436bb99c.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-874-436bb9ad.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-874-436bb9ce.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-874-436bb9f0.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-874-436bba9e.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-874-436bbb4b.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-874-436bbb6d.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-874-436bbb9e.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-874-436bbd17.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-874-436bbd47.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-874-436bbdc6.tmp
O43 - CFD: 06/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-27b0-874-436bbe26.tmp
O43 - CFD: 21/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b0-1884-15562dae.tmp
O43 - CFD: 21/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b0-1884-15562e7b.tmp
O43 - CFD: 21/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b0-1884-15562eda.tmp
O43 - CFD: 21/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b0-1884-15562f59.tmp
O43 - CFD: 21/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b0-1884-15562fe8.tmp
O43 - CFD: 21/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b0-1884-155630f4.tmp
O43 - CFD: 21/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b0-1884-155631b1.tmp
O43 - CFD: 21/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b0-1884-15563240.tmp
O43 - CFD: 21/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b0-1884-155632ce.tmp
O43 - CFD: 21/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b0-1884-1556333e.tmp
O43 - CFD: 21/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b0-1884-1556339e.tmp
O43 - CFD: 21/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b0-1884-155633ee.tmp
O43 - CFD: 21/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b0-1884-1556342e.tmp
O43 - CFD: 21/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b0-1884-1556346f.tmp
O43 - CFD: 21/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b0-1884-155634a0.tmp
O43 - CFD: 21/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b0-1884-155634d0.tmp
O43 - CFD: 21/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b0-1884-155634f2.tmp
O43 - CFD: 21/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b0-1884-15563523.tmp
O43 - CFD: 21/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29b0-1884-15563544.tmp
O43 - CFD: 19/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29e8-2e0-152a0953.tmp
O43 - CFD: 19/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29e8-2e0-152a0a10.tmp
O43 - CFD: 19/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29e8-2e0-152a0aaf.tmp
O43 - CFD: 19/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29e8-2e0-152a0ae0.tmp
O43 - CFD: 19/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29e8-2e0-152a0b30.tmp
O43 - CFD: 19/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29e8-2e0-152a0b41.tmp
O43 - CFD: 19/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29e8-2e0-152a0b63.tmp
O43 - CFD: 19/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29e8-2e0-152a0b84.tmp
O43 - CFD: 19/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29e8-2e0-152a0bb5.tmp
O43 - CFD: 19/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29e8-2e0-152a0bd6.tmp
O43 - CFD: 19/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29e8-2e0-152a0c07.tmp
O43 - CFD: 19/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29e8-2e0-152a0c28.tmp
O43 - CFD: 19/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29e8-2e0-152a0c78.tmp
O43 - CFD: 19/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29e8-2e0-152a0c99.tmp
O43 - CFD: 19/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29e8-2e0-152a0cca.tmp
O43 - CFD: 19/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29e8-2e0-152a0cdc.tmp
O43 - CFD: 19/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29e8-2e0-152a0cfd.tmp
O43 - CFD: 19/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29e8-2e0-152a0d2e.tmp
O43 - CFD: 19/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-29e8-2e0-152a0d4f.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2a58-19e4-39941ef0.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2a58-19e4-3994b1fb.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2a58-19e4-3994d92c.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2a58-19e4-39950714.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2a58-19e4-3995301a.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2a58-19e4-39954fba.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2a58-19e4-39956caa.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2a58-19e4-39958cf5.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2a58-19e4-3995aae0.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2a58-19e4-3995c6e6.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2a58-19e4-3995e54d.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2a58-19e4-3995fbb5.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2a58-19e4-399621dd.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2a58-19e4-39965f94.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2a58-19e4-39971e33.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2a58-19e4-39974861.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2a58-19e4-3997857c.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2a58-19e4-3997db20.tmp
O43 - CFD: 02/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2a58-19e4-39981fbc.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2ae8-1b38-3398e875.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2ae8-1b38-3398e8b6.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2ae8-1b38-3398e935.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2ae8-1b38-3398e947.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2ae8-1b38-3398e977.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2ae8-1b38-3398e9e7.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2ae8-1b38-3398ea08.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2ae8-1b38-3398ea29.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2ae8-1b38-3398ea79.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2ae8-1b38-3398ea8b.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2ae8-1b38-3398eabc.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2ae8-1b38-3398eb1c.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2ae8-1b38-3398ec18.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2ae8-1b38-3398ec29.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2ae8-1b38-3398ec5a.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2ae8-1b38-3398ece9.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2ae8-1b38-3398ed0a.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2ae8-1b38-3398ed3b.tmp
O43 - CFD: 01/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2ae8-1b38-3398ef02.tmp
O43 - CFD: 03/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2b6c-2f9c-5719541.tmp
O43 - CFD: 03/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2b6c-2f9c-5719581.tmp
O43 - CFD: 03/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2b6c-2f9c-57195d1.tmp
O43 - CFD: 03/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2b6c-2f9c-5719612.tmp
O43 - CFD: 03/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2b6c-2f9c-5719652.tmp
O43 - CFD: 03/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2b6c-2f9c-5719683.tmp
O43 - CFD: 03/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2b6c-2f9c-57196d3.tmp
O43 - CFD: 03/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2b6c-2f9c-5719714.tmp
O43 - CFD: 03/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2b6c-2f9c-5719745.tmp
O43 - CFD: 03/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2b6c-2f9c-57197a5.tmp
O43 - CFD: 03/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2b6c-2f9c-57197e5.tmp
O43 - CFD: 03/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2b6c-2f9c-5719826.tmp
O43 - CFD: 03/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2b6c-2f9c-5719866.tmp
O43 - CFD: 03/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2b6c-2f9c-57198a7.tmp
O43 - CFD: 03/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2b6c-2f9c-5719c62.tmp
O43 - CFD: 03/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2b6c-2f9c-5719c93.tmp
O43 - CFD: 03/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2b6c-2f9c-5719cf2.tmp
O43 - CFD: 03/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2b6c-2f9c-5719d52.tmp
O43 - CFD: 03/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2b6c-2f9c-5719dc1.tmp
O43 - CFD: 04/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2bb8-698-ac1493d.tmp
O43 - CFD: 04/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2bb8-698-ac149eb.tmp
O43 - CFD: 04/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2bb8-698-ac14a1c.tmp
O43 - CFD: 04/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2bb8-698-ac14a4c.tmp
O43 - CFD: 04/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2bb8-698-ac14a6e.tmp
O43 - CFD: 04/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2bb8-698-ac14a8f.tmp
O43 - CFD: 04/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2bb8-698-ac14ab0.tmp
O43 - CFD: 04/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2bb8-698-ac14ae1.tmp
O43 - CFD: 04/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2bb8-698-ac14b50.tmp
O43 - CFD: 04/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2bb8-698-ac14b91.tmp
O43 - CFD: 04/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2bb8-698-ac14bb2.tmp
O43 - CFD: 04/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2bb8-698-ac14d4a.tmp
O43 - CFD: 04/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2bb8-698-ac14daa.tmp
O43 - CFD: 04/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2bb8-698-ac14ddb.tmp
O43 - CFD: 04/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2bb8-698-ac14e1c.tmp
O43 - CFD: 04/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2bb8-698-ac14e2d.tmp
O43 - CFD: 04/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2bb8-698-ac14e3f.tmp
O43 - CFD: 04/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2bb8-698-ac14eae.tmp
O43 - CFD: 04/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2bb8-698-ac14f2d.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2cd4-f34-2e7534b2.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2cd4-f34-2e7534f3.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2cd4-f34-2e753504.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2cd4-f34-2e753516.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2cd4-f34-2e753518.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2cd4-f34-2e753529.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2cd4-f34-2e75353b.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2cd4-f34-2e753637.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2cd4-f34-2e753678.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2cd4-f34-2e7538eb.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2cd4-f34-2e753ad1.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2cd4-f34-2e753b02.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2cd4-f34-2e753b33.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2cd4-f34-2e753b54.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2cd4-f34-2e753b66.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2cd4-f34-2e753b77.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2cd4-f34-2e753b98.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2cd4-f34-2e753bc9.tmp
O43 - CFD: 30/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2cd4-f34-2e753beb.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d44-1ab4-48ac2b4a.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d44-1ab4-48ac2d40.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d44-1ab4-48ac2d70.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d44-1ab4-48ac2e4d.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d44-1ab4-48ac2f1a.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d44-1ab4-48ac2f5b.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d44-1ab4-48ac2f6c.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d44-1ab4-48ac2fad.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d44-1ab4-48ac2fde.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d44-1ab4-48ac303e.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d44-1ab4-48ac310b.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d44-1ab4-48ac312c.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d44-1ab4-48ac318c.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d44-1ab4-48ac31dc.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d44-1ab4-48ac320d.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d44-1ab4-48ac323e.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d44-1ab4-48ac326e.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d44-1ab4-48ac32de.tmp
O43 - CFD: 05/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d44-1ab4-48ac334d.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d4c-c2c-2f3f9143.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d4c-c2c-2f3f9ef1.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d4c-c2c-2f3fa00c.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d4c-c2c-2f3fa250.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d4c-c2c-2f3fa34c.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d4c-c2c-2f3fa571.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d4c-c2c-2f3fa6da.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d4c-c2c-2f3fa99c.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d4c-c2c-2f3facda.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d4c-c2c-2f3fb1be.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d4c-c2c-2f3fb3d3.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d4c-c2c-2f3fb8a7.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d4c-c2c-2f3fbc62.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d4c-c2c-2f3fbe97.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d4c-c2c-2f3fc204.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d4c-c2c-2f3fc38d.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d4c-c2c-2f3fc7d4.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d4c-c2c-2f3fcaf3.tmp
O43 - CFD: 26/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-2d4c-c2c-2f3fd267.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b8-2404-33a85242.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b8-2404-33a85c37.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b8-2404-33a86179.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b8-2404-33a86841.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b8-2404-33a869ca.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b8-2404-33a86f6a.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b8-2404-33a87528.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b8-2404-33a878c4.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b8-2404-33a87cbe.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b8-2404-33a880a8.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b8-2404-33a88a20.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b8-2404-33a88c54.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b8-2404-33a88cc4.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b8-2404-33a88f56.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b8-2404-33a891aa.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b8-2404-33a89380.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b8-2404-33a8948c.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b8-2404-33a8975d.tmp
O43 - CFD: 23/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-3b8-2404-33a89d4a.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-420-2358-1f361ccd.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-420-2358-1f361d7b.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-420-2358-1f361d9c.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-420-2358-1f361ddd.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-420-2358-1f361e1d.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-420-2358-1f361e6d.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-420-2358-1f361e7f.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-420-2358-1f361ecf.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-420-2358-1f361f00.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-420-2358-1f361f40.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-420-2358-1f361f62.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-420-2358-1f361f93.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-420-2358-1f361fe3.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-420-2358-1f362023.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-420-2358-1f362064.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-420-2358-1f362085.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-420-2358-1f3620c5.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-420-2358-1f3622ea.tmp
O43 - CFD: 19/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-420-2358-1f3623c7.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-53c-540-ba86d.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-53c-540-ba8ae.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-53c-540-ba8b0.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-53c-540-ba8b2.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-53c-540-ba8b4.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-53c-540-ba8c5.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-53c-540-ba8c7.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-53c-540-ba8c9.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-53c-540-ba8db.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-53c-540-ba8dd.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-53c-540-ba8df.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-53c-540-ba8f0.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-53c-540-ba8f2.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-53c-540-ba8f4.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-53c-540-ba906.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-53c-540-ba908.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-53c-540-ba90a.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-53c-540-ba91c.tmp
O43 - CFD: 20/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-53c-540-ba92d.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-59c-894-249c4eb8.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-59c-894-249c50be.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-59c-894-249c5880.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-59c-894-249c5da3.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-59c-894-249c60e1.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-59c-894-249c63a2.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-59c-894-249c6a5b.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-59c-894-249c6fac.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-59c-894-249c74bf.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-59c-894-249c7703.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-59c-894-249c79d4.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-59c-894-249c84c3.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-59c-894-249c8726.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-59c-894-249c8ce5.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-59c-894-249c9090.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-59c-894-249c9517.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-59c-894-249c9cf8.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-59c-894-249ca0e2.tmp
O43 - CFD: 20/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-59c-894-249ca440.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-618-1c48-4e3b0b64.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-618-1c48-4e3b0c60.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-618-1c48-4e3b0c91.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-618-1c48-4e3b0cb2.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-618-1c48-4e3b0ce3.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-618-1c48-4e3b0d24.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-618-1c48-4e3b0d45.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-618-1c48-4e3b0d85.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-618-1c48-4e3b0db6.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-618-1c48-4e3b0e26.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-618-1c48-4e3b0e56.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-618-1c48-4e3b0e87.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-618-1c48-4e3b0ec8.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-618-1c48-4e3b0ef9.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-618-1c48-4e3b0fc6.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-618-1c48-4e3b1026.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-618-1c48-4e3b1095.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-618-1c48-4e3b10f5.tmp
O43 - CFD: 06/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-618-1c48-4e3b1116.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-69c-13a0-3c0171.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-69c-13a0-3c0192.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-69c-13a0-3c01a4.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-69c-13a0-3c01b5.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-69c-13a0-3c01b7.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-69c-13a0-3c01c9.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-69c-13a0-3c01cb.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-69c-13a0-3c01dc.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-69c-13a0-3c01de.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-69c-13a0-3c01f0.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-69c-13a0-3c0202.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-69c-13a0-3c0204.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-69c-13a0-3c0215.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-69c-13a0-3c0217.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-69c-13a0-3c0229.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-69c-13a0-3c022b.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-69c-13a0-3c023d.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-69c-13a0-3c024e.tmp
O43 - CFD: 29/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-69c-13a0-3c0250.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-894-1940-4ec27c3e.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-894-1940-4ec27d3a.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-894-1940-4ec27da9.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-894-1940-4ec27dda.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-894-1940-4ec27dfc.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-894-1940-4ec27e4c.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-894-1940-4ec27e7d.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-894-1940-4ec27e9e.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-894-1940-4ec27ebf.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-894-1940-4ec27ef0.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-894-1940-4ec27f11.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-894-1940-4ec27f42.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-894-1940-4ec27f73.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-894-1940-4ec27f94.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-894-1940-4ec27fb5.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-894-1940-4ec27fc7.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-894-1940-4ec27ff8.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-894-1940-4ec28077.tmp
O43 - CFD: 08/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-894-1940-4ec280b7.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9c8-ef4-4e927e.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9c8-ef4-4e932c.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9c8-ef4-4e935d.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9c8-ef4-4e93bc.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9c8-ef4-4e943b.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9c8-ef4-4e945d.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9c8-ef4-4e94cc.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9c8-ef4-4e950d.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9c8-ef4-4e9de8.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9c8-ef4-4e9e86.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9c8-ef4-4e9ea8.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9c8-ef4-4e9f36.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9c8-ef4-4e9fa6.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9c8-ef4-4e9ff6.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9c8-ef4-4ea017.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9c8-ef4-4ea058.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9c8-ef4-4ea079.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9c8-ef4-4ea0b9.tmp
O43 - CFD: 13/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9c8-ef4-4ea0fa.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9dc-25c4-c1158e.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9dc-25c4-c116c9.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9dc-25c4-c117a5.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9dc-25c4-c11815.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9dc-25c4-c1195f.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9dc-25c4-c11a4b.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9dc-25c4-c11ada.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9dc-25c4-c11bf5.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9dc-25c4-c11c65.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9dc-25c4-c11ca5.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9dc-25c4-c11ce6.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9dc-25c4-c11cf7.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9dc-25c4-c11d38.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9dc-25c4-c11dd6.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9dc-25c4-c11df7.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9dc-25c4-c11e38.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9dc-25c4-c11e88.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9dc-25c4-c11ee8.tmp
O43 - CFD: 21/04/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9dc-25c4-c11f38.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9e0-174c-10a758ad.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9e0-174c-10a75eba.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9e0-174c-10a76350.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9e0-174c-10a76536.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9e0-174c-10a76632.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9e0-174c-10a76a99.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9e0-174c-10a76d99.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9e0-174c-10a7704b.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9e0-174c-10a771b4.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9e0-174c-10a7758e.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9e0-174c-10a77755.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9e0-174c-10a779b9.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9e0-174c-10a77ac4.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9e0-174c-10a77b15.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9e0-174c-10a77b36.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9e0-174c-10a77b86.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9e0-174c-10a77bc6.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9e0-174c-10a77c26.tmp
O43 - CFD: 27/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-9e0-174c-10a77c47.tmp
O43 - CFD: 19/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ae8-2dcc-b2be867.tmp
O43 - CFD: 19/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ae8-2dcc-b2bea0f.tmp
O43 - CFD: 19/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ae8-2dcc-b2bea6f.tmp
O43 - CFD: 19/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ae8-2dcc-b2beaa0.tmp
O43 - CFD: 19/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ae8-2dcc-b2beaf0.tmp
O43 - CFD: 19/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ae8-2dcc-b2bebdc.tmp
O43 - CFD: 19/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ae8-2dcc-b2bec1d.tmp
O43 - CFD: 19/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ae8-2dcc-b2becea.tmp
O43 - CFD: 19/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ae8-2dcc-b2bed0b.tmp
O43 - CFD: 19/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ae8-2dcc-b2bed5b.tmp
O43 - CFD: 19/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ae8-2dcc-b2bee57.tmp
O43 - CFD: 19/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ae8-2dcc-b2beec7.tmp
O43 - CFD: 19/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ae8-2dcc-b2beed8.tmp
O43 - CFD: 19/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ae8-2dcc-b2beefa.tmp
O43 - CFD: 19/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ae8-2dcc-b2bef1b.tmp
O43 - CFD: 19/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ae8-2dcc-b2bef5b.tmp
O43 - CFD: 19/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ae8-2dcc-b2befab.tmp
O43 - CFD: 19/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ae8-2dcc-b2bf0e6.tmp
O43 - CFD: 19/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-ae8-2dcc-b2bf1d2.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-aec-1ab8-f3920aa.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-aec-1ab8-f3920fa.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-aec-1ab8-f39211b.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-aec-1ab8-f39214c.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-aec-1ab8-f39217d.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-aec-1ab8-f39218e.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-aec-1ab8-f3921b0.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-aec-1ab8-f3921e1.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-aec-1ab8-f392221.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-aec-1ab8-f392252.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-aec-1ab8-f392273.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-aec-1ab8-f392294.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-aec-1ab8-f3922d5.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-aec-1ab8-f3922f6.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-aec-1ab8-f392327.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-aec-1ab8-f392348.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-aec-1ab8-f39235a.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-aec-1ab8-f39238b.tmp
O43 - CFD: 01/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-aec-1ab8-f3923db.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b4c-db4-b203019.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b4c-db4-b2032bb.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b4c-db4-b2032ec.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b4c-db4-b20335b.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b4c-db4-b203477.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b4c-db4-b203498.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b4c-db4-b203517.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b4c-db4-b203567.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b4c-db4-b2035a7.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b4c-db4-b203607.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b4c-db4-b203628.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b4c-db4-b2036a7.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b4c-db4-b2036d8.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b4c-db4-b203757.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b4c-db4-b203769.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b4c-db4-b203846.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b4c-db4-b203886.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b4c-db4-b203915.tmp
O43 - CFD: 12/06/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-b4c-db4-b203955.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d84-1ec4-14e5d2ec.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d84-1ec4-14e5d35b.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d84-1ec4-14e5d3da.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d84-1ec4-14e5d40b.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d84-1ec4-14e5d4b9.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d84-1ec4-14e5d577.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d84-1ec4-14e5d5c7.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d84-1ec4-14e5d655.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d84-1ec4-14e5d686.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d84-1ec4-14e5d6d6.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d84-1ec4-14e5d6f8.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d84-1ec4-14e5d748.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d84-1ec4-14e5d873.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d84-1ec4-14e5d894.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d84-1ec4-14e5d8c5.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d84-1ec4-14e5d963.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d84-1ec4-14e5d9c3.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d84-1ec4-14e5da9f.tmp
O43 - CFD: 17/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-d84-1ec4-14e5dad0.tmp
O43 - CFD: 09/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-db0-1758-5368fc2.tmp
O43 - CFD: 09/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-db0-1758-5369273.tmp
O43 - CFD: 09/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-db0-1758-536c4ff.tmp
O43 - CFD: 09/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-db0-1758-536c629.tmp
O43 - CFD: 09/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-db0-1758-536c6d7.tmp
O43 - CFD: 09/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-db0-1758-536c727.tmp
O43 - CFD: 09/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-db0-1758-536c778.tmp
O43 - CFD: 09/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-db0-1758-536c835.tmp
O43 - CFD: 09/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-db0-1758-536c885.tmp
O43 - CFD: 09/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-db0-1758-536c8c6.tmp
O43 - CFD: 09/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-db0-1758-536c8f7.tmp
O43 - CFD: 09/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-db0-1758-536c937.tmp
O43 - CFD: 09/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-db0-1758-536c997.tmp
O43 - CFD: 09/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-db0-1758-536c9c8.tmp
O43 - CFD: 09/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-db0-1758-536ca18.tmp
O43 - CFD: 09/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-db0-1758-536cae5.tmp
O43 - CFD: 09/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-db0-1758-536cb16.tmp
O43 - CFD: 09/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-db0-1758-536cb66.tmp
O43 - CFD: 09/07/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-db0-1758-536cbb6.tmp
O43 - CFD: 23/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e04-fa4-338e54a2.tmp
O43 - CFD: 23/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e04-fa4-338e5e2a.tmp
O43 - CFD: 23/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e04-fa4-338e6734.tmp
O43 - CFD: 23/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e04-fa4-338e7000.tmp
O43 - CFD: 23/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e04-fa4-338e8698.tmp
O43 - CFD: 23/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e04-fa4-338e90cb.tmp
O43 - CFD: 23/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e04-fa4-338e9987.tmp
O43 - CFD: 23/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e04-fa4-338e9b10.tmp
O43 - CFD: 23/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e04-fa4-338ea2c3.tmp
O43 - CFD: 23/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e04-fa4-338ea9d9.tmp
O43 - CFD: 23/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e04-fa4-338eb601.tmp
O43 - CFD: 23/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e04-fa4-338ebcaa.tmp
O43 - CFD: 23/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e04-fa4-338ec508.tmp
O43 - CFD: 23/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e04-fa4-338ecb44.tmp
O43 - CFD: 23/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e04-fa4-338ed597.tmp
O43 - CFD: 23/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e04-fa4-338edcad.tmp
O43 - CFD: 23/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e04-fa4-338ee1ef.tmp
O43 - CFD: 23/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e04-fa4-338ee6a4.tmp
O43 - CFD: 23/08/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e04-fa4-338eecc1.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e18-e10-5364db8c.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e18-e10-5364e15a.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e18-e10-5364e3fc.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e18-e10-5364e71b.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e18-e10-5364e817.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e18-e10-5364e9a0.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e18-e10-5364e9c1.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e18-e10-5364eb3a.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e18-e10-5364ebf7.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e18-e10-5364ee5b.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e18-e10-5364ef47.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e18-e10-5364f11e.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e18-e10-5364f304.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e18-e10-5364f46e.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e18-e10-5364f55a.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e18-e10-5364f656.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e18-e10-5364f81d.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e18-e10-5364fbe8.tmp
O43 - CFD: 07/05/2020 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\tw-e18-e10-5364ff16.tmp
O43 - CFD: 20/04/2020 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 12/05/2020 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 20/04/2020 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation

