cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2022.4.10.24 Par Nicolas Coolman (2022/04/10)
~ Démarré par Mr_GT (Administrator) (2022/04/10 17:01:30)
~ Assistance: https://forum.nicolascoolman.eu/
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Certificate ZHPDiag: Legal
~ Etat de la version:
~ Mode: Scanner
~ Rapport: C:\Users\Mr_GT\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Mr_GT\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 10 Pro, 64-bit (Build 19043) =>.Microsoft Corporation

---\\ NAVIGATEURS INTERNET (3) - 0s
~ GCIE: Google Chrome v100.0.4896.75
~ MSIE: Internet Explorer v11.789.19041.0
~ OBIE: Microsoft Edge v100.0.1185.36

---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (7) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows(R) Operating System, VOLUME_KMSCLIENT channel
Windows ID Activation : OK
~ Windows Partial Key : T83GX
~ Windows Remaining Initializations Number : 1001
Windows Automatic Updates : OK

---\\ LOGICIELS DE PROTECTION (2) - 1s
Windows Defender W10 (Activate) (Protection)
Malwarebytes version 4.3.0.98 v4.3.0.98 (Protection)

---\\ SURVEILLANCE LOGICIEL (1) - 1s
~ Adobe Acrobat Reader DC - Français (Surveillance)

---\\ INFORMATIONS SUR LE SYSTÈME (6) - 0s
~ Operating System: Intel64 Family 6 Model 158 Stepping 9, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 33491.904 MB (91% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 45 GB (19%) free of 227 GB : OK =>.Disk Space

---\\ MODE DE CONNEXION AU SYSTÈME (3) - 0s
~ Computer Name: DESKTOP-RUT1CQG
~ User Name: Mr_GT
~ Logged in as Administrator

---\\ ÉNUMÉRATION DES UNITÉS DE STOCKAGE (4) - 0s
~ Drive C: has 45 GB free of 227 GB (System)
~ Drive D: has 3442 GB free of 3815 GB
~ Drive E: has 109 GB free of 610 GB
~ Drive G: has 394 GB free of 476 GB

---\\ ÉTAT DU CENTRE DE SÉCURITÉ WINDOWS (7) - 0s
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ RECHERCHE PARTICULIÈRE DE FICHIERS GÉNÉRIQUES (26) - 1s
[MD5.25C8B9AE873248CD98AB17539F5B1F15] - 01/04/2022 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [4967688] =>.Microsoft®
[MD5.EF3179D498793BF4234F708D3BE28633] - 13/01/2021 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [71680] [Unsigned] =>.Microsoft Corporation
[MD5.FDA73105E744211CB0E28008882DAF21] - 01/04/2022 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [427192] [Unsigned] =>.Microsoft Corporation
[MD5.11F7419009AF2874C4B0E4505D185D79] - 01/04/2022 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [5038592] [Unsigned] =>.Microsoft Corporation
[MD5.FC7F68EE85A3AE64D6E58C2B2D673793] - 01/04/2022 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [910336] [Unsigned] =>.Microsoft Corporation
[MD5.A01E533388EF4141854A72CB9F17B5BE] - 01/04/2022 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [316416] [Unsigned] =>.Microsoft Corporation
[MD5.914AE33E90AF8D3C19ED7678D56B4977] - 01/04/2022 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [820728] =>.Microsoft®
[MD5.1EAD098027CC4D0CD3A8DBE7FFA4D244] - 01/04/2022 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [581568] =>.Microsoft®
[MD5.CBD095290A7B0970D87AEB53A44D9018] - 01/04/2022 - (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\System32\wuaueng.dll [3403776] [Unsigned] =>.Microsoft Corporation
[MD5.3996E9A5F0CC85E93AA7ADE49A892C5E] - 07/12/2019 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] [Unsigned] =>.Microsoft Corporation
[MD5.E04072187F967B0041C994CCCDB9E101] - 01/04/2022 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [651096] [Unsigned] =>.Microsoft Corporation
[MD5.AF0AA60DD36E4FA227F3C441B008336E] - 13/10/2021 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [30032] [Unsigned] =>.Microsoft Corporation
[MD5.764FE2149251A246F6B047A0F09F5F0B] - 07/12/2019 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [100864] [Unsigned] =>.Microsoft Corporation
[MD5.054ABC6C64AE969D033B7876C04D52B4] - 13/10/2021 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [175616] [Unsigned] =>.Microsoft Corporation
[MD5.3D3CCAFC76E02403E2963A2CB45D61F7] - 10/03/2021 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [152064] [Unsigned] =>.Microsoft Corporation
[MD5.4F39254C6E087D4789D2C3EBD3C7F744] - 01/04/2022 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [134656] [Unsigned] =>.Microsoft Corporation
[MD5.E4B36C6EAAAB703CBFECB92EE590FB31] - 07/12/2019 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [118272] [Unsigned] =>.Microsoft Corporation
[MD5.F63572DF4295C78B3F7036AEDA878176] - 07/12/2019 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [225280] [Unsigned] =>.Microsoft Corporation
[MD5.570402953F29A5AC0FBD2715454DED89] - 01/04/2022 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [579432] [Unsigned] =>.Microsoft Corporation
[MD5.49F7DE6F689C47B64A2C2D46CD98E327] - 02/11/2020 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [341504] [Unsigned] =>.Microsoft Corporation
[MD5.69B5F6B8793F3E59B84D08A70BB1240C] - 01/04/2022 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2851664] [Unsigned] =>.Microsoft Corporation
[MD5.138FDB1EBCB61287A645BD3B06DBED5E] - 07/12/2019 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [109056] [Unsigned] =>.Microsoft Corporation
[MD5.40CBDB4B80284451536C8CA49561E5CD] - 01/11/2020 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [110080] [Unsigned] =>.Microsoft Corporation
[MD5.64991B36F0BD38026F7589572C98E3D6] - 14/04/2021 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [169984] [Unsigned] =>.Microsoft Corporation
[MD5.2A8B28579A4964AA7EA8CEB1AC121243] - 10/10/2021 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [117584] [Unsigned] =>.Microsoft Corporation
[MD5.988A7A685BB51BAC62F4E176BE5432AC] - 01/11/2020 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [429880] [Unsigned] =>.Microsoft Corporation

---\\ LISTE DES SERVICES (Non désactivés) (70) - 2s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Inc. - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.®
O23 - Service: Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated®
O23 - Service: (AMD Crash Defender Service) . (.Advanced Micro Devices, Inc. - AMD Crash Defender Service.) - C:\WINDOWS\System32\amdfendrsr.exe [Unsigned] =>.Advanced Micro Devices, Inc.
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\DriverStore\FileRepository\u0377495.inf_amd64_58cc395c0bf03a26\B377432\atiesrxx.exe {535091E6CAB13AF393B51EAD0825F627}. =>.AMD
O23 - Service: ASGT (ASGT) . (...) - C:\Windows\SysWOW64\ASGT.exe [Unsigned] =>.ASUSTeK
O23 - Service: C:\WINDOWS\System32\AudioEndpointBuilder.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Générateur de points de terminaison du serv.) - C:\WINDOWS\System32\AudioEndpointBuilder.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\audiosrv.dll (Audiosrv) . (.Microsoft Corporation - Service Audio Windows.) - C:\WINDOWS\System32\Audiosrv.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\bfe.dll (BFE) . (.Microsoft Corporation - Moteur de filtrage de base.) - C:\WINDOWS\System32\bfe.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\qmgr.dll (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) - C:\WINDOWS\System32\qmgr.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\system32\bisrv.dll (BrokerInfrastructure) . (.Microsoft Corporation - Process State Manager (PSM) Service.) - C:\WINDOWS\System32\psmsrv.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\cdpusersvc.dll (CDPUserSvc) . (.Microsoft Corporation - Composants utilisateur Microsoft (R) CDP.) - C:\WINDOWS\System32\CDPUserSvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: CDPUserSvc_6a2c8 (CDPUserSvc_6a2c8) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft®
O23 - Service: C:\Windows\System32\coremessaging.dll (CoreMessagingRegistrar) . (.Microsoft Corporation - Microsoft CoreMessaging Dll.) - C:\Windows\System32\coremessaging.dll =>.Microsoft®
O23 - Service: C:\WINDOWS\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Services de chiffrement.) - C:\WINDOWS\System32\cryptsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\das.dll (DeviceAssociationService) . (.Microsoft Corporation - Service d’association de périphérique.) - C:\WINDOWS\System32\das.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - Service client DHCP.) - C:\Windows\System32\dhcpcore.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\diagtrack.dll (DiagTrack) . (.Microsoft Corporation - Suivi des diagnostics Microsoft Windows.) - C:\WINDOWS\System32\diagtrack.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\dispbroker.desktop.dll (DispBrokerDesktopSvc) . (.Microsoft Corporation - Courtier d'affichage du bureau.) - C:\WINDOWS\System32\DispBroker.Desktop.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - Service de résolution du cache DNS.) - C:\WINDOWS\System32\dnsrslvr.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\dusmsvc.dll (DusmSvc) . (.Microsoft Corporation - Service Consommation des données.) - C:\WINDOWS\System32\dusmsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Service Mise à jour de Microsoft Edge (edgeupdate) (edgeupdate) . (.Microsoft Corporation - Microsoft Edge Update.) - C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe =>.Microsoft®
O23 - Service: C:\WINDOWS\System32\wevtsvc.dll (EventLog) . (.Microsoft Corporation - Service journal des événements.) - C:\WINDOWS\System32\wevtsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Service de cache de police Windows.) - C:\WINDOWS\System32\FntCache.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) - C:\WINDOWS\System32\gpsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: HP Print Scan Doctor Service (HPPrintScanDoctorService) . (.HP Inc. - .) - C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe =>.HP Inc.®
O23 - Service: HuaweiHiSuiteService64.exe (HuaweiHiSuiteService64.exe) . (. - HuaweiHiSuiteService.) - C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [Unsigned] =>.Huawei Technologies Co.,Ltd
O23 - Service: Intel(R) PROSet Monitoring Service (Intel(R) PROSet Monitoring Service) . (.Intel Corporation - Intel® PROSet Monitoring Service.) - C:\Windows\system32\IProsetMonitor.exe [Unsigned] =>.Intel Corporation
O23 - Service: C:\WINDOWS\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) - C:\WINDOWS\System32\iphlpsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - DLL du service Serveur.) - C:\WINDOWS\System32\srvsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - DLL du service Station de travail.) - C:\WINDOWS\System32\wkssvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\system32\lsm.dll (LSM) . (.Microsoft Corporation - Service du gestionnaire de session locale.) - C:\WINDOWS\System32\lsm.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\moshost.dll (MapsBroker) . (.Microsoft Corporation - Gestionnaire des cartes téléchargées.) - C:\WINDOWS\System32\moshost.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\FirewallAPI.dll (mpssvc) . (.Microsoft Corporation - Service de protection Microsoft.) - C:\WINDOWS\System32\mpssvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Connaissance des emplacements réseau 2.) - C:\WINDOWS\System32\nlasvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Serveur RPC de l’interface du magasin résea.) - C:\WINDOWS\System32\nsisvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\APHostRes.dll (OneSyncSvc) . (.Microsoft Corporation - Accounts Host Service.) - C:\WINDOWS\System32\APHostService.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: OneSyncSvc_6a2c8 (OneSyncSvc_6a2c8) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft®
O23 - Service: Origin Web Helper Service (Origin Web Helper Service) . (.Electronic Arts - OriginWebHelperService.) - D:\Jeux\Origin\OriginWebHelperService.exe =>.Electronic Arts, Inc.®
O23 - Service: postgresql-8.4 - PostgreSQL Server 8.4 (postgresql-8.4) . (.PostgreSQL Global Development Group - pg_ctl - starts/stops/restarts the PostgreS.) - c:\postgreSQL\bin\pg_ctl.exe [Unsigned] =>.PostgreSQL Global Development Group
O23 - Service: C:\WINDOWS\System32\umpo.dll (Power) . (.Microsoft Corporation - Service d’alimentation en mode utilisateur.) - C:\WINDOWS\System32\umpo.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\WINDOWS\System32\profsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\rasmans.dll (RasMan) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) - C:\WINDOWS\System32\rasmans.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\system32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - Mappeur de point de terminaison RPC.) - C:\WINDOWS\System32\RpcEpMap.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: @combase.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\WINDOWS\System32\rpcss.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) - C:\WINDOWS\System32\schedsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\Sens.dll (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) - C:\WINDOWS\System32\sens.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: serposcope (serposcope) . (.Apache Software Foundation - Commons Daemon Service Runner.) - C:\Program Files (x86)\serposcope\bin\serposcope-service.exe {76BDA099930ACCDEF2E06E86AAC1BAFF}. =>.Apache Software Foundation
O23 - Service: C:\WINDOWS\System32\SgrmBroker.exe,-100 (SgrmBroker) . (.Microsoft Corporation - Service Broker du moniteur d'exécution Syst.) - C:\WINDOWS\System32\SgrmBroker.exe [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) - C:\Windows\System32\shsvcs.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Application sous-système spouleur.) - C:\WINDOWS\System32\spoolsv.exe [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Service de la plateforme de protection logi.) - C:\WINDOWS\System32\sppsvc.exe [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wiaservc.dll (stisvc) . (.Microsoft Corporation - Service de périphériques d’images fixes.) - C:\WINDOWS\System32\wiaservc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\StorSvc.dll (StorSvc) . (.Microsoft Corporation - Services de stockage.) - C:\WINDOWS\System32\storsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\sysmain.dll (SysMain) . (.Microsoft Corporation - Hôte de Service SysMain.) - C:\WINDOWS\System32\sysmain.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\system32\SystemEventsBrokerServer.dll (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) - C:\WINDOWS\System32\SystemEventsBrokerServer.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: TeamViewer (TeamViewer) . (.TeamViewer Germany GmbH - TeamViewer.) - D:\Logiciels\TeamViewer\TeamViewer_Service.exe =>.TeamViewer Germany GmbH®
O23 - Service: C:\WINDOWS\System32\themeservice.dll (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) - C:\WINDOWS\System32\themeservice.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\usermgr.dll (UserManager) . (.Microsoft Corporation - UserMgr.) - C:\WINDOWS\System32\usermgr.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\usosvc.dll (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) - C:\WINDOWS\System32\usosvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\vmms.exe,-10 (vmms) . (.Microsoft Corporation - Service de gestion d’ordinateurs virtuels.) - C:\WINDOWS\System32\vmms.exe [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wcmsvc.dll (Wcmsvc) . (.Microsoft Corporation - DLL du service de gestion des connexions Wi.) - C:\WINDOWS\System32\wcmsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) . (.Microsoft Corporation - Antimalware Service Executable.) - C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MsMpEng.exe =>.Microsoft®
O23 - Service: C:\WINDOWS\System32\wbem\wmisvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\WINDOWS\System32\wbem\WMIsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wpnservice.dll (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) - C:\WINDOWS\System32\WpnService.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\WpnUserService.dll (WpnUserService) . (.Microsoft Corporation - Service utilisateur de notifications Push W.) - C:\WINDOWS\System32\WpnUserService.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: WpnUserService_6a2c8 (WpnUserService_6a2c8) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft®
O23 - Service: C:\WINDOWS\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Service Centre de sécurité de Windows.) - C:\WINDOWS\System32\wscsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - C:\Windows\System32\SearchIndexer.exe [Unsigned] =>.Microsoft Corporation

---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (107) - 8s
SR - Boot [07/12/2019] [ 107320] (3ware) . (.LSI.) - C:\WINDOWS\System32\drivers\3ware.sys =>.Microsoft®
SR - Auto [17/11/2021] [ 169728] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Inc..) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.®
SR - Boot [07/12/2019] [ 1135416] (ADP80XX) . (.PMC-Sierra.) - C:\WINDOWS\System32\drivers\ADP80XX.SYS =>.Microsoft®
SR - Auto [23/08/2017] [ 2257016] Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated®
SR - Auto [13/12/2021] [ 591792] (AMD Crash Defender Service) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\amdfendrsr.exe =>.Microsoft®
SR - Auto [16/03/2022] [ 597424] (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\DriverStore\FileRepository\u0377495.inf_amd64_58cc395c0bf03a26\B377432\atiesrxx.exe {535091E6CAB13AF393B51EAD0825F627}. =>.AMD
SR - Demand [13/12/2021] [ 164800] AMD Crash Defender Driver (amdfendr) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amdfendr.sys {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices, Inc.
SR - Demand [13/12/2021] [ 33728] AMD Crash Defender Manager (amdfendrmgr) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amdfendrmgr.sys {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices, Inc.
SR - Demand [07/12/2019] [ 18432] AMD GPIO Client Driver (amdgpio2) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdgpio2.sys [Unsigned] =>.Advanced Micro Devices, Inc
SR - Demand [07/12/2019] [ 45568] AMD I2C Controller Service (amdi2c) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdi2c.sys [Unsigned] =>.Advanced Micro Devices, Inc
SR - Boot [16/03/2022] [ 110408] AMD PCI Root Bus Lower Filter (amdkmpfd) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amdkmpfd.sys {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices, Inc.
SR - Demand [05/11/2021] [ 109520] AMDSAFD (AMDSAFD) . (.Advanced Micro Devices.) - C:\Windows\System32\DriverStore\FileRepository\amdsafd.inf_amd64_edd3335a4253bf6d\amdsafd.sys {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices
SR - Boot [07/12/2019] [ 83256] (amdsata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdsata.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 259384] (amdsbs) . (.AMD Technologies Inc..) - C:\WINDOWS\System32\drivers\amdsbs.sys =>.Microsoft®
SR - Demand [16/03/2022] [90159536] (amdwddmg) . (.Advanced Micro Devices, Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0377495.inf_amd64_58cc395c0bf03a26\B377432\amdkmdag.sys {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices, Inc.
SR - Boot [07/12/2019] [ 26936] (amdxata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdxata.sys =>.Microsoft®
SR - Demand [17/08/2021] [ 65168] AMD Link Controller Emulation (AMDXE) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amdxe.sys {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices, Inc.
SR - Demand [10/05/2018] [ 35560] Apple Lower Filter (AppleLowerFilter) . (.Apple Inc..) - C:\WINDOWS\System32\drivers\AppleLowerFilter.sys =>.WDKTestCert build,131474841775766162®
SR - Boot [07/12/2019] [ 131896] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\WINDOWS\System32\drivers\arcsas.sys =>.Microsoft®
SR - Auto [17/01/2012] [ 55296] ASGT (ASGT) . (...) - C:\Windows\SysWOW64\ASGT.exe [Unsigned] =>.ASUSTeK
SR - System [09/09/2014] [ 15232] AsIO (AsIO) . (.ASUSTeK Computer Inc..) - C:\Windows\SysWOW64\drivers\AsIO.sys =>.ASUSTeK Computer Inc.®
SR - Demand [05/06/2015] [ 149240] ASMedia USB3 Hub Se (asmthub3) . (.ASMedia Technology Inc.) - C:\WINDOWS\System32\drivers\asmthub3.sys =>.ASMedia Technology Inc.®
SR - Demand [05/06/2015] [ 442104] ASMEDIA XHCI Servi (asmtxhci) . (.ASMedia Technology Inc.) - C:\WINDOWS\System32\drivers\asmtxhci.sys =>.ASMedia Technology Inc.®
SR - Demand [01/11/2021] [ 246176] AMD Function Driver f (AtiHDAudioService) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\AtihdWT6.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 533816] QLogic Network Adapter VBD (b06bdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\bxvbda.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 9728] bcmfn2 Service (bcmfn2) . (...) - C:\WINDOWS\System32\drivers\bcmfn2.sys [Unsigned] =>.Broadcom Corporation
SS - Demand [03/07/2021] [ 8914856] BattlEye Service (BEService) . (.BattlEye Innovations e.K..) - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe =>.BattlEye Innovations e.K.®
SR - Boot [07/12/2019] [ 319800] (cht4iscsi) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4sx64.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 1853752] Chelsio Virtual Bus Driver (cht4vbd) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4vx64.sys =>.Microsoft®
SS - Demand [13/01/2021] [ 5026104] Disc Soft Lite Bus Service (Disc Soft Lite Bus Service) . (.Disc Soft Ltd.) - D:\Logiciels\DAEMON Tools Lite\DiscSoftBusServiceLite.exe =>.AVB Disc Soft, SIA®
SR - Demand [14/12/2017] [ 30264] DAEMON Tools Lite Vir (dtlitescsibus) . (.Disc Soft Ltd.) - C:\WINDOWS\System32\drivers\dtlitescsibus.sys =>.Disc Soft Ltd®
SR - Demand [14/12/2017] [ 47672] DAEMON Tools Lite Virt (dtliteusbbus) . (.Disc Soft Ltd.) - C:\WINDOWS\System32\drivers\dtliteusbbus.sys =>.Disc Soft Ltd®
SR - Demand [07/12/2019] [ 553984] Intel(R) PRO/10 (e1i65x64) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\e1i65x64.sys [Unsigned] =>.Intel Corporation
SS - Demand [29/06/2018] [ 777856] EasyAntiCheat (EasyAntiCheat) . (.EasyAntiCheat Ltd.) - C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe =>.EasyAntiCheat Oy®
SR - Boot [07/12/2019] [ 3418936] QLogic 10 Gigabit Ethernet Ada (ebdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\evbda.sys =>.Microsoft®
SR - System [11/12/2020] [ 153312] Malwarebytes Anti-Exploit (ESProtectionDriver) . (.Malwarebytes.) - C:\WINDOWS\system32\drivers\mbae64.sys =>.Malwarebytes Corporation®
SS - Demand [01/04/2022] [ 1591184] Google Chrome Elevation Service (GoogleChromeElevationServi (GoogleChromeElevationService) . (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\100.0.4896.75\elevation_service.exe =>.Google LLC®
SR - Auto [14/12/2017] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [14/12/2017] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SR - Auto [31/03/2022] [ 218272] HP Print Scan Doctor Service (HPPrintScanDoctorService) . (.HP Inc..) - C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe =>.HP Inc.®
SR - Boot [07/12/2019] [ 64312] (HpSAMD) . (.Hewlett-Packard Company.) - C:\WINDOWS\System32\drivers\HpSAMD.sys =>.Microsoft®
SR - Auto [27/12/2019] [ 190784] HuaweiHiSuiteService64.exe (HuaweiHiSuiteService64.exe) . (...) - C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [Unsigned] =>.Huawei Technologies Co.,Ltd
SR - Demand [07/12/2019] [ 36352] Intel Serial IO GPIO Controlle (iagpio) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iagpio.sys [Unsigned] =>.Intel(R) Corporation
SR - Demand [07/12/2019] [ 91136] Intel(R) Serial IO I2C Host Cont (iai2c) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iai2c.sys [Unsigned] =>.Intel(R) Corporation
SR - Demand [07/12/2019] [ 79360] Intel(R) S (iaLPSS2i_GPIO2) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 93184] In (iaLPSS2i_GPIO2_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 112128] Intel( (iaLPSS2i_GPIO2_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 96256] Intel( (iaLPSS2i_GPIO2_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 171520] Intel(R) Seria (iaLPSS2i_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 175104] Intel( (iaLPSS2i_I2C_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 177152] Intel(R) S (iaLPSS2i_I2C_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 177664] Intel(R) S (iaLPSS2i_I2C_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 38128] Intel(R) Serial IO (iaLPSSi_GPIO) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys =>.Intel Corporation - Client Components Group®
SR - Demand [07/12/2019] [ 113152] Intel(R) Serial IO I (iaLPSSi_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [Unsigned] =>.Intel Corporation
SR - Boot [29/07/2015] [ 1462720] (iaStorA) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorA.sys =>.Intel Corporation - Rapid Storage Technology®
SR - Boot [07/12/2019] [ 884752] Intel Chipset SATA RAI (iaStorAVC) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorAVC.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 412176] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorV.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 558904] Mellanox InfiniBand Bus/A (ibbus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ibbus.sys =>.Microsoft®
SR - Demand [30/05/2018] [ 6248896] Service for Realtek HD Audio (WDM) (IntcAzAudAddService) . (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp.®
SR - Auto [07/05/2015] [ 272352] Intel(R) PROSet Monitoring Service (Intel(R) PROSet Monitoring Service) . (.Intel Corporation.) - C:\Windows\system32\IProsetMonitor.exe =>.Intel(R) Intel Network Drivers®
SR - Boot [07/12/2019] [ 172344] (ItSas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\ItSas35i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 108856] (LSI_SAS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 124216] (LSI_SAS2i) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas2i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 135992] (LSI_SAS3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\lsi_sas3i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 82744] (LSI_SSS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sss.sys =>.Microsoft®
SR - Auto [13/12/2020] [ 220160] MBAMChameleon (MBAMChameleon) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\MbamChameleon.sys =>.Malwarebytes Inc®
SR - Boot [11/12/2020] [ 19912] MbamElam (MbamElam) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\MbamElam.sys =>.Microsoft®
SR - Demand [13/12/2020] [ 197792] MBAMFarflt (MBAMFarflt) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\farflt.sys =>.Malwarebytes Inc®
SR - Demand [13/12/2020] [ 77496] MBAMProtection (MBAMProtection) . (.Malwarebytes.) - C:\WINDOWS\system32\DRIVERS\mbam.sys =>.Malwarebytes Inc®
SS - Demand [11/12/2020] [ 7456464] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - D:\Logiciels\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc®
SR - Boot [11/12/2020] [ 248968] MBAMSwissArmy (MBAMSwissArmy) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\mbamswissarmy.sys =>.Malwarebytes Inc®
SR - Demand [13/12/2020] [ 139424] MBAMWebProtection (MBAMWebProtection) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\mwac.sys =>.Malwarebytes Inc®
SR - Boot [07/12/2019] [ 59704] (megasas) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 81720] (megasas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\MegaSas2i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 105480] (megasas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas35i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 575800] (megasr) . (.LSI Corporation, Inc..) - C:\WINDOWS\System32\drivers\megasr.sys =>.Microsoft®
SR - Demand [06/05/2018] [ 228992] Intel(R) Management Engine Interfac (MEIx64) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys =>.Intel(R) Embedded Subsystems and IP Blocks Group®
SR - Demand [07/12/2019] [ 1131320] Mellanox ConnectX Bus E (mlx4_bus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\mlx4_bus.sys =>.Microsoft®
SS - Demand [10/12/2021] [ 223160] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SR - Boot [07/12/2019] [ 63800] (mvumis) . (.Marvell Semiconductor, Inc..) - C:\WINDOWS\System32\drivers\mvumis.sys =>.Microsoft®
SR - Demand [07/05/2015] [ 37832] Nal Service (NAL) . (.Intel Corporation.) - C:\WINDOWS\system32\Drivers\iqvw64e.sys =>.Intel(R) Intel Network Drivers®
SR - Demand [07/12/2019] [ 146232] NetworkDirect Service (ndfltr) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ndfltr.sys =>.Microsoft®
SR - Auto [02/01/2017] [ 36600] NetGroup Packet Filter Driver (npf) . (.Riverbed Technology, Inc..) - C:\Windows\system32\drivers\npf.sys =>.Riverbed Technology, Inc.®
SR - Boot [07/12/2019] [ 150328] (nvraid) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvraid.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 166200] (nvstor) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvstor.sys =>.Microsoft®
SS - Demand [15/01/2020] [ 2475312] Origin Client Service (Origin Client Service) . (.Electronic Arts.) - D:\Jeux\Origin\OriginClientService.exe =>.Electronic Arts, Inc.®
SR - Auto [15/01/2020] [ 3393848] Origin Web Helper Service (Origin Web Helper Service) . (.Electronic Arts.) - D:\Jeux\Origin\OriginWebHelperService.exe =>.Electronic Arts, Inc.®
SR - Boot [07/12/2019] [ 58680] (percsas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas2i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 68408] (percsas3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas3i.sys =>.Microsoft®
SR - Auto [22/07/2014] [ 66048] postgresql-8.4 - PostgreSQL Server 8.4 (postgresql-8.4) . (.PostgreSQL Global Development Group.) - c:\postgreSQL\bin\pg_ctl.exe [Unsigned] =>.PostgreSQL Global Development Group
SR - Demand [21/12/2016] [ 40240] Revoflt (Revoflt) . (.VS Revo Group.) - C:\WINDOWS\System32\DRIVERS\revoflt.sys =>.VS Revo Group®
SR - System [19/12/2017] [ 15976] RsProxy Driver (RsProxy) . (.Realtek Semiconductor Corp.) - C:\Windows\system32\drivers\RsProxy.sys =>.Realtek Semiconductor Corp®
SR - Auto [07/01/2016] [ 87880] serposcope (serposcope) . (.Apache Software Foundation.) - C:\Program Files (x86)\serposcope\bin\serposcope-service.exe {76BDA099930ACCDEF2E06E86AAC1BAFF}. =>.Apache Software Foundation
SR - Boot [07/12/2019] [ 44856] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\WINDOWS\System32\drivers\SiSRaid2.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 81720] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\WINDOWS\System32\drivers\sisraid4.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 209720] (SmartSAMD) . (.Microsemi Corportation.) - C:\WINDOWS\System32\drivers\SmartSAMD.sys =>.Microsoft®
SS - Demand [12/08/2021] [ 2793192] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe =>.Valve®
SR - Boot [07/12/2019] [ 31032] (stexstor) . (.Promise Technology, Inc..) - C:\WINDOWS\System32\drivers\stexstor.sys =>.Microsoft®
SR - Auto [02/09/2021] [13271336] TeamViewer (TeamViewer) . (.TeamViewer Germany GmbH.) - D:\Logiciels\TeamViewer\TeamViewer_Service.exe =>.TeamViewer Germany GmbH®
SS - Demand [13/07/2021] [ 7099632] Uncheater for BattleGrounds_GL (ucldr_battlegrounds_gl) . (.Wellbia.com Co., Ltd..) - C:\Program Files\Common Files\UNCHEATER\ucldr_battlegrounds_gl.exe {420B1AD8D94118DCF821B8CBD6E142F9}. =>.Wellbia.com Co., Ltd.
SR - Boot [07/12/2019] [ 166712] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\WINDOWS\System32\drivers\vsmraid.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 305464] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\WINDOWS\System32\drivers\vstxraid.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 36152] WinMad Service (WinMad) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winmad.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 73016] WinVerbs Service (WinVerbs) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winverbs.sys =>.Microsoft®
SR - Demand [19/01/2018] [ 48424] WsAudio_Device (WsAudio_Device) . (.Wondershare.) - C:\WINDOWS\System32\drivers\VirtualAudio.sys =>.Wondershare Technology Co.,Ltd®
SR - Demand [18/07/2021] [ 2729456] xhunter1 (xhunter1) . (.Wellbia.com Co., Ltd..) - C:\Windows\xhunter1.sys {0C067D0F436427B359B7A6BABD673873}. =>.Wellbia.com Co., Ltd.
SS - Demand [17/07/2021] [ 7591624] Zakynthos Service (zksvc) . (.PUBG Corporation.) - C:\Program Files\Common Files\PUBG\zksvc.exe {06DBE19411438F282930348586B67EE7}.

---\\ TÂCHES PLANIFIÉES EN AUTOMATIQUE (Registre) (20) - 6s
O38 - TASK: {031A3F6A-D7D1-441B-8120-796CEB48B157} [64Bits][\AMDLinkUpdate] - (.Advanced Micro Devices, Inc. - AMD Install Manager.) -- C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1146360] =>.Advanced Micro Devices, Inc.
O38 - TASK: {1AA2711E-0B48-41CA-8B14-8D477DBE744B} [64Bits][\GoogleUpdateTaskMachineUA] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc.
O38 - TASK: {5CC25D6B-71CA-4272-8ED3-E94F8380B8AD} [64Bits][\ROCCAT DEVICE SERVICE] - (.DESKTOP-RUT1CQG\Mr_GT - .) -- D:/Logiciels/Roccat Suora/ROCCAT Swarm/ROCCAT_dev_service.exe [0]
O38 - TASK: {5D535425-910D-44FC-9755-81E264A0C8EF} [64Bits][\Adobe Acrobat Update Task] - (.Adobe Inc. - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424] =>.Adobe Inc.
O38 - TASK: {5F763BBC-09C4-43E9-8A58-05525C7F36D2} [64Bits][\AMDInstallLauncher] - (.Advanced Micro Devices, Inc. - AMD Install Manager.) -- C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1146360] =>.Advanced Micro Devices, Inc.
O38 - TASK: {DEF061BF-3D64-407D-92F3-8F22944D212B} [64Bits][\StartDVR] - (.Advanced Micro Devices, Inc. - Radeon Settings: Command Line Interface.) -- C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [260600] =>.Advanced Micro Devices, Inc.
O38 - TASK: {E585B6C1-26C6-4F07-A090-0EE609D130E7} [64Bits][\StartCN] - (.Advanced Micro Devices, Inc. - AMD Software: Adrenalin Edition Command Lin.) -- C:\Program Files\AMD\CNext\CNext\cncmd.exe [55288] =>.Advanced Micro Devices, Inc.
O38 - TASK: {F74D7C7D-DAB6-42A7-85B6-E8A163C53793} [64Bits][\GoogleUpdateTaskMachineCore] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc.
O38 - TASK: {F9314AF5-B413-46C2-8654-11BC5B65B257} [64Bits][\Mozilla\Firefox Background Update E7CF176E110C211B] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [529848] =>.Mozilla Corporation
O38 - TASK: {FADAA20D-ED35-4138-AEB7-00FF07E5DC65} [64Bits][\Mozilla\Firefox Default Browser Agent E7CF176E110C211B] - (.Mozilla Foundation - Firefox Default Browser Agent.) -- C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [651704] =>.Mozilla Foundation
C:\WINDOWS\System32\Tasks\AMDLinkUpdate - (.Advanced Micro Devices, Inc..) -- C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [-AMDLinkUpdate] =>.Advanced Micro Devices, Inc.
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/ua ./ua] =>.Google Inc.
C:\WINDOWS\System32\Tasks\ROCCAT DEVICE SERVICE - (.DESKTOP-RUT1CQG\Mr_GT.) -- D:/Logiciels/Roccat Suora/ROCCAT Swarm/ROCCAT_dev_service.exe []
C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task - (.Adobe Inc..) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [] =>.Adobe Inc.
C:\WINDOWS\System32\Tasks\AMDInstallLauncher - (.Advanced Micro Devices, Inc..) -- C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [/InstallAUEP] =>.Advanced Micro Devices, Inc.
C:\WINDOWS\System32\Tasks\StartDVR - (.Advanced Micro Devices, Inc..) -- C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [] =>.Advanced Micro Devices, Inc.
C:\WINDOWS\System32\Tasks\StartCN - (.Advanced Micro Devices, Inc..) -- C:\Program Files\AMD\CNext\CNext\cncmd.exe [startwithdelay] =>.Advanced Micro Devices, Inc.
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/c] =>.Google Inc.
C:\WINDOWS\System32\Tasks\Mozilla\Firefox Background Update E7CF176E110C211B - (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla] =>.Mozilla Corporation
C:\WINDOWS\System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B - (.Mozilla Foundation.) -- C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [do-task "E7CF176E110C211B.do-task] =>.Mozilla Foundation

---\\ APPLICATIONS LANCÉES AU DÉMARRAGE DU SYSTÈME (18) - 2s
O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Security notification icon.) -- C:\WINDOWS\system32\SecurityHealthSystray.exe [Unsigned] =>.Microsoft Corporation
O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Mr_GT\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - HKCU\..\Run: [Discord] . (. - .) -- Discord.exe
O4 - HKCU\..\Run: [HoldemManager.Server] . (...) -- C:\Users\Mr_GT\AppData\Roaming\Max Value Software\Holdem Manager\3.0\HoldemManager.Server.lnk [Unsigned]
O4 - HKCU\..\Run: [Skype for Desktop] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe =>.Skype Software Sarl®
O4 - HKCU\..\Run: [Battle.net] . (.Blizzard Entertainment - Blizzard Battle.net App.) -- D:\Jeux\Battle.net\Battle.net.exe =>.Blizzard Entertainment, Inc.®
O4 - HKCU\..\Run: [EADM] . (.Electronic Arts - Origin.) -- D:\Jeux\Origin\Origin.exe =>.Electronic Arts, Inc.®
O4 - HKCU\..\Run: [Adobe Reader Synchronizer] . (.Adobe Systems Incorporated - Adobe Collaboration Synchronizer 22.1.) -- C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe =>.Adobe Inc.®
O4 - HKCU\..\Run: [com.squirrel.Teams.Teams] . (. - .) -- Teams.exe
O4 - HKLM\..\Wow6432Node\Run: [Aimersoft Helper Compact.exe] . (.AimerSoft - AimerSoft Studio.) -- C:\Program Files (x86)\Common Files\Aimersoft\Aimersoft Helper Compact\ASHelper.exe =>.Shenzhen Jia Xing Investment Co., Ltd.®
O4 - HKUS\S-1-5-21-3351771493-749409139-3151566472-1001\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Mr_GT\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - HKUS\S-1-5-21-3351771493-749409139-3151566472-1001\..\Run: [Discord] . (. - .) -- Discord.exe
O4 - HKUS\S-1-5-21-3351771493-749409139-3151566472-1001\..\Run: [HoldemManager.Server] . (...) -- C:\Users\Mr_GT\AppData\Roaming\Max Value Software\Holdem Manager\3.0\HoldemManager.Server.lnk [Unsigned]
O4 - HKUS\S-1-5-21-3351771493-749409139-3151566472-1001\..\Run: [Skype for Desktop] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe =>.Skype Software Sarl®
O4 - HKUS\S-1-5-21-3351771493-749409139-3151566472-1001\..\Run: [Battle.net] . (.Blizzard Entertainment - Blizzard Battle.net App.) -- D:\Jeux\Battle.net\Battle.net.exe =>.Blizzard Entertainment, Inc.®
O4 - HKUS\S-1-5-21-3351771493-749409139-3151566472-1001\..\Run: [EADM] . (.Electronic Arts - Origin.) -- D:\Jeux\Origin\Origin.exe =>.Electronic Arts, Inc.®
O4 - HKUS\S-1-5-21-3351771493-749409139-3151566472-1001\..\Run: [Adobe Reader Synchronizer] . (.Adobe Systems Incorporated - Adobe Collaboration Synchronizer 22.1.) -- C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe =>.Adobe Inc.®
O4 - HKUS\S-1-5-21-3351771493-749409139-3151566472-1001\..\Run: [com.squirrel.Teams.Teams] . (. - .) -- Teams.exe

