--------------- QuickDiag | g3n-h@ckm@n | V5_29.10.19.1 --------------- ----- XP | Vista | 7 | 8 | 8.1 | 10 - 32/64 bits ----- - Start 07/04/2020 13:13:01 Updated 29/10/2019 | 06:45 (GMT) by g3n-h@ckm@n Contact : http://www.sosvirus.net/ Time Zone : (UTC+01:00) Bruxelles, Copenhague, Madrid, Paris [antifondance 10Crem (Administrator)] - [DESKTOP-37KC94K] (S-1-5-21-4265624635-2019933758-61733912-1001) System: Microsoft Windows 10 Famille Insider Preview - - (10.0.19536) - BuildType: Multiprocessor Free - OSLanguage: 1036 (040c) -> (2004) System: AutoReboot: True - DebugFilePath: %SystemRoot%\MEMORY.DMP - KernelDumpOnly: False - OverwriteExistingDebugFile: True - WriteDebugInfo: True - WriteToSystemLog: True Boot : Microsoft Windows 10 Famille Insider Preview|C:\WINDOWS|\Device\Harddisk0\Partition3 Boot : SafeMode with network PC: CQ2904EF - Hewlett-Packard - IdNumber: 4CH3100VPJ - UUID: 2C238515-5AA2-7984-51F0-370493363EDB Processor : X64 - 1397 Mhz - AMD E1-1200 APU with Radeon(tm) HD Graphics 8.17 - fra - AMI - S/N: 4CH3100VPJ - 8.17 - HPQOEM - 1072009 CoreTemp : ? Celsius ----------| Extended ---------- | SoundDevice Realtek High Definition Audio - Status: Error - Manufacturer: Realtek - PNPDeviceID: HDAUDIO\FUNC_01&VEN_10EC&DEV_0662&SUBSYS_103C2AE3&REV_1001\4&2070A159&0&0001 ---------- | Video AMD Radeon HD 7310 Graphics - Resolution: x - Colors: - RefreshRate: - Bits Per Pixel - DeviceID: VideoController1 - Drivers: aticfx64.dll,aticfx64.dll,aticfx64.dll - PNPDeviceID: PCI\VEN_1002&DEV_9809&SUBSYS_2AE3103C&REV_00\3&11583659&0&08 - AdapterCompatibility: Advanced Micro Devices, Inc. - RAM: 402653184 Inegrated Video Chipset DeviceName: AMD Radeon HD 7310 Graphics - DriverVersion: 8.14.01.6463 - SpecificationVersion: 1025 ---------- | Codecs C:\WINDOWS\system32\IYUV_32.DLL - ClassName: Win32_CodecFile - FSName: NTFS - FileSize: 54272 - Manufacturer: Microsoft Corporation - Status: OK C:\WINDOWS\system32\MSRLE32.DLL - ClassName: Win32_CodecFile - FSName: NTFS - FileSize: 18432 - Manufacturer: Microsoft Corporation - Status: OK C:\WINDOWS\system32\X264VFW.DLL - ClassName: Win32_CodecFile - FSName: NTFS - FileSize: 3799552 - Manufacturer: x264vfw project - Status: OK C:\WINDOWS\system32\MSG711.ACM - ClassName: Win32_CodecFile - FSName: NTFS - FileSize: 21696 - Manufacturer: Microsoft Corporation - Status: OK C:\WINDOWS\system32\X265VFW.DLL - ClassName: Win32_CodecFile - FSName: NTFS - FileSize: 28414044 - Manufacturer: - Status: OK C:\WINDOWS\system32\AC3FILTER.ACM - ClassName: Win32_CodecFile - FSName: NTFS - FileSize: 2231296 - Manufacturer: - Status: OK C:\WINDOWS\system32\TSBYUV.DLL - ClassName: Win32_CodecFile - FSName: NTFS - FileSize: 16896 - Manufacturer: Microsoft Corporation - Status: OK C:\WINDOWS\system32\LVCOD64.DLL - ClassName: Win32_CodecFile - FSName: NTFS - FileSize: 175392 - Manufacturer: Logitech Inc. - Status: OK C:\WINDOWS\system32\MSVIDC32.DLL - ClassName: Win32_CodecFile - FSName: NTFS - FileSize: 39936 - Manufacturer: Microsoft Corporation - Status: OK C:\WINDOWS\system32\MSGSM32.ACM - ClassName: Win32_CodecFile - FSName: NTFS - FileSize: 38776 - Manufacturer: Microsoft Corporation - Status: OK C:\WINDOWS\system32\MSYUV.DLL - ClassName: Win32_CodecFile - FSName: NTFS - FileSize: 27648 - Manufacturer: Microsoft Corporation - Status: OK C:\WINDOWS\system32\IMAADP32.ACM - ClassName: Win32_CodecFile - FSName: NTFS - FileSize: 33104 - Manufacturer: Microsoft Corporation - Status: OK C:\WINDOWS\system32\L3CODECA.ACM - ClassName: Win32_CodecFile - FSName: NTFS - FileSize: 93184 - Manufacturer: Fraunhofer Institut Integrierte Schaltungen IIS - Status: OK C:\WINDOWS\system32\MSADP32.ACM - ClassName: Win32_CodecFile - FSName: NTFS - FileSize: 30472 - Manufacturer: Microsoft Corporation - Status: OK ---------- | Memory RAM = Total (MB) : 3748 | Free (MB) : 406 Pagefile = Total (MB) : 9253 | Free (MB) : 5189 Virtual = Total (MB) : 4194 | Free (MB) : 3938 Physical Memory (MB) -------------------- Total: 3659 Available: 396 Cached: 479 Free: 376 Kernel Memory (MB) ------------------ Paged: 240 Nonpaged: 136 System ------ Handles: 45683 Processes: 110 Threads: 1429 ---------- | SID Users _ashbackup_ : [S-1-5-21-4265624635-2019933758-61733912-1016] Administrateur : [S-1-5-21-4265624635-2019933758-61733912-500] antifondance 10Crem : [S-1-5-21-4265624635-2019933758-61733912-1001] DefaultAccount : [S-1-5-21-4265624635-2019933758-61733912-503] Invité : [S-1-5-21-4265624635-2019933758-61733912-501] lfshy : [S-1-5-21-4265624635-2019933758-61733912-1010] uni colors benetton : [S-1-5-21-4265624635-2019933758-61733912-1015] WDAGUtilityAccount : [S-1-5-21-4265624635-2019933758-61733912-504] Administrateurs : [S-1-5-32-544] Administrateurs Hyper-V : [S-1-5-32-578] IIS_IUSRS : [S-1-5-32-568] Invités : [S-1-5-32-546] Lecteurs des journaux d’événements : [S-1-5-32-573] System Managed Accounts Group : [S-1-5-32-581] Utilisateurs : [S-1-5-32-545] Utilisateurs de gestion à distance : [S-1-5-32-580] Utilisateurs de l’Analyseur de performances : [S-1-5-32-558] Utilisateurs du journal de performances : [S-1-5-32-559] Utilisateurs du modèle COM distribué : [S-1-5-32-562] AMD FUEL : [S-1-5-21-4265624635-2019933758-61733912-1014] SQLServer2005SQLBrowserUser$DESKTOP-37KC94K : [S-1-5-21-4265624635-2019933758-61733912-1003] ---------- | Drives C:\ -> [Fixed] | [OS] | Total : 449.04 Go | Free : 55.15 Go -> NTFS [SATA] D:\ -> [Fixed] | [placard foobar2000 aimp confis] | Total : 39.62 Go | Free : 39.28 Go -> NTFS [SATA] E:\ -> [Fixed] | [commande sirops ch bl n mac] | Total : 61.78 Go | Free : 58.42 Go -> NTFS [SATA] F:\ -> [CDROM] | [Recovery13] | Total : 4.04 Go | Free : 0 Go -> UDF [SATA] G:\ -> [Removable] | [future wdet] | Total : 59.5 Go | Free : 0.01 Go -> exFAT [USB] H:\ -> [Removable] | [] | Total : 14.33 Go | Free : 2.52 Go -> NTFS [USB] I:\ -> [Removable] | [CUBUNTU ONE] | Total : 7.2 Go | Free : 0 Go -> FAT32 [USB] J:\ -> [Removable] | [PARTED MAGI] | Total : 15 Go | Free : 2.14 Go -> FAT32 [USB] M:\ -> [Removable] | [Windows7Starter32x] | Total : 29.35 Go | Free : 0.22 Go -> NTFS [USB] O:\ -> [Removable] | [] | Total : 29.28 Go | Free : 0.45 Go -> FAT32 [USB] Drive: 0 Cylinders: 121601 Tracks per Cylinder: 255 Sectors per Track: 63 Bytes per Sector: 512 Total Space: 1000204886016 bytes Drive: 1 Cylinders: 7767 Tracks per Cylinder: 255 Sectors per Track: 63 Bytes per Sector: 512 Total Space: 63886589952 bytes Drive: 2 Cylinders: 3824 Tracks per Cylinder: 255 Sectors per Track: 63 Bytes per Sector: 512 Total Space: 31457280000 bytes Drive: 3 Cylinders: 1884 Tracks per Cylinder: 255 Sectors per Track: 63 Bytes per Sector: 512 Total Space: 15500574720 bytes Drive: 4 Cylinders: 942 Tracks per Cylinder: 255 Sectors per Track: 63 Bytes per Sector: 512 Total Space: 7750287360 bytes Drive: 5 Cylinders: 3831 Tracks per Cylinder: 255 Sectors per Track: 63 Bytes per Sector: 512 Total Space: 31515983872 bytes Drive: 6 Cylinders: 1960 Tracks per Cylinder: 255 Sectors per Track: 63 Bytes per Sector: 512 Total Space: 16122904576 bytes ---------- | Windows updates - Activation - License W.A.T : :) Volume License ---------- | Browsers IE : 11.0.19536.1000 (© Microsoft Corporation. Tous droits réservés.) Default : "C:\Program Files\Internet Explorer\IEXPLORE.EXE" ---------- | FlashPlayer FlashPlayer ActiveX : 32.0.0.293 ---------- | Security AV : Malwarebytes Enabled AS : Windows Defender Enabled FW : WINDOWS Firewall WMI : OK WU: Windows Update Service [Auto(2)] = stopped AS: Windows Defender [Auto(2)] = Running WMI: Windows Management Instrumentation [Auto(2)] = Running ---------- | Running processes 384 | [Owner : Système | Parent : 4(System) | ?????] - (.Microsoft Corporation - Gestionnaire de sessions Windows.) - (10.0.19536.1000) = C:\Windows\System32\smss.exe [12/12/2019 09:26:05] CPU Usage:0 % 532 | [Owner : Système | Parent : 524(dwm.exe) | ?????] - (.Microsoft Corporation - Processus d’exécution client-serveur.) - (10.0.19536.1000) = C:\Windows\System32\csrss.exe [12/12/2019 09:26:05] CPU Usage:0 % 596 | [Owner : Système | Parent : 524(dwm.exe) | ?????] - (.Microsoft Corporation - Application de démarrage de Windows.) - (10.0.19536.1000) = C:\Windows\System32\wininit.exe [12/12/2019 09:26:04] CPU Usage:0 % 612 | [Owner : Système | Parent : 588() | ?????] - (.Microsoft Corporation - Processus d’exécution client-serveur.) - (10.0.19536.1000) = C:\Windows\System32\csrss.exe [12/12/2019 09:26:05] CPU Usage:0 % 684 | [Owner : Système | Parent : 588() | 13.11 Mo] - (.Microsoft Corporation - Application d’ouverture de session Windows.) - (10.0.19536.1000) = C:\Windows\System32\winlogon.exe [12/12/2019 09:26:09] CPU Usage:0 % 720 | [Owner : Système | Parent : 596(wininit.exe) | ?????] - (.Microsoft Corporation - Applications Services et Contrôleur.) - (10.0.19536.1000) = C:\Windows\System32\services.exe [12/12/2019 09:26:05] CPU Usage:0 % 732 | [Owner : Système | Parent : 596(wininit.exe) | 21.5 Mo] - (.Microsoft Corporation - Local Security Authority Process.) - (10.0.19536.1000) = C:\Windows\System32\lsass.exe [12/12/2019 09:26:05] CPU Usage:0 % 832 | [Owner : UMFD-1 | Parent : 684(winlogon.exe) | 11.54 Mo] - (.Microsoft Corporation - Usermode Font Driver Host.) - (10.0.19536.1000) = C:\Windows\System32\fontdrvhost.exe [12/12/2019 09:26:06] CPU Usage:0 % 840 | [Owner : UMFD-0 | Parent : 596(wininit.exe) | 3.53 Mo] - (.Microsoft Corporation - Usermode Font Driver Host.) - (10.0.19536.1000) = C:\Windows\System32\fontdrvhost.exe [12/12/2019 09:26:06] CPU Usage:0 % 920 | [Owner : Système | Parent : 720(services.exe) | 26.2 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 980 | [Owner : SERVICE RÉSEAU | Parent : 720(services.exe) | 15.02 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 328 | [Owner : Système | Parent : 720(services.exe) | 8.47 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 524 | [Owner : DWM-1 | Parent : 684(winlogon.exe) | 103.02 Mo] - (.Microsoft Corporation - Gestionnaire de fenêtres du Bureau.) - (10.0.19536.1000) = C:\Windows\System32\dwm.exe [12/12/2019 09:26:01] CPU Usage:11 % 680 | [Owner : SERVICE LOCAL | Parent : 720(services.exe) | 7.19 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 1084 | [Owner : Système | Parent : 720(services.exe) | 15.39 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 1132 | [Owner : SERVICE LOCAL | Parent : 720(services.exe) | 17.53 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 1220 | [Owner : Système | Parent : 720(services.exe) | 12.74 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 1304 | [Owner : Système | Parent : 720(services.exe) | 8.62 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 1440 | [Owner : SERVICE LOCAL | Parent : 720(services.exe) | 10.16 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 1504 | [Owner : SERVICE LOCAL | Parent : 720(services.exe) | 8.5 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 1532 | [Owner : SERVICE LOCAL | Parent : 720(services.exe) | 7.12 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 1540 | [Owner : SERVICE RÉSEAU | Parent : 720(services.exe) | 11.6 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:4 % 1548 | [Owner : SERVICE LOCAL | Parent : 720(services.exe) | 9.4 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 1596 | [Owner : Système | Parent : 720(services.exe) | 17.07 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 1656 | [Owner : Système | Parent : 720(services.exe) | 15.43 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 1724 | [Owner : SERVICE LOCAL | Parent : 720(services.exe) | 21.99 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 1760 | [Owner : SERVICE RÉSEAU | Parent : 720(services.exe) | 9.22 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 1788 | [Owner : Système | Parent : 720(services.exe) | 10.61 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 1936 | [Owner : SERVICE RÉSEAU | Parent : 720(services.exe) | 29.42 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 1944 | [Owner : SERVICE LOCAL | Parent : 720(services.exe) | 25.53 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 1964 | [Owner : Système | Parent : 720(services.exe) | 8.91 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 1976 | [Owner : Système | Parent : 720(services.exe) | 9.38 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 1076 | [Owner : Système | Parent : 720(services.exe) | 19.99 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 1408 | [Owner : SERVICE RÉSEAU | Parent : 720(services.exe) | 14.36 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 1112 | [Owner : Système | Parent : 720(services.exe) | ?????] - (.Microsoft Corporation - Antimalware Service Executable.) - (4.18.2003.8) = C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2003.8-0\MsMpEng.exe [25/03/2020 05:19:50] CPU Usage:0 % 1456 | [Owner : Système | Parent : 720(services.exe) | 10.32 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 2432 | [Owner : SERVICE RÉSEAU | Parent : 720(services.exe) | 9.02 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 2528 | [Owner : SERVICE LOCAL | Parent : 720(services.exe) | 10.44 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 2724 | [Owner : antifondance 10Crem | Parent : 1788(svchost.exe) | 28.5 Mo] - (.Microsoft Corporation - Shell Infrastructure Host.) - (10.0.19536.1000) = C:\Windows\System32\sihost.exe [12/12/2019 09:25:29] CPU Usage:0 % 2884 | [Owner : Système | Parent : 720(services.exe) | 7.21 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 3040 | [Owner : antifondance 10Crem | Parent : 3024() | 129.78 Mo] - (.Microsoft Corporation - Explorateur Windows.) - (10.0.19536.1000) = C:\Windows\explorer.exe [12/12/2019 09:24:55] CPU Usage:0 % 2276 | [Owner : antifondance 10Crem | Parent : 720(services.exe) | 21.86 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 1196 | [Owner : Système | Parent : 720(services.exe) | 13.18 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 3124 | [Owner : antifondance 10Crem | Parent : 920(svchost.exe) | 33.84 Mo] - (.Microsoft Corporation - Search application.) - (10.0.19536.1000) = C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe [12/12/2019 09:29:29] CPU Usage:0 % 3444 | [Owner : Système | Parent : 720(services.exe) | 8.61 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.19536.1000) = C:\Windows\System32\svchost.exe [12/12/2019 09:26:01] CPU Usage:0 % 3540 | [Owner : antifondance 10Crem | Parent : 920(svchost.exe) | 13.4 Mo] - (.Microsoft Corporation - Aide et support Microsoft.) - (10.0.19536.1000) = C:\Windows\HelpPane.exe [12/12/2019 09:27:38] CPU Usage:0 % 3548 | [Owner : antifondance 10Crem | Parent : 3444(svchost.exe) | 18.42 Mo] - (.Microsoft Corporation - Chargeur CTF.) - (10.0.19536.1000) = C:\Windows\System32\ctfmon.exe [12/12/2019 09:25:05] CPU Usage:0 % 3692 | [Owner : antifondance 10Crem | Parent : 920(svchost.exe) | 37.25 Mo] - (.Microsoft Corporation -.) - (1911.2500.0.0) = C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\InputApp\TextInputHost.exe [12/12/2019 15:58:23] CPU Usage:0 % 3780 | [Owner : antifondance 10Crem | Parent : 920(svchost.exe) | 15.84 Mo] - (.Microsoft Corporation - COM Surrogate.) - (10.0.19536.1000) = C:\Windows\System32\dllhost.exe [12/12/2019 09:26:04] CPU Usage:0 % 3980 | [Owner : Système | Parent : 920(svchost.exe) | 19.06 Mo] - (.Microsoft Corporation - WMI Provider Host.) - (10.0.19536.1000) = C:\Windows\System32\wbem\WmiPrvSE.exe [12/12/2019 09:26:23] CPU Usage:0 % 3992 | [Owner : SERVICE RÉSEAU | Parent : 920(svchost.exe) | 16.85 Mo] - (.Microsoft Corporation - WMI Provider Host.) - (10.0.19536.1000) = C:\Windows\System32\wbem\WmiPrvSE.exe [12/12/2019 09:26:23] CPU Usage:0 % 3324 | [Owner : antifondance 10Crem | Parent : 3540(HelpPane.exe) | 182.25 Mo] - (.Microsoft Corporation - Microsoft Edge.) - (80.0.361.109) = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [02/04/2020 02:02:39] CPU Usage:0 % 3224 | [Owner : antifondance 10Crem | Parent : 3324(msedge.exe) | 7.77 Mo] - (.Microsoft Corporation - Microsoft Edge.) - (80.0.361.109) = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [02/04/2020 02:02:39] CPU Usage:0 % 1064 | [Owner : antifondance 10Crem | Parent : 3324(msedge.exe) | 9.35 Mo] - (.Microsoft Corporation - Microsoft Edge.) - (80.0.361.109) = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [02/04/2020 02:02:39] CPU Usage:0 % 3928 | [Owner : antifondance 10Crem | Parent : 3324(msedge.exe) | 71.18 Mo] - (.Microsoft Corporation - Microsoft Edge.) - (80.0.361.109) = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [02/04/2020 02:02:39] CPU Usage:0 % 3908 | [Owner : antifondance 10Crem | Parent : 3324(msedge.exe) | 51.41 Mo] - (.Microsoft Corporation - Microsoft Edge.) - (80.0.361.109) = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [02/04/2020 02:02:39] CPU Usage:0 % 1696 | [Owner : antifondance 10Crem | Parent : 3324(msedge.exe) | 43.46 Mo] - (.Microsoft Corporation - Microsoft Edge.) - (80.0.361.109) = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [02/04/2020 02:02:39] CPU Usage:0 % 4744 | [Owner : antifondance 10Crem | Parent : 3324(msedge.exe) | 18.1 Mo] - (.Microsoft Corporation - Microsoft Edge.) - (80.0.361.109) = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [02/04/2020 02:02:39] CPU Usage:4 % 3088 | [Owner : antifondance 10Crem | Parent : 920(svchost.exe) | 26.33 Mo] - (.Microsoft Corporation - Application Frame Host.) - (10.0.19536.1000) = C:\Windows\System32\ApplicationFrameHost.exe [12/12/2019 09:25:47] CPU Usage:0 % 5412 | [Owner : antifondance 10Crem | Parent : 4928() | 19.34 Mo] - (.Microsoft Corporation - Bloc-notes.) - (10.0.19536.1000) = C:\Windows\notepad.exe [12/12/2019 09:44:23] CPU Usage:0 % 6008 | [Owner : antifondance 10Crem | Parent : 5480() | 43.15 Mo] - (.Innovative Solutions GRUP SRL - Advanced Uninstaller PRO.) - (12.25.0.103) = C:\Program Files (x86)\Innovative Solutions\Advanced Uninstaller PRO\uninstaller.exe [06/04/2020 10:39:30] CPU Usage:0 % 5568 | [Owner : antifondance 10Crem | Parent : 920(svchost.exe) | 10.84 Mo] - (.Microsoft Corporation - COM Surrogate.) - (10.0.19536.1000) = C:\Windows\System32\dllhost.exe [12/12/2019 09:26:04] CPU Usage:0 % 216 | [Owner : antifondance 10Crem | Parent : 2380() | 197.72 Mo] - (.Innovative Solutions - Advanced Disk Cleaner.) - (6.0.0.0) = C:\Program Files (x86)\Innovative Solutions\Advanced Disk Cleaner\Adc.exe [06/04/2020 10:44:51] CPU Usage:0 % 2460 | [Owner : antifondance 10Crem | Parent : 3324(msedge.exe) | 50.83 Mo] - (.Microsoft Corporation - Microsoft Edge.) - (80.0.361.109) = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [02/04/2020 02:02:39] CPU Usage:0 % 5160 | [Owner : antifondance 10Crem | Parent : 3324(msedge.exe) | 28.64 Mo] - (.Microsoft Corporation - Microsoft Edge.) - (80.0.361.109) = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [02/04/2020 02:02:39] CPU Usage:0 % 1672 | [Owner : antifondance 10Crem | Parent : 3324(msedge.exe) | 28.69 Mo] - (.Microsoft Corporation - Microsoft Edge.) - (80.0.361.109) = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [02/04/2020 02:02:39] CPU Usage:0 % 5240 | [Owner : antifondance 10Crem | Parent : 3324(msedge.exe) | 36.48 Mo] - (.Microsoft Corporation - Microsoft Edge.) - (80.0.361.109) = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [02/04/2020 02:02:39] CPU Usage:0 % 4424 | [Owner : antifondance 10Crem | Parent : 3324(msedge.exe) | 33.45 Mo] - (.Microsoft Corporation - Microsoft Edge.) - (80.0.361.109) = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [02/04/2020 02:02:39] CPU Usage:0 % 208 | [Owner : antifondance 10Crem | Parent : 3324(msedge.exe) | 54.07 Mo] - (.Microsoft Corporation - Microsoft Edge.) - (80.0.361.109) = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [02/04/2020 02:02:39] CPU Usage:0 % 5704 | [Owner : antifondance 10Crem | Parent : 6052() | 145.83 Mo] - (.- Screen Recorder Launcher v2.0.) - (2.0.0.0) = C:\Users\jean-\AppData\Local\WebLaunchRecorder\Screen Recorder Launcher.exe [27/10/2015 20:31:44] CPU Usage:4 % 6940 | [Owner : antifondance 10Crem | Parent : 3040(explorer.exe) | 48.54 Mo] - (.Microsoft Corporation - Gestionnaire des tâches.) - (10.0.19536.1000) = C:\Windows\System32\Taskmgr.exe [12/12/2019 09:26:00] CPU Usage:2 % 2388 | [Owner : antifondance 10Crem | Parent : 6008(uninstaller.exe) | 41 Mo] - (.Microsoft Corporation - Internet Explorer.) - (11.0.19536.1000) = C:\Program Files\Internet Explorer\iexplore.exe [12/12/2019 15:59:57] CPU Usage:0 % 5780 | [Owner : Système | Parent : 1112(MsMpEng.exe) | 135.79 Mo] - (.Microsoft Corporation - Antimalware Service Executable Content Process.) - (1.1.16627.0) = C:\ProgramData\Microsoft\Windows Defender\Scans\MsMpEngCP.exe [14/10/2019 12:09:06] CPU Usage:0 % 332 | [Owner : antifondance 10Crem | Parent : 5280() | 1.35 Mo] - (.Microsoft Corporation - Programme de contrôle du gestionnaire de filtres.) - (10.0.19536.1000) = C:\Windows\System32\fltMC.exe [12/12/2019 09:26:06] CPU Usage:0 % 5560 | [Owner : Système | Parent : 720(services.exe) | 174.74 Mo] - (.Tencent - PC Manager-Realtime Protection.) - (12.3.26607.901) = E:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\QQPCRTP.exe [07/04/2020 00:14:24] CPU Usage:0 % 5168 | [Owner : antifondance 10Crem | Parent : 1620() | 37.06 Mo] - (.Tencent - PC Manager.) - (12.3.26607.901) = E:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\QQPCTray.exe [07/04/2020 00:14:24] CPU Usage:0 % 2924 | [Owner : antifondance 10Crem | Parent : 5168(QQPCTray.exe) | 21.04 Mo] - (.Tencent - PC Manager-??.) - (12.3.26607.901) = E:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\QQPCUpdateAVLib.exe [07/04/2020 00:14:24] CPU Usage:0 % 4848 | [Owner : antifondance 10Crem | Parent : 3324(msedge.exe) | 87.34 Mo] - (.Microsoft Corporation - Microsoft Edge.) - (80.0.361.109) = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [02/04/2020 02:02:39] CPU Usage:0 % 6328 | [Owner : antifondance 10Crem | Parent : 3324(msedge.exe) | 62.6 Mo] - (.Microsoft Corporation - Microsoft Edge.) - (80.0.361.109) = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [02/04/2020 02:02:39] CPU Usage:0 % 2680 | [Owner : antifondance 10Crem | Parent : 3324(msedge.exe) | 80.37 Mo] - (.Microsoft Corporation - Microsoft Edge.) - (80.0.361.109) = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [02/04/2020 02:02:39] CPU Usage:0 % 5584 | [Owner : antifondance 10Crem | Parent : 920(svchost.exe) | 103.28 Mo] - (.Microsoft Corporation - Explorateur Windows.) - (10.0.19536.1000) = C:\Windows\explorer.exe [12/12/2019 09:24:55] CPU Usage:0 % 4612 | [Owner : antifondance 10Crem | Parent : 920(svchost.exe) | 9.46 Mo] - (.Microsoft Corporation - COM Surrogate.) - (10.0.19536.1000) = C:\Windows\System32\dllhost.exe [12/12/2019 09:26:04] CPU Usage:0 % 5408 | [Owner : antifondance 10Crem | Parent : 5584(explorer.exe) | 56.74 Mo] - (.-.) - (0.0.0.0) = C:\UsbFix\UsbFix.exe [27/05/2017 11:31:44] CPU Usage:0 % 5836 | [Owner : antifondance 10Crem | Parent : 5596() | 87.36 Mo] - (.Ashampoo GmbH & Co. KG - Ashampoo Snap 10.) - (10.1.0.0) = C:\Program Files (x86)\Ashampoo\Ashampoo Snap 10\ashsnap.exe [07/04/2020 11:12:56] CPU Usage:0 % 4764 | [Owner : antifondance 10Crem | Parent : 3324(msedge.exe) | 34.85 Mo] - (.Microsoft Corporation - Microsoft Edge.) - (80.0.361.109) = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [02/04/2020 02:02:39] CPU Usage:0 % 4300 | [Owner : antifondance 10Crem | Parent : 3324(msedge.exe) | 28.88 Mo] - (.Microsoft Corporation - Microsoft Edge.) - (80.0.361.109) = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [02/04/2020 02:02:39] CPU Usage:0 % 7148 | [Owner : antifondance 10Crem | Parent : 3324(msedge.exe) | 22.99 Mo] - (.Anvisoft - Anvi Ultimate Defrag Installation.) - (1.2.0.0) = C:\Users\jean-\Downloads\audsetup.exe [07/04/2020 11:19:46] CPU Usage:0 % 5320 | [Owner : antifondance 10Crem | Parent : 3040(explorer.exe) | 15.92 Mo] - (.Microsoft Corporation - Bloc-notes.) - (10.0.19536.1000) = C:\Windows\System32\notepad.exe [12/12/2019 09:44:23] CPU Usage:0 % 5340 | [Owner : antifondance 10Crem | Parent : 5584(explorer.exe) | 20.03 Mo] - (.Microsoft Corporation - Bloc-notes.) - (10.0.19536.1000) = C:\Windows\System32\notepad.exe [12/12/2019 09:44:23] CPU Usage:0 % 4512 | [Owner : antifondance 10Crem | Parent : 3324(msedge.exe) | 67.6 Mo] - (.Microsoft Corporation - Microsoft Edge.) - (80.0.361.109) = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [02/04/2020 02:02:39] CPU Usage:0 % 4364 | [Owner : antifondance 10Crem | Parent : 3324(msedge.exe) | 66.64 Mo] - (.Microsoft Corporation - Microsoft Edge.) - (80.0.361.109) = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [02/04/2020 02:02:39] CPU Usage:0 % 6864 | [Owner : antifondance 10Crem | Parent : 3324(msedge.exe) | 75.68 Mo] - (.Microsoft Corporation - Microsoft Edge.) - (80.0.361.109) = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [02/04/2020 02:02:39] CPU Usage:0 % 2028 | [Owner : antifondance 10Crem | Parent : 3324(msedge.exe) | 250.26 Mo] - (.Microsoft Corporation - Microsoft Edge.) - (80.0.361.109) = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [02/04/2020 02:02:39] CPU Usage:4 % 6688 | [Owner : antifondance 10Crem | Parent : 2340() | 38.71 Mo] - (.Carifred - Tech tool store.) - (6.9.0.0) = E:\techtoolstore édition 20rem\Tech tool store tools\TechToolStore64.exe [07/04/2020 13:08:30] CPU Usage:0 % 1368 | [Owner : antifondance 10Crem | Parent : 3324(msedge.exe) | 28.68 Mo] - (.Microsoft Corporation - Microsoft Edge.) - (80.0.361.109) = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [02/04/2020 02:02:39] CPU Usage:0 % 1784 | [Owner : antifondance 10Crem | Parent : 3324(msedge.exe) | 67.71 Mo] - (.Microsoft Corporation - Microsoft Edge.) - (80.0.361.109) = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [02/04/2020 02:02:39] CPU Usage:0 % 5864 | [Owner : antifondance 10Crem | Parent : 3324(msedge.exe) | 37 Mo] - (.Microsoft Corporation - Microsoft Edge.) - (80.0.361.109) = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [02/04/2020 02:02:39] CPU Usage:0 % 6192 | [Owner : antifondance 10Crem | Parent : 3324(msedge.exe) | 75.66 Mo] - (.Microsoft Corporation - Microsoft Edge.) - (80.0.361.109) = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [02/04/2020 02:02:39] CPU Usage:0 % 2648 | [Owner : antifondance 10Crem | Parent : 2388(iexplore.exe) | 21.05 Mo] - (.Microsoft Corporation - Internet Explorer.) - (11.0.19536.1000) = C:\Program Files (x86)\Internet Explorer\iexplore.exe [12/12/2019 15:59:57] CPU Usage:0 % 4632 | [Owner : antifondance 10Crem | Parent : 2388(iexplore.exe) | 20.92 Mo] - (.Microsoft Corporation - Internet Explorer.) - (11.0.19536.1000) = C:\Program Files (x86)\Internet Explorer\iexplore.exe [12/12/2019 15:59:57] CPU Usage:0 % 5532 | [Owner : antifondance 10Crem | Parent : 3324(msedge.exe) | 68.27 Mo] - (.SosVirus - QuickDiag.) - (29.10.19.1) = C:\Users\jean-\Downloads\quickdiag_V5_29.10.19.1.exe [07/04/2020 13:11:31] CPU Usage:4 % ---------- | Locked Applications ---------- | Policy Restrictions ---------- | Explorer.exe Modules (Microsoft Files Whitelisted) (..-..) - (0.0.0.0) -- C:\WINDOWS\SYSTEM32\UMPDC.dll (.COMODO.-.COMODO Secure Shopping.) - (1.4.50284.159) -- C:\Windows\system32\cssguard64.dll (..-..) - (0.0.0.0) -- C:\WINDOWS\SYSTEM32\TextShaping.dll (..-..) - (0.0.0.0) -- C:\Windows\System32\WindowManagementAPI.dll (..-..) - (0.0.0.0) -- C:\Windows\System32\VirtualMonitorManager.dll (.Tonec Inc..-.Internet Download Manager module.) - (6.32.12.24) -- C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll (.Google.-.Google Drive shell extension.) - (3.48.8668.1933) -- C:\Program Files\Google\Drive\googledrivesync64.dll (.Tonec FZE.-.Internet Download Manager Network Monitor.) - (6.36.6.207) -- C:\Program Files (x86)\Internet Download Manager\IDMNetMon64.DLL (.SugarSync, Inc..-.SugarSync Explorer Shell Extensions.) - (1.0.0.1) -- C:\Program Files (x86)\SugarSync\x64\SugarSyncShellExt_x64.dll (..-..) - (0.0.0.0) -- C:\Windows\ShellExperiences\TileControl.dll (..-..) - (0.0.0.0) -- C:\Windows\ShellComponents\TaskFlowUI.dll ---------- | Explorer.exe Modules (Microsoft Files Whitelisted) (.Tencent.-.PC Manager-antivirus.) - (12.3.26607.901) -- e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\QMContextScan64.dll (.ProtectStar(TM), Inc..-.Data Shredder Shell Extension.) - (2.5.1139.0) -- C:\Users\jean-\Desktop\Laurent, sifaou, carole, nathalie, christine, léa, lynnlo, amélie, noémie Anti-JJAD Suite & Goodies\ProtectStar iShreDDer\DataShredderShellExt64.dll (.Moo0.-.Moo0 Shell Extension Bridge.) - (1.0.0.1) -- C:\Windows\System32\ShellExtBridge\ShellExtBridge119.dll (.Google.-.Google Drive shell extension.) - (3.48.8668.1933) -- C:\Program Files\Google\Drive\contextmenu64.dll (.Bandisoft.com.-.Bandizip shell menu dll.) - (6.26.0.2) -- C:\Program Files\Bandizip\bdzshl64.dll (.Igor Pavlov.-.7-Zip Shell Extension.) - (19.0.0.0) -- C:\Program Files\7-Zip\7-zip.dll (.Apple Inc..-.Bonjour Namespace Provider.) - (3.1.0.1) -- C:\Program Files\Bonjour\mdnsNSP.dll (..-.fzshellext Dynamic Link Library.) - (3.47.2.1) -- C:\Program Files\FileZilla FTP Client\fzshellext_64.dll (.Martin Prikryl.-.Drag&Drop shell extension for WinSCP (Win64).) - (2.0.0.10278) -- C:\Program Files (x86)\WinSCP\DragExt64.dll (.Advanced Micro Devices, Inc..-.AMD Desktop Control Panel.) - (6.14.10.2001) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll (.Advanced Micro Devices, Inc..-.AMD Desktop Control Panel.) - (6.14.10.2001) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiamfra.dll ---------- | Winlogon.exe Modules (Microsoft Files Whitelisted) (..-..) - (0.0.0.0) -- C:\WINDOWS\system32\UMPDC.dll (..-..) - (0.0.0.0) -- C:\WINDOWS\system32\TextShaping.dll ---------- | svchost.exe Modules (Microsoft Files Whitelisted) (.COMODO.-.COMODO Secure Shopping.) - (1.4.50284.159) -- C:\Windows\system32\cssguard64.dll (..-..) - (0.0.0.0) -- c:\windows\system32\UMPDC.dll (.Apple Inc..-.Bonjour Namespace Provider.) - (3.1.0.1) -- C:\Program Files\Bonjour\mdnsNSP.dll ---------- | ZeroAccess Check [HKLM\Software\Classes\CLSID\{1108BE51-F58A-4CDA-BB99-7A0227D11D5E}\InProcServer32] : %systemroot%\system32\wbem\fastprox.dll [HKLM\Software\Classes\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] : %SystemRoot%\system32\windows.storage.dll [HKLM\Software\Classes\CLSID\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] : %systemroot%\system32\wbem\fastprox.dll [HKLM\Software\Classes\CLSID\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] : %systemroot%\system32\wbem\wbemess.dll [HKLM\Software\Classes\CLSID\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] : %SystemRoot%\system32\shell32.dll [HKLM\Software\WOW6432Node\Classes\CLSID\{1108BE51-F58A-4CDA-BB99-7A0227D11D5E}\InProcServer32] : %systemroot%\system32\wbem\fastprox.dll [HKLM\Software\WOW6432Node\Classes\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] : %SystemRoot%\system32\windows.storage.dll [HKLM\Software\WOW6432Node\Classes\CLSID\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] : %systemroot%\system32\wbem\fastprox.dll [HKLM\Software\WOW6432Node\Classes\CLSID\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] : %SystemRoot%\system32\shell32.dll ---------- | Startings up OneDriveSetup - (C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup [HKU\S-1-5-19\SOFTWARE\...\Run]) - User: AUTORITE NT\SERVICE LOCAL OneDriveSetup - (C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup [HKU\S-1-5-20\SOFTWARE\...\Run]) - User: AUTORITE NT\SERVICE RÉSEAU MyPC Backup - (C:\PROGRA~2\MyPC Backup\MyPC Backup.exe [Startup]) - User: DESKTOP-37KC94K\antifondance 10Crem PortableApps.com Platform - (E:\Users\initialeDownloads\PortableApps\PortableApps.com\PortableAppsPlatform.exe [Startup]) - User: DESKTOP-37KC94K\antifondance 10Crem f.lux - ("C:\Users\jean-\AppData\Local\FluxSoftware\Flux\flux.exe" /noshow [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\...\Run]) - User: DESKTOP-37KC94K\antifondance 10Crem AshSnap - (C:\Program Files (x86)\Ashampoo\Ashampoo Snap 8\ashsnap.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\...\Run]) - User: DESKTOP-37KC94K\antifondance 10Crem RTHDVCPL - ("C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s [HKLM\SOFTWARE\...\Run]) - User: Public Everything - ("C:\Program Files\Everything\Everything.exe" -startup [HKLM\SOFTWARE\...\Run]) - User: Public [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Command Processor] "CompletionChar"=9 "DefaultColor"=0 "EnableExtensions"=1 "PathCompletionChar"=9 [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Run] "f.lux"="C:\Users\jean-\AppData\Local\FluxSoftware\Flux\flux.exe" /noshow "AshSnap"=C:\Program Files (x86)\Ashampoo\Ashampoo Snap 8\ashsnap.exe [07/04/2020 11:03:35] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run] "DAEMON Tools Pro Agent"=0x020000000000000000000000 "EPLTarget\P0000000000000000"=0x020000000000000000000000 "OneDrive"=0x020000000000000000000000 "COS"=0x03000000C0B2466C5B0AD201 "KillCopy"=0x020000000000000000000000 "Power2GoExpress10"=0x020000000000000000000000 "OneDriveSetup"=0x020000000000000000000000 "360DesktopLite"=0x020000000000000000000000 "EPLTarget\P0000000000000001"=0x020000000000000000000000 "FreeScreenVideoRecorder.exe"=0x020000000000000000000000 "GoogleDriveSync"=0x020000000000000000000000 "Opera Browser Assistant"=0x020000000000000000000000 "Steam"=0x020000000000000000000000 "SoftwareUpdater"=0x020000000000000000000000 "Power2GoExpress13"=0x020000000000000000000000 "StartMenuX"=0x030000007594CBA13ADCD501 "CCleaner Smart Cleaning"=0x020000000000000000000000 "ALLUpdate"=0x020000000000000000000000 "Amazon Music Helper"=0x020000000000000000000000 "Amazon Music"=0x020000000000000000000000 "AquaSnap"=0x020000000000000000000000 "Boxcryptor.exe"=0x020000000000000000000000 "f.lux"=0x020000000000000000000000 "Free Download Manager"=0x020000000000000000000000 "Skype for Desktop"=0x020000000000000000000000 "SUPERAntiSpyware"=0x020000000000000000000000 [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\RunMRU] "a"=firefox\1 "MRUList"=cba "b"=cleanmgr\1 "c"=notepad\1 [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "Device"=EPSON XP-710 Series,winspool,Ne03: "IsMRUEstablished"=1 "LegacyDefaultPrinterMode"=0 "MenuDropAlignment"=0 [HKLM\Software\Microsoft\Command Processor] "DefaultColor"=0 "EnableExtensions"=1 "CompletionChar"=64 "PathCompletionChar"=64 [HKLM\Software\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s "Everything"="C:\Program Files\Everything\Everything.exe" -startup [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run] "SecurityHealth"=0x040000000000000000000000 "Rebit Pro Dashboard"=0x020000000000000000000000 "Rebit 5 Dashboard"=0x0300000030AF896C5B0AD201 "ZAM"=0x020000000000000000000000 "RTHDVCPL"=0x020000000000000000000000 "Ashampoo Backup"=0x020000000000000000000000 "WindowsDefender"=0x020000000000000000000000 "rfagent"=0x020000000000000000000000 "WebDefence"=0x020000000000000000000000 "AvastUI.exe"=0x020000000000000000000000 "Classic Start Menu"=0x03000000CC12F7A33ADCD501 "Greenshot"=0x020000000000000000000000 "AVGUI.exe"=0x020000000000000000000000 [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32] "vdcss"=0x020000000000000000000000 "DLLSuite2016"=0x040000000000000000000000 "StartCCC"=0x060000000000000000000000 "BingDesktop"=0x020000000000000000000000 "EEventManager"=0x020000000000000000000000 "MalTray"=0x0300000070CA606C5B0AD201 "Nero BackItUp"=0x03000000B0D0796C5B0AD201 "YouCam Service7"=0x03000000F004B56C5B0AD201 "CLMLServer_For_P2G10"=0x020000000000000000000000 "DelaypluginInstall"=0x020000000000000000000000 "IseUI"=0x020000000000000000000000 "AvastUI.exe"=0x020000000000000000000000 "GrpConv"=0x020000000000000000000000 "UnlockerAssistant"=0x020000000000000000000000 "Dropbox"=0x020000000000000000000000 "LWS"=0x020000000000000000000000 "QHSafeTray"=0x020000000000000000000000 "iPhone Data RecoveryAppService"=0x020000000000000000000000 "SunJavaUpdateSched"=0x020000000000000000000000 "UX Launcher"=0x020000000000000000000000 "Aimersoft Helper Compact.exe"=0x020000000000000000000000 "CLMLServer_For_P2G13"=0x020000000000000000000000 "CStart8"=0x030000006F1138A63ADCD501 "Verbose"=0x020000000000000000000000 "NetSetMan"=0x020000000000000000000000 "KeePass 2 PreLoad"=0x020000000000000000000000 "SDTray"=0x020000000000000000000000 "Wondershare Helper Compact.exe"=0x020000000000000000000000 [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler] "{B37EFE6B-7081-4D51-BFAE-175C292668BA}"=Virtual Storage Mount Notification [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] ""=mnmsrvc "DdeSendTimeout"=0 "DesktopHeapLogging"=1 "DeviceNotSelectedTimeout"=15 "DwmInputUsesIoCompletionPort"=1 "EnableDwmInputProcessing"=7 "GDIProcessHandleQuota"=10000 "IconServiceLib"=IconCodecService.dll "NaturalInputHandler"=Ninput.dll "ShutdownWarningDialogTimeout"=4294967295 "Spooler"=yes "ThreadUnresponsiveLogTimeout"=500 "TransmissionRetryTimeout"=90 "USERNestedWindowLimit"=50 "USERPostMessageLimit"=10000 "USERProcessHandleQuota"=10000 "LoadAppInit_DLLs"=1 "Win32kLastWriteTime"=1D5B0BD5654B1E6 "AppInit_DLLs"= [HKLM\Software\WOW6432Node\Microsoft\Command Processor] "CompletionChar"=9 "DefaultColor"=0 "EnableExtensions"=1 "PathCompletionChar"=9 [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run] "ProductUpdater"=C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe [03/04/2020 11:41:33] " QQPCTray"="e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\QQPCTray.exe" /regrun [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\RunOnce] "ZHPFix__logarythm - rebit, dt pro, power2go 13 & mediasuite 17 & ciie... for efm lfs hyper uefm - souvenirs 2005-2011-2019"=CMD /c DEL "V:\logarythm - rebit, dt pro, power2go 13 & mediasuite 17 & ciie... for efm lfs hyper uefm - souvenirs 2005-2011-2019" /Y /Q "ZHPFix__Program Files (x86)"=CMD /c DEL "V:\Program Files (x86)" /Y /Q "ZHPFix__"=CMD /c DEL "C:\Users\jean-\Desktop\" /Y /Q "ZHPFix__Systweak"=REG delete "HKLM\SOFTWARE\Systweak" /F /reg:64 "ZHPFix__ByteFence"=REG delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ByteFence" /F /reg:64 "ZHPFix__Goodgame Empire"=REG delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Goodgame Empire" /F /reg:64 "ZHPFix__{5AEA8CFE-B238-4D0A-9362-D55F38ECB795}_is1"=REG delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{5AEA8CFE-B238-4D0A-9362-D55F38ECB795}_is1" /F /reg:64 "ZHPFix__{472083B1-C522-11CF-8763-00608CC02F24}"=REG delete "HKLM\Software\Classes\CLSID\{472083B1-C522-11CF-8763-00608CC02F24}" /F /reg:64 "ZHPFix__{E7A4C2DA-F3AF-4145-AC19-E3B215306A54}"=REG delete "HKLM\Software\Classes\CLSID\{E7A4C2DA-F3AF-4145-AC19-E3B215306A54}" /F /reg:64 "ZHPFix__{B3C418F8-922B-4faf-915E-59BC14448CF7}"=REG delete "HKLM\Software\Classes\CLSID\{B3C418F8-922B-4faf-915E-59BC14448CF7}" /F /reg:64 "ZHPFix__{A372C6DF-7A85-41B1-B3B0-D1E24073DCBF}"=REG delete "HKLM\Software\Classes\CLSID\{A372C6DF-7A85-41B1-B3B0-D1E24073DCBF}" /F /reg:64 "GrpConv"=grpconv -o ""= [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler] "{B37EFE6B-7081-4D51-BFAE-175C292668BA}"=Virtual Storage Mount Notification [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Windows] ""=mnmsrvc "DdeSendTimeout"=0 "DesktopHeapLogging"=1 "DeviceNotSelectedTimeout"=15 "DwmInputUsesIoCompletionPort"=1 "EnableDwmInputProcessing"=7 "GDIProcessHandleQuota"=10000 "IconServiceLib"=IconCodecService.dll "LoadAppInit_DLLs"=1 "NaturalInputHandler"=Ninput.dll "ShutdownWarningDialogTimeout"=4294967295 "Spooler"=yes "ThreadUnresponsiveLogTimeout"=500 "TransmissionRetryTimeout"=90 "USERNestedWindowLimit"=50 "USERPostMessageLimit"=10000 "USERProcessHandleQuota"=10000 "AppInit_DLLs"= [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] "WebCheck"={E6FB5E20-DE35-11CF-9C87-00AA005127ED} "CallbackTechMountNotificator-cbfsconnect2017"={B37EFE6B-7081-4D51-BFAE-175C292668BA} ---------- | Wininit.ini : [rename] NUL=C:\Program Files (x86)\Spybot - Search & Destroy 2\av\smartdb-ntfs.db ---------- | Win.ini : ---------- | System.ini : ---------- | Tasks List Antivirus Emergency Update AupAvUpdate CreateExplorerShellUnelevatedTask Defendemus - VPN Shield EPSON XP-710 Series Invitation {3440B0D0-F9B6-4D74-80BE-C92B3391AA1E} EPSON XP-710 Series Update {3440B0D0-F9B6-4D74-80BE-C92B3391AA1E} GoogleUpdateTaskMachineCore Health-Check-deep Health-Check LaunchSignup OrangeDefenderUpdate UninstallMonitor User_Feed_Synchronization-{3EF053DA-9088-495B-9E19-1A7664ABB844} User_Feed_Synchronization-{9F79E92A-4A53-4ED9-9D9E-8AD398BF43C5} VPN PRO WELCOME VPN PRO ---------- | Startings up registry ¦ Folder [HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Epic Privacy Browser] : C:\Users\jean-\AppData\Local\Epic Privacy Browser\Application\epic.exe [03/04/2020 01:36:59] [HKLM\SOFTWARE\WOW6432Node\Microsoft\Shared Tools\MSConfig\startupreg\StartCCC] : "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun [HKLM\SOFTWARE\WOW6432Node\Microsoft\Shared Tools\MSConfig\startupreg\Steam] : ---------- | Control - lsa - SecurityProviders - Session Manager - Terminal Server [HKLM\System\CurrentControlSet\Control] "BootDriverFlags"=28 "CurrentUser"=USERNAME "EarlyStartServices"=RpcSs Power BrokerInfrastructure SystemEventsBroker DcomLaunch RpcEpMapper LSM AppIdSvc "PreshutdownOrder"=DeviceInstall UsoSvc gpsvc trustedinstaller "SvcHostSplitThresholdInKB"=3670016 "WaitToKillServiceTimeout"=2000 "SystemStartOptions"= FLIGHTSIGNING NOEXECUTE=OPTIN SAFEBOOT:NETWORK "SystemBootDevice"=multi(0)disk(0)rdisk(0)partition(3) "FirmwareBootDevice"=multi(0)disk(0)rdisk(0)partition(1) "LastBootSucceeded"=1 "LastBootShutdown"=1 "DirtyShutdownCount"=815 "ServicesPipeTimeout"=120000 [HKLM\System\CurrentControlSet\Control\lsa] "auditbasedirectories"=0 "auditbaseobjects"=0 "Bounds"=0x0030000000200000 "crashonauditfail"=0 "LimitBlankPasswordUse"=0 "NoLmHash"=1 "Security Packages"="" [28/08/2016 12:41:29] "Notification Packages"=scecli "Authentication Packages"=msv1_0 "disabledomaincreds"=0 "everyoneincludesanonymous"=0 "forceguest"=0 "fullprivilegeauditing"=0x80 "LsaPid"=732 "ProductType"=3 "restrictanonymous"=0 "restrictanonymoussam"=1 "SamConnectedAccountsExist"=1 "SecureBoot"=1 [HKLM\System\CurrentControlSet\Control\SecurityProviders] "SecurityProviders"=credssp.dll [HKLM\System\CurrentControlSet\Control\Session Manager] "BootExecute"=autocheck autochk /p \??