---\\ ShellIconOverlayIdentifiers (SIOI) (4) - 0s
O106 - SIOI: Google Drive Shell extension [ GoogleDriveBlacklisted] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}. (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\googledrivesync32.dll =>.Google LLC®
O106 - SIOI: Google Drive Shell extension [ GoogleDriveSynced] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}. (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\googledrivesync32.dll =>.Google LLC®
O106 - SIOI: Google Drive Shell extension [ GoogleDriveSyncing] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}. (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\googledrivesync32.dll =>.Google LLC®
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation

---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (43) - 3s
O108 - CMH1: ContextMenu - {947EAAEA-495C-4CAB-8707-35217F14849F} . (.Orphan.) [Unsigned]
O108 - CMH1: EPP - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft®
O108 - CMH1: GDContextMenu - {BB02B294-8425-42E5-983F-41A1FA970CD6} . (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\contextmenu32.dll =>.Google LLC®
O108 - CMH1: LavasoftShellExt - {DCE027F7-16A4-4BEE-9BE7-74F80EE3738F} . (.Orphan.) [Unsigned]
O108 - CMH1: ModernSharing - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH1: Open With - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH1: Open With EncryptionMenu - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH1: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH1: ShellExtension - . (.Orphan.) [Unsigned]
O108 - CMH1: WinRAR - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (...) -- C:\Program Files\WinRAR\RarExt.dll [Unsigned]
O108 - CMH1: WorkFolders - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH2: GDContextMenu - {BB02B294-8425-42E5-983F-41A1FA970CD6} . (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\contextmenu32.dll =>.Google LLC®
O108 - CMH2: OpenContainingFolderMenu - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH3: CopyAsPathMenu - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH3: MBAMShlExt - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation®
O108 - CMH3: SendTo - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH3: UnlockerShellExtension - {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} . (...) -- C:\Program Files\Unlocker\UnlockerCOM.dll [Unsigned]
O108 - CMH4: ContextMenu - {947EAAEA-495C-4CAB-8707-35217F14849F} . (.Orphan.) [Unsigned]
O108 - CMH4: EncryptionMenu - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH4: EPP - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft®
O108 - CMH4: GDContextMenu - {BB02B294-8425-42E5-983F-41A1FA970CD6} . (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\contextmenu32.dll =>.Google LLC®
O108 - CMH4: RecuvaShellExt - {435E5DF5-2510-463C-B223-BDA47006D002} . (.Piriform Ltd - Recuva shell extensions.) -- C:\Program Files\Recuva\RecuvaShell.dll =>.Piriform Ltd®
O108 - CMH4: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH4: ShellExtension - . (.Orphan.) [Unsigned]
O108 - CMH4: WinRAR - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (...) -- C:\Program Files\WinRAR\RarExt.dll [Unsigned]
O108 - CMH4: WorkFolders - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH5: Gadgets - {6B9228DA-9C15-419e-856C-19E768A13BDC} . (.Orphan.) [Unsigned]
O108 - CMH5: New - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH5: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH5: WorkFolders - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH6: ContextMenu - {947EAAEA-495C-4CAB-8707-35217F14849F} . (.Orphan.) [Unsigned]
O108 - CMH6: LavasoftShellExt - {DCE027F7-16A4-4BEE-9BE7-74F80EE3738F} . (.Orphan.) [Unsigned]
O108 - CMH6: Library Location - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH6: MBAMShlExt - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation®
O108 - CMH6: PintoStartScreen - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft®
O108 - CMH6: RecuvaShellExt - {435E5DF5-2510-463C-B223-BDA47006D002} . (.Piriform Ltd - Recuva shell extensions.) -- C:\Program Files\Recuva\RecuvaShell.dll =>.Piriform Ltd®
O108 - CMH6: UnlockerShellExtension - {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} . (...) -- C:\Program Files\Unlocker\UnlockerCOM.dll [Unsigned]
O108 - CMH6: WinRAR - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (...) -- C:\Program Files\WinRAR\RarExt.dll [Unsigned]
O108 - CMH7: EnhancedStorageShell - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH7: EPP - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft®
O108 - CMH7: LavasoftShellExt - {DCE027F7-16A4-4BEE-9BE7-74F80EE3738F} . (.Orphan.) [Unsigned]
O108 - CMH7: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH7: ShellExtension - . (.Orphan.) [Unsigned]

---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (19) - 3s
O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft®
O50 - IFEO:C:\Windows\System32\drvinst.exe - (.Microsoft Corporation - Driver Installation Module.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\FlashPlayerApp.exe - (.Adobe - Adobe Flash Player Control Panel Applet.) [DisableExceptionChainValidation\\0] =>.Adobe Inc.®
O50 - IFEO:C:\Windows\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] =>.Microsoft®
O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] =>.Microsoft®
O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft®
O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation

---\\ ÉNUMÉRATION DES CLÉS StartupReg (9) - 1s
O53 - SMSR:HKLM\...\startupreg\ccleaner [Key] . (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Software Ltd
O53 - SMSR:HKLM\...\startupreg\CCleaner Monitoring [Key] . (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Software Ltd
O53 - SMSR:HKLM\...\startupreg\EADM [Key] . (...) -- C:\Program Files\Origin\Origin.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\HP Software Update [Key] . (...) -- C:\Program Files\HP\HP Software Update\HPWuSchd2.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\iTunesHelper [Key] . (...) -- C:\Program Files\iTunes\iTunesHelper.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\Sidebar [Key] . (...) -- C:\Program Files\Windows Sidebar\sidebar.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\swg [Key] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe =>.Google Inc.
O53 - SMSR:HKLM\...\startupreg\UnlockerAssistant [Key] . (...) -- C:\Program Files\Unlocker\UnlockerAssistant.exe
O53 - SMSR:HKLM\...\startupreg\WahOO [Key] . (...) -- C:\Program Files\KowMedia\WahOO\WahOO.exe (.not file.)