---\\ PROCESSUS LANCÉS (40) - 10s
[MD5.42EF3EBF9F07AAA8B049AD67D7108047] - (.Advanced Micro Devices, Inc. - AMD Crash Defender Service.) -- C:\Windows\System32\amdfendrsr.exe [591792] [PID.2584] [Unsigned] =>.Advanced Micro Devices, Inc.
[MD5.F63B0BA268EBED1AA9C8850E99FC1B9C] - (.AMD - AMD External Events Service Module.) -- C:\Windows\System32\DriverStore\FileRepository\u0377495.inf_amd64_58cc395c0bf03a26\B377432\atiesrxx.exe [597424] [PID.2592] {535091E6CAB13AF393B51EAD0825F627}. =>.AMD
[MD5.BA6567A7568594873F9AB9400918B652] - (.AMD - AMD External Events Client Module.) -- C:\Windows\System32\DriverStore\FileRepository\u0377495.inf_amd64_58cc395c0bf03a26\B377432\atieclxx.exe [892336] [PID.2908] {535091E6CAB13AF393B51EAD0825F627}. =>.AMD
[MD5.E536856E96A7605EBF580D62A868E5FE] - (...) -- C:\Windows\SysWOW64\ASGT.exe [55296] [PID.4448] [Unsigned]
[MD5.0677F5ECD4F801403C428BBAE1286379] - (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2257016] [PID.4472] =>.Adobe Systems Incorporated®
[MD5.437A1C97D7A8A11006C4458408DE4A9E] - (.Adobe Inc. - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728] [PID.4480] =>.Adobe Inc.®
[MD5.3A99F74AE21F2332F29A6F37FBFEA5B6] - (.HP Inc. - .) -- C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [218272] [PID.4524] =>.HP Inc.®
[MD5.9CEE2BBB060DC4B7062BE4461774A7A0] - (. - HuaweiHiSuiteService.) -- C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [190784] [PID.4560] [Unsigned] =>.Huawei Technologies Co.,Ltd
[MD5.F28C5A79A1698E9F1374569A1C0FB880] - (.Intel Corporation - Intel® PROSet Monitoring Service.) -- C:\Windows\system32\IProsetMonitor.exe [272352] [PID.4584] [Unsigned] =>.Intel Corporation
[MD5.276D5CE5DFDB64248C9240675CFCE3DE] - (.Apache Software Foundation - Commons Daemon Service Runner.) -- C:\Program Files (x86)\serposcope\bin\serposcope-service.exe [87880] [PID.4772] {76BDA099930ACCDEF2E06E86AAC1BAFF}. =>.Apache Software Foundation
[MD5.1E50488632D515F7F94A2EFD45450F3C] - (.Electronic Arts - OriginWebHelperService.) -- D:\Jeux\Origin\OriginWebHelperService.exe [3393848] [PID.5088] =>.Electronic Arts, Inc.®
[MD5.89D77AB2017B19E8B3E3156C7D08E334] - (.PostgreSQL Global Development Group - pg_ctl - starts/stops/restarts the PostgreS.) -- c:\postgreSQL\bin\pg_ctl.exe [66048] [PID.5128] [Unsigned] =>.PostgreSQL Global Development Group
[MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Intel(R) Corporation - NCS2Prov Module.) -- C:\Program Files\Intel\NCS2\WMIProv\ncs2prov.exe [177424] [PID.5168] =>.Intel(R) Intel Network Drivers®
[MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.TeamViewer Germany GmbH - TeamViewer.) -- D:\Logiciels\TeamViewer\TeamViewer_Service.exe [13271336] [PID.5424] =>.TeamViewer Germany GmbH®
[MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.PostgreSQL Global Development Group - PostgreSQL Server.) -- c:\postgreSQL\bin\postgres.exe [4562944] [PID.5576] [Unsigned] =>.PostgreSQL Global Development Group
[MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.PostgreSQL Global Development Group - PostgreSQL Server.) -- c:\postgreSQL\bin\postgres.exe [4562944] [PID.6004] [Unsigned] =>.PostgreSQL Global Development Group
[MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.PostgreSQL Global Development Group - PostgreSQL Server.) -- c:\postgreSQL\bin\postgres.exe [4562944] [PID.6012] [Unsigned] =>.PostgreSQL Global Development Group
[MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.PostgreSQL Global Development Group - PostgreSQL Server.) -- c:\postgreSQL\bin\postgres.exe [4562944] [PID.6020] [Unsigned] =>.PostgreSQL Global Development Group
[MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.PostgreSQL Global Development Group - PostgreSQL Server.) -- c:\postgreSQL\bin\postgres.exe [4562944] [PID.6028] [Unsigned] =>.PostgreSQL Global Development Group
[MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (...) -- C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe [793416] [PID.6480] =>.Microsoft®
[MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Google LLC - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler.exe [299592] [PID.8768] =>.Google LLC®
[MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Google LLC - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler64.exe [381512] [PID.8864] =>.Google LLC®
[MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Disc Soft Ltd - DAEMON Tools Shell Extensions Helper.) -- D:\Logiciels\DAEMON Tools Lite\DTShellHlp.exe [3845944] [PID.7396] =>.AVB Disc Soft, SIA®
[MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9274304] [PID.9244] =>.Realtek Semiconductor Corp.®
[MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Disc Soft Ltd - Disc Soft Bus Service Lite.) -- D:\Logiciels\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [5026104] [PID.9280] =>.AVB Disc Soft, SIA®
[MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Discord Inc. - Discord.) -- C:\Users\Mr_GT\AppData\Local\Discord\app-1.0.9004\Discord.exe [117989544] [PID.9384] =>.SUP.Discord
[MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Discord Inc. - Discord.) -- C:\Users\Mr_GT\AppData\Local\Discord\app-1.0.9004\Discord.exe [117989544] [PID.9716] =>.SUP.Discord
[MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Discord Inc. - Discord.) -- C:\Users\Mr_GT\AppData\Local\Discord\app-1.0.9004\Discord.exe [117989544] [PID.9988] =>.SUP.Discord
[MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Discord Inc. - Discord.) -- C:\Users\Mr_GT\AppData\Local\Discord\app-1.0.9004\Discord.exe [117989544] [PID.9948] =>.SUP.Discord
[MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Discord Inc. - Discord.) -- C:\Users\Mr_GT\AppData\Local\Discord\app-1.0.9004\Discord.exe [117989544] [PID.10080] =>.SUP.Discord
[MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Nicolas Coolman - ZHPSuite.) -- C:\Users\Mr_GT\Desktop\ZHPSuite.exe [3482312] [PID.10264] [Unsigned] =>.Nicolas Coolman
[MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Adobe Systems Incorporated - Adobe Collaboration Synchronizer 22.1.) -- C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe [5411552] [PID.10448] =>.Adobe Inc.®
[MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Adobe Systems Incorporated - Adobe Collaboration Synchronizer 22.1.) -- C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe [5411552] [PID.10484] =>.Adobe Inc.®
[MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Advanced Micro Devices, Inc. - AMD Software: Host Application.) -- C:\Program Files\AMD\CNext\CNext\Radeonsoftware.exe [28998136] [PID.10604] {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices, Inc.
[MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote Clipper.) -- D:\Logiciels\Evernote\EvernoteClipper.exe [914400] [PID.11404] =>.Evernote Corporation®
[MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.AimerSoft - AimerSoft Studio.) -- C:\Program Files (x86)\Common Files\Aimersoft\Aimersoft Helper Compact\ASHelper.exe [2138272] [PID.11444] =>.Shenzhen Jia Xing Investment Co., Ltd.®
[MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Advanced Micro Devices, Inc. - AMD Software: Adrenalin Edition Command Lin.) -- C:\Program Files\AMD\CNext\CNext\cncmd.exe [55288] [PID.11972] {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices, Inc.
[MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Advanced Micro Devices, Inc. - Radeon Settings: Host Service.) -- C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe [2602488] [PID.12124] {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices, Inc.
[MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Advanced Micro Devices, Inc. - Radeon Settings: Desktop Overlay.) -- C:\Program Files\AMD\CNext\CNext\amdow.exe [52216] [PID.10796] {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices, Inc.
[MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (...) -- C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe [5013504] [PID.9928] [Unsigned] =>.Microsoft Corporation

---\\ CHROME, Démarrage, Recherche, Extensions (38) - 1s
G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [bhlhnicpbhignbdhedgjhgdocnmhomnp] ColorZilla =>.Alex Sirota
G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [ecgllillhilocegdanfdmbfnjonmhpie]
G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [fdgfkebogiimcoedlicjlajpkdmockpc] Facebook Pixel Helper =>.Facebook
G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [gighmmpiobklfepjocnamgkkbiglidom] Toggle Pause/Resume on all sites =>.Legitimate
G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [giihipjfimkajhlcilipnjeohabimjhi]
G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [hbapdpeemoojbophdfndmlgdhppljgmp] Keywords Everywhere - Keyword Tool
G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [hmpbiickdfmcdlcpjegamgnjjkaiackl]
G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [jabopobgcpjmedljpbcaablpmlmfcogm] WhatFont =>.chengyinliu.com
G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [jkcacbjiofjgbnaknoojjboeiinempoa]
G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [mpajidobdpdigheplhpfggmeldjcpgfh] Ali Hunter
G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [nbhfcmbdimdbbclfngkjfmgmjhnkjocl] AliSave
G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [ndnaehgpjlnokgebbaldlmgkapkpjkkb]
G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [neebplgakaahbhdphmkckjjcegoiijjo] Keepa automatically loads on Amazon product pages. =>.Keepa
G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [nkokmeaibnajheohncaamjggkanfbphi] Save Image As PNG =>.Rob W
G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet}
G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [oldceeleldhonbafppcapldpdifcinji] LanguageTool =>.Legitimate
G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [pnngehidikgomgfjbpffonkeimgbpjlh] Word Count
G2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [ecgllillhilocegdanfdmbfnjonmhpie]
G2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [fdgfkebogiimcoedlicjlajpkdmockpc]
G2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
G2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [gighmmpiobklfepjocnamgkkbiglidom] =>.Wladimir Palant {AdBlock}
G2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [giihipjfimkajhlcilipnjeohabimjhi]
G2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [gmbgaklkmjakoegficnlkhebmhkjfich] =>.Google Calendar
G2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [hbapdpeemoojbophdfndmlgdhppljgmp]
G2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [hmpbiickdfmcdlcpjegamgnjjkaiackl]
G2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [mpajidobdpdigheplhpfggmeldjcpgfh]
G2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [nbhfcmbdimdbbclfngkjfmgmjhnkjocl]
G2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [ndnaehgpjlnokgebbaldlmgkapkpjkkb]
G2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [neebplgakaahbhdphmkckjjcegoiijjo] =>.Keepa
G2 - GCE: Preference [Mr_GT][User Data\Default\Managed Extension Settings] [gighmmpiobklfepjocnamgkkbiglidom] =>.Wladimir Palant {AdBlock}
G2 - GCE: Preference [Mr_GT][User Data\Default\Managed Extension Settings] [oldceeleldhonbafppcapldpdifcinji]
G2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [emliamioobfffbgcfdchabfibonehkme]
G2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [fdgfkebogiimcoedlicjlajpkdmockpc]
G2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [hbapdpeemoojbophdfndmlgdhppljgmp]
G2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [mpajidobdpdigheplhpfggmeldjcpgfh]
G2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [nbhfcmbdimdbbclfngkjfmgmjhnkjocl]
G2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [ndnaehgpjlnokgebbaldlmgkapkpjkkb]
G2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [oldceeleldhonbafppcapldpdifcinji]

---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (24) - 1s
M0 - MFSP: prefs.js [Mr_GT - y355bifu.default] http://www.malwarebytes.org/ =>.Malwarebytes
P2 - EXT FILE: (...) -- C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\extensions\{019f5290-6afb-4863-bc31-87cc0b6adb25}.xpi [Unsigned]
P2 - EXT FILE: (.Download Video.) -- C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\extensions\{bee6eb20-01e0-ebd1-da83-080329fb9a3a}.xpi [Unsigned] =>.Download Video
P2 - EXT FILE: (...) -- C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\extensions\{dbac9680-d559-4cd4-9765-059879e8c467}.xpi [Unsigned] =>Toolbar.Graal
P2 - EXT FILE: (.AliSave.) -- C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\extensions\{ddf5273a-f9df-4415-9dd9-034ce0b59098}.xpi [Unsigned]
C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\bookmarkbackups =>Mozilla Corporation
C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\browser-extension-data =>Mozilla Corporation
C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\crashes =>Mozilla Corporation
C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\datareporting =>Mozilla Corporation
C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\extensions =>Mozilla Corporation
C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\features =>Mozilla Corporation
C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\gmp =>Mozilla Corporation
C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\gmp-gmpopenh264 =>Mozilla Corporation
C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\gmp-widevinecdm =>Mozilla Corporation
C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\minidumps =>Mozilla Corporation
C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\saved-telemetry-pings =>Mozilla Corporation
C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\searchplugins =>Mozilla Corporation
C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\security_state =>Mozilla Corporation
C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\sessionstore-backups =>Mozilla Corporation
C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\shader-cache =>Mozilla Corporation
C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\storage =>Mozilla Corporation
C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\weave =>Mozilla Corporation
C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\browser-extension-data\doh-rollout@mozilla.org =>Mozilla Corporation
C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\browser-extension-data\{bee6eb20-01e0-ebd1-da83-080329fb9a3a} =>Download Flash and Video

---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (11) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.19041.1586 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation

---\\ INTERNET EXPLORER, Site de confiance et site sensible (2) - 0s
~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad)
~ Microsoft Internet Explorer Restricted Site(s) EscDomains: 0(Good) / 0(Bad)

---\\ MICROSOFT EDGE, Plugin,Favoris,Démarrage,Recherche,Extension (77) - 2s
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [aadbahhifnekkkcbapdfandpimaoacmj]
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [abidfmpblafnglcjachhodnellaopilc]
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [bfiijneafemhklkccnjijmcniffmiode] Google SERP counter
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [bglkkgmmlpelbdokjlgbpfkkoplajoop]
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [bhlhnicpbhignbdhedgjhgdocnmhomnp] ColorZilla =>.Alex Sirota
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [bibdombdcdbbnfdjkaajfgnfhlapibde] Shoptimate =>.shoptimate.com
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [chlffgpmiacpedhhbkiomidkjlcfhogd] Pushbullet =>.Pushbullet
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [cknebhggccemgcnbidipinkifmmegdel] No Rank Data =>.Alexa
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [cnpniohnfphhjihaiiggeabnkjhpaldj] Image Downloader =>.Vlad Sabev
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [dinddanocgoljhkgnmmefjgiohilbcac] AliSave
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [dkkdbpgldnmkhcliffjpajcfdjkcaddf] Windscribe =>.Windscribe
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [eenflijjbchafephdplkdmeenekabdfb]
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [ejefaeioamebhekmfaclajddbpnnobje] Keepa automatically loads on Amazon product pages.
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [fdgfkebogiimcoedlicjlajpkdmockpc] Facebook Pixel Helper =>.Facebook
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [fefodpegbocmidnfphgggnjcicipaibk] nevzilya
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [fpjegfbcdijjfkceenlfoehpcakfgldj] Word Counter Plus
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [giihipjfimkajhlcilipnjeohabimjhi]
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [gppongmhjkpfnbhagpmjfkannfbllamg] Wappalyzer =>.wappalyzer.com
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [hbapdpeemoojbophdfndmlgdhppljgmp] Keywords Everywhere - Keyword Tool
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [hfjadhjooeceemgojogkhlppanjkbobc] LanguageTool =>.Legitimate
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [hgfjoaookbahbhinopgfoiajfijfcdhm] iGraal =>Toolbar.Graal
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [hnmpcagpplmpfojmgmnngilcnanddlhb] Windscribe =>.Windscribe
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [jabopobgcpjmedljpbcaablpmlmfcogm] WhatFont =>.chengyinliu.com
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [jkcacbjiofjgbnaknoojjboeiinempoa]
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [joghfdanngcpobcbmdapcemgbjphihag]
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [kefmekfmfacbdefimlancoccpocmgmpb] Commerce Inspector
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [kmhkepipobnjllejbafajoemahjejdcm] iGraal =>Toolbar.Graal
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [koldhcllpbdfcdpfpbldbicbgddglodk] Alt Text Tester
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [lfpjkncokllnfokkgpkobnkbkmelfefj] Linkclump
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [lkcandoekjlnkipbdffedlobpoldojli]
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [llhcnbijpnechllogkacbcjmkcgjbjfi] Evernote =>.EverNote Corporation
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [lpcaedmchfhocbbapmcbpinfpgnhiddi] Google Keep Chrome Extension =>.Google Inc.
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [mmanaflgaempokjfbeeabkadnkoidjam] DSers - AliExpress.com Product Importer
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [mpajidobdpdigheplhpfggmeldjcpgfh] Ali Hunter
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [nbhfcmbdimdbbclfngkjfmgmjhnkjocl] AliSave
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [ndcileolkflehcjpmjnfbnaibdcgglog] Toggle Pause/Resume on all sites =>.Legitimate
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [ndnaehgpjlnokgebbaldlmgkapkpjkkb]
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [nkokmeaibnajheohncaamjggkanfbphi] Save Image As PNG =>.Rob W
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [nmpgaoofmjlimabncmnmnopjabbflegf]
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [oldceeleldhonbafppcapldpdifcinji] LanguageTool =>.Legitimate
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [onhiacboedfinnofagfgoaanfedhmfab] Reverso Context =>.Reverso.net
E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [pnngehidikgomgfjbpffonkeimgbpjlh] Word Count
E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [aadbahhifnekkkcbapdfandpimaoacmj]
E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [abidfmpblafnglcjachhodnellaopilc]
E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [bibdombdcdbbnfdjkaajfgnfhlapibde]
E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [dinddanocgoljhkgnmmefjgiohilbcac]
E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [dkkdbpgldnmkhcliffjpajcfdjkcaddf]
E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [eenflijjbchafephdplkdmeenekabdfb]
E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [ejefaeioamebhekmfaclajddbpnnobje]
E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [giihipjfimkajhlcilipnjeohabimjhi]
E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [gmbgaklkmjakoegficnlkhebmhkjfich] =>.Google Calendar
E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [gppongmhjkpfnbhagpmjfkannfbllamg]
E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [hbapdpeemoojbophdfndmlgdhppljgmp]
E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [hgfjoaookbahbhinopgfoiajfijfcdhm]
E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [hnmpcagpplmpfojmgmnngilcnanddlhb]
E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [jdiccldimpdaibmpdkjnbmckianbfold] =>.Microsoft Corporation
E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [kefmekfmfacbdefimlancoccpocmgmpb]
E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [kmhkepipobnjllejbafajoemahjejdcm] =>Toolbar.Graal
E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [lpcaedmchfhocbbapmcbpinfpgnhiddi]
E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [mmanaflgaempokjfbeeabkadnkoidjam]
E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [mpajidobdpdigheplhpfggmeldjcpgfh]
E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [nbhfcmbdimdbbclfngkjfmgmjhnkjocl]
E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [ndcileolkflehcjpmjnfbnaibdcgglog] =>.Legitimate
E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [ndnaehgpjlnokgebbaldlmgkapkpjkkb]
E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [onbhkdnjgomhlomaoijdmkkoakapbchb]
E2 - GCE: Preference [Mr_GT][User Data\Default\Managed Extension Settings] [dkkdbpgldnmkhcliffjpajcfdjkcaddf]
E2 - GCE: Preference [Mr_GT][User Data\Default\Managed Extension Settings] [hfjadhjooeceemgojogkhlppanjkbobc]
E2 - GCE: Preference [Mr_GT][User Data\Default\Managed Extension Settings] [ndcileolkflehcjpmjnfbnaibdcgglog] =>.Legitimate
E2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [dinddanocgoljhkgnmmefjgiohilbcac]
E2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [fdgfkebogiimcoedlicjlajpkdmockpc]
E2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [hbapdpeemoojbophdfndmlgdhppljgmp]
E2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [hfjadhjooeceemgojogkhlppanjkbobc]
E2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [kefmekfmfacbdefimlancoccpocmgmpb]
E2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [mpajidobdpdigheplhpfggmeldjcpgfh]
E2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [nbhfcmbdimdbbclfngkjfmgmjhnkjocl]
E2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [ndnaehgpjlnokgebbaldlmgkapkpjkkb]
E2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [oldceeleldhonbafppcapldpdifcinji]

---\\ INTERNET EXPLORER,Proxy Management (3) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft

---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=

---\\ ÉTUDE DU FICHIER HOSTS (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (22)

---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (5) - 0s
O2 - BHO: IEToEdge BHO [64Bits] - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} . (.Microsoft Corporation - IEToEdge BHO.) -- C:\Program Files (x86)\Microsoft\Edge\Application\100.0.1185.36\BHO\ie_to_edge_bho_64.dll =>.Microsoft®
O2 - BHO: Skype for Business Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files\Microsoft Office\Office16\OCHelper.dll =>.Microsoft®
O2 - BHO: Adobe Acrobat Create PDF Helper [64Bits] - {AE7CD045-E861-484f-8273-0445EE161910} . (.Adobe Systems Incorporated - Adobe PDF Toolbar for Internet Explorer.) -- C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll =>.Adobe Systems, Incorporated®
O2 - BHO: Microsoft OneDrive for Business Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL =>.Microsoft®
O2 - BHO: SmartSelect [64Bits] - {F4971EE7-DAA0-4053-9964-665D8EE6A077} . (.Adobe Systems Incorporated - Adobe PDF Toolbar for Internet Explorer.) -- C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll =>.Adobe Systems, Incorporated®

---\\ RACCOURCIS GLOBAL STARTUP (122) - 22s
O4 - GS\Desktop [Mr_GT]: A-Trot'Secure dropshipping - Raccourci.lnk . (...) D:\A-Trot'Secure dropshipping [Unsigned]
O4 - GS\Desktop [Mr_GT]: Adobe Photoshop CC 2019.lnk . (.Adobe Systems Incorporated - Adobe Photoshop CC 2019.) D:\Logiciels\Photosphop\Adobe Photoshop CC 2019\Photoshop.exe [Unsigned] =>.Adobe Systems Incorporated
O4 - GS\Desktop [Mr_GT]: Discord.lnk . (.GitHub - Update.) C:\Users\Mr_GT\AppData\Local\Discord\Update.exe --processStart Discord.exe =>.SUP.Discord
O4 - GS\Desktop [Mr_GT]: Download - Raccourci.lnk . (...) D:\Download [Unsigned]
O4 - GS\Desktop [Mr_GT]: Firefox - Copie.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Desktop [Mr_GT]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Desktop [Mr_GT]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - GS\Desktop [Mr_GT]: Movavi Video Converter 19 Premium.lnk . (.Movavi - Movavi Video Converter 19.3.0 Premium.) D:\Logiciels\movavi\Movavi Video Converter 19 Premium\converter.exe [Unsigned] =>.Movavi
O4 - GS\Desktop [Mr_GT]: MSI Afterburner.lnk . (.2009-2019 Alexey Nicolaychuk aka Unwinder, developed - MSIAfterburner.) D:\Logiciels\MSI Afterburner\MSIAfterburner.exe =>.MICRO-STAR INTERNATIONAL CO., LTD.®
O4 - GS\Desktop [Mr_GT]: MT2.lnk . (...) D:\Logiciels\MT2 Mechanical Keyboard\OemDrv.exe [Unsigned]
O4 - GS\Desktop [Mr_GT]: Photos Produits - Trot'Secure.lnk . (...) C:\Users\Mr_GT\Desktop\A-Trot'Secure dropshipping\Photos Produits [Unsigned]
O4 - GS\Desktop [Mr_GT]: Telegram.lnk . (.Telegram FZ-LLC - Telegram Desktop.) D:\Logiciels\Telegram Desktop\Telegram.exe =>.Telegram FZ-LLC®
O4 - GS\Desktop [Mr_GT]: Téléchargements - Raccourci.lnk . (...) C:\Users\Mr_GT\Downloads [Unsigned]
O4 - GS\Desktop [Mr_GT]: Téléchargements.lnk . (...) C:\Users\Mr_GT\Downloads [Unsigned]
O4 - GS\Desktop [Mr_GT]: vegas150.exe - Raccourci.lnk . (.MAGIX Computer Products Intl. Co. - VEGAS Pro.) D:\Logiciels\Sony Vegas 12\Sony Vegas Inst\vegas150.exe [Unsigned] =>.MAGIX Computer Products Intl. Co.
O4 - GS\Desktop [Mr_GT]: WhatsApp.lnk . (.WhatsApp - WhatsApp.) C:\Users\Mr_GT\AppData\Local\WhatsApp\WhatsApp.exe =>.WhatsApp, Inc®
O4 - GS\Desktop [Mr_GT]: Zoom.lnk . (.Zoom Video Communications, Inc. - Zoom Meetings.) C:\Users\Mr_GT\AppData\Roaming\Zoom\bin\Zoom.exe =>.Zoom Video Communications, Inc.®
O4 - GS\Quicklaunch [Mr_GT]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\Quicklaunch [Mr_GT]: Light Image Resizer 5.lnk . (.ObviousIdea SARL - Light Image Resizer.) D:\Logiciels\Light Image Resizer 5\Resize.exe [Unsigned] =>.ObviousIdea SARL
O4 - GS\Quicklaunch [Mr_GT]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - GS\Quicklaunch [Mr_GT]: Microsoft Outlook.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE /recycle =>.Microsoft®
O4 - GS\sendTo [Mr_GT]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Mr_GT]: Evernote.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote.) D:\Logiciels\Evernote\Evernote.exe =>.Evernote Corporation®
O4 - GS\sendTo [Mr_GT]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Mr_GT]: TeamViewer.lnk . (.TeamViewer Germany GmbH - TeamViewer.) D:\Logiciels\TeamViewer\TeamViewer.exe --sendto =>.TeamViewer Germany GmbH®
O4 - GS\sendTo [Mr_GT]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Mr_GT]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\TaskBar [Mr_GT]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --profile-directory=Default =>.Microsoft®
O4 - GS\Startup [Mr_GT]: EvernoteClipper.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote Clipper.) D:\Logiciels\Evernote\EvernoteClipper.exe =>.Evernote Corporation®
O4 - GS\Startup [Mr_GT]: serposcope-manager.lnk . (.Apache Software Foundation - Commons Daemon Service Manager.) C:\Program Files (x86)\serposcope\bin\serposcopew.exe //MS//serposcope {76BDA099930ACCDEF2E06E86AAC1BAFF}. =>.Apache Software Foundation
O4 - GS\Programs [Mr_GT]: Bitdefender Antivirus Free.lnk . (...) C:\Program Files (x86)\Bitdefender Antivirus Free\bdagent.exe [Unsigned]
O4 - GS\Programs [Mr_GT]: Microsoft Teams.lnk . (.Microsoft Corporation - Microsoft Teams.) C:\Users\Mr_GT\AppData\Local\Microsoft\Teams\Update.exe --processStart "Teams.exe" =>.Microsoft®
O4 - GS\Programs [Mr_GT]: Neon.lnk . (.Ethan Fast - Neon.) C:\Users\Mr_GT\AppData\Local\Programs\Neon\Neon.exe [Unsigned] =>.Ethan Fast
O4 - GS\Programs [Mr_GT]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Mr_GT\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - GS\Programs [Mr_GT]: uTorrent Web.lnk . (...) C:\Users\Mr_GT\AppData\Roaming\uTorrent Web\utweb.exe [Unsigned]
O4 - GS\Desktop [postgres]: A-Trot'Secure dropshipping - Raccourci.lnk . (...) D:\A-Trot'Secure dropshipping [Unsigned]
O4 - GS\Desktop [postgres]: Adobe Photoshop CC 2019.lnk . (.Adobe Systems Incorporated - Adobe Photoshop CC 2019.) D:\Logiciels\Photosphop\Adobe Photoshop CC 2019\Photoshop.exe [Unsigned] =>.Adobe Systems Incorporated
O4 - GS\Desktop [postgres]: Discord.lnk . (.GitHub - Update.) C:\Users\Mr_GT\AppData\Local\Discord\Update.exe --processStart Discord.exe =>.SUP.Discord
O4 - GS\Desktop [postgres]: Download - Raccourci.lnk . (...) D:\Download [Unsigned]
O4 - GS\Desktop [postgres]: Firefox - Copie.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Desktop [postgres]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Desktop [postgres]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - GS\Desktop [postgres]: Movavi Video Converter 19 Premium.lnk . (.Movavi - Movavi Video Converter 19.3.0 Premium.) D:\Logiciels\movavi\Movavi Video Converter 19 Premium\converter.exe [Unsigned] =>.Movavi
O4 - GS\Desktop [postgres]: MSI Afterburner.lnk . (.2009-2019 Alexey Nicolaychuk aka Unwinder, developed - MSIAfterburner.) D:\Logiciels\MSI Afterburner\MSIAfterburner.exe =>.MICRO-STAR INTERNATIONAL CO., LTD.®
O4 - GS\Desktop [postgres]: MT2.lnk . (...) D:\Logiciels\MT2 Mechanical Keyboard\OemDrv.exe [Unsigned]
O4 - GS\Desktop [postgres]: Photos Produits - Trot'Secure.lnk . (...) C:\Users\Mr_GT\Desktop\A-Trot'Secure dropshipping\Photos Produits [Unsigned]
O4 - GS\Desktop [postgres]: Telegram.lnk . (.Telegram FZ-LLC - Telegram Desktop.) D:\Logiciels\Telegram Desktop\Telegram.exe =>.Telegram FZ-LLC®
O4 - GS\Desktop [postgres]: Téléchargements - Raccourci.lnk . (...) C:\Users\Mr_GT\Downloads [Unsigned]
O4 - GS\Desktop [postgres]: Téléchargements.lnk . (...) C:\Users\Mr_GT\Downloads [Unsigned]
O4 - GS\Desktop [postgres]: vegas150.exe - Raccourci.lnk . (.MAGIX Computer Products Intl. Co. - VEGAS Pro.) D:\Logiciels\Sony Vegas 12\Sony Vegas Inst\vegas150.exe [Unsigned] =>.MAGIX Computer Products Intl. Co.
O4 - GS\Desktop [postgres]: WhatsApp.lnk . (.WhatsApp - WhatsApp.) C:\Users\Mr_GT\AppData\Local\WhatsApp\WhatsApp.exe =>.WhatsApp, Inc®
O4 - GS\Desktop [postgres]: Zoom.lnk . (.Zoom Video Communications, Inc. - Zoom Meetings.) C:\Users\Mr_GT\AppData\Roaming\Zoom\bin\Zoom.exe =>.Zoom Video Communications, Inc.®
O4 - GS\Quicklaunch [postgres]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\Quicklaunch [postgres]: Light Image Resizer 5.lnk . (.ObviousIdea SARL - Light Image Resizer.) D:\Logiciels\Light Image Resizer 5\Resize.exe [Unsigned] =>.ObviousIdea SARL
O4 - GS\Quicklaunch [postgres]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - GS\Quicklaunch [postgres]: Microsoft Outlook.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE /recycle =>.Microsoft®
O4 - GS\sendTo [postgres]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [postgres]: Evernote.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote.) D:\Logiciels\Evernote\Evernote.exe =>.Evernote Corporation®
O4 - GS\sendTo [postgres]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [postgres]: TeamViewer.lnk . (.TeamViewer Germany GmbH - TeamViewer.) D:\Logiciels\TeamViewer\TeamViewer.exe --sendto =>.TeamViewer Germany GmbH®
O4 - GS\sendTo [postgres]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [postgres]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\TaskBar [postgres]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --profile-directory=Default =>.Microsoft®
O4 - GS\Startup [postgres]: EvernoteClipper.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote Clipper.) D:\Logiciels\Evernote\EvernoteClipper.exe =>.Evernote Corporation®
O4 - GS\Startup [postgres]: serposcope-manager.lnk . (.Apache Software Foundation - Commons Daemon Service Manager.) C:\Program Files (x86)\serposcope\bin\serposcopew.exe //MS//serposcope {76BDA099930ACCDEF2E06E86AAC1BAFF}. =>.Apache Software Foundation
O4 - GS\Programs [postgres]: Bitdefender Antivirus Free.lnk . (...) C:\Program Files (x86)\Bitdefender Antivirus Free\bdagent.exe [Unsigned]
O4 - GS\Programs [postgres]: Microsoft Teams.lnk . (.Microsoft Corporation - Microsoft Teams.) C:\Users\Mr_GT\AppData\Local\Microsoft\Teams\Update.exe --processStart "Teams.exe" =>.Microsoft®
O4 - GS\Programs [postgres]: Neon.lnk . (.Ethan Fast - Neon.) C:\Users\Mr_GT\AppData\Local\Programs\Neon\Neon.exe [Unsigned] =>.Ethan Fast
O4 - GS\Programs [postgres]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Mr_GT\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - GS\Programs [postgres]: uTorrent Web.lnk . (...) C:\Users\Mr_GT\AppData\Roaming\uTorrent Web\utweb.exe [Unsigned]
O4 - GS\CommonDesktop [Public]: Acrobat Reader DC.lnk . (.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Inc.®
O4 - GS\CommonDesktop [Public]: Battle.net.lnk . (.Blizzard Entertainment - Blizzard Battle.net App Launcher.) D:\Jeux\Battle.net\Battle.net Launcher.exe =>.Blizzard Entertainment, Inc.®
O4 - GS\CommonDesktop [Public]: Battlefield™ V.lnk . (.EA Digital Illusions CE AB - Battlefield™ V.) D:\Jeux\Battlefield V\bfv.exe =>.Electronic Arts, Inc.®
O4 - GS\CommonDesktop [Public]: HP ENVY Photo 6200 series-HP Scan.lnk . (.HP Inc. - HPScan.) C:\Program Files (x86)\HP\HP ENVY Photo 6200 series\bin\HPScan.exe =>.HP Inc®
O4 - GS\CommonDesktop [Public]: HP ENVY Photo 6200 series.lnk . (.HP Inc. - .) C:\Program Files (x86)\HP\HP ENVY Photo 6200 series\Bin\HP ENVY Photo 6200 series.exe -Start UDCDevicePage [Unsigned] =>.HP Inc.
O4 - GS\CommonDesktop [Public]: Light Image Resizer 5.lnk . (.ObviousIdea SARL - Light Image Resizer.) D:\Logiciels\Light Image Resizer 5\Resize.exe [Unsigned] =>.ObviousIdea SARL
O4 - GS\CommonDesktop [Public]: Malwarebytes.lnk . (.Malwarebytes - Malwarebytes.) D:\Logiciels\Anti-Malware\mbam.exe =>.Malwarebytes Inc®
O4 - GS\CommonDesktop [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - GS\CommonDesktop [Public]: Notepad++.lnk . (.Don HO don.h@free.fr - Notepad++ : a free (GNU) source code editor.) D:\Logiciels\Notepad++\notepad++.exe =>.Notepad++®
O4 - GS\CommonDesktop [Public]: OBS Studio.lnk . (.OBS - OBS Studio.) D:\Logiciels\obs-studio\bin\64bit\obs64.exe {06D41A66692153FFBE5DEFE873ADFF6A}.
O4 - GS\CommonDesktop [Public]: Overwatch.lnk . (.Blizzard Entertainment - Overwatch Launcher.) D:\Jeux\Overwatch\Overwatch Launcher.exe --productcode=pro =>.Blizzard Entertainment, Inc.®
O4 - GS\CommonDesktop [Public]: Revo Uninstaller Pro.lnk . (.VS Revo Group - Revo Uninstaller Pro.) D:\Logiciels\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group Ltd.®
O4 - GS\CommonDesktop [Public]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe =>.Skype Software Sarl®
O4 - GS\CommonDesktop [Public]: Steam.lnk . (.Valve Corporation - Steam.) D:\Jeux\Steam\Steam.exe =>.Valve®
O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) D:\Logiciels\VLC\vlc.exe =>.VideoLAN®
O4 - GS\Programs [Public]: Bitdefender Antivirus Free.lnk . (...) C:\Program Files (x86)\Bitdefender Antivirus Free\bdagent.exe [Unsigned]
O4 - GS\Programs [Public]: Microsoft Teams.lnk . (.Microsoft Corporation - Microsoft Teams.) C:\Users\Mr_GT\AppData\Local\Microsoft\Teams\Update.exe --processStart "Teams.exe" =>.Microsoft®
O4 - GS\Programs [Public]: Neon.lnk . (.Ethan Fast - Neon.) C:\Users\Mr_GT\AppData\Local\Programs\Neon\Neon.exe [Unsigned] =>.Ethan Fast
O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Mr_GT\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - GS\Programs [Public]: uTorrent Web.lnk . (...) C:\Users\Mr_GT\AppData\Roaming\uTorrent Web\utweb.exe [Unsigned]
O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft®
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\WINDOWS\system32\xpsrchvw.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Access 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\accicons.exe =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: Acrobat Reader DC.lnk . (.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Inc.®
O4 - GS\ProgramsCommon [Public]: Adobe Acrobat DC.lnk . (.Flexera Software LLC - InstallShield.) C:\Windows\Installer\{AC76BA86-1033-FFFF-7760-0C0F074E4100}\_SC_Acrobat.ico [Unsigned] =>.Flexera Software LLC
O4 - GS\ProgramsCommon [Public]: Adobe Photoshop CC 2019.lnk . (.Adobe Systems Incorporated - Adobe Photoshop CC 2019.) D:\Logiciels\Photosphop\Adobe Photoshop CC 2019\Photoshop.exe [Unsigned] =>.Adobe Systems Incorporated
O4 - GS\ProgramsCommon [Public]: Audacity.lnk . (.The Audacity Team - Audacity®, the Free, Cross-Platform Sound E.) D:\Logiciels\Audacity\audacity.exe [Unsigned] =>.The Audacity Team
O4 - GS\ProgramsCommon [Public]: Excel 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\xlicons.exe =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Malwarebytes.lnk . (.Malwarebytes - Malwarebytes.) D:\Logiciels\Anti-Malware\mbam.exe =>.Malwarebytes Inc®
O4 - GS\ProgramsCommon [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: Notepad++.lnk . (.Don HO don.h@free.fr - Notepad++ : a free (GNU) source code editor.) D:\Logiciels\Notepad++\notepad++.exe =>.Notepad++®
O4 - GS\ProgramsCommon [Public]: OneNote 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\joticon.exe =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: Outlook 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\outicon.exe =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: PC Health Check.lnk . (...) C:\Program Files (x86)\PCHealthCheck\PCHealthCheck.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: PowerPoint 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\pptico.exe =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: Publisher 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\pubs.exe =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: TeamViewer.lnk . (.TeamViewer Germany GmbH - TeamViewer.) D:\Logiciels\TeamViewer\TeamViewer.exe =>.TeamViewer Germany GmbH®
O4 - GS\ProgramsCommon [Public]: Word 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft®

---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\..\{36c782bc-b08a-4b7d-81b2-0c7d35f22b2e}: DhcpNameServer = 89.2.0.1 89.2.0.2 =>.France Numéricable
O17 - HKLM\System\CCS\Services\Tcpip\..\{bef21b72-e2ba-4930-b4a6-b8268a089bf5}: DhcpNameServer = 192.168.42.129 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{36c782bc-b08a-4b7d-81b2-0c7d35f22b2e}: DhcpDomain = numericable.fr =>.numericable

---\\ PROTOCOLE ADDITIONNEL (23) - 1s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE16\MSOXMLMF.DLL =>.Microsoft®

---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s
O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation

---\\ CLÉ DE REGISTRE EXPLORER StartupApproved (28) - 1s
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDrive =>.Microsoft Corporation
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Monitoring =>.Piriform Ltd
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Discord =>.SUP.Discord
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Skype =>.Skype
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:HoldemManager.Server
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:vidnotifier.exe =>.Digital Wave
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Smart Cleaning =>.Piriform Ltd
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Steam =>.Valve
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Skype for Desktop =>.Skype Technologies
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Battle.net =>.Blizzard Entertainment
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:EADM =>.Electronic Arts, Inc.
[HKEY_USERS\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDrive =>.Microsoft Corporation
[HKEY_USERS\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Monitoring =>.Piriform Ltd
[HKEY_USERS\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Discord =>.SUP.Discord
[HKEY_USERS\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Skype =>.Skype
[HKEY_USERS\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:HoldemManager.Server
[HKEY_USERS\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:vidnotifier.exe =>.Digital Wave
[HKEY_USERS\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Smart Cleaning =>.Piriform Ltd
[HKEY_USERS\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Steam =>.Valve
[HKEY_USERS\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Skype for Desktop =>.Skype Technologies
[HKEY_USERS\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Battle.net =>.Blizzard Entertainment
[HKEY_USERS\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:EADM =>.Electronic Arts, Inc.
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SecurityHealth =>.Microsoft Corporation
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:RTHDVCPL =>.Realtek Semiconductor Corp.
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Logitech Download Assistant =>.Logitech Inc.
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:APSDaemon =>.Apple Inc.
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:HP Button Manager.lnk
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:ROCCAT Swarm Monitor.lnk

---\\ COMPOSANTS ACTIVESETUP INSTALLÉS (ASIC) (7) - 0s
O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft®
O40 - ASIC: Google Chrome [64Bits] - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google LLC - Google Chrome Installer.) -- C:\Program Files (x86)\Google\Chrome\Application\100.0.4896.75\Installer\chrmstp.exe =>.Google LLC®
O40 - ASIC: Microsoft Edge [64Bits] - {9459C573-B17A-45AE-9F64-1857B5D58CEE} . (.Microsoft Corporation - Microsoft Edge Installer.) -- C:\Program Files (x86)\Microsoft\Edge\Application\100.0.1185.36\Installer\setup.exe =>.Microsoft®

---\\ LOGICIELS INSTALLÉS (220) - 34s
=>.Microsoft
O42 - Logiciel: Adobe Acrobat DC - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-1033-FFFF-7760-0C0F074E4100} [Unsigned] =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} [Unsigned] =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Photoshop CC 2019 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- PHSP_20_0_4 =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824458876} [Unsigned] =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Aimersoft Helper Compact 2.5.2 - (.Aimersoft.) [HKLM][64Bits] -- {405147F7-FCC5-499B-A27E-EA6BD4A80435}_is1 [Unsigned] =>.Aimersoft
O42 - Logiciel: AMD DVR64 - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {3EEAC93B-6240-4CA2-B1D3-7487C79000B4} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: AMD Settings - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {44E86F9E-7348-482D-BB23-934717BA7357} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: AMD Software - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- AMD Catalyst Install Manager {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices, Inc.
O42 - Logiciel: AMD WVR64 - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {32F8E6C7-BF05-4F5D-B45D-4D04C58AF2F9} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: Asmedia USB Host Controller Driver - (.Asmedia Technology.) [HKLM][64Bits] -- {E4FB0B39-C991-4EE7-95DD-1A1A7857D33D} [Unsigned] =>.Asmedia Technology
O42 - Logiciel: Audacity 2.1.0 - (.Audacity Team.) [HKLM][64Bits] -- Audacity_is1 [Unsigned] =>.Audacity Team
O42 - Logiciel: Battle.net - (.Blizzard Entertainment.) [HKLM][64Bits] -- Battle.net =>.Blizzard Entertainment, Inc.®
O42 - Logiciel: Battlefield™ V - (.Electronic Arts.) [HKLM][64Bits] -- {e26b382f-e945-4f70-9318-121b683f1d61} =>.Electronic Arts, Inc.®
O42 - Logiciel: Branding64 - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {2AF42320-5ECF-4BCA-B756-8F3677262D55} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: Contrôle d’intégrité du PC Windows - (.Microsoft Corporation.) [HKLM][64Bits] -- {0150BDB3-AFFD-47A1-ADB8-DE06658EB3B2} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Counter-Strike: Global Offensive - (.Valve.) [HKLM][64Bits] -- Steam App 730 =>.Valve®
O42 - Logiciel: CPUID CPU-Z 1.94 - (.CPUID, Inc..) [HKLM][64Bits] -- CPUID CPU-Z_is1 [Unsigned] =>.CPUID, Inc.
O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite =>.AVB Disc Soft, SIA®
O42 - Logiciel: Definition Update for Microsoft Office 2016 (KB3115085) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{7EB01F8D-7721-43AF-8A71-EC89ED48ECCA} =>.Microsoft®
O42 - Logiciel: Discord - (.Discord Inc..) [HKCU][64Bits] -- Discord =>.SUP.Discord
O42 - Logiciel: Equalizer APO - (.Jonas Thedering.) [HKLM][64Bits] -- EqualizerAPO [Unsigned] =>.Jonas Thedering
O42 - Logiciel: Étude pour l'amélioration du produit HP ENVY Photo 6200 series - (.HP Inc..) [HKLM][64Bits] -- {A44E3541-DAF7-49F8-81B9-779BA388B1CE} [Unsigned] =>.HP Inc.
O42 - Logiciel: Evernote v. 6.24.2 - (.Evernote Corp..) [HKLM][64Bits] -- {A8B80634-6257-11EA-8C8E-005056951CAD} [Unsigned] =>.Evernote Corp.
O42 - Logiciel: FileZilla Client 3.52.2 - (.Tim Kosse.) [HKLM][64Bits] -- FileZilla Client [Unsigned] =>.Tim Kosse
O42 - Logiciel: GenArts Sapphire Plug-ins 6.10 for OFX - (..) [HKLM][64Bits] -- GenArts Sapphire Plug-ins for OFX_is1 [Unsigned]
O42 - Logiciel: Google Chrome - (.Google LLC.) [HKLM][64Bits] -- Google Chrome =>.Google LLC®
O42 - Logiciel: GoTo Opener - (.LogMeIn, Inc..) [HKLM][64Bits] -- {C0F33C38-345C-4C02-B161-11389350C2A5} [Unsigned] =>.LogMeIn, Inc.
O42 - Logiciel: Grand Theft Auto V - (.Rockstar Games.) [HKLM][64Bits] -- {E01FA564-2094-4833-8F2F-1FFEC6AFCC46} =>.Take-Two Interactive Software, Inc.®
O42 - Logiciel: Herramientas de corrección de Microsoft Office 2016: español - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-001F-0C0A-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: HiSuite - (.Huawei Technologies Co.,Ltd.) [HKLM][64Bits] -- Hi Suite [Unsigned] =>.Huawei Technologies Co.,Ltd
O42 - Logiciel: Holdem Manager 2 - (..) [HKLM][64Bits] -- HoldemManager2 [Unsigned]
O42 - Logiciel: Holdem Manager 3 - (.Max Value Software.) [HKLM][64Bits] -- {F1A0512A-1DDC-4C61-887E-20A9F26AA03A} [Unsigned] =>.Max Value Software
O42 - Logiciel: HP Dropbox Plugin - (.HP.) [HKLM][64Bits] -- {C722A9DD-471B-4F25-9E7E-7DD112D1BC35} [Unsigned] =>.HP
O42 - Logiciel: HP EmailSMTP Plugin - (.HP.) [HKLM][64Bits] -- {C3739212-3C21-4138-9607-C31F9EA8A514} [Unsigned] =>.HP
O42 - Logiciel: HP ENVY Photo 6200 series Aide - (.HP.) [HKLM][64Bits] -- {42AD9949-096B-4D00-ADA9-E5B82327E225} [Unsigned] =>.HP
O42 - Logiciel: HP FTP Plugin - (.HP.) [HKLM][64Bits] -- {FC93D1CC-102B-4B59-92DA-30E0DE232FF6} [Unsigned] =>.HP
O42 - Logiciel: HP Google Drive Plugin - (.HP.) [HKLM][64Bits] -- {06505D9F-A3AD-4DC0-8119-8836BAD1938E} [Unsigned] =>.HP
O42 - Logiciel: HP OneDrive Plugin - (.HP.) [HKLM][64Bits] -- {6ECCAD1A-2BD7-489C-8D43-68B69A2AA879} [Unsigned] =>.HP
O42 - Logiciel: HP Photo Creations - (.HP.) [HKLM][64Bits] -- HP Photo Creations =>.Visan Industries®
O42 - Logiciel: HP SharePoint Plugin - (.HP.) [HKLM][64Bits] -- {0758DCDE-50A2-4D6D-B025-FBB2BF342743} [Unsigned] =>.HP
O42 - Logiciel: HP Webcam HD 2300 Software - (.Hewlett-Packard.) [HKLM][64Bits] -- {74E6771A-47B5-433E-A96F-15E29F70F920} [Unsigned] =>.Hewlett-Packard
O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel Corporation.) [HKLM][64Bits] -- {8C91A5EB-2C62-4A6D-8802-CC79FD2ED390} [Unsigned] =>.Intel Corporation (Hidden)
O42 - Logiciel: Intel(R) Network Connections 20.2.4001.0 - (.Intel.) [HKLM][64Bits] -- {638A518B-0D2E-4143-ACF8-F3D83D822E85} [Unsigned] =>.Intel (Hidden)
O42 - Logiciel: Intel(R) Network Connections 20.2.4001.0 - (.Intel.) [HKLM][64Bits] -- PROSetDX [Unsigned] =>.Intel
O42 - Logiciel: Java 8 Update 251 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F32180251F0} [Unsigned] =>.Oracle Corporation
O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} [Unsigned] =>.Oracle Corporation (Hidden)
O42 - Logiciel: K-Lite Mega Codec Pack 15.0.9 - (.KLCP.) [HKLM][64Bits] -- KLiteCodecPack_is1 [Unsigned] =>.KLCP
O42 - Logiciel: Launcher Prerequisites (x64) - (.Epic Games, Inc..) [HKLM][64Bits] -- {c6c5a357-c7ca-4a5f-9789-3bb1af579253} =>.Epic Games Inc.® (Hidden)
O42 - Logiciel: Light Image Resizer 5.1.1.0 - (.ObviousIdea.) [HKLM][64Bits] -- {D5C093E0-D3DF-42D3-AFD6-CAAFB6985CBC}_is1 =>.ObviousIdea®
O42 - Logiciel: Logiciel de base du périphérique HP ENVY Photo 6200 series - (.HP Inc..) [HKLM][64Bits] -- {2F03A175-09AE-429E-8E16-8619390EA508} [Unsigned] =>.HP Inc.
O42 - Logiciel: Logiciel pour périphérique à chipset Intel® - (.Intel(R) Corporation.) [HKLM][64Bits] -- {60c073df-e736-4210-9c3a-5fc2b651cef3} =>.Intel Corporation - Software and Firmware Products® (Hidden)
O42 - Logiciel: Malwarebytes version 4.3.0.98 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Inc®
O42 - Logiciel: Microsoft Access MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0015-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft DCF MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0090-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Edge - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Edge =>.Microsoft®
O42 - Logiciel: Microsoft Edge Update - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Edge Update [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Excel MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0016-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Groove MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-00BA-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft HEVC Media Extension Installation for Microsoft.HEVCVideoExtensio - (.Microsoft Corporation.) [HKLM][64Bits] -- {B0169E83-757B-EF66-E2F0-391944D785BC} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft InfoPath MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0044-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office 64-bit Components 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-002A-0000-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Korrekturhilfen 2016 – Deutsch - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-001F-0407-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office OSM MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-00E1-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office OSM UX MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-00E2-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Professional Plus 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Professionnel Plus 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- Office16.PROPLUS =>.Microsoft®
O42 - Logiciel: Microsoft Office Proofing (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-002C-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proofing Tools 2016 - English - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-001F-0409-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proofing Tools 2016 - اللغة العربية - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-001F-0401-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Shared 64-bit MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-002A-040C-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Shared MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-006E-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft®
O42 - Logiciel: Microsoft OneNote MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-00A1-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Outlook MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-001A-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft PowerPoint MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0018-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Publisher MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0019-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Skype for Business MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-012B-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Teams - (.Microsoft Corporation.) [HKCU][64Bits] -- Teams =>.Microsoft®
O42 - Logiciel: Microsoft Update Health Tools - (.Microsoft Corporation.) [HKLM][64Bits] -- {7B1FCD52-8F6B-4F12-A143-361EA39F5E7C} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {7299052b-02a4-4627-81f2-1818da5d550d} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {837b34e3-7c30-493c-8f6a-2b0f04e2912c} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {071c9b48-7c32-4621-a0ac-3f809523288f} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 - (.Microsoft Corporation.) [HKLM][64Bits] -- {350AA351-21FA-3270-8B7A-835434E766AD} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 - (.Microsoft Corporation.) [HKLM][64Bits] -- {8220EEFE-38CD-377E-8595-13398D740ACE} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 - (.Microsoft Corporation.) [HKLM][64Bits] -- {FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D8E6291-B0D5-35EC-8441-6616F567A0F7} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {ca67548a-5ebe-413a-b50c-4b9ceb6d66c6} =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {33d1fd90-4274-48a1-9bc1-97e33d9c2d6f} =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {37B8F9C7-03FB-3253-8781-2517C99D7C00} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {B175520C-86A2-35A7-8619-86DC379688B9} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BD95A8CD-1D9F-35AD-981A-3E7925026EBB} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 - (.Microsoft Corporation.) [HKLM][64Bits] -- {050d4fc8-5d48-4b8f-8972-47c82c46020f} =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] -- {ef6b00ec-13e1-4c25-9064-b2f383cb8412} =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 - (.Microsoft Corporation.) [HKLM][64Bits] -- {f65db027-aff3-4070-886a-0d87064aabb1} =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] -- {61087a79-ac85-455c-934d-1fa22cc64f36} =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] -- {5740BD44-B58D-321A-AFC0-6D3D4556DD6C} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] -- {CB0836EC-B072-368D-82B2-D3470BF95707} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] -- {7DAD0258-515C-3DD4-8964-BD714199E0F7} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] -- {E30D8B21-D82D-3211-82CC-0F0A5D1495E8} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.28.29913 - (.Microsoft Corporation.) [HKLM][64Bits] -- {855e31d2-9031-46e1-b06d-c9d7777deefb} =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2017 Redistributable (x86) - 14.15.26706 - (.Microsoft Corporation.) [HKLM][64Bits] -- {7e9fae12-5bbf-47fb-b944-09c49e75c061} =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual C++ 2017 x86 Additional Runtime - 14.15.26706 - (.Microsoft Corporation.) [HKLM][64Bits] -- {2757496A-3E74-320A-B007-36120A9F126D} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2017 x86 Minimum Runtime - 14.15.26706 - (.Microsoft Corporation.) [HKLM][64Bits] -- {39E15475-23F2-345D-8977-B5DC47A94E26} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2019 X64 Additional Runtime - 14.28.29913 - (.Microsoft Corporation.) [HKLM][64Bits] -- {620A7633-7A09-42A8-8580-076A4483C4B0} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.28.29913 - (.Microsoft Corporation.) [HKLM][64Bits] -- {EECDD137-13DA-46ED-ADA0-BDF7F8BE65B8} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Word MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-001B-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Movavi Video Converter 19 Premium - (.Movavi.) [HKCU][64Bits] -- Movavi Video Converter 19 Premium =>.Movavi Software Limited®
O42 - Logiciel: Mozilla Firefox (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 95.0 (x86 fr) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService [Unsigned] =>.Mozilla
O42 - Logiciel: MSI Afterburner 4.6.0 - (.MSI Co., LTD.) [HKLM][64Bits] -- Afterburner [Unsigned] =>.MSI Co., LTD
O42 - Logiciel: MSVCRT Redists - (.MAGIX Computer Products Intl. Co..) [HKLM][64Bits] -- {E5637EB0-7FC4-11E7-B61D-95BE57594EAC} [Unsigned] =>.MAGIX Computer Products Intl. Co. (Hidden)
O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {24DB3A5E-0BC8-11E5-9A27-F04DA23A5C58} [Unsigned] =>.Sony Creative Software Inc. (Hidden)
O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {C2B8CBDE-5232-11E3-B494-F04DA23A5C58} [Unsigned] =>.Sony Creative Software Inc. (Hidden)
O42 - Logiciel: MT2 Mechanical Keyboard v1.6.6 - (..) [HKLM][64Bits] -- {24179D30-A470-49A2-AF40-3A317A8F8CF3}_is1 [Unsigned]
O42 - Logiciel: Neon 0.0.9 (only current user) - (.Ethan Fast.) [HKCU][64Bits] -- 211a501f-25dd-501b-8c98-509ac17aedfa [Unsigned] =>.Ethan Fast
O42 - Logiciel: Notepad++ (32-bit x86) - (.Notepad++ Team.) [HKLM][64Bits] -- Notepad++ [Unsigned] =>.Notepad++ Team
O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer [Unsigned] =>.NVIDIA Corporation (Hidden)
O42 - Logiciel: OBS Studio - (.OBS Project.) [HKLM][64Bits] -- OBS Studio [Unsigned] =>.OBS Project
O42 - Logiciel: OpenIV - (..black/OpenIV Team.) [HKCU][64Bits] -- OpenIV [Unsigned] =>..black/OpenIV Team
O42 - Logiciel: Origin - (.Electronic Arts, Inc..) [HKLM][64Bits] -- Origin =>.Electronic Arts, Inc.®
O42 - Logiciel: Outils de vérification linguistique 2016 de Microsoft Office - Français - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-001F-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Overwatch - (.Blizzard Entertainment.) [HKLM][64Bits] -- Overwatch =>.Blizzard Entertainment, Inc.®
O42 - Logiciel: PLAYERUNKNOWN'S BATTLEGROUNDS - (.KRAFTON, Inc..) [HKLM][64Bits] -- Steam App 578080 =>.Valve®
O42 - Logiciel: PokerStrategy.com Equilab - (.PokerStrategy.com.) [HKLM][64Bits] -- {86D09F48-CDAB-4B4C-8806-F6C16F17935A} [Unsigned] =>.PokerStrategy.com
O42 - Logiciel: PostgreSQL 8.4 - (.PostgreSQL Global Development Group.) [HKLM][64Bits] -- PostgreSQL 8.4 [Unsigned] =>.PostgreSQL Global Development Group
O42 - Logiciel: PUBG: Test Server - (..) [HKLM][64Bits] -- Steam App 622590 =>.Valve®
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp.®
O42 - Logiciel: Revo Uninstaller Pro 4.0.5 - (.VS Revo Group, Ltd..) [HKLM][64Bits] -- {67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1 [Unsigned] =>.VS Revo Group, Ltd.
O42 - Logiciel: Rockstar Games Social Club - (.Rockstar Games.) [HKLM][64Bits] -- Rockstar Games Social Club =>.Rockstar Games, Inc.®
O42 - Logiciel: Security Update for Microsoft Office 2016 (KB2920727) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{ADA643B8-91E7-42FD-8339-3FDC73A3ABE4} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2016 (KB3085538) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{57F91827-505E-4313-A3DF-EE6BD0B41A26} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2016 (KB3085538) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-002A-0000-1000-0000000FF1CE}_Office16.PROPLUS_{57F91827-505E-4313-A3DF-EE6BD0B41A26} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2016 (KB3085635) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-006E-040C-0000-0000000FF1CE}_Office16.PROPLUS_{CCBDE2CC-9498-4937-A88B-46FD248719C9} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2016 (KB3114690) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{0431DE35-1781-4633-B69D-D547BB412C65} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2016 (KB3115103) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{58F3561B-C8E6-44A7-8303-E6F0250FDF20} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Office 2016 (KB3115103) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-002A-0000-1000-0000000FF1CE}_Office16.PROPLUS_{58F3561B-C8E6-44A7-8303-E6F0250FDF20} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Publisher 2016 (KB2920680) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{5182F11C-8D2E-4E2C-B36A-5B4AC5AE723C} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Publisher 2016 (KB2920680) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0019-040C-0000-0000000FF1CE}_Office16.PROPLUS_{5182F11C-8D2E-4E2C-B36A-5B4AC5AE723C} =>.Microsoft®
O42 - Logiciel: Security Update for Microsoft Word 2016 (KB3115094) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{7879768A-94DC-44C4-BD24-F2296C903A82} =>.Microsoft®
O42 - Logiciel: Security Update for Skype for Business 2016 (KB3114960) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{DB202A83-17AD-4FD5-94D6-0F69FEF8A8C7} =>.Microsoft®
O42 - Logiciel: Security Update for Skype for Business 2016 (KB3114960) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-012B-040C-0000-0000000FF1CE}_Office16.PROPLUS_{DB202A83-17AD-4FD5-94D6-0F69FEF8A8C7} =>.Microsoft®
O42 - Logiciel: serposcope version 2.11.0 - (.SERP Hacker.) [HKLM][64Bits] -- {F78D981C-E791-487D-820B-BCA5918FB388}_is1 [Unsigned] =>.SERP Hacker
O42 - Logiciel: Skype version 8.78 - (.Skype Technologies S.A..) [HKLM][64Bits] -- Skype_is1 =>.Skype Software Sarl®
O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam =>.Valve®
O42 - Logiciel: Taalprogramma's voor Microsoft Office 2016 - Nederlands - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-001F-0413-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: TeamViewer - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer =>.TeamViewer Germany GmbH®
O42 - Logiciel: Telegram Desktop version 3.1.8 - (.Telegram FZ-LLC.) [HKCU][64Bits] -- {53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1 [Unsigned] =>.Telegram FZ-LLC
O42 - Logiciel: UE4 Prerequisites (x64) - (.Epic Games, Inc..) [HKLM][64Bits] -- {2890ae6b-90e9-448d-b3e6-97e43c21e2fd} =>.Epic Games Inc.® (Hidden)
O42 - Logiciel: UE4 Prerequisites (x64) - (.Epic Games, Inc..) [HKLM][64Bits] -- {36EAD5CF-44EF-4FCF-8BE1-D96C4835D7A4} [Unsigned] =>.Epic Games, Inc. (Hidden)
O42 - Logiciel: Update for Microsoft Access 2016 (KB3114966) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{BA46E502-C055-4C15-B468-981B723A9BA8} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Excel 2016 (KB3115090) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{F3F2A6AE-2C31-4005-9771-23BB659014A7} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Excel 2016 (KB3115090) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0016-040C-0000-0000000FF1CE}_Office16.PROPLUS_{F3F2A6AE-2C31-4005-9771-23BB659014A7} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Excel 2016 (KB3115090) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0018-040C-0000-0000000FF1CE}_Office16.PROPLUS_{F3F2A6AE-2C31-4005-9771-23BB659014A7} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Excel 2016 (KB3115090) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-001B-040C-0000-0000000FF1CE}_Office16.PROPLUS_{F3F2A6AE-2C31-4005-9771-23BB659014A7} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB2910954) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{96EFDD2E-6496-4E0C-9EA2-034AF087211A} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB2910979) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{30BE8A1C-04BC-4CCD-942E-A10F3FA33E43} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB2910990) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0090-040C-0000-0000000FF1CE}_Office16.PROPLUS_{87B599CE-83DD-4D9C-8BE3-41249F1B405E} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB2920678) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{659F8DC4-0FD7-4C3C-9011-19B9FB400154} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB2920684) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{FA8D0376-1138-4DE0-81B4-AE2106D5ED4D} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB2920684) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-002A-0000-1000-0000000FF1CE}_Office16.PROPLUS_{FA8D0376-1138-4DE0-81B4-AE2106D5ED4D} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB2920699) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{C07AAB5B-B29E-4568-A282-2DA560D3FFB1} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB2920699) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0016-040C-0000-0000000FF1CE}_Office16.PROPLUS_{C07AAB5B-B29E-4568-A282-2DA560D3FFB1} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB2920712) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{0471C03C-B563-4F44-83E9-4D9AF243E1D3} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB2920718) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-001F-0401-0000-0000000FF1CE}_Office16.PROPLUS_{9E86151B-F943-4DED-807D-561666DB4B18} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB2920718) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-001F-0407-0000-0000000FF1CE}_Office16.PROPLUS_{9E86151B-F943-4DED-807D-561666DB4B18} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB2920718) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-001F-0409-0000-0000000FF1CE}_Office16.PROPLUS_{9E86151B-F943-4DED-807D-561666DB4B18} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB2920718) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-001F-040C-0000-0000000FF1CE}_Office16.PROPLUS_{9E86151B-F943-4DED-807D-561666DB4B18} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB2920718) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-001F-0413-0000-0000000FF1CE}_Office16.PROPLUS_{9E86151B-F943-4DED-807D-561666DB4B18} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB2920718) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-001F-0C0A-0000-0000000FF1CE}_Office16.PROPLUS_{9E86151B-F943-4DED-807D-561666DB4B18} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB2920720) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{1471A699-A87C-454C-B227-00B48E5BA75B} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB2920724) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{B5FD5FBF-150F-4BD7-A2D2-F015D1069FC5} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB3114369) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{E3DCC732-0F2B-49BD-8D00-017E437F4BE7} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB3114378) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{41DBA4C2-9AD4-41E2-8F52-43B72F982D49} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB3114533) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{D9082A69-38B8-42BC-940D-61167D1C985E} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB3114535) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{27084D6E-0050-46D7-9F86-0529F47DAE43} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB3114535) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-002A-0000-1000-0000000FF1CE}_Office16.PROPLUS_{27084D6E-0050-46D7-9F86-0529F47DAE43} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB3114689) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{ECCFA27B-A67E-4C7E-B984-8B20B9753A1D} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB3114694) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{9C5B5C7D-E79A-41C8-9D29-748A5145281E} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB3114854) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{BA767A46-1772-4902-BFB8-5FF8F932AB61} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB3114854) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-002A-0000-1000-0000000FF1CE}_Office16.PROPLUS_{BA767A46-1772-4902-BFB8-5FF8F932AB61} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB3114859) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{4BF890A7-7EBF-4E24-A288-80723AE838CB} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB3114903) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{B557BEA1-7AB8-4CA4-B9EB-7011EB0EEB4B} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB3114968) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{4049B5A4-5A41-42E9-9AA5-C141610193C3} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB3114968) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-002A-0000-1000-0000000FF1CE}_Office16.PROPLUS_{4049B5A4-5A41-42E9-9AA5-C141610193C3} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB3114971) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{F7A6F4CC-A81B-4A5B-9F59-4A26E6608562} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB3114971) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-002A-0000-1000-0000000FF1CE}_Office16.PROPLUS_{F7A6F4CC-A81B-4A5B-9F59-4A26E6608562} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB3115084) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{EBE84909-BE84-40C2-A9C5-B877D79759C2} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB3115091) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{2BCFA47D-966F-4AC5-8ED6-1F0DE1F4FA7E} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB3115091) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-006E-040C-0000-0000000FF1CE}_Office16.PROPLUS_{2BCFA47D-966F-4AC5-8ED6-1F0DE1F4FA7E} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB3115096) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{6BB730C9-AC60-46C1-B7C8-B9A33EFEC797} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB3115096) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-006E-040C-0000-0000000FF1CE}_Office16.PROPLUS_{6BB730C9-AC60-46C1-B7C8-B9A33EFEC797} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Office 2016 (KB3115100) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{F73DDA0B-6B6C-4C65-B310-FFA4A0B3FB33} =>.Microsoft®
O42 - Logiciel: Update for Microsoft OneDrive for Business (KB3115104) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{B24F559A-48C9-49CC-BC8A-6943E29AE10C} =>.Microsoft®
O42 - Logiciel: Update for Microsoft OneDrive for Business (KB3115104) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-002A-0000-1000-0000000FF1CE}_Office16.PROPLUS_{B24F559A-48C9-49CC-BC8A-6943E29AE10C} =>.Microsoft®
O42 - Logiciel: Update for Microsoft OneDrive for Business (KB3115104) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-002A-040C-1000-0000000FF1CE}_Office16.PROPLUS_{B24F559A-48C9-49CC-BC8A-6943E29AE10C} =>.Microsoft®
O42 - Logiciel: Update for Microsoft OneDrive for Business (KB3115104) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-00BA-040C-0000-0000000FF1CE}_Office16.PROPLUS_{B24F559A-48C9-49CC-BC8A-6943E29AE10C} =>.Microsoft®
O42 - Logiciel: Update for Microsoft OneNote 2016 (KB3114711) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{AFA17D43-2B01-4922-A23E-48CEE40C68AF} =>.Microsoft®
O42 - Logiciel: Update for Microsoft OneNote 2016 (KB3114711) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-002A-0000-1000-0000000FF1CE}_Office16.PROPLUS_{AFA17D43-2B01-4922-A23E-48CEE40C68AF} =>.Microsoft®
O42 - Logiciel: Update for Microsoft OneNote 2016 (KB3114711) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-00A1-040C-0000-0000000FF1CE}_Office16.PROPLUS_{AFA17D43-2B01-4922-A23E-48CEE40C68AF} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Outlook 2016 (KB3115101) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{EB2D07A3-C553-4F5C-8F97-66D5947F37C8} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Outlook 2016 (KB3115101) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-001A-040C-0000-0000000FF1CE}_Office16.PROPLUS_{EB2D07A3-C553-4F5C-8F97-66D5947F37C8} =>.Microsoft®
O42 - Logiciel: Update for Microsoft PowerPoint 2016 (KB3115089) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{F1FD0B1E-D16F-431D-A0F1-A149C585E68A} =>.Microsoft®
O42 - Logiciel: Update for Microsoft PowerPoint 2016 (KB3115089) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0018-040C-0000-0000000FF1CE}_Office16.PROPLUS_{F1FD0B1E-D16F-431D-A0F1-A149C585E68A} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Project 2016 (KB3115105) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{A9072C22-17F1-4C03-B546-CEA90499721D} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Project 2016 (KB3115105) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-002A-0000-1000-0000000FF1CE}_Office16.PROPLUS_{A9072C22-17F1-4C03-B546-CEA90499721D} =>.Microsoft®
O42 - Logiciel: Update for Microsoft Visio 2016 (KB3114957) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{6AAC0DBB-9379-40E8-B2FA-D320C734772F} =>.Microsoft®
O42 - Logiciel: Update for Windows 10 for x64-based Systems (KB4023057) - (.Microsoft Corporation.) [HKLM][64Bits] -- {16AD6161-2E47-4BF1-AA77-0946EFE93E08} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Vegas Pro 12.0 (64-bit) - (.Sony.) [HKLM][64Bits] -- {BD91AC8F-5232-11E3-B420-F04DA23A5C58} [Unsigned] =>.Sony
O42 - Logiciel: VEGAS Pro 15.0 - (.VEGAS.) [HKLM][64Bits] -- {E1892AB0-7FC4-11E7-9146-95BE57594EAC} [Unsigned] =>.VEGAS
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player [Unsigned] =>.VideoLAN
O42 - Logiciel: WhatsApp - (.WhatsApp.) [HKCU][64Bits] -- WhatsApp =>.WhatsApp, Inc®
O42 - Logiciel: Winamax Installer - (.Winamax.) [HKCU][64Bits] -- Winamax Installer 2.0 [Unsigned] =>.Winamax
O42 - Logiciel: WinRAR 5.70 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH®
O42 - Logiciel: Zoom - (.Zoom Video Communications, Inc..) [HKCU][64Bits] -- ZoomUMX =>.Zoom Video Communications, Inc.®