\G: PDBoot.exe autocheck autochk * "BootShell"=%SystemRoot%\system32\bootim.exe "CriticalSectionTimeout"=2592000 "ExcludeFromKnownDlls"= "GlobalFlag"=0 "GlobalFlag2"=0 "HeapDeCommitFreeBlockThreshold"=0 "HeapDeCommitTotalFreeThreshold"=0 "HeapSegmentCommit"=0 "HeapSegmentReserve"=0 "InitConsoleFlags"=0 "NumberOfInitialSessions"=2 "ObjectDirectories"=\Windows \RPC Control "ProcessorControl"=2 "ProtectionMode"=1 "RunLevelExecute"=WinInit ServiceControlManager "RunLevelValidate"=ServiceControlManager "SETUPEXECUTE"= "ResourceTimeoutCount"=648000 "AutoChkSkipSystemPartition"=0 "AutoChkTimeout"=5 "PendingFileRenameOperations"=\??\C:\WINDOWS\System32\drivers\SETF683.tmp \??\e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26600.901\AAE7577C2E654415BA0BE4236CC9E688 \??\e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26600.901\2E14.tmp \??\e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26600.901\2E54.tmp \??\e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26600.901\2E83.tmp \??\e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26600.901\2EF2.tmp \??\e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26600.901\2F02.tmp \??\e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26600.901\QMUpdate\2F42.tmp \??\e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26600.901\QMUpdate\2F62.tmp \??\e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26600.901\QMUpdate\2F63.tmp \??\e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26600.901\QMUpdate\2F64.tmp \??\e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26600.901\QMUpdate\2F75.tmp \??\e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26600.901\QMUpdate\2F76.tmp \??\e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26600.901\QMUpdate\2F86.tmp \??\e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26600.901\QMUpdate\2F87.tmp \??\e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26600.901\QMUpdate\2FD7.tmp \??\e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26600.901\QMUpdate\2FD8.tmp \??\e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26600.901\QMUpdate\2FD9.tmp \??\e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26600.901\QMUpdate\QQPCMgrUpdate.rdb \??\e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26600.901\QMUpdate\2FEA.tmp \??\e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26600.901\QMUpdate\302A.tmp \??\e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26600.901\QMUpdate\302B.tmp \??\e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26600.901\QMUpdate \??\e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26600.901\temp\3099.tmp \??\e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26600.901\temp \??\e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26600.901\3117.tmp \??\e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26600.901\3137.tmp \??\e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26600.901\ \??\C:\ProgramData\Tencent\TSVulFw_Cache\TSVulFW.DAT !\??\C:\ProgramData\Tencent\TSVulFw\TSVulFW.DAT [HKLM\System\CurrentControlSet\Control\Terminal Server] "AllowRemoteRPC"=0 "DelayConMgrTimeout"=0 "DeleteTempDirsOnExit"=1 "fDenyTSConnections"=1 "fSingleSessionPerUser"=1 "NotificationTimeOut"=0 "PerSessionTempDir"=0 "ProductVersion"=5.1 "RCDependentServices"=CertPropSvc SessionEnv "SnapshotMonitors"=1 "StartRCM"=0 "TSUserEnabled"=0 "InstanceID"=a93d803a-fb39-4523-ae55-aa59612 "GlassSessionId"=1 ---------- | .LNK with Arguments C:\EdrawInfo.lnk () P?p. +?UXEdrawInfo.exej8ibb9e400 Go micrG:\Prog C:\EdrawMax.exe.lnk () wMax.exe)C:\Program Files (x86)\EdrawSoft\EdrawMax?*? ??@Z| C:\ESET Online Scanner.lnk () nner_fra.exeESET Online Scanner&..\Downloads\esetonlinescanner_fra.e C:\Internet Explorer.lnk () ernet Explorer\iexplore.exe?*? ??@Z|???K?J??????c?Xdesktop-p9cl7 C:\iOS Ads Remover.lnk () Files (x86)\iOS Ads Remover\iOSAdsRemover.exe&C:\Program Files C:\MEmu.lnk () les\Microvirt\MEmu\MEmu.exeC:\Program Files\Microvirt\MEmuc?X C:\MindMaster.lnk () MindMasterl2MindMaster.exeN ?.Mi C:\mindmaster_setup_full5370.exe.lnk () l ?kP@okP@o.@,?mindmaster_setup_full5370.exe,c8 C:\MPC-BE x64.lnk () x64\mpc-be64.exe C:\Multi-MEmu.lnk () ..\Program Files\Microvirt\MEmu\MEmuConsole.exeC:\Program Files C:\Navigateur Opera.lnk () u;(?nC:\Users\antifondance uni c b\AppData\Local\Programs\Opera\launcher.exeP..\..\..\..\.. C:\NoClone 2017.lnk () 216AAA0502ED48A4C6A.exe C:\OrgCharting.exe.lnk () ing.exev8uH?t?MONTRE ESPIF:\Program Files (x86)\EdrawSoft\OrgCharting\OrgCha C:\Reason Core Security.lnk () Security/..\..\..\Program Files\Reason\Security\rsUI.exe C:\Pro C:\Reset Edge Home.lnk () iles (x86)\EdgeResetButton\EdgeResetButton.exe&C:\Program Files C:\Stellar Phoenix CD DVD Data Recovery.lnk () ta Recovery\SPCDR.exe;C:\Program Files (x86)\Stellar Phoenix CD C:\SUMo.lnk () s\SUMo\SUMo.exe?*? ??@Z|???K?J??????c?Xdesktop-p9cl7q6|)6?B?|`AY???ba? C:\Total Commander 64 bit.lnk () MD64.EXEc:\totalcmd\totalcmd64.exe ..\..\..\totalcmd\TOTALCMD64.EX C:\TunesKit M4V Converter.lnk () gram Files (x86)\TunesKit M4V Converter\M4VConverter.exe-C:\Prog C:\UnHackMe.lnk () nhackme.exeC:\Program Files (x86)\UnHackMe?*? ??@Z|???K?J?????? C:\Update Windows.lnk ( /update /flag=19) %ALLUSERSPROFILE%\UVK\WAU Manager.exe C:\Vivaldi.lnk () aldi.exe C:\Xilisoft Media Toolkit Ultimate.lnk (hxxp://www.xilisoft.com/webapp/buy.php?product_code=x-media-toolkit-ultimate&product_version=7.8.8.20150402) l\Tempkhttp://www.xilisoft.com/webapp/buy.php?product_code=x-med C:\hp\HPQWare\dtshortcuts\ca-ES\ESP\eBay compra y vende de todo(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=ca_es&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\ca-ES\ESP\eBay compra y vende de todo.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=ca_es&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\DA_DK\Snapfish billeder(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_dk) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\DA_DK\Snapfish billeder.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_dk) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\de-DE\AUT\eBay.at(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=de_at&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\de-DE\AUT\eBay.at.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=de_at&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\de-DE\BEL\Bezoek eBay.be(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=de_be&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\de-DE\BEL\Bezoek eBay.be.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=de_be&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\de-DE\CHE\eBay.ch(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=de_ch&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\de-DE\CHE\eBay.ch.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=de_ch&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\de-DE\DEU\eBay(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=de_de&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\de-DE\DEU\eBay.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=de_de&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\DE_AT\Snapfish Fotos(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_at) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\DE_AT\Snapfish Fotos.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_at) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\DE_CH\Snapfish Fotos(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_de_ch) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\DE_CH\Snapfish Fotos.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_de_ch) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\DE_DE\Snapfish Fotos(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_de) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\DE_DE\Snapfish Fotos.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_de) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\AUS\eBay(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_au&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\AUS\eBay.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_au&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\BEL\Bezoek eBay.be(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_be&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\BEL\Bezoek eBay.be.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_be&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\CAN\eBay(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_ca&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\CAN\eBay.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_ca&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\CHE\eBay.ch(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_ch&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\CHE\eBay.ch.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_ch&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\DEU\eBay(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_de&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\DEU\eBay.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_de&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\ESP\eBay compra y vende de todo(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_es&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\ESP\eBay compra y vende de todo.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_es&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\FRA\eBay(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_fr&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\FRA\eBay.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_fr&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\GBR\Visit eBay.co.uk(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_gb&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\GBR\Visit eBay.co.uk.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_gb&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\HKG\eBay.com.hk(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_hk&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\HKG\eBay.com.hk.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_hk&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\IND\eBay.in(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_in&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\IND\eBay.in.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_in&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\ITA\eBay Italia(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_it&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\ITA\eBay Italia.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_it&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\MYS\eBay.com.my(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_my&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\MYS\eBay.com.my.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_my&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\NLD\eBay.nl(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_nl&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\NLD\eBay.nl.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_nl&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\PHL\eBay.ph(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_ph&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\PHL\eBay.ph.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_ph&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\SGP\eBay.com.sg(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_sg&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\SGP\eBay.com.sg.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_sg&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\USA\eBay(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_us&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\en-US\USA\eBay.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_us&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\EN_AU\Snapfish Photos(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_au) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\EN_AU\Snapfish Photos.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_au) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\EN_CA\Snapfish(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_ca) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\EN_CA\Snapfish.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_ca) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\EN_GB\Snapfish Photos(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_gb) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\EN_GB\Snapfish Photos.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_gb) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\EN_IE\Snapfish Photos(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_ie) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\EN_IE\Snapfish Photos.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_ie) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\EN_IN\Snapfish(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_in) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\EN_IN\Snapfish.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_in) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\EN_NZ\Snapfish Photos(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_nz) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\EN_NZ\Snapfish Photos.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_nz) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\EN_SG\Snapfish(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_sg) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\EN_SG\Snapfish.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_sg) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\EN_US\Snapfish(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_us) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\EN_US\Snapfish.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_us) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\es-ES\ESP\eBay compra y vende de todo(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=es_es&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\es-ES\ESP\eBay compra y vende de todo.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=es_es&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\es-ES\USA\eBay(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_us&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\es-ES\USA\eBay.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=en_us&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\ES_ES\Fotos Snapfish(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_es) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\ES_ES\Fotos Snapfish.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_es) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\eu-ES\ESP\eBay compra y vende de todo(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=eu_es&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\eu-ES\ESP\eBay compra y vende de todo.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=eu_es&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\fr-fr\BEL\Bezoek eBay.be(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=fr_be&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\fr-fr\BEL\Bezoek eBay.be.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=fr_be&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\fr-fr\CAN\eBay(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=fr_ca&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\fr-fr\CAN\eBay.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=fr_ca&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\fr-fr\CHE\eBay.ch(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=fr_ch&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\fr-fr\CHE\eBay.ch.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=fr_ch&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\fr-fr\FRA\eBay(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=fr_fr&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\fr-fr\FRA\eBay.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=fr_fr&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\FR_BE\Photos Snapfish(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_fr_be) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\FR_BE\Photos Snapfish.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_fr_be) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\FR_CA\Snapfish(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_fr_ca) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\FR_CA\Snapfish.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_fr_ca) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\FR_CH\Photos Snapfish(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_fr_ch) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\FR_CH\Photos Snapfish.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_fr_ch) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\FR_FR\Photos Snapfish(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_fr) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\FR_FR\Photos Snapfish.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_fr) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\gl-ES\ESP\eBay compra y vende de todo(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=gl_es&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\gl-ES\ESP\eBay compra y vende de todo.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=gl_es&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\hi-IN\IND\eBay.in(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=hi_in&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\hi-IN\IND\eBay.in.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=hi_in&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\it-IT\CHE\eBay.ch(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=it_ch&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\it-IT\CHE\eBay.ch.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=it_ch&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\it-IT\ITA\eBay Italia(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=it_it&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\it-IT\ITA\eBay Italia.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=it_it&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\IT_CH\Snapfish Foto(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_it_ch) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\IT_CH\Snapfish Foto.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_it_ch) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\IT_IT\Snapfish Foto(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_it_it) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\IT_IT\Snapfish Foto.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_it_it) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\JA_JP\Snapfish(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_jp) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\JA_JP\Snapfish.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_jp) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\NB_NO\Snapfish-bilder(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_no) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\NB_NO\Snapfish-bilder.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_no) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\nl-NL\BEL\Bezoek eBay.be(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=nl_be&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\nl-NL\BEL\Bezoek eBay.be.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=nl_be&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\nl-NL\NLD\eBay.nl(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=nl_nl&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\nl-NL\NLD\eBay.nl.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=nl_nl&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\NL_BE\Snapfish foto's(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_nl_be) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\NL_BE\Snapfish foto's.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_nl_be) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\NL_NL\Snapfish foto's(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_nl) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\NL_NL\Snapfish foto's.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_nl) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\PT_PT\Fotos Snapfish(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_pt) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\PT_PT\Fotos Snapfish.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_pt) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\SV_SE\Snapfishbilder(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_se) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\SV_SE\Snapfishbilder.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_se) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\zh-HK\HKG\?????eBay!(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=zh_hk&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\zh-HK\HKG\?????eBay!.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=dticon&s=ebay&pf=cndt&locale=zh_hk&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\ZH_CN\?????(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_cn) - Hidden: False - Status: OK C:\hp\HPQWare\dtshortcuts\ZH_CN\?????.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_cn) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\ca-ES\ESP\Shopping and Services\eBay compra y vende de todo(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=ca_es&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\ca-ES\ESP\Shopping and Services\eBay compra y vende de todo.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=ca_es&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\DA_DK\Music, Photos and Videos\Snapfish billeder(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_dk) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\DA_DK\Music, Photos and Videos\Snapfish billeder.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_dk) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\de-DE\AUT\Shopping and Services\eBay.at(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=de_at&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\de-DE\AUT\Shopping and Services\eBay.at.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=de_at&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\de-DE\BEL\Shopping and Services\Bezoek eBay.be(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=de_be&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\de-DE\BEL\Shopping and Services\Bezoek eBay.be.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=de_be&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\de-DE\CHE\Shopping and Services\eBay.ch(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=de_ch&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\de-DE\CHE\Shopping and Services\eBay.ch.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=de_ch&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\de-DE\DEU\Shopping and Services\eBay(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=de_de&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\de-DE\DEU\Shopping and Services\eBay.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=de_de&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\DE_AT\Music, Photos and Videos\Snapfish Fotos(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_at) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\DE_AT\Music, Photos and Videos\Snapfish Fotos.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_at) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\DE_CH\Music, Photos and Videos\Snapfish Fotos(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_de_ch) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\DE_CH\Music, Photos and Videos\Snapfish Fotos.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_de_ch) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\DE_DE\Music, Photos and Videos\Snapfish Fotos(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_de) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\DE_DE\Music, Photos and Videos\Snapfish Fotos.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_de) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\AUS\Shopping and Services\eBay(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_au&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\AUS\Shopping and Services\eBay.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_au&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\BEL\Shopping and Services\Bezoek eBay.be(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_be&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\BEL\Shopping and Services\Bezoek eBay.be.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_be&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\CAN\Shopping and Services\eBay(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_ca&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\CAN\Shopping and Services\eBay.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_ca&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\CHE\Shopping and Services\eBay.ch(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_ch&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\CHE\Shopping and Services\eBay.ch.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_ch&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\DEU\Shopping and Services\eBay(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_de&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\DEU\Shopping and Services\eBay.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_de&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\ESP\Shopping and Services\eBay compra y vende de todo(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_es&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\ESP\Shopping and Services\eBay compra y vende de todo.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_es&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\FRA\Shopping and Services\eBay(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_fr&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\FRA\Shopping and Services\eBay.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_fr&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\GBR\Shopping and Services\Visit eBay.co.uk(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_gb&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\GBR\Shopping and Services\Visit eBay.co.uk.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_gb&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\HKG\Shopping and Services\eBay.com.hk(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_hk&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\HKG\Shopping and Services\eBay.com.hk.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_hk&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\IND\Shopping and Services\eBay.in(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_in&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\IND\Shopping and Services\eBay.in.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_in&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\IRL\Shopping and Services\eBay.ie(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=EN_IE&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\IRL\Shopping and Services\eBay.ie.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=EN_IE&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\ITA\Shopping and Services\eBay Italia(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_it&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\ITA\Shopping and Services\eBay Italia.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_it&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\MYS\Shopping and Services\eBay.com.my(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_my&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\MYS\Shopping and Services\eBay.com.my.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_my&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\NLD\Shopping and Services\eBay.nl(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_nl&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\NLD\Shopping and Services\eBay.nl.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_nl&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\PHL\Shopping and Services\eBay.ph(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_ph&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\PHL\Shopping and Services\eBay.ph.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_ph&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\SGP\Shopping and Services\eBay.com.sg(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_sg&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\SGP\Shopping and Services\eBay.com.sg.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_sg&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\USA\Shopping and Services\eBay(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_us&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\en-US\USA\Shopping and Services\eBay.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_us&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\EN_AU\Music, Photos and Videos\Snapfish Photos(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_au) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\EN_AU\Music, Photos and Videos\Snapfish Photos.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_au) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\EN_CA\Music, Photos and Videos\Snapfish(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_ca) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\EN_CA\Music, Photos and Videos\Snapfish.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_ca) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\EN_GB\Music, Photos and Videos\Snapfish Photos(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_gb) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\EN_GB\Music, Photos and Videos\Snapfish Photos.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_gb) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\EN_IE\Music, Photos and Videos\Snapfish Photos(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_ie) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\EN_IE\Music, Photos and Videos\Snapfish Photos.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_ie) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\EN_IN\Music, Photos and Videos\Snapfish(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_in) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\EN_IN\Music, Photos and Videos\Snapfish.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_in) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\EN_NZ\Music, Photos and Videos\Snapfish Photos(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_nz) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\EN_NZ\Music, Photos and Videos\Snapfish Photos.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_nz) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\EN_SG\Music, Photos and Videos\Snapfish(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_sg) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\EN_SG\Music, Photos and Videos\Snapfish.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_sg) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\EN_US\Music, Photos and Videos\Snapfish(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_us) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\EN_US\Music, Photos and Videos\Snapfish.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_us) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\es-ES\ESP\Shopping and Services\eBay compra y vende de todo(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=es_es&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\es-ES\ESP\Shopping and Services\eBay compra y vende de todo.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=es_es&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\es-ES\USA\Shopping and Services\eBay(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_us&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\es-ES\USA\Shopping and Services\eBay.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=en_us&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\ES_ES\Music, Photos and Videos\Fotos Snapfish(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_es) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\ES_ES\Music, Photos and Videos\Fotos Snapfish.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_es) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\eu-ES\ESP\Shopping and Services\eBay compra y vende de todo(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=eu_es&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\eu-ES\ESP\Shopping and Services\eBay compra y vende de todo.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=eu_es&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\fr-fr\BEL\Shopping and Services\Bezoek eBay.be(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=fr_be&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\fr-fr\BEL\Shopping and Services\Bezoek eBay.be.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=fr_be&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\fr-fr\CAN\Shopping and Services\eBay(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=fr_ca&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\fr-fr\CAN\Shopping and Services\eBay.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=fr_ca&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\fr-fr\CHE\Shopping and Services\eBay.ch(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=fr_ch&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\fr-fr\CHE\Shopping and Services\eBay.ch.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=fr_ch&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\fr-fr\FRA\Shopping and Services\eBay(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=fr_fr&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\fr-fr\FRA\Shopping and Services\eBay.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=fr_fr&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\FR_BE\Music, Photos and Videos\Photos Snapfish(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_fr_be) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\FR_BE\Music, Photos and Videos\Photos Snapfish.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_fr_be) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\FR_CA\Music, Photos and Videos\Snapfish(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_fr_ca) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\FR_CA\Music, Photos and Videos\Snapfish.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_fr_ca) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\FR_CH\Music, Photos and Videos\Photos Snapfish(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_fr_ch) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\FR_CH\Music, Photos and Videos\Photos Snapfish.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_fr_ch) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\FR_FR\Music, Photos and Videos\Snapfish(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_fr) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\FR_FR\Music, Photos and Videos\Snapfish.