---\\ LISTE DES PILOTES DU SYSTÈME (406) - 24s
O58 - SDL:2019/12/07 08:06:24 A . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\WINDOWS\System32\drivers\1394ohci.sys [192000] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:24 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [86032] =>.Microsoft®
O58 - SDL:2017/02/02 18:26:20 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\5AB33452.sys [219584] =>.Malwarebytes Corporation®
O58 - SDL:2020/08/13 13:45:56 A . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\WINDOWS\System32\drivers\acpi.sys [607032] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:24 A . (.Microsoft Corporation - ACPI Devices Driver.) -- C:\WINDOWS\System32\drivers\AcpiDev.sys [15360] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:32 A . (.Microsoft Corporation - ACPIEx Driver.) -- C:\WINDOWS\System32\drivers\acpiex.sys [97288] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:24 A . (.Microsoft Corporation - ACPI Processor Aggregator Device Driver.) -- C:\WINDOWS\System32\drivers\acpipagr.sys [10752] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:23 A . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\WINDOWS\System32\drivers\acpipmi.sys [12800] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:24 A . (.Microsoft Corporation - ACPI Wake Alarm.) -- C:\WINDOWS\System32\drivers\acpitime.sys [10240] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:32 A . (.Microsoft Corporation - Audio KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\Acx01000.sys [296448] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:24 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1038136] =>.Microsoft®
O58 - SDL:2020/08/13 13:47:26 A . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\afd.sys [517944] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:33 A . (.Microsoft Corporation - AF_UNIX socket provider.) -- C:\WINDOWS\System32\drivers\afunix.sys [29696] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/04/20 19:31:45 A . (.Microsoft Corporation - Gestionnaire d'appels RAS Agile Vpn Minipor.) -- C:\WINDOWS\System32\drivers\agilevpn.sys [92672] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:24 A . (.Microsoft Corporation - Application Compatibility Cache.) -- C:\WINDOWS\System32\drivers\ahcache.sys [231424] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:24 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdk8.sys [161296] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:24 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdppm.sys [164152] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:24 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [75064] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:24 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [215352] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:24 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [22840] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:12 A . (.Microsoft Corporation - AppID Driver.) -- C:\WINDOWS\System32\drivers\appid.sys [165904] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:12 A . (.Microsoft Corporation - Applocker Filter.) -- C:\WINDOWS\System32\drivers\applockerfltr.sys [13312] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:24 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [116536] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:35 A . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\WINDOWS\System32\drivers\asyncmac.sys [20480] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:26 A . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [22840] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:26 A . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\WINDOWS\System32\drivers\ataport.sys [169784] =>.Microsoft®
O58 - SDL:2010/09/16 19:49:00 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\WINDOWS\System32\drivers\athur.sys [1559552] [Unsigned] =>.Atheros Communications, Inc.
O58 - SDL:2019/12/07 08:06:43 A . (.Microsoft Corporation - BAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\bam.sys [69432] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:24 A . (.Microsoft Corporation - Battery Class Driver.) -- C:\WINDOWS\System32\drivers\battc.sys [35344] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:20 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [8192] [Unsigned] =>.Broadcom Corporation
O58 - SDL:2019/12/07 08:07:37 A . (.Microsoft Corporation - BEEP Driver.) -- C:\WINDOWS\System32\drivers\beep.sys [7168] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/06/10 10:55:47 A . (.Microsoft Corporation - Windows Bind Filter Driver.) -- C:\WINDOWS\System32\drivers\bindflt.sys [107320] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:35 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\WINDOWS\System32\drivers\bowser.sys [77312] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:49 A . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\WINDOWS\System32\drivers\bridge.sys [96256] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:20 A . (.Microsoft Corporation - Microsoft Bluetooth Audio Multiprofile Mana.) -- C:\WINDOWS\System32\drivers\BtaMPM.sys [27648] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:20 A . (.Microsoft Corporation - Bluetooth A2DP Driver.) -- C:\WINDOWS\System32\drivers\BthA2dp.sys [200192] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/08/13 13:45:56 A . (.Microsoft Corporation - Extension de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthenum.sys [91136] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:20 A . (.Microsoft Corporation - Bluetooth Hands-Free Audio and Call Control.) -- C:\WINDOWS\System32\drivers\BthHfEnum.sys [104448] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/08/13 13:45:56 A . (.Microsoft Corporation - Bluetooth Transport Extensibility Miniport.) -- C:\WINDOWS\System32\drivers\BthMini.SYS [30720] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:23 A . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\WINDOWS\System32\drivers\bthmodem.sys [53760] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/08/13 13:45:57 A . (.Microsoft Corporation - Pilote de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthport.sys [1165824] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/08/13 13:45:57 A . (.Microsoft Corporation - Pilote de Miniport Bluetooth.) -- C:\WINDOWS\System32\drivers\BTHUSB.SYS [76288] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Button Converter Driver.) -- C:\WINDOWS\System32\drivers\buttonconverter.sys [31232] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:20 A . (.Microsoft Corporation - Charge Arbiration Driver.) -- C:\WINDOWS\System32\drivers\CAD.sys [55608] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:46 A . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\cdfs.sys [74752] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:24 A . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\cdrom.sys [126976] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:43 A . (.Microsoft Corporation - Event Aggregation Kernel Mode Library.) -- C:\WINDOWS\System32\drivers\CEA.sys [64016] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:00 A . (...) -- C:\WINDOWS\System32\drivers\cimfs.sys [68096] [Unsigned]
O58 - SDL:2019/12/07 08:06:20 A . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\WINDOWS\System32\drivers\circlass.sys [40448] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:15 A . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\WINDOWS\System32\drivers\Classpnp.sys [352784] =>.Microsoft®
O58 - SDL:2020/08/13 13:47:20 A . (.Microsoft Corporation - Cloud Files Mini Filter Driver.) -- C:\WINDOWS\System32\drivers\cldflt.sys [378880] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/05/13 13:15:51 A . (.Microsoft Corporation - Common Log File System Driver.) -- C:\WINDOWS\System32\drivers\clfs.sys [277832] =>.Microsoft®
O58 - SDL:2020/08/13 13:46:25 A . (.Microsoft Corporation - CLIP Service.) -- C:\WINDOWS\System32\drivers\ClipSp.sys [871240] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:24 A . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\WINDOWS\System32\drivers\CmBatt.sys [26624] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:32 A . (.Microsoft Corporation - Noyau Gestionnaire de configuration Configu.) -- C:\WINDOWS\System32\drivers\cmimcext.sys [25616] =>.Microsoft®
O58 - SDL:2020/05/13 13:15:49 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\WINDOWS\System32\drivers\cng.sys [552128] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:00 A . (.Microsoft Corporation - CNG Hardware Assist algorithm provider.) -- C:\WINDOWS\System32\drivers\cnghwassist.sys [32568] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:00 A . (.Microsoft Corporation - Console Driver.) -- C:\WINDOWS\System32\drivers\condrv.sys [44560] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:17 A . (.Microsoft Corporation - Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\crashdmp.sys [82960] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:43 A . (.Microsoft Corporation - DAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\dam.sys [79160] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:20 A . (.Microsoft Corporation - Xbox Device Authentication Driver.) -- C:\WINDOWS\System32\drivers\devauthe.sys [36352] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:18 A . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\dfsc.sys [114176] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:24 A . (.Microsoft Corporation - PnP Disk Driver.) -- C:\WINDOWS\System32\drivers\disk.sys [77840] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:18 A . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\WINDOWS\System32\drivers\Diskdump.sys [31032] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:18 A . (.Microsoft Corporation - Boot Over USB Dump Driver.) -- C:\WINDOWS\System32\drivers\Dmpusbstor.sys [11264] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Mémoire dynamique.) -- C:\WINDOWS\System32\drivers\dmvsc.sys [50704] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:23 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmk.sys [69632] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:23 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmkaud.sys [14696] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:12 A . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpata.sys [30736] =>.Microsoft®
O58 - SDL:2019/12/07 14:22:06 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\WINDOWS\System32\drivers\dumpfve.sys [75992] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - SD Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsd.sys [158520] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:00 A . (.Microsoft Corporation - SD Host Controller Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsdport.sys [23040] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:18 A . (.Microsoft Corporation - Storport Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpstorport.sys [28472] =>.Microsoft®
O58 - SDL:2020/08/13 13:46:26 A . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\WINDOWS\System32\drivers\dxgkrnl.sys [2918216] =>.Microsoft®
O58 - SDL:2020/08/13 13:46:26 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms1.sys [358216] =>.Microsoft®
O58 - SDL:2020/08/13 13:46:26 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms2.sys [689992] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:46 A . (.Microsoft Corporation - Enhanced Storage Class driver for IEEE 1667.) -- C:\WINDOWS\System32\drivers\EhStorClass.sys [78648] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:20 A . (.Microsoft Corporation - Microsoft driver for storage devices suppor.) -- C:\WINDOWS\System32\drivers\EhStorTcgDrv.sys [104248] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:24 A . (.Microsoft Corporation - Error Device Driver.) -- C:\WINDOWS\System32\drivers\errdev.sys [10752] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:28 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\WINDOWS\System32\drivers\exfat.sys [316944] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:28 A . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\WINDOWS\System32\drivers\fastfat.sys [322064] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:24 A . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\WINDOWS\System32\drivers\fdc.sys [26112] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:32 A . (.Microsoft Corporation - Windows sandboxing and encryption filter.) -- C:\WINDOWS\System32\drivers\filecrypt.sys [45568] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:12 A . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\WINDOWS\System32\drivers\fileinfo.sys [69944] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:12 A . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\WINDOWS\System32\drivers\filetrace.sys [29184] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:24 A . (.Microsoft Corporation - Floppy Driver.) -- C:\WINDOWS\System32\drivers\flpydisk.sys [20992] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/05/13 13:15:50 A . (.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) -- C:\WINDOWS\System32\drivers\fltMgr.sys [301880] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:32 A . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) -- C:\WINDOWS\System32\drivers\fsdepends.sys [53256] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:15 A . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\WINDOWS\System32\drivers\fs_rec.sys [28472] =>.Microsoft®
O58 - SDL:2019/12/07 14:22:06 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\WINDOWS\System32\drivers\fvevol.sys [652600] =>.Microsoft®
O58 - SDL:2020/08/13 13:47:26 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\WINDOWS\System32\drivers\FWPKCLNT.SYS [352056] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:28 A . (.Microsoft Corporation - GPU Energy Kernel Driver.) -- C:\WINDOWS\System32\drivers\gpuenergydrv.sys [8192] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:20 A . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [107008] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/05/13 13:15:04 A . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\HdAudio.sys [336896] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/09/17 06:54:14 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\HECI.sys [41088] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 08:06:24 A . (.Microsoft Corporation - Hid Battery Driver.) -- C:\WINDOWS\System32\drivers\hidbatt.sys [30008] =>.Microsoft®
O58 - SDL:2020/08/13 13:45:57 A . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périp.) -- C:\WINDOWS\System32\drivers\hidbth.sys [98304] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Bibliothèque Hid Class.) -- C:\WINDOWS\System32\drivers\hidclass.sys [154624] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - I2C HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidi2c.sys [40960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - HID Button over Interrupt Driver.) -- C:\WINDOWS\System32\drivers\hidinterrupt.sys [41272] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:23 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidir.sys [38912] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Hid Parsing Library.) -- C:\WINDOWS\System32\drivers\hidparse.sys [31232] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - SPI HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidspi.sys [45056] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidusb.sys [28672] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:24 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [56632] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:15 A . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\WINDOWS\System32\drivers\http.sys [1044792] =>.Microsoft®
O58 - SDL:2019/12/07 08:08:06 A . (.Microsoft Corporation - Microsoft Hyper-V Socket Provider.) -- C:\WINDOWS\System32\drivers\hvsocket.sys [108344] =>.Microsoft®
O58 - SDL:2020/08/13 13:47:24 A . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\WINDOWS\System32\drivers\hwpolicy.sys [31560] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Microsoft VMBus Synthetic Keyboard Driver.) -- C:\WINDOWS\System32\drivers\hyperkbd.sys [22328] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Microsoft VMBus Video Device Miniport Drive.) -- C:\WINDOWS\System32\drivers\HyperVideo.sys [33592] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [99328] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:20 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [28672] [Unsigned] =>.Intel(R) Corporation
O58 - SDL:2019/12/07 08:06:20 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [73728] [Unsigned] =>.Intel(R) Corporation
O58 - SDL:2019/12/07 08:06:24 A . (.Intel Corporation - Intel(R) Atom(TM) Processor GPIO Controller.) -- C:\WINDOWS\System32\drivers\iaiogpio.sys [22016] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 08:06:24 A . (.Intel Corporation - Intel(R) Atom(TM) Processor I2C Controller.) -- C:\WINDOWS\System32\drivers\iaioi2c.sys [57856] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 08:06:26 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAVC.sys [692536] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [333624] =>.Microsoft®
O58 - SDL:2012/11/27 01:22:30 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd32.sys [10860032] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 08:07:00 A . (.Microsoft Corporation - Indirect displays kernel-mode filter driver.) -- C:\WINDOWS\System32\drivers\IndirectKmd.sys [32768] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/10/30 00:55:30 A . (.Intel(R) Corporation - Intel(R) Display HD Audio driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [209920] [Unsigned] =>.Intel(R) Corporation
O58 - SDL:2019/12/07 08:06:26 A . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\WINDOWS\System32\drivers\intelide.sys [17208] =>.Microsoft®
O58 - SDL:2020/08/13 13:45:56 A . (.Microsoft Corporation - Intel Power Engine Plugin.) -- C:\WINDOWS\System32\drivers\intelpep.sys [377824] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:20 A . (.Microsoft Corporation - Intel Power Limit Driver.) -- C:\WINDOWS\System32\drivers\intelpmax.sys [22016] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:24 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\intelppm.sys [178192] =>.Microsoft®
O58 - SDL:2020/08/13 13:45:56 A . (.Microsoft Corporation - Intel Telemetry Driver.) -- C:\WINDOWS\System32\drivers\IntelTA.sys [21480] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:28 A . (.Microsoft Corporation - Filtre de contrôle de taux d’E/S.) -- C:\WINDOWS\System32\drivers\iorate.sys [45584] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:34 A . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\WINDOWS\System32\drivers\ipfltdrv.sys [64000] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:26 A . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\WINDOWS\System32\drivers\IPMIDrv.sys [95544] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:00 A . (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\ipnat.sys [186880] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:30 A . (.Microsoft Corporation - IPT Driver.) -- C:\WINDOWS\System32\drivers\ipt.sys [45368] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:26 A . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\WINDOWS\System32\drivers\isapnp.sys [48144] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:24 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\ItSas35i.sys [139792] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\WINDOWS\System32\drivers\kbdclass.sys [51216] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\WINDOWS\System32\drivers\kbdhid.sys [33280] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Microsoft Kernel Debugger Network Miniport.) -- C:\WINDOWS\System32\drivers\kdnic.sys [26424] =>.Microsoft®
O58 - SDL:2020/08/13 13:45:59 A . (.Microsoft Corporation - Network Power Dependency Broker.) -- C:\WINDOWS\System32\drivers\KNetPwrDepBroker.sys [23552] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:24 A . (.Microsoft Corporation - Kernel CSA Library.) -- C:\WINDOWS\System32\drivers\ks.sys [304640] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:15 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecdd.sys [108344] =>.Microsoft®
O58 - SDL:2020/08/13 13:47:22 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecpkg.sys [142648] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:21 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\WINDOWS\System32\drivers\lltdio.sys [49664] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/05/09 15:47:10 A . (...) -- C:\WINDOWS\System32\drivers\lpsport.sys [55160] =>.AVG Technologies CZ, s.r.o.®
O58 - SDL:2019/12/07 08:06:24 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [94224] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:24 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [103440] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:24 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [112656] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:24 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [69640] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:24 A . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) -- C:\WINDOWS\System32\drivers\luafv.sys [103424] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:26 A . (.Microsoft Corporation - MA-USB Host Controller Driver.) -- C:\WINDOWS\System32\drivers\mausbhost.sys [426808] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:26 A . (.Microsoft Corporation - MA-USB IP Driver.) -- C:\WINDOWS\System32\drivers\mausbip.sys [47632] =>.Microsoft®
O58 - SDL:2020/08/27 14:08:33 A . (.Malwarebytes - Malwarebytes Anti-Exploit.) -- C:\WINDOWS\System32\drivers\mbae.sys [129056] =>.Malwarebytes Corporation®
O58 - SDL:2020/08/27 14:08:33 A . (.Malwarebytes - Malwarebytes Early Launch Anti-Malware Driv.) -- C:\WINDOWS\System32\drivers\MbamElam.sys [17360] =>.Microsoft®
O58 - SDL:2020/08/27 16:17:16 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys [213912] =>.Malwarebytes Inc®
O58 - SDL:2020/08/13 13:45:58 A . (.Microsoft Corporation - Windows Mobile Broadband Class Extension.) -- C:\WINDOWS\System32\drivers\MbbCx.sys [296960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:37 A . (.Microsoft Corporation - Medium changer class driver.) -- C:\WINDOWS\System32\drivers\mcd.sys [17408] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:24 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [52232] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:24 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [72208] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:24 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas35i.sys [87568] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:24 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [464912] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:20 A . (.Microsoft Corporation - Pilote de transport Microsoft Bluetooth Avr.) -- C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [46080] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Legacy Bluetooth LE Bus Enumerator.) -- C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [78848] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:30 A . (.Microsoft Corporation - MMCSS Driver.) -- C:\WINDOWS\System32\drivers\mmcss.sys [37376] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:08:04 A . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\WINDOWS\System32\drivers\modem.sys [33280] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:23 A . (.Microsoft Corporation - Monitor Driver.) -- C:\WINDOWS\System32\drivers\monitor.sys [65024] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\WINDOWS\System32\drivers\mouclass.sys [47928] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\WINDOWS\System32\drivers\mouhid.sys [24576] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:15 A . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\WINDOWS\System32\drivers\mountmgr.sys [85520] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:59 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\WINDOWS\System32\drivers\mpsdrv.sys [57344] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 14:48:04 A . (.Microsoft Corporation - Message Queuing Device Driver.) -- C:\WINDOWS\System32\drivers\mqac.sys [129024] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:08:08 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\WINDOWS\System32\drivers\mrxdav.sys [122880] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/06/10 10:56:06 A . (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\mrxsmb.sys [478520] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:18 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\WINDOWS\System32\drivers\mrxsmb20.sys [206888] =>.Microsoft®
O58 - SDL:2002/08/27 18:22:04 A . (.Microsoft Corporation - USB Mass Storage Sample Driver.) -- C:\WINDOWS\System32\drivers\msd_.sys [23488] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:15 A . (.Microsoft Corporation - Mailslot driver.) -- C:\WINDOWS\System32\drivers\msfs.sys [33592] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:46 A . (.Microsoft Corporation - GPIO Class Extension Driver.) -- C:\WINDOWS\System32\drivers\msgpioclx.sys [140816] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - GPIO Button Driver.) -- C:\WINDOWS\System32\drivers\msgpiowin32.sys [42512] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:00 A . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\WINDOWS\System32\drivers\mshidkmdf.sys [6144] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:00 A . (.Microsoft Corporation - Pilote direct pour interface HID-UMDF.) -- C:\WINDOWS\System32\drivers\mshidumdf.sys [9216] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:00 A . (.Microsoft Corporation - Hardware Notification Class Extension Drive.) -- C:\WINDOWS\System32\drivers\mshwnclx.sys [21504] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:26 A . (.Microsoft Corporation - ISA Driver.) -- C:\WINDOWS\System32\drivers\msisadrv.sys [17720] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:24 A . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\WINDOWS\System32\drivers\msiscsi.sys [239928] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:24 A . (.Microsoft Corporation - MS KS Server.) -- C:\WINDOWS\System32\drivers\mskssrv.sys [25600] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:33 A . (.Microsoft Corporation - Pilote de protocole LLDP (Link Layer Discov.) -- C:\WINDOWS\System32\drivers\mslldp.sys [61952] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:24 A . (.Microsoft Corporation - MS Proxy Clock.) -- C:\WINDOWS\System32\drivers\mspclock.sys [8192] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:24 A . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\WINDOWS\System32\drivers\mspqm.sys [8192] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:15 A . (.Microsoft Corporation - Windows QUIC Driver.) -- C:\WINDOWS\System32\drivers\msquic.sys [237368] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:15 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\WINDOWS\System32\drivers\msrpc.sys [192528] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:26 A . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\WINDOWS\System32\drivers\mssmbios.sys [35128] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:24 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\WINDOWS\System32\drivers\mstee.sys [9216] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:24 A . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\WINDOWS\System32\drivers\MTConfig.sys [13312] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:18 A . (.Microsoft Corporation - Pilote de fournisseur UNC multiples.) -- C:\WINDOWS\System32\drivers\mup.sys [105784] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:24 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [58168] =>.Microsoft®
O58 - SDL:2020/08/13 13:47:25 A . (.Microsoft Corporation - NDIS (Network Driver Interface Specificatio.) -- C:\WINDOWS\System32\drivers\ndis.sys [1070904] =>.Microsoft®
O58 - SDL:2019/12/07 08:08:02 A . (.Microsoft Corporation - Microsoft NDIS Packet Capture Filter Driver.) -- C:\WINDOWS\System32\drivers\ndiscap.sys [34816] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:33 A . (.Microsoft Corporation - Microsoft Network Adapter Multiplexor.) -- C:\WINDOWS\System32\drivers\NdisImPlatform.sys [109568] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:35 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\WINDOWS\System32\drivers\ndistapi.sys [20992] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:15 A . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\WINDOWS\System32\drivers\ndisuio.sys [50688] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:33 A . (.Microsoft Corporation - Énumérateur de cartes réseau virtuelles Mic.) -- C:\WINDOWS\System32\drivers\NdisVirtualBus.sys [16896] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/04/20 19:31:45 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\WINDOWS\System32\drivers\ndiswan.sys [166912] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:35 A . (.Microsoft Corporation - NDIS Proxy.) -- C:\WINDOWS\System32\drivers\ndproxy.sys [68608] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:40 A . (.Microsoft Corporation - Windows Network Data Usage Monitoring Drive.) -- C:\WINDOWS\System32\drivers\Ndu.sys [106496] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:17 A . (.Microsoft Corporation - Network Adapter Class Extension for WDF.) -- C:\WINDOWS\System32\drivers\NetAdapterCx.sys [144896] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:32 A . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\WINDOWS\System32\drivers\netbios.sys [47928] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:33 A . (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netbt.sys [248320] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:15 A . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\WINDOWS\System32\drivers\netio.sys [410640] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Miniport NDIS virtuel.) -- C:\WINDOWS\System32\drivers\netvsc.sys [168760] =>.Microsoft®