---\\ CLÉ DE REGISTRE SOFTWARE HKCU & HKLM (317) - 34s
HKLM\SOFTWARE\Adobe =>.Adobe
HKLM\SOFTWARE\AIX Installer
HKLM\SOFTWARE\AMD =>.AMD
HKLM\SOFTWARE\AMDDVR
HKLM\SOFTWARE\AMDLOG
HKLM\SOFTWARE\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\ASIO =>.Steinberg Media Technologies
HKLM\SOFTWARE\ATI =>.ATI
HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies
HKLM\SOFTWARE\AUEP
HKLM\SOFTWARE\CPUID =>.CPUID Inc
HKLM\SOFTWARE\CVSM =>.Legitimate
HKLM\SOFTWARE\DefaultUserEnvironment =>.Microsoft Corporation
HKLM\SOFTWARE\Disc Soft =>.Disc Soft
HKLM\SOFTWARE\EA Games =>.EA Games
HKLM\SOFTWARE\EqualizerAPO
HKLM\SOFTWARE\FileZilla 3 =>.FileZilla
HKLM\SOFTWARE\GenArts =>.GenArts
HKLM\SOFTWARE\GNU =>.GNU
HKLM\SOFTWARE\Google =>.Google
HKLM\SOFTWARE\HaaliMkx =>.Haali Media
HKLM\SOFTWARE\HoldemManager2
HKLM\SOFTWARE\HP =>.HP
HKLM\SOFTWARE\Huawei technologies =>.Huawei Technologies
HKLM\SOFTWARE\Icaros =>.Icaros
HKLM\SOFTWARE\INextUUID =>.Hewlett-Packard
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\Khronos =>.Khronos
HKLM\SOFTWARE\Logishrd =>.LogiShrd
HKLM\SOFTWARE\Malwarebytes =>.Malwarebytes
HKLM\SOFTWARE\Mozilla =>.Mozilla
HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\Nahimic =>.Nahimic
HKLM\SOFTWARE\NTLite
HKLM\SOFTWARE\Nuance =>.Nuance
HKLM\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKLM\SOFTWARE\OBS Studio =>.OBS Studio
HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\OEM =>.OEM
HKLM\SOFTWARE\OpenSSH =>.OpenBSD
HKLM\SOFTWARE\Partner =>.Google Inc.
HKLM\SOFTWARE\Pioneer =>.Pioneer
HKLM\SOFTWARE\Piriform =>.Piriform
HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\Sony Creative Software =>.Sony Creative Software
HKLM\SOFTWARE\SRS Labs =>.SRS Labs
HKLM\SOFTWARE\VideoLAN =>.VideoLan Team
HKLM\SOFTWARE\Windows =>.Microsoft Corporation
HKLM\SOFTWARE\WinRAR =>.WinRAR
HKLM\SOFTWARE\Wondershare =>.Wondershare
HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\XBMga
HKLM\SOFTWARE\xga2
HKLM\SOFTWARE\xGenArts
HKLM\SOFTWARE\WOW6432Node\Adobe =>.Adobe
HKLM\SOFTWARE\WOW6432Node\Aimersoft =>.Aimersoft Software
HKLM\SOFTWARE\WOW6432Node\Apache Software Foundation =>.Apache Inc.
HKLM\SOFTWARE\WOW6432Node\Apple Computer, Inc. =>.Apple Computer, Inc.
HKLM\SOFTWARE\WOW6432Node\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\WOW6432Node\ASUS =>.ASUS
HKLM\SOFTWARE\WOW6432Node\ATI Technologies =>.ATI Technologies
HKLM\SOFTWARE\WOW6432Node\Bitdefender Agent =>.Bitdefender
HKLM\SOFTWARE\WOW6432Node\Blizzard Entertainment =>.Blizzard Entertainment
HKLM\SOFTWARE\WOW6432Node\CDDB =>.Cddb Software
HKLM\SOFTWARE\WOW6432Node\DC-Unlocker =>.Cedrick Collomb
HKLM\SOFTWARE\WOW6432Node\DigitalWave =>.DigitalWave Corporation
HKLM\SOFTWARE\WOW6432Node\EA Games =>.EA Games
HKLM\SOFTWARE\WOW6432Node\EasyAntiCheat =>.EasyAntiCheat
HKLM\SOFTWARE\WOW6432Node\Electronic Arts =>.Electronic Arts
HKLM\SOFTWARE\WOW6432Node\Eset =>.ESET
HKLM\SOFTWARE\WOW6432Node\Evernote =>.Evernote
HKLM\SOFTWARE\WOW6432Node\FileZilla 3 =>.FileZilla
HKLM\SOFTWARE\WOW6432Node\FileZilla Client =>.Tim Kosse
HKLM\SOFTWARE\WOW6432Node\Fraps =>.Beepa
HKLM\SOFTWARE\WOW6432Node\GOG.com =>.GOG.com
HKLM\SOFTWARE\WOW6432Node\Google =>.Google
HKLM\SOFTWARE\WOW6432Node\HaaliMkx =>.Haali Media
HKLM\SOFTWARE\WOW6432Node\Hewlett-Packard =>.Hewlett-Packard
HKLM\SOFTWARE\WOW6432Node\HP =>.HP
HKLM\SOFTWARE\WOW6432Node\Icaros =>.Icaros
HKLM\SOFTWARE\WOW6432Node\IM Providers =>.IM Providers
HKLM\SOFTWARE\WOW6432Node\iMusic =>.iMusic
HKLM\SOFTWARE\WOW6432Node\InstallShield =>.InstallShield
HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel
HKLM\SOFTWARE\WOW6432Node\JavaSoft =>.JavaSoft
HKLM\SOFTWARE\WOW6432Node\JreMetrics =>.JreMetrics
HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos
HKLM\SOFTWARE\WOW6432Node\KLCodecPack =>.KLite Inc
HKLM\SOFTWARE\WOW6432Node\Magix =>.MAGIX_Software_GmbH
HKLM\SOFTWARE\WOW6432Node\MAXSOFT-OCRON =>.Maxsoft-Ocron, Inc
HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla
HKLM\SOFTWARE\WOW6432Node\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\WOW6432Node\MSI =>.MSI
HKLM\SOFTWARE\WOW6432Node\Notepad++ =>.Don Ho
HKLM\SOFTWARE\WOW6432Node\Nuance =>.Nuance
HKLM\SOFTWARE\WOW6432Node\NVIDIA Corporation =>.nVidia Corporation
HKLM\SOFTWARE\WOW6432Node\OBS Studio =>.OBS Studio
HKLM\SOFTWARE\WOW6432Node\ObviousIdea =>.ObviousIdea
HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\WOW6432Node\Oracle =>.Oracle
HKLM\SOFTWARE\WOW6432Node\Origin =>.Electronic Arts, Inc.
HKLM\SOFTWARE\WOW6432Node\Origin Games =>.Electronic Arts, Inc.
HKLM\SOFTWARE\WOW6432Node\PostgreSQL =>.PostgreSQL
HKLM\SOFTWARE\WOW6432Node\PostgreSQL Global Development Group =>.PostgreSQL Global Development Group
HKLM\SOFTWARE\WOW6432Node\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\WOW6432Node\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\WOW6432Node\RocketLife =>.RocketLife
HKLM\SOFTWARE\WOW6432Node\Rockstar Games =>.Rockstar Games
HKLM\SOFTWARE\WOW6432Node\Skype =>.Skype
HKLM\SOFTWARE\WOW6432Node\Sony Creative Software =>.Sony Creative Software
HKLM\SOFTWARE\WOW6432Node\TeamViewer =>.TeamViewer GmbH
HKLM\SOFTWARE\WOW6432Node\Valve =>.Valve
HKLM\SOFTWARE\WOW6432Node\VideoLAN =>.VideoLan Team
HKLM\SOFTWARE\WOW6432Node\Visan =>.Visan Software
HKLM\SOFTWARE\WOW6432Node\Volatile =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\WafCX =>.WafCX
HKLM\SOFTWARE\WOW6432Node\WinRAR =>.WinRAR
HKLM\SOFTWARE\WOW6432Node\Wondershare =>.Wondershare
HKLM\SOFTWARE\WOW6432Node\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\YaSoft =>.YaSoft
HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\Adobe =>.Adobe
HKCU\SOFTWARE\Aimersoft =>.Aimersoft Software
HKCU\SOFTWARE\AMD =>.AMD
HKCU\SOFTWARE\Apache Software Foundation =>.Apache Inc.
HKCU\SOFTWARE\Apowersoft =>.Apowersoft
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc. =>.Apple Inc.
HKCU\SOFTWARE\ASUS =>.ASUS
HKCU\SOFTWARE\ATI =>.ATI
HKCU\SOFTWARE\BitTorrentPersist
HKCU\SOFTWARE\Blizzard Entertainment =>.Blizzard Entertainment
HKCU\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o
HKCU\SOFTWARE\BugSplat =>.Bugsplat Game
HKCU\SOFTWARE\Chromium =>.Chromium
HKCU\SOFTWARE\DirectShow =>.Microsoft Corporation
HKCU\SOFTWARE\Disc Soft =>.Disc Soft
HKCU\SOFTWARE\Discord =>.SUP.Discord
HKCU\SOFTWARE\Electronic Arts =>.Electronic Arts
HKCU\SOFTWARE\Epic Games =>.Epic Games
HKCU\SOFTWARE\ESET =>.ESET
HKCU\SOFTWARE\Evernote =>.Evernote
HKCU\SOFTWARE\Gabest =>.Gabest
HKCU\SOFTWARE\GenArts =>.GenArts
HKCU\SOFTWARE\Ghost Town Games
HKCU\SOFTWARE\GNU =>.GNU
HKCU\SOFTWARE\GOG.com =>.GOG.com
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\Haali =>.Haali Media
HKCU\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKCU\SOFTWARE\HoldemManager =>.HoldemManager
HKCU\SOFTWARE\HoldemManager3
HKCU\SOFTWARE\HP =>.HP
HKCU\SOFTWARE\HP Webcam =>.Hewlett-Packard
HKCU\SOFTWARE\Icaros =>.Icaros
HKCU\SOFTWARE\IM Providers =>.IM Providers
HKCU\SOFTWARE\iMusic =>.iMusic
HKCU\SOFTWARE\iZotope =>.iZotope
HKCU\SOFTWARE\JavaSoft =>.JavaSoft
HKCU\SOFTWARE\LAV =>.LAV Inc
HKCU\SOFTWARE\LogiShrd =>.LogiShrd
HKCU\SOFTWARE\Logitech =>.Logitech
HKCU\SOFTWARE\LogMeInInc =>.LogMeIn Entreprise
HKCU\SOFTWARE\madshi =>.madshi.net
HKCU\SOFTWARE\Magix =>.MAGIX_Software_GmbH
HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes
HKCU\SOFTWARE\Max Value Software =>.Max Value Software
HKCU\SOFTWARE\MediaInfo =>.Jérôme Martinez
HKCU\SOFTWARE\Mirage =>.Mirage Game
HKCU\SOFTWARE\monero-project
HKCU\SOFTWARE\Movavi =>.Movavi
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\MPC-HC =>.MPC-HC Team
HKCU\SOFTWARE\MSI =>.MSI
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\NewTechnologyStudio =>.New Technology Studio
HKCU\SOFTWARE\NTSCorp =>.NTSCorp Ltd
HKCU\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKCU\SOFTWARE\ObviousIdea =>.ObviousIdea
HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKCU\SOFTWARE\Open Media LLC =>.Open Media LLC
HKCU\SOFTWARE\Opera Stable Offer =>.Opera Software
HKCU\SOFTWARE\PASG
HKCU\SOFTWARE\Piriform =>.Piriform
HKCU\SOFTWARE\Playtonic Ltd =>.Playtonic Ltd
HKCU\SOFTWARE\PMU =>.PMU
HKCU\SOFTWARE\ProtectedStorage =>.Microsoft Corporation
HKCU\SOFTWARE\QtProject =>.QtProject
HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\Rockstar Games =>.Rockstar Games
HKCU\SOFTWARE\ScriptHookV
HKCU\SOFTWARE\Serato =>.Serato
HKCU\SOFTWARE\skypeapp-dbdf7b897c02 =>.Skype Technologies
HKCU\SOFTWARE\Sony Creative Software =>.Sony Creative Software
HKCU\SOFTWARE\SyncEngines =>.Microsoft Corporation
HKCU\SOFTWARE\TeamViewer =>.TeamViewer GmbH
HKCU\SOFTWARE\TelegramDesktop =>.TelegramDesktop
HKCU\SOFTWARE\Trolltech =>.Trolltech
HKCU\SOFTWARE\Unity =>.Unity
HKCU\SOFTWARE\Valve =>.Valve
HKCU\SOFTWARE\Visan =>.Visan Software
HKCU\SOFTWARE\VS Revo Group =>.VS Revo Group
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\Wondershare =>.Wondershare
HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\ZoomUMX
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
HKU\.DEFAULT\SOFTWARE\Adobe =>.Adobe
HKU\.DEFAULT\SOFTWARE\AMD =>.AMD
HKU\.DEFAULT\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
HKU\.DEFAULT\SOFTWARE\ATI =>.ATI
HKU\.DEFAULT\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o
HKU\.DEFAULT\SOFTWARE\Epic Games =>.Epic Games
HKU\.DEFAULT\SOFTWARE\Google =>.Google
HKU\.DEFAULT\SOFTWARE\Lavasoft =>.Lavasoft
HKU\.DEFAULT\SOFTWARE\Malwarebytes =>.Malwarebytes
HKU\.DEFAULT\SOFTWARE\Mozilla =>.Mozilla
HKU\.DEFAULT\SOFTWARE\Netscape =>.Netscape
HKU\.DEFAULT\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKU\.DEFAULT\SOFTWARE\Piriform =>.Piriform
HKU\.DEFAULT\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKU\.DEFAULT\SOFTWARE\SetID =>.Bitdefender
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Adobe =>.Adobe
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Aimersoft =>.Aimersoft Software
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\AMD =>.AMD
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Apache Software Foundation =>.Apache Inc.
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Apowersoft =>.Apowersoft
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Apple Inc. =>.Apple Inc.
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\ASUS =>.ASUS
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\ATI =>.ATI
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\BitTorrentPersist
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Blizzard Entertainment =>.Blizzard Entertainment
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\BugSplat =>.Bugsplat Game
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Chromium =>.Chromium
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\DirectShow =>.Microsoft Corporation
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Disc Soft =>.Disc Soft
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Discord =>.SUP.Discord
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Electronic Arts =>.Electronic Arts
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Epic Games =>.Epic Games
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\ESET =>.ESET
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Evernote =>.Evernote
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Gabest =>.Gabest
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\GenArts =>.GenArts
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Ghost Town Games
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\GNU =>.GNU
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\GOG.com =>.GOG.com
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Google =>.Google
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Haali =>.Haali Media
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\HoldemManager =>.HoldemManager
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\HoldemManager3
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\HP =>.HP
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\HP Webcam =>.Hewlett-Packard
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Icaros =>.Icaros
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\IM Providers =>.IM Providers
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\iMusic =>.iMusic
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\iZotope =>.iZotope
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\JavaSoft =>.JavaSoft
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\LAV =>.LAV Inc
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\LogiShrd =>.LogiShrd
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Logitech =>.Logitech
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\LogMeInInc =>.LogMeIn Entreprise
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\madshi =>.madshi.net
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Magix =>.MAGIX_Software_GmbH
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Malwarebytes =>.Malwarebytes
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Max Value Software =>.Max Value Software
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\MediaInfo =>.Jérôme Martinez
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Mirage =>.Mirage Game
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\monero-project
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Movavi =>.Movavi
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Mozilla =>.Mozilla
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\MPC-HC =>.MPC-HC Team
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\MSI =>.MSI
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Netscape =>.Netscape
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\NewTechnologyStudio =>.New Technology Studio
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\NTSCorp =>.NTSCorp Ltd
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\ObviousIdea =>.ObviousIdea
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Open Media LLC =>.Open Media LLC
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Opera Stable Offer =>.Opera Software
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\PASG
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Piriform =>.Piriform
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Playtonic Ltd =>.Playtonic Ltd
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\PMU =>.PMU
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\ProtectedStorage =>.Microsoft Corporation
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\QtProject =>.QtProject
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Rockstar Games =>.Rockstar Games
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\ScriptHookV
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Serato =>.Serato
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\skypeapp-dbdf7b897c02 =>.Skype Technologies
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Sony Creative Software =>.Sony Creative Software
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\SyncEngines =>.Microsoft Corporation
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\TeamViewer =>.TeamViewer GmbH
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\TelegramDesktop =>.TelegramDesktop
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Trolltech =>.Trolltech
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Unity =>.Unity
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Valve =>.Valve
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Visan =>.Visan Software
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\VS Revo Group =>.VS Revo Group
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\WinRAR =>.WinRAR
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\WinRAR SFX =>.RarLab
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Wondershare =>.Wondershare
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\ZHP =>.Nicolas Coolman
HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\ZoomUMX

---\\ PACKAGES (8) - 0s
C:\Program Files (x86)\WindowsApps\89006A2E.AutodeskSketchBook_5.1.0.0_x64__tf1gferkr813w - (.Autodesk Inc..) [][Autodesk SketchBook] =>Autodesk Inc.
C:\Program Files (x86)\WindowsApps\AD2F1837.HPPrinterControl_135.1.385.0_x64__v10z8vjag6ke6 - (.Hewlett-Packard.) [][HP Smart] =>Hewlett-Packard
C:\Program Files (x86)\WindowsApps\AdvancedMicroDevicesInc-2.AMDLink_10.21.50009.0_x64__0a9344xs7nr4m - (..) [][AMD Link]
C:\Program Files (x86)\WindowsApps\DolbyLaboratories.DolbyAccess_3.12.419.0_x64__rz1tebttyb220 - (.Dolby Laboratories.) [][Dolby Access] =>Dolby Laboratories
C:\Program Files (x86)\WindowsApps\KeeperSecurityInc.Keeper_14.0.33.0_x64__kejf07qmg0jnm - (.Keeper Security Inc.) [][Keeper - Password Manager & Secure File Storage]
C:\Program Files (x86)\WindowsApps\MicrosoftWindows.UndockedDevKit_10.0.19041.1023_neutral_neutral_cw5n1h2txyewy - (.Microsoft Corporation.) [][UDK Package] =>Microsoft Corporation
C:\Program Files (x86)\WindowsApps\NcsiUwpApp_1000.19041.1023.0_neutral_neutral_8wekyb3d8bbwe - (.Microsoft.) [][NcsiUwpApp] =>Microsoft
C:\Program Files (x86)\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r - (.Adobe Systems Incorporated.) [][Reader Notification Client] =>Adobe Systems Incorporated

---\\ CONTENU DES DOSSIERS PROGRAMMES (406) - 15s
O43 - CFD: 09/04/2022 - [] D -- C:\Program Files\AMD [Unsigned] =>.AMD
O43 - CFD: 09/04/2022 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation
O43 - CFD: 11/12/2020 - [] D -- C:\Program Files\HP =>.Hewlett-Packard
O43 - CFD: 31/03/2022 - [] D -- C:\Program Files\HPPrintScanDoctor =>.HP Inc.®
O43 - CFD: 01/04/2022 - [] D -- C:\Program Files\Hyper-V =>.Microsoft Corporation
O43 - CFD: 01/11/2020 - [] D -- C:\Program Files\Intel =>.Intel Corporation
O43 - CFD: 01/04/2022 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 14/12/2017 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 05/04/2022 - [] D -- C:\Program Files\Microsoft Update Health Tools =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [0] D -- C:\Program Files\ModifiableWindowsApps =>.Microsoft Corporation
O43 - CFD: 01/11/2020 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 08/08/2019 - [] D -- C:\Program Files\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 10/07/2019 - [] D -- C:\Program Files\Open Media LLC =>.Open Media LLC
O43 - CFD: 07/11/2021 - [] D -- C:\Program Files\PCHealthCheck =>.Microsoft®
O43 - CFD: 01/11/2020 - [] D -- C:\Program Files\Realtek =>.Realtek
O43 - CFD: 01/11/2020 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 09/08/2019 - [] AD -- C:\Program Files\rempl =>.Microsoft Corporation
O43 - CFD: 29/01/2019 - [] D -- C:\Program Files\Rockstar Games =>.Rockstar Games, Inc.®
O43 - CFD: 18/03/2017 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 01/11/2020 - [] D -- C:\Program Files\UNP =>.Microsoft Corporation
O43 - CFD: 07/12/2021 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 01/04/2022 - [] D -- C:\Program Files\Windows Defender Advanced Threat Protection =>.Microsoft Corporation
O43 - CFD: 15/07/2021 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 13/10/2021 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 01/11/2020 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation
O43 - CFD: 13/01/2021 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows Security =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 01/03/2019 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH®
O43 - CFD: 21/02/2020 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems Incorporated®
O43 - CFD: 14/12/2017 - [] AD -- C:\Program Files (x86)\ASM104xUSB3 =>.ASMedia Technology Inc
O43 - CFD: 14/12/2017 - [] D -- C:\Program Files (x86)\ASUS =>.ASUSTeK Computer Inc.®
O43 - CFD: 09/04/2022 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation
O43 - CFD: 29/06/2018 - [] D -- C:\Program Files (x86)\EasyAntiCheat =>.EasyAntiCheat
O43 - CFD: 09/07/2018 - [] D -- C:\Program Files (x86)\FreeCodecPack =>.Free Codec Pack
O43 - CFD: 08/12/2020 - [] D -- C:\Program Files (x86)\GenArts =>.GenArts, Inc®
O43 - CFD: 10/04/2022 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 24/06/2020 - [] D -- C:\Program Files (x86)\HiSuite =>.Huawei Technologies Co.,Ltd
O43 - CFD: 11/12/2020 - [] D -- C:\Program Files (x86)\HP =>.Hewlett-Packard
O43 - CFD: 11/12/2020 - [] D -- C:\Program Files (x86)\HP Photo Creations =>.Visan Industries®
O43 - CFD: 07/12/2021 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield
O43 - CFD: 01/04/2022 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 05/08/2019 - [] AD -- C:\Program Files (x86)\K-Lite Codec Pack =>.KLite Inc
O43 - CFD: 10/12/2020 - [0] D -- C:\Program Files (x86)\Lavasoft =>.Lavasoft
O43 - CFD: 29/05/2021 - [] D -- C:\Program Files (x86)\Microsoft =>.Microsoft Corporation
O43 - CFD: 14/12/2017 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services =>.Microsoft Corporation
O43 - CFD: 14/12/2017 - [] AD -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 14/12/2017 - [] D -- C:\Program Files (x86)\Microsoft SQL Server =>.Microsoft Corporation
O43 - CFD: 01/11/2020 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 28/03/2022 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla
O43 - CFD: 28/03/2022 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla
O43 - CFD: 01/11/2020 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation
O43 - CFD: 08/08/2019 - [] D -- C:\Program Files (x86)\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 11/05/2019 - [0] D -- C:\Program Files (x86)\Origin Games =>.Electronic Arts, Inc.
O43 - CFD: 07/03/2019 - [] D -- C:\Program Files (x86)\PSQLINSTALL =>.EnterpriseDB Corporation®
O43 - CFD: 08/03/2019 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek
O43 - CFD: 01/11/2020 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 29/01/2019 - [] D -- C:\Program Files (x86)\Rockstar Games =>.Rockstar Games, Inc.®
O43 - CFD: 21/05/2020 - [] D -- C:\Program Files (x86)\serposcope [Unsigned]
O43 - CFD: 08/03/2019 - [0] HD -- C:\Program Files (x86)\Temp =>.Microsoft Corporation
O43 - CFD: 17/05/2018 - [0] HD -- C:\Program Files (x86)\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 05/08/2019 - [] D -- C:\Program Files (x86)\VEGAS =>.VEGAS
O43 - CFD: 11/11/2019 - [] D -- C:\Program Files (x86)\VulkanRT =>.LunarG, Inc
O43 - CFD: 10/12/2020 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation
O43 - CFD: 15/07/2021 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 13/10/2021 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation
O43 - CFD: 13/01/2021 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [0] D -- C:\Program Files (x86)\WondershareUpdate =>.Wondershare
O43 - CFD: 13/01/2021 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 01/04/2022 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 13/10/2021 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 09/04/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Bug Report Tool
O43 - CFD: 09/04/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Software꞉ Adrenalin Edition
O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft =>.Apowersoft
O43 - CFD: 19/04/2020 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS =>.ASUS
O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net =>.Games Software
O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield™ V =>.Electronic Arts, Inc.
O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd
O43 - CFD: 10/12/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID =>.CPUID Inc
O43 - CFD: 17/05/2018 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite =>.DAEMON Tools
O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Evernote =>.EverNote Corporation
O43 - CFD: 01/02/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client =>.Tim Kosse
O43 - CFD: 08/12/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GenArts Sapphire OFX =>.Boris FX
O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hewlett-Packard =>.Hewlett-Packard
O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HiSuite =>.Huawei Technologies Co.,Ltd
O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Holdem Manager 2
O43 - CFD: 11/12/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP =>.Hewlett-Packard
O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle
O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack =>.KLite Inc
O43 - CFD: 10/12/2020 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft =>.Lavasoft
O43 - CFD: 07/12/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 17/05/2018 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Monopoly Plus
O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MT2 Mechanical Keyboard
O43 - CFD: 09/04/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OBS Studio =>.OBS Studio
O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ObviousIdea =>.ObviousIdea
O43 - CFD: 23/01/2019 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin =>.Electronic Arts, Inc.
O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Overwatch =>.Blizzard Entertainment
O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PokerStrategy.com =>.PokerStrategy.com
O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PostgreSQL 8.4
O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller =>.VS Revo Group
O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro =>.VS Revo Group
O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games =>.Rockstar Games
O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\serposcope
O43 - CFD: 28/11/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype =>.Skype
O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony =>.Sony
O43 - CFD: 07/12/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation
O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam =>.Steam Games
O43 - CFD: 13/10/2021 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VEGAS =>.VEGAS
O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team
O43 - CFD: 07/12/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation
O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Yooka-Laylee [GOG.com]
O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Youtube Downloader HD =>.Regensoft
O43 - CFD: 14/09/2020 - [] D -- C:\ProgramData\48C4687D-9760-4F5B-BAB3-60351B0841E4
O43 - CFD: 22/02/2020 - [] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 09/07/2018 - [] D -- C:\ProgramData\Aimersoft =>.Aimersoft Software
O43 - CFD: 09/04/2022 - [] D -- C:\ProgramData\AMD =>.AMD
O43 - CFD: 16/03/2018 - [] D -- C:\ProgramData\Apple =>.Apple Inc.
O43 - CFD: 09/05/2018 - [] D -- C:\ProgramData\Apple Computer =>.Apple Inc.
O43 - CFD: 01/11/2020 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 14/12/2017 - [] D -- C:\ProgramData\Battle.net =>.Games Software
O43 - CFD: 17/07/2021 - [] D -- C:\ProgramData\BDLogging =>.Bitdefender
O43 - CFD: 15/01/2018 - [] D -- C:\ProgramData\bitmonero
O43 - CFD: 14/12/2017 - [] D -- C:\ProgramData\Blizzard Entertainment =>.Blizzard Entertainment
O43 - CFD: 12/03/2020 - [] D -- C:\ProgramData\boost_interprocess =>.boost.org
O43 - CFD: 18/03/2017 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation
O43 - CFD: 09/07/2018 - [] D -- C:\ProgramData\Caphyon =>.Caphyon
O43 - CFD: 08/09/2019 - [0] D -- C:\ProgramData\dbg =>.DBG
O43 - CFD: 09/07/2018 - [] D -- C:\ProgramData\DigitalWave.ApplicationUpdater_files
O43 - CFD: 13/01/2021 - [] D -- C:\ProgramData\Disc-Soft
O43 - CFD: 01/11/2020 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 23/01/2019 - [] D -- C:\ProgramData\Electronic Arts =>.Electronic Arts
O43 - CFD: 08/12/2020 - [] D -- C:\ProgramData\GenArts =>.GenArts
O43 - CFD: 14/12/2017 - [] D -- C:\ProgramData\GOG.com =>.GOG.com
O43 - CFD: 09/04/2022 - [] D -- C:\ProgramData\GraphicsType13
O43 - CFD: 08/09/2021 - [] D -- C:\ProgramData\HP =>.Hewlett-Packard
O43 - CFD: 11/12/2020 - [] D -- C:\ProgramData\HP Photo Creations =>.HP Photo Creations
O43 - CFD: 10/12/2020 - [0] D -- C:\ProgramData\Lavasoft =>.Lavasoft
O43 - CFD: 05/08/2019 - [] D -- C:\ProgramData\Magix =>.MAGIX_Software_GmbH
O43 - CFD: 09/10/2019 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes
O43 - CFD: 18/03/2017 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation
O43 - CFD: 01/11/2020 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 17/12/2020 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation
O43 - CFD: 16/01/2018 - [] D -- C:\ProgramData\Monopoly Plus
O43 - CFD: 11/08/2019 - [] D -- C:\ProgramData\movavi =>.Movavi
O43 - CFD: 29/06/2021 - [] D -- C:\ProgramData\Mozilla =>.Mozilla Corporation
O43 - CFD: 29/01/2019 - [] D -- C:\ProgramData\Notepad++ =>.Don Ho
O43 - CFD: 25/01/2019 - [] D -- C:\ProgramData\NVIDIA =>.nVidia Corporation
O43 - CFD: 25/01/2019 - [] D -- C:\ProgramData\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 09/04/2022 - [] D -- C:\ProgramData\obs-studio-hook
O43 - CFD: 21/05/2020 - [] D -- C:\ProgramData\Oracle =>.Oracle
O43 - CFD: 10/12/2020 - [] D -- C:\ProgramData\Origin =>.Electronic Arts, Inc.
O43 - CFD: 09/04/2022 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation
O43 - CFD: 19/11/2021 - [] D -- C:\ProgramData\Packages =>.Microsoft Corporation
O43 - CFD: 01/01/2018 - [0] D -- C:\ProgramData\regid.1986-12.com.adobe =>.Adobe Inc.
O43 - CFD: 10/04/2022 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation
O43 - CFD: 10/04/2022 - [] D -- C:\ProgramData\serposcope
O43 - CFD: 07/03/2019 - [] D -- C:\ProgramData\Skype =>.Skype
O43 - CFD: 14/12/2017 - [] D -- C:\ProgramData\Socialclub =>.Legitimate
O43 - CFD: 07/12/2019 - [0] D -- C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation
O43 - CFD: 11/08/2019 - [] D -- C:\ProgramData\Sony =>.Sony
O43 - CFD: 01/11/2020 - [0] D -- C:\ProgramData\ssh =>.Microsoft Corporation
O43 - CFD: 14/12/2017 - [] D -- C:\ProgramData\Steam =>.Steam Games
O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation
O43 - CFD: 05/08/2019 - [] D -- C:\ProgramData\VEGAS =>.VEGAS
O43 - CFD: 05/08/2019 - [] D -- C:\ProgramData\VEGAS Pro
O43 - CFD: 11/12/2020 - [] D -- C:\ProgramData\Visan =>.Visan Industries
O43 - CFD: 07/03/2019 - [] D -- C:\ProgramData\VS Revo Group =>.VS Revo Group
O43 - CFD: 07/12/2019 - [] D -- C:\ProgramData\WindowsHolographicDevices =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [] D -- C:\ProgramData\Wondershare =>.Wondershare
O43 - CFD: 14/12/2017 - [] D -- C:\ProgramData\XHEO INC
O43 - CFD: 21/02/2020 - [] AD -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe
O43 - CFD: 09/07/2018 - [] D -- C:\Program Files (x86)\Common Files\Aimersoft =>.Aimersoft Software
O43 - CFD: 18/07/2021 - [] D -- C:\Program Files (x86)\Common Files\BattlEye =>.BattlEye
O43 - CFD: 14/12/2017 - [] AD -- C:\Program Files (x86)\Common Files\DESIGNER =>.Designer
O43 - CFD: 19/04/2020 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield
O43 - CFD: 21/05/2020 - [] D -- C:\Program Files (x86)\Common Files\Java =>.Oracle
O43 - CFD: 01/11/2020 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation
O43 - CFD: 08/12/2020 - [] D -- C:\Program Files (x86)\Common Files\OFX
O43 - CFD: 21/05/2020 - [] D -- C:\Program Files (x86)\Common Files\Oracle =>.Oracle
O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 12/08/2021 - [] D -- C:\Program Files (x86)\Common Files\Steam =>.Steam Games
O43 - CFD: 15/07/2021 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation
O43 - CFD: 01/05/2021 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 10/02/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\AnyDesk =>.philandro Software GmbH
O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Apowersoft =>.Apowersoft
O43 - CFD: 17/03/2018 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Apple Computer =>.Apple Inc.
O43 - CFD: 11/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Audacity =>.Audacity
O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Battle.net =>.Games Software
O43 - CFD: 09/07/2018 - [] D -- C:\Users\Mr_GT\AppData\Roaming\cef3-cache
O43 - CFD: 15/10/2018 - [] D -- C:\Users\Mr_GT\AppData\Roaming\cef3-cache-3359
O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Roaming\com.winamax.chat =>.Winamax
O43 - CFD: 07/03/2019 - [] D -- C:\Users\Mr_GT\AppData\Roaming\DAEMON Tools Lite =>.DAEMON Tools
O43 - CFD: 13/01/2021 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Disc-Soft
O43 - CFD: 10/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Roaming\discord
O43 - CFD: 09/07/2018 - [] D -- C:\Users\Mr_GT\AppData\Roaming\DVDVideoSoft =>.DVDVideoSoft
O43 - CFD: 06/04/2021 - [] D -- C:\Users\Mr_GT\AppData\Roaming\FileZilla =>.FileZilla
O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Roaming\HEM Data
O43 - CFD: 04/07/2021 - [] D -- C:\Users\Mr_GT\AppData\Roaming\HoldemManager =>.HoldemManager
O43 - CFD: 22/03/2019 - [] D -- C:\Users\Mr_GT\AppData\Roaming\HPPSDr
O43 - CFD: 10/12/2020 - [0] D -- C:\Users\Mr_GT\AppData\Roaming\Lavasoft =>.Lavasoft
O43 - CFD: 12/05/2021 - [] D -- C:\Users\Mr_GT\AppData\Roaming\LLXzbVjNucwmQRgM
O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 05/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Roaming\MAGIX =>.MAGIX_Software_GmbH
O43 - CFD: 09/12/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\MAGIX Computer Products Intl. Co =>.MAGIX_Software_GmbH
O43 - CFD: 04/03/2018 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Max Value Software =>.Max Value Software
O43 - CFD: 01/11/2020 - [] SD -- C:\Users\Mr_GT\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 08/09/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft Teams =>.Microsoft Corporation
O43 - CFD: 16/01/2018 - [0] D -- C:\Users\Mr_GT\AppData\Roaming\Monopoly Plus
O43 - CFD: 18/05/2018 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 10/04/2022 - [0] D -- C:\Users\Mr_GT\AppData\Roaming\MPC-HC =>.MPC-HC Team
O43 - CFD: 10/01/2018 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Neon
O43 - CFD: 14/05/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Notepad++ =>.Don Ho
O43 - CFD: 10/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Roaming\obs-studio =>.OBS-Studio
O43 - CFD: 09/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Roaming\ObviousIdea =>.ObviousIdea
O43 - CFD: 26/07/2019 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Open Media LLC =>.Open Media LLC
O43 - CFD: 12/12/2019 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Origin =>.Electronic Arts, Inc.
O43 - CFD: 09/07/2018 - [] D -- C:\Users\Mr_GT\AppData\Roaming\PMU =>.PMU
O43 - CFD: 12/03/2019 - [0] D -- C:\Users\Mr_GT\AppData\Roaming\QuickScan =>.Bitdefender
O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Roaming =>.Microsoft Corporation
O43 - CFD: 20/05/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Skype =>.Skype
O43 - CFD: 10/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Sony =>.Sony
O43 - CFD: 21/05/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Sun =>.Oracle
O43 - CFD: 12/11/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Teams
O43 - CFD: 06/04/2021 - [] D -- C:\Users\Mr_GT\AppData\Roaming\TeamViewer =>.TeamViewer GmbH
O43 - CFD: 08/12/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\VEGAS =>.VEGAS
O43 - CFD: 05/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Roaming\VEGAS Pro
O43 - CFD: 10/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Roaming\vlc =>.VideoLan Team
O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Roaming\wam.04351C371E530C3762CBA45FA283ED972DCDEFB6.1
O43 - CFD: 10/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Roaming\WhatsApp =>.WhatsApp
O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 09/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Wondershare =>.Wondershare
O43 - CFD: 01/01/2018 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Youtube Downloader HD =>.Regensoft
O43 - CFD: 10/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 16/11/2021 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Zoom =>.ZOOM
O43 - CFD: 21/05/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\ࡠĮ
O43 - CFD: 22/01/2021 - [] D -- C:\Users\Mr_GT\AppData\Local\Adobe =>.Adobe
O43 - CFD: 07/12/2021 - [] D -- C:\Users\Mr_GT\AppData\Local\AdvinstAnalytics =>.SUP.Various
O43 - CFD: 09/07/2018 - [] D -- C:\Users\Mr_GT\AppData\Local\Aimersoft =>.Aimersoft Software
O43 - CFD: 09/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Local\AMD =>.AMD
O43 - CFD: 09/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Local\AMDIdentifyWindow
O43 - CFD: 09/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Local\AMDSoftwareInstaller
O43 - CFD: 09/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Local\AMD_Common
O43 - CFD: 01/11/2020 - [0] SHD -- C:\Users\Mr_GT\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 06/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\Audacity =>.Audacity
O43 - CFD: 07/06/2020 - [] D -- C:\Users\Mr_GT\AppData\Local\Battle.net =>.Games Software
O43 - CFD: 29/01/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\Battlefield V =>.Electronic Arts, Inc.
O43 - CFD: 02/07/2018 - [] D -- C:\Users\Mr_GT\AppData\Local\BattlEye =>.BattlEye
O43 - CFD: 07/12/2021 - [0] D -- C:\Users\Mr_GT\AppData\Local\Bdch =>.Softwin
O43 - CFD: 06/12/2021 - [] D -- C:\Users\Mr_GT\AppData\Local\Bitdefender =>.Bitdefender
O43 - CFD: 10/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Local\BitTorrentHelper
O43 - CFD: 23/04/2019 - [0] D -- C:\Users\Mr_GT\AppData\Local\Blizzard =>.Blizzard
O43 - CFD: 23/04/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\Blizzard Entertainment =>.Blizzard Entertainment
O43 - CFD: 06/06/2020 - [] D -- C:\Users\Mr_GT\AppData\Local\BY-K816-106
O43 - CFD: 10/01/2021 - [] D -- C:\Users\Mr_GT\AppData\Local\cache =>.Legitimate
O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Local\CEF =>.CEF
O43 - CFD: 29/07/2020 - [] D -- C:\Users\Mr_GT\AppData\Local\Comms =>.Microsoft Corporation
O43 - CFD: 08/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation
O43 - CFD: 11/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\converter =>.CocoonSoftware
O43 - CFD: 11/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\ConverterAgent
O43 - CFD: 10/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Local\CrashDumps =>.Microsoft Corporation
O43 - CFD: 11/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\CrashRpt
O43 - CFD: 10/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Local\D3DSCache =>.Legitimate
O43 - CFD: 14/12/2017 - [0] D -- C:\Users\Mr_GT\AppData\Local\DBG =>.DBG
O43 - CFD: 19/06/2019 - [0] D -- C:\Users\Mr_GT\AppData\Local\Diagnostics =>.Microsoft Corporation
O43 - CFD: 10/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Local\Discord
O43 - CFD: 13/01/2021 - [] D -- C:\Users\Mr_GT\AppData\Local\Disc_Soft_Ltd =>.Disc Soft Ltd
O43 - CFD: 17/02/2018 - [] D -- C:\Users\Mr_GT\AppData\Local\Downloaded Installations =>.Microsoft Corporation
O43 - CFD: 10/10/2021 - [0] D -- C:\Users\Mr_GT\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation
O43 - CFD: 03/05/2018 - [] D -- C:\Users\Mr_GT\AppData\Local\Equilab
O43 - CFD: 15/12/2020 - [0] D -- C:\Users\Mr_GT\AppData\Local\ESET =>.ESET
O43 - CFD: 01/02/2021 - [] D -- C:\Users\Mr_GT\AppData\Local\FileZilla =>.FileZilla
O43 - CFD: 20/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Local\FortniteGame
O43 - CFD: 09/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\FreemakeVideoConverter =>.Freemake
O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Local\Google =>.Google
O43 - CFD: 24/03/2020 - [] D -- C:\Users\Mr_GT\AppData\Local\GoTo Opener
O43 - CFD: 01/11/2020 - [0] SHD -- C:\Users\Mr_GT\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 24/06/2020 - [] D -- C:\Users\Mr_GT\AppData\Local\HiSuite =>.Huawei Technologies Co.,Ltd
O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Local\Hold'em_Manager
O43 - CFD: 11/12/2020 - [] D -- C:\Users\Mr_GT\AppData\Local\HP =>.Hewlett-Packard
O43 - CFD: 09/07/2018 - [] D -- C:\Users\Mr_GT\AppData\Local\iMusic =>.iMusic
O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Local\IsolatedStorage =>.id Software
O43 - CFD: 23/07/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\Lavasoft =>.Lavasoft
O43 - CFD: 05/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\MAGIX =>.MAGIX_Software_GmbH
O43 - CFD: 04/03/2018 - [] D -- C:\Users\Mr_GT\AppData\Local\Max_Value_Software_LLC
O43 - CFD: 09/10/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\mbam =>.Malwarebytes
O43 - CFD: 09/10/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\mbamtray =>.Malwarebytes
O43 - CFD: 27/10/2021 - [] D -- C:\Users\Mr_GT\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 07/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 27/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Local\MicrosoftEdge =>.Microsoft Corporation
O43 - CFD: 11/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\Movavi =>.Movavi
O43 - CFD: 18/05/2018 - [] D -- C:\Users\Mr_GT\AppData\Local\Mozilla =>.Mozilla Corporation
O43 - CFD: 04/03/2018 - [0] D -- C:\Users\Mr_GT\AppData\Local\MVS
O43 - CFD: 29/01/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\New Technology Studio =>.New Technology Studio
O43 - CFD: 11/11/2021 - [] D -- C:\Users\Mr_GT\AppData\Local\Notepad
O43 - CFD: 25/01/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 21/04/2021 - [] D -- C:\Users\Mr_GT\AppData\Local\OfficeBSCache-MyComputer
O43 - CFD: 12/09/2018 - [] D -- C:\Users\Mr_GT\AppData\Local\OneDrive =>.Microsoft Corporation
O43 - CFD: 10/07/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\Open Media LLC =>.Open Media LLC
O43 - CFD: 10/12/2020 - [] D -- C:\Users\Mr_GT\AppData\Local\Origin =>.Electronic Arts, Inc.
O43 - CFD: 09/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Local\Packages =>.Microsoft Corporation
O43 - CFD: 01/11/2020 - [] D -- C:\Users\Mr_GT\AppData\Local\PackageStaging =>.Apcera
O43 - CFD: 14/12/2017 - [0] D -- C:\Users\Mr_GT\AppData\Local\PeerDistRepub =>.Microsoft Corporation
O43 - CFD: 12/10/2021 - [0] D -- C:\Users\Mr_GT\AppData\Local\PlaceholderTileLogoFolder =>.Microsoft Corporation
O43 - CFD: 10/01/2018 - [] D -- C:\Users\Mr_GT\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 17/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Local\Publishers =>.Microsoft Corporation
O43 - CFD: 25/01/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\RadeonInstaller
O43 - CFD: 25/01/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\RadeonSettings
O43 - CFD: 15/01/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\redout
O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Local\Rockstar Games =>.Rockstar Games
O43 - CFD: 16/03/2018 - [] D -- C:\Users\Mr_GT\AppData\Local\Serato =>.Serato
O43 - CFD: 11/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\Sony =>.Sony
O43 - CFD: 17/05/2018 - [] D -- C:\Users\Mr_GT\AppData\Local\speech =>.Microsoft Corporation
O43 - CFD: 16/10/2021 - [] D -- C:\Users\Mr_GT\AppData\Local\SquirrelTemp =>.Squirrels
O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Local\Steam =>.Steam Games
O43 - CFD: 07/09/2021 - [] D -- C:\Users\Mr_GT\AppData\Local\TeamViewer =>.TeamViewer GmbH
O43 - CFD: 10/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 01/11/2020 - [0] SHD -- C:\Users\Mr_GT\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 16/01/2018 - [] D -- C:\Users\Mr_GT\AppData\Local\TileDataLayer =>.Microsoft Corporation
O43 - CFD: 08/04/2018 - [] D -- C:\Users\Mr_GT\AppData\Local\TslGame
O43 - CFD: 15/01/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\UnrealEngine =>.Unreal Software
O43 - CFD: 05/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\VEGAS =>.VEGAS
O43 - CFD: 05/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\VEGAS Pro
O43 - CFD: 14/12/2017 - [0] D -- C:\Users\Mr_GT\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 07/03/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\VS Revo Group =>.VS Revo Group
O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Local\web_engine
O43 - CFD: 29/01/2021 - [] D -- C:\Users\Mr_GT\AppData\Local\WELLBIA
O43 - CFD: 31/03/2022 - [] D -- C:\Users\Mr_GT\AppData\Local\WhatsApp =>.WhatsApp
O43 - CFD: 09/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Local\Wondershare =>.Wondershare
O43 - CFD: 10/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 09/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Local\_
O43 - CFD: 14/12/2017 - [0] D -- C:\Users\Mr_GT\AppData\Local\Programs\Common =>.Microsoft Corporation
O43 - CFD: 10/01/2018 - [] D -- C:\Users\Mr_GT\AppData\Local\Programs\Neon
O43 - CFD: 21/03/2020 - [] D -- C:\Users\Mr_GT\AppData\LocalLow\Adobe =>.Adobe
O43 - CFD: 09/04/2022 - [] D -- C:\Users\Mr_GT\AppData\LocalLow\AMD =>.AMD
O43 - CFD: 11/06/2020 - [] D -- C:\Users\Mr_GT\AppData\LocalLow\Evernote =>.EverNote Corporation
O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\LocalLow\Ghost Town Games
O43 - CFD: 01/07/2021 - [] SD -- C:\Users\Mr_GT\AppData\LocalLow\Microsoft =>.Microsoft Corporation
O43 - CFD: 10/04/2022 - [] D -- C:\Users\Mr_GT\AppData\LocalLow\Mozilla =>.Mozilla Corporation
O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\LocalLow\Playtonic Ltd
O43 - CFD: 21/05/2020 - [] D -- C:\Users\Mr_GT\AppData\LocalLow\Sun =>.Oracle
O43 - CFD: 01/06/2021 - [] D -- C:\Users\Mr_GT\AppData\LocalLow\Temp =>.Microsoft Corporation
O43 - CFD: 10/04/2022 - [0] D -- C:\Users\Mr_GT\AppData\LocalLow\uTorrent
O43 - CFD: 07/12/2021 - [] D -- C:\Users\Mr_GT\Desktop\AMILAB
O43 - CFD: 01/07/2021 - [] D -- C:\Users\Mr_GT\Desktop\Assimil English
O43 - CFD: 07/03/2019 - [] D -- C:\Users\Mr_GT\Desktop\CCleanerPro
O43 - CFD: 13/10/2021 - [] D -- C:\Users\Mr_GT\Desktop\Devis - Facture Trot'Secure
O43 - CFD: 07/12/2021 - [] D -- C:\Users\Mr_GT\Desktop\DUBAI
O43 - CFD: 04/04/2022 - [] D -- C:\Users\Mr_GT\Desktop\ElecMotion
O43 - CFD: 07/12/2021 - [] D -- C:\Users\Mr_GT\Desktop\Finances
O43 - CFD: 07/12/2021 - [] D -- C:\Users\Mr_GT\Desktop\KITTYFUNNY
O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\Desktop\Overcooked
O43 - CFD: 08/12/2021 - [] D -- C:\Users\Mr_GT\Desktop\Ventes
O43 - CFD: 01/11/2020 - [] RD -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 01/11/2020 - [] RD -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 01/11/2020 - [] RD -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 19/04/2020 - [0] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASUS =>.ASUS
O43 - CFD: 07/12/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc =>.SUP.Discord
O43 - CFD: 01/11/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Equalizer APO 1.2
O43 - CFD: 25/11/2018 - [0] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
O43 - CFD: 01/11/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Holdem Manager 3
O43 - CFD: 07/12/2019 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 01/11/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Movavi Video Converter 19 Premium =>.Movavi
O43 - CFD: 01/11/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner =>.Micro-Star International Co
O43 - CFD: 01/11/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RivaTuner Statistics Server =>.RivaTuner
O43 - CFD: 01/11/2020 - [] RD -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 17/05/2018 - [0] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Supercopier =>.SFX Team
O43 - CFD: 07/12/2019 - [] RD -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 01/11/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Telegram Desktop =>.Telegram Messenger LLP
O43 - CFD: 16/10/2021 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp =>.WhatsApp
O43 - CFD: 01/11/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Winamax =>.Winamax
O43 - CFD: 01/11/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation
O43 - CFD: 01/11/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 16/11/2021 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom =>.ZOOM
O43 - CFD: 01/11/2020 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 07/11/2021 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 01/11/2020 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 01/11/2020 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 07/11/2021 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 01/11/2020 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 05/11/2020 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Adobe =>.Adobe
O43 - CFD: 22/02/2021 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\AMD =>.AMD
O43 - CFD: 07/09/2021 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\CrashDumps =>.Microsoft Corporation
O43 - CFD: 22/02/2021 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\D3DSCache =>.Legitimate
O43 - CFD: 01/11/2020 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 01/11/2020 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Origin =>.Electronic Arts, Inc.
O43 - CFD: 22/02/2021 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 01/11/2020 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Origin =>.Electronic Arts, Inc.