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_fr) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\gl-ES\ESP\Shopping and Services\eBay compra y vende de todo(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=gl_es&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\gl-ES\ESP\Shopping and Services\eBay compra y vende de todo.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=gl_es&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\hi-IN\IND\Shopping and Services\eBay.in(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=hi_in&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\hi-IN\IND\Shopping and Services\eBay.in.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=hi_in&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\it-IT\CHE\Shopping and Services\eBay.ch(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=it_ch&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\it-IT\CHE\Shopping and Services\eBay.ch.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=it_ch&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\it-IT\ITA\Shopping and Services\eBay Italia(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=it_it&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\it-IT\ITA\Shopping and Services\eBay Italia.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=it_it&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\IT_CH\Music, Photos and Videos\Snapfish Foto(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_it_ch) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\IT_CH\Music, Photos and Videos\Snapfish Foto.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_it_ch) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\IT_IT\Music, Photos and Videos\Snapfish Foto(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_it_it) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\IT_IT\Music, Photos and Videos\Snapfish Foto.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_it_it) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\JA_JP\Music, Photos and Videos\Snapfish(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_jp) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\JA_JP\Music, Photos and Videos\Snapfish.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_jp) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\NB_NO\Music, Photos and Videos\Snapfish-bilder(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_no) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\NB_NO\Music, Photos and Videos\Snapfish-bilder.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_no) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\nl-NL\BEL\Shopping and Services\Bezoek eBay.be(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=nl_be&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\nl-NL\BEL\Shopping and Services\Bezoek eBay.be.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=nl_be&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\nl-NL\NLD\Shopping and Services\eBay.nl(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=nl_nl&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\nl-NL\NLD\Shopping and Services\eBay.nl.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=nl_nl&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\NL_BE\Music, Photos and Videos\Snapfish foto's(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_nl_be) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\NL_BE\Music, Photos and Videos\Snapfish foto's.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_nl_be) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\NL_NL\Music, Photos and Videos\Snapfish foto's(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_nl) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\NL_NL\Music, Photos and Videos\Snapfish foto's.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_nl) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\PT_PT\Music, Photos and Videos\Fotos Snapfish(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_pt) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\PT_PT\Music, Photos and Videos\Fotos Snapfish.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_pt) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\SV_SE\Music, Photos and Videos\Snapfishbilder(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_se) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\SV_SE\Music, Photos and Videos\Snapfishbilder.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_se) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\zh-HK\HKG\Shopping and Services\?????eBay!(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=zh_hk&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\zh-HK\HKG\Shopping and Services\?????eBay!.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cndt&locale=zh_hk&bd=all&c=124) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\ZH_CN\Music, Photos and Videos\?????(1).lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_cn) - Hidden: False - Status: OK C:\hp\HPQWare\StartMenuLink\ZH_CN\Music, Photos and Videos\?????.lnk - Encrypted: False - Target: C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe - Args: (hxxp://www.snapfish.com/hp_desktop_desktopicon_2012_cn) - Hidden: False - Status: OK C:\Users\Bur K CX30JJAD 8janv\Desktop\Pre_Scan_Donate.lnk - Encrypted: False - Target: C:\Program Files (x86)\Internet Explorer\iexplore.exe - Args: (hxxps://www.paypal.com/cgi-bin/webscr?cmd=_s-xclick&hosted_button_id=S3AQ8V3XRWWYN) - Hidden: False - Status: OK C:\Users\jean-\AppData\Roaming\ZHP\Quarantine\ZHPFix\Folder\Folder9___Goodgame Empire\Goodgame Empire.lnk - Encrypted: False - Target: C:\Program Files\Internet Explorer\iexplore.exe - Args: (hxxps://empire.goodgamestudios.com/?w=376971) - Hidden: False - Status: OK ---------- | AppCertDlls ---------- | Dnsapi.dll C:\WINDOWS\System32\dnsapi.dll -> OK : \drivers\etc\hosts C:\WINDOWS\SysWOW64\dnsapi.dll -> OK : \drivers\etc\hosts ---------- | Policies | Registry [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Control Panel\Desktop] "ActiveWndTrackTimeout"=0 "BlockSendInputResets"=0 "CaretTimeout"=5000 "ClickLockTime"=1200 "CoolSwitchColumns"=7 "CoolSwitchRows"=3 "CursorBlinkRate"=530 "DockMoving"=1 "DragFromMaximize"=1 "DragHeight"=4 "DragWidth"=4 "FontSmoothing"=2 "FontSmoothingGamma"=0 "FontSmoothingOrientation"=1 "FontSmoothingType"=2 "ForegroundFlashCount"=7 "ForegroundLockTimeout"=150000 "LeftOverlapChars"=3 "MenuShowDelay"=0 "MouseWheelRouting"=2 "PaintDesktopVersion"=0 "Pattern"=0 "RightOverlapChars"=3 "ScreenSaveActive"=1 "SnapSizing"=1 "TileWallpaper"=0 "WallpaperOriginX"=0 "WallpaperOriginY"=0 "WallpaperStyle"=10 "WheelScrollChars"=3 "WheelScrollLines"=3 "FocusBorderHeight"=2 "FocusBorderWidth"=2 "WallPaper"=C:\WINDOWS\web\wallpaper\win10.jpg [23/02/2020 16:38:52] "WindowArrangementActive"=0 "DragFullWindows"=0 "Win8DpiScaling"=0 "DpiScalingVer"=4096 "UserPreferencesMask"=0x9212078010000000 "MaxVirtualDesktopDimension"=1920 "MaxMonitorDimension"=1920 "TranscodedImageCount"=1 "LastUpdated"=4294967295 "TranscodedImageCache"=0x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utoColorization"=0 "ImageColor"=2796782390 "PreferredUILanguages"=fr-FR "WaitToKillAppTimeout"=2000 "SmoothScroll"=0 "CaretWidth"=10 "HungAppTimeout"=2000 "AutoEndTasks"=0 [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] "NoSimpleNetIDList"=1 "NoResolveTrack"=1 "NoDriveTypeAutoRun"=221 "NoLowDiskSpaceChecks"=1 [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel] "{018D5C66-4533-4307-9B53-224DE2ED1FE6}"=1 [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer] "EdgeDesktopShortcutCreated"=1 "ShellState"=0x240000003F28010000000000000000000000000001000000130000000000000063000000 "ExplorerStartupTraceRecorded"=1 "LogonCount"=890 "UserSignedIn"=1 "SlowContextMenuEntries"=0x60B81DB4E464D2119906E49FADC173CAFBE500000114020000000000C000000000000046FAED0000F05A64A7E8D6AF488DFA023B1CF660A7EAAE1100BD0E0C47735D584D9CEDE91E22E232829DA502006024B221EA3A6910A2DC08002B30309D82CC0100 "SIDUpdatedOnLibraries"=1 "LocalKnownFoldersMigrated"=1 "TelemetrySalt"=5 "GlobalAssocChangedCounter"=76 "FirstRunTelemetryComplete"=1 "AppReadinessLogonComplete"=1 "PostAppInstallTasksCompleted"=1 "Browse For Folder Width"=462 "Browse For Folder Height"=354 "link"=0x00000000 "DesktopProcess"=1 [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced] "Start_SearchFiles"=2 "ServerAdminUI"=0 "Hidden"=1 "ShowCompColor"=1 "HideFileExt"=0 "DontPrettyPath"=0 "ShowInfoTip"=1 "MapNetDrvBtn"=0 "WebView"=1 "Filter"=0 "ShowSuperHidden"=0 "AutoCheckSelect"=0 "IconsOnly"=0 "ShowTypeOverlay"=1 "ShowStatusBar"=1 "ListviewShadow"=1 "StoreAppsOnTaskbar"=1 "EnableStartMenu"=1 "StartMenuInit"=13 "TaskbarSizeMove"=1 "DisablePreviewDesktop"=0 "TaskbarGlomLevel"=0 "HideDrivesWithNoMedia"=0 "ReindexedProfile"=1 "TaskbarStateLastRun"=0xD6128C5E00000000 "NoNetCrawling"=1 "DesktopLivePreviewHoverTime"=0 "ExtendedUIHoverTime"=0 "ShowEncryptCompressedColor"=1 "Start_ShowRecentDocs"=1 "Start_ShowMyDocs"=1 "SeparateProcess"=1 "ListviewWatermark"=0 "TaskbarSmallIcons"=0 "ShowCortanaButton"=1 "ListviewAlphaSelect"=0 "TaskbarAnimations"=0 "StartMigratedBrowserPin"=1 "TaskbarMigratedBrowserPin"=1 "Start_TrackProgs"=1 [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\WordWheelQuery] "MRUListEx"=0x03000000020000000100000000000000FFFFFFFF "0"=0x6D00330075000000 "1"=0x63006F006D006F0064006F000000 "2"=0x6E0065007800740079006500610072000000 "3"=0x73006500610066000000 [HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers] "authenticodeenabled"=0 [HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System] "ConsentPromptBehaviorAdmin"=5 "ConsentPromptBehaviorUser"=3 "DSCAutomationHostEnabled"=2 "EnableCursorSuppression"=1 "EnableFullTrustStartupTasks"=2 "EnableInstallerDetection"=1 "EnableLUA"=1 "EnableSecureUIAPaths"=1 "EnableUIADesktopToggle"=0 "EnableUwpStartupTasks"=2 "EnableVirtualization"=1 "PromptOnSecureDesktop"=1 "SupportFullTrustStartupTasks"=1 "SupportUwpStartupTasks"=1 "ValidateAdminCodeSignatures"=0 "undockwithoutlogon"=1 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "scforceoption"=0 "shutdownwithoutlogon"=1 "EnableFirstLogonAnimation"=0 "EnableSecureUIAPath"=1 "FilterAdministratorToken"=0 "EnableLinkedConnections"=1 [HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] "ForceActiveDesktopOn"=0 "NoRecentDocsHistory"=0 "NoActiveDesktop"=0 "NoDriveTypeAutoRun"= "MemCheckBoxInRunDlg"=1 [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel] "{031E4825-7B94-4dc3-B131-E946B44C8DD5}"=1 "{208D2C60-3AEA-1069-A2D7-08002B30309D}"=0 "{20D04FE0-3AEA-1069-A2D8-08002B30309D}"=0 "{5399E694-6CE5-4D6C-8FCE-1D8870FDCBA0}"=0 "{59031a47-3f72-44a7-89c5-5595fe6b30ee}"=0 "{871C5380-42A0-1069-A2EA-08002B30309D}"=0 "{9343812e-1c37-4a49-a12e-4b2d810d956b}"=0 "{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}"=1 "{F02C1A0D-BE21-4350-88B0-7367FC96EF3C}"=0 [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\ClassicStartMenu] "{871C5380-42A0-1069-A2EA-08002B30309D}.default"=0 "{9343812e-1c37-4a49-a12e-4b2d810d956b}"=1 [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] "CheckedValue"=1 "DefaultValue"=2 "HKeyRoot"=2147483649 "Id"=2 "RegPath"=Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced "Text"=@shell32.dll,-30500 "Type"=radio "ValueName"=Hidden [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer] "ActiveSetupDisabled"=0 "ActiveSetupTaskOverride"=1 "AsyncRunOnce"=1 "AsyncUpdatePCSettings"=1 "DisableAppInstallsOnFirstLogon"=1 "DisableResolveStoreCategories"=1 "DisableUpgradeCleanup"=1 "EarlyAppResolverStart"=1 "FileOpenDialog"={DC1C5A9C-E88A-4dde-A5A1-60F82A20AEF7} "FSIASleepTimeInMs"=60000 "GlobalFolderSettings"={EF8AD2D1-AE36-11D1-B2D2-006097DF8C11} "IconUnderline"=2 "ListViewPopupControl"={8be9f5ea-e746-4e47-ad57-3fb191ca1eed} "LVPopupSearchControl"={fccf70c8-f4d7-4d8b-8c17-cd6715e37fff} "MachineOobeUpdates"=1 "NoWaitOnRoamingPayloads"=1 "TaskScheduler"={0f87369f-a4e5-4cfc-bd3e-73e6154572dd} "SmartScreenEnabled"=Off "GlobalAssocChangedCounter"=130 "Max Cached Icons"=2000 "MultipleInvokePromptMinimum"=10000 [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced] "Start_TrackDocs"=1 "TaskbarSizeMove"=0 [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] "Application"=http://shell.windows.com/fileassoc/%04x/xml/redir.asp?Ext=%s [HKLM\Software\WOW6432Node\Policies\Microsoft\Windows\Safer\CodeIdentifiers] "authenticodeenabled"=0 [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\System] "ConsentPromptBehaviorAdmin"=5 "ConsentPromptBehaviorUser"=3 "DSCAutomationHostEnabled"=2 "EnableCursorSuppression"=1 "EnableFullTrustStartupTasks"=2 "EnableInstallerDetection"=1 "EnableLUA"=1 "EnableSecureUIAPaths"=1 "EnableUIADesktopToggle"=0 "EnableUwpStartupTasks"=2 "EnableVirtualization"=1 "PromptOnSecureDesktop"=1 "SupportFullTrustStartupTasks"=1 "SupportUwpStartupTasks"=1 "ValidateAdminCodeSignatures"=0 "undockwithoutlogon"=1 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "scforceoption"=0 "shutdownwithoutlogon"=1 "EnableFirstLogonAnimation"=0 "EnableSecureUIAPath"=1 "FilterAdministratorToken"=0 "EnableLinkedConnections"=1 [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] "ForceActiveDesktopOn"=0 "NoRecentDocsHistory"=0 "NoActiveDesktop"=0 "NoDriveTypeAutoRun"= "MemCheckBoxInRunDlg"=1 [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel] "{031E4825-7B94-4dc3-B131-E946B44C8DD5}"=1 "{208D2C60-3AEA-1069-A2D7-08002B30309D}"=0 "{20D04FE0-3AEA-1069-A2D8-08002B30309D}"=0 "{5399E694-6CE5-4D6C-8FCE-1D8870FDCBA0}"=0 "{59031a47-3f72-44a7-89c5-5595fe6b30ee}"=0 "{871C5380-42A0-1069-A2EA-08002B30309D}"=0 "{9343812e-1c37-4a49-a12e-4b2d810d956b}"=0 "{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}"=1 "{F02C1A0D-BE21-4350-88B0-7367FC96EF3C}"=0 [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\ClassicStartMenu] "{871C5380-42A0-1069-A2EA-08002B30309D}.default"=0 "{9343812e-1c37-4a49-a12e-4b2d810d956b}"=1 [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] "CheckedValue"=1 "DefaultValue"=2 "HKeyRoot"=2147483649 "Id"=2 "RegPath"=Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced "Text"=@shell32.dll,-30500 "Type"=radio "ValueName"=Hidden [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer] "ActiveSetupDisabled"=0 "ActiveSetupTaskOverride"=1 "AsyncRunOnce"=1 "AsyncUpdatePCSettings"=1 "DisableAppInstallsOnFirstLogon"=1 "DisableResolveStoreCategories"=1 "DisableUpgradeCleanup"=1 "EarlyAppResolverStart"=1 "FileOpenDialog"={DC1C5A9C-E88A-4dde-A5A1-60F82A20AEF7} "FSIASleepTimeInMs"=60000 "GlobalFolderSettings"={EF8AD2D1-AE36-11D1-B2D2-006097DF8C11} "IconUnderline"=2 "ListViewPopupControl"={8be9f5ea-e746-4e47-ad57-3fb191ca1eed} "LVPopupSearchControl"={fccf70c8-f4d7-4d8b-8c17-cd6715e37fff} "MachineOobeUpdates"=1 "NoWaitOnRoamingPayloads"=1 "TaskScheduler"={0f87369f-a4e5-4cfc-bd3e-73e6154572dd} "GlobalAssocChangedCounter"=281 "Max Cached Icons"=2000 [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced] "Start_TrackDocs"=1 "TaskbarSizeMove"=0 [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] "Application"=http://shell.windows.com/fileassoc/%04x/xml/redir.asp?Ext=%s ---------- | Winlogon [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows NT\CurrentVersion\Winlogon] "ExcludeProfileDirs"=AppData\Local;AppData\LocalLow;$Recycle.Bin;OneDrive;Work Folders "PUUActive"=0x14B6B00303002E0349034C01607F06002773140027731400D2000000020053037D7FADC477C85700B8144E00DD260200FFAE0100A87F000000000000000000000000000072FA46003166000068090000C6799BE3D50CD60122DE07000000000001000000607F0600504C0000091D0000ECBBBF0000000000 "BuildNumber"=19536 "FirstLogon"=0 "DP"=0xD200E800B8002E034903000014B6B0030000000000000000818400A2B80CD601818400A2B80CD601000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000F03F805101005F2C0100A1D24010A5D2401A920101805000010450002106371600804880342048883C61CDFB00801008014C5448014C7AC100000011213000112136E44100801881E04018C1E0400FE2008013000C4053019C40CCFE00800A0918200A091C201B580080AC22C412AC2AC41271B3008061539D1363539D13FD2500002402014024130140 "ParseAutoexec"=1 "AutoRestartShell"=0 [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon] "Background"=0 0 0 "CachedLogonsCount"=10 "DebugServerCommand"=no "DisableBackButton"=1 "EnableSIHostIntegration"=1 "ForceUnlockLogon"=0 "LegalNoticeCaption"= "LegalNoticeText"= "PasswordExpiryWarning"=5 "PowerdownAfterShutdown"=0 "PreCreateKnownFolders"={A520A1A4-1780-4FF6-BD18-167343C5AF16} "Shell"=explorer.exe "ShellCritical"=0 "ShellInfrastructure"=sihost.exe "SiHostCritical"=0 "SiHostReadyTimeOut"=0 "SiHostRestartCountLimit"=0 "SiHostRestartTimeGap"=0 "VMApplet"=SystemPropertiesPerformance.exe /pagefile "WinStationsDisabled"=0 "scremoveoption"=0 "ReportBootOk"=0 "LastLogOffEndTimePerfCounter"=1363398222 "ShutdownFlags"=7 "Userinit"=C:\WINDOWS\System32\userinit.exe, "AutoAdminLogon"=0 "DefaultDomainName"=DESKTOP-37KC94K "DefaultUserName"= "AutoRestartShell"=1 "DisableCad"=1 "DisableLockWorkstation"=0 "EnableFirstLogonAnimation"=1 "AutoLogonSID"=S-1-5-21-4265624635-2019933758-61733912-1001 "LastUsedUsername"=jean- "SFCDisable"=0 "allocatecdroms"=0 [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] "DefaultDomainName"= "PreCreateKnownFolders"={A520A1A4-1780-4FF6-BD18-167343C5AF16} "Shell"=explorer.exe "ShellCritical"=0 "SiHostCritical"=0 "SiHostReadyTimeOut"=0 "SiHostRestartCountLimit"=0 "SiHostRestartTimeGap"=0 "userinit"=userinit.exe, "AutoRestartShell"=1 "SFCDisable"=0 ---------- | Associations [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Classes\Folder] ""=Folder "ContentViewModeForBrowse"=prop:~System.ItemNameDisplay;~System.LayoutPattern.PlaceHolder;~System.LayoutPattern.PlaceHolder;~System.LayoutPattern.PlaceHolder;System.DateModified "ContentViewModeForSearch"=prop:~System.ItemNameDisplay;System.DateModified;~System.ItemFolderPathDisplay "ContentViewModeLayoutPatternForBrowse"=delta "ContentViewModeLayoutPatternForSearch"=alpha "EditFlags"=0xD2030000 "FullDetails"=prop:System.PropGroup.Description;System.ItemNameDisplay;System.ItemTypeText;System.Size;System.HomeGroupSharingStatus "NoRecentDocs"= "ThumbnailCutoff"=0 "TileInfo"=prop:System.Title;System.HomeGroupSharingStatus [HKLM\Software\Classes\.exe] ""=exefile "Content Type"=application/x-msdownload [HKLM\Software\Classes\exefile\Shell\Open\Command] ""="%1" %* "IsolatedCommand"="%1" %* [HKLM\Software\Classes\.com] ""=comfile [HKLM\Software\Classes\comfile\Shell\Open\Command] ""="%1" %* [HKLM\Software\Classes\.reg] ""=regfile [HKLM\Software\Classes\regfile\Shell\Open\Command] ""=regedit.exe "%1" [HKLM\Software\Classes\.scr] ""=scrfile [HKLM\Software\Classes\scrfile\Shell\Open\Command] ""="%1" /S [HKLM\Software\Classes\.bat] ""=batfile [HKLM\Software\Classes\batfile\Shell\Open\Command] ""="%1" %* [HKLM\Software\Classes\.cmd] ""=cmdfile [HKLM\Software\Classes\cmdfile\Shell\Open\Command] ""="%1" %* [HKLM\Software\Classes\.pif] ""=piffile [HKLM\Software\Classes\piffile\Shell\Open\Command] ""="%1" %* [HKLM\Software\Classes\.inf] ""=inffile [HKLM\Software\Classes\inffile\Shell\Open\Command] ""=%SystemRoot%\system32\NOTEPAD.EXE %1 [HKLM\Software\Classes\.url] ""=InternetShortcut [HKLM\Software\Classes\.lnk] ""=lnkfile [HKLM\Software\Classes\.hta] ""=htafile "Content Type"=application/hta "PerceivedType"=text [HKLM\Software\Classes\htafile\Shell\Open\Command] ""=C:\Windows\SysWOW64\mshta.exe "%1" {1E460BD7-F1C3-4B2E-88BF-4E770A288AF5}%U{1E460BD7-F1C3-4B2E-88BF-4E770A288AF5} %* [HKLM\Software\Classes\InternetShortcut] "EditFlags"=2 "FriendlyTypeName"=@C:\WINDOWS\system32\ieframe.dll,-10046 "FullDetails"=prop:System.Link.TargetUrl;System.Rating;System.Link.Description;System.Link.Comment "InfoTip"=prop:System.Link.TargetUrl;System.Rating;System.Link.Description;System.Link.Comment "IsShortcut"= "NeverShowExt"= "PreviewDetails"=prop:System.Link.TargetUrl;System.Rating;System.History.VisitCount;System.History.DateChanged;System.Link.DateVisited;System.Link.Description;System.Link.Comment ""=Raccourci Internet [HKLM\Software\Classes\Application.Manifest] ""=Application Manifest "BrowserFlags"=4096 "EditFlags"=4259840 "FriendlyTypeName"=@C:\Windows\System32\dfshim.dll,-200 [HKLM\Software\Classes\Application.Reference] ""=Application Reference "EditFlags"=131072 "FriendlyTypeName"=@C:\Windows\System32\dfshim.dll,-201 "IsShortcut"= "NeverShowExt"= [HKLM\Software\Classes\Folder] ""=Folder "AppUserModelID"=Microsoft.Windows.Explorer "ContentViewModeForBrowse"=prop:~System.ItemNameDisplay;~System.LayoutPattern.PlaceHolder;~System.LayoutPattern.PlaceHolder;~System.LayoutPattern.PlaceHolder;System.DateModified "ContentViewModeForSearch"=prop:~System.ItemNameDisplay;System.DateModified;~System.ItemFolderPathDisplay "ContentViewModeLayoutPatternForBrowse"=delta "ContentViewModeLayoutPatternForSearch"=alpha "EditFlags"=0xD2030000 "FullDetails"=prop:System.PropGroup.Description;System.ItemNameDisplay;System.ItemTypeText;System.Size;System.HomeGroupSharingStatus "NoRecentDocs"= "ThumbnailCutoff"=0 "TileInfo"=prop:System.Title;System.HomeGroupSharingStatus [HKLM\Software\WOW6432Node\Classes\.exe] ""=exefile "Content Type"=application/x-msdownload [HKLM\Software\WOW6432Node\Classes\exefile\Shell\Open\Command] ""="%1" %* "IsolatedCommand"="%1" %* [HKLM\Software\WOW6432Node\Classes\.com] ""=comfile [HKLM\Software\WOW6432Node\Classes\comfile\Shell\Open\Command] ""="%1" %* [HKLM\Software\WOW6432Node\Classes\.reg] ""=regfile [HKLM\Software\WOW6432Node\Classes\regfile\Shell\Open\Command] ""=regedit.exe "%1" [HKLM\Software\WOW6432Node\Classes\.scr] ""=scrfile [HKLM\Software\WOW6432Node\Classes\scrfile\Shell\Open\Command] ""="%1" /S [HKLM\Software\WOW6432Node\Classes\.bat] ""=batfile [HKLM\Software\WOW6432Node\Classes\batfile\Shell\Open\Command] ""="%1" %* [HKLM\Software\WOW6432Node\Classes\.cmd] ""=cmdfile [HKLM\Software\WOW6432Node\Classes\cmdfile\Shell\Open\Command] ""="%1" %* [HKLM\Software\WOW6432Node\Classes\.pif] ""=piffile [HKLM\Software\WOW6432Node\Classes\piffile\Shell\Open\Command] ""="%1" %* [HKLM\Software\WOW6432Node\Classes\.inf] ""=inffile [HKLM\Software\WOW6432Node\Classes\inffile\Shell\Open\Command] ""=%SystemRoot%\system32\NOTEPAD.EXE %1 [HKLM\Software\WOW6432Node\Classes\.url] ""=InternetShortcut [HKLM\Software\WOW6432Node\Classes\.lnk] ""=lnkfile [HKLM\Software\WOW6432Node\Classes\.hta] ""=htafile "Content Type"=application/hta "PerceivedType"=text [HKLM\Software\WOW6432Node\Classes\htafile\Shell\Open\Command] ""=C:\Windows\SysWOW64\mshta.exe "%1" {1E460BD7-F1C3-4B2E-88BF-4E770A288AF5}%U{1E460BD7-F1C3-4B2E-88BF-4E770A288AF5} %* [HKLM\Software\WOW6432Node\Classes\InternetShortcut] "EditFlags"=2 "FriendlyTypeName"=@C:\WINDOWS\system32\ieframe.dll,-10046 "FullDetails"=prop:System.Link.TargetUrl;System.Rating;System.Link.Description;System.Link.Comment "InfoTip"=prop:System.Link.TargetUrl;System.Rating;System.Link.Description;System.Link.Comment "IsShortcut"= "NeverShowExt"= "PreviewDetails"=prop:System.Link.TargetUrl;System.Rating;System.History.VisitCount;System.History.DateChanged;System.Link.DateVisited;System.Link.Description;System.Link.Comment ""=Raccourci Internet [HKLM\Software\WOW6432Node\Classes\Application.Manifest] ""=Application Manifest "BrowserFlags"=4096 "EditFlags"=4259840 "FriendlyTypeName"=@C:\Windows\System32\dfshim.dll,-200 [HKLM\Software\WOW6432Node\Classes\Application.Reference] ""=Application Reference "EditFlags"=131072 "FriendlyTypeName"=@C:\Windows\System32\dfshim.dll,-201 "IsShortcut"= "NeverShowExt"= [HKLM\Software\WOW6432Node\Classes\Folder] ""=Folder "AppUserModelID"=Microsoft.Windows.Explorer "ContentViewModeForBrowse"=prop:~System.ItemNameDisplay;~System.LayoutPattern.PlaceHolder;~System.LayoutPattern.PlaceHolder;~System.LayoutPattern.PlaceHolder;System.DateModified "ContentViewModeForSearch"=prop:~System.ItemNameDisplay;System.DateModified;~System.ItemFolderPathDisplay "ContentViewModeLayoutPatternForBrowse"=delta "ContentViewModeLayoutPatternForSearch"=alpha "EditFlags"=0xD2030000 "FullDetails"=prop:System.PropGroup.Description;System.ItemNameDisplay;System.ItemTypeText;System.Size;System.HomeGroupSharingStatus "NoRecentDocs"= "ThumbnailCutoff"=0 "TileInfo"=prop:System.Title;System.HomeGroupSharingStatus [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Clients\StartMenuInternet\Epic Privacy Browser.ZAP744IJJEVFSKTY2HW7T4LS3U\Shell\open\Command] ""="C:\Users\jean-\AppData\Local\Epic Privacy Browser\Application\epic.exe" [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Clients\StartMenuInternet\Epic Privacy Browser.ZAP744IJJEVFSKTY2HW7T4LS3U\InstallInfo] "ReinstallCommand"="C:\Users\jean-\AppData\Local\Epic Privacy Browser\Application\epic.exe" --make-default-browser [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Clients\StartMenuInternet\Firefox-6F193CCC56814779\Shell\open\Command] ""="C:\Program Files\Firefox Nightly\firefox.exe" [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Clients\StartMenuInternet\Firefox-6F193CCC56814779\InstallInfo] "ReinstallCommand"="C:\Program Files\Firefox Nightly\uninstall\helper.exe" /SetAsDefaultAppGlobal [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Clients\StartMenuInternet\ICEDRAGON.EXE\Shell\open\Command] ""="C:\Program Files (x86)\Comodo\IceDragon\icedragon.exe" [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Clients\StartMenuInternet\ICEDRAGON.EXE\InstallInfo] "ReinstallCommand"="C:\Program Files (x86)\Comodo\IceDragon\uninstall\helper.exe" /SetAsDefaultAppGlobal [HKLM\Software\Clients\StartMenuInternet\Avant.Browser\Shell\open\Command] ""=C:\Program Files (x86)\Avant Browser\avant.exe [28/01/2020 01:55:21] [HKLM\Software\Clients\StartMenuInternet\Avant.Browser\InstallInfo] "ReinstallCommand"= [HKLM\Software\Clients\StartMenuInternet\Dragon\Shell\open\Command] ""="C:\Program Files (x86)\Comodo\Dragon\dragon.exe" [HKLM\Software\Clients\StartMenuInternet\Dragon\InstallInfo] "ReinstallCommand"="C:\Program Files (x86)\Comodo\Dragon\dragon.exe" --make-default-browser [HKLM\Software\Clients\StartMenuInternet\Firefox-308046B0AF4A39CB\Shell\open\Command] ""="C:\Program Files\Mozilla Firefox\firefox.exe" [HKLM\Software\Clients\StartMenuInternet\Firefox-308046B0AF4A39CB\InstallInfo] "ReinstallCommand"="C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /SetAsDefaultAppGlobal [HKLM\Software\Clients\StartMenuInternet\Firefox-6F193CCC56814779\Shell\open\Command] ""="C:\Program Files\Firefox Nightly\firefox.exe" [HKLM\Software\Clients\StartMenuInternet\Firefox-6F193CCC56814779\InstallInfo] "ReinstallCommand"="C:\Program Files\Firefox Nightly\uninstall\helper.exe" /SetAsDefaultAppGlobal [HKLM\Software\Clients\StartMenuInternet\Google Chrome\Shell\open\Command] ""="C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" [HKLM\Software\Clients\StartMenuInternet\Google Chrome\InstallInfo] "ReinstallCommand"="C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --make-default-browser [HKLM\Software\Clients\StartMenuInternet\ICEDRAGON.EXE\Shell\open\Command] ""="C:\PROGRAM FILES (X86)\COMODO\ICEDRAGON\ICEDRAGON.EXE" [HKLM\Software\Clients\StartMenuInternet\ICEDRAGON.EXE\InstallInfo] "ReinstallCommand"="C:\Program Files (x86)\Comodo\IceDragon\uninstall\helper.exe" /SetAsDefaultAppGlobal [HKLM\Software\Clients\StartMenuInternet\IEXPLORE.EXE\Shell\open\Command] ""="C:\Program Files (x86)\Internet Explorer\iexplore.exe" [HKLM\Software\Clients\StartMenuInternet\IEXPLORE.EXE\InstallInfo] "ReinstallCommand"="C:\Windows\System32\ie4uinit.exe" -reinstall [HKLM\Software\Clients\StartMenuInternet\Microsoft Edge\Shell\open\Command] ""="C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" [HKLM\Software\Clients\StartMenuInternet\Microsoft Edge\InstallInfo] "ReinstallCommand"="C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --make-default-browser [HKLM\Software\WOW6432Node\Clients\StartMenuInternet\Avant.Browser\Shell\open\Command] ""=C:\Program Files (x86)\Avant Browser\avant.exe [28/01/2020 01:55:21] [HKLM\Software\WOW6432Node\Clients\StartMenuInternet\Avant.Browser\InstallInfo] "ReinstallCommand"= [HKLM\Software\WOW6432Node\Clients\StartMenuInternet\Dragon\Shell\open\Command] ""="C:\Program Files (x86)\Comodo\Dragon\dragon.exe" [HKLM\Software\WOW6432Node\Clients\StartMenuInternet\Dragon\InstallInfo] "ReinstallCommand"="C:\Program Files (x86)\Comodo\Dragon\dragon.exe" --make-default-browser [HKLM\Software\WOW6432Node\Clients\StartMenuInternet\Firefox-308046B0AF4A39CB\Shell\open\Command] ""="C:\Program Files\Mozilla Firefox\firefox.exe" [HKLM\Software\WOW6432Node\Clients\StartMenuInternet\Firefox-308046B0AF4A39CB\InstallInfo] "ReinstallCommand"="C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /SetAsDefaultAppGlobal [HKLM\Software\WOW6432Node\Clients\StartMenuInternet\Firefox-6F193CCC56814779\Shell\open\Command] ""="C:\Program Files\Firefox Nightly\firefox.exe" [HKLM\Software\WOW6432Node\Clients\StartMenuInternet\Firefox-6F193CCC56814779\InstallInfo] "ReinstallCommand"="C:\Program Files\Firefox Nightly\uninstall\helper.exe" /SetAsDefaultAppGlobal [HKLM\Software\WOW6432Node\Clients\StartMenuInternet\Google Chrome\Shell\open\Command] ""="C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" [HKLM\Software\WOW6432Node\Clients\StartMenuInternet\Google Chrome\InstallInfo] "ReinstallCommand"="C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --make-default-browser [HKLM\Software\WOW6432Node\Clients\StartMenuInternet\ICEDRAGON.EXE\Shell\open\Command] ""="C:\PROGRAM FILES (X86)\COMODO\ICEDRAGON\ICEDRAGON.EXE" [HKLM\Software\WOW6432Node\Clients\StartMenuInternet\ICEDRAGON.EXE\InstallInfo] "ReinstallCommand"="C:\Program Files (x86)\Comodo\IceDragon\uninstall\helper.exe" /SetAsDefaultAppGlobal [HKLM\Software\WOW6432Node\Clients\StartMenuInternet\IEXPLORE.EXE\Shell\open\Command] ""="C:\Program Files (x86)\Internet Explorer\iexplore.exe" [HKLM\Software\WOW6432Node\Clients\StartMenuInternet\IEXPLORE.EXE\InstallInfo] "ReinstallCommand"="C:\Windows\System32\ie4uinit.exe" -reinstall [HKLM\Software\WOW6432Node\Clients\StartMenuInternet\Microsoft Edge\Shell\open\Command] ""="C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" [HKLM\Software\WOW6432Node\Clients\StartMenuInternet\Microsoft Edge\InstallInfo] "ReinstallCommand"="C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --make-default-browser ---------- | AppcompatFlags [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Persisted] "C:\Users\jean-\AppData\Local\Kingsoft\PDF2Word\10.2.0.5822\utility\uninst.exe"=1 "C:\Users\jean-\AppData\Local\Temp\wps\~404752\Au_.exe"=1 "C:\Users\jean-\AppData\Local\Temp\scoped_dir2732_27515\ASR_Blue_Installer_Premium.exe"=1 "C:\Users\jean-\AppData\Local\Temp\apginst.exe"=1 "C:\Users\jean-\AppData\Local\Temp\adsinst.exe"=1 "C:\Users\jean-\AppData\Local\Temp\scoped_dir6628_23032\ASR_Blue_Installer_Premium (1).exe"=1 "C:\ProgramData\TSR7Settings\uninstasr.exe"=33 "C:\ProgramData\apruninst01.exe"=33 "C:\Users\jean-\AppData\Local\Temp\HiSuiteDownLoader\Setup.exe"=1 "C:\Users\jean-\AppData\Local\HiSuite\userdata\LiveUpdateHisuite\full\HiSuite V500R001B007D30SP00C06\9B191996F0D71071\Setup.exe"=1 [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store] "C:\Windows10Upgrade\Windows10UpgraderApp.exe"=0x5341435001000000000000000700000028000000C0D2120023FA120001000000000000000000000A712200002A0C7E67BDB0D5010000000000000000020000002800000000000000000000400000000000000000000000000000000048080100000000000200000002000000 "C:\Users\jean-\Downloads\Programs\hibuddy300.exe"=0x5341435001000000000000000700000028000000AE370A000000000001000000000000000000010571000000BFA2139DEDD1D30100000000000000000200000028000000000000000000000040040000000000004000000000000000FC6D0000000000000100000001000000010000000400000001000000 "C:\Users\jean-\Downloads\Programs\WinUHA 2.0 RC1 (2005.02.27).exe"=0x5341435001000000000000000700000028000000E10616000000000001000000000000000000000A41200000BFA2139DEDD1D301000000000000000002000000280000000000000000080040000000000000000000000000000000004DE90200000000000100000001000000 "C:\Users\jean-\Downloads\Programs\Total-Uninstall-Essential-Setup-6.27.0.exe"=0x534143500100000000000000070000002800000048EFF300042CF40001000000000000000000000A00210000BFA2139DEDD1D301000000000000000002000000280000000000000000000000000000000000000000000000000000002B7B0000000000000100000001000000 "C:\Users\jean-\Documents\intermar'shit de l'art du moine anti-bug framo mac ux themepack\macOS UX Pack 5.0\macOS UX Pack 5.0.exe"=0x534143500100000000000000070000002800000033AE6D084528060001000000000000000000010671020000BFA2139DEDD1D3010000000000000000 "C:\Users\jean-\Dropbox\PortableApps\FirefoxPortable\FirefoxPortable.exe"=0x534143500100000000000000070000002800000080C202008C87030001000000000000000000000A00210000BFA2139DEDD1D3010000000000000000 "C:\Program Files\Internet Explorer\iexplore.exe"=0x5341435001000000000000000700000028000000206F0C00F2650D0001000000010000000000000A002100002A0C7E67BDB0D5010000000000000000 "C:\Program Files (x86)\Internet Explorer\iexplore.exe"=0x534143500100000000000000070000002800000020650C0080980C0001000000010000000000000A002100002A0C7E67BDB0D5010000000000000000 "C:\Program Files\Windows NT\Accessories\wordpad.exe"=0x534143500100000000000000070000002800000000182E003DAC2E0001000000010000000000000A632200002A0C7E67BDB0D5010000000000000000 "C:\Users\jean-\AppData\Roaming\Reincubate\iPhone Backup Extractor\iPhoneBackupExtractor-2534.exe"=0x5341435001000000000000000700000028000000C85AD10057E7D10001000000000000000000000A712200002A0C7E67BDB0D50100000000000000000200000050000000000000000000000000000000000000000000000000000000CAC15200000000000100000001000000000000000000008000100000000000000000000000000000B5E70900000000000100000000000000 "C:\Program Files (x86)\Avant Browser\SetDefault.exe"=0x5341435001000000000000000700000028000000C06F01004C7C010001000000000000000000000A712200002A0C7E67BDB0D501000000000000000005000000100000000000000000000000000000000000000002000000280000000000000000000000000000000000000000000000000000004F5B0000000000000100000001000000 "C:\Program Files (x86)\Avant Browser\avant.exe"=0x5341435001000000000000000700000028000000C0A317000B7D180001000000000000000000000A712200002A0C7E67BDB0D5010000000100000000 "C:\LiberKey\LiberKey.exe"=0x534143500100000000000000070000002800000098B600005AF10000010000000000000000000306710000002A0C7E67BDB0D5010000000000000000 "C:\LiberKey\MyApps\Downloads\PortableApps\PortableApps.com\PortableAppsPlatform.exe"=0x534143500100000000000000070000002800000050A93A0062733B0001000000000000000000000A002100002A0C7E67BDB0D5010000000000000000 "c:\users\jean-\appdata\local\sib\repackager\devices_android_r_huawei_m_samsung_ipod_sony_cybershot_400_gb_sd_sib1\programfilesfolder\usbfix\usbfix.exe"= "C:\Users\jean-\AppData\Roaming\Microsoft\Skype for Desktop\Skype-Setup.exe"=0x5341435001000000000000000700000028000000E8482C04BE1A2D0401000000000000000000000A002100002A0C7E67BDB0D5010000000000000000020000002800000000000000000000400000000000000000000000000000000098600800000000000100000001000000 "C:\Program Files\Mozilla Firefox\firefox.exe"=0x5341435001000000000000000700000028000000C8C00800303E090001000000000000000000000A002100002A0C7E67BDB0D5010000000100000000 "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe"=0x5341435001000000000000000700000028000000880B28003DD1280001000000000000000000000A002100002A0C7E67BDB0D5010000000000000000 "C:\Users\jean-\Downloads\EmsisoftEmergencyKit.exe"=0x5341435001000000000000000700000028000000F8858A1588DE8A1501000000000000000000000A002100002A0C7E67BDB0D50100000000000000000200000028000000000000000000004000000000000000000000000000000000E6180A00000000000100000001000000 "C:\Users\jean-\Downloads\drivesecurity-installer.exe"=0x53414350010000000000000007000000280000005816470068B64700010000000000000000000306000100002A0C7E67BDB0D5010000000000000000 "C:\Users\jean-\Downloads\FRST64.exe"=0x534143500100000000000000070000002800000000CC2200E677230001000000000000000000000A002100002A0C7E67BDB0D5010000000000000000 "Z:\EEK\Start Emergency Kit Scanner.exe"=0x534143500100000000000000070000002800000068F813004D40140001000000000000000000000A002100002A0C7E67BDB0D5010000000000000000 ---------- | IFEO ---------- | Mountpoints2 [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\Mountpoints2\{4711989c-6784-11ea-bcc8-4c72b9f956a2}] : "E:\HiSuiteDownLoader.exe" (AutoRun) [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\Mountpoints2\{f7139479-40e5-11ea-b9fb-4c72b9f956a2}] : "I:\HiSuiteDownLoader.exe" (AutoRun) ---------- | Windows [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\IniFileMapping\win.ini\Windows] ""=USR:Software\Microsoft\Windows NT\CurrentVersion\Windows "APPINIT_DLLS"=SYS:MICROSOFT\\WINDOWS NT\\CURRENTVERSION\\WINDOWS "Beep"=#USR:Control Panel\Sound "CoolSwitch"=USR:Control Panel\Desktop "DEFAULTSEPARATEVDM"=\\REGISTRY\\MACHINE\\SYSTEM\\CURRENTCONTROLSET\\CONTROL\\WOW "DEVICENOTSELECTEDTIMEOUT"=#SYS:MICROSOFT\\WINDOWS NT\\CURRENTVERSION\\WINDOWS "DoubleClickHeight"=#USR:Control Panel\Mouse "DoubleClickSpeed"=#USR:Control Panel\Mouse "DoubleClickWidth"=#USR:Control Panel\Mouse "DragFullWindows"=USR:Control Panel\Desktop "InitialKeyboardIndicators"=USR:Control Panel\Keyboard "LowPowerActive"=#USR:Control Panel\Desktop "LowPowerTimeOut"=#USR:Control Panel\Desktop "MouseSpeed"=#USR:Control Panel\Mouse "MouseThreshold1"=#USR:Control Panel\Mouse "MouseThreshold2"=#USR:Control Panel\Mouse "PowerOffActive"=#USR:Control Panel\Desktop "PowerOffTimeOut"=#USR:Control Panel\Desktop "ScreenSaveActive"=#USR:Control Panel\Desktop "ScreenSaveTimeOut"=#USR:Control Panel\Desktop "SnapToDefaultButton"=#USR:Control Panel\Mouse "Spooler"=#SYS:Microsoft\Windows NT\CurrentVersion\Windows "SWAPDISK"=SYS:MICROSOFT\\WINDOWS NT\\CURRENTVERSION\\WINDOWS "SwapMouseButtons"=#USR:Control Panel\Mouse "TRANSMISSIONRETRYTIMEOUT"=#SYS:MICROSOFT\\WINDOWS NT\\CURRENTVERSION\\WINDOWS [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\IniFileMapping\system.ini\Boot] ""=SYS:Microsoft\Windows NT\CurrentVersion\WOW\boot "ScreenSaverActive"=USR:Control Panel\Desktop "ScreenSaverIsSecure"=USR:Control Panel\Desktop "SCRNSAVE.EXE"=USR:Control Panel\Desktop "Shell"=SYS:Microsoft\Windows NT\CurrentVersion\Winlogon [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\IniFileMapping\win.ini\Windows] "APPINIT_DLLS"=SYS:MICROSOFT\\WINDOWS NT\\CURRENTVERSION\\WINDOWS "Beep"=#USR:Control Panel\Sound "CoolSwitch"=USR:Control Panel\Desktop "DEFAULTSEPARATEVDM"=\\REGISTRY\\MACHINE\\SYSTEM\\CURRENTCONTROLSET\\CONTROL\\WOW "DEVICENOTSELECTEDTIMEOUT"=#SYS:MICROSOFT\\WINDOWS NT\\CURRENTVERSION\\WINDOWS "DoubleClickHeight"=#USR:Control Panel\Mouse "DoubleClickSpeed"=#USR:Control Panel\Mouse "DoubleClickWidth"=#USR:Control Panel\Mouse "DragFullWindows"=USR:Control Panel\Desktop "InitialKeyboardIndicators"=USR:Control Panel\Keyboard "LowPowerActive"=#USR:Control Panel\Desktop "LowPowerTimeOut"=#USR:Control Panel\Desktop "MouseSpeed"=#USR:Control Panel\Mouse "MouseThreshold1"=#USR:Control Panel\Mouse "MouseThreshold2"=#USR:Control Panel\Mouse "PowerOffActive"=#USR:Control Panel\Desktop "PowerOffTimeOut"=#USR:Control Panel\Desktop "ScreenSaveActive"=#USR:Control Panel\Desktop "ScreenSaveTimeOut"=#USR:Control Panel\Desktop "SnapToDefaultButton"=#USR:Control Panel\Mouse "SWAPDISK"=SYS:MICROSOFT\\WINDOWS NT\\CURRENTVERSION\\WINDOWS "SwapMouseButtons"=#USR:Control Panel\Mouse "TRANSMISSIONRETRYTIMEOUT"=#SYS:MICROSOFT\\WINDOWS NT\\CURRENTVERSION\\WINDOWS [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\IniFileMapping\system.ini\Boot] ""=SYS:Microsoft\Windows NT\CurrentVersion\WOW\boot "ScreenSaverActive"=USR:Control Panel\Desktop "ScreenSaverIsSecure"=USR:Control Panel\Desktop "SCRNSAVE.EXE"=USR:Control Panel\Desktop "Shell"=SYS:Microsoft\Windows NT\CurrentVersion\Winlogon [HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems] "windows"=%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16 ---------- | Security center [HKLM\SOFTWARE\Microsoft\Security Center] "cval"=0 [HKLM\SOFTWARE\Microsoft\Security Center\svc] "VistaSp1"=132221423378103249 [HKLM\SOFTWARE\Microsoft\Windows Defender] "ProductAppDataPath"=C:\ProgramData\Microsoft\Windows Defender "ProductIcon"=@%ProgramFiles%\Windows Defender\EppManifest.dll,-100 "ProductLocalizedName"=@%ProgramFiles%\Windows Defender\EppManifest.dll,-1000 "DisableAntiSpyware"=0 "RemediationExe"=%ProgramFiles%\Windows Defender\MSASCui.exe "ProductType"=2 "InstallTime"=0xA18ABA5F1701D201 "ManagedDefenderProductType"=0 "ProductStatus"=0 "OOBEInstallTime"=0xB9374615B0BED501 "InstallLocation"=C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\ "PassiveMode"=0 "LastEnabledTime"=0xB4848E45BE02D601 "BackupLocation"=C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.6-0 "DisableAntiVirus"=0 "IsServiceRunning"=1 [HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall"=1 [HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall"=1 [HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall"=1 ---------- | Safeboot [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\432231ED] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\5215D73F] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppMgmt] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppXSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioEndpointBuilder] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioSrv] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Base] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BasicDisplay.