O58 - SDL:2010/01/27 04:09:02 A . (.CACE Technologies, Inc. - npf.sys (NT5/6 x86) Kernel Driver.) -- C:\WINDOWS\System32\drivers\npf.sys [50704] =>.CACE Technologies, Inc.®
O58 - SDL:2019/12/07 08:07:15 A . (.Microsoft Corporation - NPFS Driver.) -- C:\WINDOWS\System32\drivers\npfs.sys [65848] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Named pipe service triggers.) -- C:\WINDOWS\System32\drivers\npsvctrig.sys [19968] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:15 A . (.Microsoft Corporation - NSI Proxy.) -- C:\WINDOWS\System32\drivers\nsiproxy.sys [30720] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:15 A . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2370576] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:24 A . (.Microsoft Corporation - NTOS extension host driver.) -- C:\WINDOWS\System32\drivers\ntosext.sys [17208] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:15 A . (.Microsoft Corporation - NULL Driver.) -- C:\WINDOWS\System32\drivers\null.sys [5120] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:24 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [119096] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:24 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [142136] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:36 A . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\WINDOWS\System32\drivers\nwifi.sys [524800] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:59 A . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\WINDOWS\System32\drivers\pacer.sys [132920] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:26 A . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\parport.sys [82944] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:15 A . (.Microsoft Corporation - Partition driver.) -- C:\WINDOWS\System32\drivers\partmgr.sys [138792] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:26 A . (.Microsoft Corporation - Pilote parallèle VDM.) -- C:\WINDOWS\System32\drivers\parvdm.sys [9216] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/08/13 13:45:56 A . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\WINDOWS\System32\drivers\pci.sys [351560] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:26 A . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\pciide.sys [14648] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:26 A . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\WINDOWS\System32\drivers\pciidex.sys [42000] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:20 A . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\WINDOWS\System32\drivers\pcmcia.sys [98104] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:15 A . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\WINDOWS\System32\drivers\pcw.sys [43320] =>.Microsoft®
O58 - SDL:2020/06/10 10:55:33 A . (.Microsoft Corporation - Power Dependency Coordinator Driver.) -- C:\WINDOWS\System32\drivers\pdc.sys [125248] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:35 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\WINDOWS\System32\drivers\PEAuth.sys [694784] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:24 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [51728] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:24 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [59408] =>.Microsoft®
O58 - SDL:2019/12/07 08:08:02 A . (.Microsoft Corporation - Pilote du moniteur de paquets.) -- C:\WINDOWS\System32\drivers\PktMon.sys [87352] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:23 A . (.Microsoft Corporation - Pilote mémoire Plug and Play.) -- C:\WINDOWS\System32\drivers\pnpmem.sys [13312] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:00 A . (.Microsoft Corporation - Port Device Class Configuration Filter Driv.) -- C:\WINDOWS\System32\drivers\portcfg.sys [19968] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:23 A . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\WINDOWS\System32\drivers\portcls.sys [271360] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:24 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\processr.sys [171024] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:56 A . (.Microsoft Corporation - Time Travel Debugging Process Launch Monito.) -- C:\WINDOWS\System32\drivers\ProcLaunchMon.sys [33064] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:33 A . (.Microsoft Corporation - Pilote du support de Microsoft Quality Wind.) -- C:\WINDOWS\System32\drivers\qwavedrv.sys [32768] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:32 A . (.Microsoft Corporation - RAM Disk Driver.) -- C:\WINDOWS\System32\drivers\ramdisk.sys [33808] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:34 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\WINDOWS\System32\drivers\rasacd.sys [12288] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:35 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\rasl2tp.sys [78336] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:35 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\raspppoe.sys [67584] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:35 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\WINDOWS\System32\drivers\raspptp.sys [72704] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:35 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\WINDOWS\System32\drivers\rassstp.sys [65536] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:18 A . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) -- C:\WINDOWS\System32\drivers\rdbss.sys [362808] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\WINDOWS\System32\drivers\rdpbus.sys [21504] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:08:02 A . (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [131072] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/04/20 19:32:04 A . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\WINDOWS\System32\drivers\rdpvideominiport.sys [24080] =>.Microsoft®
O58 - SDL:2019/12/07 08:08:08 A . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\WINDOWS\System32\drivers\rdyboost.sys [219960] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Bluetooth RFCOMM Driver.) -- C:\WINDOWS\System32\drivers\rfcomm.sys [159744] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Transport d’ordinateur virtuel Microsoft Re.) -- C:\WINDOWS\System32\drivers\RfxVmt.sys [31744] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:23 A . (.Microsoft Corporation - ResourceHub Proxy Driver.) -- C:\WINDOWS\System32\drivers\rhproxy.sys [79360] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:52 A . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\WINDOWS\System32\drivers\rmcast.sys [121344] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:35 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\WINDOWS\System32\drivers\RNDISMP.sys [25600] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:08:04 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\WINDOWS\System32\drivers\rootmdm.sys [8704] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:21 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) -- C:\WINDOWS\System32\drivers\rspndr.sys [64000] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/02/01 18:02:10 A . (.Realtek - Realtek 8125/8136/8168/8169 NDIS 6.40 32-bi.) -- C:\WINDOWS\System32\drivers\rt640x86.sys [989984] =>.Realtek Semiconductor Corp.®
O58 - SDL:2019/12/07 08:06:30 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [37888] [Unsigned] =>.Realtek
O58 - SDL:2020/02/01 18:02:27 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHDA.sys [4912976] =>.Realtek Semiconductor Corp.®
O58 - SDL:2019/12/07 08:06:24 A . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\WINDOWS\System32\drivers\sbp2port.sys [87864] =>.Microsoft®
O58 - SDL:2010/10/25 14:43:35 A . (.Sunbelt Software - Anti-Rootkit Engine.) -- C:\WINDOWS\System32\drivers\SBREDrv.sys [95024] =>.SUNBELT SOFTWARE DISTRIBUTION®
O58 - SDL:2020/08/13 13:47:50 A . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce.) -- C:\WINDOWS\System32\drivers\scfilter.sys [35840] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:37 A . (.Microsoft Corporation - SCSI Port Driver.) -- C:\WINDOWS\System32\drivers\scsiport.sys [144696] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Pilote du bus numérique sécurisé (SD).) -- C:\WINDOWS\System32\drivers\sdbus.sys [251704] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:32 A . (.Microsoft Corporation - SD Host Controller Port Driver.) -- C:\WINDOWS\System32\drivers\sdport.sys [77840] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Pilote de classe de stockage SD.) -- C:\WINDOWS\System32\drivers\sdstor.sys [76088] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:00 A . (.Microsoft Corporation - Serial Class Extension.) -- C:\WINDOWS\System32\drivers\SerCx.sys [66872] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:00 A . (.Microsoft Corporation - Serial Class Extension V2.) -- C:\WINDOWS\System32\drivers\SerCx2.sys [130872] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:26 A . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\WINDOWS\System32\drivers\serenum.sys [17920] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:26 A . (.Microsoft Corporation - Pilote de périphérique série.) -- C:\WINDOWS\System32\drivers\serial.sys [77312] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\WINDOWS\System32\drivers\sermouse.sys [20992] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:24 A . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\WINDOWS\System32\drivers\sfloppy.sys [13312] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:24 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [41272] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:24 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [79160] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:17 A . (.Microsoft Corporation - Sleep Study Helper.) -- C:\WINDOWS\System32\drivers\SleepStudyHelper.sys [30736] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:36 A . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\WINDOWS\System32\drivers\smclib.sys [17920] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/08/13 13:45:56 A . (.Microsoft Corporation - Storage Spaces Dump Driver.) -- C:\WINDOWS\System32\drivers\spacedump.sys [173368] =>.Microsoft®
O58 - SDL:2020/08/13 13:45:56 A . (.Microsoft Corporation - Storage Spaces Driver.) -- C:\WINDOWS\System32\drivers\spaceport.sys [527688] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:00 A . (.Microsoft Corporation - SPB Class Extension.) -- C:\WINDOWS\System32\drivers\SpbCx.sys [65336] =>.Microsoft®
O58 - SDL:2020/04/20 19:31:40 A . (.Microsoft Corporation - Pilote de serveur SMB 2.0.) -- C:\WINDOWS\System32\drivers\srv2.sys [666624] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/06/10 10:56:06 A . (.Microsoft Corporation - Server Network driver.) -- C:\WINDOWS\System32\drivers\srvnet.sys [229888] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/09/05 05:47:32 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [109184] =>.Samsung Electronics CO., LTD.®
O58 - SDL:2016/09/05 05:47:38 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [147072] =>.Samsung Electronics CO., LTD.®
O58 - SDL:2019/08/20 15:36:37 A . (...) -- C:\WINDOWS\System32\drivers\staport.sys [47720] =>.AVAST Software s.r.o.®
O58 - SDL:2019/12/07 08:06:24 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [26936] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:26 A . (.Microsoft Corporation - MS AHCI Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storahci.sys [149304] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:26 A . (.Microsoft Corporation - Microsoft NVM Express Storport Miniport Dri.) -- C:\WINDOWS\System32\drivers\stornvme.sys [115216] =>.Microsoft®
O58 - SDL:2020/04/20 19:30:31 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\WINDOWS\System32\drivers\storport.sys [599056] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:00 A . (.Microsoft Corporation - Filtre de qualité de service de stockage.) -- C:\WINDOWS\System32\drivers\storqosflt.sys [73528] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:26 A . (.Microsoft Corporation - MS UFS Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storufs.sys [45368] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Storage VSC Driver.) -- C:\WINDOWS\System32\drivers\storvsc.sys [29712] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:37 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\WINDOWS\System32\drivers\stream.sys [54784] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - VSC vidéo Synth3D RemoteFX Microsoft.) -- C:\WINDOWS\System32\drivers\Synth3dVsc.sys [50688] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:37 A . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\WINDOWS\System32\drivers\tape.sys [23552] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:35 A . (.Microsoft Corporation - Export driver for kernel mode TPM API.) -- C:\WINDOWS\System32\drivers\tbs.sys [24888] =>.Microsoft®
O58 - SDL:2020/08/13 13:47:26 A . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\WINDOWS\System32\drivers\tcpip.sys [2358072] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:32 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\WINDOWS\System32\drivers\tcpipreg.sys [41984] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:15 A . (.Microsoft Corporation - TDI Wrapper.) -- C:\WINDOWS\System32\drivers\tdi.sys [32808] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:40 A . (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [96296] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Terminal Server Input Driver.) -- C:\WINDOWS\System32\drivers\terminpt.sys [33592] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:18 A . (.Microsoft Corporation - Kernel Transaction Manager Driver.) -- C:\WINDOWS\System32\drivers\tm.sys [100880] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Pilote de périphérique TPM.) -- C:\WINDOWS\System32\drivers\tpm.sys [195896] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:32 A . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du.) -- C:\WINDOWS\System32\drivers\TsUsbFlt.sys [52224] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:24 A . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\WINDOWS\System32\drivers\TsUsbGD.sys [28672] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:32 A . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\WINDOWS\System32\drivers\tunnel.sys [100864] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:26 A . (.Microsoft Corporation - Microsoft Uasp Driver.) -- C:\WINDOWS\System32\drivers\uaspstor.sys [57872] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:00 A . (.Microsoft Corporation - USB Connector Manager KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmCx.sys [113152] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:00 A . (.Microsoft Corporation - UCM-TCPCI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmTcpciCx.sys [130560] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - UCM-UCSI ACPI Client Driver.) -- C:\WINDOWS\System32\drivers\UcmUcsiAcpiClient.sys [25088] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:00 A . (.Microsoft Corporation - UCM-UCSI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmUcsiCx.sys [80896] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:32 A . (.Microsoft Corporation - USB Controller Extension.) -- C:\WINDOWS\System32\drivers\Ucx01000.sys [202256] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:32 A . (.Microsoft Corporation - "udecx.DRIVER".) -- C:\WINDOWS\System32\drivers\Udecx.sys [36864] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:08:04 A . (.Microsoft Corporation - UDF File System Driver.) -- C:\WINDOWS\System32\drivers\udfs.sys [263680] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:00 A . (.Microsoft Corporation - USB Function Driver Class Extension.) -- C:\WINDOWS\System32\drivers\ufx01000.sys [247608] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - UFX Synopsys Client Driver.) -- C:\WINDOWS\System32\drivers\ufxsynopsys.sys [131384] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Generic pass-through driver.) -- C:\WINDOWS\System32\drivers\umpass.sys [10752] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:00 A . (.Microsoft Corporation - USB Role-Switch Class Extension.) -- C:\WINDOWS\System32\drivers\urscx01000.sys [55608] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:35 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\WINDOWS\System32\drivers\usb8023.sys [15872] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2014/07/28 14:52:00 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\WINDOWS\System32\drivers\usbaapl.sys [45056] [Unsigned] =>.Apple, Inc.
O58 - SDL:2020/07/15 10:57:05 A . (.Microsoft Corporation - USB Audio Class Driver.) -- C:\WINDOWS\System32\drivers\USBAUDIO.sys [135680] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:23 A . (.Microsoft Corporation - Microsoft USB Audio Class 2.0 Driver.) -- C:\WINDOWS\System32\drivers\usbaudio2.sys [178688] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:43 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\WINDOWS\System32\drivers\USBCAMD.sys [27136] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:43 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\WINDOWS\System32\drivers\USBCAMD2.sys [27136] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\WINDOWS\System32\drivers\usbccgp.sys [135184] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:23 A . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\WINDOWS\System32\drivers\usbcir.sys [89600] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\WINDOWS\System32\drivers\usbd.sys [25616] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbehci.sys [72504] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Pilote de concentrateur USB par défaut.) -- C:\WINDOWS\System32\drivers\usbhub.sys [383288] =>.Microsoft®
O58 - SDL:2020/05/13 13:15:06 A . (.Microsoft Corporation - Pilote de concentrateur USB3.) -- C:\WINDOWS\System32\drivers\USBHUB3.SYS [502584] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbohci.sys [21504] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:00 A . (...) -- C:\WINDOWS\System32\drivers\UsbPmApi.sys [33792] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\WINDOWS\System32\drivers\usbport.sys [381240] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:23 A . (.Microsoft Corporation - USB Printer driver.) -- C:\WINDOWS\System32\drivers\usbprint.sys [24064] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:26 A . (.Microsoft Corporation - USB Serial Driver.) -- C:\WINDOWS\System32\drivers\usbser.sys [59904] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Pilote de classe de stockage de masse USB.) -- C:\WINDOWS\System32\drivers\USBSTOR.SYS [105784] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbuhci.sys [27136] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/08/13 13:45:57 A . (.Microsoft Corporation - Pilote XHCI USB.) -- C:\WINDOWS\System32\drivers\USBXHCI.SYS [448824] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:26 A . (.Microsoft Corporation - Virtual Drive Root Enumerator.) -- C:\WINDOWS\System32\drivers\vdrvroot.sys [62264] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:15 A . (.Microsoft Corporation - Extension du vérificateur de pilotes.) -- C:\WINDOWS\System32\drivers\VerifierExt.sys [259600] =>.Microsoft®
O58 - SDL:2020/04/20 19:30:19 A . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\WINDOWS\System32\drivers\vhdmp.sys [585016] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:24 A . (.Microsoft Corporation - Virtual HID Framework (VHF) Driver.) -- C:\WINDOWS\System32\drivers\vhf.sys [32768] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:24 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\viac7.sys [150016] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:18 A . (.Microsoft Corporation - Video Port Driver.) -- C:\WINDOWS\System32\drivers\videoprt.sys [35840] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:08:06 A . (.Microsoft Corporation - Hyper-V VMBus KMCL.) -- C:\WINDOWS\System32\drivers\vmbkmcl.sys [81960] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Pilote enfant de bus VMBus sous Microsoft H.) -- C:\WINDOWS\System32\drivers\vmbus.sys [115000] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\WINDOWS\System32\drivers\VMBusHID.sys [28688] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Virtual Machine Generation Counter.) -- C:\WINDOWS\System32\drivers\vmgencounter.sys [19768] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Virtual Machine Guest Infrastructure Driver.) -- C:\WINDOWS\System32\drivers\vmgid.sys [18744] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\WINDOWS\System32\drivers\vms3cap.sys [16424] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Pilote de filtre de stockage virtuel.) -- C:\WINDOWS\System32\drivers\vmstorfl.sys [44048] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:24 A . (.Microsoft Corporation - Pilote du gestionnaire de volumes.) -- C:\WINDOWS\System32\drivers\volmgr.sys [67088] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:46 A . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) -- C:\WINDOWS\System32\drivers\volmgrx.sys [309048] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:26 A . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [357176] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:24 A . (.Microsoft Corporation - Volume driver.) -- C:\WINDOWS\System32\drivers\volume.sys [14136] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:24 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR X86-32.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [149816] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:24 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [276792] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:36 A . (.Microsoft Corporation - Virtual Wireless Bus Driver.) -- C:\WINDOWS\System32\drivers\vwifibus.sys [22528] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:36 A . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\WINDOWS\System32\drivers\vwififlt.sys [61952] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:36 A . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\WINDOWS\System32\drivers\vwifimp.sys [34816] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:24 A . (.Microsoft Corporation - Pilote de tablette Wacom à stylet série.) -- C:\WINDOWS\System32\drivers\wacompen.sys [22016] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:35 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\WINDOWS\System32\drivers\wanarp.sys [65024] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:46 A . (.Microsoft Corporation - Watchdog Driver.) -- C:\WINDOWS\System32\drivers\watchdog.sys [48128] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:00 A . (.Microsoft Corporation - Windows Container Isolation FS Filter Drive.) -- C:\WINDOWS\System32\drivers\wcifs.sys [151864] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:00 A . (.Microsoft Corporation - Windows Container Name Virtualization FS Fi.) -- C:\WINDOWS\System32\drivers\wcnfs.sys [70656] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:36 A . (.Microsoft Corporation - Microsoft antimalware boot driver.) -- C:\WINDOWS\System32\drivers\WdBoot.sys [38280] =>.Microsoft®
O58 - SDL:2020/08/13 13:47:25 A . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) -- C:\WINDOWS\System32\drivers\Wdf01000.sys [610616] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:36 A . (.Microsoft Corporation - Microsoft antimalware file system filter dr.) -- C:\WINDOWS\System32\drivers\WdFilter.sys [274656] =>.Microsoft®
O58 - SDL:2020/08/13 13:47:25 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\WINDOWS\System32\drivers\WdfLdr.sys [46392] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:36 A . (.Microsoft Corporation - WDI Driver Framework Driver.) -- C:\WINDOWS\System32\drivers\WdiWiFi.sys [669696] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:04 A . (.Microsoft Corporation - WDM Companion Filter.) -- C:\WINDOWS\System32\drivers\WdmCompanionFilter.sys [18744] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:39 A . (.Microsoft Corporation - Windows Defender Network Stream Filter.) -- C:\WINDOWS\System32\drivers\WdNisDrv.sys [38624] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:15 A . (.Microsoft Corporation - Windows Error Reporting Kernel Driver.) -- C:\WINDOWS\System32\drivers\werkernel.sys [45072] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:00 A . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) -- C:\WINDOWS\System32\drivers\wfplwfs.sys [92200] =>.Microsoft®
O58 - SDL:2020/08/13 13:47:21 A . (.Microsoft Corporation - Wim file system Driver.) -- C:\WINDOWS\System32\drivers\wimmount.sys [32056] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:00 A . (.Microsoft Corporation - Windows Trusted Runtime Interface Driver.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRT.sys [57016] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Windows Trusted Runtime Service Proxy Drive.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys [16568] =>.Microsoft®
O58 - SDL:2019/12/07 08:08:06 A . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\WINDOWS\System32\drivers\winhv.sys [27144] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:29 A . (.Microsoft Corporation - Pilote NAT Windows.) -- C:\WINDOWS\System32\drivers\winnat.sys [201728] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/04/20 20:32:19 A . (.Microsoft Corporation - SetupPlatform NEO Mini-Filter.) -- C:\WINDOWS\System32\drivers\WinSetupBoot.sys [60728] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:27 A . (.Microsoft Corporation - Windows WinUSB Class Driver.) -- C:\WINDOWS\System32\drivers\winusb.sys [80896] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:26 A . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\WINDOWS\System32\drivers\wmiacpi.sys [12288] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:15 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\WINDOWS\System32\drivers\wmilib.sys [17208] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:12 A . (.Microsoft Corporation - Filtre de superposition Windows.) -- C:\WINDOWS\System32\drivers\wof.sys [186680] =>.Microsoft®
O58 - SDL:2019/12/07 14:22:05 A . (.Microsoft Corporation - Windows Portable Device Upper Class Filter.) -- C:\WINDOWS\System32\drivers\WpdUpFltr.sys [26424] =>.Microsoft®
O58 - SDL:2019/12/07 08:07:15 A . (.Microsoft Corporation - WPP Trace Recorder.) -- C:\WINDOWS\System32\drivers\WppRecorder.sys [35128] =>.Microsoft®
O58 - SDL:2019/12/07 08:06:43 A . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\WINDOWS\System32\drivers\ws2ifsl.sys [16896] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:24 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFPf.sys [88064] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:24 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFRd.sys [213504] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:20 A . (.Microsoft Corporation - Game Input Protocol Driver.) -- C:\WINDOWS\System32\drivers\xboxgip.sys [255488] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:06:20 A . (.Microsoft Corporation - XINPUT filter driver for HID.) -- C:\WINDOWS\System32\drivers\xinputhid.sys [37888] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:33 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\ANSI.SYS [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/09/16 19:49:00 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\WINDOWS\System32\athur.sys [1559552] [Unsigned] =>.Atheros Communications, Inc.
O58 - SDL:2019/12/07 08:07:33 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\country.sys [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:33 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\HIMEM.SYS [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:33 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\KEY01.SYS [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:33 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\KEYBOARD.SYS [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:33 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\NTDOS.SYS [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:33 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\NTDOS404.SYS [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:33 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\NTDOS411.SYS [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:33 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\NTDOS412.SYS [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:33 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\NTDOS804.SYS [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:33 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\NTIO.SYS [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:33 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\NTIO404.SYS [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:33 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\NTIO411.SYS [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:33 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\NTIO412.SYS [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:33 A . (.Microsoft Corporation - Windows Win16 Application Launcher.) -- C:\WINDOWS\System32\NTIO804.SYS [8960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/08/13 13:46:51 A . (.Microsoft Corporation - Multi-User Win32 Driver.) -- C:\WINDOWS\System32\win32k.sys [329728] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/08/13 13:46:37 A . (.Microsoft Corporation - Pilote du noyau Base Win32k.) -- C:\WINDOWS\System32\win32kbase.sys [2125824] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/08/13 13:46:51 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\WINDOWS\System32\win32kfull.sys [2744832] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 08:07:00 A . (.Microsoft Corporation - Win32k non session driver.) -- C:\WINDOWS\System32\win32kns.sys [20480] [Unsigned] =>.Microsoft Corporation