---\\ ShellIconOverlayIdentifiers (SIOI) (5) - 0s
O106 - SIOI: [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL =>.Microsoft®
O106 - SIOI: [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL =>.Microsoft®
O106 - SIOI: [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL =>.Microsoft®
O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation
O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation

---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (36) - 1s
O108 - CMH1: Adobe.Acrobat.ContextMenu [64Bits] - {A6595CD1-BF77-430A-A452-18696685F7C7} . (.Adobe Systems Inc. - Adobe Acrobat Context Menu.) -- C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll =>.Adobe Systems, Incorporated®
O108 - CMH1: ANotepad++64 [64Bits] - {B298D29A-A6ED-11DE-BA8C-A68E55D89593} . (. - ShellHandler for Notepad++ (64 bit).) -- D:\Logiciels\Notepad++\NppShell_06.dll =>.Notepad++®
O108 - CMH1: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft®
O108 - CMH1: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH1: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH®
O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH2: RUShellExt [64Bits] - {2C5515DC-2A7E-4BFD-B813-CACC2B685EB7} . (.VS Revo Group - Revo Uninstaller Pro Extension.) -- D:\Logiciels\Revo Uninstaller Pro\RUExt.dll =>.VS Revo Group Ltd.®
O108 - CMH2: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH®
O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH3: DaemonShellExtImageLite [64Bits] - {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} . (.Disc Soft Ltd - DAEMON Tools Lite.) -- D:\Logiciels\DAEMON Tools Lite\DTShl64.dll =>.AVB Disc Soft, SIA®
O108 - CMH3: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- D:\Logiciels\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation®
O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH4: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft®
O108 - CMH4: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH5: ACE [64Bits] - {5E2121EE-0300-11D4-8D3B-444553540000} . (.Advanced Micro Devices, Inc. - AMD Software: Desktop Control Panel.) -- C:\WINDOWS\System32\atiacm64.dll [Unsigned] =>.Advanced Micro Devices, Inc.
O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH6: Adobe.Acrobat.ContextMenu [64Bits] - {A6595CD1-BF77-430A-A452-18696685F7C7} . (.Adobe Systems Inc. - Adobe Acrobat Context Menu.) -- C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll =>.Adobe Systems, Incorporated®
O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH6: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- D:\Logiciels\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation®
O108 - CMH6: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft®
O108 - CMH6: RUShellExt [64Bits] - {2C5515DC-2A7E-4BFD-B813-CACC2B685EB7} . (.VS Revo Group - Revo Uninstaller Pro Extension.) -- D:\Logiciels\Revo Uninstaller Pro\RUExt.dll =>.VS Revo Group Ltd.®
O108 - CMH6: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH®
O108 - CMH7: DaemonShellExtDriveLite [64Bits] - {C06369D6-E77D-4626-9656-1256312BD576} . (.Disc Soft Ltd - DAEMON Tools Lite.) -- D:\Logiciels\DAEMON Tools Lite\DTShl64.dll =>.AVB Disc Soft, SIA®
O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH7: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft®
O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation

---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (19) - 1s
O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft®
O50 - IFEO:C:\WINDOWS\System32\drvinst.exe - (.Microsoft Corporation - Driver Installation Module.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft®
O50 - IFEO:C:\WINDOWS\System32\vmcompute.exe - (.Microsoft Corporation - Service de calcul hôte Hyper-V.) [UseFilter\\1] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\vmwp.exe - (.Microsoft Corporation - Processus de travail de l’ordinateur virtue.) [UseFilter\\1] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation

---\\ LISTE DES PILOTES DU SYSTÈME (479) - 12s
O58 - SDL:2019/12/07 11:07:53 A . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\WINDOWS\System32\drivers\1394ohci.sys [266240] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:53 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107320] =>.Microsoft®
O58 - SDL:2021/05/14 00:22:50 A . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\WINDOWS\System32\drivers\acpi.sys [809288] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Microsoft Corporation - ACPI Devices Driver.) -- C:\WINDOWS\System32\drivers\AcpiDev.sys [23040] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - ACPIEx Driver.) -- C:\WINDOWS\System32\drivers\acpiex.sys [139792] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - ACPI Processor Aggregator Device Driver.) -- C:\WINDOWS\System32\drivers\acpipagr.sys [14336] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\WINDOWS\System32\drivers\acpipmi.sys [18432] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - ACPI Wake Alarm.) -- C:\WINDOWS\System32\drivers\acpitime.sys [16384] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:52:09 A . (.Microsoft Corporation - Audio KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\Acx01000.sys [694272] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:53 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135416] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:39 A . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\afd.sys [651096] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:42 A . (.Microsoft Corporation - AF_UNIX socket provider.) -- C:\WINDOWS\System32\drivers\afunix.sys [48128] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:52:43 A . (.Microsoft Corporation - Gestionnaire d'appels RAS Agile Vpn Minipor.) -- C:\WINDOWS\System32\drivers\agilevpn.sys [118784] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/04/14 13:04:13 A . (.Microsoft Corporation - Application Compatibility Cache.) -- C:\WINDOWS\System32\drivers\ahcache.sys [292352] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/12/13 21:01:26 A . (.Advanced Micro Devices, Inc. - AMD Crash Defender.) -- C:\WINDOWS\System32\drivers\amdfendr.sys [164800] {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices, Inc.
O58 - SDL:2021/12/13 21:01:26 A . (.Advanced Micro Devices, Inc. - AMD Crash Defender Manager Driver.) -- C:\WINDOWS\System32\drivers\amdfendrmgr.sys [33728] {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices, Inc.
O58 - SDL:2019/12/07 11:07:47 A . (.Advanced Micro Devices, Inc - AMD GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\amdgpio2.sys [18432] [Unsigned] =>.Advanced Micro Devices, Inc
O58 - SDL:2019/12/07 11:07:47 A . (.Advanced Micro Devices, Inc - AMD I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\amdi2c.sys [45568] [Unsigned] =>.Advanced Micro Devices, Inc
O58 - SDL:2020/11/02 17:40:32 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdk8.sys [207160] =>.Microsoft®
O58 - SDL:2017/10/13 11:21:16 A . (.Advanced Micro Devices, Inc. - AMD Audio Bus Lower Filter.) -- C:\WINDOWS\System32\drivers\amdkmafd.sys [66888] =>.Advanced Micro Devices, Inc.®
O58 - SDL:2022/03/16 03:41:40 A . (.Advanced Micro Devices, Inc. - AMD PCI Root Bus Lower Filter.) -- C:\WINDOWS\System32\drivers\amdkmpfd.sys [110408] {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices, Inc.
O58 - SDL:2020/11/02 17:40:32 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdppm.sys [211256] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83256] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259384] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26936] =>.Microsoft®
O58 - SDL:2021/08/17 18:34:00 A . (.Advanced Micro Devices, Inc. - AMD Link Controller Emulation.) -- C:\WINDOWS\System32\drivers\amdxe.sys [65168] {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices, Inc.
O58 - SDL:2022/04/01 08:52:34 A . (.Microsoft Corporation - AppID Driver.) -- C:\WINDOWS\System32\drivers\appid.sys [215400] =>.Microsoft®
O58 - SDL:2018/05/10 14:05:04 A . (.Apple Inc. - Apple Mobile Device USB Device.) -- C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35560] =>.WDKTestCert build,131474841775766162®
O58 - SDL:2022/04/01 08:52:34 A . (.Microsoft Corporation - Applocker Filter.) -- C:\WINDOWS\System32\drivers\applockerfltr.sys [18432] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/11/10 18:26:48 A . (.Microsoft Corporation - Microsoft Application Virtualization Stream.) -- C:\WINDOWS\System32\drivers\AppVStrm.sys [138056] =>.Microsoft®
O58 - SDL:2021/11/10 18:26:48 A . (.Microsoft Corporation - Microsoft Application Virtualization VE Man.) -- C:\WINDOWS\System32\drivers\AppvVemgr.sys [174408] =>.Microsoft®
O58 - SDL:2021/11/10 18:26:48 A . (.Microsoft Corporation - Microsoft Application Virtualization VFS Fi.) -- C:\WINDOWS\System32\drivers\AppvVfs.sys [154952] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131896] =>.Microsoft®
O58 - SDL:2015/06/05 15:13:28 A . (.ASMedia Technology Inc - ASMedia USB3 Hub Driver.) -- C:\WINDOWS\System32\drivers\asmthub3.sys [149240] =>.ASMedia Technology Inc.®
O58 - SDL:2015/06/05 15:13:28 A . (.ASMedia Technology Inc - ASMEDIA XHCI Host Controller Driver.) -- C:\WINDOWS\System32\drivers\asmtxhci.sys [442104] =>.ASMedia Technology Inc.®
O58 - SDL:2019/12/07 11:09:07 A . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\WINDOWS\System32\drivers\asyncmac.sys [31232] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/10/13 01:45:13 A . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [30032] =>.Microsoft®
O58 - SDL:2021/10/13 01:45:14 A . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\WINDOWS\System32\drivers\ataport.sys [224080] =>.Microsoft®
O58 - SDL:2021/11/01 07:12:56 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\AtihdWT6.sys [246176] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:41 A . (.Microsoft Corporation - BAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\bam.sys [78136] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Battery Class Driver.) -- C:\WINDOWS\System32\drivers\battc.sys [41272] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:47 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] [Unsigned] =>.Broadcom Corporation
O58 - SDL:2019/12/07 11:09:00 A . (.Microsoft Corporation - BEEP Driver.) -- C:\WINDOWS\System32\drivers\beep.sys [10240] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:52:31 A . (.Microsoft Corporation - Windows Bind Filter Driver.) -- C:\WINDOWS\System32\drivers\bindflt.sys [149320] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:12 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\WINDOWS\System32\drivers\bowser.sys [117760] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:09:39 A . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\WINDOWS\System32\drivers\bridge.sys [127488] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Microsoft Corporation - Microsoft Bluetooth Audio Multiprofile Mana.) -- C:\WINDOWS\System32\drivers\BtaMPM.sys [36352] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:52:07 A . (.Microsoft Corporation - Bluetooth A2DP Driver.) -- C:\WINDOWS\System32\drivers\BthA2dp.sys [287744] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/03/29 14:58:03 A . (.Microsoft Corporation - Extension de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthenum.sys [113664] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/10/13 01:45:13 A . (.Microsoft Corporation - Bluetooth Hands-free Audio Device Driver.) -- C:\WINDOWS\System32\drivers\BthHfAud.sys [65536] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/10/13 01:45:13 A . (.Microsoft Corporation - Bluetooth Hands-Free Audio and Call Control.) -- C:\WINDOWS\System32\drivers\BthHfEnum.sys [154112] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/03/29 14:58:03 A . (.Microsoft Corporation - Bluetooth Transport Extensibility Miniport.) -- C:\WINDOWS\System32\drivers\BthMini.SYS [45568] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\WINDOWS\System32\drivers\bthmodem.sys [76800] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Bluetooth Personal Area Networking.) -- C:\WINDOWS\System32\drivers\bthpan.sys [133632] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/03/29 14:58:03 A . (.Microsoft Corporation - Pilote de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthport.sys [1559552] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/03/29 14:58:03 A . (.Microsoft Corporation - Pilote de Miniport Bluetooth.) -- C:\WINDOWS\System32\drivers\BTHUSB.SYS [110592] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - VHD BTT Filter Driver.) -- C:\WINDOWS\System32\drivers\bttflt.sys [43832] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Button Converter Driver.) -- C:\WINDOWS\System32\drivers\buttonconverter.sys [44032] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:50 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [533816] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:47 A . (.Microsoft Corporation - Charge Arbiration Driver.) -- C:\WINDOWS\System32\drivers\CAD.sys [66576] =>.Microsoft®
O58 - SDL:2019/12/07 11:09:37 A . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\cdfs.sys [100864] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/10/13 01:45:13 A . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\cdrom.sys [175616] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:52:29 A . (.Microsoft Corporation - Event Aggregation Kernel Mode Library.) -- C:\WINDOWS\System32\drivers\CEA.sys [82256] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [144184] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [319800] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - VF library for Chelsio ® T5/T6 Chipset.) -- C:\WINDOWS\System32\drivers\cht4vfx.sys [28672] [Unsigned] =>.Chelsio Communications
O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [1853752] =>.Microsoft®
O58 - SDL:2021/10/13 01:45:28 A . (...) -- C:\WINDOWS\System32\drivers\cimfs.sys [98304] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\WINDOWS\System32\drivers\circlass.sys [52224] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/11/10 18:26:24 A . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\WINDOWS\System32\drivers\Classpnp.sys [417080] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:37 A . (.Microsoft Corporation - Cloud Files Mini Filter Driver.) -- C:\WINDOWS\System32\drivers\cldflt.sys [499712] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:52:40 A . (.Microsoft Corporation - Common Log File System Driver.) -- C:\WINDOWS\System32\drivers\clfs.sys [414024] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:17 A . (.Microsoft Corporation - CLIP Service.) -- C:\WINDOWS\System32\drivers\ClipSp.sys [1094456] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\WINDOWS\System32\drivers\CmBatt.sys [36864] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/04/14 13:03:56 A . (.Microsoft Corporation - Noyau Gestionnaire de configuration Configu.) -- C:\WINDOWS\System32\drivers\cmimcext.sys [29000] =>.Microsoft®
O58 - SDL:2022/03/29 14:58:15 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\WINDOWS\System32\drivers\cng.sys [746416] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:37 A . (.Microsoft Corporation - CNG Hardware Assist algorithm provider.) -- C:\WINDOWS\System32\drivers\cnghwassist.sys [40968] =>.Microsoft®
O58 - SDL:2021/07/14 12:00:40 A . (.Microsoft Corporation - Console Driver.) -- C:\WINDOWS\System32\drivers\condrv.sys [57144] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\crashdmp.sys [99368] =>.Microsoft®
O58 - SDL:2022/04/01 08:53:10 A . (.Microsoft Corporation - Windows Client Side Caching Driver.) -- C:\WINDOWS\System32\drivers\csc.sys [586752] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/24 15:30:27 A . (.Microsoft Corporation - DAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\dam.sys [97096] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:07 A . (.Microsoft Corporation - Xbox Device Authentication Driver.) -- C:\WINDOWS\System32\drivers\devauthe.sys [47104] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/03/10 00:54:13 A . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\dfsc.sys [152064] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/02/12 01:18:23 A . (.Microsoft Corporation - PnP Disk Driver.) -- C:\WINDOWS\System32\drivers\disk.sys [98624] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:52 A . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\WINDOWS\System32\drivers\Diskdump.sys [38200] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:52 A . (.Microsoft Corporation - Boot Over USB Dump Driver.) -- C:\WINDOWS\System32\drivers\Dmpusbstor.sys [15360] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Mémoire dynamique.) -- C:\WINDOWS\System32\drivers\dmvsc.sys [59192] =>.Microsoft®
O58 - SDL:2021/01/13 02:14:42 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmk.sys [97792] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/01/13 02:14:42 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmkaud.sys [16128] =>.Microsoft®
O58 - SDL:2017/12/14 21:41:46 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual SCSI Bus Driver.) -- C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264] =>.Disc Soft Ltd®
O58 - SDL:2017/12/14 21:41:50 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual USB Bus Driver.) -- C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672] =>.Disc Soft Ltd®
O58 - SDL:2019/12/07 11:08:46 A . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpata.sys [37392] =>.Microsoft®
O58 - SDL:2022/03/29 14:58:38 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\WINDOWS\System32\drivers\dumpfve.sys [94176] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:07 A . (.Microsoft Corporation - SD Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsd.sys [196432] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:37 A . (.Microsoft Corporation - SD Host Controller Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsdport.sys [32768] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:08:52 A . (.Microsoft Corporation - Storport Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpstorport.sys [35128] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:17 A . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\WINDOWS\System32\drivers\dxgkrnl.sys [3814768] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:17 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms1.sys [456016] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:17 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms2.sys [901960] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\WINDOWS\System32\drivers\e1i65x64.sys [553984] [Unsigned] =>.Intel Corporation
O58 - SDL:2021/05/14 00:23:19 A . (.Microsoft Corporation - Enhanced Storage Class driver for IEEE 1667.) -- C:\WINDOWS\System32\drivers\EhStorClass.sys [95032] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Microsoft driver for storage devices suppor.) -- C:\WINDOWS\System32\drivers\EhStorTcgDrv.sys [124728] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Error Device Driver.) -- C:\WINDOWS\System32\drivers\errdev.sys [15872] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:50 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3418936] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:08 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\WINDOWS\System32\drivers\exfat.sys [418648] =>.Microsoft®
O58 - SDL:2020/12/13 22:19:33 A . (.Malwarebytes - Malwarebytes Anti-Ransomware Protection.) -- C:\WINDOWS\System32\drivers\farflt.sys [197792] =>.Malwarebytes Inc®
O58 - SDL:2022/04/01 08:52:08 A . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\WINDOWS\System32\drivers\fastfat.sys [426352] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\WINDOWS\System32\drivers\fdc.sys [34816] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - Windows sandboxing and encryption filter.) -- C:\WINDOWS\System32\drivers\filecrypt.sys [59392] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:08:46 A . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\WINDOWS\System32\drivers\fileinfo.sys [94736] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:46 A . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\WINDOWS\System32\drivers\filetrace.sys [40448] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Floppy Driver.) -- C:\WINDOWS\System32\drivers\flpydisk.sys [28672] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:52:38 A . (.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) -- C:\WINDOWS\System32\drivers\fltMgr.sys [435568] =>.Microsoft®
O58 - SDL:2021/04/14 13:03:56 A . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) -- C:\WINDOWS\System32\drivers\fsdepends.sys [69968] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\WINDOWS\System32\drivers\fs_rec.sys [33592] =>.Microsoft®
O58 - SDL:2022/03/29 14:58:38 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\WINDOWS\System32\drivers\fvevol.sys [801608] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:39 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\WINDOWS\System32\drivers\FWPKCLNT.SYS [502584] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:05 A . (.Microsoft Corporation - GPU Energy Kernel Driver.) -- C:\WINDOWS\System32\drivers\gpuenergydrv.sys [8704] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:52:07 A . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [134656] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/11/01 14:02:11 A . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\HdAudio.sys [430080] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Hid Battery Driver.) -- C:\WINDOWS\System32\drivers\hidbatt.sys [39440] =>.Microsoft®
O58 - SDL:2020/11/01 14:02:11 A . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périp.) -- C:\WINDOWS\System32\drivers\hidbth.sys [120320] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/04/14 13:03:54 A . (.Microsoft Corporation - Bibliothèque Hid Class.) -- C:\WINDOWS\System32\drivers\hidclass.sys [225792] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - I2C HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidi2c.sys [57344] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - HID Button over Interrupt Driver.) -- C:\WINDOWS\System32\drivers\hidinterrupt.sys [55824] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidir.sys [48640] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/04/14 13:03:54 A . (.Microsoft Corporation - Hid Parsing Library.) -- C:\WINDOWS\System32\drivers\hidparse.sys [46080] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - SPI HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidspi.sys [66560] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/04/14 13:03:54 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidusb.sys [44032] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/03/10 00:54:36 A . (.Microsoft Corporation - Network driver for proxying traffic.) -- C:\WINDOWS\System32\drivers\hnswfpdriver.sys [21328] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64312] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:38 A . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\WINDOWS\System32\drivers\http.sys [1576760] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Hyper-V Crashdump.) -- C:\WINDOWS\System32\drivers\hvcrash.sys [35128] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:55 A . (.Microsoft Corporation - Hypervisor Boot Driver.) -- C:\WINDOWS\System32\drivers\hvservice.sys [95048] =>.Microsoft®
O58 - SDL:2021/04/14 13:04:28 A . (.Microsoft Corporation - Microsoft Hyper-V Socket Provider.) -- C:\WINDOWS\System32\drivers\hvsocket.sys [148280] =>.Microsoft®
O58 - SDL:2021/03/10 00:54:36 A . (.Microsoft Corporation - Microsoft Hyper-V Socket Provider Control D.) -- C:\WINDOWS\System32\drivers\hvsocketcontrol.sys [36176] =>.Microsoft®
O58 - SDL:2020/11/01 14:02:36 A . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\WINDOWS\System32\drivers\hwpolicy.sys [33096] =>.Microsoft®
O58 - SDL:2019/12/27 04:18:54 A . (.Huawei Technologies Co., Ltd. - USB NDIS Miniport Driver.) -- C:\WINDOWS\System32\drivers\hw_quusbnet.sys [287232] [Unsigned] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2019/12/27 04:18:54 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\hw_usbdev.sys [116864] [Unsigned] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Microsoft VMBus Synthetic Keyboard Driver.) -- C:\WINDOWS\System32\drivers\hyperkbd.sys [27448] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Microsoft VMBus Video Device Miniport Drive.) -- C:\WINDOWS\System32\drivers\HyperVideo.sys [41784] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [118272] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [36352] [Unsigned] =>.Intel(R) Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [91136] [Unsigned] =>.Intel(R) Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [93184] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [175104] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [177152] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:50 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group®
O58 - SDL:2019/12/07 11:07:50 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] [Unsigned] =>.Intel Corporation
O58 - SDL:2015/07/07 09:33:10 A . (.Intel Corporation - NDIS 6.30 Advanced Networking Services..) -- C:\WINDOWS\System32\drivers\iANSW60e.sys [155192] =>.Intel(R) Intel Network Drivers®
O58 - SDL:2015/07/29 13:44:00 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver -.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [1462720] =>.Intel Corporation - Rapid Storage Technology®
O58 - SDL:2019/12/07 11:07:54 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAVC.sys [884752] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412176] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [558904] =>.Microsoft®
O58 - SDL:2020/11/02 17:41:29 A . (.Microsoft Corporation - Indirect displays kernel-mode filter driver.) -- C:\WINDOWS\System32\drivers\IndirectKmd.sys [47104] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/10/13 01:45:14 A . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\WINDOWS\System32\drivers\intelide.sys [19792] =>.Microsoft®
O58 - SDL:2021/10/13 01:45:13 A . (.Microsoft Corporation - Intel Power Engine Plugin.) -- C:\WINDOWS\System32\drivers\intelpep.sys [418800] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:47 A . (.Microsoft Corporation - Intel Power Limit Driver.) -- C:\WINDOWS\System32\drivers\intelpmax.sys [30720] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/11/02 17:40:32 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\intelppm.sys [230728] =>.Microsoft®
O58 - SDL:2020/11/02 17:40:32 A . (.Microsoft Corporation - Intel Telemetry Driver.) -- C:\WINDOWS\System32\drivers\IntelTA.sys [26608] =>.Microsoft®
O58 - SDL:2013/07/02 16:29:20 A . (.ASUSTeK Computer Inc. - ASUS Kernel Mode Driver for NT.) -- C:\WINDOWS\System32\drivers\IOMap64.sys [24824] =>.ASUSTeK Computer Inc.®
O58 - SDL:2021/06/24 15:30:13 A . (.Microsoft Corporation - Filtre de contrôle de taux d’E/S.) -- C:\WINDOWS\System32\drivers\iorate.sys [57168] =>.Microsoft®
O58 - SDL:2021/05/14 00:23:12 A . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\WINDOWS\System32\drivers\ipfltdrv.sys [90112] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/24 15:30:12 A . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\WINDOWS\System32\drivers\IPMIDrv.sys [117584] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:34 A . (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\ipnat.sys [225280] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - IPT Driver.) -- C:\WINDOWS\System32\drivers\ipt.sys [59704] =>.Microsoft®
O58 - SDL:2015/05/07 15:59:10 A . (.Intel Corporation - Intel(R) Network Adapter Diagnostic Driver.) -- C:\WINDOWS\System32\drivers\iqvw64e.sys [37832] =>.Intel(R) Intel Network Drivers®
O58 - SDL:2021/10/10 19:28:31 A . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\WINDOWS\System32\drivers\isapnp.sys [22864] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\ItSas35i.sys [172344] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\WINDOWS\System32\drivers\kbdclass.sys [71480] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\WINDOWS\System32\drivers\kbdhid.sys [46592] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/03/10 00:54:43 A . (.Microsoft Corporation - Keyboard Lockdown Subsystem.) -- C:\WINDOWS\System32\drivers\kbldfltr.sys [29000] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Microsoft Kernel Debugger Network Miniport.) -- C:\WINDOWS\System32\drivers\kdnic.sys [33296] =>.Microsoft®
O58 - SDL:2021/07/07 02:37:38 A . (.Microsoft Corporation - Network Power Dependency Broker.) -- C:\WINDOWS\System32\drivers\KNetPwrDepBroker.sys [32256] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/11/11 19:33:10 A . (.Microsoft Corporation - Kernel CSA Library.) -- C:\WINDOWS\System32\drivers\ks.sys [449024] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:52:39 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecdd.sys [148312] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:38 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecpkg.sys [180040] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:58 A . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\WINDOWS\System32\drivers\ksthunk.sys [29696] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:03:29 A . (.Microsoft Corporation - Network driver for bridging packets between.) -- C:\WINDOWS\System32\drivers\l2bridge.sys [58888] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:55 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\WINDOWS\System32\drivers\lltdio.sys [72704] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/04/11 15:34:51 A . (...) -- C:\WINDOWS\System32\drivers\lpsport.sys [61304] =>.AVG Technologies CZ, s.r.o.®
O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108856] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [124216] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [135992] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82744] =>.Microsoft®
O58 - SDL:2021/03/10 00:54:16 A . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) -- C:\WINDOWS\System32\drivers\luafv.sys [140800] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:03:26 A . (.Microsoft Corporation - lun parser.) -- C:\WINDOWS\System32\drivers\lunparser.sys [35856] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - MA-USB Host Controller Driver.) -- C:\WINDOWS\System32\drivers\mausbhost.sys [537608] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - MA-USB IP Driver.) -- C:\WINDOWS\System32\drivers\mausbip.sys [64016] =>.Microsoft®
O58 - SDL:2020/12/11 21:00:48 A . (.Malwarebytes - Malwarebytes Anti-Exploit.) -- C:\WINDOWS\System32\drivers\mbae64.sys [153312] =>.Malwarebytes Corporation®
O58 - SDL:2020/12/13 22:19:35 A . (.Malwarebytes - Malwarebytes Real-Time Protection.) -- C:\WINDOWS\System32\drivers\mbam.sys [77496] =>.Malwarebytes Inc®
O58 - SDL:2020/12/13 22:19:31 A . (.Malwarebytes - Malwarebytes Chameleon.) -- C:\WINDOWS\System32\drivers\MbamChameleon.sys [220160] =>.Malwarebytes Inc®
O58 - SDL:2020/12/11 21:00:48 A . (.Malwarebytes - Malwarebytes Early Launch Anti-Malware Driv.) -- C:\WINDOWS\System32\drivers\MbamElam.sys [19912] =>.Microsoft®
O58 - SDL:2020/12/11 21:01:22 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys [248968] =>.Malwarebytes Inc®
O58 - SDL:2021/07/07 02:37:38 A . (.Microsoft Corporation - Windows Mobile Broadband Class Extension.) -- C:\WINDOWS\System32\drivers\MbbCx.sys [391168] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:09:00 A . (.Microsoft Corporation - Medium changer class driver.) -- C:\WINDOWS\System32\drivers\mcd.sys [25088] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59704] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [81720] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas35i.sys [105480] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575800] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:47 A . (.Microsoft Corporation - Pilote de transport Microsoft Bluetooth Avr.) -- C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [65024] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/11/01 14:02:11 A . (.Microsoft Corporation - Legacy Bluetooth LE Bus Enumerator.) -- C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [106496] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [1131320] =>.Microsoft®
O58 - SDL:2020/11/02 17:40:43 A . (.Microsoft Corporation - MMCSS Driver.) -- C:\WINDOWS\System32\drivers\mmcss.sys [53248] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/01/13 02:16:09 A . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\WINDOWS\System32\drivers\modem.sys [47104] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/08/10 22:47:44 A . (.Microsoft Corporation - Monitor Driver.) -- C:\WINDOWS\System32\drivers\monitor.sys [83968] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\WINDOWS\System32\drivers\mouclass.sys [67600] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\WINDOWS\System32\drivers\mouhid.sys [35328] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\WINDOWS\System32\drivers\mountmgr.sys [110392] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:33 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\WINDOWS\System32\drivers\mpsdrv.sys [80896] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:53:03 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\WINDOWS\System32\drivers\mrxdav.sys [165888] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:52:40 A . (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\mrxsmb.sys [579432] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:40 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\WINDOWS\System32\drivers\mrxsmb20.sys [261448] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Mailslot driver.) -- C:\WINDOWS\System32\drivers\msfs.sys [44048] =>.Microsoft®
O58 - SDL:2020/11/01 14:02:20 A . (.Microsoft Corporation - GPIO Class Extension Driver.) -- C:\WINDOWS\System32\drivers\msgpioclx.sys [183112] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - GPIO Button Driver.) -- C:\WINDOWS\System32\drivers\msgpiowin32.sys [56120] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:36 A . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\WINDOWS\System32\drivers\mshidkmdf.sys [8192] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:08:16 A . (.Microsoft Corporation - Pilote direct pour interface HID-UMDF.) -- C:\WINDOWS\System32\drivers\mshidumdf.sys [12288] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:08:36 A . (.Microsoft Corporation - Hardware Notification Class Extension Drive.) -- C:\WINDOWS\System32\drivers\mshwnclx.sys [30208] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/10/10 19:28:31 A . (.Microsoft Corporation - ISA Driver.) -- C:\WINDOWS\System32\drivers\msisadrv.sys [20280] =>.Microsoft®
O58 - SDL:2021/08/10 22:47:44 A . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\WINDOWS\System32\drivers\msiscsi.sys [293176] =>.Microsoft®
O58 - SDL:2020/11/11 19:33:10 A . (.Microsoft Corporation - MS KS Server.) -- C:\WINDOWS\System32\drivers\mskssrv.sys [34816] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:09:05 A . (.Microsoft Corporation - Pilote de protocole LLDP (Link Layer Discov.) -- C:\WINDOWS\System32\drivers\mslldp.sys [78848] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:08:58 A . (.Microsoft Corporation - MS Proxy Clock.) -- C:\WINDOWS\System32\drivers\mspclock.sys [11264] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:08:58 A . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\WINDOWS\System32\drivers\mspqm.sys [11264] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/11/01 14:02:35 A . (.Microsoft Corporation - Windows QUIC Driver.) -- C:\WINDOWS\System32\drivers\msquic.sys [322376] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:39 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\WINDOWS\System32\drivers\msrpc.sys [375608] =>.Microsoft®
O58 - SDL:2022/03/29 14:58:03 A . (.Microsoft Corporation - Pilote du filtre de système de fichiers du.) -- C:\WINDOWS\System32\drivers\mssecflt.sys [331064] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\WINDOWS\System32\drivers\mssmbios.sys [47928] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:58 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\WINDOWS\System32\drivers\mstee.sys [12288] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:53 A . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\WINDOWS\System32\drivers\MTConfig.sys [17920] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/03/10 00:54:13 A . (.Microsoft Corporation - Pilote de fournisseur UNC multiples.) -- C:\WINDOWS\System32\drivers\mup.sys [132920] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63800] =>.Microsoft®
O58 - SDL:2020/12/13 22:19:32 A . (.Malwarebytes - Malwarebytes Web Protection.) -- C:\WINDOWS\System32\drivers\mwac.sys [139424] =>.Malwarebytes Inc®
O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [146232] =>.Microsoft®
O58 - SDL:2022/03/29 14:58:16 A . (.Microsoft Corporation - NDIS (Network Driver Interface Specificatio.) -- C:\WINDOWS\System32\drivers\ndis.sys [1476944] =>.Microsoft®
O58 - SDL:2019/12/07 11:09:48 A . (.Microsoft Corporation - Microsoft NDIS Packet Capture Filter Driver.) -- C:\WINDOWS\System32\drivers\ndiscap.sys [54272] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/11/02 17:41:40 A . (.Microsoft Corporation - Microsoft Network Adapter Multiplexor.) -- C:\WINDOWS\System32\drivers\NdisImPlatform.sys [135168] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/11/02 17:41:43 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\WINDOWS\System32\drivers\ndistapi.sys [28672] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\WINDOWS\System32\drivers\ndisuio.sys [70656] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:09:05 A . (.Microsoft Corporation - Énumérateur de cartes réseau virtuelles Mic.) -- C:\WINDOWS\System32\drivers\NdisVirtualBus.sys [23040] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/11/10 18:26:27 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\WINDOWS\System32\drivers\ndiswan.sys [212992] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:09:48 A . (.Microsoft Corporation - RDMA Sample Driver.) -- C:\WINDOWS\System32\drivers\NDKPing.sys [72720] =>.Microsoft®
O58 - SDL:2020/11/02 17:41:43 A . (.Microsoft Corporation - NDIS Proxy.) -- C:\WINDOWS\System32\drivers\ndproxy.sys [93696] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:09:33 A . (.Microsoft Corporation - Windows Network Data Usage Monitoring Drive.) -- C:\WINDOWS\System32\drivers\Ndu.sys [131584] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/03/29 14:58:16 A . (.Microsoft Corporation - Network Adapter Class Extension for WDF.) -- C:\WINDOWS\System32\drivers\NetAdapterCx.sys [214528] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:09:04 A . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\WINDOWS\System32\drivers\netbios.sys [64312] =>.Microsoft®
O58 - SDL:2020/11/02 17:41:40 A . (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netbt.sys [341504] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:52:39 A . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\WINDOWS\System32\drivers\netio.sys [601944] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:08 A . (.Microsoft Corporation - Miniport NDIS virtuel.) -- C:\WINDOWS\System32\drivers\netvsc.sys [252264] =>.Microsoft®
O58 - SDL:2017/01/02 16:01:46 A . (.Riverbed Technology, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) -- C:\WINDOWS\System32\drivers\npf.sys [36600] =>.Riverbed Technology, Inc.®
O58 - SDL:2022/04/01 08:52:38 A . (.Microsoft Corporation - NPFS Driver.) -- C:\WINDOWS\System32\drivers\npfs.sys [87368] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Named pipe service triggers.) -- C:\WINDOWS\System32\drivers\npsvctrig.sys [27648] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/11/02 17:41:36 A . (.Microsoft Corporation - NSI Proxy.) -- C:\WINDOWS\System32\drivers\nsiproxy.sys [48640] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:52:39 A . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2851664] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:58 A . (.Microsoft Corporation - NTOS extension host driver.) -- C:\WINDOWS\System32\drivers\ntosext.sys [20792] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - NULL Driver.) -- C:\WINDOWS\System32\drivers\null.sys [7680] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Pilote de périphérique NVDIMM.) -- C:\WINDOWS\System32\drivers\nvdimm.sys [168464] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150328] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166200] =>.Microsoft®
O58 - SDL:2022/03/29 14:58:05 A . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\WINDOWS\System32\drivers\nwifi.sys [757760] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/11/02 17:41:28 A . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\WINDOWS\System32\drivers\pacer.sys [161608] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\parport.sys [109056] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/03/29 14:58:16 A . (.Microsoft Corporation - Partition driver.) -- C:\WINDOWS\System32\drivers\partmgr.sys [182608] =>.Microsoft®
O58 - SDL:2019/12/07 18:03:26 A . (.Microsoft Corporation - Pass thru parser.) -- C:\WINDOWS\System32\drivers\passthruparser.sys [39440] =>.Microsoft®
O58 - SDL:2022/03/29 14:58:03 A . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\WINDOWS\System32\drivers\pci.sys [469840] =>.Microsoft®
O58 - SDL:2021/10/13 01:45:14 A . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\pciide.sys [16712] =>.Microsoft®
O58 - SDL:2021/10/13 01:45:14 A . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\WINDOWS\System32\drivers\pciidex.sys [56656] =>.Microsoft®
O58 - SDL:2021/11/10 18:26:01 A . (.Microsoft Corporation - Microsoft PCI Proxy Driver.) -- C:\WINDOWS\System32\drivers\pcip.sys [72016] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\WINDOWS\System32\drivers\pcmcia.sys [127800] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:37 A . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\WINDOWS\System32\drivers\pcw.sys [57656] =>.Microsoft®
O58 - SDL:2021/06/24 15:30:14 A . (.Microsoft Corporation - Power Dependency Coordinator Driver.) -- C:\WINDOWS\System32\drivers\pdc.sys [159056] =>.Microsoft®
O58 - SDL:2022/03/29 14:58:04 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\WINDOWS\System32\drivers\PEAuth.sys [823808] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58680] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [68408] =>.Microsoft®
O58 - SDL:2022/04/01 08:53:03 A . (.Microsoft Corporation - Pilote du moniteur de paquets.) -- C:\WINDOWS\System32\drivers\PktMon.sys [130360] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Pilote de mémoire persistante.) -- C:\WINDOWS\System32\drivers\pmem.sys [138040] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Pilote mémoire Plug and Play.) -- C:\WINDOWS\System32\drivers\pnpmem.sys [17408] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:08:36 A . (.Microsoft Corporation - Port Device Class Configuration Filter Driv.) -- C:\WINDOWS\System32\drivers\portcfg.sys [27136] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/01/13 02:14:42 A . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\WINDOWS\System32\drivers\portcls.sys [388608] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/11/02 17:40:32 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\processr.sys [216376] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:33 A . (.Microsoft Corporation - Time Travel Debugging Process Launch Monito.) -- C:\WINDOWS\System32\drivers\ProcLaunchMon.sys [43448] =>.Microsoft®
O58 - SDL:2019/12/07 18:03:26 A . (.Microsoft Corporation - Analyseur de disque dur virtuel de proxy.) -- C:\WINDOWS\System32\drivers\pvhdparser.sys [61240] =>.Microsoft®
O58 - SDL:2019/12/07 11:09:05 A . (.Microsoft Corporation - Pilote du support de Microsoft Quality Wind.) -- C:\WINDOWS\System32\drivers\qwavedrv.sys [53248] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - RAM Disk Driver.) -- C:\WINDOWS\System32\drivers\ramdisk.sys [42296] =>.Microsoft®
O58 - SDL:2019/12/07 18:03:26 A . (.Microsoft Corporation - Analyseur de RAM.) -- C:\WINDOWS\System32\drivers\ramparser.sys [44040] =>.Microsoft®
O58 - SDL:2020/11/02 17:41:43 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\WINDOWS\System32\drivers\rasacd.sys [20480] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/11/01 14:02:42 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\rasl2tp.sys [110080] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:09:07 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\raspppoe.sys [87552] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:52:44 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\WINDOWS\System32\drivers\raspptp.sys [101376] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/11/01 14:02:42 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\WINDOWS\System32\drivers\rassstp.sys [86016] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:52:40 A . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) -- C:\WINDOWS\System32\drivers\rdbss.sys [462696] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\WINDOWS\System32\drivers\rdpbus.sys [28672] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/04/14 13:04:27 A . (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [169984] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:53:02 A . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\WINDOWS\System32\drivers\rdpvideominiport.sys [32624] =>.Microsoft®
O58 - SDL:2019/12/07 11:09:54 A . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\WINDOWS\System32\drivers\rdyboost.sys [297784] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:34 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\WINDOWS\System32\drivers\refs.sys [2004792] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:34 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\WINDOWS\System32\drivers\refsv1.sys [990536] =>.Microsoft®
O58 - SDL:2016/12/21 15:52:50 A . (.VS Revo Group - Revo Uninstaller Minifilter.) -- C:\WINDOWS\System32\drivers\revoflt.sys [40240] =>.VS Revo Group®
O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Bluetooth RFCOMM Driver.) -- C:\WINDOWS\System32\drivers\rfcomm.sys [213504] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/04/14 13:03:54 A . (.Microsoft Corporation - Microsoft RemoteFX VM Transport.) -- C:\WINDOWS\System32\drivers\RfxVmt.sys [8192] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - ResourceHub Proxy Driver.) -- C:\WINDOWS\System32\drivers\rhproxy.sys [115712] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:09:41 A . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\WINDOWS\System32\drivers\rmcast.sys [158208] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:09:07 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\WINDOWS\System32\drivers\RNDISMP.sys [37376] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/11/01 14:02:11 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\WINDOWS\System32\drivers\rndismp6.sys [41472] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:09:51 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\WINDOWS\System32\drivers\rootmdm.sys [13824] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:08:55 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) -- C:\WINDOWS\System32\drivers\rspndr.sys [89088] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/12/19 16:09:10 A . (...) -- C:\WINDOWS\System32\drivers\RsProxy.sys [15976] =>.Realtek Semiconductor Corp®
O58 - SDL:2019/12/07 11:08:09 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [48640] [Unsigned] =>.Realtek
O58 - SDL:2018/05/30 22:06:38 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [6248896] =>.Realtek Semiconductor Corp.®
O58 - SDL:2021/10/13 01:45:13 A . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\WINDOWS\System32\drivers\sbp2port.sys [118088] =>.Microsoft®
O58 - SDL:2021/03/10 00:54:18 A . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce.) -- C:\WINDOWS\System32\drivers\scfilter.sys [44032] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:52:07 A . (.Microsoft Corporation - Pilote de bus de mémoire de classe stockage.) -- C:\WINDOWS\System32\drivers\scmbus.sys [158520] =>.Microsoft®
O58 - SDL:2021/10/13 01:45:36 A . (.Microsoft Corporation - SCSI Port Driver.) -- C:\WINDOWS\System32\drivers\scsiport.sys [188232] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:07 A . (.Microsoft Corporation - Pilote du bus numérique sécurisé (SD).) -- C:\WINDOWS\System32\drivers\sdbus.sys [306544] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - SDF Reflector.) -- C:\WINDOWS\System32\drivers\SDFRd.sys [35128] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - SD Host Controller Port Driver.) -- C:\WINDOWS\System32\drivers\sdport.sys [105488] =>.Microsoft®
O58 - SDL:2021/10/13 01:45:14 A . (.Microsoft Corporation - Pilote de classe de stockage SD.) -- C:\WINDOWS\System32\drivers\sdstor.sys [104264] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:36 A . (.Microsoft Corporation - Serial Class Extension.) -- C:\WINDOWS\System32\drivers\SerCx.sys [86328] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:36 A . (.Microsoft Corporation - Serial Class Extension V2.) -- C:\WINDOWS\System32\drivers\SerCx2.sys [173072] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\WINDOWS\System32\drivers\serenum.sys [27648] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Pilote de périphérique série.) -- C:\WINDOWS\System32\drivers\serial.sys [90624] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\WINDOWS\System32\drivers\sermouse.sys [29184] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/11/01 14:02:11 A . (.Microsoft Corporation - Serial Imaging Device Driver.) -- C:\WINDOWS\System32\drivers\serscan.sys [13312] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\WINDOWS\System32\drivers\sfloppy.sys [19456] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:09:33 A . (.Microsoft Corporation - System Guard Runtime Monitor Agent Driver.) -- C:\WINDOWS\System32\drivers\SgrmAgent.sys [88080] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44856] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81720] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Sleep Study Helper.) -- C:\WINDOWS\System32\drivers\SleepStudyHelper.sys [38200] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Microsemi Corportation - Storport Miniport Driver for SmartRAID/Smar.) -- C:\WINDOWS\System32\drivers\SmartSAMD.sys [209720] =>.Microsoft®
O58 - SDL:2019/12/07 11:09:09 A . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\WINDOWS\System32\drivers\smclib.sys [21504] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:52:07 A . (.Microsoft Corporation - Storage Spaces Dump Driver.) -- C:\WINDOWS\System32\drivers\spacedump.sys [215864] =>.Microsoft®
O58 - SDL:2019/12/07 11:09:34 A . (.Microsoft Corporation - Storage Spaces Parser.) -- C:\WINDOWS\System32\drivers\spaceparser.sys [26624] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:52:07 A . (.Microsoft Corporation - Storage Spaces Driver.) -- C:\WINDOWS\System32\drivers\spaceport.sys [679736] =>.Microsoft®
O58 - SDL:2019/12/07 16:53:40 A . (.Microsoft Corporation - Holographic Spatial Graph Filter.) -- C:\WINDOWS\System32\drivers\SpatialGraphFilter.sys [90936] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:37 A . (.Microsoft Corporation - SPB Class Extension.) -- C:\WINDOWS\System32\drivers\SpbCx.sys [87352] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:40 A . (.Microsoft Corporation - Pilote de serveur SMB 2.0.) -- C:\WINDOWS\System32\drivers\srv2.sys [784896] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:52:40 A . (.Microsoft Corporation - Server Network driver.) -- C:\WINDOWS\System32\drivers\srvnet.sys [315904] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:53 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31032] =>.Microsoft®
O58 - SDL:2021/10/13 01:45:14 A . (.Microsoft Corporation - MS AHCI Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storahci.sys [186168] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:07 A . (.Microsoft Corporation - Microsoft NVM Express Storport Miniport Dri.) -- C:\WINDOWS\System32\drivers\stornvme.sys [162128] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:09 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\WINDOWS\System32\drivers\storport.sys [723280] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:37 A . (.Microsoft Corporation - Filtre de qualité de service de stockage.) -- C:\WINDOWS\System32\drivers\storqosflt.sys [92984] =>.Microsoft®
O58 - SDL:2021/11/10 18:26:00 A . (.Microsoft Corporation - MS UFS Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storufs.sys [61264] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Storage VSC Driver.) -- C:\WINDOWS\System32\drivers\storvsc.sys [44048] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:08 A . (.Microsoft Corporation - Pilote du fournisseur de services de virtua.) -- C:\WINDOWS\System32\drivers\storvsp.sys [183144] =>.Microsoft®
O58 - SDL:2019/12/07 11:09:00 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\WINDOWS\System32\drivers\stream.sys [82432] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/04/14 13:03:54 A . (.Microsoft Corporation - Microsoft RemoteFX Synth3D Video VSC.) -- C:\WINDOWS\System32\drivers\Synth3dVsc.sys [6656] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/04/14 13:03:54 A . (.Microsoft Corporation - Microsoft RemoteFX Synth3D Video VSP.) -- C:\WINDOWS\System32\drivers\Synth3dVsp.sys [6656] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:09:00 A . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\WINDOWS\System32\drivers\tape.sys [33280] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/04/14 13:03:58 A . (.Microsoft Corporation - Export driver for kernel mode TPM API.) -- C:\WINDOWS\System32\drivers\tbs.sys [31568] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:39 A . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\WINDOWS\System32\drivers\tcpip.sys [2991416] =>.Microsoft®
O58 - SDL:2019/12/07 11:09:04 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\WINDOWS\System32\drivers\tcpipreg.sys [54784] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - TDI Wrapper.) -- C:\WINDOWS\System32\drivers\tdi.sys [39736] =>.Microsoft®
O58 - SDL:2021/10/10 19:28:55 A . (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [117584] =>.Microsoft®
O58 - SDL:2018/05/06 08:52:26 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys [228992] =>.Intel(R) Embedded Subsystems and IP Blocks Group®
O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Terminal Server Input Driver.) -- C:\WINDOWS\System32\drivers\terminpt.sys [41272] =>.Microsoft®
O58 - SDL:2021/10/10 19:28:46 A . (.Microsoft Corporation - Kernel Transaction Manager Driver.) -- C:\WINDOWS\System32\drivers\tm.sys [142136] =>.Microsoft®
O58 - SDL:2021/01/13 02:14:42 A . (.Microsoft Corporation - Pilote de périphérique TPM.) -- C:\WINDOWS\System32\drivers\tpm.sys [255288] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du.) -- C:\WINDOWS\System32\drivers\TsUsbFlt.sys [66560] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/08/10 22:47:44 A . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\WINDOWS\System32\drivers\TsUsbGD.sys [37888] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:52:08 A . (.Microsoft Corporation - Concentrateur USB du Bureau à distance.) -- C:\WINDOWS\System32\drivers\tsusbhub.sys [137728] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:09:04 A . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\WINDOWS\System32\drivers\tunnel.sys [129024] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/24 15:30:12 A . (.Microsoft Corporation - Microsoft Uasp Driver.) -- C:\WINDOWS\System32\drivers\uaspstor.sys [79160] =>.Microsoft®
O58 - SDL:2021/10/13 01:45:28 A . (.Microsoft Corporation - USB Connector Manager KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmCx.sys [160256] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:08:37 A . (.Microsoft Corporation - UCM-TCPCI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmTcpciCx.sys [188416] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - UCM-UCSI ACPI Client Driver.) -- C:\WINDOWS\System32\drivers\UcmUcsiAcpiClient.sys [36864] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/11/01 14:02:28 A . (.Microsoft Corporation - UCM-UCSI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmUcsiCx.sys [113152] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - USB Controller Extension.) -- C:\WINDOWS\System32\drivers\Ucx01000.sys [259896] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - "udecx.DRIVER".) -- C:\WINDOWS\System32\drivers\Udecx.sys [52736] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:09:51 A . (.Microsoft Corporation - UDF File System Driver.) -- C:\WINDOWS\System32\drivers\udfs.sys [344064] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/11/10 18:26:49 A . (.Microsoft Corporation - Microsoft User Experience Virtualization Ag.) -- C:\WINDOWS\System32\drivers\UevAgentDriver.sys [41288] =>.Microsoft®
O58 - SDL:2021/11/10 18:26:18 A . (.Microsoft Corporation - USB Function Driver Class Extension.) -- C:\WINDOWS\System32\drivers\ufx01000.sys [324432] =>.Microsoft®
O58 - SDL:2020/12/09 07:35:02 A . (.Microsoft Corporation - UFX Synopsys Client Driver.) -- C:\WINDOWS\System32\drivers\ufxsynopsys.sys [168264] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Generic pass-through driver.) -- C:\WINDOWS\System32\drivers\umpass.sys [15360] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:08:37 A . (.Microsoft Corporation - USB Role-Switch Class Extension.) -- C:\WINDOWS\System32\drivers\urscx01000.sys [76304] =>.Microsoft®
O58 - SDL:2019/12/07 11:09:07 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\WINDOWS\System32\drivers\usb8023.sys [24064] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/11/01 14:02:11 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\WINDOWS\System32\drivers\usb80236.sys [24064] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/10/10 19:28:31 A . (.Microsoft Corporation - USB Audio Class Driver.) -- C:\WINDOWS\System32\drivers\USBAUDIO.sys [209920] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Microsoft USB Audio Class 2.0 Driver.) -- C:\WINDOWS\System32\drivers\usbaudio2.sys [260608] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:08:41 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\WINDOWS\System32\drivers\USBCAMD2.sys [40448] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/11/01 14:02:11 A . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\WINDOWS\System32\drivers\usbccgp.sys [185664] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\WINDOWS\System32\drivers\usbcir.sys [107520] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\WINDOWS\System32\drivers\usbd.sys [33080] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbehci.sys [86544] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de concentrateur USB par défaut.) -- C:\WINDOWS\System32\drivers\usbhub.sys [528184] =>.Microsoft®
O58 - SDL:2021/10/10 19:28:32 A . (.Microsoft Corporation - Pilote de concentrateur USB3.) -- C:\WINDOWS\System32\drivers\USBHUB3.SYS [648016] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbohci.sys [30208] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:08:37 A . (...) -- C:\WINDOWS\System32\drivers\UsbPmApi.sys [53248] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\WINDOWS\System32\drivers\usbport.sys [473400] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:07 A . (.Microsoft Corporation - USB Printer driver.) -- C:\WINDOWS\System32\drivers\usbprint.sys [40448] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/11/01 14:02:11 A . (.Microsoft Corporation - USB Scanner Driver.) -- C:\WINDOWS\System32\drivers\usbscan.sys [49152] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/10/10 19:28:31 A . (.Microsoft Corporation - USB Serial Driver.) -- C:\WINDOWS\System32\drivers\usbser.sys [81408] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/10/13 01:45:14 A . (.Microsoft Corporation - Pilote de classe de stockage de masse USB.) -- C:\WINDOWS\System32\drivers\USBSTOR.SYS [136528] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbuhci.sys [39424] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/03/29 14:58:03 A . (.Microsoft Corporation - USB Video Class Driver.) -- C:\WINDOWS\System32\drivers\usbvideo.sys [330576] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:07 A . (.Microsoft Corporation - Pilote XHCI USB.) -- C:\WINDOWS\System32\drivers\USBXHCI.SYS [624976] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Virtual Drive Root Enumerator.) -- C:\WINDOWS\System32\drivers\vdrvroot.sys [67384] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Extension du vérificateur de pilotes.) -- C:\WINDOWS\System32\drivers\VerifierExt.sys [347448] =>.Microsoft®
O58 - SDL:2022/03/29 14:58:31 A . (.Microsoft Corporation - Microsoft Azure VFP Extension.) -- C:\WINDOWS\System32\drivers\vfpext.sys [1507840] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:52:07 A . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\WINDOWS\System32\drivers\vhdmp.sys [821584] =>.Microsoft®
O58 - SDL:2019/12/07 18:03:26 A . (.Microsoft Corporation - Native VHD parser.) -- C:\WINDOWS\System32\drivers\vhdparser.sys [49192] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Virtual HID Framework (VHF) Driver.) -- C:\WINDOWS\System32\drivers\vhf.sys [47616] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:52:07 A . (.Microsoft Corporation - Microsoft Hyper-V Virtualization Infrastruc.) -- C:\WINDOWS\System32\drivers\Vid.sys [641352] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Video Port Driver.) -- C:\WINDOWS\System32\drivers\videoprt.sys [47104] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/01/19 16:38:20 A . (.Wondershare - Wondershare Virtual Audio Device.) -- C:\WINDOWS\System32\drivers\VirtualAudio.sys [48424] =>.Wondershare Technology Co.,Ltd®
O58 - SDL:2022/04/01 08:53:03 A . (.Microsoft Corporation - Hyper-V VMBus KMCL.) -- C:\WINDOWS\System32\drivers\vmbkmcl.sys [114504] =>.Microsoft®
O58 - SDL:2022/04/01 08:53:04 A . (.Microsoft Corporation - Hyper-V VMBus Root KMCL.) -- C:\WINDOWS\System32\drivers\vmbkmclr.sys [124776] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:08 A . (.Microsoft Corporation - Pilote enfant de bus VMBus sous Microsoft H.) -- C:\WINDOWS\System32\drivers\vmbus.sys [160072] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\WINDOWS\System32\drivers\VMBusHID.sys [36664] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:08 A . (.Microsoft Corporation - Pilote racine de bus VMBus sous Microsoft H.) -- C:\WINDOWS\System32\drivers\vmbusr.sys [256312] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Virtual Machine Generation Counter.) -- C:\WINDOWS\System32\drivers\vmgencounter.sys [23864] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Virtual Machine Guest Infrastructure Driver.) -- C:\WINDOWS\System32\drivers\vmgid.sys [19768] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\WINDOWS\System32\drivers\vms3cap.sys [18960] =>.Microsoft®
O58 - SDL:2022/04/01 08:53:04 A . (.Microsoft Corporation - VMSWITCH Proxy Driver.) -- C:\WINDOWS\System32\drivers\VmsProxy.sys [52080] =>.Microsoft®
O58 - SDL:2022/04/01 08:53:04 A . (.Microsoft Corporation - VmSwitch NIC Proxy Driver.) -- C:\WINDOWS\System32\drivers\VmsProxyHNic.sys [40304] =>.Microsoft®
O58 - SDL:2021/05/14 00:22:51 A . (.Microsoft Corporation - Pilote de filtre de stockage virtuel.) -- C:\WINDOWS\System32\drivers\vmstorfl.sys [54080] =>.Microsoft®
O58 - SDL:2022/03/29 14:58:34 A . (.Microsoft Corporation - Hyper-V Secure Virtualization Component mod.) -- C:\WINDOWS\System32\drivers\vmsvcext.sys [214384] =>.Microsoft®
O58 - SDL:2022/04/01 08:53:04 A . (.Microsoft Corporation - Fournisseur de services de virtualisation d.) -- C:\WINDOWS\System32\drivers\vmswitch.sys [2491248] =>.Microsoft®
O58 - SDL:2021/04/14 13:03:54 A . (.Microsoft Corporation - Pilote du gestionnaire de volumes.) -- C:\WINDOWS\System32\drivers\volmgr.sys [90960] =>.Microsoft®
O58 - SDL:2019/12/07 11:09:37 A . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) -- C:\WINDOWS\System32\drivers\volmgrx.sys [389432] =>.Microsoft®
O58 - SDL:2020/11/01 14:02:18 A . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [429880] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Microsoft Corporation - Volume driver.) -- C:\WINDOWS\System32\drivers\volume.sys [16696] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Virtual PCI Bus.) -- C:\WINDOWS\System32\drivers\vpci.sys [89400] =>.Microsoft®
O58 - SDL:2020/11/01 14:02:12 A . (.Microsoft Corporation - Virtual PCI VSP Driver.) -- C:\WINDOWS\System32\drivers\vpcivsp.sys [206152] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166712] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305464] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:13 A . (.Microsoft Corporation - Virtual Wireless Bus Driver.) -- C:\WINDOWS\System32\drivers\vwifibus.sys [29184] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/10/10 19:28:33 A . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\WINDOWS\System32\drivers\vwififlt.sys [77824] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:08:13 A . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\WINDOWS\System32\drivers\vwifimp.sys [50688] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:53 A . (.Microsoft Corporation - Pilote de tablette Wacom à stylet série.) -- C:\WINDOWS\System32\drivers\wacompen.sys [31232] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/11/02 17:41:43 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\WINDOWS\System32\drivers\wanarp.sys [93184] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/04/14 13:04:00 A . (.Microsoft Corporation - Watchdog Driver.) -- C:\WINDOWS\System32\drivers\watchdog.sys [74752] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/11/10 18:26:18 A . (.Microsoft Corporation - Windows Container Isolation FS Filter Drive.) -- C:\WINDOWS\System32\drivers\wcifs.sys [202568] =>.Microsoft®
O58 - SDL:2021/03/10 00:54:06 A . (.Microsoft Corporation - Windows Container Name Virtualization FS Fi.) -- C:\WINDOWS\System32\drivers\wcnfs.sys [93184] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:08:15 A . (.Microsoft Corporation - Microsoft antimalware boot driver.) -- C:\WINDOWS\System32\drivers\WdBoot.sys [46688] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:39 A . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) -- C:\WINDOWS\System32\drivers\Wdf01000.sys [828240] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:15 A . (.Microsoft Corporation - Microsoft antimalware file system filter dr.) -- C:\WINDOWS\System32\drivers\WdFilter.sys [350136] =>.Microsoft®
O58 - SDL:2021/08/10 22:48:00 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\WINDOWS\System32\drivers\WdfLdr.sys [59192] =>.Microsoft®
O58 - SDL:2021/11/10 18:26:04 A . (.Microsoft Corporation - WDI Driver Framework Driver.) -- C:\WINDOWS\System32\drivers\WdiWiFi.sys [967168] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:08:39 A . (.Microsoft Corporation - WDM Companion Filter.) -- C:\WINDOWS\System32\drivers\WdmCompanionFilter.sys [23560] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:16 A . (.Microsoft Corporation - Windows Defender Network Stream Filter.) -- C:\WINDOWS\System32\drivers\WdNisDrv.sys [54200] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Windows Error Reporting Kernel Driver.) -- C:\WINDOWS\System32\drivers\werkernel.sys [52024] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:29 A . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) -- C:\WINDOWS\System32\drivers\wfplwfs.sys [180040] =>.Microsoft®
O58 - SDL:2021/10/10 19:28:44 A . (.Microsoft Corporation - Wim file system Driver.) -- C:\WINDOWS\System32\drivers\wimmount.sys [39760] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:37 A . (.Microsoft Corporation - Windows Trusted Runtime Interface Driver.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRT.sys [76984] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Windows Trusted Runtime Service Proxy Drive.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys [18920] =>.Microsoft®
O58 - SDL:2019/12/07 11:09:51 A . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\WINDOWS\System32\drivers\winhv.sys [32784] =>.Microsoft®
O58 - SDL:2019/12/07 11:09:33 A . (.Microsoft Corporation - Windows Hypervisor Root Interface Driver.) -- C:\WINDOWS\System32\drivers\winhvr.sys [96056] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [36152] =>.Microsoft®
O58 - SDL:2022/04/01 08:52:09 A . (.Microsoft Corporation - Pilote NAT Windows.) -- C:\WINDOWS\System32\drivers\winnat.sys [261120] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Windows WinUSB Class Driver.) -- C:\WINDOWS\System32\drivers\winusb.sys [107008] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [73016] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\WINDOWS\System32\drivers\wmiacpi.sys [19456] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\WINDOWS\System32\drivers\wmilib.sys [19472] =>.Microsoft®
O58 - SDL:2021/04/14 13:04:08 A . (.Microsoft Corporation - Filtre de superposition Windows.) -- C:\WINDOWS\System32\drivers\wof.sys [234296] =>.Microsoft®
O58 - SDL:2019/12/07 16:53:42 A . (.Microsoft Corporation - Windows Portable Device Upper Class Filter.) -- C:\WINDOWS\System32\drivers\WpdUpFltr.sys [32568] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - WPP Trace Recorder.) -- C:\WINDOWS\System32\drivers\WppRecorder.sys [43832] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:41 A . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\WINDOWS\System32\drivers\ws2ifsl.sys [25088] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Web Services Print Device Driver.) -- C:\WINDOWS\System32\drivers\WSDPrint.sys [23552] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/11/01 14:02:11 A . (.Microsoft Corporation - Web Service Based Scan Device Driver.) -- C:\WINDOWS\System32\drivers\WSDScan.sys [26112] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:52:42 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFPf.sys [136192] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:52:42 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFRd.sys [315392] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:52:07 A . (.Microsoft Corporation - Game Input Protocol Driver.) -- C:\WINDOWS\System32\drivers\xboxgip.sys [332288] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/03/29 14:58:03 A . (.Microsoft Corporation - XINPUT filter driver for HID.) -- C:\WINDOWS\System32\drivers\xinputhid.sys [51712] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/04/14 13:03:54 A . (.Microsoft Corporation - Hid Class Library.) -- C:\WINDOWS\System32\hidclass.sys [225792] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/04/14 13:03:54 A . (.Microsoft Corporation - Hid Parsing Library.) -- C:\WINDOWS\System32\hidparse.sys [46080] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/04/14 13:03:54 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\hidusb.sys [44032] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:52:31 A . (.Microsoft Corporation - Multi-User Win32 Driver.) -- C:\WINDOWS\System32\win32k.sys [596992] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:52:27 A . (.Microsoft Corporation - Pilote du noyau Base Win32k.) -- C:\WINDOWS\System32\win32kbase.sys [2892800] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:52:31 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\WINDOWS\System32\win32kfull.sys [3813888] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:08:34 A . (.Microsoft Corporation - Win32k non session driver.) -- C:\WINDOWS\System32\win32kns.sys [30208] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:52:51 A . (.Microsoft Corporation - Multi-User Win32 Driver.) -- C:\WINDOWS\SysWOW64\win32k.sys [329728] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/01 08:52:51 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\WINDOWS\SysWOW64\win32kfull.sys [2753536] [Unsigned] =>.Microsoft Corporation