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BasicRender.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BFE] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BITS] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot Bus Extender] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot file system] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BrokerInfrastructure] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\camsvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CBDHSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ClipSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CryptSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DcomLaunch] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DeviceInstall] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dps] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dxgkrnl.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\epmntdrv] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EuGdiDrv] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EventLog] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\File system] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Filter] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\FsDepends.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudAddService.Sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudBus.Sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HelpSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\lfsvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\LSM] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mbamchameleon] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MpsSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\msiserver] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Netlogon] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcCtnrSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PCI Configuration] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PlugPlay] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PNP Filter] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Primary disk] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\QQPCRTP] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcSs] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SCSI Class] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\semgrsvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SerCx2.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sermouse.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SharedAccess] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\shellhwdetection] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\System Bus Extender] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SystemEventsBroker] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TokenBroker] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRemoveSafeBoot] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0001] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0002] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0003] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0004] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0005] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0006] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0007] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0008] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0009] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0010] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0011] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0012] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0013] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0014] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0015] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0016] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0017] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0018] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0019] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0020] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0021] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0022] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0023] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0024] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0025] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0026] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0027] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0028] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0029] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0030] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0031] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0032] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0033] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0034] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0035] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0036] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0037] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0038] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0039] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0040] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0041] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0042] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0043] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0044] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0045] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0046] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0047] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0048] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0049] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0050] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0051] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0052] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0053] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0054] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0055] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0056] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0057] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0058] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0059] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0060] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0061] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0062] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0063] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0064] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0065] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0066] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0067] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0068] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0069] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0070] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0071] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0072] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0073] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0074] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0075] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0076] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0077] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0078] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0079] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0080] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0081] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0082] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0083] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0084] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0085] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0086] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0087] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0088] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0089] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0090] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0091] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0092] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0093] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0094] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0095] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0096] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0097] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0098] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0099] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsSystem0100] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsTrustedInstaller0001] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsTrustedInstaller0002] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsTrustedInstaller0003] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsTrustedInstaller0004] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsTrustedInstaller0005] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsTrustedInstaller0006] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsTrustedInstaller0007] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsTrustedInstaller0008] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsTrustedInstaller0009] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsTrustedInstaller0010] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsTrustedInstaller0011] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsTrustedInstaller0012] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsTrustedInstaller0013] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsTrustedInstaller0014] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsTrustedInstaller0015] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsTrustedInstaller0016] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsTrustedInstaller0017] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsTrustedInstaller0018] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsTrustedInstaller0019] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRunAsTrustedInstaller0020] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\usbaudio.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\VDS] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vga.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vgasave.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vss] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinMgmt] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WSService] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{36FC9E60-C465-11CF-8056-444553540000}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E965-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E967-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96A-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96B-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96F-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E977-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97B-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97D-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{71A27CDD-812A-11D0-BEC7-08002BE2092F}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{9DA2B80F-F89F-4A49-A5C2-511B085B9E8A}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{A0A588A4-C46F-4B37-B7EA-C82FE89870C6}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\432231ED] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\5215D73F] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AFD] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Ahcache.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AppInfo] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AppMgmt] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AppXSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AudioEndpointBuilder] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AudioSrv] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Base] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BasicDisplay.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BasicRender.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BFE] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BITS] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Boot Bus Extender] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Boot file system] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\bowser] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BrokerInfrastructure] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Browser] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\camsvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CBDHSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ClipSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CoreMessagingRegistrar] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CryptSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\DcomLaunch] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\DeviceInstall] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\dfsc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Dhcp] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\DnsCache] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Dot3Svc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\dps] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\dxgkrnl.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Eaphost] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\EFS] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\epmntdrv] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\EuGdiDrv] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\EventLog] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\File system] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Filter] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\FsDepends.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\HdAudAddService.Sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\HdAudBus.Sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\HelpSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\IKEEXT] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ipnat.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\KeyIso] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\LanmanServer] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\LanmanWorkstation] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\lfsvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\LmHosts] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\LSM] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mbamchameleon] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Messenger] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MPSDrv] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MPSSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mrxsmb] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mrxsmb10] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mrxsmb20] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\msiserver] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MsQuic] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NativeWifiP] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NDIS] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NDIS Wrapper] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ndiscap] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Ndisuio] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetBIOS] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetBIOSGroup] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetBT] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetDDEGroup] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Netlogon] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetMan] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\netprofm] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetSetupSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Network] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetworkProvider] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NgcCtnrSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NgcSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NlaSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Nsi] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\nsiproxy.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NTDS] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PCI Configuration] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PlugPlay] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PNP Filter] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PNP_TDI] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PolicyAgent] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Power] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Primary disk] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ProfSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\QQPCRTP] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\rdbss] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\rdpencdd.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\rdsessmgr] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\RpcEptMapper] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\RpcSs] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\sacsvr] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SamSs] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SCardSvr] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SCSI Class] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\semgrsvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SerCx2.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\sermouse.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SharedAccess] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\shellhwdetection] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SmartcardSimulator] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SMR521] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SMR521.SYS] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SMService] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SpbCx.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv2] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srvnet] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\StateRepository] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\str] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Streams Drivers] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SWPRV] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\System Bus Extender] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SystemEventsBroker] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TabletInputService] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TBS] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Tcpip] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TDI] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TokenBroker] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TrustedInstaller] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRemoveSafeBoot] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0001] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0002] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0003] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0004] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0005] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0006] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0007] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0008] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0009] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0010] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0011] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0012] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0013] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0014] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0015] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0016] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0017] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0018] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0019] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0020] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0021] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0022] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0023] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0024] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0025] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0026] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0027] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0028] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0029] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0030] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0031] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0032] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0033] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0034] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0035] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0036] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0037] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0038] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0039] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0040] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0041] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0042] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0043] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0044] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0045] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0046] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0047] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0048] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0049] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0050] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0051] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0052] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0053] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0054] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0055] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0056] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0057] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0058] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0059] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0060] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0061] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0062] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0063] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0064] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0065] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0066] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0067] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0068] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0069] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0070] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0071] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0072] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0073] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0074] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0075] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0076] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0077] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0078] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0079] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0080] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0081] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0082] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0083] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0084] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0085] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0086] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0087] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0088] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0089] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0090] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0091] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0092] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0093] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0094] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0095] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0096] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0097] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0098] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0099] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsSystem0100] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsTrustedInstaller0001] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsTrustedInstaller0002] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsTrustedInstaller0003] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsTrustedInstaller0004] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsTrustedInstaller0005] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsTrustedInstaller0006] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsTrustedInstaller0007] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsTrustedInstaller0008] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsTrustedInstaller0009] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsTrustedInstaller0010] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsTrustedInstaller0011] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsTrustedInstaller0012] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsTrustedInstaller0013] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsTrustedInstaller0014] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsTrustedInstaller0015] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsTrustedInstaller0016] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsTrustedInstaller0017] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsTrustedInstaller0018] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsTrustedInstaller0019] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRunAsTrustedInstaller0020] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\uefi.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\usbaudio.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\UserManager] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\VaultSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\VDS] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vga.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vgasave.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\VirtualSmartcardReader] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vmms] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\volmgr.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\volmgrx.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vss] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wcmsvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WinDefend] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WinMgmt] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wlansvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WSService] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WudfPf] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WudfRd] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WudfSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WudfUsbccidDriver] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{36FC9E60-C465-11CF-8056-444553540000}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E965-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E967-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E969-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E96A-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E96B-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E96C-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E96F-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E973-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E974-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E975-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E977-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E97B-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E97D-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E980-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{71A27CDD-812A-11D0-BEC7-08002BE2092F}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{9DA2B80F-F89F-4A49-A5C2-511B085B9E8A}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{A0A588A4-C46F-4B37-B7EA-C82FE89870C6}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}] ---------- | Winsock (Whitelist) ---------- | Hosts [41] More lines ---------- | Ping Envoi d'une requ?te 'ping' sur google.com [2a00:1450:4007:816::200e] avec 32 octets de donn?es?: R?ponse de 2a00:1450:4007:816::200e?: temps=27 ms R?ponse de 2a00:1450:4007:816::200e?: temps=27 ms R?ponse de 2a00:1450:4007:816::200e?: temps=28 ms R?ponse de 2a00:1450:4007:816::200e?: temps=27 ms Statistiques Ping pour 2a00:1450:4007:816::200e: Paquets?: envoy?s = 4, re?us = 4, perdus = 0 (perte 0%), Dur?e approximative des boucles en millisecondes : Minimum = 27ms, Maximum = 28ms, Moyenne = 27ms ---------- | @ [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Internet Explorer\Main] "Anchor Underline"=yes "Disable Script Debugger"=yes "DisableScriptDebuggerIE"=yes "Display Inline Images"=yes "Do404Search"=0x01000000 "Save_Session_History_On_Exit"=no "Show_FullURL"=no "Show_StatusBar"=yes "Show_ToolBar"=yes "Show_URLinStatusBar"=yes "Show_URLToolBar"=yes "Use_DlgBox_Colors"=yes "UseClearType"=no "XMLHTTP"=1 "Cache_Update_Frequency"=Once_Per_Session "Local Page"=C:\WINDOWS\system32\blank.htm "Enable Browser Extensions"=yes "Play_Background_Sounds"=yes "Play_Animations"=yes "ApplicationTileImmersiveActivation"=1 "AssociationActivationMode"=0 "SyncHomePage Protected - It is a violation of Windows Policy to modify. See aka.ms/browserpolicy"= "ImageStoreRandomFolder"=uhftd4b "OperationalData"=13 "EdgeSwitchingOSBuildNumber"=10586.th2_release.151029-1700 "CompatibilityFlags"=0 "FullScreen"=no "Window_Placement"=0x2C0000000000000001000000FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF3E0000003E0000005E030000BE020000 "IE10RunOncePerInstallCompleted"=1 "IE10RunOnceCompletionTime"=0xFA929F162DD2D501 "IE10TourShown"=1 "IE10TourShownTime"=0xFA929F162DD2D501 "Start Page_TIMESTAMP"=0x86DF43AA8909D601 "DownloadWindowPlacement"=0x2C00000000000000000000000083FFFF0083FFFFFFFFFFFFFFFFFFFF10010000D400000090030000B4020000 "TabShutdownDelay"=0 "SearchBandMigrationVersion"=1 "Use Custom Search URL"=1 "IE11EdgeNotifyTime"=0x78726E02A4C3D501 "EdgeReminderRemainingCount"=0 "FormSuggest PW Ask"=yes "AutoHide"=yes "ScriptDebugger_EnableHiddenTabs"=0 "StatusBarWeb"=1 "HideNewEdgeButton"=1 "ShowApplicationGuardFirstRunExperienceFromIE"=1 "ForceGDIPlus"=0 "AlwaysShowMenus"=0 "ShutdownWaitForOnUnload"=0 "DNSPreresolution"=8 "SpellChecking"=1 "LangToolsBroker"={5bbd58bb-993e-4c17-8af6-3af8e908fca8} "DisablePasswordReveal"=0 "EnableLeakDetectionInEdge"=0 "LastClosedWidth"=800 "LastClosedHeight"=600 "DisableRequiresActiveXPrompt"= "EnableGetHostEnvironmentValue"=1 "IE11DefaultsFRECompletionTime"=0xCA1150E25DD1D501 "IE11DefaultsFREConfigUpdateTimestamp"=0xCA1150E25DD1D501 "SuppressScriptDebuggerDialog"=0 "PredictedViewExpansion"=100 "PredictedViewChangeThreshold"=10 "PredictedViewChangeThresholdPaint"=10 "ContentLayerCacheExpansion"=300 "RenderingLoopMaxTime"=250 "NscSingleExpand"=0 "Error Dlg Displayed On Every Error"=no "Friendly http errors"=yes "CSS_Compat"=doctype "Expand Alt Text"=no "Display Inline Videos"=1 "Use Stylesheets"=1 "SmoothScroll"=1 "Show image placeholders"=0 "Disable Diagnostics Mode"=no "Move System Caret"=no "Enable AutoImageResize"=yes "UseThemes"=1 "UseHR"=0 "Q300829"=0 "Cleanup HTCs"=0 "XDomainRequest"=1 "DOMStorage"=1 "EnableAlternativeCodec"=yes "JScriptProfileCacheEventDelay"=5000 "HideLocalHostIP"=0 "CrossfadeMinTimeoutInMS"=30000 "CrossfadeMaxTimeoutInMS"=30000 "CrossfadeCurrentTimeoutInMS"=30000 "ScrollTimeoutInMS"=6000 "DisableFirstRunCustomize"=0 "IE10RunOnceLastShown"=0 "IE10RunOnceLastShown_TIMESTAMP"=0xF63258E97918D501 "IE10RecommendedSettingsNo"=0 "EdgeReminderURL"=http://go.microsoft.com/fwlink/?LinkId=838604 "EdgeReminderDuration"=31 "FrameTabWindow"=1 "AdminTabProcs"=1 "SessionMerging"=1 "FrameMerging"=1 "HangRecovery"=1 "DesktopTransparentCoverWindowTime"=8 "TSEnable"=1 "Isolation"=PMIL "Isolation64Bit"=0 "IsolationImmersive"=PMEM "MinIEEnabled"=1 "RefcountTracker"=0 "TabDragOnSingleProc"=0 "ForceBFCacheCandidacyPass"=0 "Fasterback"=1 "BackForwardInstrumentation"=0 "News Feed First Run Experience"=1 "Start Page Redirect Cache_TIMESTAMP"=0x3ECF708B9A09D601 "Start Page Redirect Cache AcceptLangs"=fr-FR "Use Search Asst"=no "Start Page"=https://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE01&ocid=UE01DHP "NotifyDownloadComplete"=yes "IE11DefaultsFREGPOFileOptions"=0 "IE11DefaultsFREGPOFileCheck"=1 "IE11DefaultsFREGPOCheckTimestamp"=0x1F81BE3574DAD501 "IE11DefaultsFREOfferInterval"=365 "IE11DefaultsFREOfferType"=0 "IE11DefaultsFREMaxOfferShowCount"=1 "IE11DefaultsFRECurrentOfferShowCount"=0 "NoUpdateCheck"=1 "Start Page Redirect Cache"=http://www.msn.com/fr-fr/?pc=UE01&ocid=UE01DHP [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Internet settings] "DisableCachingOfSSLPages"=0 "IE5_UA_Backup_Flag"=5.0 "PrivacyAdvanced"=1 "SecureProtocols"=2688 "CertificateRevocation"=0 "DnsCacheTimeout"=7200 "EnableNegotiate"=1 "KeepAliveTimeout"=300000 "MigrateProxy"=1 "ProxyHttp1.1"=1 "ReceiveTimeOut"=60000 "ServerInfoTimeout"=300000 "SyncMode5"=4 "WarnOnHTTPSToHTTPRedirect"=1 "User Agent"=Mozilla/4.0 (compatible; MSIE 8.0; Win32) "ZonesSecurityUpgrade"=0x050E980C9DBED501 "WarnonZoneCrossing"=0 "LockDatabase"=132296227335599740 "EnableHttp1_1"=1 "AutoConfigProxy"=wininet.dll "WarNonBadCertReceving"=1 "GlobalUserOffline"=0 "UrlEncoding"=0 "PreventIgnoreCertErrors"=0 "EnableAutodial"=0 "NoNetAutodial"=0 "EnableHTTP2"=1 "BackgroundConnections"=1 "EmailName"=IEUser@ "MimeExclusionListForCache"=multipart/mixed multipart/x-mixed-replace multipart/x-byteranges "EnableSSL3Fallback"=1 "EnablePunycode"=1 "ShowPunycode"=0 "CreateUriCacheSize"=80 "CoInternetCombineIUriCacheSize"=80 "SecurityIdIUriCacheSize"=30 "SpecialFoldersCacheSize"=8 "PrivDiscUiShown"=1 "WarnOnIntranet"=1 "UseSchannelDirectly"=0x01000000 "MaxConnectionsPerServer"=10 "MaxConnectionsPer1_0Server"=10 "ProxyEnable"=0 [HKLM\Software\Microsoft\Internet Explorer\Main] "ApplicationTileImmersiveActivation"=1 "AssociationActivationMode"=0 "AutoHide"=yes "Anchor_Visitation_Horizon"=0x01000000 "Cache_Percent_of_Disk"=0x0A000000 "Default_Search_URL"=http://go.microsoft.com/fwlink/?LinkId=54896 "Default_Secondary_Page_URL"= "Delete_Temp_Files_On_Exit"=yes "Enable_Disk_Cache"=yes "Extensions Off Page"=about:NoAdd-ons "Placeholder_Height"=0x1A000000 "Placeholder_Width"=0x1A000000 "Search Page"=http://go.microsoft.com/fwlink/?LinkId=54896 "Security Risk Page"=about:SecurityRisk "Use_Async_DNS"=yes "x86AppPath"=C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE "Default_Page_URL"=https://go.microsoft.com/fwlink/p/?LinkId=255141 "Local Page"=C:\WINDOWS\system32\blank.htm "Start Page"=https://go.microsoft.com/fwlink/p/?LinkId=255141 "News Feed Url"=https://www.msn.com/spartan/ientp?locale%3D%25s%26market%3D%25s%26enableregulatorypsm%3D%25d%26enablecpsm%3D%25d%26NTLogo%3D%25d%26IsFRE%3D%25d "News Feed Url_TIMESTAMP"=0xD41BA2E97918D501 "News Feed Url China"=https://www.msn.cn/spartan/ientp?locale%3D%25s%26market%3D%25s%26enableregulatorypsm%3D%25d%26enablecpsm%3D%25d%26NTLogo%3D%25d%26IsFRE%3D%25d "News Feed Url China_TIMESTAMP"=0xD41BA2E97918D501 "ScriptDebugger_EnableHiddenTabs"=0 "Start Page_TIMESTAMP"=0xD41BA2E97918D501 "StatusBarWeb"=1 "HideNewEdgeButton"=1 "SearchBandMigrationVersion"=0 "ForceGDIPlus"=0 "AlwaysShowMenus"=0 "ShutdownWaitForOnUnload"=0 "DNSPreresolution"=8 "SpellChecking"=1 "LangToolsBroker"={5bbd58bb-993e-4c17-8af6-3af8e908fca8} "DisablePasswordReveal"=0 "Check_Associations"=yes "LastClosedWidth"=800 "LastClosedHeight"=600 "EnableGetHostEnvironmentValue"=1 "MaxRenderLine"=4000 "Use_DlgBox_Colors"=yes "Anchor Underline"=yes "Display Inline Images"=yes "Display Inline Videos"=1 "Play_Background_Sounds"=yes "Play_Animations"=yes "SmoothScroll"=1 "XMLHTTP"=1 "Show image placeholders"=0 "Disable Script Debugger"=yes "Disable Diagnostics Mode"=no "Enable AutoImageResize"=yes "XDomainRequest"=1 "DOMStorage"=1 "EnableAlternativeCodec"=yes "HideLocalHostIP"=0 "CrossfadeMinTimeoutInMS"=30000 "CrossfadeMaxTimeoutInMS"=30000 "CrossfadeCurrentTimeoutInMS"=30000 "ScrollTimeoutInMS"=6000 "DisableFirstRunCustomize"=0 "IE10RunOnceLastShown"=0 "IE10RunOnceLastShown_TIMESTAMP"=0x207EA4E97918D501 "IE10RunOncePerInstallCompleted"=0 "IE10RecommendedSettingsNo"=0 "FrameTabWindow"=1 "AdminTabProcs"=1 "SessionMerging"=1 "FrameMerging"=1 "HangRecovery"=1 "DesktopTransparentCoverWindowTime"=8 "TSEnable"=1 "Isolation64Bit"=0 "IsolationImmersive"=PMEM "TabShutdownDelay"=60000 "TabProcGrowth"=Medium [HKLM\Software\Microsoft\Internet Explorer\AboutURLs] "blank"=res://mshtml.dll/blank.htm "DesktopItemNavigationFailure"=res://ieframe.dll/navcancl.htm "Home"=270 "InPrivate"=res://ieframe.dll/inprivate.htm "NavigationCanceled"=res://ieframe.dll/navcancl.htm "NavigationFailure"=res://ieframe.dll/navcancl.htm "NoAdd-ons"=res://ieframe.dll/noaddon.htm "NoAdd-onsInfo"=res://ieframe.dll/noaddoninfo.htm "PostNotCached"=res://ieframe.dll/repost.htm "SecurityRisk"=res://ieframe.dll/securityatrisk.htm [HKLM\Software\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix] ""=http:// [HKLM\Software\Microsoft\Windows\CurrentVersion\URL\Prefixes] "ftp"=ftp:// "home"=http:// "mosaic"=http:// "www"=http:// [HKLM\Software\Microsoft\Windows\CurrentVersion\Internet settings] "CodeBaseSearchPath"=CODEBASE "EnablePunycode"=1 "MinorVersion"=0 "WarnOnIntranet"=1 "DisableCachingOfSSLPages"=0 "UrlEncoding"=0 "ActiveXCache"=C:\WINDOWS\Downloaded Program Files "SecureProtocols"=2688 "TcpAutotuning"=0 "AutoConfigProxy"=wininet.dll "PreventIgnoreCertErrors"=0 "EnableHttp1_1"=1 "ProxyHttp1.1"=1 "EnableHTTP2"=1 "BackgroundConnections"=1 "EmailName"=IEUser@ "EnableSSL3Fallback"=1 "ShowPunycode"=0 "CreateUriCacheSize"=80 "CoInternetCombineIUriCacheSize"=80 "SecurityIdIUriCacheSize"=30 "SpecialFoldersCacheSize"=8 "SyncMode5"=4 "ProxyEnable"=0 [HKLM\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings] "CallLegacyWCMPolicies"=0 [HKLM\Software\WOW6432Node\Microsoft\Internet Explorer\Main] "ApplicationTileImmersiveActivation"=1 "AssociationActivationMode"=0 "AutoHide"=yes "Start Page"=http://go.microsoft.com/fwlink/?LinkId=69157 "Anchor_Visitation_Horizon"=0x01000000 "Cache_Percent_of_Disk"=0x0A000000 "Default_Secondary_Page_URL"= "Delete_Temp_Files_On_Exit"=yes "Enable_Disk_Cache"=yes "Extensions Off Page"=about:NoAdd-ons "Local Page"=C:\Windows\SysWOW64\blank.htm "Placeholder_Height"=0x1A000000 "Placeholder_Width"=0x1A000000 "Search Page"=http://go.microsoft.com/fwlink/?LinkId=54896 "Security Risk Page"=about:SecurityRisk "Use_Async_DNS"=yes "x86AppPath"=C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE [HKLM\Software\WOW6432Node\Microsoft\Internet Explorer\AboutURLs] "blank"=res://mshtml.dll/blank.htm "DesktopItemNavigationFailure"=res://ieframe.dll/navcancl.htm "Home"=270 "InPrivate"=res://ieframe.dll/inprivate.htm "NavigationCanceled"=res://ieframe.dll/navcancl.htm "NavigationFailure"=res://ieframe.dll/navcancl.htm "NoAdd-ons"=res://ieframe.dll/noaddon.htm "NoAdd-onsInfo"=res://ieframe.dll/noaddoninfo.htm "PostNotCached"=res://ieframe.dll/repost.htm "SecurityRisk"=res://ieframe.dll/securityatrisk.htm "Tabs"=about:newtab [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix] ""=http:// [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\URL\Prefixes] "ftp"=ftp:// "home"=http:// "mosaic"=http:// "www"=http:// [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Internet settings] "ActiveXCache"=C:\Windows\Downloaded Program Files "CodeBaseSearchPath"=CODEBASE "EnablePunycode"=1 "MinorVersion"=0 "WarnOnIntranet"=1 [HKLM\Software\WOW6432Node\Policies\Microsoft\Windows\CurrentVersion\Internet Settings] "CallLegacyWCMPolicies"=0 ---------- | Proxy ---------- | reparsepoint ---------- | Detection of offsets ---------- | Notify ---------- | Execution FileExts [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.3g2] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.3gp] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.3gp2] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.3gpp] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.amv] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.apk] "Progid"=MobogenieAPKFile [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.asf] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.avi] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bdmv] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dib] "APPLICATION"=PhotoPls.