---\\ ASSOCIATION Shell Spawning (10) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value

---\\ MENU DE DÉMARRAGE INTERNET (12) - 1s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\Windows\System32\ie4ushowIE.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\Windows\System32\ie4ushowIE.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation

---\\ RECHERCHE D'INFECTION SUR NAVIGATEURS (5) - 10s
O69 - SBI: SearchScopes [HKCU]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKCU]{61735CFD-9B33-4e8a-9981-91AA3C8A0AFF} - (Google) - http://www.google.com/ =>.Google Inc.
O69 - SBI: SearchScopes [HKCU]{93B7C011-3411-4ED8-B59C-2D988498C2DC} - (Yahoo Search) - http://fr.search.yahoo.com/ =>.Yahoo! Inc.
O69 - SBI: SearchScopes [HKLM]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM]{632F07F3-19A1-4d16-A23F-E6CE9486BAB5} - (Microsoft (Bing)) - http://www.bing.com/ =>.Bing.com

---\\ ÉNUMÈRE LES SERVICES DÉMARRÉS PAR Svchost (49) - 4s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [182784] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [182784] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [223744] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1120256] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [737280] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [708096] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [24064] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114176] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [90624] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [657920] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [190976] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [335872] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [425472] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports de problèmes.) -- C:\Windows\System32\wercplsupport.dll [90112] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [791040] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [707584] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [1819648] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [163840] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Fournit une prise en charge de l'infrastruc.) -- C:\Windows\System32\LanguageOverlayServer.dll [230912] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: TroubleshootingSvc (TroubleshootingSvc) . (.Microsoft Corporation - MitigationClient.) -- C:\Windows\System32\MitigationClient.dll [338432] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [196096] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [55808] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [155648] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [230912] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: WManSvc (WManSvc) . (.Microsoft Corporation - DLL du Service de gestion de Windows.) -- C:\Windows\System32\Windows.Management.Service.dll [656896] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [224256] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [140288] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [695296] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [329728] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [214016] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [813568] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [403456] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [58880] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [524288] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [251904] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2501120] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1016832] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [193536] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [37888] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [1723392] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) -- C:\Windows\System32\usosvc.dll [452608] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [1202688] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1009664] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1239552] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [53760] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [749960] =>.Microsoft®
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [48128] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [453632] [Unsigned] =>.Microsoft Corporation

---\\ LISTE DES EXCEPTIONS PAREFEU WINDOWS (9) - 8s
O87 - FAEL: "TCP Query User{1E910BD0-98F4-4419-95AA-552E9B1A4932}C:\program files\airdroid\airdroid.exe" [In-None-P6-TRUE] .(.Sand Studio - AirDroid 3.) -- C:\program files\airdroid\airdroid.exe {0DAE46486B3CF0B6DF5F76680285EB28}. =>.Sand Studio
O87 - FAEL: "UDP Query User{2DB67654-603A-49DD-A75A-3B37F45604DB}C:\program files\airdroid\airdroid.exe" [In-None-P17-TRUE] .(.Sand Studio - AirDroid 3.) -- C:\program files\airdroid\airdroid.exe {0DAE46486B3CF0B6DF5F76680285EB28}. =>.Sand Studio
O87 - FAEL: "TCP Query User{8D702448-632E-4BF0-B714-A3A01B072A45}C:\program files\airdroid\airdroid.exe" [In-None-P6-TRUE] .(.Sand Studio - AirDroid 3.) -- C:\program files\airdroid\airdroid.exe {0DAE46486B3CF0B6DF5F76680285EB28}. =>.Sand Studio
O87 - FAEL: "UDP Query User{8808EE62-FBD2-4DBB-B59B-629DEB0B3064}C:\program files\airdroid\airdroid.exe" [In-None-P17-TRUE] .(.Sand Studio - AirDroid 3.) -- C:\program files\airdroid\airdroid.exe {0DAE46486B3CF0B6DF5F76680285EB28}. =>.Sand Studio
O87 - FAEL: "{6A94BAE2-88D7-43D5-9F6B-8A881B50C870}" [In-None-P6-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.63.76.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl®
O87 - FAEL: "{E4CF9D63-7321-46F4-9386-973BEA6E4325}" [Out-None-P6-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.63.76.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl®
O87 - FAEL: "{07013B77-8A3F-45D8-9394-5DE143133F29}" [In-None-P17-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.63.76.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl®
O87 - FAEL: "{D9AD8339-667C-46B2-8387-7CA746804C98}" [Out-None-P17-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.63.76.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl®
O87 - FAEL: "{C2FB546E-6D54-4482-83C4-6888F251AE60}" [In-None-P17-TRUE] .(.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC®