---\\ ASSOCIATION Shell Spawning (10) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- "C:\WINDOWS\System32\WScript.exe" "%1" %* =>.Default.Value
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value

---\\ MENU DE DÉMARRAGE INTERNET (16) - 0s
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation

---\\ RECHERCHE D'INFECTION SUR NAVIGATEURS (3) - 9s
O69 - SBI: prefs.js [Mr_GT - y355bifu.default] user_pref("extensions.webextensions.ExtensionStorageIDB.migrated.{dbac9680-d559-4cd4-9765-059879e8c467}", true); =>Toolbar.Graal
O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com

---\\ ÉNUMÈRE LES SERVICES DÉMARRÉS PAR Svchost (54) - 2s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [196608] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [196608] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [301568] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1335808] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1054208] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [836096] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [32768] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [160256] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [112640] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [814592] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [243712] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [488960] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [515072] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports de problèmes.) -- C:\Windows\System32\wercplsupport.dll [134656] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [2430976] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [340480] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: TroubleshootingSvc (TroubleshootingSvc) . (.Microsoft Corporation - MitigationClient.) -- C:\Windows\System32\MitigationClient.dll [487936] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Fournit une prise en charge de l'infrastruc.) -- C:\Windows\System32\LanguageOverlayServer.dll [302080] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [223232] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1270272] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [1016320] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: WManSvc (WManSvc) . (.Microsoft Corporation - DLL du Service de gestion de Windows.) -- C:\Windows\System32\Windows.Management.Service.dll [809984] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [70656] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [1484288] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [335360] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2246144] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1522176] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [48640] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [454656] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [111616] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [967680] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [551936] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [77824] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [619008] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [3403776] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1481216] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [259584] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [58880] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [939984] =>.Microsoft®
O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [245248] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [223232] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1295360] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) -- C:\Windows\System32\usosvc.dll [569856] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [72704] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [171520] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1049088] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [288256] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [207360] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [555008] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: hns (hns) . (.Microsoft Corporation - Service de réseau hôte.) -- C:\Windows\System32\HostNetSvc.dll [3372544] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: HgClientService (HgClientService) . (.Microsoft Corporation - Service du client Guardian hôte.) -- C:\Windows\System32\hgclientservice.dll [143872] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: nvagent (nvagent) . (.Microsoft Corporation - Agent de virtualisation de réseau..) -- C:\Windows\System32\NvAgent.dll [41784] =>.Microsoft®
O83 - Search Svchost Services: MsKeyboardFilter (MsKeyboardFilter) . (.Microsoft Corporation - Service SvcHost pour le filtre clavier Micr.) -- C:\Windows\System32\KeyboardFilterSvc.dll [161096] =>.Microsoft®

---\\ LISTE DES EXCEPTIONS PAREFEU WINDOWS (48) - 16s
O87 - FAEL: "UDP Query User{8E5F66E7-3B0B-4719-A474-02A7179928AF}C:\program files (x86)\mozilla firefox\firefox.exe" [In-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\program files (x86)\mozilla firefox\firefox.exe =>.Mozilla Corporation®
O87 - FAEL: "TCP Query User{6993C48F-4ACF-4A60-900E-866DA5963DEF}C:\program files (x86)\mozilla firefox\firefox.exe" [In-None-P6-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\program files (x86)\mozilla firefox\firefox.exe =>.Mozilla Corporation®
O87 - FAEL: "UDP Query User{99633270-8085-42CA-AE88-96A0B282C68C}D:\jeux\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe" [In-None-P17-TRUE] .(.Bluehole GinnoGames, Inc. - TslGame.) -- D:\jeux\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe =>.PUBG CORPORATION®
O87 - FAEL: "TCP Query User{927986DA-3DFC-45DE-BDBE-6AEA1A8A027D}D:\jeux\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe" [In-None-P6-TRUE] .(.Bluehole GinnoGames, Inc. - TslGame.) -- D:\jeux\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe =>.PUBG CORPORATION®
O87 - FAEL: "{F25A5316-B2DE-4C52-9AC7-EF9C34C98684}" [In-None-P17-TRUE] .(.BattlEye Innovations - BattlEye Launcher.) -- D:\Jeux\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe =>.BattlEye Innovations e.K.®
O87 - FAEL: "{C19D553D-4041-4C8C-9455-F1131C6EA8DB}" [In-None-P6-TRUE] .(.BattlEye Innovations - BattlEye Launcher.) -- D:\Jeux\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe =>.BattlEye Innovations e.K.®
O87 - FAEL: "{088CBE50-5BF4-46E9-B1A6-4FF77D2BA32F}" [In-None-P6-TRUE] .(.Valve Corporation - Steam.) -- D:\Jeux\Steam\Steam.exe =>.Valve®
O87 - FAEL: "{99875545-A11D-42E9-969F-AC7816DDA855}" [In-None-P17-TRUE] .(.Valve Corporation - Steam.) -- D:\Jeux\Steam\Steam.exe =>.Valve®
O87 - FAEL: "{3F80A24C-C237-4AB3-8668-7A1D1A4FF49E}" [In-None-P6-TRUE] .(...) -- D:\Jeux\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe =>.Valve®
O87 - FAEL: "{1864270B-2F54-42A0-ACAD-88C0C1C6A2F9}" [In-None-P17-TRUE] .(...) -- D:\Jeux\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe =>.Valve®
O87 - FAEL: "{5E670742-6E1B-4706-9BB7-6BDA7F09D5BD}" [In-None-P6-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O87 - FAEL: "{E65FA72F-41EB-4012-968D-9BD5E138C6AE}" [In-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O87 - FAEL: "{CF97CD71-BAD1-4097-9CA2-048A978A6B41}" [In-None-P6-TRUE] .(.PUBG Corporation - PUBG Launcher.) -- D:\Jeux\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe =>.PUBG CORPORATION®
O87 - FAEL: "{28DED86B-DB85-4F07-8B0A-EC361FF81531}" [In-None-P17-TRUE] .(.PUBG Corporation - PUBG Launcher.) -- D:\Jeux\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe =>.PUBG CORPORATION®
O87 - FAEL: "{6FFE2327-E587-4244-A980-A38CC4C43BE1}" [In-None-P6-TRUE] .(.Rockstar Games - Grand Theft Auto V.) -- D:\Jeux\GTA5\GTA5.exe =>.Rockstar Games, Inc.®
O87 - FAEL: "{2B5388C6-50EF-4915-AE86-7C9C66156A92}" [In-None-P17-TRUE] .(.Rockstar Games - Grand Theft Auto V.) -- D:\Jeux\GTA5\GTA5.exe =>.Rockstar Games, Inc.®
O87 - FAEL: "{49C035EC-8445-438C-9465-3A73317457B1}" [In-None-P6-TRUE] .(.Valve Corporation - Steam Client WebHelper.) -- D:\Jeux\Steam\bin\cef\cef.win7x64\steamwebhelper.exe =>.Valve®
O87 - FAEL: "{0766CCA9-0A0E-477F-AA7D-1F9431B026EC}" [In-None-P17-TRUE] .(.Valve Corporation - Steam Client WebHelper.) -- D:\Jeux\Steam\bin\cef\cef.win7x64\steamwebhelper.exe =>.Valve®
O87 - FAEL: "{6FA6B7C8-5932-4758-A42B-2F25DC66CC3D}" [In-None-P6-TRUE] .(.EA Digital Illusions CE AB - Battlefield™ V.) -- D:\Jeux\Battlefield V\bfvTrial.exe =>.Electronic Arts, Inc.®
O87 - FAEL: "{088160CE-C623-49DF-8D32-6DFE754A3864}" [In-None-P17-TRUE] .(.EA Digital Illusions CE AB - Battlefield™ V.) -- D:\Jeux\Battlefield V\bfvTrial.exe =>.Electronic Arts, Inc.®
O87 - FAEL: "{A0122E8A-BA07-4156-BFFF-9520A7E96E0C}" [In-None-P6-TRUE] .(.EA Digital Illusions CE AB - Battlefield™ V.) -- D:\Jeux\Battlefield V\bfv.exe =>.Electronic Arts, Inc.®
O87 - FAEL: "{6279E8B7-1F67-4BEB-9844-BE878A64680C}" [In-None-P17-TRUE] .(.EA Digital Illusions CE AB - Battlefield™ V.) -- D:\Jeux\Battlefield V\bfv.exe =>.Electronic Arts, Inc.®
O87 - FAEL: "{993486C2-A059-4F51-A5BF-1C44BBC5AE79}" [In-None-P6-TRUE] .(.HP Inc. - DeviceSetup.exe.) -- C:\Program Files\HP\HP ENVY Photo 6200 series\Bin\DeviceSetup.exe =>.HP Inc®
O87 - FAEL: "{1CC41B60-ABCB-4F1D-9C9B-3C806D42CB68}" [In-None-P6-TRUE] .(.HP Inc. - HPNetworkCommunicatorCom.) -- C:\Program Files\HP\HP ENVY Photo 6200 series\Bin\HPNetworkCommunicatorCom.exe =>.HP Inc®
O87 - FAEL: "{61C2619E-DDBF-4368-AF94-1BD3BAFCB413}" [In-None-P6-TRUE] .(.Disc Soft Ltd - Disc Soft Bus Service Lite.) -- D:\Logiciels\DAEMON Tools Lite\DiscSoftBusServiceLite.exe =>.AVB Disc Soft, SIA®
O87 - FAEL: "{250C8DB0-283D-4330-8AFB-603D8E3B7602}" [Out-None-P6-TRUE] .(.Disc Soft Ltd - Disc Soft Bus Service Lite.) -- D:\Logiciels\DAEMON Tools Lite\DiscSoftBusServiceLite.exe =>.AVB Disc Soft, SIA®
O87 - FAEL: "{5ED66307-57C5-46D9-B94C-ADCD4786BB87}" [In-None-P17-TRUE] .(.Zoom Video Communications, Inc. - Zoom Meetings.) -- C:\Users\Mr_GT\AppData\Roaming\Zoom\bin\Zoom.exe =>.Zoom Video Communications, Inc.®
O87 - FAEL: "{DAA6421C-0C20-4F95-8741-B5065869E425}" [In-None-P6-TRUE] .(.Zoom Video Communications, Inc. - AirHost.) -- C:\Users\Mr_GT\AppData\Roaming\Zoom\bin\airhost.exe =>.Zoom Video Communications, Inc.®
O87 - FAEL: "{15718E18-AEC8-4239-979D-345A87E8C3C2}" [In-None-P17-TRUE] .(.Zoom Video Communications, Inc. - AirHost.) -- C:\Users\Mr_GT\AppData\Roaming\Zoom\bin\airhost.exe =>.Zoom Video Communications, Inc.®
O87 - FAEL: "{547DD530-2CC3-45DA-854B-A4B7983FCB1E}" [In-None-P6-TRUE] .(.HP Development Company, L.P. - HP Print and Scan Doctor 5.5.1.) -- C:\Program Files (x86)\HP\Diagnostics\PSDR\SoftPaq\Binaries\HPDiagnosticCoreUI.exe =>.HP Inc.®
O87 - FAEL: "{4455CA49-1B8B-4AF2-8EE1-EFA9213F89AA}" [In-None-P17-TRUE] .(.HP Development Company, L.P. - HP Print and Scan Doctor 5.5.1.) -- C:\Program Files (x86)\HP\Diagnostics\PSDR\SoftPaq\Binaries\HPDiagnosticCoreUI.exe =>.HP Inc.®
O87 - FAEL: "{3725F793-D545-483B-8481-7B4D4EA5F2E6}" [In-None-P6-TRUE] .(.HP Development Company, L.P. - HP Print and Scan Doctor 5.6.1.) -- C:\HP\Diagnostics\PSDR\HPDiagnosticCoreUI.exe =>.HP Inc.®
O87 - FAEL: "{787C50E6-1051-40B9-99B6-EC0B460FFC3D}" [In-None-P17-TRUE] .(.HP Development Company, L.P. - HP Print and Scan Doctor 5.6.1.) -- C:\HP\Diagnostics\PSDR\HPDiagnosticCoreUI.exe =>.HP Inc.®
O87 - FAEL: "{5CECC12B-3414-4576-B1EF-5F0CCDBCBC3F}" [In-None-P6-TRUE] .(.TeamViewer Germany GmbH - TeamViewer.) -- D:\Logiciels\TeamViewer\TeamViewer.exe =>.TeamViewer Germany GmbH®
O87 - FAEL: "{E3E2E625-9D9E-4FF8-9981-6C76DDA5D1BA}" [In-None-P17-TRUE] .(.TeamViewer Germany GmbH - TeamViewer.) -- D:\Logiciels\TeamViewer\TeamViewer.exe =>.TeamViewer Germany GmbH®
O87 - FAEL: "{8C454CC1-65C6-42D5-B5B5-FB7D090171D9}" [In-None-P6-TRUE] .(.TeamViewer Germany GmbH - TeamViewer.) -- D:\Logiciels\TeamViewer\TeamViewer_Service.exe =>.TeamViewer Germany GmbH®
O87 - FAEL: "{8AB1CEA8-CFFA-429D-A1A9-CA620BDDBE08}" [In-None-P17-TRUE] .(.TeamViewer Germany GmbH - TeamViewer.) -- D:\Logiciels\TeamViewer\TeamViewer_Service.exe =>.TeamViewer Germany GmbH®
O87 - FAEL: "{FD27B1E1-A6F2-4222-89A6-2C92A83761D8}" [In-None-P6-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe =>.Skype Software Sarl®
O87 - FAEL: "{4C6914DF-1E1D-4791-89DF-7219D3EAD4DC}" [In-None-P17-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe =>.Skype Software Sarl®
O87 - FAEL: "TCP Query User{EEFCCCC5-E6C4-41AD-B6F2-CC62A359B52A}C:\users\mr_gt\appdata\local\discord\app-1.0.9004\discord.exe" [In-None-P6-TRUE] .(.Discord Inc. - Discord.) -- C:\users\mr_gt\appdata\local\discord\app-1.0.9004\discord.exe =>.SUP.Discord
O87 - FAEL: "UDP Query User{95F840D0-4C9F-475A-937B-B13173265846}C:\users\mr_gt\appdata\local\discord\app-1.0.9004\discord.exe" [In-None-P17-TRUE] .(.Discord Inc. - Discord.) -- C:\users\mr_gt\appdata\local\discord\app-1.0.9004\discord.exe =>.SUP.Discord
O87 - FAEL: "{4BD5B199-5FF0-4891-887F-D81BD95AF84A}" [In-None-P17-TRUE] .(.Discord Inc. - Discord.) -- C:\users\mr_gt\appdata\local\discord\app-1.0.9004\discord.exe =>.SUP.Discord
O87 - FAEL: "{1D8CE7F8-C587-4E14-AED0-640BFF37187E}" [In-None-P6-TRUE] .(.Discord Inc. - Discord.) -- C:\users\mr_gt\appdata\local\discord\app-1.0.9004\discord.exe =>.SUP.Discord
O87 - FAEL: "{7789E0A0-1A05-4521-AB31-BFC92F152085}" [In-None-P6-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.82.404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Microsoft®
O87 - FAEL: "{F3F11724-96DA-4E26-A377-F61DCA5342F7}" [Out-None-P6-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.82.404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Microsoft®
O87 - FAEL: "{58422C5F-F566-4D32-AA7C-40EB43EE8AA4}" [In-None-P17-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.82.404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Microsoft®
O87 - FAEL: "{F602E000-1879-43AF-B6EB-2C676D8F9005}" [Out-None-P17-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.82.404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Microsoft®
O87 - FAEL: "{22DEBB05-BEFB-42DD-9041-A8F6A8F84DDF}" [In-None-P17-TRUE] .(.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®