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.divx] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dv] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.evo] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.exr] "APPLICATION"=PhotoPls.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.f4v] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.flv] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.hdmov] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.hdr] "APPLICATION"=PhotoPls.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.IFO] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.j2k] "APPLICATION"=PhotoPls.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jif] "APPLICATION"=PhotoPls.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpe] "APPLICATION"=PhotoPls.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jxr] "APPLICATION"=PhotoPls.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.M1V] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m2p] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m2t] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m2ts] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.M2V] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m4v] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mkv] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mov] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.MP2V] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mp4] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.MPE] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mpeg] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mpg] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mpk] "Progid"=MobogenieMPKFile [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mpls] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mpv2] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mpv4] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mts] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.MXF] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ogm] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ogv] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ram] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rec] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rgbe] "APPLICATION"=PhotoPls.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rm] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rmvb] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.snapdoc] "ProgID"=SNAP.DOC [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tif] "APPLICATION"=PhotoPls.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tiff] "APPLICATION"=PhotoPls.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tp] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tps] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.trp] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.TS] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vob] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wdp] "APPLICATION"=PhotoPls.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.webm] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wmv] "Application"=wmplayer.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wpp] "Progid"=NCH.WavePad.wpp [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\ImageViewer.exe.bmp] "APPLICATION"=PhotoPls.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\ImageViewer.exe.gif] "APPLICATION"=PhotoPls.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\ImageViewer.exe.jpeg] "APPLICATION"=PhotoPls.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\ImageViewer.exe.jpg] "APPLICATION"=PhotoPls.exe [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\ImageViewer.exe.png] "APPLICATION"=PhotoPls.exe ---------- | SIOI | SEH | URLSH [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D} -- C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll [08/02/2020 20:52:26] [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ EaseUSEverySyncedOverlay] - {52103F52-9856-43F7-B5C4-A026FD84288C} -- [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ EaseUSEverySyncFailedOverlay] - {A6D755FC-42D6-46BF-8A5D-1F810C3FCEA6} -- [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ EaseUSEverySyncingOverlay] - {0F45C9C8-E236-4CEC-A858-BFEB47D8CD3C} -- [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ GoogleDriveBlacklisted] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} -- C:\Program Files\Google\Drive\googledrivesync64.dll [22/12/2019 20:18:42] [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ GoogleDriveSynced] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} -- C:\Program Files\Google\Drive\googledrivesync64.dll [22/12/2019 20:18:42] [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ GoogleDriveSyncing] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} -- C:\Program Files\Google\Drive\googledrivesync64.dll [22/12/2019 20:18:42] [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ !SugarSyncPending] - {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} -- C:\Program Files (x86)\SugarSync\x64\SugarSyncShellExt_x64.dll [23/10/2019 18:41:08] [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ !SugarSyncShared] - {1574C9EF-7D58-488F-B358-8B78C1538F51} -- C:\Program Files (x86)\SugarSync\x64\SugarSyncShellExt_x64.dll [23/10/2019 18:41:08] [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ !SugarSyncSharedSyncing] - {F7395C2E-A5D8-4a32-9536-5C6A9F1DC450} -- C:\Program Files (x86)\SugarSync\x64\SugarSyncShellExt_x64.dll [23/10/2019 18:41:08] [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ !SugarSyncSynced] - {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} -- C:\Program Files (x86)\SugarSync\x64\SugarSyncShellExt_x64.dll [23/10/2019 18:41:08] [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\.iBoysoftOverlayIcon] - {5369E383-4C28-45C9-8F34-8ED046CF2F8E} -- [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avg] - {472083B0-C522-11CF-8763-00608CC02F24} -- [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D} -- C:\Windows\System32\EhStorShell.dll [12/12/2019 09:26:09] [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ShareOverlay] - {594D4122-1F87-41E2-96C7-825FB4796516} -- [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524} -- [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282} -- [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30} -- [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A} -- [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} -- [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6] - {9AA2F32D-362A-42D9-9328-24A483E2CCC3} -- [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7] - {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} -- [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ EaseUSEverySyncedOverlay] - {52103F52-9856-43F7-B5C4-A026FD84288C} -- [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ EaseUSEverySyncFailedOverlay] - {A6D755FC-42D6-46BF-8A5D-1F810C3FCEA6} -- [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ EaseUSEverySyncingOverlay] - {0F45C9C8-E236-4CEC-A858-BFEB47D8CD3C} -- [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ShareOverlay] - {594D4122-1F87-41E2-96C7-825FB4796516} -- [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks] "{CFBFAE00-17A6-11D0-99CB-00C04FD64497}"= ---------- | Toolbar [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Internet Explorer\Toolbar] "Locked"=1 [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser] "ITBar7Layout"=0x13000000000000000000000030000000100001001F00000001000000000700005E010000060000000101000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000B1C218236549D4119B18009027A5CD4F0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000 "{2318C2B1-4965-11D4-9B18-009027A5CD4F}"=0xB1C218236549D4119B18009027A5CD4F "ITBar7Layout64"=0x13000000000000000000000004000000100001000000000001000000000000005E010000060000000101000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000B1C218236549D4119B18009027A5CD4F0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000 "ITBar7Height"=0 [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "Version"=5 "UpgradeTime"=0xFA929F162DD2D501 "DefaultPackCorrection"=1 "ShowSearchSuggestions"=1 "KnownProvidersUpgradeTime"=0xFA929F162DD2D501 "DownloadRetries"=1 "DefaultScope"={3CB12E97-BDDF-4488-8C61-217335DD319F} ---------- | Extensions [HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{56753E59-AF1D-4FBA-9E15-31557124ADA2}] : (Classic IE Settings) - [] [HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{A95fe080-8f5d-11d2-a20b-00aa003c157a}] : (@C:\Program Files (x86)\Evernote\Evernote\OLIEResource.dll,-101) - [] [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Extensions\{56753E59-AF1D-4FBA-9E15-31557124ADA2}] : (Classic IE Settings) - [] [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Extensions\{9917296A-97CB-4836-B04E-F85DC27DDC34}] : () - [] ---------- | SearchScopes [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] - (Bing) - https://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02 : [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{3CB12E97-BDDF-4488-8C61-217335DD319F}] - (Google) - https://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?} : [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}] - (Google) - http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7 : [HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] - (@ieframe.dll,-12512) - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC : [HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}] - (Google) - http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7 : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] - (@ieframe.dll,-12512) - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\SearchScopes\{3CB12E97-BDDF-4488-8C61-217335DD319F}] - (Google) - https://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?} : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}] - (Google) - http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7 : ---------- | ElevationPolicy [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{15B851AF-A4B9-43EF-97D3-28E1B4A5DB9B}] - (C:\Program Files (x86)\Internet Download Manager) - idmBroker.exe : [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1902485B-CE75-42C1-BA2D-57E660793D9A}] - (C:\Program Files (x86)\Internet Download Manager) - IEMonitor.exe : [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5B236E3E-80B2-4322-B6A2-529D751B7FB1}] - (C:\Users\jean-\AppData\Roaming\Dashlane) - Dashlane.exe : [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E0DACC63-037F-46EE-AC02-E4C7B0FBFEB4}] - (C:\Program Files (x86)\Internet Download Manager) - IDMan.exe : [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F05E0524-ED06-43A7-BB08-04FEF67C7D11}] - (C:\Program Files (x86)\Dashlane) - Dashlane_launcher.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{003B91A6-61E3-4591-891D-01E94C8CB11E}] - (C:\Program Files\Microsoft Silverlight\5.1.50918.0\) - Silverlight.Configuration.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{00FA007C-D99F-407F-B00B-5B3B0001D8AB}] - () - : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{02E6771D-8375-42B9-9F83-B4730F697900}] - (C:\Program Files\Classic Shell) - ClassicShellUpdate.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{054aae20-4bea-4347-8a35-64a533254a9d}] - (C:\Program Files\Common Files\Microsoft Shared\Ink) - tabtip.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{07d873dc-b9b9-44f5-af0b-fb59fa54fb7a}] - (C:\Windows\System32) - wpcer.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1138506a-b949-46a7-b6c0-ee26499fdeaf}] - (C:\Windows\System32) - wuapp.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{186e0934-aee9-11da-961b-0014223d2a70}] - (C:\Windows\microsoft.net\framework64\v2.0.50727) - dfsvc.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{186e0935-aee9-11da-961b-0014223d2a70}] - (C:\Windows\microsoft.net\framework64\v2.0.50727) - dfsvc.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1A972DAF-A7EC-4ce3-B6C9-7B523CD6685F}] - (C:\Program Files (x86)\Google\Google Toolbar) - GoogleToolbarUser_32.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1ec76a37-1762-46ff-9b14-765b3e6793be}] - (C:\Program Files\Microsoft Silverlight\5.1.50918.0\) - agcp.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1F1E561D-AF17-4510-B996-351BBA0862A7}] - () - : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2391d819-9d17-44ec-9ac1-f6aa07549469}] - (%systemroot%\system32) - wermgr.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{254363DC-CC0E-47D3-B9F2-C4531366D4D1}] - (C:\Program Files\FreeDownloadManager.ORG\Free Download Manager) - wincomserver.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{26fe7361-bd5a-4dcb-b309-c6f42dde661c}] - (C:\Program Files\Internet Explorer) - ieinstal.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2dec4925-1312-4d7f-a6f5-89272d848dcf}] - (%WINDIR%\system32\IME\IMEJP\) - IMJPUEX.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3214A3DF-F8D9-4A27-BF4D-FBBDE52E2E68}] - (C:\Program Files\FreeDownloadManager.ORG\Free Download Manager) - fdm.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{357FBE87-6C8E-490D-A059-4746C864AE6F}] - (C:\Program Files\Common Files\Microsoft Shared\Ink) - InputPersonalization.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{38f2c092-34df-4c12-9d9e-c9679bf0ab31}] - (C:\Windows\SysWOW64) - presentationhost.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3fac2008-c21a-49a0-ba16-8bde1120e3f5}] - (C:\WINDOWS\system32\spool\DRIVERS\x64\3) - E_IPRELPE.EXE : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{44D1B085-E495-4b5f-9EE6-34795C46E7E7}] - (C:\Program Files\Java\jre1.8.0_241\bin) - jp2launcher.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{49E561B1-1091-4E65-98A0-AFCA4996CD1D}] - (C:\Windows\System32) - RuntimeBroker.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4D256DB0-6C34-4EC1-9704-02182D6503A6}] - () - : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4FA8381C-2705-4DC2-ADF3-347D4D619350}] - (%WINDIR%\system32\IME\shared) - imecfmui.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{56753E59-AF1D-4FBA-9E15-31557124ADA2}] - (C:\Program Files\Classic Shell) - ClassicIE_32.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5852F5ED-8BF4-11D4-A245-0080C6F74284}] - (C:\Program Files\Java\jre1.8.0_241\bin) - javaws.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{61bd7005-d55e-4693-a191-0caa33601426}] - () - : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6bf52a52-394a-11d3-b153-00c04f79faa6}] - (%ProgramFiles%\Windows Media Player) - wmplayer.exe : %SystemRoot%\system32\wmp.dll [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6bf52a52-394a-11d3-b153-00c04f79faa6}-32] - (%ProgramFiles(x86)%\Windows Media Player) - wmplayer.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6fc11544-76fb-484a-8493-509d2da46d97}] - (C:\WINDOWS\system32\spool\DRIVERS\x64\3) - E_IARNLPE.EXE : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{70f641fd-9ffc-4d5b-a4dc-962af4ed7999}] - (C:\Program Files\Internet Explorer) - iedw.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{734A9EB3-A34D-4fb7-9DB4-549C28F7EF97}] - () - : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7481187c-dc80-4938-b27a-ac7e9f789dd1}] - (C:\Windows\system32\spool\DRIVERS\x64\3) - E_IPRELPE.EXE : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{78c7b664-c9bf-4ce9-8b3a-b05d442e451e}] - (C:\Windows\System32\) - CertEnrollCtrl.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7aaae723-5fb5-4b2d-9327-75519f336825}] - () - : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7eb01fb2-f185-445a-94e4-ec4e1ba2202c}] - (C:\Windows\System32) - verclsid.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7f7bd411-f034-4ac0-9424-224bd7ab4e4e}] - (%WINDIR%\system32\IME\SHARED\) - IMEPADSV.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{80B84A0A-EDA4-47fd-8BE1-6B49F4197EE5}] - (C:\Program Files (x86)\Google\GoogleToolbarNotifier) - GoogleToolbarNotifier.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{812954F9-FAA2-4aee-A9E7-3C4FDE2166A6}] - () - : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{85fc331e-bb64-4c53-ba25-3d8a956c02fd}] - (C:\Windows\System32) - ctfmon.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{877467C0-F9E4-4561-84F0-65AA7539833C}] - (C:\Windows\System32) - CredentialUIBroker.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8cec58ae-07a1-11d9-b15e-000d56bfe6ee}] - (C:\Windows) - helppane.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9167671E-7E42-49E1-97FC-4F4712EB4CEE}] - (C:\Program Files (x86)\Java\jre1.8.0_221\bin) - jp2launcher.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{989F13EE-B25B-4FAB-9AED-C4336C8CCF0C}] - () - : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{98E3C2D3-E92F-469F-87EB-76054F640517}] - (C:\Windows\System32\IME\SHARED\) - imesearch.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a1ad1bbb-3b33-4260-a74c-5fd8bc1479fc}] - (C:\Windows) - splwow64.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a4fbcbc6-4be5-4c3d-8ab5-8b873357a23e}] - () - : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a5a2d52a-4944-47c4-a3e0-8bd92e14d953}] - (C:\Windows\SysWOW64\xpsviewer) - xpsviewer.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{afe26134-8a16-4149-b798-242574f3f4a9}] - (%SystemRoot%\system32\IME\IMETC\) - IMTCPROP.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{aff735eb-cdf9-4894-aa69-3e3131128618}] - (C:\Windows\System32) - cmd.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B43A0C1E-B63F-4691-B68F-CD807A45DA01}] - (%systemroot%\system32) - TSWbPrxy.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C0393554-9B48-458A-B91B-3F684D003B2F}] - (C:\Program Files\Classic Shell) - ClassicIE_64.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C8999AEC-AECE-4E27-9BCB-5358B13F9FF9}] - (C:\Windows\Microsoft.NET\Framework64\v4.0.30319\) - dfsvc.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C8FE2181-CAE7-49EE-9B04-DB7EB4DA544A}] - (C:\Program Files\Java\jre1.8.0_241\bin) - ssvagent.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{dc6bf185-7ae4-444e-8c35-e447b0d2bd1e}] - (C:\Windows\System32) - notepad.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ea109b0c-6a97-45f0-9eb4-5907dd99b995}] - (%WINDIR%\system32\IME\SHARED\) - imedictupdateui.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{eb9906ed-9926-4092-94fc-dc57ddba4f7a}] - (C:\Windows\system32\spool\DRIVERS\x64\3) - E_IARNLPE.EXE : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EE0B94B9-335F-4d2c-8B43-DACCD1EA6FF1}] - (C:\Program Files (x86)\Google\Google Toolbar) - GoogleToolbarUser_64.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{eee261cc-4b3e-46e7-affb-61f297155bf2}] - (C:\Windows\System32) - presentationhost.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f5d04f46-b4b2-4202-a191-f780421b4200}] - (%WINDIR%\system32\IME\IMEJP\) - imjpdct.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{fa6f0991-f729-4899-b095-d3fbca253cf6}] - () - : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FAB3E735-69C7-453B-A446-B6823C6DF1C9}] - (C:\Windows\System32\Macromed\Flash) - FlashUtil_ActiveX.exe : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FAF199D2-BFA7-4394-A4DE-044A08E59B32}] - (C:\Windows\System32\Macromed\Flash) - FlashUtil_ActiveX.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{003B91A6-61E3-4591-891D-01E94C8CB11E}] - (C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\) - Silverlight.Configuration.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{00FA007C-D99F-407F-B00B-5B3B0001D8AB}] - () - : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{02E6771D-8375-42B9-9F83-B4730F697900}] - (C:\Program Files\Classic Shell) - ClassicShellUpdate.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{054aae20-4bea-4347-8a35-64a533254a9d}] - (C:\Program Files (x86)\Common Files\Microsoft Shared\Ink) - tabtip.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{07d873dc-b9b9-44f5-af0b-fb59fa54fb7a}] - (C:\Windows\SysWOW64) - wpcer.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{08E8D305-8D6D-49fe-8603-03A926E46AE0}] - (C:\Program Files (x86)\Common Files\Adobe\Updater6) - Adobe_Updater.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{08f24d68-9087-4b24-81ad-7b34af3e3ed5}] - (C:\Program Files (x86)\adobe\acrobat 6.0\Acrobat Elements) - Acrobat Elements.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1138506a-b949-46a7-b6c0-ee26499fdeaf}] - (C:\Windows\SysWOW64) - wuapp.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{15B3FB63-66F4-4EFC-B717-BB283B85E79B}] - (C:\Program Files (x86)\Adobe\Reader 9.0\Reader\) - AcroBroker.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{186e0934-aee9-11da-961b-0014223d2a70}] - (C:\Windows\microsoft.net\framework\v2.0.50727) - dfsvc.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1A972DAF-A7EC-4ce3-B6C9-7B523CD6685F}] - (C:\Program Files (x86)\Google\Google Toolbar) - GoogleToolbarUser_32.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1ec76a37-1762-46ff-9b14-765b3e6793be}] - (C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\) - agcp.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1F1E561D-AF17-4510-B996-351BBA0862A7}] - () - : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{254363DC-CC0E-47D3-B9F2-C4531366D4D1}] - (C:\Program Files\FreeDownloadManager.ORG\Free Download Manager) - wincomserver.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{26fe7361-bd5a-4dcb-b309-c6f42dde661c}] - (C:\Program Files (x86)\Internet Explorer) - ieinstal.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2dec4925-1312-4d7f-a6f5-89272d848dcf}] - (%WINDIR%\system32\IME\IMEJP\) - IMJPUEX.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3214A3DF-F8D9-4A27-BF4D-FBBDE52E2E68}] - (C:\Program Files\FreeDownloadManager.ORG\Free Download Manager) - fdm.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{357FBE87-6C8E-490D-A059-4746C864AE6F}] - (C:\Program Files (x86)\Common Files\Microsoft Shared\Ink) - InputPersonalization.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{358E6F10-DE8A-4602-8424-179CA217F8EE}] - (C:\Program Files (x86)\Adobe\Reader 9.0\Reader) - AcroRd32Info.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{44D1B085-E495-4b5f-9EE6-34795C46E7E7}] - (C:\Program Files (x86)\Java\jre1.8.0_221\bin) - jp2launcher.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{49E561B1-1091-4E65-98A0-AFCA4996CD1D}] - (C:\Windows\SysWOW64) - RuntimeBroker.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4becf16c-74f0-429b-8d3e-4fba507ac661}] - (C:\Program Files (x86)\adobe\acrobat 7.0\reader) - acrord32.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4D256DB0-6C34-4EC1-9704-02182D6503A6}] - () - : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4FA8381C-2705-4DC2-ADF3-347D4D619350}] - (%WINDIR%\system32\IME\shared) - imecfmui.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{56753E59-AF1D-4FBA-9E15-31557124ADA2}] - (C:\Program Files\Classic Shell) - ClassicIE_32.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5852F5ED-8BF4-11D4-A245-0080C6F74284}] - (C:\Program Files (x86)\Java\jre1.8.0_221\bin) - javaws.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{59BB9EA9-B5C6-45C7-A557-3DD56E16F3E3}] - () - : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{61bd7005-d55e-4693-a191-0caa33601426}] - () - : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6bf52a52-394a-11d3-b153-00c04f79faa6}] - (%ProgramFiles%\Windows Media Player) - wmplayer.exe : %SystemRoot%\system32\wmp.dll [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6bf52a52-394a-11d3-b153-00c04f79faa6}-32] - (%ProgramFiles(x86)%\Windows Media Player) - wmplayer.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{70f641fd-9ffc-4d5b-a4dc-962af4ed7999}] - (C:\Program Files (x86)\Internet Explorer) - iedw.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{734A9EB3-A34D-4fb7-9DB4-549C28F7EF97}] - () - : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{78c7b664-c9bf-4ce9-8b3a-b05d442e451e}] - (C:\Windows\SysWOW64\) - CertEnrollCtrl.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7aaae723-5fb5-4b2d-9327-75519f336825}] - () - : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7eb01fb2-f185-445a-94e4-ec4e1ba2202c}] - (C:\Windows\SysWOW64) - verclsid.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7f7bd411-f034-4ac0-9424-224bd7ab4e4e}] - (%WINDIR%\sysnative\IME\SHARED\) - IMEPADSV.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{80B84A0A-EDA4-47fd-8BE1-6B49F4197EE5}] - (C:\Program Files (x86)\Google\GoogleToolbarNotifier) - GoogleToolbarNotifier.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{812954F9-FAA2-4aee-A9E7-3C4FDE2166A6}] - () - : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{85fc331e-bb64-4c53-ba25-3d8a956c02fd}] - (C:\Windows\SysWOW64) - ctfmon.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{877467C0-F9E4-4561-84F0-65AA7539833C}] - (C:\Windows\SysWOW64) - CredentialUIBroker.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8cec58ae-07a1-11d9-b15e-000d56bfe6ee}] - (C:\Windows) - helppane.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8E1F80F4-953F-41E7-8460-E64AE5BE4ED3}] - (C:\Program Files (x86)\Adobe\Reader 9.0\Reader) - AdobeCollabSync.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{95a4104c-1c49-4c2a-9830-1be0f47e926c}] - (C:\Program Files (x86)\adobe\acrobat 7.0\Acrobat) - acrobat.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{989F13EE-B25B-4FAB-9AED-C4336C8CCF0C}] - () - : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{98E3C2D3-E92F-469F-87EB-76054F640517}] - (C:\Windows\SysWOW64\IME\SHARED\) - imesearch.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C6A861C-B233-4994-AFB1-C158EE4FC578}] - (C:\Program Files (x86)\Adobe\Reader 9.0\Reader) - AcroRd32.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9da1d2cb-796d-4bec-bbaa-0aa9ccd80e15}] - (C:\Program Files (x86)\adobe\acrobat 7.0\Acrobat Elements) - Acrobat Elements.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a1ad1bbb-3b33-4260-a74c-5fd8bc1479fc}] - (C:\Windows) - splwow64.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a4fbcbc6-4be5-4c3d-8ab5-8b873357a23e}] - () - : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a5a2d52a-4944-47c4-a3e0-8bd92e14d953}] - (C:\Windows\SysWOW64\xpsviewer) - xpsviewer.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AAD4AE2E-D834-46D4-8B09-490FAC9C722B}] - () - : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{afe26134-8a16-4149-b798-242574f3f4a9}] - (%SystemRoot%\system32\IME\IMETC\) - IMTCPROP.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{aff735eb-cdf9-4894-aa69-3e3131128618}] - (C:\Windows\SysWOW64) - cmd.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B43A0C1E-B63F-4691-B68F-CD807A45DA01}] - (%systemroot%\system32) - TSWbPrxy.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C0393554-9B48-458A-B91B-3F684D003B2F}] - (C:\Program Files\Classic Shell) - ClassicIE_64.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C8999AEC-AECE-4E27-9BCB-5358B13F9FF9}] - (C:\Windows\Microsoft.NET\Framework\v4.0.30319\) - dfsvc.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C8999AED-AECE-4E27-9BCB-5358B13F9FF9}] - (C:\Windows\Microsoft.NET\Framework64\v4.0.30319\) - dfsvc.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C8FE2181-CAE7-49EE-9B04-DB7EB4DA544A}] - (C:\Program Files (x86)\Java\jre1.8.0_221\bin) - ssvagent.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D133B285-8A43-4EC7-93BE-9B909C2370F5}] - (C:\Program Files (x86)\Windows Live\Messenger\) - msnmsgr.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d8a5d001-3352-40db-9d1c-ed46683193b5}] - (C:\Program Files (x86)\Windows Live\Writer\) - WindowsLiveWriter.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{dc6bf185-7ae4-444e-8c35-e447b0d2bd1e}] - (C:\Windows\SysWOW64) - notepad.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E0DACC63-037F-46EE-AC02-E4C7B0FBFEB4}] - (C:\Program Files (x86)\Internet Download Manager) - IDMan.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{e5f90a07-7db7-4dcb-bd6d-d3fecd376ca3}] - (C:\Program Files (x86)\adobe\acrobat 6.0\reader) - acrord32.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ea109b0c-6a97-45f0-9eb4-5907dd99b995}] - (%WINDIR%\sysnative\IME\SHARED\) - imedictupdateui.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EE0B94B9-335F-4d2c-8B43-DACCD1EA6FF1}] - (C:\Program Files (x86)\Google\Google Toolbar) - GoogleToolbarUser_64.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{eee261cc-4b3e-46e7-affb-61f297155bf2}] - (C:\Windows\SysWOW64) - presentationhost.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f5d04f46-b4b2-4202-a191-f780421b4200}] - (%WINDIR%\system32\IME\IMEJP\) - imjpdct.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{fa6f0991-f729-4899-b095-d3fbca253cf6}] - () - : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FAB3E735-69C7-453B-A446-B6823C6DF1C9}] - (C:\Windows\SysWOW64\Macromed\Flash) - FlashUtil_ActiveX.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FAF199D2-BFA7-4394-A4DE-044A08E59B32}] - (C:\Windows\SysWOW64\Macromed\Flash) - FlashUtil_ActiveX.