---\\ CODES PRODUITS LOGICIELS (84) - 3s
O90 - PUC: "00002109110000000000000000F01FEC" [HKLM] . (.Microsoft Office Professional Plus 2007.) =>.Microsoft Corporation
O90 - PUC: "000021094400C0400000000000F01FEC" [HKLM] . (.Microsoft Office InfoPath MUI (French) 2007.) =>.Microsoft Corporation
O90 - PUC: "000021095100C0400000000000F01FEC" [HKLM] . (.Microsoft Office Access MUI (French) 2007.) =>.Microsoft Corporation
O90 - PUC: "000021096100C0400000000000F01FEC" [HKLM] . (.Microsoft Office Excel MUI (French) 2007.) =>.Microsoft Corporation
O90 - PUC: "000021098100C0400000000000F01FEC" [HKLM] . (.Microsoft Office PowerPoint MUI (French) 2007.) =>.Microsoft Corporation
O90 - PUC: "000021099100C0400000000000F01FEC" [HKLM] . (.Microsoft Office Publisher MUI (French) 2007.) =>.bl.org
O90 - PUC: "00002109A100C0400000000000F01FEC" [HKLM] . (.Microsoft Office Outlook MUI (French) 2007.) =>.Microsoft Corporation
O90 - PUC: "00002109B100C0400000000000F01FEC" [HKLM] . (.Microsoft Office Word MUI (French) 2007.) =>.Microsoft Corporation
O90 - PUC: "00002109C200C0400000000000F01FEC" [HKLM] . (.Microsoft Office Proofing (French) 2007.) =>.Microsoft Corporation
O90 - PUC: "00002109E600C0400000000000F01FEC" [HKLM] . (.Microsoft Office Shared MUI (French) 2007.) =>.Microsoft Corporation
O90 - PUC: "00002109F10010400000000000F01FEC" [HKLM] . (.Microsoft Office Proof (Arabic) 2007.) =>.Microsoft Corporation
O90 - PUC: "00002109F10031400000000000F01FEC" [HKLM] . (.Microsoft Office Proof (Dutch) 2007.) =>.Microsoft Corporation
O90 - PUC: "00002109F10070400000000000F01FEC" [HKLM] . (.Microsoft Office Proof (German) 2007.) =>.Microsoft Corporation
O90 - PUC: "00002109F10090400000000000F01FEC" [HKLM] . (.Microsoft Office Proof (English) 2007.) =>.Microsoft Corporation
O90 - PUC: "00002109F100A0C00000000000F01FEC" [HKLM] . (.Microsoft Office Proof (Spanish) 2007.) =>.Microsoft Corporation
O90 - PUC: "00002109F100C0400000000000F01FEC" [HKLM] . (.Microsoft Office Proof (French) 2007.) =>.Microsoft Corporation
O90 - PUC: "000021599B0090400000000000F01FEC" [HKLM] . (.Microsoft Application Error Reporting.) =>.Microsoft Corporation
O90 - PUC: "00004109500200000000000000F01FEC" [HKLM] . (.Microsoft Office File Validation Add-In.) =>.Microsoft Corporation
O90 - PUC: "0C8D398C0AB171541BC18EB9567EF207" [HKLM] . (.Windows Live Photo Common.) =>.CyberLink Corporation
O90 - PUC: "0D756077321A70C3E844C138CE981581" [HKLM] . (.Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053.) =>.Microsoft Corporation
O90 - PUC: "0FA393DA79018254D9149DC5ADA76A16" [HKLM] . (.Backup and Sync from Google.) -- C:\WINDOWS\Installer\{AD393AF0-1097-4528-9D41-D95CDA7AA661}\DriveIcon =>.Google Inc.
O90 - PUC: "14A7CAC1B3853844F95AE34556FA8F2C" [HKLM] . (.Microsoft Default Manager.) =>.Western Digital Technologies
O90 - PUC: "18555481990E8AB4CBB63FB4F26006C0" [HKLM] . (.Google Toolbar for Internet Explorer.) =>.Google Inc.
O90 - PUC: "21EE4A31AE32173319EEFE3BD6FDFFE3" [HKLM] . (.Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005.) =>.Microsoft Corporation
O90 - PUC: "22BEFC8F7E2A1793E9ADB411DEFE1C58" [HKLM] . (.Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005.) =>.Microsoft Corporation
O90 - PUC: "257AF08A194C9DE4BA0F24876513062B" [HKLM] . (.32 Bit HP CIO Components Installer.) =>.Hewlett-Packard
O90 - PUC: "26CEF00243C306D4C98ECE73E2100CF8" [HKLM] . (.Windows Live SOXE Definitions.) =>.Microsoft Corporation
O90 - PUC: "2B51DA16BD0568647A9341EF81D04492" [HKLM] . (.Windows Live ID Sign-in Assistant.) =>.Microsoft Corporation
O90 - PUC: "3D04254D3B6B9FF42B3445CE3E1E0066" [HKLM] . (.Windows Live Communications Platform.) =>.Legitimate
O90 - PUC: "47CA2FBBC0273BC32819E543302923AF" [HKLM] . (.Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24215.) =>.Microsoft Corporation
O90 - PUC: "4EA42A62D9304AC4784BF2238120160F" [HKLM] . (.Java 8 Update 261.) -- C:\Program Files\Java\jre1.8.0_261\\bin\javaws.exe =>.Sun Microsystems
O90 - PUC: "65FC11932FE9AB9348A62CB73DDC6058" [HKLM] . (.Microsoft .NET Framework 4.5.2.) =>.Microsoft Corporation
O90 - PUC: "68AB67CA408033019195001028345946" [HKLM] . (.Adobe Refresh Manager.) -- C:\WINDOWS\Installer\{AC76BA86-0804-1033-1959-000182439564}\ARPPRODUCTICON.exe =>.Western Digital Technologies
O90 - PUC: "68AB67CA7DA76301B744CAF070E41400" [HKLM] . (.Adobe Acrobat Reader DC - Français.) -- C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}\SC_Reader.ico =>.Adobe Inc.
O90 - PUC: "6BB702C567126AC4AAB499AF24FEB51C" [HKLM] . (.Update for Windows 10 (KB4023057).) =>.Microsoft Corporation
O90 - PUC: "6BF62016CB445C84DB92E4F3F9BC3BB3" [HKLM] . (.Adblock Plus pour IE (32-bits).) -- C:\Windows\Installer\{61026FB6-44BC-48C5-BD29-4E3F9FCBB33B}\program_icon =>.bl.org
O90 - PUC: "6E58EC68CABDDFF39B774E7BF9389C90" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570.) =>.bl.org
O90 - PUC: "6E815EB96CCE9A53884E7857C57002F0" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161.) =>.bl.org
O90 - PUC: "6E8A266FCD4F2A1409E1C8110F44DBCE" [HKLM] . (.MSXML 4.0 SP2 (KB973688).) =>.Microsoft Corporation
O90 - PUC: "7B5D257434957064793E86A335A46706" [HKLM] . (.Intel Driver && Support Assistant.) -- C:\WINDOWS\Installer\{4752D5B7-5943-4607-97E3-683A534A7660}\Icon.exe
O90 - PUC: "7BD4C90EC03660F46A13E87A329932FA" [HKLM] . (.D3DX10.) =>.Microsoft Corporation
O90 - PUC: "7C20ED6D74F14D1159510001A54E8BA9" [HKLM] . (.Paint Shop Pro 7 Anniversary Edition.) -- C:\Windows\Installer\{D6DE02C7-1F47-11D4-9515-00105AE4B89A}\psp.exe =>.Jasc Software Inc.
O90 - PUC: "7C43C21609E58D74B9C5F017D78D7262" [HKLM] . (.swMSM.) -- C:\Windows\Installer\{612C34C7-5E90-47D8-9B5C-0F717DD82726}\ARPPRODUCTICON.exe =>.Adobe Inc.
O90 - PUC: "884FD4BEFEAAF6043A14BCA2AA13B509" [HKLM] . (.Windows Live Messenger.) -- C:\Windows\Installer\{EB4DF488-AAEF-406F-A341-CB2AAA315B90}\MsblIco.Exe =>.Microsoft Corporation
O90 - PUC: "94A65F901B7ABAA4599B1D034952A41D" [HKLM] . (.Windows Live UX Platform Language Pack.) =>.Legitimate
O90 - PUC: "A089CE062ADB6BC44A720BA745894BAC" [HKLM] . (.Google Update Helper.) =>.Google Inc.
O90 - PUC: "A2B615FD8B1776731B18E11287591D22" [HKLM] . (.Google Chrome.) -- C:\WINDOWS\Installer\{DF516B2A-71B8-3767-B181-1E217895D122}\icon.ico =>.Google Inc.
O90 - PUC: "A6C64DD86500CEF47BA082BB611A1FF1" [HKLM] . (.MSVCRT.) =>.Advanced Micro Devices Inc
O90 - PUC: "AAD08E5278DF5ECD02C2CC206F760320" [HKLM] . (.Microsoft DVD App Installation for Microsoft.WindowsDVDPlayer_2019.6.13291.0_neutral_~_8wekyb3d8bbwe (x86).) =>.Microsoft Corporation
O90 - PUC: "B2F5519759897D9468219D52080EEDB5" [HKLM] . (.Bonjour.) -- C:\Windows\Installer\{79155F2B-9895-49D7-8612-D92580E0DE5B}\Bonjour.ico =>.Microsoft Corporation
O90 - PUC: "B6ACDB9A3563B764CA384963D73AFB3E" [HKLM] . (.Windows Live Photo Common.) =>.CyberLink Corporation
O90 - PUC: "BFD12F957796B434C99B7687D3E6B7B6" [HKLM] . (.Google Earth Pro.) -- C:\WINDOWS\Installer\{59F21DFB-6977-434B-9CB9-67783D6E7B6B}\MainIcon.ico =>.Google Inc.
O90 - PUC: "C025571B2A687A53689168CD7369889B" [HKLM] . (.Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "C12E75069EBA9504EAE3B3BE99526E06" [HKLM] . (.Windows Live Messenger.) =>.Microsoft Corporation
O90 - PUC: "c1c4f01781cc94c4c8fb1542c0981a2a" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org
O90 - PUC: "CA4ECB96275917232ABF4932DB3AA634" [HKLM] . (.Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24215.) =>.Microsoft Corporation
O90 - PUC: "CFD2C1F142D260E3CB8B271543DA9F98" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148.) =>.bl.org
O90 - PUC: "D04BB691875110D32B98EBCF771AA1E1" [HKLM] . (.Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319.) =>.bl.org
O90 - PUC: "D20352A90C039D93DBF6126ECE614057" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17.) =>.bl.org
O90 - PUC: "D33A333FC5212A23D8ECC5D54132E172" [HKLM] . (.Visual C++ 2008 x86 Runtime - (v9.0.30729).) =>.Microsoft Corporation
O90 - PUC: "D7314F9862C648A4DB8BE2A5B47BE100" [HKLM] . (.Microsoft Silverlight.) -- c:\Windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon =>.Microsoft Corporation
O90 - PUC: "DC8A59DBF9D1DA5389A1E3975220E6BB" [HKLM] . (.Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "DDA39468D428E8B4DB27C8D5DC5CA217" [HKLM] . (.MSXML 4.0 SP2 (KB954430).) =>.Microsoft Corporation
O90 - PUC: "DFDBABC48F94DF74EBD7CEED270725A5" [HKLM] . (.Windows Live PIMT Platform.) =>.Legitimate
O90 - PUC: "E5D9D200AB92D6E3B94CD3D7D6CB37C5" [HKLM] . (.Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148.) =>.Microsoft Corporation
O90 - PUC: "E97A59ECCF4EFFF4A857920FB449F22F" [HKLM] . (.Windows Live UX Platform.) =>.Legitimate
O90 - PUC: "EB940C659E972054EB7A79453A6EF0B9" [HKLM] . (.neroxml.) =>.Ahead Corporation
O90 - PUC: "EC411D4643242C546BA0B2705D4AF827" [HKLM] . (.Microsoft Works 7.0.) -- C:\Windows\Installer\{64D114CE-4234-45C2-B60A-2B07D5A48F72}\Win2Kico.exe =>.Microsoft Corporation
O90 - PUC: "F132F0B0A6ECD384AA32773B467F9571" [HKLM] . (.Windows Live Installer.) =>.Microsoft Corporation
O90 - PUC: "F1F913432FC79CC43B75A17E2DFFA35C" [HKLM] . (.Windows Live.) =>.Microsoft Corporation
O90 - PUC: "F2B911EA21A03DF339F59AD626026518" [HKLM] . (.Microsoft .NET Framework 4.5.2 (FRA).) =>.Microsoft Corporation
O90 - PUC: "F45FAD3B52BD6854E91F692DB41B0488" [HKLM] . (.Windows Movie Maker 2.6.) =>.CyberLink Corporation
O90 - PUC: "F4E3B286A696ED244AC1C470AE61874B" [HKLM] . (.Windows Live SOXE.) =>.Microsoft Corporation
O90 - PUC: "F60730A4A66673047777F5728467D401" [HKLM] . (.Java Auto Updater.) =>.Sun Microsystems
O90 - PUC: "F9C1697256919D845A97048FBEAE6030" [HKLM] . (.ViewRight Web PC 3.6.0.0 .) -- C:\WINDOWS\Installer\{27961C9F-1965-48D9-A579-40F8EBEA0603}\ViewRight.exe
O90 - PUC: "FB4B305EBB7FF5D3B88C6F491BFC9F24" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218.) =>.bl.org
O90 - PUC: "1E53BC8D2A6A6AE42806C3613BFC8739" [HKCU] . (.AXIS Media Control Embedded.)
O90 - PUC: "587E5A317915DAE4E83E6D0672E194CB" [HKCU] . (.Feedback Tool.) -- %APPDATA%\Microsoft\Installer\{13A5E785-5197-4EAD-8EE3-D660271E49BC}\FeedbackTool.ico =>.Microsoft Corporation
O90 - PUC: "68C813D9C4FAF9046ACA1738FFC44F42" [HKCU] . (.Internet TV pour Windows Media Center.) -- %APPDATA%\Microsoft\Installer\{9D318C86-AF4C-409F-A6AC-7183FF4CF424}\ProductIcon
O90 - PUC: "DED5B648C8CDA1E45B4BF9B5930AACEC" [HKCU] . (.HPDiagnosticAlert.) -- %APPDATA%\Microsoft\Installer\{846B5DED-DC8C-4E1A-B5B4-9F5B39A0CACE}\ARPPRODUCTICON.exe =>.Hewlett-Packard
O90 - PUC: "1E53BC8D2A6A6AE42806C3613BFC8739" [HKU] . (.AXIS Media Control Embedded.)
O90 - PUC: "587E5A317915DAE4E83E6D0672E194CB" [HKU] . (.Feedback Tool.) -- %APPDATA%\Microsoft\Installer\{13A5E785-5197-4EAD-8EE3-D660271E49BC}\FeedbackTool.ico =>.Microsoft Corporation
O90 - PUC: "68C813D9C4FAF9046ACA1738FFC44F42" [HKU] . (.Internet TV pour Windows Media Center.) -- %APPDATA%\Microsoft\Installer\{9D318C86-AF4C-409F-A6AC-7183FF4CF424}\ProductIcon
O90 - PUC: "DED5B648C8CDA1E45B4BF9B5930AACEC" [HKU] . (.HPDiagnosticAlert.) -- %APPDATA%\Microsoft\Installer\{846B5DED-DC8C-4E1A-B5B4-9F5B39A0CACE}\ARPPRODUCTICON.exe =>.Hewlett-Packard

---\\ PACKAGES WINDOWS INSTALLER (77) - 97s
[MD5.25B47EFBE9DCEF40BB9760B6B7846B99] [WIS][2011/07/15 13:36:18] (.Adobe Systems, Inc - swMSM.) -- C:\WINDOWS\Installer\12b169.msi [2118144] =>.Adobe Systems, Inc
[MD5.2FC1E7A12F792B6627C4FB92CDCCD4CD] [WIS][2007/10/01 15:38:00] (.Nero AG.) -- C:\WINDOWS\Installer\13aca8.msi [1404416] =>.Nero AG
[MD5.A950F15D29C90D28AF42D71BD50A3632] [WIS][2020/07/20 14:02:33] (.Oracle Corporation - Java SE Runtime Environment 8 Update 261.) -- C:\WINDOWS\Installer\1a60cbe5.msi [70180864] =>.Oracle Corporation
[MD5.1F585ED361C038BCAD4B9C961A43EA73] [WIS][2020/07/20 14:02:20] (.Oracle Corporation - Java Auto Updater.) -- C:\WINDOWS\Installer\1a60cbea.msi [909312] =>.Oracle Corporation
[MD5.1766B021B0BAB4F82259974154C5A920] [WIS][2020/03/21 11:36:35] (.Google LLC - Google Update Helper.) -- C:\WINDOWS\Installer\28284097.msi [40960] =>.Google LLC
[MD5.E14A6762E68472C648EA0EEA0EBE01A0] [WIS][2014/02/21 07:11:56] (.Apple Inc. - [ProductName] Installer.) -- C:\WINDOWS\Installer\2f2a68.msi [2358784] =>.Apple Inc.
[MD5.75955A9786A81DA27D8042EBEC671316] [WIS][2020/08/13 13:06:46] (.Google - Google Earth Pro.) -- C:\WINDOWS\Installer\3885bccd.msi [57012224] =>.Google
[MD5.3ADC28C841F890C68D3E1028324E24FE] [WIS][2020/08/13 13:18:05] (.Adobe Systems Incorporated - Adobe ARM Installer.) -- C:\WINDOWS\Installer\3890295d.msi [982528] =>.Adobe Systems Incorporated
[MD5.263D8FFC41C582E7642B6AE19EDD6BAA] [WIS][2016/04/05 10:33:08] (.Verimatrix, Inc. - ViewRight Web PC.) -- C:\WINDOWS\Installer\3c471d9.msi [32067584] =>.Verimatrix, Inc.
[MD5.8B06F77636185C324886F53B7F3487B8] [WIS][2010/12/02 18:52:57] (.Axis Communications - AXIS Media Control Embedded.) -- C:\WINDOWS\Installer\46a622.msi [864768] =>.Axis Communications
[MD5.1EFBD09556409B042F1FEB48B09D1C69] [WIS][2002/08/14 20:21:22] (.Jasc Software Inc Editions WSKA - Your Product Name.) -- C:\WINDOWS\Installer\48345d.msi [1555064]
[MD5.503B26F39ADBAECFFCB2AEED703B8F13] [WIS][2010/09/14 19:42:51] (.Google Inc. - Google Toolbar for Internet Explorer.) -- C:\WINDOWS\Installer\49100d.msi [28160] =>.Google Inc.
[MD5.1504667BA3C10D841C0B76B6412FAFB5] [WIS][2015/03/17 10:41:29] (.Adobe Systems Incorporated.) -- C:\WINDOWS\Installer\5c3bdf.msi [2805760] =>.Adobe Systems Incorporated
[MD5.263D8FFC41C582E7642B6AE19EDD6BAA] [WIS][2015/05/18 17:26:56] (.Verimatrix, Inc. - ViewRight Web PC.) -- C:\WINDOWS\Installer\8f90d.msi [32067584] =>.Verimatrix, Inc.
[MD5.5E8FF949A6A09C5F01F7ED211F8C30C0] [WIS][2020/07/10 11:14:40] (.Google, Inc. - Backup and Sync from Google.) -- C:\WINDOWS\Installer\9932731.msi [56238080] =>.Google, Inc.
[MD5.7F983C7F363407B5F334B2E14F67E557] [WIS][2015/09/28 11:32:21] (.Eyeo GmbH - Adblock Plus for IE.) -- C:\WINDOWS\Installer\a8754.msi [4190208] =>.Eyeo GmbH
[MD5.1F727D1F27A78BA35C14A5F3244D602F] [WIS][2011/04/25 20:17:49] (.Hewlett-Packard - 32 Bit HP CIO Components Installer Package.) -- C:\WINDOWS\Installer\aafff4.msi [351232] =>.Hewlett-Packard
[MD5.04DEE87E1619DAD1F17AC545E8830306] [WIS][2011/04/28 19:45:01] (.Secure Digital Services - Free TV Radio.) -- C:\WINDOWS\Installer\ba65cb.msi [7388160] =>.SUP.SDSL
[MD5.6148FA9F6DAA65622D971EA3AF8442AD] [WIS][2020/07/31 09:44:36] (.Intel - Intel Driver & Support Assistant.) -- C:\WINDOWS\Installer\c1743.msi [1658880] =>.Intel
[MD5.425EAD89562CA451A89EA2DADB2E3876] [WIS][2018/12/11 16:24:11] (.Google, Inc. - Google Chrome Installer.) -- C:\WINDOWS\Installer\f76ae2.msi [55517184] =>.Google, Inc.
[MD5.A9095FC652E0273E10F1D9481C59067D] [WIS][2018/02/23 15:25:19] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\101c2dcf.msp [1343488] =>.SUP.Obsolete.Adobe
[MD5.BD4423645209FA4CE380C43C1633F4E4] [WIS][2016/07/12 05:25:29] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\13b8eb4.msp [39538688] =>.SUP.Obsolete.Adobe
[MD5.E7BD518BB2F9A3A86C8AD97881120EBB] [WIS][2018/10/08 13:11:44] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\1493174a.msp [2174976] =>.SUP.Obsolete.Adobe
[MD5.F9FD1AB516C661D9938213AA661350B7] [WIS][2016/08/02 13:49:06] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\158deca5.msp [1511424] =>.SUP.Obsolete.Adobe
[MD5.2F159BBD3479AEB0C168488067503723] [WIS][2018/07/09 07:47:48] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\185705c0.msp [27000832] =>.SUP.Obsolete.Adobe
[MD5.2EA8602FA7F1CC88E5BB14CC6FCEE714] [WIS][2019/10/14 12:12:32] (.Adobe Inc..) -- C:\WINDOWS\Installer\19b84115.msp [20799488] =>.Adobe Inc.
[MD5.04B8B2DEC9DFE83D56183D74F3ED40FB] [WIS][2019/08/22 13:14:18] (.Adobe Inc..) -- C:\WINDOWS\Installer\1db06a54.msp [2002944] =>.Adobe Inc.
[MD5.894F8CA42DB45DFDB94D579984B5B89A] [WIS][2018/09/18 10:10:59] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\22ae1a88.msp [4706304] =>.SUP.Obsolete.Adobe
[MD5.DB596E2ADC480687F78F34B7D452D2CB] [WIS][2020/03/16 08:28:35] (.Adobe Inc..) -- C:\WINDOWS\Installer\22ec1dec.msp [8130560] =>.Adobe Inc.
[MD5.339631DF934AFC2BE35E2B27A6F7DB06] [WIS][2016/11/03 09:25:06] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\2934d43b.msp [1642496] =>.SUP.Obsolete.Adobe
[MD5.16CD2BA3438D2627805A64D0F4DC063E] [WIS][2020/08/19 13:46:52] (.Adobe Inc..) -- C:\WINDOWS\Installer\2d93b9df.msp [2781184] =>.Adobe Inc.
[MD5.BD4173F416AC180D7AD46CB583BAB949] [WIS][2020/05/21 18:16:51] (.Adobe Inc..) -- C:\WINDOWS\Installer\2da556ea.msp [1392640] =>.Adobe Inc.
[MD5.C233BD1DB45AF8BACD0F3C0D8A646740] [WIS][2016/05/19 05:30:11] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\2fe6589b.msp [1429504] =>.SUP.Obsolete.Adobe
[MD5.72C91237F7C7A0527FA5F0752CF81A66] [WIS][2017/01/19 12:28:55] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\330c94e8.msp [1937408] =>.SUP.Obsolete.Adobe
[MD5.4D64DE5B41C39FA6192C22CBCD826FBA] [WIS][2016/10/10 09:29:03] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\38365782.msp [36499456] =>.SUP.Obsolete.Adobe
[MD5.26712DE883E87BB94D42E4EEA32B7E9E] [WIS][2019/02/20 14:28:20] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\385a5f76.msp [1986560] =>.Adobe Systems, Incorporated
[MD5.AC729EF5FD5047779136DD8670413E03] [WIS][2020/07/31 05:39:02] (.Adobe Inc..) -- C:\WINDOWS\Installer\389a1fc7.msp [70844416] =>.Adobe Inc.
[MD5.923228256AD8BBCA145AE48027AA92BF] [WIS][2020/06/02 14:40:08] (.Adobe Inc..) -- C:\WINDOWS\Installer\3a45d671.msp [3026944] =>.Adobe Inc.
[MD5.87BDB58F9E5B4EFC3B72EB9AD83EDE24] [WIS][2018/11/13 06:24:12] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\3b87750.msp [3485696] =>.SUP.Obsolete.Adobe
[MD5.7DF2196737D027C989EEE176078B4E7F] [WIS][2018/10/22 15:33:19] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\41f84fb7.msp [2584576] =>.SUP.Obsolete.Adobe
[MD5.16551A09D3B9A3BC9049D098FBB4D529] [WIS][2019/05/13 08:57:34] (.Adobe Inc..) -- C:\WINDOWS\Installer\4246701.msp [59400192] =>.Adobe Inc.
[MD5.F767152C881F505C5BBAC71A825C1263] [WIS][2017/02/21 14:33:51] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\42a5d8e2.msp [12845056] =>.SUP.Obsolete.Adobe
[MD5.50A28B22FFDE4D837B145DB7A22E94C5] [WIS][2016/05/10 05:20:29] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\4334b016.msp [58986496] =>.SUP.Obsolete.Adobe
[MD5.2AD3AE06875E8C704DA9F109422277CF] [WIS][2020/07/06 14:20:53] (.Adobe Inc..) -- C:\WINDOWS\Installer\43b5f70.msp [5853184] =>.Adobe Inc.
[MD5.08615067E75539285F388EF4B41D669E] [WIS][2016/01/12 05:19:17] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\44351afb.msp [46080000] =>.SUP.Obsolete.Adobe
[MD5.0762EDB0E4C8D62A4328C3360BC7AD2C] [WIS][2017/07/11 06:57:12] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\46eb02f4.msp [1732608] =>.SUP.Obsolete.Adobe
[MD5.E05CA6506E1D5ECE25152018D3FF00CE] [WIS][2018/05/12 08:05:37] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\4e51b97.msp [7094272] =>.SUP.Obsolete.Adobe
[MD5.A58EAEAA86B7D4FA1891CA2EEDDCA3DD] [WIS][2018/02/12 16:26:08] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\535bf29.msp [103362560] =>.SUP.Obsolete.Adobe
[MD5.158DB85A7E9649803519367B8E1A7CD7] [WIS][2019/02/11 08:36:53] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\53d373a.msp [8757248] =>.Adobe Systems, Incorporated
[MD5.CECF2A7991F74C858965EA972A43CE3F] [WIS][2017/04/10 07:34:32] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\53e3bb5.msp [57815040] =>.SUP.Obsolete.Adobe
[MD5.4777B622A4EA5AE5F2B67516AB0254AD] [WIS][2019/08/12 08:29:03] (.Adobe Inc..) -- C:\WINDOWS\Installer\547833d.msp [50438144] =>.Adobe Inc.
[MD5.2CD061E09E48D7EFD5571169C5BB1386] [WIS][2019/10/24 14:03:06] (.Adobe Inc..) -- C:\WINDOWS\Installer\55af079.msp [4616192] =>.Adobe Inc.
[MD5.497275FFB9E10B5A29223D2A99322F49] [WIS][2020/02/10 09:01:58] (.Adobe Inc..) -- C:\WINDOWS\Installer\56cd193.msp [25227264] =>.Adobe Inc.
[MD5.31A1DBE1A433F065C401CD0A73642712] [WIS][2019/11/13 13:16:36] (.Adobe Inc..) -- C:\WINDOWS\Installer\57868a7.msp [1527808] =>.Adobe Inc.
[MD5.3617A09ABC822D955214EBE86A991CF3] [WIS][2017/12/03 18:34:36] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\57b38a1f.msp [1355776] =>.SUP.Obsolete.Adobe
[MD5.E3869EFD0836C950E46B02D3CBC67184] [WIS][2017/01/09 05:41:00] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\57b70913.msp [25853952] =>.SUP.Obsolete.Adobe
[MD5.49E13AC54D99DDA556E25BC1BF5DC4BE] [WIS][2015/10/13 05:26:24] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\5c3ca2.msp [52576256] =>.SUP.Obsolete.Adobe
[MD5.77AB51250501ADDD4D491DECDB6121FD] [WIS][2017/08/28 18:40:46] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\6122e0e0.msp [2424832] =>.SUP.Obsolete.Adobe
[MD5.557170C4FCC0754B372A5FC174735242] [WIS][2016/06/02 06:48:41] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\714c4a35.msp [2772992] =>.SUP.Obsolete.Adobe
[MD5.B2D96888BC6646EBDEEFB59B363FD015] [WIS][2019/12/09 10:07:55] (.Adobe Inc..) -- C:\WINDOWS\Installer\8ad27707.msp [30273536] =>.Adobe Inc.
[MD5.FC195281214C157DAC91C0B02FA35554] [WIS][2018/12/10 08:52:51] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\94620ae.msp [44044288] =>.SUP.Obsolete.Adobe
[MD5.59E0FCA0A7F48848A6EF34ED7AC987C0] [WIS][2019/06/13 14:38:00] (.Adobe Inc..) -- C:\WINDOWS\Installer\9e35c9a.msp [2260992] =>.Adobe Inc.
[MD5.D2315820CBF3F165769574F4F57F9D59] [WIS][2015/11/25 11:42:23] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\a31015b.msp [212992] =>.SUP.Obsolete.Adobe
[MD5.3F05B763DB06D5375D569FF10EAC1CF8] [WIS][2019/04/08 08:22:42] (.Adobe Inc..) -- C:\WINDOWS\Installer\a411ba.msp [7155712] =>.Adobe Inc.
[MD5.79254CC5CD24307A97C66DE7D7AD4B08] [WIS][2019/01/03 11:17:04] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\a5bd27e.msp [1720320] =>.Adobe Systems, Incorporated
[MD5.25F86D2EE0FAB79D6DCA727411962C32] [WIS][2016/02/16 14:48:12] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\ab7c866.msp [9687040] =>.SUP.Obsolete.Adobe
[MD5.BCC43969BE02109C8AC7141C7C3CB9CA] [WIS][2017/08/11 12:04:59] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\adb01de.msp [2031616] =>.SUP.Obsolete.Adobe
[MD5.7F1419CD81DEB4E238B7F0426B0782B7] [WIS][2020/05/11 08:43:48] (.Adobe Inc..) -- C:\WINDOWS\Installer\b4f6287.msp [50810880] =>.Adobe Inc.
[MD5.D65FA317AC2DF76CBE3F765A60BD8809] [WIS][2018/08/13 08:19:45] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\b8f5191c.msp [1441792] =>.SUP.Obsolete.Adobe
[MD5.EF167BD45D286A7E38E769B6787DD73F] [WIS][2019/10/17 11:30:59] (.Adobe Inc..) -- C:\WINDOWS\Installer\caad4.msp [2490368] =>.Adobe Inc.
[MD5.775A31DA0A4D38B773E97B1F54F138A4] [WIS][2015/10/29 09:48:55] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\cfe06a.msp [52572160] =>.SUP.Obsolete.Adobe
[MD5.2BF0093E60C2D00175DD9F550D900CB7] [WIS][2017/08/07 10:20:05] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\d801d6b.msp [70610944] =>.SUP.Obsolete.Adobe
[MD5.307FCA5A8C1EDF5A94F46095589379CE] [WIS][2016/03/08 05:45:31] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\e93d80.msp [2719744] =>.SUP.Obsolete.Adobe
[MD5.5705BA59CE2D386789436E2C34FC5635] [WIS][2019/12/19 10:53:18] (.Adobe Inc..) -- C:\WINDOWS\Installer\e9ea8c0.msp [1863680] =>.Adobe Inc.
[MD5.82F476D2A7125BB7EBF5A2A657BAB293] [WIS][2017/11/13 06:26:16] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\eb352.msp [23506944] =>.SUP.Obsolete.Adobe
[MD5.B02CDF597655C7CAD392D0404975E9AB] [WIS][2018/10/01 11:41:46] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\f80465b.msp [194531328] =>.SUP.Obsolete.Adobe