---\\ CODES PRODUITS LOGICIELS (84) - 1s
O90 - PUC: "000061090900C0400000000000F01FEC" [HKLM] . (.Microsoft DCF MUI (French) 2016.) =>.Microsoft Corporation
O90 - PUC: "00006109110000000000000000F01FEC" [HKLM] . (.Microsoft Office Professional Plus 2016.) =>.Microsoft Corporation
O90 - PUC: "000061091A00C0400000000000F01FEC" [HKLM] . (.Microsoft OneNote MUI (French) 2016.) =>.Microsoft Corporation
O90 - PUC: "000061091E00C0400000000000F01FEC" [HKLM] . (.Microsoft Office OSM MUI (French) 2016.) =>.Microsoft Corporation
O90 - PUC: "000061092E00C0400000000000F01FEC" [HKLM] . (.Microsoft Office OSM UX MUI (French) 2016.) =>.Microsoft Corporation
O90 - PUC: "000061094400C0400000000000F01FEC" [HKLM] . (.Microsoft InfoPath MUI (French) 2016.) =>.Microsoft Corporation
O90 - PUC: "000061095100C0400000000000F01FEC" [HKLM] . (.Microsoft Access MUI (French) 2016.) =>.Microsoft Corporation
O90 - PUC: "000061096100C0400000000000F01FEC" [HKLM] . (.Microsoft Excel MUI (French) 2016.) =>.Microsoft Corporation
O90 - PUC: "000061098100C0400000000000F01FEC" [HKLM] . (.Microsoft PowerPoint MUI (French) 2016.) =>.Microsoft Corporation
O90 - PUC: "000061099100C0400000000000F01FEC" [HKLM] . (.Microsoft Publisher MUI (French) 2016.) =>.bl.org
O90 - PUC: "00006109A100C0400000000000F01FEC" [HKLM] . (.Microsoft Outlook MUI (French) 2016.) =>.Microsoft Corporation
O90 - PUC: "00006109A20000000100000000F01FEC" [HKLM] . (.Microsoft Office 64-bit Components 2016.) =>.Microsoft Corporation
O90 - PUC: "00006109A200C0400100000000F01FEC" [HKLM] . (.Microsoft Office Shared 64-bit MUI (French) 2016.) =>.Microsoft Corporation
O90 - PUC: "00006109AB00C0400000000000F01FEC" [HKLM] . (.Microsoft Groove MUI (French) 2016.) =>.Microsoft Corporation
O90 - PUC: "00006109B100C0400000000000F01FEC" [HKLM] . (.Microsoft Word MUI (French) 2016.) =>.Microsoft Corporation
O90 - PUC: "00006109B210C0400000000000F01FEC" [HKLM] . (.Microsoft Skype for Business MUI (French) 2016.) =>.Skype Technologies
O90 - PUC: "00006109C200C0400000000000F01FEC" [HKLM] . (.Microsoft Office Proofing (French) 2016.) =>.Microsoft Corporation
O90 - PUC: "00006109E600C0400000000000F01FEC" [HKLM] . (.Microsoft Office Shared MUI (French) 2016.) =>.Microsoft Corporation
O90 - PUC: "00006109F10010400000000000F01FEC" [HKLM] . (.Microsoft Office Proofing Tools 2016 - اللغة العربية.) -- C:\Windows\Installer\{90160000-001F-0401-0000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation
O90 - PUC: "00006109F10031400000000000F01FEC" [HKLM] . (.Taalprogramma's voor Microsoft Office 2016 - Nederlands.) -- C:\Windows\Installer\{90160000-001F-0413-0000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation
O90 - PUC: "00006109F10070400000000000F01FEC" [HKLM] . (.Microsoft Office Korrekturhilfen 2016 – Deutsch.) -- C:\Windows\Installer\{90160000-001F-0407-0000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation
O90 - PUC: "00006109F10090400000000000F01FEC" [HKLM] . (.Microsoft Office Proofing Tools 2016 - English.) -- C:\Windows\Installer\{90160000-001F-0409-0000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation
O90 - PUC: "00006109F100A0C00000000000F01FEC" [HKLM] . (.Herramientas de corrección de Microsoft Office 2016: español.) -- C:\Windows\Installer\{90160000-001F-0C0A-0000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation
O90 - PUC: "00006109F100C0400000000000F01FEC" [HKLM] . (.Outils de vérification linguistique 2016 de Microsoft Office - Français.) -- C:\Windows\Installer\{90160000-001F-040C-0000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation
O90 - PUC: "02324FA2FCE5ACB47B65F8637762D255" [HKLM] . (.Branding64.) -- C:\WINDOWS\Installer\{2AF42320-5ECF-4BCA-B756-8F3677262D55}\ARPPRODUCTICON.exe
O90 - PUC: "0BA2981E4CF77E11196459EB7595E4CA" [HKLM] . (.VEGAS Pro 15.0.) -- C:\WINDOWS\Installer\{E1892AB0-7FC4-11E7-9146-95BE57594EAC}\vegas.ico =>.Sony Corporation
O90 - PUC: "0BE7365E4CF77E116BD159EB7595E4CA" [HKLM] . (.MSVCRT Redists.) =>.Advanced Micro Devices Inc
O90 - PUC: "12B8D03ED28D112328CCF0A0D541598E" [HKLM] . (.Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40660.) =>.Microsoft Corporation
O90 - PUC: "1453E44A7FAD8F94189B77B93A881BEC" [HKLM] . (.Étude pour l'amélioration du produit HP ENVY Photo 6200 series.) -- C:\WINDOWS\Installer\{A44E3541-DAF7-49F8-81B9-779BA388B1CE}\ARP_Icon =>.Hewlett-Packard
O90 - PUC: "153AA053AF120723B8A73845437E66DA" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022.) =>.bl.org
O90 - PUC: "1616DA6174E21FB4AA779064FE9EE380" [HKLM] . (.Update for Windows 10 for x64-based Systems (KB4023057).) =>.Microsoft Corporation
O90 - PUC: "1926E8D15D0BCE53481466615F760A7F" [HKLM] . (.Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219.) =>.bl.org
O90 - PUC: "1D5E3C0FEDA1E123187686FED06E995A" [HKLM] . (.Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219.) =>.bl.org
O90 - PUC: "2129373C12C3831469703CF1E98A5A41" [HKLM] . (.HP EmailSMTP Plugin.) -- C:\WINDOWS\Installer\{C3739212-3C21-4138-9607-C31F9EA8A514}\HPScan.ico =>.Hewlett-Packard
O90 - PUC: "25DCF1B7B6F821F41A3463E13AF9E5C7" [HKLM] . (.Microsoft Update Health Tools.) =>.Microsoft Corporation
O90 - PUC: "3367A02690A78A24580870A644384C0B" [HKLM] . (.Microsoft Visual C++ 2019 X64 Additional Runtime - 14.28.29913.) =>.Microsoft Corporation
O90 - PUC: "38E9610BB75766FE2E0F9391447D58CB" [HKLM] . (.Microsoft HEVC Media Extension Installation for Microsoft.HEVCVideoExtension_1.0.2512.0_x64__8wekyb3d8bbwe (x64).) =>.Microsoft Corporation
O90 - PUC: "3BDB0510DFFA1A74DA8BED6056E83B2B" [HKLM] . (.Contrôle d’intégrité du PC Windows.) -- C:\WINDOWS\Installer\{0150BDB3-AFFD-47A1-ADB8-DE06658EB3B2}\ArpIcon.ico =>.Microsoft Corporation
O90 - PUC: "3e43b73803c7c394f8a6b2f0402e19c2" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org
O90 - PUC: "43608B8A7526AE11C8E800056559C1DA" [HKLM] . (.Evernote v. 6.24.2.) -- C:\WINDOWS\Installer\{A8B80634-6257-11EA-8C8E-005056951CAD}\Evernote.ico =>.EverNote Corporation
O90 - PUC: "44DB0475D85BA123FA0CD6D35465DDC6" [HKLM] . (.Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40660.) =>.Microsoft Corporation
O90 - PUC: "4EA42A62D9304AC4784BF2238120150F" [HKLM] . (.Java 8 Update 251.) -- D:\Logiciels\Nouveau dossier\\bin\javaws.exe =>.Sun Microsystems
O90 - PUC: "571A30F2EA90E924E861689193E05A80" [HKLM] . (.Logiciel de base du périphérique HP ENVY Photo 6200 series.) -- C:\WINDOWS\Installer\{2F03A175-09AE-429E-8E16-8619390EA508}\ARP_Icon =>.Hewlett-Packard
O90 - PUC: "57451E932F32D54398775BCD749AE462" [HKLM] . (.Microsoft Visual C++ 2017 x86 Minimum Runtime - 14.15.26706.) =>.Microsoft Corporation
O90 - PUC: "67D6ECF5CD5FBA732B8B22BAC8DE1B4D" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161.) =>.bl.org
O90 - PUC: "68AB67CA3301FFFF7706C0F070E41400" [HKLM] . (.Adobe Acrobat DC.) -- C:\Windows\Installer\{AC76BA86-1033-FFFF-7760-0C0F074E4100}\_SC_Acrobat.ico =>.Adobe Inc.
O90 - PUC: "68AB67CA408033019195008142548867" [HKLM] . (.Adobe Refresh Manager.) -- C:\WINDOWS\Installer\{AC76BA86-0804-1033-1959-001824458876}\ARPPRODUCTICON.exe =>.Western Digital Technologies
O90 - PUC: "68AB67CA7DA76301B744CAF070E41400" [HKLM] . (.Adobe Acrobat Reader DC - Français.) -- C:\WINDOWS\Installer\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}\SC_Reader.ico =>.Adobe Inc.
O90 - PUC: "6E815EB96CCE9A53884E7857C57002F0" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161.) =>.bl.org
O90 - PUC: "6F9E66FF7E38E3A3FA41D89E8A906A4A" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.) =>.bl.org
O90 - PUC: "731DDCEEAD31DE64DA0ADB7F8FEB568B" [HKLM] . (.Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.28.29913.) =>.Microsoft Corporation
O90 - PUC: "7C6E8F2350FBD5F44BD5D4405CA82F9F" [HKLM] . (.AMD WVR64.) -- C:\WINDOWS\Installer\{32F8E6C7-BF05-4F5D-B45D-4D04C58AF2F9}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "7C9F8B73BF303523781852719CD9C700" [HKLM] . (.Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "84b9c17023c712640acaf308593282f8" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable (x64).) =>.bl.org
O90 - PUC: "84F90D68BADCC4B488606F1CF67139A5" [HKLM] . (.PokerStrategy.com Equilab.) -- C:\WINDOWS\Installer\{86D09F48-CDAB-4B4C-8806-F6C16F17935A}\ARPPRODUCTICON.exe
O90 - PUC: "8520DAD7C5154DD39846DB1714990E7F" [HKLM] . (.Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40660.) =>.Microsoft Corporation
O90 - PUC: "93B0BF4E199C7EE459DDA1A187753DD3" [HKLM] . (.Asmedia USB Host Controller Driver.) -- C:\Windows\Installer\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}\ARPPRODUCTICON.exe =>.ASMedia Technology Inc
O90 - PUC: "9499DA24B69000D4DA9A5E8B32722E52" [HKLM] . (.HP ENVY Photo 6200 series Aide.) -- C:\WINDOWS\Installer\{42AD9949-096B-4D00-ADA9-E5B82327E225}\ARP_Icon =>.Hewlett-Packard
O90 - PUC: "A1776E475B74E3349AF6512EF9079F02" [HKLM] . (.HP Webcam HD 2300 Software.) -- C:\Windows\Installer\{74E6771A-47B5-433E-A96F-15E29F70F920}\ARPPRODUCTICON.exe =>.Hewlett-Packard
O90 - PUC: "A1DACCE67DB2C984D834866BA9A28A97" [HKLM] . (.HP OneDrive Plugin.) -- C:\WINDOWS\Installer\{6ECCAD1A-2BD7-489C-8D43-68B69A2AA879}\HPScan.ico =>.Hewlett-Packard
O90 - PUC: "A694757247E3A0230B706321A0F921D6" [HKLM] . (.Microsoft Visual C++ 2017 x86 Additional Runtime - 14.15.26706.) =>.Microsoft Corporation
O90 - PUC: "b25099274a207264182f8181add555d0" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org
O90 - PUC: "B39CAEE304262AC41B3D47787C09004B" [HKLM] . (.AMD DVR64.) -- C:\WINDOWS\Installer\{3EEAC93B-6240-4CA2-B1D3-7487C79000B4}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "BE5A19C826C2D6A48820CC97DFE23D09" [HKLM] . (.Intel(R) Chipset Device Software.) =>.Intel Corporation
O90 - PUC: "C025571B2A687A53689168CD7369889B" [HKLM] . (.Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "C3AEB2FCAE628F23AAB933F1E743AB79" [HKLM] . (.Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "CC1D39CFB20195B429AD030EED32F26F" [HKLM] . (.HP FTP Plugin.) -- C:\WINDOWS\Installer\{FC93D1CC-102B-4B59-92DA-30E0DE232FF6}\HPScan.ico =>.Hewlett-Packard
O90 - PUC: "CE6380BC270BD863282B3D74B09F7570" [HKLM] . (.Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40660.) =>.Microsoft Corporation
O90 - PUC: "D20352A90C039D93DBF6126ECE614057" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17.) =>.bl.org
O90 - PUC: "DC8A59DBF9D1DA5389A1E3975220E6BB" [HKLM] . (.Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "DD9A227CB17452F4E9E7D71D211DCB53" [HKLM] . (.HP Dropbox Plugin.) -- C:\WINDOWS\Installer\{C722A9DD-471B-4F25-9E7E-7DD112D1BC35}\HPScan.ico =>.WINSE
O90 - PUC: "E5A3BD428CB05E11A9720FD42AA3C585" [HKLM] . (.MSVCRT Redists.) =>.Advanced Micro Devices Inc
O90 - PUC: "E9F68E448437D284BB32397471AB3775" [HKLM] . (.AMD Settings.) -- C:\WINDOWS\Installer\{44E86F9E-7348-482D-BB23-934717BA7357}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "EDBC8B2C23253E114B490FD42AA3C585" [HKLM] . (.MSVCRT Redists.) =>.Advanced Micro Devices Inc
O90 - PUC: "EDCD85702A05D6D40B52BF2BFB437234" [HKLM] . (.HP SharePoint Plugin.) -- C:\WINDOWS\Installer\{0758DCDE-50A2-4D6D-B025-FBB2BF342743}\HPScan.ico =>.Hewlett-Packard
O90 - PUC: "EFEE0228DC83E77358593193D847A0EC" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17.) =>.bl.org
O90 - PUC: "F60730A4A66673047777F5728467D401" [HKLM] . (.Java Auto Updater.) =>.Sun Microsystems
O90 - PUC: "F8CA19DB23253E114B020FD42AA3C585" [HKLM] . (.Vegas Pro 12.0 (64-bit).) -- C:\WINDOWS\Installer\{BD91AC8F-5232-11E3-B420-F04DA23A5C58}\vegas.ico =>.Sony Corporation
O90 - PUC: "F9D50560DA3A0CD418918863AB1D39E8" [HKLM] . (.HP Google Drive Plugin.) -- C:\WINDOWS\Installer\{06505D9F-A3AD-4DC0-8119-8836BAD1938E}\HPScan.ico =>.Google Inc.
O90 - PUC: "FC5DAE63FE44FCF4B81E9DC684537D4A" [HKLM] . (.UE4 Prerequisites (x64).) -- C:\WINDOWS\Installer\{36EAD5CF-44EF-4FCF-8BE1-D96C4835D7A4}\Setup.ico =>.Legitimate
O90 - PUC: "83C33F0CC54320C41B16118339052C5A" [HKCU] . (.GoTo Opener.) -- %APPDATA%\Microsoft\Installer\{C0F33C38-345C-4C02-B161-11389350C2A5}\icon.ico =>.LogMeIn Entreprise
O90 - PUC: "A2150A1FCDD116C488E7029A2FA60AA3" [HKCU] . (.Holdem Manager 3.) -- %APPDATA%\Microsoft\Installer\{F1A0512A-1DDC-4C61-887E-20A9F26AA03A}\app_icon.ico =>.Western Digital Technologies
O90 - PUC: "83C33F0CC54320C41B16118339052C5A" [HKU] . (.GoTo Opener.) -- %APPDATA%\Microsoft\Installer\{C0F33C38-345C-4C02-B161-11389350C2A5}\icon.ico =>.LogMeIn Entreprise
O90 - PUC: "A2150A1FCDD116C488E7029A2FA60AA3" [HKU] . (.Holdem Manager 3.) -- %APPDATA%\Microsoft\Installer\{F1A0512A-1DDC-4C61-887E-20A9F26AA03A}\app_icon.ico =>.Western Digital Technologies

---\\ PACKAGES WINDOWS INSTALLER (60) - 24s
[MD5.54EA18CAD778DB228FCD37F89762D341] [WIS][2020/04/19 15:22:51] (.InstallShield Software Corporation.) -- C:\WINDOWS\Installer\108b3078.msi [23079936] =>.InstallShield Software Corporation
[MD5.61211B4CE22991CAE22A3CFB48F89ABB] [WIS][2013/11/21 00:45:13] (.Sony Creative Software Inc. - MSVCRT Redists.) -- C:\WINDOWS\Installer\117ee7f.msi [3059712] =>.Sony Creative Software Inc.
[MD5.129119BC4019F1AE33A0011B1204ED4E] [WIS][2017/12/19 16:08:30] (.Hewlett-Packard - HP Webcam HD 2300 Software.) -- C:\WINDOWS\Installer\13f20985.msi [18539184] =>.Hewlett-Packard
[MD5.C1E2138037F154751E37711E5DC252AD] [WIS][2020/05/21 12:54:15] (.Oracle Corporation - Java SE Runtime Environment 8 Update 251.) -- C:\WINDOWS\Installer\19873a93.msi [65818624] =>.Oracle Corporation
[MD5.2973BAD4D8C3F304022410562F9C3FA0] [WIS][2020/05/21 12:54:09] (.Oracle Corporation - Java Auto Updater.) -- C:\WINDOWS\Installer\19873a99.msi [782336] =>.Oracle Corporation
[MD5.7C3CB3CBA11691D8CF040D9390A7586D] [WIS][2016/02/24 16:45:42] (.Adobe Systems Incorporated - Installers.) -- C:\WINDOWS\Installer\1db14.msi [12911616] =>.Adobe Systems Incorporated
[MD5.8F166FAA86839AA288055DD9B02D97FA] [WIS][2017/08/13 03:34:54] (.MAGIX Computer Products Intl. Co. - MSVCRT Redists.) -- C:\WINDOWS\Installer\206b917d.msi [6299648] =>.MAGIX Computer Products Intl. Co.
[MD5.42823E084777A2BAABB74C25F709B82E] [WIS][2020/06/11 20:02:35] (.Evernote Corp. - Evernote v. 6.24.2.) -- C:\WINDOWS\Installer\20a9f83.msi [130404352] =>.Evernote Corp.
[MD5.D4906210EAD1BB96C75F2AC450487F1E] [WIS][2022/04/09 16:49:23] (.VEGAS - VEGAS Pro 15.0.) -- C:\WINDOWS\Installer\257317c0.msi [3018752] =>.VEGAS
[MD5.1504667BA3C10D841C0B76B6412FAFB5] [WIS][2015/03/17 10:41:29] (.Adobe Systems Incorporated.) -- C:\WINDOWS\Installer\2a221cff.msi [2805760] =>.Adobe Systems Incorporated
[MD5.5376B2262B6E9773801520B6735C6DE9] [WIS][2015/12/15 15:18:36] (.Apple Inc. - QuickTime Installer.) -- C:\WINDOWS\Installer\35e452d.msi [28397568] =>.Apple Inc.
[MD5.9EE546BA5D3C349FF94B1A763EA13AD7] [WIS][2016/01/12 18:51:46] (.Epic Games, Inc. - UE4 Prerequisites (x64).) -- C:\WINDOWS\Installer\42e9f2d.msi [12226560] =>.Epic Games, Inc.
[MD5.F528DE1250B7154BDF9B828882C447D4] [WIS][2018/03/03 21:06:47] (.Max Value Software - Holdem Manager 3.) -- C:\WINDOWS\Installer\475be.msi [127827968] =>.Max Value Software
[MD5.80B1355EB92E1F95647F85D42B63BE0F] [WIS][2015/06/16 15:44:34] (.Intel Corporation - Intel(R) Chipset Device Software.) -- C:\WINDOWS\Installer\4fca7.msi [798720] =>.Intel Corporation
[MD5.E440AD30E269A40DEB541DE963DDCC32] [WIS][2017/12/14 17:30:50] (.Asmedia Technology - Asmedia USB Host Controller Driver.) -- C:\WINDOWS\Installer\4fcaf.msi [4052480] =>.Asmedia Technology
[MD5.8B030138F4FB0D820770CF78F5D87457] [WIS][2015/05/07 09:17:50] (.Intel - Intel(R) Network Connections.) -- C:\WINDOWS\Installer\4fcb5.msi [10526720] =>.Intel
[MD5.9952BF0F051387A950EFEBD73829025C] [WIS][2017/09/23 00:01:26] (.Advanced Micro Devices, Inc. - Catalyst Control Center next.) -- C:\WINDOWS\Installer\5ff0c.msi [600576] =>.Advanced Micro Devices, Inc.
[MD5.8618AFD9A0462B91D75C3B749030F10A] [WIS][2019/08/11 11:40:27] (.Sony - Vegas Pro 12.0 (64-bit).) -- C:\WINDOWS\Installer\6dcb63d.msi [1122304] =>.Sony
[MD5.87ABEE281A53FCAC5A4C9F06EF8C63E9] [WIS][2020/03/24 19:56:03] (.LogMeIn, Inc. - GoTo Opener 1.0.0.533.) -- C:\WINDOWS\Installer\70446a3.msi [114688] =>.LogMeIn, Inc.
[MD5.41D8BCCE878E28766836F7F4AE458396] [WIS][2020/08/21 19:33:04] (.Advanced Micro Devices, Inc. - AMD Settings.) -- C:\WINDOWS\Installer\81380461.msi [141788712] =>.Advanced Micro Devices, Inc.
[MD5.A434C0F53D349D9F90B2F162ECC27741] [WIS][2015/06/05 23:53:18] (.Sony Creative Software Inc. - MSVCRT Redists.) -- C:\WINDOWS\Installer\839975e.msi [5423104] =>.Sony Creative Software Inc.
[MD5.65112C5010E5645CD5137F7A46BB7280] [WIS][2019/08/16 17:57:20] (.Advanced Micro Devices, Inc. - AMD Settings.) -- C:\WINDOWS\Installer\a13402.msi [96555288] =>.Advanced Micro Devices, Inc.
[MD5.8AF6CBDE4293B7C201F25F00186F4F7A] [WIS][2018/02/17 15:04:00] (.PokerStrategy.com - PokerStrategy.com Equilab.) -- C:\WINDOWS\Installer\a77e8ff0.msi [9792476] =>.PokerStrategy.com
[MD5.5FBD7FDD6C661A99A9D977955920469B] [WIS][2019/03/19 11:35:46] (.HP Inc. - HP ENVY Photo 6200 series Basic Device Soft.) -- C:\WINDOWS\Installer\b5da48.msi [5439488] =>.HP Inc.
[MD5.816622FF466CCAB6DEEABA791D9E1DB5] [WIS][2019/03/19 11:35:54] (.HP - HP Scan Dropbox destination plugin.) -- C:\WINDOWS\Installer\b5da4e.msi [1503232] =>.HP
[MD5.8C6FDCC23545F07A6D349DDC32F57094] [WIS][2019/03/19 11:35:54] (.HP - HP Scan EmailSMTP destination plugin.) -- C:\WINDOWS\Installer\b5da54.msi [2347008] =>.HP
[MD5.6788D02B91CA1E4BFE7B6FCACE4C71BE] [WIS][2019/03/19 11:35:54] (.HP - HP Scan FTP destination plugin.) -- C:\WINDOWS\Installer\b5da5a.msi [1810432] =>.HP
[MD5.F50B6AE3FE2A1D540E93217FCB30C543] [WIS][2019/03/19 11:35:55] (.HP - HP Scan Google Drive destination plugin.) -- C:\WINDOWS\Installer\b5da60.msi [1507328] =>.HP
[MD5.D2CE8EE85D1E6E19E32721C4E782E667] [WIS][2019/03/19 11:35:55] (.HP - HP Scan OneDrive destination plugin.) -- C:\WINDOWS\Installer\b5da66.msi [1503232] =>.HP
[MD5.6D291323735B7897F60B2F20FBCEFF59] [WIS][2019/03/19 11:35:56] (.HP - HP Scan SharePoint destination plugin.) -- C:\WINDOWS\Installer\b5da6c.msi [1880064] =>.HP
[MD5.3A6D89F95412A1D682EB77E45F7E6310] [WIS][2019/03/19 11:35:57] (.HP - HP ENVY Photo 6200 series Get product speci.) -- C:\WINDOWS\Installer\b5da73.msi [159744] =>.HP
[MD5.0C5B4C9830AADC71DD8DB351AEC54856] [WIS][2019/03/19 11:35:52] (.HP Inc. - Product Improvement Study for HP ENVY Photo.) -- C:\WINDOWS\Installer\b5da7a.msi [294912] =>.HP Inc.
[MD5.7AF2C7A43DEEA0C4B280F655D86C821B] [WIS][2022/03/10 02:02:20] (.Advanced Micro Devices, Inc. - AMD Settings.) -- C:\WINDOWS\Installer\e6a03.msi [115557475] =>.Advanced Micro Devices, Inc.
[MD5.6A0668C5D37FF784CDF73A9B1D92197E] [WIS][2022/01/24 18:55:04] (.Advanced Micro Devices, Inc. - Branding64.) -- C:\WINDOWS\Installer\e6a09.msi [1323008] =>.Advanced Micro Devices, Inc.
[MD5.2DE92988D83A82E4DA3920F216D970A1] [WIS][2022/03/10 02:01:32] (.Advanced Micro Devices, Inc. - AMD DVR64.) -- C:\WINDOWS\Installer\e6a0f.msi [45105152] =>.Advanced Micro Devices, Inc.
[MD5.F6573C17426D92BA0D103A255C1F573C] [WIS][2022/03/10 02:02:34] (.Advanced Micro Devices, Inc. - AMD WVR64.) -- C:\WINDOWS\Installer\e6a15.msi [19693568] =>.Advanced Micro Devices, Inc.
[MD5.5C256B8910ABFA6FB390B6B6986FBDC8] [WIS][2022/03/28 16:46:53] (.Adobe Systems Incorporated - Adobe ARM Installer.) -- C:\WINDOWS\Installer\e9873.msi [1059840] =>.Adobe Systems Incorporated
[MD5.65112C5010E5645CD5137F7A46BB7280] [WIS][2019/08/16 17:57:20] (.Advanced Micro Devices, Inc. - AMD Settings.) -- C:\WINDOWS\Installer\f1b4.msi [96555288] =>.Advanced Micro Devices, Inc.
[MD5.F9EE3201972364B9A3B1E1AE6A783CEC] [WIS][2021/04/22 16:15:51] (.Adobe Inc..) -- C:\WINDOWS\Installer\1018b4df.msp [23986176] =>.Adobe Inc.
[MD5.11BC9E9ABCF1D5812E42E5CDAC8958E7] [WIS][2016/06/02 21:08:13] (. - Customization Patch.) -- C:\WINDOWS\Installer\1dbaa.msp [2031616]
[MD5.BD4173F416AC180D7AD46CB583BAB949] [WIS][2020/05/21 18:16:51] (.Adobe Inc..) -- C:\WINDOWS\Installer\20e15628.msp [1392640] =>.Adobe Inc.
[MD5.ADF98A69CAA202C2435AC97C124413AC] [WIS][2020/02/05 02:29:55] (.Adobe Inc..) -- C:\WINDOWS\Installer\2a221d00.msp [244162560] =>.Adobe Inc.
[MD5.B88274DA8D68D49732CC28A328885C98] [WIS][2020/11/23 12:11:53] (.Adobe Inc..) -- C:\WINDOWS\Installer\30c7bd4.msp [6557696] =>.Adobe Inc.
[MD5.A74E83195378ECE24C6AF9A16274CAD8] [WIS][2021/10/05 13:08:13] (.Adobe Inc..) -- C:\WINDOWS\Installer\30cf8c1.msp [7356416] =>.Adobe Inc.
[MD5.BC546F5B6982C6159BF159426F96C2F1] [WIS][2021/05/10 09:24:58] (.Adobe Inc..) -- C:\WINDOWS\Installer\3834b.msp [3588096] =>.Adobe Inc.
[MD5.E10BBC17C600D131407642E6C81A81B6] [WIS][2021/06/27 10:37:13] (.Adobe Inc..) -- C:\WINDOWS\Installer\3bdf74f.msp [261931008] =>.Adobe Inc.
[MD5.6C872B8971E67A78A683FD192919AB70] [WIS][2020/09/23 07:58:22] (.Adobe Inc..) -- C:\WINDOWS\Installer\453eae22.msp [33984512] =>.Adobe Inc.
[MD5.E7565F34F95E68CA64D1FB70D5095291] [WIS][2021/07/28 12:44:05] (.Adobe Inc..) -- C:\WINDOWS\Installer\4a6a76a8.msp [3035136] =>.Adobe Inc.
[MD5.7F1419CD81DEB4E238B7F0426B0782B7] [WIS][2020/05/11 08:43:48] (.Adobe Inc..) -- C:\WINDOWS\Installer\511eb285.msp [50810880] =>.Adobe Inc.
[MD5.D537306701DC986AED8B60693701E29B] [WIS][2021/03/06 08:39:59] (.Adobe Inc..) -- C:\WINDOWS\Installer\51e20af6.msp [260001792] =>.Adobe Inc.
[MD5.AC729EF5FD5047779136DD8670413E03] [WIS][2020/07/31 05:39:02] (.Adobe Inc..) -- C:\WINDOWS\Installer\5b553924.msp [70844416] =>.Adobe Inc.
[MD5.11F7E4FF1AEFD307E111CA25022CD840] [WIS][2020/12/09 13:35:08] (.Adobe Inc..) -- C:\WINDOWS\Installer\877fad8.msp [3039232] =>.Adobe Inc.
[MD5.BA664EAE92AA1371BA66F43C703AF5D1] [WIS][2021/04/16 16:01:55] (.Adobe Inc..) -- C:\WINDOWS\Installer\911051c.msp [24084480] =>.Adobe Inc.
[MD5.923228256AD8BBCA145AE48027AA92BF] [WIS][2020/06/02 14:40:08] (.Adobe Inc..) -- C:\WINDOWS\Installer\973b39f.msp [3026944] =>.Adobe Inc.
[MD5.16CD2BA3438D2627805A64D0F4DC063E] [WIS][2020/08/19 13:46:52] (.Adobe Inc..) -- C:\WINDOWS\Installer\a270cf4.msp [2781184] =>.Adobe Inc.
[MD5.FA424307B479C9072535B48BF343301D] [WIS][2021/09/25 09:21:41] (.Adobe Inc..) -- C:\WINDOWS\Installer\be95f849.msp [279277568] =>.Adobe Inc.
[MD5.2AD3AE06875E8C704DA9F109422277CF] [WIS][2020/07/06 14:20:53] (.Adobe Inc..) -- C:\WINDOWS\Installer\d901144.msp [5853184] =>.Adobe Inc.
[MD5.59776CD5E3E33907213B1E8249F64A02] [WIS][2020/11/02 08:52:52] (.Adobe Inc..) -- C:\WINDOWS\Installer\da8f1da.msp [20647936] =>.Adobe Inc.
[MD5.50718C2034AB2B86D733C85CF5FBF62F] [WIS][2022/03/03 00:19:42] (.Adobe Inc..) -- C:\WINDOWS\Installer\e9a0e.msp [304836608] =>.Adobe Inc.
[MD5.DB596E2ADC480687F78F34B7D452D2CB] [WIS][2020/03/16 08:28:35] (.Adobe Inc..) -- C:\WINDOWS\Installer\f35bd80.msp [8130560] =>.Adobe Inc.

---\\ FEATURE CONTROL. (878) - 1s
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:lync99.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOSREC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:VPREVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:DATABASECOMPARE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:SPREADSHEETCOMPARE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:filecompare.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:Video Download Capture 6.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:ProductAgentUI.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:mbamtray.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:mbam.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:AcroRd32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:lync99.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOSREC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:VPREVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:DATABASECOMPARE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:SPREADSHEETCOMPARE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:filecompare.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:Common.ShowHelp.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:lync99.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOSREC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:VPREVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:lync99.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOSREC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:VPREVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:DATABASECOMPARE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:lync99.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOSREC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:VPREVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:DATABASECOMPARE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:SPREADSHEETCOMPARE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:filecompare.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:lync99.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOSREC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:VPREVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:DATABASECOMPARE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:SPREADSHEETCOMPARE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:filecompare.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:lync99.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOSREC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:VPREVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:DATABASECOMPARE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:SPREADSHEETCOMPARE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:filecompare.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:lync99.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOSREC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:VPREVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:DATABASECOMPARE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:SPREADSHEETCOMPARE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:filecompare.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:lync99.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOSREC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:VPREVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:DATABASECOMPARE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:SPREADSHEETCOMPARE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:lync99.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOSREC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:VPREVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:DATABASECOMPARE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:SPREADSHEETCOMPARE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:filecompare.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:Common.ShowHelp.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:Common.DBConnection64.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:lync99.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOSREC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:VPREVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:DATABASECOMPARE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:SPREADSHEETCOMPARE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:filecompare.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:Common.ShowHelp.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:lync99.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOSREC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:VPREVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:DATABASECOMPARE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:SPREADSHEETCOMPARE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:filecompare.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:Common.ShowHelp.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:lync99.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOSREC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:VPREVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:DATABASECOMPARE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:SPREADSHEETCOMPARE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:filecompare.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:Common.ShowHelp.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:lync99.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOSREC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:VPREVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:DATABASECOMPARE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:SPREADSHEETCOMPARE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:filecompare.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:lync99.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOSREC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:VPREVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:DATABASECOMPARE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:SPREADSHEETCOMPARE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:filecompare.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:EQNEDT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:Setup.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:ODeploy.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:Oarpmany.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:CLVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:NAMECONTROLSERVER.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:msotd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:msoev.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOSYNC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOUC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OLicenseHeartbeat.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:FIRSTRUN.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:SELFCERT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:SETLANG.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:GRAPH.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSQRY32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:AppSharingHookController.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:lync.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OcPubMgr.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:UcMapi.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:lync99.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:lynchtmlconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:ONENOTE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:IEContentService.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:ONENOTEM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:SCANPST.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:CNFNOT32.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:excelcnv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:Wordconv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:POWERPNT.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PPTICO.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:misc.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOSREC.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSPUB.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PDFREFLOW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:WINWORD.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:WORDICON.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:VPREVIEW.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:ACCICONS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSACCESS.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:DATABASECOMPARE.EXE =>.Legitimate

---\\ OBSERVATEURS des évènements (151) - 22s

Application.Error: Software Protection Platform Service (440)
~Numéro: 47051
~Date: 04/10/2022 05:00:54 PM
~ID: 8198
~Description: Échec de l’activation des licences (slui.exe) avec le code d’erreur suivant : hr=0xC004F074 Arguments de la ligne de commande : RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-
~Suggestion: Aucune

Application.Error: Application Error (101)
~Numéro: 47032
~Date: 04/10/2022 05:00:36 PM
~ID: 1000
~Description: Nom de l’application défaillante %1, version : %2, horodatage : 0x00000000 Nom du module défaillant : %4, version : %5, horodatage : 0xe89e47cc Code d’exception : 0x0eedfade Décalage d’erreur : 0x0012b922 ID du processus défaillant : 0x2694 Heure de
~Suggestion: Réparer ou réinstaller l'application.

Application.Warning: Windows Search Service (2)
~Numéro: 46823
~Date: 04/10/2022 04:13:58 PM
~ID: 3036
~Description: Impossible de terminer l’analyse dans la source de contenu <%2>.Contexte : Application , Catalogue SystemIndexDétails : Une erreur interne s’est produite dans les Services HTTP Microsoft Windows (HRESULT : 0x80072ee4) (0x80072ee4)
~Suggestion: https://www.repairwin.com/fix-windows-event-3036-search-content-source-cannot-accessed-solved/

Application.Error: Application Hang (4)
~Numéro: 46497
~Date: 04/10/2022 10:44:18 AM
~ID: 1002
~Description: Le programme %1 version %2 a cessé d'interagir avec Windows et a été fermé. Pour voir si plus d'informations sur le problème sont disponibles, vérifiez l'historique des problèmes dans le Panneau de configuration Sécurité et maintenance. ID de proces
~Suggestion: Essayer les commandes suivantes ipconfig /release et ipconfig / renew.