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{fb9e068b-c612-4fa8-bdb9-d728a716a420}] - (C:\Program Files (x86)\adobe\acrobat 6.0\Acrobat) - acrobat.exe : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FFCB3198-32F3-4E8B-9539-4324694ED664}] - (C:\Program Files\Adblock Plus for IE) - AdblockPlusEngine.exe : ---------- | Ext\Settings [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}] : : C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{2781761E-28E0-4109-99FE-B9D127C57AFE}] : : "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\X86\MpOav.dll" [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{333C7BC4-460F-11D0-BC04-0080C7055A83}] : : C:\Windows\SysWOW64\tdc.ocx [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{64AB4BB7-111E-11D1-8F79-00C04FC2FBE1}] : : C:\Windows\SysWOW64\ieframe.dll [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{6BF52A52-394A-11D3-B153-00C04F79FAA6}] : : %SystemRoot%\system32\wmp.dll [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] : : [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{9030D464-4C02-4ABF-8ECC-5164760863C6}] : : C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{CA8A9780-280D-11CF-A24D-444553540000}] : : C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroPDF.dll [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{DBC80044-A445-435B-BC74-9C25C1C588A9}] : : [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{DFEAF541-F3E1-4C24-ACAC-99C30715084A}] : : C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll ---------- | Ext\Stats [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}] : : C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{25336920-03F9-11CF-8FD0-00AA00686F13}] : : C:\Windows\SysWOW64\mshtml.dll [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{2933BF90-7B36-11D2-B20E-00C04F983E60}] : : %SystemRoot%\System32\msxml3.dll [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{333C7BC4-460F-11D0-BC04-0080C7055A83}] : : C:\Windows\SysWOW64\tdc.ocx [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{64AB4BB7-111E-11D1-8F79-00C04FC2FBE1}] : : C:\Windows\SysWOW64\ieframe.dll [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6BF52A52-394A-11D3-B153-00C04F79FAA6}] : : %SystemRoot%\system32\wmp.dll [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{7D11E719-FF90-479C-B0D7-96EB43EE55D7}] : : C:\Program Files (x86)\Internet Download Manager\downlWithIDM.dll [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{8856F961-340A-11D0-A96B-00C04FD705A2}] : : C:\Windows\SysWOW64\ieframe.dll [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{88D96A05-F192-11D4-A65F-0040963251E5}] : : C:\Windows\SysWOW64\msxml6.dll [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{9030D464-4C02-4ABF-8ECC-5164760863C6}] : : C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{9BE31822-FDAD-461B-AD51-BE1D1C159921}] : : C:\Program Files (x86)\VideoLAN\VLC\axvlc.dll [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{B37EFE6B-7081-4D51-BFAE-175C292668BA}] : : C:\WINDOWS\SysWOW64\cbfsconnectMntNtf2017.dll [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{CA8A9780-280D-11CF-A24D-444553540000}] : : C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroPDF.dll [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{DFEAF541-F3E1-4C24-ACAC-99C30715084A}] : : C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{ED8C108E-4349-11D2-91A4-00C04F7969E8}] : : %SystemRoot%\System32\msxml3.dll [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{EE09B103-97E0-11CF-978F-00A02463E06F}] : : C:\Windows\SysWOW64\scrrun.dll [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{F6D90F11-9C73-11D3-B32E-00C04F990BB4}] : : %SystemRoot%\System32\msxml3.dll [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{F6D90F16-9C73-11D3-B32E-00C04F990BB4}] : : %SystemRoot%\System32\msxml3.dll ---------- | Browser Helper Objects [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] -> () : [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7C260B4B-F7A0-40B5-B403-BEFCDC6A4C3B}] -> () : [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B37EFE6B-7081-4D51-BFAE-175C292668BA}'] -> () : [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] -> () : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}] -> (Adobe PDF Link Helper) : C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [02/09/2016 16:12:01] [HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] -> (Programme d'aide de l'Assistant de connexion Windows Live) : C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [02/09/2016 16:23:23] ---------- | Chrome [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Google\Chrome\Extensions\jgfblpnggnjhmdbidfmoidoglbcbnfoi] [HKLM\Software\Google\Chrome\Extensions\jgfblpnggnjhmdbidfmoidoglbcbnfoi] [HKLM\Software\Google\Chrome\Extensions\ngpampappnmepgilojfohadhhmbhlaek] [HKLM\Software\WOW6432Node\Google\Chrome\Extensions\jgfblpnggnjhmdbidfmoidoglbcbnfoi] [HKLM\Software\WOW6432Node\Google\Chrome\Extensions\ngpampappnmepgilojfohadhhmbhlaek] ---------- | Opera ---------- | Firefox [HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=3.0.8] - (VLC Multimedia Plugin) : C:\Program Files\VideoLAN\VLC\npvlc.dll ---------- | DNS [HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters] "DhcpNameServer"=192.168.1.1 [HKLM\SYSTEM\ControlSet001\services\Tcpip\Parameters\Interfaces\{a778058e-ddb3-4e56-a8fe-5582c6425c94}] "DhcpNameServer"=192.168.1.1 [HKLM\SYSTEM\ControlSet001\services\Tcpip\Parameters\Interfaces\{df5ccee6-64e1-4b0a-8965-e5bdf79637ac}] "DhcpNameServer"=192.168.1.1 [HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{a778058e-ddb3-4e56-a8fe-5582c6425c94}] "DhcpNameServer"=192.168.1.1 [HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{df5ccee6-64e1-4b0a-8965-e5bdf79637ac}] "DhcpNameServer"=192.168.1.1 ---------- | ActiveX [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}] - () - -> [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}] - () - -> [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4340}] - () - -> [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383}] - () - -> [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}] - () - -> [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96}] - () - -> [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Active Setup\Installed Components\{9459C573-B17A-45AE-9F64-1857B5D58CEE}] - () - -> [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}] - (Microsoft Windows Media Player) - @%SystemRoot%\system32\wmploc.dll,-128 -> %SystemRoot%\system32\unregmp2.exe /ShowWMP [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{052860C8-3E53-3D0B-9332-48A8B4971352}] - (.NET Framework) - -> [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{22d6f312-b0f6-11d0-94ab-0080c74c7e95}] - (Microsoft Windows Media Player 12.0) - -> [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}] - (Themes Setup) - @%SystemRoot%\system32\themeui.dll,-2682 -> /UserInstall [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{3af36230-a269-11d1-b5bf-0000f8051515}] - (Offline Browsing Pack) - -> [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA855-CC51-11CF-AAFA-00AA00B6015F}] - (DirectDrawEx) - -> [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{45ea75a0-a269-11d1-b5bf-0000f8051515}] - (Internet Explorer Help) - -> [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{4f645220-306d-11d2-995d-00c04f98bbc9}] - (Microsoft Windows Script 5.6) - -> [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{5fd399c0-a70a-11d1-9948-00c04f98bbc9}] - (Internet Explorer Setup Tools) - -> [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{630b1da0-b465-11d1-9948-00c04f98bbc9}] - (Browsing Enhancements) - -> %SystemRoot%\system32\msieftp.dll [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}] - (Microsoft Windows Media Player) - @%SystemRoot%\system32\wmploc.dll,-128 -> %SystemRoot%\system32\unregmp2.exe /FirstLogon [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{6fab99d0-bab8-11d1-994a-00c04f98bbc9}] - (MSN Site Access) - -> [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{7790769C-0471-11d2-AF11-00C04FA35D02}] - (Address Book 7) - -> [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4340}] - (Windows Desktop Update) - @%SystemRoot%\system32\shell32.dll,-32969 -> U [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383}] - (Web Platform Customizations) - @C:\Windows\System32\ie4uinit.exe,-2000 -> C:\Windows\System32\ie4uinit.exe -UserConfig [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}] - () - -> C:\Windows\System32\Rundll32.exe C:\Windows\System32\mscories.dll,Install [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96}] - (Google Chrome) - -> "C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.149\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{9381D8F2-0288-11D0-9501-00AA00B911A5}] - (Dynamic HTML Data Binding) - -> [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{9459C573-B17A-45AE-9F64-1857B5D58CEE}] - (Microsoft Edge) - -> "C:\Program Files (x86)\Microsoft\Edge\Application\80.0.361.109\Installer\setup.exe" --configure-user-settings --verbose-logging --system-level [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{C282E96A-0AFE-34DC-B18F-027285080576}] - (.NET Framework) - -> [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{C9E9A340-D1F1-11D0-821E-444553540600}] - (Internet Explorer Core Fonts) - -> [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{de5aed00-a4bf-11d1-9948-00c04f98bbc9}] - (HTML Help) - -> [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{E92B03AB-B707-11d2-9CBD-0000F87A369E}] - (Active Directory Service Interface) - -> [HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{FEBEF00C-046D-438D-8A88-BF94A6C9E703}] - (.NET Framework) - -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}] - (Microsoft Windows Media Player) - @%SystemRoot%\system32\wmploc.dll,-128 -> %SystemRoot%\system32\unregmp2.exe /ShowWMP [HKLM\SOFTWARE\WOW6432Node\Microsoft\Active Setup\Installed Components\{22d6f312-b0f6-11d0-94ab-0080c74c7e95}] - (Microsoft Windows Media Player 12.0) - -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\Active Setup\Installed Components\{3af36230-a269-11d1-b5bf-0000f8051515}] - (Offline Browsing Pack) - -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\Active Setup\Installed Components\{44BBA855-CC51-11CF-AAFA-00AA00B6015F}] - (DirectDrawEx) - -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\Active Setup\Installed Components\{45ea75a0-a269-11d1-b5bf-0000f8051515}] - (Internet Explorer Help) - -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\Active Setup\Installed Components\{4f645220-306d-11d2-995d-00c04f98bbc9}] - (Microsoft Windows Script 5.6) - -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\Active Setup\Installed Components\{5fd399c0-a70a-11d1-9948-00c04f98bbc9}] - (Internet Explorer Setup Tools) - -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\Active Setup\Installed Components\{630b1da0-b465-11d1-9948-00c04f98bbc9}] - (Browsing Enhancements) - -> %SystemRoot%\system32\msieftp.dll [HKLM\SOFTWARE\WOW6432Node\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}] - (Microsoft Windows Media Player) - @%SystemRoot%\system32\wmploc.dll,-128 -> %SystemRoot%\system32\unregmp2.exe /FirstLogon [HKLM\SOFTWARE\WOW6432Node\Microsoft\Active Setup\Installed Components\{6fab99d0-bab8-11d1-994a-00c04f98bbc9}] - (MSN Site Access) - -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\Active Setup\Installed Components\{7790769C-0471-11d2-AF11-00C04FA35D02}] - (Address Book 7) - -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\Active Setup\Installed Components\{7C028AF8-F614-47B3-82DA-BA94E41B1089}] - (.NET Framework) - -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383}] - () - -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}] - () - -> C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install [HKLM\SOFTWARE\WOW6432Node\Microsoft\Active Setup\Installed Components\{8E0A742C-D031-348A-954F-AFE3CB92EFB7}] - (.NET Framework) - -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\Active Setup\Installed Components\{9381D8F2-0288-11D0-9501-00AA00B911A5}] - (Dynamic HTML Data Binding) - -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\Active Setup\Installed Components\{A28D708D-8572-3438-A45E-BFF9C661A4B3}] - (.NET Framework) - -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\Active Setup\Installed Components\{C6BAF60B-6E91-453F-BFF9-D3789CFEFCDD}] - (.NET Framework) - -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\Active Setup\Installed Components\{C9E9A340-D1F1-11D0-821E-444553540600}] - (Internet Explorer Core Fonts) - -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\Active Setup\Installed Components\{de5aed00-a4bf-11d1-9948-00c04f98bbc9}] - (HTML Help) - -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\Active Setup\Installed Components\{E92B03AB-B707-11d2-9CBD-0000F87A369E}] - (Active Directory Service Interface) - -> ---------- | Applications [HKLM\SOFTWARE\Classes\Applications\Code.exe] : "C:\Program Files\Microsoft VS Code\Code.exe" "%1" [HKLM\SOFTWARE\Classes\Applications\firefox.exe] : "C:\Program Files\Mozilla Firefox\firefox.exe" -osint -url "%1" [HKLM\SOFTWARE\Classes\Applications\iexplore.exe] : "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 [HKLM\SOFTWARE\Classes\Applications\notepad.exe] : %SystemRoot%\system32\NOTEPAD.EXE %1 [HKLM\SOFTWARE\Classes\Applications\provtool.exe] : "%SystemRoot%\System32\provtool.exe" "%1" /source ShellOpen [HKLM\SOFTWARE\Classes\Applications\vlc.exe] : "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file "%1" [HKLM\SOFTWARE\Classes\Applications\wmplayer.exe] : "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L" [HKLM\SOFTWARE\Classes\Applications\wordpad.exe] : "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" [HKLM\SOFTWARE\WOW6432Node\Classes\Applications\Code.exe] : "C:\Program Files\Microsoft VS Code\Code.exe" "%1" [HKLM\SOFTWARE\WOW6432Node\Classes\Applications\firefox.exe] : "C:\Program Files\Mozilla Firefox\firefox.exe" -osint -url "%1" [HKLM\SOFTWARE\WOW6432Node\Classes\Applications\iexplore.exe] : "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 [HKLM\SOFTWARE\WOW6432Node\Classes\Applications\notepad.exe] : %SystemRoot%\system32\NOTEPAD.EXE %1 [HKLM\SOFTWARE\WOW6432Node\Classes\Applications\provtool.exe] : "%SystemRoot%\System32\provtool.exe" "%1" /source ShellOpen [HKLM\SOFTWARE\WOW6432Node\Classes\Applications\vlc.exe] : "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file "%1" [HKLM\SOFTWARE\WOW6432Node\Classes\Applications\wmplayer.exe] : "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L" [HKLM\SOFTWARE\WOW6432Node\Classes\Applications\wordpad.exe] : "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" ---------- | DCOMApplications Name: User Notification - AppID: {0010890e-8789-413c-adbc-48f5b511b3af} Name: PhotoAcquire - AppID: {00f22b16-589e-4982-a172-a51d9dcceb68} Name: PhotoAcqHWEventHandler - AppID: {00f2b433-44e4-4d88-b2b0-2698a0a91dba} Name: PhotoAcqWiaEventHandler - AppID: {00F3CDFD-5D2E-439F-8900-3F56A0C1C8BA} Name: TabTip - AppID: {01419581-4d63-4d43-ac26-6e2fc976c1f3} Name: lfsvc - AppID: {020FB939-2C8B-4DB7-9E90-9527966E38E5} Name: PLA - AppID: {03837503-098b-11d8-9414-505054503030} Name: CLWFLService7 - AppID: {03C200E3-11BC-49ea-8BAB-3B09120AC3AE} Name: CTapiLuaLib Class - AppID: {03e15b2e-cca6-451c-8fb0-1e2ee37a27dd} Name: Microsoft SQL Server Replication Remote Merge Agent 11.0 - AppID: {042A4340-A4D7-44DD-A22E-93278FB52475} Name: InstallServiceUserBroker - AppID: {0450178e-e3ee-46d8-9130-c0b84f169f53} Name: DevicesFlowExperienceFlow - AppID: {046AEAD9-5A27-4D3C-8A67-F82552E0A91B} Name: COpenControlPanel - AppID: {06622D85-6856-4460-8DE1-A81921B41C4B} Name: SMLUA - AppID: {0671E064-7C24-4AC0-AF10-0F3055707C32} Name: PhotoAcqDropTargetEventHandler - AppID: {06A2568A-CED6-4187-BB20-400B8C02BE5A} Name: %systemroot%\System32\UserAccountControlSettings.dll - AppID: {06C792F8-6212-4F39-BF70-E8C0AC965C23} Name: OOBE Bio Enrollment - AppID: {0771f7af-8de6-4bce-9528-2d4a12cb8168} Name: sppui - AppID: {0868DC9B-D9A2-4f64-9362-133CEA201299} Name: Retail Demo User COM Agent - AppID: {0886dae5-13ba-49d6-a6ef-d0922e502d96} Name: RtkApoApi - AppID: {08B039CA-84AA-40EA-8E9C-1D9537DC415B} Name: WIA Extension Host for 64 bit extensions - AppID: {08F646B3-5E7F-4B7A-A5CB-F95445F9F67A} Name: Proximity Sharing - AppID: {08FC06E4-C6B5-40BE-97B0-B80F943C615B} Name: FMVideoConverter - AppID: {09493455-1b6c-403d-b000-0d216201c6c0} Name: PersistentZoneIdentifier - AppID: {0968e258-16c7-4dba-aa86-462dd61e31a3} Name: Windows Media Player Rich Preview Handler - AppID: {09C5C2B5-1D32-4598-B87E-203F32BB08E3} Name: QuickTimeShellExt - AppID: {0A18A436-2A7A-49F3-A488-30538A2F6323} Name: SEAPO - AppID: {0A21D954-674A-4C09-806E-DB4FBE8F199C} Name: HashTab - AppID: {0A3C1C8E-5829-4CFD-B1CC-475DB010B883} Name: AxInstSv - AppID: {0B15AFD8-3A99-4A6E-9975-30D66F70BD94} Name: MainController App ID - AppID: {0B789C73-D8DA-416D-B665-C1603676CEB1} Name: RASDLGLUA - AppID: {0C3B05FB-3498-40C3-9C03-4B22D735550C} Name: %SystemRoot%\system32\appwiz.cpl - AppID: {0da7bfdf-c0a0-44eb-be82-b7a82c4721de} Name: IDM Elevated FS Assistant - AppID: {0F947660-8606-420A-BAC6-51B84DD22A47} Name: PDFXCviewAx - AppID: {11F77E2D-987F-4A38-80CC-49DEC7099E9B} Name: Sync Center Client - AppID: {1202DB60-1DAC-42C5-AED5-1ABDD432248E} Name: Virtual Factory for DiagCpl - AppID: {12C21EA7-2EB8-4B55-9249-AC243DA8C666} Name: Shell Create Object Task Server - AppID: {133eac4f-5891-4d04-bada-d84870380a80} Name: Shell Create Object Handler - AppID: {135fd325-45b7-4c30-89f8-4386961669f0} Name: TPM Virtual Smart Card VCard Module Manager - AppID: {150F28F1-49A5-4C28-BE1A-CFA854A1D04B} Name: Remote TPM Virtual Smart Card Manager - AppID: {152EA2A8-70DC-4C59-8B2A-32AA3CA0DCAC} Name: PerAppRuntimeBroker - AppID: {15c20b67-12e7-4bb6-92bb-7aff07997402} Name: TPM Virtual Smart Card Manager - AppID: {16A18E86-7F6E-4C20-AD89-4FFC0DB7A96A} Name: Speech Runtime COM - AppID: {1725704B-A716-4E04-8EF6-87ED4F0A180A} Name: SPort - AppID: {197C72E3-65CE-44DE-A6F3-EB73E2FE160B} Name: Immersive TPM Virtual Smart Card Manager - AppID: {19833350-BF9B-42A1-BDF0-BD1FCBE1FD31} Name: WriterBrowserExtension - AppID: {198B12CC-F591-440C-AC7A-6A730BBC436C} Name: SimpleExt - AppID: {19B3F3E6-9650-4CF6-AD8F-2EBB675D8BF0} Name: Sync Center Control - AppID: {1A1F4206-0688-4E7F-BE03-D82EC69DF9A5} Name: GIDS Smart Card Simulator Manager - AppID: {1AC32B1A-E379-4CAD-B655-F978A30856EC} Name: PerceptionSimulation - AppID: {1B162A5B-B67A-4468-9613-C3F9765B353B} Name: DebugTargetAdapters Class - AppID: {1b7778f3-fe54-443c-8729-1e78b0715299} Name: FMMediaSource - AppID: {1bea28ad-0b3c-4f9c-b85e-ec697115c57a} Name: %systemroot%\system32\lpksetup.exe - AppID: {1C749B87-568C-4865-8E73-6413F8372CE6} Name: rshx32.dll - AppID: {1f2e5c40-9550-11ce-99d2-00aa006e086c} Name: ThirdPartyEapDispatcherPeerConfig - AppID: {1F7D1BE9-7A50-40B6-A605-C4F3696F49C0} Name: Microsoft WMI Provider Subsystem Secured Host - AppID: {1F87137D-0E7C-44d5-8C73-4EFFB68962F2} Name: DetectionAndSharing - AppID: {1fda955b-61ff-11da-978c-0008744faab7} Name: Microsoft Software Protection Platform Admin Object (Inner) - AppID: {205609B7-5E08-443E-B0A7-A7AED3F3A717} Name: Microsoft Windows WSMan Provider Host With User Settings - AppID: {209444d2-2540-495e-962c-a61ad3243526} Name: Provisioning Core - AppID: {217700E0-0000-11DF-ADB9-F4CE462D9137} Name: MSDAINITIALIZE - AppID: {2206CDB0-19C1-11D1-89E0-00C04FD7A829} Name: Dispatch - AppID: {224FC5DE-26AD-4A47-A2C3-5A50885F314C} Name: CortanaExperienceFlow - AppID: {24AC8F2B-4D4A-4C17-9607-6A4B14068F97} Name: Experimentation Broker - AppID: {2568BFC5-CDBE-4585-B8AE-C403A2A5B84A} Name: Update Notification Component Com Handler - AppID: {25d6d937-1fa3-4a22-8875-8680943b3f29} Name: Microsoft WBEM Active Scripting Event Consumer Provider - AppID: {266C72E7-62E8-11D1-AD89-00C04FD8FDFF} Name: IMAPI2 - AppID: {273541FF-7F64-5B0F-8F00-5D77AFBE261E} Name: WInRTDesktopBroker - AppID: {27550CA0-E9DE-4186-A566-37A59BB6CA69} Name: Cloud Change Wnf Monitor - AppID: {276D4FD3-C41D-465F-8CA9-A82A7762DF32} Name: netman - AppID: {27AF75ED-20D9-11D1-B1CE-00805FC1270E} Name: WalletService - AppID: {27D6B72D-094D-445A-9ACE-8298CBA0611A} Name: AERTACap - AppID: {288E7ECC-EB53-45df-8EBD-72EAF9AFCB00} Name: ImageHost - AppID: {2903EDD7-545F-4156-977A-5E730E57F253} Name: RasMobilityManager - AppID: {292bed96-e9ce-40f8-b71b-c313defa3a78} Name: CMSVSWrap Object - AppID: {2B29DD0A-49D7-4C85-B4DA-64B1A22F1671} Name: Windows Live Photo Gallery Autoplay Drop Target - AppID: {2BE99FD4-A181-4996-BFA9-58C5FFD11F6C} Name: faultrep.dll - AppID: {2C256447-3F0D-4CBB-9D12-575BB20CDA0A} Name: FileSystemImage - AppID: {2C941FD1-975B-59BE-A960-9A2A262853A5} Name: WinZip Smart Monitor Service - AppID: {2CA75AD3-A844-4DF9-999D-CB82069C55C3} Name: DTS Package Host (32-bit) - AppID: {2CB1C2AA-A8EA-41CD-B439-25F4F4C846A9} Name: VSUtil - AppID: {2DB4F9B7-144E-4319-B14A-432AC74C0CEF} Name: WalletService - AppID: {2EA38040-0B9C-4379-87FD-4D38BB892F37} Name: Windows Security Health Service - AppID: {2EB6D15C-5239-41CF-82FB-353D20B816CF} Name: WaaSMedicSvc - AppID: {2ED83BAA-B2FD-43B1-99BF-E6149C622692} Name: DevicesFlow - AppID: {2F93C02D-77F9-46B4-95FB-8CBB81EEB62C} Name: ImmersiveShellBrokers - AppID: {2fd08a73-d1f1-43eb-b888-24c2496f95fd} Name: ShellServiceHostBrokerProvider - AppID: {30AD8C8E-AE85-42FA-B9E8-7E99E3DFBFC5} Name: Identity Store - AppID: {30d49246-d217-465f-b00b-ac9ddd652eb7} Name: AuthHost - AppID: {31337EC7-5767-11CF-BEAB-00AA006C3606} Name: ImmersiveShell - AppID: {316CDED5-E4AE-4B15-9113-7055D84DCC97} Name: UiaManagerCrossMachineProxyAppId - AppID: {31b965c2-d4a3-4d8e-ac40-a76d466cd0b7} Name: Delivery Optimization User - AppID: {338B40F9-9D68-4B53-A793-6B9AA0C5F63B} Name: Language Components Installer Com Handler - AppID: {33ADC7D5-BAF1-4661-9822-1FD23E63B39F} Name: wpnservice - AppID: {34E76A18-223B-4E23-BEAD-F59358CC0A90} Name: PCTShellExMenu - AppID: {35194CD4-99A2-4A38-A343-C9D64A482B07} Name: TrayAppIdentityResolver - AppID: {35BC523D-8BE9-496E-8257-026E8B4750FC} Name: CoreDpuWapSvr - AppID: {36234D6F-D9B8-404B-91C9-736BD2EE3040} Name: Windows Push Notification Platform - AppID: {362cc086-4d81-4824-bbb5-666d34b3197d} Name: Microsoft SQL Server Replication Logreader Agent 11.0 - AppID: {368C2E48-7E89-4970-94C9-6757E96C49AF} Name: TabTip - AppID: {36938566-B1AA-4E77-9B3F-730CF4E996AB} Name: Security Health Agent Activate As Activator Host - AppID: {37096FBE-2F09-4FF6-8507-C6E4E1179893} Name: AppServiceContainerBroker - AppID: {37399c92-dc3f-4b55-ae5b-811ee82398ad} Name: Delivery Optimization - AppID: {379001DE-7108-4A45-8A74-6CD0A9FBEF2C} Name: Microsoft Portable Workspace Launcher - AppID: {37B73D7B-A976-43AE-97E4-BD4977B241F2} Name: CContactDb - AppID: {380689D0-AFAA-47E6-B80E-A33436FE314B} Name: MiracastTestRemoteCommandSender - AppID: {39214908-5362-44b4-97f4-1aa724d3e0da} Name: C:\Program Files (x86)\Winamp\elevator.exe - AppID: {3B29AB5C-52CB-4a36-9314-E3FEE0BA7468} Name: Fb2kShellExt - AppID: {3B3052C5-E430-4A00-84C9-BFD43336940B} Name: LivePhotoAcqHWEventHandler - AppID: {3BD0ACD1-71CA-4475-92CC-E0AA0AAF843F} Name: idmBroker - AppID: {3C085E26-7DF6-4A34-ADA6-877D06BAE9A8} Name: WorkspacePolicyProcessor - AppID: {3C3F40BC-60EB-4567-B90C-480C87C21AC1} Name: PDEngine - AppID: {3CD0151D-3AAA-41CB-8B05-FC809A228886} Name: EEL64A - AppID: {3D5781D9-B2FF-4396-8478-395412020995} Name: CMLUAUTIL - AppID: {3E000D72-A845-4CD9-BD83-80C07C3B881F} Name: Microsoft Windows Remote Shell Host - AppID: {3e5ca495-8d6a-4d1f-ad99-177b426c8b8e} Name: CMSTPLUA - AppID: {3E5FC7F9-9A51-4367-9063-A120244FBEC7} Name: WinInetCacheServer - AppID: {3eb3c877-1f16-487c-9050-104dbcd66683} Name: Out Of Proc Mapi Handler - AppID: {3F5E4B87-C907-4f76-82E4-6FDF0CE90E25} Name: Microsoft Windows WSMan Provider Host - AppID: {3feb2f63-0eec-4b96-84ab-da1307e0117c} Name: HTML Application - AppID: {40AEEAB6-8FDA-41e3-9A5F-8350D4CFCA91} Name: Connected User Store - AppID: {40AFA0B6-3B2F-4654-8C3F-161DE85CF80E} Name: NaturalAuthentication - AppID: {412E0F20-6C5B-43EC-879F-DA444A416EAC} Name: Core Shell Broker Provider - AppID: {41928E27-7275-491C-A5A1-4FDC791BF609} Name: AERTARen - AppID: {41C98373-FE7F-4a42-B694-34CC4F979E61} Name: EntAppSvc - AppID: {42C21DF5-FB58-4102-90E9-96A213DC7CE8} Name: AccessibilityCplAdmin - AppID: {434A6274-C539-4E99-88FC-44206D942775} Name: SPP External COM Object - AppID: {44831FEC-DC51-4716-A7E1-E898FDF83C85} Name: Thumbnail Extraction Host Class - AppID: {4545dea0-2dfc-4906-a728-6d986ba399a9} Name: Add to Windows Media Player list - AppID: {45597c98-80f6-4549-84ff-752cf55e2d29} Name: Application Activation Manager - AppID: {45BA127D-10A8-46EA-8AB7-56EA9078943C} Name: Set Network Location Elevated Virtual Factory - AppID: {46B988E8-BEC2-401F-A1C5-16C694F26D3E} Name: Radio Management Service - AppID: {478B41E6-3257-4519-BDA8-E971F9843849} Name: EEG64A - AppID: {47EC1E17-F30B-430b-B9C4-DF60ED501A4B} Name: ShellServiceHost - AppID: {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} Name: IASDataStoreComServer - AppID: {48da6741-1bf0-4a44-8325-293086c79077} Name: COM_SRS_HP360 - AppID: {49611624-F1A3-4AA7-8A06-0209D7D6BA92} Name: Microsoft WBEM Unsecured Apartment - AppID: {49BD2028-1523-11D1-AD79-00C04FD8FDFF} Name: Telephony App Launcher - AppID: {49EBD8BE-1A92-4A86-A651-70AC565E0FEB} Name: UIAutomationCrossBitnessHook64 Class - AppID: {49f171dd-b51a-40d3-9a6c-52d674cc729d} Name: RASGCWLUA - AppID: {4A6B8BAD-9872-4525-A812-71A52367DC17} Name: wercplsupport.dll - AppID: {4BC67F23-D805-4384-BCA3-6F1EDFF50E2C} Name: Shell Security Editor - AppID: {4D111E08-CBF7-4f12-A926-2C7920AF52FC} Name: DTS Task Host (32-bit) - AppID: {4D3E4495-4A1C-4AB6-BFCB-E4056EB546D0} Name: Microsoft Volume Shadow Copy Service software provider - AppID: {4db9c793-c48d-449c-9754-46027ee45c94} Name: COM+ Event System - AppID: {4E14FBA2-2E22-11D1-9964-00C04FBBB345} Name: ServiceModule - AppID: {4EB61BAC-A3B6-4760-9581-655041EF4D69} Name: upnpcont.exe - AppID: {4F0AC159-5804-4aa7-AE91-117D6E67BB9B} Name: Shell Computer Accounts - AppID: {4f6bcd94-c2a5-42ce-8dbc-31e794be4630} Name: WkspRT.exe - AppID: {4FCDA643-B15B-41C6-84F8-5E447F6F6D25} Name: Security Health Agent Interactive User Host for WDSP only - AppID: {4FE95D37-3459-4ECC-AC3E-F7ABBE4E8AED} Name: HomeGroup CPL Advanced Settings Writer - AppID: {50a9ab2a-20f8-4d71-9f32-9fd305b49601} Name: Microsoft Windows Font Folder - AppID: {50d69d24-961d-4828-9d1c-5f4717f226d1} Name: wuapihost - AppID: {50E1C3FD-EC35-490E-9CCF-C68F9AE91919} Name: acppage.dll - AppID: {513D916F-2A8E-4F51-AEAB-0CBC76FB1AF8} Name: %systemroot%\system32\intl.cpl - AppID: {514B5E31-5596-422F-BE58-D804464683B5} Name: DownloadProxy - AppID: {51BEE30D-EEC8-4BA3-930B-298B8E759EB1} Name: Telephony Service UI Toast - AppID: {52B65EB7-907C-4D83-A535-283BE9104DE4} Name: RemoteProxyFactory32 Class - AppID: {53362C32-A296-4F2D-A2F8-FD984D08340B} Name: RemoteProxyFactory32 Class - AppID: {53362C64-A296-4F2D-A2F8-FD984D08340B} Name: 32-bit Preview Handler Surrogate Host - AppID: {534A1E02-D58F-44f0-B58B-36CBED287C7C} Name: Virtual Disk Service Loader - AppID: {5364ED0E-493F-4B16-9DBF-AE486CF22660} Name: LockScreenContentServer Out of Proc Helper for LockScreenContent Clients - AppID: {536AACFB-5238-4314-B4D4-5B0A2E8B968E} Name: ShareFlow - AppID: {549e57e9-b362-49d1-b679-b64d510efe4b} Name: SRS_APO_Universal - AppID: {553C48B2-BA6B-412B-9F8D-2B62B1B912AA} Name: ShapeCollector - AppID: {56676660-4A4D-45B0-B24E-9CF6B35E9ABF} Name: Volume Shadow Copy Service - AppID: {56BE716B-2F76-4dfa-8702-67AE10044F0B} Name: Elevated System Settings COM Host - AppID: {57360832-5F9B-4190-8467-000D2D510212} Name: AutoUpdDLL - AppID: {5761B03B-9FB3-47C0-B7CF-9E7531C580C1} Name: EvernoteIE - AppID: {5796E069-238D-4CAF-96B8-BF933DD398C5} Name: PrintNotify - AppID: {588E10FA-0618-48A1-BE2F-0AD93E899FCC} Name: FaxCommon Class - AppID: {59347292-B72D-41F2-98C5-E9ACA1B247A2} Name: Authentication UI Terminal Services Bump Dialog - AppID: {59c7f6ec-7d18-412f-a68e-877982768e61} Name: Docking.VirtualInput Create Object Server - AppID: {5A4ED3BD-2F40-44B4-93DA-2B5ECC197B26} Name: Video Capture Wizard - AppID: {5AB7566D-F75B-4A53-9615-115B6CB1D59B} Name: WalletService - AppID: {5BC7A3A1-E905-414B-9790-E511346F5CA6} Name: Microsoft Maps Background Transfer Service - AppID: {5C03E1B1-EB13-4DF1-8943-2FE8E7D5F309} Name: EED64A - AppID: {5C73574D-FC7B-4747-8352-143F011923A0} Name: TSWebSiteMon - AppID: {5D7991DD-038B-49D4-8C8B-00119981499C} Name: WiaWow64 - AppID: {5E1395B2-B685-44e3-8AED-E2304D85ACD1} Name: Splash screen - AppID: {5EAD00DC-0E8B-497C-BDE8-B9153058CBEF} Name: User OOBE Create User Object Server - AppID: {5f7f3f7b-1177-4d4b-b1db-bc6f671b8f25} Name: PDVmGuest - AppID: {5FA36620-2EA0-4F9D-98F2-851582689360} Name: UIAutomationCrossBitnessHook32 Class - AppID: {60a90a2f-858d-42af-8929-82be9d99e8a1} Name: gusvc - AppID: {61E28BF8-C02B-499F-8E7A-34C1E4A1C649} Name: PDFPrevHndlr - AppID: {6236FF8C-E747-4173-86D3-99F511B61DF3} Name: wlidcli - AppID: {623D5F5E-2F09-427d-8BD7-64495CD9835D} Name: Sync Center (Private) - AppID: {6295DF2D-35EE-11D1-8707-00C04FD93327} Name: WLXQuickTimeControlHost - AppID: {631AF1F1-55E0-4190-9B1E-454D9F370AA2} Name: PenIMC2 - AppID: {63CE6D27-426A-41F9-8E51-549C1132DAE2} Name: CoreShellHost - AppID: {64D4882D-CB4E-4ea2-95B5-CD77F8ED8AB2} Name: Windows Update Agent - AppID: {653C5148-4DCE-4905-9CFD-1B23662D3D9E} Name: FwCplLUA - AppID: {6571503D-D0FB-4D98-BBC3-1FBB2B3F344E} Name: ClassicExplorer - AppID: {65843E27-A491-429F-84A0-30A947E20F92} Name: Background Intelligent Transfer Service - AppID: {69AD4AEE-51BE-439b-A92C-86AE490E8B30} Name: Sync Center Isolation Collection (Private) - AppID: {69F9CB25-25E2-4BE1-AB8F-07AA7CB535E8} Name: MsRdpSessionManager - AppID: {6B1DE8B3-DFB1-4C0E-9D9A-89CA730DE93F} Name: Preview Handler Surrogate Host - AppID: {6d2b5079-2f0b-48dd-ab7f-97cec514d30b} Name: UPnPContainer - AppID: {6d8ff8e0-730d-11d4-bf42-00b0d0118b56} Name: UPnPContainer64 - AppID: {6d8ff8e8-730d-11d4-bf42-00b0d0118b56} Name: SPPComApi - AppID: {6D9A7A40-DDCA-414E-B48E-DFB032C03C1B} Name: Recommended Troubleshooting Service - AppID: {6de5dc63-3c0c-4dda-9220-1028a37298ba} Name: TieringEngineService - AppID: {6DF5BCF4-22E9-446D-8763-A2C7677ECF7D} Name: AutoItX3 - AppID: {6E8109C4-F369-415D-AF9A-2AEEFF313234} Name: HomeGroup UI Status - AppID: {6f33340d-8a01-473a-b75f-ded88c8360ce} Name: SEMgrSvc - AppID: {6F4B8D94-91FE-4665-B1E7-A34AE3F299F6} Name: IEWindows - AppID: {6f5bad87-9d5e-459f-bd03-3957407051ca} Name: EditionUpgradeHelper - AppID: {6F65B602-F798-4094-8A41-A2A61961E5E8} Name: HomeGroup Provider Object - AppID: {6F7C8E8F-DC69-4e3f-BC05-439962A05FD5} Name: Windows Insider Service - AppID: {7006698d-2974-4091-a424-85dd0b909e23} Name: WindowsLiveWriterFilter - AppID: {7054B371-09E3-4BC8-8A61-02D7799EA98A} Name: workfolderssvc - AppID: {712cedb9-16a4-4f79-801d-7de24d8c706e} Name: Sharing Elevated Virtual Factory - AppID: {72A7994A-3092-4054-B6BE-08FF81AEEFFC} Name: User Profile Service DCOM server - AppID: {72E3272B-4EEA-4104-B358-1A282E4FC1AD} Name: Microsoft WMI Provider Subsystem Host - AppID: {73E709EA-5D93-4B2E-BBB0-99B7938DA9E4} Name: Trusted Installer Service - AppID: {752073A2-23F2-4396-85F0-8FDB879ED0ED} Name: PrintFilterPipelineSvc - AppID: {76db1bf3-e820-4765-a1b2-0b16a86b1950} Name: ChilkatAx - AppID: {77317069-C4A6-4489-BEB9-757AA9525B31} Name: XWizard Virtual Factory - AppID: {777BA81A-2498-4875-933A-3067DE883070} Name: AcroIEHelperShim - AppID: {77AB4812-5411-4EA9-8437-77AD0F230302} Name: CLMLSvc_P2G11 - AppID: {79454E97-52CD-4517-B6A1-43A1D3C5FDAC} Name: Dispatch - AppID: {7953C53B-4031-43ca-9AE7-033F565EFD5F} Name: WebPlatStorageBrokerServer - AppID: {7966b4d8-4fdc-4126-a10b-39a3209ad251} Name: Network and Sharing Center Cpl Elevated Virtual Factory - AppID: {7A076CE1-4B31-452a-A4F1-0304C8738100} Name: QMContextScan - AppID: {7A30415C-ABEE-4674-B64B-4CA145EEB0CA} Name: Shell FMIFS Wrapper - AppID: {7aa7790d-75d7-484b-98a1-3913d022091d} Name: EapThirdPartyDllHost - AppID: {7B130458-E09C-4823-A8AF-2583DCD9AEC7} Name: Internet Explorer Add-on Installer - AppID: {7B29F495-0F55-49F7-8885-9E8A22CE3829} Name: Shell Create Object Local Server - AppID: {7B6EA1D5-03C2-4AE4-B21C-8D0515CC91B7} Name: AppFramework.Services.ProductionManagerOutProc - AppID: {7c1b0cb3-32c3-4af9-85de-109385acb27d} Name: WlanPrefLUA - AppID: {7C8AB6D9-8764-4033-8F62-2FE896E54B32} Name: Microsoft Windows Remote Shell Host With User Settings - AppID: {7d378de6-ed8d-426d-91df-0273d07cd7f6} Name: FMMediaUtils - AppID: {7d3b747c-1cc0-40f3-89b3-d8ccd95dde12} Name: MediaMonkey - AppID: {7DB2DA7A-8F3D-4329-990C-32E15C849F00} Name: HomeGroup Printing Device Class - AppID: {7DF8EF76-D449-485f-B4EB-58DC96B31EDB} Name: MMC Application Class - AppID: {7e0423cd-1119-0928-900c-e6d4a52a0715} Name: Security Health Agent Interactive User Host - AppID: {7E55A26D-EF95-4A45-9F55-21E52ADF9887} Name: Battery Notification Manager - AppID: {7EAD5C10-8B3F-11E6-AE22-56B6B6499611} Name: wisptis - AppID: {7F429620-16D1-471E-A81A-114992148034} Name: Authentication UI CredUI Out of Proc Helper for AppContainer Clients - AppID: {7FC12E96-4CB7-4ABD-ADAA-EF7845B10629} Name: AdAwareShellExtension - AppID: {815E3070-A914-4A36-BC40-2F35AAD1C91E} Name: VirtualBox Application - AppID: {819B4D85-9CEE-493C-B6FC-64FFE759B3C9} Name: MemuHyperv Application - AppID: {819B4D85-9CEE-493C-B6FC-64FFE759B3CA} Name: CnxtDSPdll - AppID: {81D6AA8D-5401-4EE7-A7A2-95133649C977} Name: CFmIfsEngine host - AppID: {82D94FB3-7FE6-4797-BB72-9A886C66073B} Name: UsoCoreWorker Class - AppID: {831EF03D-BAF2-46AD-81B6-6AA5C9E30317} Name: wlcsdk - AppID: {83B16523-1802-47EF-A9A6-2B3C8B796A6F} Name: CustReg Class - AppID: {84D586C4-A423-11D2-B943-00C04F79D22F} Name: APSDaemon - AppID: {85187E17-383D-4EC5-B8D6-D9466EE3DD92} Name: DataShredderShellExt - AppID: {86893589-0CF8-4E19-9D2B-0CB6D5D13071} Name: Virtual Factory for Usercpl - AppID: {86d5eb8a-859f-4c7b-a76b-2bd819b7a850} Name: CElevateWlanUi - AppID: {86F80216-5DD6-4F43-953B-35EF40A35AEE} Name: ThirdPartyEapDispatcherPeerRuntime - AppID: {87BB326B-E4A0-4DE1-94F0-B9F41D0C6059} Name: AppReadiness Service - AppID: {88283d7c-46f4-47d5-8fc2-db0b5cf0cb54} Name: CavWp - AppID: {895A8A5F-FE77-4089-AF43-354D81EF1099} Name: PDState - AppID: {89601CD4-152F-43B8-8E33-2368E8E01C10} Name: UACObject - AppID: {8A10EE91-3ECA-4d0b-8A3F-8A26D26E03FC} Name: Activation Manager Shim - AppID: {8A9AE632-CB07-4A11-8872-358A2A271A24} Name: Desktop Wallpaper Factory - AppID: {8B30085D-A3E3-44e3-AE7F-B03A1340EBED} Name: Windows Management and Instrumentation - AppID: {8BC3F05E-D86B-11D0-A075-00C04FB68820} Name: TSTheme - AppID: {8be0366c-8522-40be-8b08-cb26557f2854} Name: IASExtensionHost - AppID: {8C334A55-DDB9-491C-817E-35A6B85D2ECB} Name: AP Client HxHelpPaneServer Class - AppID: {8cec58ae-07a1-11d9-b15e-000d56bfe6ee} Name: TiWorker - AppID: {8D15A4F3-1BE5-4120-8A4D-2EF92A5DD58D} Name: Sync Center Schedule Wizard - AppID: {8D8B8E30-C451-421B-8553-D2976AFA648C} Name: WalletService - AppID: {8E44A57C-5638-44D3-9B83-34DF70EB57F2} Name: ScrRecX - AppID: {8E568865-5A19-4822-B682-41762E732560} Name: RdpSa - AppID: {8e7fae4d-cff0-41d3-a326-5a80470264bb} Name: Shell Computer Groups - AppID: {8f3080a6-af99-4f2e-a806-f3d5702a0444} Name: SDRSVC service - AppID: {9037e3cf-1794-4af6-9c8d-92838d7a23db} Name: UACObject - AppID: {90B553F3-415D-44D8-8665-C2F78763F8F1} Name: SQLTaskConnections - AppID: {91A708A7-D12F-4B03-B8D0-DDE814119454} Name: Virtual Factory for Recovery - AppID: {9200689A-F979-4eea-8830-0E1D6B74821F} Name: ServiceModule - AppID: {92466186-81EB-47A5-8ACB-78FFE25C5BC1} Name: Authentication UI CredUI Out of Proc Helper for Non-AppContainer Clients - AppID: {924DC564-16A6-42EB-929A-9A61FA7DA06F} Name: RtkPgExt - AppID: {92842063-1ECC-4a1a-9343-9A8E1C972E60} Name: HtmlLocalFileResolver - AppID: {93AAD2A0-036A-4B11-A078-DA8776B38139} Name: Wwan Service Toast Notification - AppID: {941C53C2-D2D7-4C74-84EA-28F8F6438D4B} Name: ServiceModule - AppID: {9465B4B4-5216-4042-9A2C-754D3BCDC410} Name: UiaManager - AppID: {94a38670-983b-459c-87c8-bb6ad617fd74} Name: PenIMC4v2 - AppID: {953E4863-7AD1-4DAE-B2BD-108F1D57967B} Name: protector_dll - AppID: {96FBC13C-8214-4100-88E0-FF74D7A1CB4D} Name: WebPlatformStorageServer - AppID: {973d20d7-562d-44b9-b70b-5a0f49ccdf3f} Name: PDFXCview - AppID: {9856F285-6F2C-4D07-AA8E-46532A04A0F5} Name: PrintIsolationHost - AppID: {98a89e0c-1fde-4c2a-a373-b04831e6aa60} Name: Telephony Incoming Call Toast - AppID: {990F07C7-78DC-4BD2-B145-5F791410BDDE} Name: Microsoft SQL Server Replication Remote Dist Agent 11.0 - AppID: {99434DAB-0F08-4F30-8CCF-B3E80296C907} Name: Shell Hardware Mixed Content Handler - AppID: {995C996E-D918-4a8c-A302-45719A6F4EA7} Name: Bluetooth User Service - AppID: {9980CAAB-B154-408C-B5FD-29A701E40825} Name: WLXAutoPlayMgr - AppID: {9B5CDBB0-6D57-4816-BD04-CA9E68DF5610} Name: ShellWindows - AppID: {9BA05972-F6A8-11CF-A442-00A0C90A8F39} Name: FileProtectorShell - AppID: {9C123673-D14E-472D-BECE-39FA02E6D2E4} Name: RuntimeBroker - AppID: {9CA88EE3-ACB7-47c8-AFC4-AB702511C276} Name: chext - AppID: {9D4C4C5F-EE90-4a6b-9245-244C369E4FAE} Name: timedate.cpl - AppID: {9df523b0-a6c0-4ea9-b5f1-f4565c3ac8b8} Name: WSearch - AppID: {9E175B9C-F52A-11D8-B9A5-505054503030} Name: WMLSS - AppID: {9E88EF3C-E2BB-4E5E-AFBA-565B81069D7D} Name: CDP Reference Host - AppID: {A0316E2D-8793-4E74-AA48-8CE2ED05BA57} Name: contextmenu - AppID: {A0E45FE6-E6DD-444D-8ACC-577D8F0C14F8} Name: RtkCfg - AppID: {A11009A7-DC01-48F8-B6AA-C4613FC5CB15} Name: WIA Device Manager - AppID: {A1F4E726-8CF1-11D1-BF92-0060081ED811} Name: TrayNotify - AppID: {a2b77517-6d12-4c60-b0c6-725e971ec8fe} Name: rundll32.exe - AppID: {a2d9ca22-a492-400c-b875-78ac25c0a6f3} Name: Xhr2OOP - AppID: {a3a81ee7-be13-4dd8-89f7-26aba705d81d} Name: Virtual Factory for Windows Defender Firewall Cpl - AppID: {A4B07E49-6567-4FB8-8D39-01920E3B2357} Name: Shell ChkdskEx Dialog - AppID: {a4c31131-ff70-4984-afd6-0609ced53ad6} Name: DsmAdminApi - AppID: {A5065670-136D-4FD6-A45F-00C85B90359C} Name: PDFShellInfo - AppID: {A5090E95-F1E2-41C8-BDA1-5AEB6C321FDE} Name: WPDShextAutoplay - AppID: {A55803CC-4D53-404c-8557-FD63DBA95D24} Name: Core Shell Service Provider - AppID: {A67168DB-418E-4087-B63E-852E822BB1ED} Name: WLIDSvc - AppID: {A6721677-BA21-44E9-9E2A-76466D24D121} Name: ServiceModule - AppID: {A6B716CB-028B-404D-B72C-50E153DD68DA} Name: Virtual Factory for MaintenanceUI - AppID: {A6BFEA43-501F-456F-A845-983D3AD7B8F0} Name: Microsoft Windows Defender - AppID: {A79DB36D-6218-48e6-9EC9-DCBA9A39BF0F} Name: %SystemRoot%\System32\fveui.dll - AppID: {A7A63E5C-3877-4840-8727-C1EA9D7A4D50} Name: SysFxUi - AppID: {A7D2EC8B-B70F-434C-A0CE-0DF324805F7D} Name: IA3DUtility - AppID: {A7D71146-EBCD-4E6C-916C-E77865BCC53B} Name: Core Shell LPAC Broker Provider - AppID: {A7E84C44-F0C0-44F9-A4F2-68B5EA50B200} Name: ContextHandler - AppID: {A805009D-B902-439A-8E64-26EE3507A12E} Name: PacketX - AppID: {A80AAEA4-1CDD-422D-AC45-E97FC805FA61} Name: SwapAPODll - AppID: {A85F41D6-156B-470D-B505-110388968D5A} Name: ProtectorExe - AppID: {A97CA128-6998-4F8E-807E-8ED05FADAFB0} Name: Delivery Optimization Managment - AppID: {AA65DD7C-83AC-48C0-A6FD-9B61FEBF8800} Name: Core Shell COM Server Registrar - AppID: {AA8F1F23-D819-4E95-9B36-7FD68D5218F9} Name: F12AppFrameClient Class - AppID: {AABAA6AA-5398-4C08-AE60-6321A7F05E9C} Name: QuietHours App ID - AppID: {AB7BDC53-0BB5-44F5-9E25-C444313D4686} Name: DEFRAGSVC service - AppID: {ab7c873b-eb14-49a6-be60-a602f80e6d22} Name: Thumbnail Cache Out of Proc Server - AppID: {AB8902B4-09CA-4bb6-B78D-A8F59079A8D5} Name: BDEUILauncher Class - AppID: {AB93B6F1-BE76-4185-A488-A9001B105B94} Name: PaymentsSvc - AppID: {AC05815A-A8D5-434B-B9A8-2FFD162F2B7D} Name: IDMan - AppID: {AC746233-E9D3-49CD-862F-068F7B7CCCA4} Name: RetailDemo Service - AppID: {ac793c1d-eb2f-4ffd-b1ec-7af1aaaf3325} Name: Microsoft Volumetric Audio Compositor - AppID: {AD829705-CCA8-44D4-88E0-331E48336059} Name: WPN Srumon Server - AppID: {ada41b3c-c6fd-4a08-8cc1-d6efde67be7d} Name: TrayToastActivator - AppID: {AFC732E2-BA57-4B3E-A70A-71371F99B871} Name: WorkspaceBroker Class - AppID: {B06FF84E-0A77-4DD2-A919-0EABD8979DC1} Name: TabIps - AppID: {B1445657-5A98-11d9-A4E5-00301BB132BA} Name: DockInterface COM server - AppID: {b21858c6-9711-4257-99c8-5c0084bebce1} Name: WpcMonSvc - AppID: {B34F88D1-F26B-42D5-8DD5-A442303A05D7} Name: Windows Update Agent - Remote Access - AppID: {B366DEBE-645B-43A5-B865-DDD82C345492} Name: AppActivationFailedHandler - AppID: {B3AADFEA-8404-4CBE-A62E-B0B715412C9E} Name: VSSCOM - AppID: {B3E2C31B-A5EB-406C-890D-04D23EC4E315} Name: UACObject - AppID: {B49FBDA8-D846-43c4-ACAA-06D7794374C8} Name: RichVideo64 - AppID: {B58B304A-D419-4c50-BE1F-6F6CD234B7EF} Name: Found New Hardware Wizard - AppID: {B6A32FE6-E29D-AEAE-A608-D273E40CA34C} Name: WIA Device Manager 2 - AppID: {B6C292BC-7C88-41EE-8B54-8EC92617E599} Name: Com_SRS_TruSurroundHD - AppID: {B6D5C1B8-6F68-4A82-8E20-2D0F3A52BD6A} Name: Sync Center (Private) - AppID: {B8558612-DF5E-4F95-BB81-8E910B327FB2} Name: WLX Thumbnail Cache Out of Proc Server - AppID: {B8A2E14E-290D-4122-B092-1A7D86198CCE} Name: Windows Media Player - AppID: {B8C54A54-355E-11D3-83EB-00A0C92A2F2D} Name: ApplicationActivationImpl - AppID: {B9305506-D05B-4C36-81C5-0E50886C1755} Name: Bluetooth AVCTP Service - AppID: {B98C6EB5-6AA7-471E-B5C5-D04FD677DB3B} Name: Application Frame Host - AppID: {B9B05098-3E30-483F-87F7-027CA78DA287} Name: ShellExtBridge119 - AppID: {ba3bdfe6-1ca3-43e9-907f-7b00567be2c9} Name: Event Object Change 2 - AppID: {BB07BACD-CD56-4E63-A8FF-CBF0355FB9F4} Name: AcroPDF - AppID: {BBAA0E44-3862-490C-8E63-AC2D2D6EF733} Name: SyncHost - AppID: {BBC4356A-F004-4628-A27A-E13D70412B70} Name: Virtual Factory for Power Options Control Panel - AppID: {BBD8C065-5E6C-4e88-BFD7-BE3E6D1C063B} Name: Setting Sync Task Factory - AppID: {bcbb3f8c-2889-474f-8fb7-904d4a416145} Name: LxpSvc - AppID: {BCE82FB7-43F4-4827-A503-69E561667293} Name: DfsShlEx.dll - AppID: {BCEA735B-4DAC-4B71-9C47-1D560AFD2A9B} Name: EditionUpgradeManagerObj - AppID: {BD54C901-076B-434E-B6C7-17C531F4AB41} Name: ActivationHints - AppID: {bdbed08b-7fb7-4eea-afd0-53de534cb638} Name: VM IC Heartbeat Service - AppID: {be0fc7f0-f248-4091-a123-34ca29a6901b} Name: WindowsLiveWriterApplication - AppID: {BF7C0368-EA36-475E-AA42-3F28E736FABD} Name: Shell AutoPlay Direct - AppID: {BF8841C9-378A-4CAD-B4FC-5091366CBC0D} Name: ShellBrowserWindow - AppID: {c08afd90-f2a1-11d1-8455-00a0c91f3880} Name: LockAppHost Out of Proc Helper for Lock Apps - AppID: {C08B030B-E91C-479D-BEFD-02DDA7FF1BCF} Name: Spectrum - AppID: {C0E1CE99-C981-44A2-AC4C-41036FAC6593} Name: EditCtlsU - AppID: {C0F77BE5-652D-4a29-98B1-414012C29C64} Name: provsvc.dll - AppID: {c2a71820-3463-498f-bab7-4798795a2ff6} Name: DataExchangeHost - AppID: {C2E9756F-8155-4EAC-9ED5-0B690169D412} Name: RetailCoreSystemAgent Service - AppID: {C2EA2356-994C-45AF-BDAE-10796F73BC47} Name: cttunesvr - AppID: {C3A34354-660F-41EE-B072-2AEA5E3A80AF} Name: Microsoft Block Level Backup Service - AppID: {C3B65D83-FB15-4e3f-BA04-097D1E2B5AC1} Name: Microsoft IMAPI - AppID: {C49F2185-50A7-11D3-9144-00104BA11C5E} Name: BdeUISrv - AppID: {C4AB7CB7-E735-48FF-AADD-39D09668F444} Name: HomeGroup Listener Service - AppID: {C4CDC408-581C-4480-9FFE-3B1C78D5C20D} Name: Xbox Live Game Saves - AppID: {C5D3C0E1-DC41-4F83-8BA8-CC0D46BCCDE3} Name: Input Switch