---\\ FEATURE CONTROL. (186) - 0s
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_96DPI_PIXEL]:WindowsAnytimeUpgradeUI.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:clview.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:clview.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:UNPUXHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:mbam.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:mbamtray.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:googledrivesync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_Cross_Domain_Redirect_Mitigation]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_ISO_2022_JP_SNIFFING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:clview.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HIGH_CONTRAST_BACKGROUND_IMAGES]:sidebar.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:clview.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:clview.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:winwordd.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:winword.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:powerpnt.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:excel.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:msnmsgr.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:clview.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:clview.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:clview.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:clview.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:clview.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:clview.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SCRIPTURL_MITIGATION]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:clview.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:clview.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WARN_ON_SEC_CERT_REV_FAILED]:mbam.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:clview.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:clview.exe =>.Legitimate

---\\ OBSERVATEURS des évènements (160) - 45s

Application.Warning: ESENT (437)
~Numéro: 15122
~Date: 08/30/2020 10:15:28 AM
~ID: 642
~Description: %1 (%2) %3La version %5 de la fonctionnalité de format de base de données n’a pas pu être utilisée, car le format actuel de base de données %6 est contrôlé par le paramètre %4.
~Suggestion: Aucune

Application.Error: Bonjour Service (459)
~Numéro: 15096
~Date: 08/30/2020 10:11:12 AM
~ID: 100
~Description: Local Hostname proprietaire-PC.local already in use; will try proprietaire-PC-2.local instead
~Suggestion: Supprimer la tâche planifiée correspondante ou le service 'Bonjour Service'

Application.Warning: AutoEnrollment (72)
~Numéro: 15087
~Date: 08/30/2020 10:11:08 AM
~ID: 64
~Description: Système local62 28 7e f5 00 5e d8 7a ee 5b f9 ec 6c 04 83 d7 ef 09 9a 24
~Suggestion: Installer le Kit de développement logiciel (SDK).

Application.Error: SideBySide (86)
~Numéro: 15086
~Date: 08/30/2020 10:10:50 AM
~ID: 33
~Description: La création du contexte d’activation a échoué pour « %11 ». Assembly dépendant %1 introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé.
~Suggestion: Ces erreurs peuvent généralement être ignorées

Application.Warning: LMS (11)
~Numéro: 15079
~Date: 08/29/2020 05:08:25 PM
~ID: 1
~Description: LMS Service cannot connect to Intel(R) MEI driver

Application.Warning: Windows Search Service (24)
~Numéro: 15074
~Date: 08/29/2020 05:07:00 PM
~ID: 3036
~Description: Impossible de terminer l’analyse dans la source de contenu <%2>.Contexte : Application , Catalogue SystemIndexDétails : Une erreur interne s’est produite dans les Services HTTP Microsoft Windows (HRESULT : 0x80072ee4) (0x80072ee4)
~Suggestion: https://www.repairwin.com/fix-windows-event-3036-search-content-source-cannot-accessed-solved/

Application.Warning: EvntAgnt (26)
~Numéro: 14969
~Date: 08/29/2020 01:52:14 PM
~ID: 3007
~Description: Erreur lors de l’ouverture du fichier journal des événements %1. Le journal ne sera pas traité. Le code renvoyé par OpenEventLog est %2.

Application.Error: VSS (8)
~Numéro: 14957
~Date: 08/29/2020 01:50:46 PM
~ID: 8193
~Description: Erreur du service de cliché instantané des volumes : erreur lors de l’appel de la routine %1. hr = %2.
~Suggestion: Utiliser la procédure de reconstruction du VSS

Application.Error: Application Error (12)
~Numéro: 14941
~Date: 08/29/2020 01:14:28 PM
~ID: 1000
~Description: Nom de l’application défaillante %1, version : %2, horodatage : 0x5f3ebdb4 Nom du module défaillant : %4, version : %5, horodatage : 0x5e827322 Code d’exception : 0xc0000005 Décalage d’erreur : 0x001a4be9 ID du processus défaillant : 0x2bd4 Heure de
~Suggestion: Réparer ou réinstaller l'application.

Application.Error: Microsoft-Windows-CAPI2 (9)
~Numéro: 14819
~Date: 08/28/2020 03:37:37 PM
~ID: 513
~Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer.%1.

Application.Error: Microsoft-Windows-Defrag (10)
~Numéro: 14550
~Date: 08/26/2020 04:22:53 PM
~ID: 264
~Description: L’optimiseur de stockage n’a pas pu terminer %1 sur %2 car : L’opération demandée n’est pas prise en charge par le matériel sous-jacent au volume. (0x8900002A)
~Suggestion: Désactivez la surveillance du disque logique dans le pack d'administration du système d'exploitation de base SCOM pour arrêter l'analyse automatique de la défragmentation.

Application.Warning: Chrome (3)
~Numéro: 14450
~Date: 08/26/2020 02:40:01 PM
~ID: 256
~Description: %1!S!

Application.Error: Application Hang (3)
~Numéro: 14056
~Date: 08/25/2020 01:45:28 PM
~ID: 1002
~Description: Le programme %1 version %2 a cessé d'interagir avec Windows et a été fermé. Pour voir si plus d'informations sur le problème sont disponibles, vérifiez l'historique des problèmes dans le Panneau de configuration Sécurité et maintenance. ID de proces
~Suggestion: Essayer les commandes suivantes ipconfig /release et ipconfig / renew.

Application.Warning: Wlclntfy (2)
~Numéro: 13129
~Date: 08/13/2020 02:02:28 PM
~ID: 6006
~Description: Le traitement de l’événement de notification (%3) par l’abonné aux notifications Winlogon <%1> a duré %2 secondes.
~Suggestion: Supprimer la valeur de registre GpNetworkStartTimeoutPolicyValue de la clé HKLM\SOFTWARE\Policies\Microsoft\Windows\System

Application.Warning: Microsoft-Windows-System-Restore (1)
~Numéro: 12579
~Date: 08/02/2020 02:02:06 PM
~ID: 8303
~Description: Scoping unsuccessful for shadowcopy %1 with error %2.
~Suggestion: Exécuter la commande chkdsk / f

Application.Error: .NET Runtime (2)
~Numéro: 12562
~Date: 08/02/2020 01:55:29 PM
~ID: 1026
~Description: Application : DSAService.exeVersion du Framework : v4.0.30319Description : le processus a été arrêté en raison d'une exception non gérée.Informations sur l'exception : System.NullReferenceException à Intel.DSA.CommonCore.Controllers.LoggingBaseClas
~Suggestion: Essayer d'installer la dernière version de l'application ou du dernier correctif

Application.Warning: Microsoft-Windows-RestartManager (6)
~Numéro: 12557
~Date: 08/02/2020 01:55:15 PM
~ID: 10010
~Description: Impossible de redémarrer l’application « %3 » (pid %2) - %9.
~Suggestion: Redémarrer manuellement l'application ou le service

System.Warning: DCOM (604)
~Numéro: 11117
~Date: 08/30/2020 10:40:40 AM
~ID: 10016
~Description: propres à l’applicationLocalActivation{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}{15C20B67-12E7-4BB6-92BB-7AFF07997402}proprietaire-PCproprietaireS-1-5-21-2612108781-1526108736-1666421196-1000LocalHost (avec LRPC)Non disponibleNon disponible
~Suggestion: Vérifier les autorisations pour l'accès DCOM

System.Error: Microsoft-Windows-WLAN-AutoConfig (129)
~Numéro: 11097
~Date: 08/30/2020 10:10:49 AM
~ID: 10000
~Description: Le module d’extensibilité WLAN n’a pas pu démarrer. Chemin d’accès du module : C:\WINDOWS\system32\athExt.dll Code d’erreur : 126

System.Warning: Microsoft-Windows-Time-Service (53)
~Numéro: 11095
~Date: 08/30/2020 10:10:04 AM
~ID: 134
~Description: NtpClient n'a pas pu définir d'homologue manuel utilisable comme source de temps en raison d'une erreur de résolution DNS sur "%3". NtpClient réessaiera dans %2 minutes, puis doublera l'intervalle d'attente pour les tentatives suivantes. L'erreur éta
~Suggestion: Resynchroniser le client avec l'homologue de source de temps

System.Error: Microsoft-Windows-NDIS (5)
~Numéro: 11093
~Date: 08/30/2020 10:10:02 AM
~ID: 10317
~Description: Le miniport %4, %1, a eu l’événement 74

System.Warning: Microsoft-Windows-Wininit (17)
~Numéro: 11042
~Date: 08/29/2020 01:52:20 PM
~ID: 11
~Description: Les bibliothèques de liens dynamiques sont chargées pour chaque application. L’administrateur système doit vérifier la liste des bibliothèques pour s’assurer qu’elles sont associées à des applications approuvées. Pour plus d’informations, visitez htt

System.Error: Service Control Manager (88)
~Numéro: 11040
~Date: 08/29/2020 01:52:15 PM
~ID: 7001
~Description: Le service %1 dépend du service %2 qui n’a pas pu démarrer en raison de l’erreur : %%15

System.Error: WAS (51)
~Numéro: 11034
~ID: 5005
~Description: Le service d'activation des processus Windows (WAS) s'arrête, car il a rencontré une erreur. Le champ des données contient le numéro de l'erreur.

System.Error: SNMP (17)
~Numéro: 11031
~ID: 1500
~Description: Le service SNMP a rencontré une erreur lors de l’accès à la clé de Registre %1.