Application.Error: SideBySide (1)
~Numéro: 46260
~Date: 04/09/2022 08:22:08 PM
~ID: 33
~Description: La création du contexte d’activation a échoué pour « %11 ». Assembly dépendant %1 introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé.
~Suggestion: Ces erreurs peuvent généralement être ignorées

Application.Warning: Microsoft-Windows-RestartManager (4)
~Numéro: 46139
~Date: 04/09/2022 08:04:58 PM
~ID: 10010
~Description: Impossible de redémarrer l’application « %3 » (pid %2) - %9.
~Suggestion: Redémarrer manuellement l'application ou le service

Application.Error: Microsoft-Windows-Defrag (12)
~Numéro: 44820
~Date: 04/04/2022 06:32:20 PM
~ID: 264
~Description: L’optimiseur de stockage n’a pas pu terminer %1 sur %2 car : L’opération demandée n’est pas prise en charge par le matériel sous-jacent au volume. (0x8900002A)
~Suggestion: Désactivez la surveillance du disque logique dans le pack d'administration du système d'exploitation de base SCOM pour arrêter l'analyse automatique de la défragmentation.

Application.Error: PostgreSQL (1)
~Numéro: 44325
~Date: 04/02/2022 10:17:03 AM
~ID: 0
~Description: 2022-04-02 10:17:03 CESTFATAL: the database system is starting up

Application.Error: VSS (2)
~Numéro: 44311
~Date: 04/01/2022 11:41:56 PM
~ID: 8193
~Description: Erreur du service de cliché instantané des volumes : erreur lors de l’appel de la routine %1. hr = %2.
~Suggestion: Utiliser la procédure de reconstruction du VSS

Application.Error: Firefox Default Browser Agent (2)
~Numéro: 42825
~Date: 01/02/2022 04:50:48 PM
~ID: 12007
~Description: 0x80072EE7 in IsAgentRemoteDisabledInternal:68

System.Warning: DCOM (526)
~Numéro: 27787
~Date: 04/10/2022 05:02:50 PM
~ID: 10016
~Description: propres à l’applicationLocalActivation{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}{15C20B67-12E7-4BB6-92BB-7AFF07997402}DESKTOP-RUT1CQGMr_GTS-1-5-21-3351771493-749409139-3151566472-1001LocalHost (avec LRPC)Non disponibleNon disponible
~Suggestion: Vérifier les autorisations pour l'accès DCOM

System.Warning: e1i65x64 (14)
~Numéro: 27744
~Date: 04/10/2022 05:00:17 PM
~ID: 27
~Description: Intel(R) Ethernet Connection (2) I219-V Network link is disconnected.

System.Warning: Microsoft-Windows-Kernel-PnP (444)
~Numéro: 27726
~Date: 04/10/2022 05:00:13 PM
~ID: 219
~Description: Le chargement du pilote %5 a échoué pour le périphérique %2.
~Suggestion: Vérifier que le pilote a bien été chargé dans les informations système

System.Error: Microsoft-Windows-Kernel-Boot (22)
~Numéro: 27690
~Date: 04/10/2022 05:00:09 PM
~ID: 124
~Description: 03225747456

System.Error: Microsoft-Windows-Hyper-V-Hypervisor (17)
~Numéro: 27689
~ID: 41
~Description: Hypervisor launch failed; Either VMX not present or not enabled in BIOS.

System.Warning: BTHUSB (44)
~Numéro: 27573
~Date: 04/10/2022 04:16:14 PM
~ID: 34
~Description: La carte locale ne prend pas en charge un état de contrôleur Low Energy important pour la prise en charge du mode périphérique. Le masque d’état pris en charge requis au minimum est %2, a reçu %3. La fonctionnalité du rôle périphérique Low Energy n

System.Error: Service Control Manager (2)
~Numéro: 27517
~Date: 04/10/2022 04:15:49 PM
~ID: 7043
~Description: Le service %1 ne s’est pas fermé correctement après avoir reçu une commande d’anticipation de fermeture.

System.Warning: Microsoft-Windows-Time-Service (27)
~Numéro: 26381
~Date: 04/08/2022 03:36:19 PM
~ID: 134
~Description: NtpClient n'a pas pu définir d'homologue manuel utilisable comme source de temps en raison d'une erreur de résolution DNS sur "%3". NtpClient réessaiera dans %2 minutes, puis doublera l'intervalle d'attente pour les tentatives suivantes. L'erreur éta
~Suggestion: Resynchroniser le client avec l'homologue de source de temps

System.Error: Microsoft-Windows-NDIS (3)
~Numéro: 26013
~Date: 04/06/2022 08:54:10 AM
~ID: 10317
~Description: Le miniport %4, %1, a eu l’événement 74

System.Error: Microsoft-Windows-WindowsUpdateClient (1)
~Numéro: 25398
~Date: 04/01/2022 03:13:32 PM
~ID: 20
~Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur %1 : %2.
~Suggestion: http://kb.eventtracker.com/evtpass/evtpages/EventId_20_Microsoft-Windows-WindowsUpdateClient_63351.asp

System.Warning: Microsoft-Windows-DNS-Client (7)
~Numéro: 25367
~Date: 04/01/2022 11:06:54 AM
~ID: 1014
~Description: La résolution du nom %1 a expiré lorsqu’aucun des serveurs DNS configurés n’a répondu.
~Suggestion: https://social.technet.microsoft.com/wiki/contents/articles/3336.event-id-1014-microsoft-windows-dns-client.aspx

System.Warning: User32 (1)
~Numéro: 25300
~Date: 03/31/2022 11:32:44 PM
~ID: 1073
~Description: La tentative par l’utilisateur %2 de redémarrer/arrêter l’ordinateur %1 a échoué

System.Error: EventLog (5)
~Numéro: 24262
~Date: 03/28/2022 04:30:56 PM
~ID: 6008
~Description: L’arrêt système précédant à %1 le %2 n’était pas prévu.

System.Warning: Microsoft-Windows-Ntfs (5)
~Numéro: 24217
~Date: 01/02/2022 04:48:51 PM
~ID: 140
~Description: 2G:24\Device\HarddiskVolume100xc000000e{f39016a1-00bb-b681-413c-d24d44743c89}8TOSHIBA 16External USB 3.04000120 Z382TA6AT70

System.Warning: disk (60)
~Numéro: 24216
~ID: 51
~Description: Une erreur a été détectée sur le périphérique %1 lors d'une opération de pagination.

System.Error: Schannel (3)
~Numéro: 24179
~Date: 12/15/2021 11:19:15 AM
~ID: 4103
~Description: Une erreur irrécupérable s'est produite lors de la création des informations d'identification %1 pour TLS. État d'erreur interne : %2.

System.Error: volsnap (3)
~Numéro: 24153
~Date: 12/13/2021 07:03:25 PM
~ID: 36
~Description: Les clichés instantanés du volume %2 ont été annulés car le stockage du cliché instantané n’a pas pu s’agrandir en raison d’une limite utilisateur.

System.Warning: Ntfs (1)
~Numéro: 23333
~Date: 12/04/2021 07:33:23 PM
~ID: 50
~Description: {L'écriture différée a échoué} Windows n'a pas pu enregistrer les données du fichier %2. Les données ont été perdues. Cette erreur peut être due à une panne de votre matériel ou de votre connexion réseau. Essayez d'enregistrer ce fichier à un autre e

---\\ SCAN ADDITIONNEL (22) - 17s
C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\extensions\{dbac9680-d559-4cd4-9765-059879e8c467}.xpi =>Toolbar.Graal
C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hgfjoaookbahbhinopgfoiajfijfcdhm =>Toolbar.Graal
C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kmhkepipobnjllejbafajoemahjejdcm =>Toolbar.Graal
C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Local Extension Settings\kmhkepipobnjllejbafajoemahjejdcm =>Toolbar.Graal
C:\Users\Mr_GT\AppData\Local\AdvinstAnalytics =>.SUP.Various
C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc =>.SUP.Discord
C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\Default\File System\000 =>.SUP.Temporary.Chrome
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Logiciels\PlaceMint3.0.2\PlaceMint.exe.FriendlyAppName =>.Unsigned
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Logiciels\MT2 Mechanical Keyboard\OemDrv.exe.FriendlyAppName =>.Unsigned
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Jeux\Battle.net\Battle.net Launcher.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Jeux\Battle.net\Battle.net Launcher.exe.ApplicationCompany =>.SUP.Orphan.MUICache
C:\Users\Mr_GT\AppData\Local\Discord\app-1.0.9004\Discord.exe =>.SUP.Discord
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\users\mr_gt\appdata\local\discord\app-1.0.9004\discord.exe.FriendlyAppName =>.SUP.Discord
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\users\mr_gt\appdata\local\discord\app-1.0.9004\discord.exe.ApplicationCompany =>.SUP.Discord
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Download\Overcooked_2_Gourmet_Edition-Razor1911\rzr-overcooked2ge.iso.FriendlyAppName =>.Unsigned
[HKU\S-1-5-21-3351771493-749409139-3151566472-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Logiciels\PlaceMint3.0.2\PlaceMint.exe.FriendlyAppName =>.Unsigned
[HKU\S-1-5-21-3351771493-749409139-3151566472-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Logiciels\MT2 Mechanical Keyboard\OemDrv.exe.FriendlyAppName =>.Unsigned
[HKU\S-1-5-21-3351771493-749409139-3151566472-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Jeux\Battle.net\Battle.net Launcher.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3351771493-749409139-3151566472-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Jeux\Battle.net\Battle.net Launcher.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3351771493-749409139-3151566472-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\users\mr_gt\appdata\local\discord\app-1.0.9004\discord.exe.FriendlyAppName =>.SUP.Discord
[HKU\S-1-5-21-3351771493-749409139-3151566472-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\users\mr_gt\appdata\local\discord\app-1.0.9004\discord.exe.ApplicationCompany =>.SUP.Discord
[HKU\S-1-5-21-3351771493-749409139-3151566472-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Download\Overcooked_2_Gourmet_Edition-Razor1911\rzr-overcooked2ge.iso.FriendlyAppName =>.Unsigned

---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS (7) - 0s
https://nicolascoolman.eu/2017/09/25/toolbar-igraal/ =>Toolbar.Graal
https://nicolascoolman.eu/forum/Topic/Discord-logiciel-potentiellement-superflu-lps/ =>.SUP.Discord
https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.Various
https://nicolascoolman.eu/forum/Topic/warning-eventlogapp-evenement-dapplication/ =>Warning.EventLogApp
https://nicolascoolman.eu/forum/Topic/warning-eventlogsys-evenement-systeme/ =>Warning.EventLogSys
https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.Temporary.Chrome
https://nicolascoolman.eu/forum/Topic/orphan-muicache-logiciel-potentiellement-superflu-lps/ =>.SUP.Orphan.MUICache

---\\ NUMEROS DE SÉRIE
[00CC2413C6F7315CA6CC837FD2E857CC6A] [13/01/2021] (.AVB Disc Soft, SIA.) - D:\Logiciels\DAEMON Tools Lite\DiscSoftBusServiceLite.exe =>.AVB Disc Soft, SIA
[00CC2413C6F7315CA6CC837FD2E857CC6A] [13/01/2021] (.AVB Disc Soft, SIA.) - D:\Logiciels\DAEMON Tools Lite\DTShellHlp.exe =>.AVB Disc Soft, SIA
[00CC2413C6F7315CA6CC837FD2E857CC6A] [13/01/2021] (.AVB Disc Soft, SIA.) - D:\Logiciels\DAEMON Tools Lite\DTShl64.dll =>.AVB Disc Soft, SIA
[00CC2413C6F7315CA6CC837FD2E857CC6A] [13/01/2021] (.AVB Disc Soft, SIA.) - D:\Logiciels\DAEMON Tools Lite\uninst.exe =>.AVB Disc Soft, SIA
[00E49E47111FEC98CD0000000055662B3E] [04/02/2019] (.Rockstar Games, Inc..) - D:\Jeux\GTA5\GTA5.exe =>.Rockstar Games, Inc.
[00E49E47111FEC98CD0000000055662B3E] [25/06/2018] (.Rockstar Games, Inc..) - C:\Program Files (x86)\Rockstar Games\Social Club\SocialClubHelper.exe =>.Rockstar Games, Inc.
[00E49E47111FEC98CD0000000055662B3E] [25/06/2018] (.Rockstar Games, Inc..) - C:\Program Files\Rockstar Games\Social Club\SocialClubHelper.exe =>.Rockstar Games, Inc.
[00E49E47111FEC98CD0000000055662B3E] [25/06/2018] (.Rockstar Games, Inc..) - C:\Program Files\Rockstar Games\Social Club\uninstallRGSCRedistributable.exe =>.Rockstar Games, Inc.
[011F39A2261A993DD15176DA6FE4FBEA] [02/03/2022] (.Adobe Inc..) - C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Inc.
[011F39A2261A993DD15176DA6FE4FBEA] [02/03/2022] (.Adobe Inc..) - C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe =>.Adobe Inc.
[011F39A2261A993DD15176DA6FE4FBEA] [17/11/2021] (.Adobe Inc..) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.
[01342592A0010CB1109C11C0519CFD24] [21/04/2020] (.Notepad++.) - D:\Logiciels\Notepad++\notepad++.exe =>.Notepad++
[01342592A0010CB1109C11C0519CFD24] [21/04/2020] (.Notepad++.) - D:\Logiciels\Notepad++\NppShell_06.dll =>.Notepad++
[01901246C0A4BEB8A7ED5EA9E65C54FA] [31/03/2022] (.WhatsApp, Inc.) - C:\Users\Mr_GT\AppData\Local\WhatsApp\Update.exe =>.WhatsApp, Inc
[01901246C0A4BEB8A7ED5EA9E65C54FA] [31/03/2022] (.WhatsApp, Inc.) - C:\Users\Mr_GT\AppData\Local\WhatsApp\WhatsApp.exe =>.WhatsApp, Inc
[0280AE12D4C528DC0AA106FB9F17AA37] [17/05/2021] (.HP Inc..) - C:\HP\Diagnostics\PSDR\HPDiagnosticCoreUI.exe =>.HP Inc.
[0280AE12D4C528DC0AA106FB9F17AA37] [31/03/2022] (.HP Inc..) - C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe =>.HP Inc.
[0280AE12D4C528DC0AA106FB9F17AA37] [31/03/2022] (.HP Inc..) - C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe =>.HP Inc.
[02D6AAEAB3924859805EBB529E314DE0] [28/03/2022] (.Discord Inc..) - C:\Users\Mr_GT\AppData\Local\Discord\app-1.0.9004\Discord.exe =>.SUP.Discord
[02D6AAEAB3924859805EBB529E314DE0] [28/03/2022] (.Discord Inc..) - C:\Users\Mr_GT\AppData\Local\Discord\app-1.0.9004\ffmpeg.dll =>.SUP.Discord
[02D6AAEAB3924859805EBB529E314DE0] [28/03/2022] (.Discord Inc..) - C:\Users\Mr_GT\AppData\Local\Discord\app-1.0.9004\libEGL.dll =>.SUP.Discord
[02D6AAEAB3924859805EBB529E314DE0] [28/03/2022] (.Discord Inc..) - C:\Users\Mr_GT\AppData\Local\Discord\app-1.0.9004\libGLESv2.dll =>.SUP.Discord
[02D6AAEAB3924859805EBB529E314DE0] [28/03/2022] (.Discord Inc..) - C:\Users\Mr_GT\AppData\Local\Discord\app-1.0.9004\swiftshader\libEGL.dll =>.SUP.Discord
[02D6AAEAB3924859805EBB529E314DE0] [28/03/2022] (.Discord Inc..) - C:\Users\Mr_GT\AppData\Local\Discord\app-1.0.9004\swiftshader\libGLESv2.dll =>.SUP.Discord
[02D6AAEAB3924859805EBB529E314DE0] [28/03/2022] (.Discord Inc..) - C:\Users\Mr_GT\AppData\Local\Discord\app-1.0.9004\vk_swiftshader.dll =>.SUP.Discord
[02D6AAEAB3924859805EBB529E314DE0] [28/03/2022] (.Discord Inc..) - C:\Users\Mr_GT\AppData\Local\Discord\app-1.0.9004\vulkan-1.dll =>.SUP.Discord
[0320BE3EB866526927F999B97B04346E] [30/05/2018] (.Realtek Semiconductor Corp..) - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe =>.Realtek Semiconductor Corp.
[0320BE3EB866526927F999B97B04346E] [30/05/2018] (.Realtek Semiconductor Corp..) - C:\Program Files\Realtek\Audio\HDA\RtlUpd64.exe =>.Realtek Semiconductor Corp.
[0320BE3EB866526927F999B97B04346E] [30/05/2018] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp.
[032694CFEE1C05E1B2AA8FCF842A3539] [02/09/2021] (.TeamViewer Germany GmbH.) - D:\Logiciels\TeamViewer\TeamViewer.exe =>.TeamViewer Germany GmbH
[032694CFEE1C05E1B2AA8FCF842A3539] [02/09/2021] (.TeamViewer Germany GmbH.) - D:\Logiciels\TeamViewer\TeamViewer_Service.exe =>.TeamViewer Germany GmbH
[032694CFEE1C05E1B2AA8FCF842A3539] [02/09/2021] (.TeamViewer Germany GmbH.) - D:\Logiciels\TeamViewer\uninstall.exe =>.TeamViewer Germany GmbH
[03574AC3E8A3001F70F9AEC1E7034AD1] [22/09/2012] (.Visan Industries.) - C:\Program Files (x86)\HP Photo Creations\PhotoProduct.exe =>.Visan Industries
[037E56A19D56788E01F12630951BF5CC] [18/03/2019] (.HP Inc.) - C:\Program Files (x86)\HP\HP ENVY Photo 6200 series\bin\HPScan.exe =>.HP Inc
[037E56A19D56788E01F12630951BF5CC] [18/03/2019] (.HP Inc.) - C:\Program Files\HP\HP ENVY Photo 6200 series\Bin\HPNetworkCommunicatorCom.exe =>.HP Inc
[037E56A19D56788E01F12630951BF5CC] [19/03/2019] (.HP Inc.) - C:\Program Files\HP\HP ENVY Photo 6200 series\Bin\DeviceSetup.exe =>.HP Inc
[03B4BC5EE79D842C03930B8619EDEAE4] [03/11/2021] (.Zoom Video Communications, Inc..) - C:\Users\Mr_GT\AppData\Roaming\Zoom\uninstall\Installer.exe =>.Zoom Video Communications, Inc.
[03B4BC5EE79D842C03930B8619EDEAE4] [16/11/2021] (.Zoom Video Communications, Inc..) - C:\Users\Mr_GT\AppData\Roaming\Zoom\bin\airhost.exe =>.Zoom Video Communications, Inc.
[03B4BC5EE79D842C03930B8619EDEAE4] [16/11/2021] (.Zoom Video Communications, Inc..) - C:\Users\Mr_GT\AppData\Roaming\Zoom\bin\Zoom.exe =>.Zoom Video Communications, Inc.
[0443B567BFFBAA3BC083FE45A46DD041] [15/01/2019] (.Blizzard Entertainment, Inc..) - C:\ProgramData\Battle.net\Agent\Blizzard Uninstaller.exe =>.Blizzard Entertainment, Inc.
[0443B567BFFBAA3BC083FE45A46DD041] [19/03/2019] (.Blizzard Entertainment, Inc..) - D:\Jeux\Overwatch\Overwatch Launcher.exe =>.Blizzard Entertainment, Inc.
[0443B567BFFBAA3BC083FE45A46DD041] [28/05/2020] (.Blizzard Entertainment, Inc..) - D:\Jeux\Battle.net\Battle.net Launcher.exe =>.Blizzard Entertainment, Inc.
[0443B567BFFBAA3BC083FE45A46DD041] [28/05/2020] (.Blizzard Entertainment, Inc..) - D:\Jeux\Battle.net\Battle.net.exe =>.Blizzard Entertainment, Inc.
[044E3BF58976880FFD074448A8F7A058] [11/12/2020] (.Malwarebytes Corporation.) - C:\WINDOWS\system32\drivers\mbae64.sys =>.Malwarebytes Corporation
[044E3BF58976880FFD074448A8F7A058] [26/06/2019] (.Malwarebytes Corporation.) - D:\Logiciels\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation
[04F131322CC31D92C849FCA351D2F141] [03/12/2020] (.Discord Inc..) - C:\Users\Mr_GT\AppData\Local\Discord\Update.exe =>.SUP.Discord
[054F466CECCBE9D6BEE81F5435E64D47] [12/07/2021] (.Valve.) - D:\Jeux\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe =>.Valve
[054F466CECCBE9D6BEE81F5435E64D47] [12/08/2021] (.Valve.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe =>.Valve
[054F466CECCBE9D6BEE81F5435E64D47] [21/07/2021] (.Valve.) - D:\Jeux\Steam\bin\cef\cef.win7x64\steamwebhelper.exe =>.Valve
[054F466CECCBE9D6BEE81F5435E64D47] [21/07/2021] (.Valve.) - D:\Jeux\Steam\Steam.exe =>.Valve
[06AEA76BAC46A9E8CFE6D29E45AAF033] [28/03/2022] (.Google LLC.) - C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler.exe =>.Google LLC
[06AEA76BAC46A9E8CFE6D29E45AAF033] [28/03/2022] (.Google LLC.) - C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler64.exe =>.Google LLC
[06B922A8397E632FE5348DA267275B4F] [22/01/2019] (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HDBox\Uninstaller.exe =>.Adobe Systems Incorporated
[06D41A66692153FFBE5DEFE873ADFF6A] [29/03/2022] (.Hugh Bailey.) - D:\Logiciels\obs-studio\bin\64bit\obs64.exe =>.Not verified
[06DBE19411438F282930348586B67EE7] [17/07/2021] (.PUBG CORPORATION.) - C:\Program Files\Common Files\PUBG\zksvc.exe =>.Not verified
[07CDE1A1A0F336D740B9572374138D6B] [15/01/2020] (.Electronic Arts, Inc..) - D:\Jeux\Origin\Origin.exe =>.Electronic Arts, Inc.
[07CDE1A1A0F336D740B9572374138D6B] [15/01/2020] (.Electronic Arts, Inc..) - D:\Jeux\Origin\OriginClientService.exe =>.Electronic Arts, Inc.
[07CDE1A1A0F336D740B9572374138D6B] [15/01/2020] (.Electronic Arts, Inc..) - D:\Jeux\Origin\OriginUninstall.exe =>.Electronic Arts, Inc.
[07CDE1A1A0F336D740B9572374138D6B] [15/01/2020] (.Electronic Arts, Inc..) - D:\Jeux\Origin\OriginWebHelperService.exe =>.Electronic Arts, Inc.
[07CDE1A1A0F336D740B9572374138D6B] [21/09/2018] (.Electronic Arts, Inc..) - C:\Program Files\Common Files\EAInstaller\Battlefield V\Cleanup.exe =>.Electronic Arts, Inc.
[084CAF4DF499141D404B7199AA2C2131] [22/05/2018] (.Valve.) - D:\Jeux\Steam\uninstall.exe =>.Valve
[08A2EC4E78A09E174B192E5535984B59] [11/12/2020] (.Malwarebytes Inc.) - C:\WINDOWS\System32\Drivers\mbamswissarmy.sys =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/12/2020] (.Malwarebytes Inc.) - D:\Logiciels\Anti-Malware\mbam.exe =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/12/2020] (.Malwarebytes Inc.) - D:\Logiciels\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [13/12/2020] (.Malwarebytes Inc.) - C:\WINDOWS\System32\DRIVERS\farflt.sys =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [13/12/2020] (.Malwarebytes Inc.) - C:\WINDOWS\system32\DRIVERS\mbam.sys =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [13/12/2020] (.Malwarebytes Inc.) - C:\WINDOWS\System32\Drivers\MbamChameleon.sys =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [13/12/2020] (.Malwarebytes Inc.) - C:\WINDOWS\System32\DRIVERS\mwac.sys =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [16/11/2020] (.Malwarebytes Inc.) - D:\Logiciels\Anti-Malware\mbuns.exe =>.Malwarebytes Inc
[094DC9C3B9D09B4F1D07FA327100E5D5] [03/07/2021] (.BattlEye Innovations e.K..) - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe =>.BattlEye Innovations e.K.
[094DC9C3B9D09B4F1D07FA327100E5D5] [12/08/2021] (.BattlEye Innovations e.K..) - D:\Jeux\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe =>.BattlEye Innovations e.K.
[09597E6236AF8128F0B7BE7B37BD3363] [05/12/2020] (.HP Inc..) - C:\Program Files (x86)\HP\Diagnostics\PSDR\SoftPaq\Binaries\HPDiagnosticCoreUI.exe =>.HP Inc.
[0964B50A745C484789A9A6E114626ED2] [12/08/2021] (.PUBG CORPORATION.) - D:\Jeux\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe =>.PUBG CORPORATION
[0964B50A745C484789A9A6E114626ED2] [12/08/2021] (.PUBG CORPORATION.) - D:\jeux\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe =>.PUBG CORPORATION
[0C067D0F436427B359B7A6BABD673873] [18/07/2021] (.Wellbia.com Co., Ltd..) - C:\Windows\xhunter1.sys =>.Not verified
[0C1CD3EEA47EDDA7A032573B014D0AFD] [10/12/2021] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation
[0C1CD3EEA47EDDA7A032573B014D0AFD] [10/12/2021] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
[0C1CD3EEA47EDDA7A032573B014D0AFD] [10/12/2021] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation
[0CEFAB1F7C07370C77DFB61C3CA4F5F0] [13/01/2019] (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe =>.Adobe Systems Incorporated
[0D7AAE3B360869A3BA28BD7D1FD0B8F6] [06/09/2018] (.VS Revo Group Ltd..) - D:\Logiciels\Revo Uninstaller Pro\RUExt.dll =>.VS Revo Group Ltd.
[0D7AAE3B360869A3BA28BD7D1FD0B8F6] [11/12/2018] (.VS Revo Group Ltd..) - D:\Logiciels\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group Ltd.
[0E25850DA70F2EF8A7D9348F] [05/03/2019] (.MICRO-STAR INTERNATIONAL CO., LTD..) - D:\Logiciels\MSI Afterburner\MSIAfterburner.exe =>.MICRO-STAR INTERNATIONAL CO., LTD.
[0E4418E2DEDE36DD2974C3443AFB5CE5] [01/04/2022] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\100.0.4896.75\elevation_service.exe =>.Google LLC
[0E4418E2DEDE36DD2974C3443AFB5CE5] [01/04/2022] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC
[0E4418E2DEDE36DD2974C3443AFB5CE5] [07/04/2022] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\100.0.4896.75\Installer\chrmstp.exe =>.Google LLC
[0E4418E2DEDE36DD2974C3443AFB5CE5] [07/04/2022] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\100.0.4896.75\Installer\setup.exe =>.Google LLC
[0E4418E2DEDE36DD2974C3443AFB5CE5] [29/03/2022] (.Google LLC.) - C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\SwReporter\100.281.200\software_reporter_tool.exe =>.Google LLC
[0F6C6C76C237FDBD4775DF1EEC48E4E7] [09/03/2020] (.Evernote Corporation.) - D:\Logiciels\Evernote\Evernote.exe =>.Evernote Corporation
[0F6C6C76C237FDBD4775DF1EEC48E4E7] [09/03/2020] (.Evernote Corporation.) - D:\Logiciels\Evernote\EvernoteClipper.exe =>.Evernote Corporation
[0FA5B80428F4624CF9672211E1956FBE] [10/01/2019] (.VideoLAN.) - D:\Logiciels\VLC\vlc.exe =>.VideoLAN
[10FB713319027F3F1F1C0667B3C38CA9] [26/02/2016] (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll =>.Adobe Systems, Incorporated
[10FB713319027F3F1F1C0667B3C38CA9] [26/02/2016] (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll =>.Adobe Systems, Incorporated
[112172E6B04266BB4059BFEF636CF8F452A0] [14/12/2017] (.Disc Soft Ltd.) - C:\WINDOWS\System32\drivers\dtlitescsibus.sys =>.Disc Soft Ltd
[112172E6B04266BB4059BFEF636CF8F452A0] [14/12/2017] (.Disc Soft Ltd.) - C:\WINDOWS\System32\drivers\dtliteusbbus.sys =>.Disc Soft Ltd
[12D5C9E2949D48ABACCD3514F0FB22AD] [09/09/2014] (.ASUSTeK Computer Inc..) - C:\Program Files (x86)\ASUS\IO\AsIoUnins.exe =>.ASUSTeK Computer Inc.
[1402AEEF0D31BE743E73F6A7A960C4F4] [02/01/2017] (.Riverbed Technology, Inc..) - C:\Windows\system32\drivers\npf.sys =>.Riverbed Technology, Inc.
[17AED194A417BC79B175CAE316DF75BA] [24/01/2015] (.Visan Industries.) - C:\Program Files (x86)\HP Photo Creations\uninst.exe =>.Visan Industries
[1B0FD9717C2F577F47D64A15458EEFE2] [21/12/2016] (.VS Revo Group.) - C:\WINDOWS\System32\DRIVERS\revoflt.sys =>.VS Revo Group
[1F3216F428F850BE2C66CAA056F6D821] [15/10/2021] (.Telegram FZ-LLC.) - D:\Logiciels\Telegram Desktop\Telegram.exe =>.Telegram FZ-LLC
[234175E3D1A23EF8ACB50245] [29/06/2018] (.EasyAntiCheat Oy.) - C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe =>.EasyAntiCheat Oy
[266D333EDE17A8B472053E4FA3934572] [11/04/2018] (.AVG Technologies CZ, s.r.o..) - C:\WINDOWS\System32\drivers\lpsport.sys =>.AVG Technologies CZ, s.r.o.
[2912C70C9A2B8A3EF6F6074662D68B8D] [14/12/2017] (.Google Inc.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc
[2C80892E0115B0B77AA3594B9A733953] [19/12/2017] (.Realtek Semiconductor Corp.) - C:\Windows\system32\drivers\RsProxy.sys =>.Realtek Semiconductor Corp
[2D386ECA2FB81CCCE19ECF58458BB6A0] [08/10/2016] (.Shenzhen Jia Xing Investment Co., Ltd..) - C:\Program Files (x86)\Common Files\Aimersoft\Aimersoft Helper Compact\ASHelper.exe =>.Shenzhen Jia Xing Investment Co., Ltd.
[33000002198C0A9FB2162B10E6000000000219] [28/10/2021] (.Skype Software Sarl.) - C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe =>.Skype Software Sarl
[33000002198C0A9FB2162B10E6000000000219] [28/11/2021] (.Skype Software Sarl.) - C:\Program Files (x86)\Microsoft\Skype for Desktop\unins000.exe =>.Skype Software Sarl
[330000029C6392BD77C797F02800000000029C] [31/03/2022] (.Skype Software Sarl.) - C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.82.404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Not verified
[420B1AD8D94118DCF821B8CBD6E142F9] [13/07/2021] (.Wellbia.com Co., Ltd..) - C:\Program Files\Common Files\UNCHEATER\ucldr_battlegrounds_gl.exe =>.Not verified
[4B20FF7D9D4C6B] [14/12/2017] (.EnterpriseDB Corporation.) - C:\Program Files (x86)\PSQLINSTALL\postgres84.exe =>.EnterpriseDB Corporation
[4C17772E] [25/02/2015] (.Take-Two Interactive Software, Inc..) - C:\Program Files (x86)\InstallShield Installation Information\{E01FA564-2094-4833-8F2F-1FFEC6AFCC46}\setup.exe =>.Take-Two Interactive Software, Inc.
[4CD9E755850C1372B48DC182A7308BAB] [13/10/2017] (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amdkmafd.sys =>.Advanced Micro Devices, Inc.
[529E3F9FCF7D58D520D607AB74395002] [24/02/2019] (.win.rar GmbH.) - C:\Program Files\WinRAR\Rar.exe =>.win.rar GmbH
[529E3F9FCF7D58D520D607AB74395002] [24/02/2019] (.win.rar GmbH.) - C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH
[529E3F9FCF7D58D520D607AB74395002] [24/02/2019] (.win.rar GmbH.) - C:\Program Files\WinRAR\uninstall.exe =>.win.rar GmbH
[535091E6CAB13AF393B51EAD0825F627] [05/11/2021] (.Advanced Micro Devices Inc..) - C:\Windows\System32\DriverStore\FileRepository\amdsafd.inf_amd64_edd3335a4253bf6d\amdsafd.sys =>.Not verified
[535091E6CAB13AF393B51EAD0825F627] [09/03/2022] (.Advanced Micro Devices Inc..) - C:\Program Files\AMD\CNext\CNext\amdow.exe =>.Not verified
[535091E6CAB13AF393B51EAD0825F627] [09/03/2022] (.Advanced Micro Devices Inc..) - C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe =>.Not verified
[535091E6CAB13AF393B51EAD0825F627] [09/03/2022] (.Advanced Micro Devices Inc..) - C:\Program Files\AMD\CNext\CNext\cncmd.exe =>.Not verified
[535091E6CAB13AF393B51EAD0825F627] [09/03/2022] (.Advanced Micro Devices Inc..) - C:\Program Files\AMD\CNext\CNext\Radeonsoftware.exe =>.Not verified
[535091E6CAB13AF393B51EAD0825F627] [10/03/2022] (.Advanced Micro Devices Inc..) - C:\Program Files\AMD\CIM\Bin64\AMDSoftwareInstaller.exe =>.Not verified
[535091E6CAB13AF393B51EAD0825F627] [13/12/2021] (.Advanced Micro Devices Inc..) - C:\WINDOWS\System32\drivers\amdfendr.sys =>.Not verified
[535091E6CAB13AF393B51EAD0825F627] [13/12/2021] (.Advanced Micro Devices Inc..) - C:\WINDOWS\System32\drivers\amdfendrmgr.sys =>.Not verified
[535091E6CAB13AF393B51EAD0825F627] [16/03/2022] (.Advanced Micro Devices Inc..) - C:\WINDOWS\System32\drivers\amdkmpfd.sys =>.Not verified
[535091E6CAB13AF393B51EAD0825F627] [16/03/2022] (.Advanced Micro Devices Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0377495.inf_amd64_58cc395c0bf03a26\B377432\amdkmdag.sys =>.Not verified
[535091E6CAB13AF393B51EAD0825F627] [16/03/2022] (.Advanced Micro Devices Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0377495.inf_amd64_58cc395c0bf03a26\B377432\atieclxx.exe =>.Not verified
[535091E6CAB13AF393B51EAD0825F627] [16/03/2022] (.Advanced Micro Devices Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0377495.inf_amd64_58cc395c0bf03a26\B377432\atiesrxx.exe =>.Not verified
[535091E6CAB13AF393B51EAD0825F627] [17/08/2021] (.Advanced Micro Devices Inc..) - C:\WINDOWS\System32\drivers\amdxe.sys =>.Not verified
[54CCA67C86AD2DDFBB5CE4D41DC7A3E2] [15/01/2019] (.Epic Games Inc..) - C:\ProgramData\Package Cache\{2890ae6b-90e9-448d-b3e6-97e43c21e2fd}\UE4PrereqSetup_x64.exe =>.Epic Games Inc.
[54CCA67C86AD2DDFBB5CE4D41DC7A3E2] [20/12/2017] (.Epic Games Inc..) - C:\ProgramData\Package Cache\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}\LauncherPrereqSetup_x64.exe =>.Epic Games Inc.
[56000001757376CD78AD000C9A000000000175] [06/05/2018] (.Intel(R) Embedded Subsystems and IP Blocks Group.) - C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys =>.Intel(R) Embedded Subsystems and IP Blocks Group
[586949448B11998044814E89345A337F] [10/05/2018] (.WDKTestCert build,131474841775766162.) - C:\WINDOWS\System32\drivers\AppleLowerFilter.sys =>.WDKTestCert build,131474841775766162
[5909D9C07208F38020A96B8C516A27F5] [01/05/2019] (.Electronic Arts, Inc..) - D:\Jeux\Battlefield V\bfv.exe =>.Electronic Arts, Inc.
[5909D9C07208F38020A96B8C516A27F5] [01/05/2019] (.Electronic Arts, Inc..) - D:\Jeux\Battlefield V\bfvTrial.exe =>.Electronic Arts, Inc.
[5CCAA82369A26AEE30D017616B1CEB69] [19/01/2018] (.Wondershare Technology Co.,Ltd.) - C:\WINDOWS\System32\drivers\VirtualAudio.sys =>.Wondershare Technology Co.,Ltd
[63E34D3C5E10D736DEE1C5320C2EF8F8] [11/08/2019] (.Movavi Software Limited.) - D:\Logiciels\movavi\Movavi Video Converter 19 Premium\uninst.exe =>.Movavi Software Limited
[6DC3ED4566163E279D2784C99FFFD787] [23/08/2017] (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated
[720500F0177858D2E78E8C0ADD3D2D54] [01/02/2020] (.ObviousIdea.) - D:\Logiciels\Light Image Resizer 5\unins000.exe =>.ObviousIdea
[75FB51C8768EF6927BF41DA1A234A1D9] [17/03/2015] (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll =>.Adobe Systems, Incorporated
[76BDA099930ACCDEF2E06E86AAC1BAFF] [07/01/2016] (.Open Source Developer, Pierre Noguès.) - C:\Program Files (x86)\serposcope\bin\serposcope-service.exe =>.Not verified
[76BDA099930ACCDEF2E06E86AAC1BAFF] [07/01/2016] (.Open Source Developer, Pierre Noguès.) - C:\Program Files (x86)\serposcope\bin\serposcopew.exe =>.Not verified
[7818EAD53083AE1106A2D5A565786166] [05/06/2015] (.ASMedia Technology Inc..) - C:\WINDOWS\System32\drivers\asmthub3.sys =>.ASMedia Technology Inc.
[7818EAD53083AE1106A2D5A565786166] [05/06/2015] (.ASMedia Technology Inc..) - C:\WINDOWS\System32\drivers\asmtxhci.sys =>.ASMedia Technology Inc.
[7C5395B0039E0E7B94C2885A678B688B] [15/07/2012] (.GenArts, Inc.) - C:\Program Files (x86)\GenArts\SapphireOFX\genarts-frontend.exe =>.GenArts, Inc
[7D08D9BC130726DE26EE4EF28E133084] [02/07/2013] (.ASUSTeK Computer Inc..) - C:\WINDOWS\System32\drivers\IOMap64.sys =>.ASUSTeK Computer Inc.
[7D08D9BC130726DE26EE4EF28E133084] [09/09/2014] (.ASUSTeK Computer Inc..) - C:\Windows\SysWOW64\drivers\AsIO.sys =>.ASUSTeK Computer Inc.

~ Unselected Options:
~ End of the scan, 13633 items in 05mn35s (3772)(0)

Publicité


Signaler le contenu de ce document

Publicité