Toast Handler - AppID: {C5DFE802-CE61-11E8-A8D5-F2801F1B9FD1} Name: EntAppSvc - AppID: {C63261E4-6052-41FF-B919-496FECF4C4E5} Name: EmailClient Class - AppID: {C6E0A4C8-A933-411E-8068-406C2391665F} Name: JumpViewExecuteHelper - AppID: {c82192ee-6cb5-4bc0-9ef0-fb818773790a} Name: FamilySafetyRefreshTask - AppID: {C844C79D-AED8-4DCE-AB25-4D359BED84F8} Name: TSWbPrxy.exe - AppID: {C92A9617-0EAE-4235-BD2B-84540EF1FFA9} Name: DictationHost Class - AppID: {C945AD06-534F-460C-8CB4-17C33099AF81} Name: Sync Infrastructure - AppID: {C947D50F-378E-4FF6-8835-FCB50305244D} Name: ExLVwU - AppID: {C9556254-BB0A-4c76-9D1D-A05E78B8C5B3} Name: netprofm - AppID: {C96887DA-A652-4426-905E-4A37546F847C} Name: editionupgradebroker - AppID: {C97E2AEF-AB0E-4FA6-BA29-1A1A7CCBA125} Name: RCM - AppID: {C9F65BA8-1F8F-4382-AE27-C91FFB29275F} Name: User OOBE Create Elevated Object Server - AppID: {ca8c87c1-929d-45ba-94db-ef8e6cb346ad} Name: EPTBL - AppID: {CACC252F-95A7-4741-BBE8-FB1F18C2826F} Name: OpenSearch Description Create Search Connector Verb Handler - AppID: {CB1DFE3A-EDFF-4d1f-867D-8ADB02926F4B} Name: PrintIsolationSessionHost - AppID: {CB363445-F453-4C1E-8EE4-BD123C5E394F} Name: UACObject - AppID: {CB43451C-E132-4866-B714-435253C98BBA} Name: EnhancedStorageShell - AppID: {CC70FEAD-94B9-4F76-88CC-004BB068ACDF} Name: Dispatch - AppID: {CCA04D30-62E9-4801-B935-EDC8EA177B13} Name: sppui - AppID: {CCFDD24D-CEAB-458B-A4F1-F884973395DF} Name: GraphicsPerfSvc - AppID: {cd93979b-c14e-4c29-87a4-75e4f9fa5e0a} Name: Windows Media Player Burn Audio CD Handler - AppID: {cdc32574-7521-4124-90c3-8d5605a34933} Name: Elevated-Unelevated Explorer Factory - AppID: {CDCBCFCA-3CDC-436f-A4E2-0E02075250C2} Name: ServiceModule - AppID: {CECDDD22-2E72-4832-9606-A9B0E5E344B2} Name: PNPXAssoc.dll - AppID: {cee8ccc9-4f6b-4469-a235-5a22869eef03} Name: sdchange - AppID: {CF254B00-1986-4b24-A92D-463D01F7E395} Name: SwapAPODll - AppID: {CF85F74A-E465-4fb6-898F-8F72C2B84D8E} Name: Dispatch - AppID: {D011083C-3270-483f-B272-1C231E9DB7CA} Name: Event Object Change - AppID: {D0565000-9DF4-11D1-A281-00C04FCA0AA7} Name: Winmgmt MOF Compiler OOP - AppID: {D215781D-019E-4FA0-903D-0CDCDE13A4F5} Name: Color Management - AppID: {D2E7041B-2927-42fb-8E9F-7CE93B6DC937} Name: Bitmap Image - AppID: {D3E34B21-9D75-101A-8C3D-00AA001A1652} Name: Microsoft SQL Server Replication Distribution Agent 11.0 - AppID: {D41192E9-AB13-4A23-AB3B-A5FED98306DB} Name: URLReqService - AppID: {D4859CE9-3B25-4235-8973-A74F5D9A04F2} Name: Sync Center User Profile Notification Handler - AppID: {D63AA156-D534-4BAC-9BF1-55359CF5EC30} Name: MoUsoCoreWorker Class - AppID: {D726464B-98F1-4627-86CD-4A082A1E5307} Name: Microsoft Software Protection Platform Admin Object (outer) - AppID: {D8D4249F-A8FB-44A7-8AA0-564E8C385BD6} Name: BrowserBrokerServer - AppID: {DD9C53BC-8441-4B94-BD0E-36E6E02A6D61} Name: Srumon Server - AppID: {ddcfd26b-feed-44cd-b71d-79487d2e5e5a} Name: EverySyncExplorerOverlay - AppID: {DE4CE140-5838-468B-86C0-A422AC75B092} Name: rundll32.exe - AppID: {de5d803e-5d2a-4b5f-9c63-af25a465cc44} Name: AccStore Class - AppID: {DE5DBCDC-104A-4cbc-A4D5-0C2104A142C5} Name: LockScreen Call Broker - AppID: {DE7D3D65-5454-4EF5-9518-776739DAB39F} Name: ClassicIE - AppID: {DF3255F4-FF55-44FA-A728-E77B83E9E403} Name: OneSetttings Broker - AppID: {E055B85B-22BD-4E15-A34D-46C58AB320AD} Name: FMTransformBase - AppID: {e0cdf63d-2d66-469d-934b-3ec2897c94b1} Name: Profile Notification Host - AppID: {E10F6C3A-F1AE-4adc-AA9D-2FE65525666E} Name: CavShell - AppID: {E11C8519-5595-4397-B515-AB036DEC467A} Name: RtkAPODll - AppID: {E1D2965E-D32B-4e1c-B9F1-159ACB984258} Name: PDUtils - AppID: {E1D4C78F-A52B-42C9-B475-C72A041DAD75} Name: Windows Update Agent User Interface for Published Applications - AppID: {e30984f1-b02b-4c27-a40f-23d11b8c1212} Name: Scan - AppID: {E32549C4-C2B8-4BCC-90D7-0FC3511092BB} Name: FMMediaFormats - AppID: {e329c791-4d02-4e4b-b350-605b04edd9c6} Name: WinRTNet MUA hostserver AppID - AppID: {E4422CBC-05DF-4AF1-A84E-A5638479CDE7} Name: Execute Unknown - AppID: {e44e9428-bdbc-4987-a099-40dc8fd255e7} Name: Authentication UI CredUI Out of Proc Helper for Non-AppContainer Clients (Failed Mouse In Pointer) - AppID: {E45A56CE-399C-45F0-9E6F-BFAACD3C711F} Name: COM_SRS_WOWHD2 - AppID: {E46D2660-D86E-4B0A-BB61-F0FFE9BBDEB5} Name: upnphost - AppID: {E495081B-BBA5-4b89-BA3C-3B86A686B87A} Name: ContainerHostActivation - AppID: {e53cd6ee-5c5c-4701-9ff2-c204bfed819d} Name: TrayDesktopBand - AppID: {E6442437-6C68-4f52-94DD-2CFED267EFB9} Name: Orchestrator Service - AppID: {E7299E79-75E5-47BB-A03D-6D319FB7F886} Name: DivX Media Foundation Source - AppID: {E74B3735-201B-4673-94EC-744432F44B41} Name: UICOM - AppID: {E8054D20-497D-4E16-BF41-6E69FCD381A5} Name: wscui.cpl - AppID: {E9495B87-D950-4ab5-87A5-FF6D70BF3E90} Name: Remove Device elevation surrogate - AppID: {E95186C7-7D80-4311-843D-0702CBC8B1E4} Name: File Prop Sheet Page Helper - AppID: {E96767E0-7EAA-45E1-8E7D-64414AFF281A} Name: PDAgent - AppID: {E97AD3D1-2EA3-47CD-A26E-ABC491F8CF5F} Name: Exchange Active Sync Policy Manager Broker - AppID: {E9DD849F-B3CF-4614-94BB-CB2696BD34FB} Name: PfShellExtension - AppID: {E9F269D7-7652-41a7-9C53-008CF3B0A943} Name: HomeGroup Provider Service - AppID: {EA022610-0748-4c24-B229-6C507EBDFDBB} Name: %systemroot%\System32\UserAccountControlSettings.dll - AppID: {EA2C6B24-C590-457B-BAC8-4A0F9B13B5B8} Name: Feature Usage Listener - AppID: {EAB99738-0ADF-4A53-856C-DE58AFDE7682} Name: SuspendablePerAppRuntimeBroker - AppID: {eadbb044-2aed-4aba-bab5-1f8ae07a4a0c} Name: Convert VHD - AppID: {eae61b75-98d8-4af9-94e6-84b1c6f77c8a} Name: Remote Desktop Services Message Server - AppID: {EB521D7D-4095-4E61-88FB-BF25700F142A} Name: ComEvents.ComServiceEvents - AppID: {ECABB0C3-7F19-11D2-978E-0000F8757E2A} Name: ComEvents.ComSystemAppEventData - AppID: {ECABB0C6-7F19-11D2-978E-0000F8757E2A} Name: ServiceModule - AppID: {ED1700AB-5A09-480E-BCDA-0AD193AE6FB8} Name: Play with Windows Media Player - AppID: {ed1d0fdf-4414-470a-a56d-cfb68623fc58} Name: ImagXpr7 - AppID: {ED512BE6-6629-4FB4-953D-D0C353847163} Name: Windows Media Player Launch - AppID: {ED6BB178-B06A-47ad-98B3-6066E0CF0147} Name: Share Manager - AppID: {edb5f444-cb8d-445a-a523-ec5ab6ea33c7} Name: MixedRealityCapture - AppID: {EE3C7093-A852-49BA-8AC8-7DFBEC469F72} Name: CloudExperienceHostAppManager - AppID: {EEABBBC4-12D0-48F4-A9C5-9AB471806C29} Name: RichVideo - AppID: {EEDE56D6-82E5-4B98-B99E-D4339825E216} Name: CloudExperienceHost Broker AppID - AppID: {efe2d6d8-a81b-41e7-ae77-e5244ab80522} Name: Microsoft Audio Device Graph Server - AppID: {F135BE18-BF34-4CBD-B1D5-55D49F0DEDCC} Name: AcroBroker - AppID: {F2383816-917A-46CC-AD2A-5013BED3800F} Name: AvailableNetworksExperienceFlow - AppID: {F2506CD7-82C2-43D9-A1D3-F85F5EFE7D09} Name: Virtual Disk Service - AppID: {F290BFB2-1864-45B1-8804-2654194A87E7} Name: FodHelper - AppID: {F2F94BB3-595C-4509-B7EE-243FA2BDEA5B} Name: SPPSurrogate - AppID: {f32d97df-e3e5-4cb9-9e3e-0eb5b4e49801} Name: NDFAPI - AppID: {F3D3AA8D-EF96-4470-848E-BD70B803047A} Name: PerfCenter Enabler - AppID: {f4be747e-45c4-4701-90f1-d49d9ac30248} Name: sdclt - AppID: {f56b7b2a-5b5a-46d8-b6f9-d927ce34b717} Name: ActivatableApplicationRegistrar - AppID: {f59bbec1-0907-4464-b04d-1da329585370} Name: Pen Workspace Discover Broker - AppID: {F5A6ACF4-FFE0-4934-AE1D-5F960EA0AAD9} Name: UACObject - AppID: {F632543F-3A79-4cc9-AACD-07036DF9FFCD} Name: PfShellExtension - AppID: {F6605BA7-71E8-4C6D-AD31-F05E3F568609} Name: WMPNSSCI - AppID: {F74BCE98-9EB4-4022-8317-11C723E5CCF8} Name: Account Manager Service - AppID: {f7f34f79-6791-4d4e-9f15-9eaecd50bd78} Name: CloudExperienceHost Create System Object Server - AppID: {f7fa3149-91e7-43b7-8040-b707688ced1a} Name: logagent - AppID: {F808DF63-6049-11D1-BA20-006097D2898E} Name: WLIDFDP - AppID: {F828BB1A-2FAE-4AC4-AE6F-CAC9B529F996} Name: RAServer - AppID: {F8FD03A6-DDD9-4C1B-84EE-58159476A0D7} Name: WinInetBrokerServer - AppID: {F9717507-6651-4EDB-BFF7-AE615179BCCF} Name: DaemonShellExtImage - AppID: {F9B84490-4C45-4737-82E5-0EA0B1CF5307} Name: NCLUA - AppID: {FA1456D3-4B97-4f9c-8511-2786161DC333} Name: VssEvent - AppID: {FAF53CC4-BD73-4E36-83F1-2B23F46E513E} Name: Shell Hardware Mixed Content Handler Cancelled - AppID: {fb479c02-9ec4-4fed-8599-debe037452cb} Name: PhotoPlus - AppID: {FB90AAA2-D9F0-4187-B3E2-6C78219C0E8C} Name: RegisterControl - AppID: {FC38B7C8-9E50-497d-A387-7DEBDAD14160} Name: Hotspot Auth Module - AppID: {FC5EEAF6-0002-11DF-ADB9-F4CE462D9137} Name: ESLoadSevice - AppID: {FCA6F20F-92E5-4E74-AC19-D14B59CB1C15} Name: appwiz.cpl - AppID: {FCC74B77-EC3E-4dd8-A80B-008A702075A9} Name: Wordpad - AppID: {fd6c8b29-e936-4a61-8da6-b0c12ad3ba00} Name: Microsoft SQL Server Replication Queuereader Agent 11.0 - AppID: {FD737704-43CB-4791-B4DB-EE8CDBC64450} Name: Proximity UX Host - AppID: {FDA74D11-C4A6-4577-9F73-D7CA8586E10C} Name: Microsoft SQL Server Replication Merge Agent 11.0 - AppID: {FDF7E044-456E-46C5-A396-807479AAFB4D} Name: Shell Execute Hardware Event Handler - AppID: {FFB8655F-81B9-4fce-B89C-9A6BA76D13E7} Name: EntAppSvc - AppID: {FFE1E5FE-F1F0-48C8-953E-72BA272F2744} Win32_DCOMApplication.AppID="{00021401-0000-0000-C000-000000000046}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{00021401-0000-0000-C000-000000000046}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{00021401-0000-0000-C000-000000000046}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{020FB939-2C8B-4DB7-9E90-9527966E38E5}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{020FB939-2C8B-4DB7-9E90-9527966E38E5}" - Win32_SID.SID="S-1-1-0" Win32_DCOMApplication.AppID="{020FB939-2C8B-4DB7-9E90-9527966E38E5}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{020FB939-2C8B-4DB7-9E90-9527966E38E5}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{020FB939-2C8B-4DB7-9E90-9527966E38E5}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{020FB939-2C8B-4DB7-9E90-9527966E38E5}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{020FB939-2C8B-4DB7-9E90-9527966E38E5}" - Win32_SID.SID="S-1-15-3-3215430884-1339816292-89257616-1145831019" Win32_DCOMApplication.AppID="{020FB939-2C8B-4DB7-9E90-9527966E38E5}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{03837503-098b-11d8-9414-505054503030}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{03837503-098b-11d8-9414-505054503030}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{03837503-098b-11d8-9414-505054503030}" - Win32_SID.SID="S-1-5-32-559" Win32_DCOMApplication.AppID="{0671E064-7C24-4AC0-AF10-0F3055707C32}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{0671E064-7C24-4AC0-AF10-0F3055707C32}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{0671E064-7C24-4AC0-AF10-0F3055707C32}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{0771f7af-8de6-4bce-9528-2d4a12cb8168}" - Win32_SID.SID="S-1-5-11" Win32_DCOMApplication.AppID="{0771f7af-8de6-4bce-9528-2d4a12cb8168}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{0868DC9B-D9A2-4f64-9362-133CEA201299}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{0868DC9B-D9A2-4f64-9362-133CEA201299}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{0A886F29-465A-4aea-8B8E-BE926BFAE83E}" - Win32_SID.SID="S-1-5-20" Win32_DCOMApplication.AppID="{0A886F29-465A-4aea-8B8E-BE926BFAE83E}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{0A886F29-465A-4aea-8B8E-BE926BFAE83E}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{0C3B05FB-3498-40C3-9C03-4B22D735550C}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{0C3B05FB-3498-40C3-9C03-4B22D735550C}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{0C3B05FB-3498-40C3-9C03-4B22D735550C}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{0CA545C6-37AD-4A6C-BF92-9F7610067EF5}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{0CA545C6-37AD-4A6C-BF92-9F7610067EF5}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{0CA545C6-37AD-4A6C-BF92-9F7610067EF5}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{0da7bfdf-c0a0-44eb-be82-b7a82c4721de}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{0da7bfdf-c0a0-44eb-be82-b7a82c4721de}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{0da7bfdf-c0a0-44eb-be82-b7a82c4721de}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{12C21EA7-2EB8-4B55-9249-AC243DA8C666}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{12C21EA7-2EB8-4B55-9249-AC243DA8C666}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{12C21EA7-2EB8-4B55-9249-AC243DA8C666}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{133eac4f-5891-4d04-bada-d84870380a80}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{133eac4f-5891-4d04-bada-d84870380a80}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{133eac4f-5891-4d04-bada-d84870380a80}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{135fd325-45b7-4c30-89f8-4386961669f0}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{135fd325-45b7-4c30-89f8-4386961669f0}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{135fd325-45b7-4c30-89f8-4386961669f0}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{136A0DC7-DF5C-4271-A2AC-15DF1A1323F2}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{136A0DC7-DF5C-4271-A2AC-15DF1A1323F2}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{150F28F1-49A5-4C28-BE1A-CFA854A1D04B}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{150F28F1-49A5-4C28-BE1A-CFA854A1D04B}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{150F28F1-49A5-4C28-BE1A-CFA854A1D04B}" - Win32_SID.SID="S-1-5-20" Win32_DCOMApplication.AppID="{152EA2A8-70DC-4C59-8B2A-32AA3CA0DCAC}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{152EA2A8-70DC-4C59-8B2A-32AA3CA0DCAC}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{1538524A-8AC3-4C33-BF0C-C2F9CE51DD50}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{1538524A-8AC3-4C33-BF0C-C2F9CE51DD50}" - Win32_SID.SID="S-1-1-0" Win32_DCOMApplication.AppID="{1538524A-8AC3-4C33-BF0C-C2F9CE51DD50}" - Win32_SID.SID="S-1-5-80-2731152606-4244467407-1946816704-3721569673-479255522" Win32_DCOMApplication.AppID="{1538524A-8AC3-4C33-BF0C-C2F9CE51DD50}" - Win32_SID.SID="S-1-5-84-0-0-0-0-0" Win32_DCOMApplication.AppID="{15c653f2-77f1-4cac-9644-656982d12f12}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{15c653f2-77f1-4cac-9644-656982d12f12}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{15c653f2-77f1-4cac-9644-656982d12f12}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{15c653f2-77f1-4cac-9644-656982d12f12}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{16A18E86-7F6E-4C20-AD89-4FFC0DB7A96A}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{16A18E86-7F6E-4C20-AD89-4FFC0DB7A96A}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{16A18E86-7F6E-4C20-AD89-4FFC0DB7A96A}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{16A18E86-7F6E-4C20-AD89-4FFC0DB7A96A}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{1725704B-A716-4E04-8EF6-87ED4F0A180A}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{1725704B-A716-4E04-8EF6-87ED4F0A180A}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{1725704B-A716-4E04-8EF6-87ED4F0A180A}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{1725704B-A716-4E04-8EF6-87ED4F0A180A}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{1725704B-A716-4E04-8EF6-87ED4F0A180A}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{19BCA967-D266-436f-B2D4-CBE4D4B42F96}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{19BCA967-D266-436f-B2D4-CBE4D4B42F96}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{19BCA967-D266-436f-B2D4-CBE4D4B42F96}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{19BCA967-D266-436f-B2D4-CBE4D4B42F96}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{19BCA967-D266-436f-B2D4-CBE4D4B42F96}" - Win32_SID.SID="S-1-5-20" Win32_DCOMApplication.AppID="{19BCA967-D266-436f-B2D4-CBE4D4B42F96}" - Win32_SID.SID="S-1-5-32-547" Win32_DCOMApplication.AppID="{19BCA967-D266-436f-B2D4-CBE4D4B42F96}" - Win32_SID.SID="S-1-5-32-545" Win32_DCOMApplication.AppID="{19BCA967-D266-436f-B2D4-CBE4D4B42F96}" - Win32_SID.SID="S-1-5-32-556" Win32_DCOMApplication.AppID="{1AC32B1A-E379-4CAD-B655-F978A30856EC}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{1AC32B1A-E379-4CAD-B655-F978A30856EC}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{1AC32B1A-E379-4CAD-B655-F978A30856EC}" - Win32_SID.SID="S-1-5-20" Win32_DCOMApplication.AppID="{1B162A5B-B67A-4468-9613-C3F9765B353B}" - Win32_SID.SID="S-1-5-80-2731152606-4244467407-1946816704-3721569673-479255522" Win32_DCOMApplication.AppID="{1B162A5B-B67A-4468-9613-C3F9765B353B}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{1B162A5B-B67A-4468-9613-C3F9765B353B}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{1B162A5B-B67A-4468-9613-C3F9765B353B}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{1BA783C1-2A30-4ad3-B928-A9A46C604C28}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{1BA783C1-2A30-4ad3-B928-A9A46C604C28}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{1BA783C1-2A30-4ad3-B928-A9A46C604C28}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{1C749B87-568C-4865-8E73-6413F8372CE6}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{1C749B87-568C-4865-8E73-6413F8372CE6}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{1C749B87-568C-4865-8E73-6413F8372CE6}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{1f2e5c40-9550-11ce-99d2-00aa006e086c}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{1f2e5c40-9550-11ce-99d2-00aa006e086c}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{1f2e5c40-9550-11ce-99d2-00aa006e086c}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{1F7D1BE9-7A50-40B6-A605-C4F3696F49C0}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{1F7D1BE9-7A50-40B6-A605-C4F3696F49C0}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{1fb2a002-4c6c-4de7-85c2-cb8db9a4f728}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{1fb2a002-4c6c-4de7-85c2-cb8db9a4f728}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{1fb2a002-4c6c-4de7-85c2-cb8db9a4f728}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{1fda955b-61ff-11da-978c-0008744faab7}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{1fda955b-61ff-11da-978c-0008744faab7}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{1fda955b-61ff-11da-978c-0008744faab7}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{205609B7-5E08-443E-B0A7-A7AED3F3A717}" - Win32_SID.SID="S-1-5-80-123231216-2592883651-3715271367-3753151631-4175906628" Win32_DCOMApplication.AppID="{205609B7-5E08-443E-B0A7-A7AED3F3A717}" - Win32_SID.SID="S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464" Win32_DCOMApplication.AppID="{217700E0-0000-11DF-ADB9-F4CE462D9137}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{217700E0-0000-11DF-ADB9-F4CE462D9137}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{217700E0-0000-11DF-ADB9-F4CE462D9137}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{217700E0-0000-11DF-ADB9-F4CE462D9137}" - Win32_SID.SID="S-1-5-20" Win32_DCOMApplication.AppID="{217700E0-0000-11DF-ADB9-F4CE462D9137}" - Win32_SID.SID="S-1-5-32-556" Win32_DCOMApplication.AppID="{224FC5DE-26AD-4A47-A2C3-5A50885F314C}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{224FC5DE-26AD-4A47-A2C3-5A50885F314C}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{27170d71-7a40-4c8b-a3d1-64f7cbe81c66}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{27170d71-7a40-4c8b-a3d1-64f7cbe81c66}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{27170d71-7a40-4c8b-a3d1-64f7cbe81c66}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{27550CA0-E9DE-4186-A566-37A59BB6CA69}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{27550CA0-E9DE-4186-A566-37A59BB6CA69}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{27550CA0-E9DE-4186-A566-37A59BB6CA69}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{27550CA0-E9DE-4186-A566-37A59BB6CA69}" - Win32_SID.SID="S-1-5-20" Win32_DCOMApplication.AppID="{27550CA0-E9DE-4186-A566-37A59BB6CA69}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{292bed96-e9ce-40f8-b71b-c313defa3a78}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{292bed96-e9ce-40f8-b71b-c313defa3a78}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{292bed96-e9ce-40f8-b71b-c313defa3a78}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{2A81FE91-95D7-487E-BBF8-B03308E54207}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{2A81FE91-95D7-487E-BBF8-B03308E54207}" - Win32_SID.SID="S-1-15-3-1024-4044835139-2658482041-3127973164-329287231-3865880861-1938685643-461067658-1087000422" Win32_DCOMApplication.AppID="{2A81FE91-95D7-487E-BBF8-B03308E54207}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{2A81FE91-95D7-487E-BBF8-B03308E54207}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{2A81FE91-95D7-487E-BBF8-B03308E54207}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{2A947841-0594-48CF-9C53-A08C95C22B55}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{2A947841-0594-48CF-9C53-A08C95C22B55}" - Win32_SID.SID="S-1-1-0" Win32_DCOMApplication.AppID="{2B29DD0A-49D7-4C85-B4DA-64B1A22F1671}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{2B29DD0A-49D7-4C85-B4DA-64B1A22F1671}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{2B29DD0A-49D7-4C85-B4DA-64B1A22F1671}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{2C256447-3F0D-4CBB-9D12-575BB20CDA0A}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{2C256447-3F0D-4CBB-9D12-575BB20CDA0A}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{2C256447-3F0D-4CBB-9D12-575BB20CDA0A}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{2C5BC43E-3369-4C33-AB0C-BE9469677AF4}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{2C5BC43E-3369-4C33-AB0C-BE9469677AF4}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{2C5BC43E-3369-4C33-AB0C-BE9469677AF4}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{2EA38040-0B9C-4379-87FD-4D38BB892F37}" - Win32_SID.SID="S-1-15-3-1024-1314380931-3989923313-3249193833-1963115619-3940350845-1282913705-2904921893-3519892189" Win32_DCOMApplication.AppID="{2EA38040-0B9C-4379-87FD-4D38BB892F37}" - Win32_SID.SID="S-1-5-21-2702878673-795188819-444038987-1030" Win32_DCOMApplication.AppID="{2EA38040-0B9C-4379-87FD-4D38BB892F37}" - Win32_SID.SID="S-1-5-21-2702878673-795188819-444038987-1212" Win32_DCOMApplication.AppID="{2EA38040-0B9C-4379-87FD-4D38BB892F37}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{2EA38040-0B9C-4379-87FD-4D38BB892F37}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{2ED83BAA-B2FD-43B1-99BF-E6149C622692}" - Win32_SID.SID="S-1-1-0" Win32_DCOMApplication.AppID="{2ED83BAA-B2FD-43B1-99BF-E6149C622692}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{2ED83BAA-B2FD-43B1-99BF-E6149C622692}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{2ED83BAA-B2FD-43B1-99BF-E6149C622692}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{304CE942-6E39-40D8-943A-B913C40C9CD4}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{304CE942-6E39-40D8-943A-B913C40C9CD4}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{304CE942-6E39-40D8-943A-B913C40C9CD4}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{338B40F9-9D68-4B53-A793-6B9AA0C5F63B}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{338B40F9-9D68-4B53-A793-6B9AA0C5F63B}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{338B40F9-9D68-4B53-A793-6B9AA0C5F63B}" - Win32_SID.SID="S-1-5-32-545" Win32_DCOMApplication.AppID="{34E76A18-223B-4E23-BEAD-F59358CC0A90}" - Win32_SID.SID="S-1-5-11" Win32_DCOMApplication.AppID="{34E76A18-223B-4E23-BEAD-F59358CC0A90}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{34E76A18-223B-4E23-BEAD-F59358CC0A90}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{354ff91b-5e49-4bdc-a8e6-1cb6c6877182}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{354ff91b-5e49-4bdc-a8e6-1cb6c6877182}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{354ff91b-5e49-4bdc-a8e6-1cb6c6877182}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{354ff91b-5e49-4bdc-a8e6-1cb6c6877182}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{36234D6F-D9B8-404B-91C9-736BD2EE3040}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{36234D6F-D9B8-404B-91C9-736BD2EE3040}" - Win32_SID.SID="S-1-1-0" Win32_DCOMApplication.AppID="{37096FBE-2F09-4FF6-8507-C6E4E1179893}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{37096FBE-2F09-4FF6-8507-C6E4E1179893}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{37096FBE-2F09-4FF6-8507-C6E4E1179893}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{37096FBE-2F09-4FF6-8507-C6E4E1179893}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{379001DE-7108-4A45-8A74-6CD0A9FBEF2C}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{379001DE-7108-4A45-8A74-6CD0A9FBEF2C}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{379001DE-7108-4A45-8A74-6CD0A9FBEF2C}" - Win32_SID.SID="S-1-5-32-545" Win32_DCOMApplication.AppID="{37B73D7B-A976-43AE-97E4-BD4977B241F2}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{37B73D7B-A976-43AE-97E4-BD4977B241F2}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{37B73D7B-A976-43AE-97E4-BD4977B241F2}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{38E441FB-3D16-422F-8750-B2DACEC5CEFC}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{38E441FB-3D16-422F-8750-B2DACEC5CEFC}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{38E441FB-3D16-422F-8750-B2DACEC5CEFC}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{38E441FB-3D16-422F-8750-B2DACEC5CEFC}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{38E441FB-3D16-422F-8750-B2DACEC5CEFC}" - Win32_SID.SID="S-1-5-32-545" Win32_DCOMApplication.AppID="{38E441FB-3D16-422F-8750-B2DACEC5CEFC}" - Win32_SID.SID="S-1-1-0" Win32_DCOMApplication.AppID="{39214908-5362-44b4-97f4-1aa724d3e0da}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{39214908-5362-44b4-97f4-1aa724d3e0da}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{39214908-5362-44b4-97f4-1aa724d3e0da}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{39214908-5362-44b4-97f4-1aa724d3e0da}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{3ad05575-8857-4850-9277-11b85bdb8e09}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{3ad05575-8857-4850-9277-11b85bdb8e09}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{3ad05575-8857-4850-9277-11b85bdb8e09}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{3B29AB5C-52CB-4a36-9314-E3FEE0BA7468}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{3B29AB5C-52CB-4a36-9314-E3FEE0BA7468}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{3E000D72-A845-4CD9-BD83-80C07C3B881F}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{3E000D72-A845-4CD9-BD83-80C07C3B881F}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{3E000D72-A845-4CD9-BD83-80C07C3B881F}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{3E5FC7F9-9A51-4367-9063-A120244FBEC7}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{3E5FC7F9-9A51-4367-9063-A120244FBEC7}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{3E5FC7F9-9A51-4367-9063-A120244FBEC7}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{3eb3c877-1f16-487c-9050-104dbcd66683}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{3eb3c877-1f16-487c-9050-104dbcd66683}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{3eb3c877-1f16-487c-9050-104dbcd66683}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{3eb3c877-1f16-487c-9050-104dbcd66683}" - Win32_SID.SID="S-1-15-3-1" Win32_DCOMApplication.AppID="{3eb3c877-1f16-487c-9050-104dbcd66683}" - Win32_SID.SID="S-1-15-3-2" Win32_DCOMApplication.AppID="{3eb3c877-1f16-487c-9050-104dbcd66683}" - Win32_SID.SID="S-1-15-3-3" Win32_DCOMApplication.AppID="{3F4D7BB8-4F38-4526-8CD3-C44D68689C5F}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{3F4D7BB8-4F38-4526-8CD3-C44D68689C5F}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{3F4D7BB8-4F38-4526-8CD3-C44D68689C5F}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{412E0F20-6C5B-43EC-879F-DA444A416EAC}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{412E0F20-6C5B-43EC-879F-DA444A416EAC}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{42C21DF5-FB58-4102-90E9-96A213DC7CE8}" - Win32_SID.SID="S-1-1-0" Win32_DCOMApplication.AppID="{42C21DF5-FB58-4102-90E9-96A213DC7CE8}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{42C21DF5-FB58-4102-90E9-96A213DC7CE8}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{42C21DF5-FB58-4102-90E9-96A213DC7CE8}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{42CBFAA7-A4A7-47BB-B422-BD10E9D02700}" - Win32_SID.SID="S-1-5-11" Win32_DCOMApplication.AppID="{42CBFAA7-A4A7-47BB-B422-BD10E9D02700}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{42CBFAA7-A4A7-47BB-B422-BD10E9D02700}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{42CBFAA7-A4A7-47BB-B422-BD10E9D02700}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{42CBFAA7-A4A7-47BB-B422-BD10E9D02700}" - Win32_SID.SID="S-1-15-3-1024-3153509613-960666767-3724611135-2725662640-12138253-543910227-1950414635-4190290187" Win32_DCOMApplication.AppID="{42CBFAA7-A4A7-47BB-B422-BD10E9D02700}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{434A6274-C539-4E99-88FC-44206D942775}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{434A6274-C539-4E99-88FC-44206D942775}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{434A6274-C539-4E99-88FC-44206D942775}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{46B988E8-BEC2-401F-A1C5-16C694F26D3E}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{46B988E8-BEC2-401F-A1C5-16C694F26D3E}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{46B988E8-BEC2-401F-A1C5-16C694F26D3E}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{46C166AA-3108-11D4-9348-00C04F8EEB71}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{46C166AA-3108-11D4-9348-00C04F8EEB71}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{46C166AA-3108-11D4-9348-00C04F8EEB71}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{48da6741-1bf0-4a44-8325-293086c79077}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{48da6741-1bf0-4a44-8325-293086c79077}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{48da6741-1bf0-4a44-8325-293086c79077}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{48da6741-1bf0-4a44-8325-293086c79077}" - Win32_SID.SID="S-1-5-80-611605672-2879557022-2206624263-4029342278-3129212340" Win32_DCOMApplication.AppID="{4963f89b-261e-4ffa-ac2e-71a7d5a17071}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{4963f89b-261e-4ffa-ac2e-71a7d5a17071}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{4963f89b-261e-4ffa-ac2e-71a7d5a17071}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{4963f89b-261e-4ffa-ac2e-71a7d5a17071}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{4963f89b-261e-4ffa-ac2e-71a7d5a17071}" - Win32_SID.SID="S-1-15-3-1024-1502825166-1963708345-2616377461-2562897074-4192028372-3968301570-1997628692-1435953622" Win32_DCOMApplication.AppID="{49EBD8BE-1A92-4A86-A651-70AC565E0FEB}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{49EBD8BE-1A92-4A86-A651-70AC565E0FEB}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{49EBD8BE-1A92-4A86-A651-70AC565E0FEB}" - Win32_SID.SID="S-1-5-32-545" Win32_DCOMApplication.AppID="{4A6B8BAD-9872-4525-A812-71A52367DC17}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{4A6B8BAD-9872-4525-A812-71A52367DC17}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{4A6B8BAD-9872-4525-A812-71A52367DC17}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{4BC67F23-D805-4384-BCA3-6F1EDFF50E2C}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{4BC67F23-D805-4384-BCA3-6F1EDFF50E2C}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{4BC67F23-D805-4384-BCA3-6F1EDFF50E2C}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{4D111E08-CBF7-4f12-A926-2C7920AF52FC}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{4D111E08-CBF7-4f12-A926-2C7920AF52FC}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{4D111E08-CBF7-4f12-A926-2C7920AF52FC}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{4FCDA643-B15B-41C6-84F8-5E447F6F6D25}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{4FE95D37-3459-4ECC-AC3E-F7ABBE4E8AED}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{4FE95D37-3459-4ECC-AC3E-F7ABBE4E8AED}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{4FE95D37-3459-4ECC-AC3E-F7ABBE4E8AED}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{50a9ab2a-20f8-4d71-9f32-9fd305b49601}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{50a9ab2a-20f8-4d71-9f32-9fd305b49601}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{50a9ab2a-20f8-4d71-9f32-9fd305b49601}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{50d69d24-961d-4828-9d1c-5f4717f226d1}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{50d69d24-961d-4828-9d1c-5f4717f226d1}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{50d69d24-961d-4828-9d1c-5f4717f226d1}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{50E1C3FD-EC35-490E-9CCF-C68F9AE91919}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{50E1C3FD-EC35-490E-9CCF-C68F9AE91919}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{50E1C3FD-EC35-490E-9CCF-C68F9AE91919}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{50E1C3FD-EC35-490E-9CCF-C68F9AE91919}" - Win32_SID.SID="S-1-5-32-2707581722-3970398075-3301609242-3412871183-2565310287-2959982868-2531230773-2372594412" Win32_DCOMApplication.AppID="{50E1C3FD-EC35-490E-9CCF-C68F9AE91919}" - Win32_SID.SID="S-1-15-3-1024-2707581722-3970398075-3301609242-3412871183-2565310287-2959982868-2531230773-2372594412" Win32_DCOMApplication.AppID="{513D916F-2A8E-4F51-AEAB-0CBC76FB1AF8}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{513D916F-2A8E-4F51-AEAB-0CBC76FB1AF8}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{513D916F-2A8E-4F51-AEAB-0CBC76FB1AF8}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{514B5E31-5596-422F-BE58-D804464683B5}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{514B5E31-5596-422F-BE58-D804464683B5}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{514B5E31-5596-422F-BE58-D804464683B5}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{51a1467f-96a2-4b1c-9632-4b4d950fe216}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{51a1467f-96a2-4b1c-9632-4b4d950fe216}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{51a1467f-96a2-4b1c-9632-4b4d950fe216}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{52B65EB7-907C-4D83-A535-283BE9104DE4}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{52B65EB7-907C-4D83-A535-283BE9104DE4}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{52B65EB7-907C-4D83-A535-283BE9104DE4}" - Win32_SID.SID="S-1-5-32-545" Win32_DCOMApplication.AppID="{57360832-5F9B-4190-8467-000D2D510212}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{57360832-5F9B-4190-8467-000D2D510212}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{57360832-5F9B-4190-8467-000D2D510212}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{588E10FA-0618-48A1-BE2F-0AD93E899FCC}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{588E10FA-0618-48A1-BE2F-0AD93E899FCC}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{588E10FA-0618-48A1-BE2F-0AD93E899FCC}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{59347292-B72D-41F2-98C5-E9ACA1B247A2}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{59347292-B72D-41F2-98C5-E9ACA1B247A2}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{59c7f6ec-7d18-412f-a68e-877982768e61}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{59c7f6ec-7d18-412f-a68e-877982768e61}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{59c7f6ec-7d18-412f-a68e-877982768e61}" - Win32_SID.SID="S-1-5-20" Win32_DCOMApplication.AppID="{5A4ED3BD-2F40-44B4-93DA-2B5ECC197B26}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{5A4ED3BD-2F40-44B4-93DA-2B5ECC197B26}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{5A4ED3BD-2F40-44B4-93DA-2B5ECC197B26}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{5A4ED3BD-2F40-44B4-93DA-2B5ECC197B26}" - Win32_SID.SID="S-1-15-2-155514346-2573954481-755741238-1654018636-1233331829-3075935687-2861478708" Win32_DCOMApplication.AppID="{5A4ED3BD-2F40-44B4-93DA-2B5ECC197B26}" - Win32_SID.SID="S-1-15-2-460998419-1048838040-1306765847-3036341007-2963401754-1630001092-3310782549" Win32_DCOMApplication.AppID="{5A4ED3BD-2F40-44B4-93DA-2B5ECC197B26}" - Win32_SID.SID="S-1-15-3-1024-2152139330-3124897132-671935159-3762809077-3273429135-2233686478-1435376800-2420532691" Win32_DCOMApplication.AppID="{5BC7A3A1-E905-414B-9790-E511346F5CA6}" - Win32_SID.SID="S-1-15-3-1024-3625662137-2682091254-856171984-2868379045-3001028726-1009205972-4175949866-684286152" Win32_DCOMApplication.AppID="{5BC7A3A1-E905-414B-9790-E511346F5CA6}" - Win32_SID.SID="S-1-5-21-2702878673-795188819-444038987-1030" Win32_DCOMApplication.AppID="{5BC7A3A1-E905-414B-9790-E511346F5CA6}" - Win32_SID.SID="S-1-5-21-2702878673-795188819-444038987-1031" Win32_DCOMApplication.AppID="{5BC7A3A1-E905-414B-9790-E511346F5CA6}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{5BC7A3A1-E905-414B-9790-E511346F5CA6}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{5BC7A3A1-E905-414B-9790-E511346F5CA6}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{5BC7A3A1-E905-414B-9790-E511346F5CA6}" - Win32_SID.SID="S-1-5-32-545" Win32_DCOMApplication.AppID="{5C03E1B1-EB13-4DF1-8943-2FE8E7D5F309}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{5C03E1B1-EB13-4DF1-8943-2FE8E7D5F309}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{5C03E1B1-EB13-4DF1-8943-2FE8E7D5F309}" - Win32_SID.SID="S-1-5-80-3028837079-3186095147-955107200-3701964851-1150726376" Win32_DCOMApplication.AppID="{5E1395B2-B685-44e3-8AED-E2304D85ACD1}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{5E1395B2-B685-44e3-8AED-E2304D85ACD1}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{5E1395B2-B685-44e3-8AED-E2304D85ACD1}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{60173D16-A550-47f0-A14B-C6F9E4DA0831}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{60173D16-A550-47f0-A14B-C6F9E4DA0831}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{60173D16-A550-47f0-A14B-C6F9E4DA0831}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{642ef9d6-48a5-476b-919a-a507cfd02c0f}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{642ef9d6-48a5-476b-919a-a507cfd02c0f}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{642ef9d6-48a5-476b-919a-a507cfd02c0f}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{64bb4bed-73f6-4d74-a048-035b4f63ec98}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{64bb4bed-73f6-4d74-a048-035b4f63ec98}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{64bb4bed-73f6-4d74-a048-035b4f63ec98}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{64bb4bed-73f6-4d74-a048-035b4f63ec98}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{64bb4bed-73f6-4d74-a048-035b4f63ec98}" - Win32_SID.SID="S-1-15-3-1024-1692970155-4054893335-185714091-3362601943-3526593181-1159816984-2199008581-497492991