System.Warning: Microsoft-Windows-DNS-Client (26)
~Numéro: 10965
~Date: 08/29/2020 01:33:53 PM
~ID: 1014
~Description: La résolution du nom %1 a expiré lorsqu’aucun des serveurs DNS configurés n’a répondu.
~Suggestion: https://social.technet.microsoft.com/wiki/contents/articles/3336.event-id-1014-microsoft-windows-dns-client.aspx

System.Error: Microsoft-Windows-WindowsUpdateClient (9)
~Numéro: 10947
~Date: 08/29/2020 11:15:31 AM
~ID: 20
~Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur %1 : %2.
~Suggestion: http://kb.eventtracker.com/evtpass/evtpages/EventId_20_Microsoft-Windows-WindowsUpdateClient_63351.asp

System.Error: Schannel (6)
~Numéro: 9103
~Date: 08/13/2020 01:01:49 PM
~ID: 4103
~Description: Une erreur irrécupérable s'est produite lors de la création des informations d'identification %1 pour TLS. État d'erreur interne : %2.

System.Error: EventLog (1)
~Numéro: 7077
~Date: 07/06/2020 03:55:30 PM
~ID: 6008
~Description: L’arrêt système précédant à %1 le %2 n’était pas prévu.

---\\ SCAN ADDITIONNEL (51) - 25s
C:\Program Files\vlc-1.1.5-win32.exe =>Heuristic.Suspect
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ContextMenu =>.SUP.Orphan
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\LavasoftShellExt =>.SUP.Orphan
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ShellExtension =>.SUP.Orphan
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\ContextMenu =>.SUP.Orphan
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\ShellExtension =>.SUP.Orphan
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\Gadgets =>.SUP.Orphan
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\ContextMenu =>.SUP.Orphan
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\LavasoftShellExt =>.SUP.Orphan
HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\LavasoftShellExt =>.SUP.Orphan
HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\ShellExtension =>.SUP.Orphan
C:\WINDOWS\Installer\ba65cb.msi =>.SUP.SDSL
C:\WINDOWS\Installer\101c2dcf.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\13b8eb4.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\1493174a.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\158deca5.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\185705c0.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\22ae1a88.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\2934d43b.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\2fe6589b.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\330c94e8.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\38365782.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\3b87750.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\41f84fb7.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\42a5d8e2.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\4334b016.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\44351afb.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\46eb02f4.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\4e51b97.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\535bf29.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\53e3bb5.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\57b38a1f.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\57b70913.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\5c3ca2.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\6122e0e0.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\714c4a35.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\94620ae.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\a31015b.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\ab7c866.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\adb01de.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\b8f5191c.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\cfe06a.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\d801d6b.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\e93d80.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\eb352.msp =>.SUP.Obsolete.Adobe
C:\WINDOWS\Installer\f80465b.msp =>.SUP.Obsolete.Adobe
C:\Users\proprietaire\AppData\Local\Google\Chrome\User Data\Default\File System\000 =>.SUP.Temporary.Chrome
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:E:\logiciel\antiyeuxrouges\redeye.exe.FriendlyAppName =>.Unsigned
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Google\Drive\googledrivesync.exe.FriendlyAppName =>.Unsigned
[HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:E:\logiciel\antiyeuxrouges\redeye.exe.FriendlyAppName =>.Unsigned
[HKU\S-1-5-21-2612108781-1526108736-1666421196-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Google\Drive\googledrivesync.exe.FriendlyAppName =>.Unsigned

---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS (8) - 0s
https://nicolascoolman.eu/2017/01/28/heuristic-suspect/ =>Heuristic.Suspect
https://nicolascoolman.eu/2017/11/01/adware-mybrowser/ =>PUP.Optional.MyBrowser
https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.SDSL
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Obsolete.Adobe
https://nicolascoolman.eu/forum/Topic/warning-eventlogapp-evenement-dapplication/ =>Warning.EventLogApp
https://nicolascoolman.eu/forum/Topic/warning-eventlogsys-evenement-systeme/ =>Warning.EventLogSys
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary.Chrome

---\\ NUMEROS DE SÉRIE
[00E11CEEA9402B941C46BF4F7A00F87D1D] [22/09/2015] (.Eyeo GmbH.) - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll =>.Eyeo GmbH
[02FA994D660DE659EE9037ECB437D766] [05/08/2020] (.Piriform Software Ltd.) - C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Software Ltd
[02FA994D660DE659EE9037ECB437D766] [05/08/2020] (.Piriform Software Ltd.) - C:\Program Files\CCleaner\uninst.exe =>.Piriform Software Ltd
[0320BE3EB866526927F999B97B04346E] [01/02/2020] (.Realtek Semiconductor Corp..) - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe =>.Realtek Semiconductor Corp.
[0320BE3EB866526927F999B97B04346E] [01/02/2020] (.Realtek Semiconductor Corp..) - C:\Program Files\Realtek\Audio\HDA\RtlUpd.exe =>.Realtek Semiconductor Corp.
[0320BE3EB866526927F999B97B04346E] [01/02/2020] (.Realtek Semiconductor Corp..) - C:\Windows\System32\drivers\RTKVHDA.sys =>.Realtek Semiconductor Corp.
[044E3BF58976880FFD074448A8F7A058] [02/02/2017] (.Malwarebytes Corporation.) - C:\WINDOWS\System32\drivers\5AB33452.sys =>.Malwarebytes Corporation
[044E3BF58976880FFD074448A8F7A058] [26/06/2019] (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation
[044E3BF58976880FFD074448A8F7A058] [27/08/2020] (.Malwarebytes Corporation.) - C:\WINDOWS\System32\drivers\mbae.sys =>.Malwarebytes Corporation
[063D0C011B143C57893FE839779AFCD0] [01/02/2020] (.Realtek Semiconductor Corp..) - C:\Windows\System32\drivers\rt640x86.sys =>.Realtek Semiconductor Corp.
[06AEA76BAC46A9E8CFE6D29E45AAF033] [21/03/2020] (.Google LLC.) - C:\Program Files\Google\Update\1.3.35.452\GoogleCrashHandler.exe =>.Google LLC
[07C70F7CAB145BC1ED385FBE69FA3130] [20/08/2019] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\staport.sys =>.AVAST Software s.r.o.
[08A2EC4E78A09E174B192E5535984B59] [24/08/2020] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisPlugins\TrayPlugin.EXPT-59_Control_CU14.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [24/08/2020] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisPlugins\TrayPlugin.EXPT-59_Test_CU14.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [27/08/2020] (.Malwarebytes Inc.) - C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [27/08/2020] (.Malwarebytes Inc.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [27/08/2020] (.Malwarebytes Inc.) - C:\Program Files\Malwarebytes\Anti-Malware\mbuns.exe =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [27/08/2020] (.Malwarebytes Inc.) - C:\Windows\System32\drivers\mbamswissarmy.sys =>.Malwarebytes Inc
[08D135] [02/12/2002] (.InstallShield Software Corporation.) - C:\Program Files\InstallShield Installation Information\{6E90931A-1A03-4B96-8BC2-DE88B8195B5A}\setup.exe =>.InstallShield Software Corporation
[09105884EB959D3BC8B994F918A7B6EE] [18/06/2020] (.Oracle America, Inc..) - C:\Program Files\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.
[09105884EB959D3BC8B994F918A7B6EE] [20/07/2020] (.Oracle America, Inc..) - C:\Program Files\Java\jre1.8.0_261\bin\jp2ssv.dll =>.Oracle America, Inc.
[09105884EB959D3BC8B994F918A7B6EE] [20/07/2020] (.Oracle America, Inc..) - C:\Program Files\Java\jre1.8.0_261\bin\ssv.dll =>.Oracle America, Inc.
[09E28B26DB593EC4E73286B66499C370] [20/08/2012] (.Google Inc.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe =>.Google Inc
[0BE24E8F095D97CF2699D5516C997DD9] [01/09/2016] (.Canneverbe Limited.) - C:\Program Files\CDBurnerXP\cdbxpp.exe =>.Canneverbe Limited
[0C15BE4A15BB0903C901B1D6C265302F] [15/06/2020] (.Google LLC.) - C:\Program Files\Google\Drive\contextmenu32.dll =>.Google LLC
[0C15BE4A15BB0903C901B1D6C265302F] [15/06/2020] (.Google LLC.) - C:\Program Files\Google\Drive\googledrivesync.exe =>.Google LLC
[0C15BE4A15BB0903C901B1D6C265302F] [15/06/2020] (.Google LLC.) - C:\Program Files\Google\Drive\googledrivesync32.dll =>.Google LLC
[0C15BE4A15BB0903C901B1D6C265302F] [21/07/2020] (.Google LLC.) - C:\Program Files\Google\Google Earth Pro\client\googleearth.exe =>.Google LLC
[0C15BE4A15BB0903C901B1D6C265302F] [22/08/2020] (.Google LLC.) - C:\Users\proprietaire\AppData\Local\Google\Chrome\User Data\SwReporter\84.241.200\software_reporter_tool.exe =>.Google LLC
[0C15BE4A15BB0903C901B1D6C265302F] [23/08/2020] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\85.0.4183.83\elevation_service.exe =>.Google LLC
[0C15BE4A15BB0903C901B1D6C265302F] [23/08/2020] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC
[0C15BE4A15BB0903C901B1D6C265302F] [26/08/2020] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\85.0.4183.83\Installer\chrmstp.exe =>.Google LLC
[0C15BE4A15BB0903C901B1D6C265302F] [26/08/2020] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\85.0.4183.83\Installer\setup.exe =>.Google LLC
[0D2CACCD3E9EEC06738410BA31BF6595] [10/08/2020] (.Adobe Inc..) - C:\Users\proprietaire\AppData\Local\Microsoft\Edge\User Data\PepperFlash\32.0.0.414\pepflashplayer.dll =>.Adobe Inc.
[0D2CACCD3E9EEC06738410BA31BF6595] [13/08/2020] (.Adobe Inc..) - C:\Users\proprietaire\AppData\Local\Google\Chrome\User Data\PepperFlash\32.0.0.414\pepflashplayer.dll =>.Adobe Inc.
[0D2CACCD3E9EEC06738410BA31BF6595] [13/08/2020] (.Adobe Inc..) - C:\Windows\System32\FlashPlayerApp.exe =>.Adobe Inc.
[0D2CACCD3E9EEC06738410BA31BF6595] [13/08/2020] (.Adobe Inc..) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Inc.
[0D2CACCD3E9EEC06738410BA31BF6595] [13/08/2020] (.Adobe Inc..) - C:\Windows\System32\Macromed\Flash\FlashUtil32_32_0_0_414_pepper.exe =>.Adobe Inc.
[0D2CACCD3E9EEC06738410BA31BF6595] [13/08/2020] (.Adobe Inc..) - C:\Windows\System32\Macromed\Flash\FlashUtil32_32_0_0_414_Plugin.exe =>.Adobe Inc.
[0DAE46486B3CF0B6DF5F76680285EB28] [20/04/2020] (.SAND STUDIO CORPORATION LIMITED.) - C:\program files\airdroid\airdroid.exe =>.Not verified
[0DAE46486B3CF0B6DF5F76680285EB28] [20/04/2020] (.SAND STUDIO CORPORATION LIMITED.) - C:\Program Files\AirDroid\Launcher.exe =>.Not verified
[0EE3F1C8F451CBF21203341A53F23E71] [08/07/2020] (.Adobe Inc..) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.
[0EE3F1C8F451CBF21203341A53F23E71] [17/08/2020] (.Adobe Inc..) - C:\Program Files\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Inc.
[0EE3F1C8F451CBF21203341A53F23E71] [31/07/2020] (.Adobe Inc..) - C:\Program Files\Adobe\Acrobat Reader DC\Reader\AcroBroker.exe =>.Adobe Inc.
[1044F31AE1F93A0BB95F19AB9FAAC6BB] [29/08/2020] (.ESET, spol. s r.o..) - C:\Users\proprietaire\AppData\Local\Google\Chrome\User Data\SwReporter\84.241.200\edls_32.dll =>.ESET, spol. s r.o.
[1044F31AE1F93A0BB95F19AB9FAAC6BB] [29/08/2020] (.ESET, spol. s r.o..) - C:\Users\proprietaire\AppData\Local\Google\Chrome\User Data\SwReporter\84.241.200\em000_32.dll =>.ESET, spol. s r.o.
[1044F31AE1F93A0BB95F19AB9FAAC6BB] [29/08/2020] (.ESET, spol. s r.o..) - C:\Users\proprietaire\AppData\Local\Google\Chrome\User Data\SwReporter\84.241.200\em001_32.dll =>.ESET, spol. s r.o.
[1044F31AE1F93A0BB95F19AB9FAAC6BB] [29/08/2020] (.ESET, spol. s r.o..) - C:\Users\proprietaire\AppData\Local\Google\Chrome\User Data\SwReporter\84.241.200\em002_32.dll =>.ESET, spol. s r.o.
[1044F31AE1F93A0BB95F19AB9FAAC6BB] [29/08/2020] (.ESET, spol. s r.o..) - C:\Users\proprietaire\AppData\Local\Google\Chrome\User Data\SwReporter\84.241.200\em003_32.dll =>.ESET, spol. s r.o.
[1044F31AE1F93A0BB95F19AB9FAAC6BB] [29/08/2020] (.ESET, spol. s r.o..) - C:\Users\proprietaire\AppData\Local\Google\Chrome\User Data\SwReporter\84.241.200\em004_32.dll =>.ESET, spol. s r.o.
[1044F31AE1F93A0BB95F19AB9FAAC6BB] [29/08/2020] (.ESET, spol. s r.o..) - C:\Users\proprietaire\AppData\Local\Google\Chrome\User Data\SwReporter\84.241.200\em005_32.dll =>.ESET, spol. s r.o.
[26181CEDF2C113E16AC74820DF7A38A3] [05/09/2016] (.Samsung Electronics CO., LTD..) - C:\Windows\System32\drivers\ssudbus.sys =>.Samsung Electronics CO., LTD.
[26181CEDF2C113E16AC74820DF7A38A3] [05/09/2016] (.Samsung Electronics CO., LTD..) - C:\Windows\System32\drivers\ssudmdm.sys =>.Samsung Electronics CO., LTD.
[266D333EDE17A8B472053E4FA3934572] [09/05/2018] (.AVG Technologies CZ, s.r.o..) - C:\WINDOWS\System32\drivers\lpsport.sys =>.AVG Technologies CZ, s.r.o.
[277F5AFEC0363427AFF3A7FCEE9D56A6] [25/10/2010] (.SUNBELT SOFTWARE DISTRIBUTION.) - C:\WINDOWS\System32\drivers\SBREDrv.sys =>.SUNBELT SOFTWARE DISTRIBUTION
[2912C70C9A2B8A3EF6F6074662D68B8D] [31/08/2015] (.Google Inc.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc
[2A9C21ACAAA63A3C58A7B9322BEE948D] [01/12/2016] (.Google Inc.) - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarManager_8B0481A9A34D47CD.exe =>.Google Inc
[2A9C21ACAAA63A3C58A7B9322BEE948D] [27/04/2016] (.Google Inc.) - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll =>.Google Inc
[330000017BB47778D9105DF03500000000017B] [14/08/2020] (.Skype Software Sarl.) - C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.63.76.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl
[489613E7DD6964B152A4E8F71813E76A] [27/01/2010] (.CACE Technologies, Inc..) - C:\Windows\System32\drivers\npf.sys =>.CACE Technologies, Inc.
[4B48B27C8224FE37B17A6A2ED7A81C9F] [06/06/2016] (.Piriform Ltd.) - C:\Program Files\Recuva\RecuvaShell.dll =>.Piriform Ltd
[4B48B27C8224FE37B17A6A2ED7A81C9F] [06/06/2016] (.Piriform Ltd.) - C:\Program Files\Recuva\uninst.exe =>.Piriform Ltd
[4B48B27C8224FE37B17A6A2ED7A81C9F] [08/03/2016] (.Piriform Ltd.) - C:\Program Files\Defraggler\uninst.exe =>.Piriform Ltd
[5600000965070D4582C6239C85000000000965] [02/08/2020] (.IDSA Production signing key.) - C:\ProgramData\Package Cache\{011c7b89-9b3e-4b2a-8cbc-633ef3c1e10c}\Intel-Driver-and-Support-Assistant-Installer.exe =>.IDSA Production signing key
[5600000965070D4582C6239C85000000000965] [31/07/2020] (.IDSA Production signing key.) - C:\Program Files\Intel\Driver and Support Assistant\DSAService.exe =>.IDSA Production signing key
[5600000965070D4582C6239C85000000000965] [31/07/2020] (.IDSA Production signing key.) - C:\Program Files\Intel\Driver and Support Assistant\DSAServiceHelper.exe =>.IDSA Production signing key
[5600000965070D4582C6239C85000000000965] [31/07/2020] (.IDSA Production signing key.) - C:\Program Files\Intel\Driver and Support Assistant\DSATray.exe =>.IDSA Production signing key
[5600000965070D4582C6239C85000000000965] [31/07/2020] (.IDSA Production signing key.) - C:\Program Files\Intel\Driver and Support Assistant\DSAUpdateService.exe =>.IDSA Production signing key
[5E6DDC87375082845814F442D1D82A25] [20/08/2009] (.Realtek Semiconductor Corp.) - C:\Program Files\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe =>.Realtek Semiconductor Corp
[5FA2A6E514B187C52E1FEA5240CB04E9] [30/08/2011] (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.

~ Unselected Options: WR, O82,
~ End of the scan, 9836 items in 16mn49s (3783)(0)

Publicité


Signaler le contenu de ce document

Publicité