" Win32_DCOMApplication.AppID="{64D4882D-CB4E-4ea2-95B5-CD77F8ED8AB2}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{64D4882D-CB4E-4ea2-95B5-CD77F8ED8AB2}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{64D4882D-CB4E-4ea2-95B5-CD77F8ED8AB2}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{64D4882D-CB4E-4ea2-95B5-CD77F8ED8AB2}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{64D4882D-CB4E-4ea2-95B5-CD77F8ED8AB2}" - Win32_SID.SID="S-1-15-3-1024-1502825166-1963708345-2616377461-2562897074-4192028372-3968301570-1997628692-1435953622" Win32_DCOMApplication.AppID="{653C5148-4DCE-4905-9CFD-1B23662D3D9E}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{653C5148-4DCE-4905-9CFD-1B23662D3D9E}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{653C5148-4DCE-4905-9CFD-1B23662D3D9E}" - Win32_SID.SID="S-1-5-32-545" Win32_DCOMApplication.AppID="{6571503D-D0FB-4D98-BBC3-1FBB2B3F344E}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{6571503D-D0FB-4D98-BBC3-1FBB2B3F344E}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{6571503D-D0FB-4D98-BBC3-1FBB2B3F344E}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{6B1DE8B3-DFB1-4C0E-9D9A-89CA730DE93F}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{6D9A7A40-DDCA-414E-B48E-DFB032C03C1B}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{6D9A7A40-DDCA-414E-B48E-DFB032C03C1B}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{6D9A7A40-DDCA-414E-B48E-DFB032C03C1B}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{6F4B8D94-91FE-4665-B1E7-A34AE3F299F6}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{6F4B8D94-91FE-4665-B1E7-A34AE3F299F6}" - Win32_SID.SID="S-1-5-11" Win32_DCOMApplication.AppID="{6F4B8D94-91FE-4665-B1E7-A34AE3F299F6}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{6F4B8D94-91FE-4665-B1E7-A34AE3F299F6}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{6F4B8D94-91FE-4665-B1E7-A34AE3F299F6}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{6F65B602-F798-4094-8A41-A2A61961E5E8}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{6F65B602-F798-4094-8A41-A2A61961E5E8}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{6F65B602-F798-4094-8A41-A2A61961E5E8}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{7007ACC5-3202-11D1-AAD2-00805FC1270E}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{7007ACC5-3202-11D1-AAD2-00805FC1270E}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{7007ACC5-3202-11D1-AAD2-00805FC1270E}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{7007ACD1-3202-11D1-AAD2-00805FC1270E}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{7007ACD1-3202-11D1-AAD2-00805FC1270E}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{7007ACD1-3202-11D1-AAD2-00805FC1270E}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{72A7994A-3092-4054-B6BE-08FF81AEEFFC}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{72A7994A-3092-4054-B6BE-08FF81AEEFFC}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{72A7994A-3092-4054-B6BE-08FF81AEEFFC}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{730BFCEC-E4BF-4D3A-9FBB-01DD132467A4}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{730BFCEC-E4BF-4D3A-9FBB-01DD132467A4}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{752073A2-23F2-4396-85F0-8FDB879ED0ED}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{752073A2-23F2-4396-85F0-8FDB879ED0ED}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{752073A2-23F2-4396-85F0-8FDB879ED0ED}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{752073A2-23F2-4396-85F0-8FDB879ED0ED}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{752073A2-23F2-4396-85F0-8FDB879ED0ED}" - Win32_SID.SID="S-1-5-6" Win32_DCOMApplication.AppID="{7578dea3-a321-4d03-8b60-fc6749ae7385}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{7578dea3-a321-4d03-8b60-fc6749ae7385}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{7578dea3-a321-4d03-8b60-fc6749ae7385}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{7578dea3-a321-4d03-8b60-fc6749ae7385}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{7578dea3-a321-4d03-8b60-fc6749ae7385}" - Win32_SID.SID="S-1-15-3-1024-4044835139-2658482041-3127973164-329287231-3865880861-1938685643-461067658-1087000422" Win32_DCOMApplication.AppID="{7578dea3-a321-4d03-8b60-fc6749ae7385}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{7578dea3-a321-4d03-8b60-fc6749ae7385}" - Win32_SID.SID="S-1-5-20" Win32_DCOMApplication.AppID="{7578dea3-a321-4d03-8b60-fc6749ae7385}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{76db1bf3-e820-4765-a1b2-0b16a86b1950}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{76db1bf3-e820-4765-a1b2-0b16a86b1950}" - Win32_SID.SID="S-1-5-11" Win32_DCOMApplication.AppID="{76db1bf3-e820-4765-a1b2-0b16a86b1950}" - Win32_SID.SID="S-1-5-32-546" Win32_DCOMApplication.AppID="{76db1bf3-e820-4765-a1b2-0b16a86b1950}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{777BA81A-2498-4875-933A-3067DE883070}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{777BA81A-2498-4875-933A-3067DE883070}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{777BA81A-2498-4875-933A-3067DE883070}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{7953C53B-4031-43ca-9AE7-033F565EFD5F}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{7953C53B-4031-43ca-9AE7-033F565EFD5F}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{7966b4d8-4fdc-4126-a10b-39a3209ad251}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{7966b4d8-4fdc-4126-a10b-39a3209ad251}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{7966b4d8-4fdc-4126-a10b-39a3209ad251}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{7966b4d8-4fdc-4126-a10b-39a3209ad251}" - Win32_SID.SID="S-1-15-3-1024-3623855041-1826999956-3747069818-3525260223-3747374510-1746272624-950601168-56556331" Win32_DCOMApplication.AppID="{7A076CE1-4B31-452a-A4F1-0304C8738100}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{7A076CE1-4B31-452a-A4F1-0304C8738100}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{7A076CE1-4B31-452a-A4F1-0304C8738100}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{7aa7790d-75d7-484b-98a1-3913d022091d}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{7aa7790d-75d7-484b-98a1-3913d022091d}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{7aa7790d-75d7-484b-98a1-3913d022091d}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{7aa7790d-75d7-484b-98a1-3913d022091d}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{7C8AB6D9-8764-4033-8F62-2FE896E54B32}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{7C8AB6D9-8764-4033-8F62-2FE896E54B32}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{7C8AB6D9-8764-4033-8F62-2FE896E54B32}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{7DF8EF76-D449-485f-B4EB-58DC96B31EDB}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{7DF8EF76-D449-485f-B4EB-58DC96B31EDB}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{7DF8EF76-D449-485f-B4EB-58DC96B31EDB}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{7E55A26D-EF95-4A45-9F55-21E52ADF9887}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{7E55A26D-EF95-4A45-9F55-21E52ADF9887}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{7E55A26D-EF95-4A45-9F55-21E52ADF9887}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{7E55A26D-EF95-4A45-9F55-21E52ADF9887}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{7EAD5C10-8B3F-11E6-AE22-56B6B6499611}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{7EAD5C10-8B3F-11E6-AE22-56B6B6499611}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{7EAD5C10-8B3F-11E6-AE22-56B6B6499611}" - Win32_SID.SID="S-1-5-32-545" Win32_DCOMApplication.AppID="{82D94FB3-7FE6-4797-BB72-9A886C66073B}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{82D94FB3-7FE6-4797-BB72-9A886C66073B}" - Win32_SID.SID="S-1-5-20" Win32_DCOMApplication.AppID="{82D94FB3-7FE6-4797-BB72-9A886C66073B}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{82D94FB3-7FE6-4797-BB72-9A886C66073B}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{82D94FB3-7FE6-4797-BB72-9A886C66073B}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{831EF03D-BAF2-46AD-81B6-6AA5C9E30317}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{831EF03D-BAF2-46AD-81B6-6AA5C9E30317}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{831EF03D-BAF2-46AD-81B6-6AA5C9E30317}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{831EF03D-BAF2-46AD-81B6-6AA5C9E30317}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{831EF03D-BAF2-46AD-81B6-6AA5C9E30317}" - Win32_SID.SID="S-1-5-32-545" Win32_DCOMApplication.AppID="{831EF03D-BAF2-46AD-81B6-6AA5C9E30317}" - Win32_SID.SID="S-1-5-80-223807737-1693445485-119162242-1977420160-1403034029" Win32_DCOMApplication.AppID="{84D586C4-A423-11D2-B943-00C04F79D22F}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{86d5eb8a-859f-4c7b-a76b-2bd819b7a850}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{86d5eb8a-859f-4c7b-a76b-2bd819b7a850}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{86d5eb8a-859f-4c7b-a76b-2bd819b7a850}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{86F80216-5DD6-4F43-953B-35EF40A35AEE}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{86F80216-5DD6-4F43-953B-35EF40A35AEE}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{86F80216-5DD6-4F43-953B-35EF40A35AEE}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{87BB326B-E4A0-4DE1-94F0-B9F41D0C6059}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{87BB326B-E4A0-4DE1-94F0-B9F41D0C6059}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{87df41c9-cb91-4709-849c-f8f3c7058b50}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{87df41c9-cb91-4709-849c-f8f3c7058b50}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{87df41c9-cb91-4709-849c-f8f3c7058b50}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{87df41c9-cb91-4709-849c-f8f3c7058b50}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{87df41c9-cb91-4709-849c-f8f3c7058b50}" - Win32_SID.SID="S-1-15-3-1024-79080987-3398622760-2608912076-1085899501-4039864605-4024366022-736258278-368603348" Win32_DCOMApplication.AppID="{88283d7c-46f4-47d5-8fc2-db0b5cf0cb54}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{88283d7c-46f4-47d5-8fc2-db0b5cf0cb54}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{88283d7c-46f4-47d5-8fc2-db0b5cf0cb54}" - Win32_SID.SID="S-1-5-6" Win32_DCOMApplication.AppID="{88283d7c-46f4-47d5-8fc2-db0b5cf0cb54}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{8A10EE91-3ECA-4d0b-8A3F-8A26D26E03FC}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{8A10EE91-3ECA-4d0b-8A3F-8A26D26E03FC}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{8be0366c-8522-40be-8b08-cb26557f2854}" - Win32_SID.SID="S-1-5-20" Win32_DCOMApplication.AppID="{8be0366c-8522-40be-8b08-cb26557f2854}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{8be0366c-8522-40be-8b08-cb26557f2854}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{8C334A55-DDB9-491C-817E-35A6B85D2ECB}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{8C334A55-DDB9-491C-817E-35A6B85D2ECB}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{8C334A55-DDB9-491C-817E-35A6B85D2ECB}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{8C482DCE-2644-4419-AEFF-189219F916B9}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{8C482DCE-2644-4419-AEFF-189219F916B9}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{8C482DCE-2644-4419-AEFF-189219F916B9}" - Win32_SID.SID="S-1-5-80-4155767994-3874329934-3800885181-2130851812-726865888" Win32_DCOMApplication.AppID="{8cec58ae-07a1-11d9-b15e-000d56bfe6ee}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{8cec58ae-07a1-11d9-b15e-000d56bfe6ee}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{8cec58ae-07a1-11d9-b15e-000d56bfe6ee}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{8D02CEE1-70BC-449A-B873-70AC08B2676A}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{8D02CEE1-70BC-449A-B873-70AC08B2676A}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{8D15A4F3-1BE5-4120-8A4D-2EF92A5DD58D}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{8D15A4F3-1BE5-4120-8A4D-2EF92A5DD58D}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{8D15A4F3-1BE5-4120-8A4D-2EF92A5DD58D}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{8D15A4F3-1BE5-4120-8A4D-2EF92A5DD58D}" - Win32_SID.SID="S-1-5-32-545" Win32_DCOMApplication.AppID="{8DF61FB6-3223-4E2D-8A92-D937DDB0DF4C}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{8DF61FB6-3223-4E2D-8A92-D937DDB0DF4C}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{8DF61FB6-3223-4E2D-8A92-D937DDB0DF4C}" - Win32_SID.SID="S-1-5-11" Win32_DCOMApplication.AppID="{8DF61FB6-3223-4E2D-8A92-D937DDB0DF4C}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{8E44A57C-5638-44D3-9B83-34DF70EB57F2}" - Win32_SID.SID="S-1-15-3-1024-1701033769-137094913-3738083205-577272984-1204217555-1180762924-3352773070-2589626690" Win32_DCOMApplication.AppID="{8E44A57C-5638-44D3-9B83-34DF70EB57F2}" - Win32_SID.SID="S-1-5-21-2702878673-795188819-444038987-1030" Win32_DCOMApplication.AppID="{8E44A57C-5638-44D3-9B83-34DF70EB57F2}" - Win32_SID.SID="S-1-5-21-2702878673-795188819-444038987-1210" Win32_DCOMApplication.AppID="{8E44A57C-5638-44D3-9B83-34DF70EB57F2}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{8E44A57C-5638-44D3-9B83-34DF70EB57F2}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{8e7fae4d-cff0-41d3-a326-5a80470264bb}" - Win32_SID.SID="S-1-5-20" Win32_DCOMApplication.AppID="{8e7fae4d-cff0-41d3-a326-5a80470264bb}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{8e7fae4d-cff0-41d3-a326-5a80470264bb}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{90B553F3-415D-44D8-8665-C2F78763F8F1}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{90B553F3-415D-44D8-8665-C2F78763F8F1}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{9200689A-F979-4eea-8830-0E1D6B74821F}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{9200689A-F979-4eea-8830-0E1D6B74821F}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{9200689A-F979-4eea-8830-0E1D6B74821F}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{924DC564-16A6-42EB-929A-9A61FA7DA06F}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{924DC564-16A6-42EB-929A-9A61FA7DA06F}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{924DC564-16A6-42EB-929A-9A61FA7DA06F}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{924DC564-16A6-42EB-929A-9A61FA7DA06F}" - Win32_SID.SID="S-1-5-6" Win32_DCOMApplication.AppID="{924DC564-16A6-42EB-929A-9A61FA7DA06F}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{924DC564-16A6-42EB-929A-9A61FA7DA06F}" - Win32_SID.SID="S-1-15-3-1024-1502825166-1963708345-2616377461-2562897074-4192028372-3968301570-1997628692-1435953622" Win32_DCOMApplication.AppID="{92940059-57cc-41bc-a042-80a6247ffce6}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{92940059-57cc-41bc-a042-80a6247ffce6}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{92940059-57cc-41bc-a042-80a6247ffce6}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{92940059-57cc-41bc-a042-80a6247ffce6}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{92940059-57cc-41bc-a042-80a6247ffce6}" - Win32_SID.SID="S-1-15-2-3624051433-2125758914-1423191267-1740899205-1073925389-3782572162-737981194-3859068477-1314311106-1651661491-1685393560" Win32_DCOMApplication.AppID="{92940059-57cc-41bc-a042-80a6247ffce6}" - Win32_SID.SID="S-1-15-2-3624051433-2125758914-1423191267-1740899205-1073925389-3782572162-737981194-2385269614-3243675-834220592-3047885450" Win32_DCOMApplication.AppID="{941C53C2-D2D7-4C74-84EA-28F8F6438D4B}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{941C53C2-D2D7-4C74-84EA-28F8F6438D4B}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{941C53C2-D2D7-4C74-84EA-28F8F6438D4B}" - Win32_SID.SID="S-1-5-32-545" Win32_DCOMApplication.AppID="{973d20d7-562d-44b9-b70b-5a0f49ccdf3f}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{973d20d7-562d-44b9-b70b-5a0f49ccdf3f}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{973d20d7-562d-44b9-b70b-5a0f49ccdf3f}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{973d20d7-562d-44b9-b70b-5a0f49ccdf3f}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{973d20d7-562d-44b9-b70b-5a0f49ccdf3f}" - Win32_SID.SID="S-1-15-3-1024-3623855041-1826999956-3747069818-3525260223-3747374510-1746272624-950601168-56556331" Win32_DCOMApplication.AppID="{98a89e0c-1fde-4c2a-a373-b04831e6aa60}" - Win32_SID.SID="S-1-1-0" Win32_DCOMApplication.AppID="{98a89e0c-1fde-4c2a-a373-b04831e6aa60}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{98a89e0c-1fde-4c2a-a373-b04831e6aa60}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{990F07C7-78DC-4BD2-B145-5F791410BDDE}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{990F07C7-78DC-4BD2-B145-5F791410BDDE}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{990F07C7-78DC-4BD2-B145-5F791410BDDE}" - Win32_SID.SID="S-1-5-32-545" Win32_DCOMApplication.AppID="{9980CAAB-B154-408C-B5FD-29A701E40825}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{9980CAAB-B154-408C-B5FD-29A701E40825}" - Win32_SID.SID="S-1-5-80-2586557155-168560303-1373426920-983201488-1499765686" Win32_DCOMApplication.AppID="{9D73451F-6BFC-47C7-95FB-46598431BC19}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{9D73451F-6BFC-47C7-95FB-46598431BC19}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{9D73451F-6BFC-47C7-95FB-46598431BC19}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{9D73451F-6BFC-47C7-95FB-46598431BC19}" - Win32_SID.SID="S-1-5-20" Win32_DCOMApplication.AppID="{9D73451F-6BFC-47C7-95FB-46598431BC19}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{9D73451F-6BFC-47C7-95FB-46598431BC19}" - Win32_SID.SID="S-1-15-3-1024-1502825166-1963708345-2616377461-2562897074-4192028372-3968301570-1997628692-1435953622" Win32_DCOMApplication.AppID="{9df523b0-a6c0-4ea9-b5f1-f4565c3ac8b8}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{9df523b0-a6c0-4ea9-b5f1-f4565c3ac8b8}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{9df523b0-a6c0-4ea9-b5f1-f4565c3ac8b8}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{A0316E2D-8793-4E74-AA48-8CE2ED05BA57}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{A1F4E726-8CF1-11D1-BF92-0060081ED811}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{A1F4E726-8CF1-11D1-BF92-0060081ED811}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{A1F4E726-8CF1-11D1-BF92-0060081ED811}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{a2d9ca22-a492-400c-b875-78ac25c0a6f3}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{a2d9ca22-a492-400c-b875-78ac25c0a6f3}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{a2d9ca22-a492-400c-b875-78ac25c0a6f3}" - Win32_SID.SID="S-1-5-20" Win32_DCOMApplication.AppID="{a3a81ee7-be13-4dd8-89f7-26aba705d81d}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{a3a81ee7-be13-4dd8-89f7-26aba705d81d}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{a3a81ee7-be13-4dd8-89f7-26aba705d81d}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{a463fcb9-6b1c-4e0d-a80b-a2ca7999e25d}" - Win32_SID.SID="S-1-15-3-1024-3623855041-1826999956-3747069818-3525260223-3747374510-1746272624-950601168-56556331" Win32_DCOMApplication.AppID="{A4B07E49-6567-4FB8-8D39-01920E3B2357}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{A4B07E49-6567-4FB8-8D39-01920E3B2357}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{A4B07E49-6567-4FB8-8D39-01920E3B2357}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{a4c31131-ff70-4984-afd6-0609ced53ad6}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{a4c31131-ff70-4984-afd6-0609ced53ad6}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{a4c31131-ff70-4984-afd6-0609ced53ad6}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{A67168DB-418E-4087-B63E-852E822BB1ED}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{A67168DB-418E-4087-B63E-852E822BB1ED}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{A67168DB-418E-4087-B63E-852E822BB1ED}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{A67168DB-418E-4087-B63E-852E822BB1ED}" - Win32_SID.SID="S-1-15-3-1024-2165721414-884371012-2773947476-2437641138-4209659587-972658821-4033014341-190168586" Win32_DCOMApplication.AppID="{A67168DB-418E-4087-B63E-852E822BB1ED}" - Win32_SID.SID="S-1-15-3-1024-2152139330-3124897132-671935159-3762809077-3273429135-2233686478-1435376800-2420532691" Win32_DCOMApplication.AppID="{A67168DB-418E-4087-B63E-852E822BB1ED}" - Win32_SID.SID="S-1-15-3-1024-3167453650-624722384-889205278-321484983-714554697-3592933102-807660695-1632717421" Win32_DCOMApplication.AppID="{A6BFEA43-501F-456F-A845-983D3AD7B8F0}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{A6BFEA43-501F-456F-A845-983D3AD7B8F0}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{A6BFEA43-501F-456F-A845-983D3AD7B8F0}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{A79DB36D-6218-48e6-9EC9-DCBA9A39BF0F}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{A79DB36D-6218-48e6-9EC9-DCBA9A39BF0F}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{A79DB36D-6218-48e6-9EC9-DCBA9A39BF0F}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{A7A63E5C-3877-4840-8727-C1EA9D7A4D50}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{A7A63E5C-3877-4840-8727-C1EA9D7A4D50}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{A7A63E5C-3877-4840-8727-C1EA9D7A4D50}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{AA0B85DA-FDDF-4272-8D1D-FF9B966D75B0}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{AA0B85DA-FDDF-4272-8D1D-FF9B966D75B0}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{AA0B85DA-FDDF-4272-8D1D-FF9B966D75B0}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{AA0B85DA-FDDF-4272-8D1D-FF9B966D75B0}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{AA65DD7C-83AC-48C0-A6FD-9B61FEBF8800}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{AA65DD7C-83AC-48C0-A6FD-9B61FEBF8800}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{AA65DD7C-83AC-48C0-A6FD-9B61FEBF8800}" - Win32_SID.SID="S-1-5-32-545" Win32_DCOMApplication.AppID="{AA65DD7C-83AC-48C0-A6FD-9B61FEBF8800}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{AC05815A-A8D5-434B-B9A8-2FFD162F2B7D}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{AC05815A-A8D5-434B-B9A8-2FFD162F2B7D}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{AC05815A-A8D5-434B-B9A8-2FFD162F2B7D}" - Win32_SID.SID="S-1-15-3-1024-2922296261-1647482768-2017091146-3858667068-4135663662-2931985894-1627820925-818366431" Win32_DCOMApplication.AppID="{ac793c1d-eb2f-4ffd-b1ec-7af1aaaf3325}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{ac793c1d-eb2f-4ffd-b1ec-7af1aaaf3325}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{ac793c1d-eb2f-4ffd-b1ec-7af1aaaf3325}" - Win32_SID.SID="S-1-5-6" Win32_DCOMApplication.AppID="{ac793c1d-eb2f-4ffd-b1ec-7af1aaaf3325}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{AD829705-CCA8-44D4-88E0-331E48336059}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{AD829705-CCA8-44D4-88E0-331E48336059}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{AD829705-CCA8-44D4-88E0-331E48336059}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{ada41b3c-c6fd-4a08-8cc1-d6efde67be7d}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{ada41b3c-c6fd-4a08-8cc1-d6efde67be7d}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{ada41b3c-c6fd-4a08-8cc1-d6efde67be7d}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{ada41b3c-c6fd-4a08-8cc1-d6efde67be7d}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{ada41b3c-c6fd-4a08-8cc1-d6efde67be7d}" - Win32_SID.SID="S-1-5-32-545" Win32_DCOMApplication.AppID="{b0316d0c-da2f-40e0-9f91-f600caf042dc}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{b0316d0c-da2f-40e0-9f91-f600caf042dc}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{b0316d0c-da2f-40e0-9f91-f600caf042dc}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{b0316d0c-da2f-40e0-9f91-f600caf042dc}" - Win32_SID.SID="S-1-5-20" Win32_DCOMApplication.AppID="{b0316d0c-da2f-40e0-9f91-f600caf042dc}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{b0316d0c-da2f-40e0-9f91-f600caf042dc}" - Win32_SID.SID="S-1-15-3-1024-79080987-3398622760-2608912076-1085899501-4039864605-4024366022-736258278-368603348" Win32_DCOMApplication.AppID="{B06FF84E-0A77-4DD2-A919-0EABD8979DC1}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{B06FF84E-0A77-4DD2-A919-0EABD8979DC1}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{b21858c6-9711-4257-99c8-5c0084bebce1}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{b21858c6-9711-4257-99c8-5c0084bebce1}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{b21858c6-9711-4257-99c8-5c0084bebce1}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{b21858c6-9711-4257-99c8-5c0084bebce1}" - Win32_SID.SID="S-1-15-2-155514346-2573954481-755741238-1654018636-1233331829-3075935687-2861478708" Win32_DCOMApplication.AppID="{B366DEBE-645B-43A5-B865-DDD82C345492}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{B49FBDA8-D846-43c4-ACAA-06D7794374C8}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{B49FBDA8-D846-43c4-ACAA-06D7794374C8}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{B6C292BC-7C88-41EE-8B54-8EC92617E599}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{B6C292BC-7C88-41EE-8B54-8EC92617E599}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{B6C292BC-7C88-41EE-8B54-8EC92617E599}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{B8C54A54-355E-11D3-83EB-00A0C92A2F2D}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{B8C54A54-355E-11D3-83EB-00A0C92A2F2D}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{B98C6EB5-6AA7-471E-B5C5-D04FD677DB3B}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{B98C6EB5-6AA7-471E-B5C5-D04FD677DB3B}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{B98C6EB5-6AA7-471E-B5C5-D04FD677DB3B}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{BA126F01-2166-11D1-B1D0-00805FC1270E}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{BA126F01-2166-11D1-B1D0-00805FC1270E}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{BA126F01-2166-11D1-B1D0-00805FC1270E}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{BBD8C065-5E6C-4e88-BFD7-BE3E6D1C063B}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{BBD8C065-5E6C-4e88-BFD7-BE3E6D1C063B}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{BBD8C065-5E6C-4e88-BFD7-BE3E6D1C063B}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{BCEA735B-4DAC-4B71-9C47-1D560AFD2A9B}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{BCEA735B-4DAC-4B71-9C47-1D560AFD2A9B}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{BCEA735B-4DAC-4B71-9C47-1D560AFD2A9B}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{BD54C901-076B-434E-B6C7-17C531F4AB41}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{BD54C901-076B-434E-B6C7-17C531F4AB41}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{BD54C901-076B-434E-B6C7-17C531F4AB41}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{BEEE3226-ECC5-464E-981B-BC123674C8DE}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{BEEE3226-ECC5-464E-981B-BC123674C8DE}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{C0E1CE99-C981-44A2-AC4C-41036FAC6593}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{C0E1CE99-C981-44A2-AC4C-41036FAC6593}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{C0E1CE99-C981-44A2-AC4C-41036FAC6593}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{C0E1CE99-C981-44A2-AC4C-41036FAC6593}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{C0E1CE99-C981-44A2-AC4C-41036FAC6593}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{C0E1CE99-C981-44A2-AC4C-41036FAC6593}" - Win32_SID.SID="S-1-5-80-2731152606-4244467407-1946816704-3721569673-479255522" Win32_DCOMApplication.AppID="{C0E1CE99-C981-44A2-AC4C-41036FAC6593}" - Win32_SID.SID="S-1-5-80-3246321066-2451215914-3422911474-2201726393-166328789" Win32_DCOMApplication.AppID="{C0E1CE99-C981-44A2-AC4C-41036FAC6593}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{C100BEBB-D33A-4a4b-BF23-BBEF4663D017}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{C100BEBB-D33A-4a4b-BF23-BBEF4663D017}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{C100BEBB-D33A-4a4b-BF23-BBEF4663D017}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{c2a71820-3463-498f-bab7-4798795a2ff6}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{c2a71820-3463-498f-bab7-4798795a2ff6}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{c2a71820-3463-498f-bab7-4798795a2ff6}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{C2E9756F-8155-4EAC-9ED5-0B690169D412}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{C2E9756F-8155-4EAC-9ED5-0B690169D412}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{C2E9756F-8155-4EAC-9ED5-0B690169D412}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{C2E9756F-8155-4EAC-9ED5-0B690169D412}" - Win32_SID.SID="S-1-15-3-1024-1502825166-1963708345-2616377461-2562897074-4192028372-3968301570-1997628692-1435953622" Win32_DCOMApplication.AppID="{C2EA2356-994C-45AF-BDAE-10796F73BC47}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{C2EA2356-994C-45AF-BDAE-10796F73BC47}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{C2EA2356-994C-45AF-BDAE-10796F73BC47}" - Win32_SID.SID="S-1-5-6" Win32_DCOMApplication.AppID="{C2EA2356-994C-45AF-BDAE-10796F73BC47}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{C3A34354-660F-41EE-B072-2AEA5E3A80AF}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{C3A34354-660F-41EE-B072-2AEA5E3A80AF}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{C3A34354-660F-41EE-B072-2AEA5E3A80AF}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{C5D3C0E1-DC41-4F83-8BA8-CC0D46BCCDE3}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{C5D3C0E1-DC41-4F83-8BA8-CC0D46BCCDE3}" - Win32_SID.SID="S-1-1-0" Win32_DCOMApplication.AppID="{C63261E4-6052-41FF-B919-496FECF4C4E5}" - Win32_SID.SID="S-1-1-0" Win32_DCOMApplication.AppID="{C63261E4-6052-41FF-B919-496FECF4C4E5}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{C63261E4-6052-41FF-B919-496FECF4C4E5}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{C63261E4-6052-41FF-B919-496FECF4C4E5}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{C844C79D-AED8-4DCE-AB25-4D359BED84F8}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{C844C79D-AED8-4DCE-AB25-4D359BED84F8}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{C844C79D-AED8-4DCE-AB25-4D359BED84F8}" - Win32_SID.SID="S-1-5-11" Win32_DCOMApplication.AppID="{C844C79D-AED8-4DCE-AB25-4D359BED84F8}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{C844C79D-AED8-4DCE-AB25-4D359BED84F8}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{C844C79D-AED8-4DCE-AB25-4D359BED84F8}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{C844C79D-AED8-4DCE-AB25-4D359BED84F8}" - Win32_SID.SID="S-1-5-11" Win32_DCOMApplication.AppID="{C844C79D-AED8-4DCE-AB25-4D359BED84F8}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{C92A9617-0EAE-4235-BD2B-84540EF1FFA9}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{C945AD06-534F-460C-8CB4-17C33099AF81}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{C945AD06-534F-460C-8CB4-17C33099AF81}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{C945AD06-534F-460C-8CB4-17C33099AF81}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{C945AD06-534F-460C-8CB4-17C33099AF81}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{C97E2AEF-AB0E-4FA6-BA29-1A1A7CCBA125}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{C97E2AEF-AB0E-4FA6-BA29-1A1A7CCBA125}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{C97E2AEF-AB0E-4FA6-BA29-1A1A7CCBA125}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{C97E2AEF-AB0E-4FA6-BA29-1A1A7CCBA125}" - Win32_SID.SID="S-1-5-20" Win32_DCOMApplication.AppID="{C97E2AEF-AB0E-4FA6-BA29-1A1A7CCBA125}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{C97E2AEF-AB0E-4FA6-BA29-1A1A7CCBA125}" - Win32_SID.SID="S-1-15-3-1024-1692970155-4054893335-185714091-3362601943-3526593181-1159816984-2199008581-497492991" Win32_DCOMApplication.AppID="{C97E2AEF-AB0E-4FA6-BA29-1A1A7CCBA125}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{ca8c87c1-929d-45ba-94db-ef8e6cb346ad}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{ca8c87c1-929d-45ba-94db-ef8e6cb346ad}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{ca8c87c1-929d-45ba-94db-ef8e6cb346ad}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{CB363445-F453-4C1E-8EE4-BD123C5E394F}" - Win32_SID.SID="S-1-1-0" Win32_DCOMApplication.AppID="{CB363445-F453-4C1E-8EE4-BD123C5E394F}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{CB363445-F453-4C1E-8EE4-BD123C5E394F}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{CB43451C-E132-4866-B714-435253C98BBA}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{CB43451C-E132-4866-B714-435253C98BBA}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{CCA04D30-62E9-4801-B935-EDC8EA177B13}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{CCA04D30-62E9-4801-B935-EDC8EA177B13}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{CCFDD24D-CEAB-458B-A4F1-F884973395DF}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{CCFDD24D-CEAB-458B-A4F1-F884973395DF}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{cd93979b-c14e-4c29-87a4-75e4f9fa5e0a}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{cd93979b-c14e-4c29-87a4-75e4f9fa5e0a}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{cd93979b-c14e-4c29-87a4-75e4f9fa5e0a}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{cd93979b-c14e-4c29-87a4-75e4f9fa5e0a}" - Win32_SID.SID="S-1-5-20" Win32_DCOMApplication.AppID="{cd93979b-c14e-4c29-87a4-75e4f9fa5e0a}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{cd93979b-c14e-4c29-87a4-75e4f9fa5e0a}" - Win32_SID.SID="S-1-5-32-545" Win32_DCOMApplication.AppID="{CE0E0BE8-CF56-4577-9577-34CC96AC087C}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{CE0E0BE8-CF56-4577-9577-34CC96AC087C}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{CE0E0BE8-CF56-4577-9577-34CC96AC087C}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{CE0E0BE8-CF56-4577-9577-34CC96AC087C}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{CE166E40-1E72-45B9-94C9-3B2050E8f180}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{cee8ccc9-4f6b-4469-a235-5a22869eef03}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{cee8ccc9-4f6b-4469-a235-5a22869eef03}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{cee8ccc9-4f6b-4469-a235-5a22869eef03}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{CF254B00-1986-4b24-A92D-463D01F7E395}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{CF254B00-1986-4b24-A92D-463D01F7E395}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{D011083C-3270-483f-B272-1C231E9DB7CA}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{D011083C-3270-483f-B272-1C231E9DB7CA}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{D215781D-019E-4FA0-903D-0CDCDE13A4F5}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{D726464B-98F1-4627-86CD-4A082A1E5307}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{D726464B-98F1-4627-86CD-4A082A1E5307}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{D726464B-98F1-4627-86CD-4A082A1E5307}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{D726464B-98F1-4627-86CD-4A082A1E5307}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{D726464B-98F1-4627-86CD-4A082A1E5307}" - Win32_SID.SID="S-1-5-32-545" Win32_DCOMApplication.AppID="{D726464B-98F1-4627-86CD-4A082A1E5307}" - Win32_SID.SID="S-1-5-80-223807737-1693445485-119162242-1977420160-1403034029" Win32_DCOMApplication.AppID="{D8D4249F-A8FB-44A7-8AA0-564E8C385BD6}" - Win32_SID.SID="S-1-5-80-123231216-2592883651-3715271367-3753151631-4175906628" Win32_DCOMApplication.AppID="{D8D4249F-A8FB-44A7-8AA0-564E8C385BD6}" - Win32_SID.SID="S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464" Win32_DCOMApplication.AppID="{DCED8DB0-11A5-4b16-AB9D-4E28CA38C99F}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{DCED8DB0-11A5-4b16-AB9D-4E28CA38C99F}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{DCED8DB0-11A5-4b16-AB9D-4E28CA38C99F}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{ddcfd26b-feed-44cd-b71d-79487d2e5e5a}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{ddcfd26b-feed-44cd-b71d-79487d2e5e5a}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{ddcfd26b-feed-44cd-b71d-79487d2e5e5a}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{ddcfd26b-feed-44cd-b71d-79487d2e5e5a}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{ddcfd26b-feed-44cd-b71d-79487d2e5e5a}" - Win32_SID.SID="S-1-5-32-545" Win32_DCOMApplication.AppID="{de5d803e-5d2a-4b5f-9c63-af25a465cc44}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{de5d803e-5d2a-4b5f-9c63-af25a465cc44}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{de5d803e-5d2a-4b5f-9c63-af25a465cc44}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{de5d803e-5d2a-4b5f-9c63-af25a465cc44}" - Win32_SID.SID="S-1-5-20" Win32_DCOMApplication.AppID="{de5d803e-5d2a-4b5f-9c63-af25a465cc44}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{E2B3C97F-6AE1-41AC-817A-F6F92166D7DD}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{E2B3C97F-6AE1-41AC-817A-F6F92166D7DD}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{E2B3C97F-6AE1-41AC-817A-F6F92166D7DD}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{e30984f1-b02b-4c27-a40f-23d11b8c1212}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{e30984f1-b02b-4c27-a40f-23d11b8c1212}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{e30984f1-b02b-4c27-a40f-23d11b8c1212}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{E4422CBC-05DF-4AF1-A84E-A5638479CDE7}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{E4422CBC-05DF-4AF1-A84E-A5638479CDE7}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{E4422CBC-05DF-4AF1-A84E-A5638479CDE7}" - Win32_SID.SID="S-1-5-20" Win32_DCOMApplication.AppID="{E4422CBC-05DF-4AF1-A84E-A5638479CDE7}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{E4422CBC-05DF-4AF1-A84E-A5638479CDE7}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{E4422CBC-05DF-4AF1-A84E-A5638479CDE7}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{E45A56CE-399C-45F0-9E6F-BFAACD3C711F}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{E45A56CE-399C-45F0-9E6F-BFAACD3C711F}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{E45A56CE-399C-45F0-9E6F-BFAACD3C711F}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{E45A56CE-399C-45F0-9E6F-BFAACD3C711F}" - Win32_SID.SID="S-1-5-6" Win32_DCOMApplication.AppID="{E45A56CE-399C-45F0-9E6F-BFAACD3C711F}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{E45A56CE-399C-45F0-9E6F-BFAACD3C711F}" - Win32_SID.SID="S-1-15-3-1024-1502825166-1963708345-2616377461-2562897074-4192028372-3968301570-1997628692-1435953622" Win32_DCOMApplication.AppID="{e53cd6ee-5c5c-4701-9ff2-c204bfed819d}" - Win32_SID.SID="S-1-1-0" Win32_DCOMApplication.AppID="{e53cd6ee-5c5c-4701-9ff2-c204bfed819d}" - Win32_SID.SID="S-1-5-7" Win32_DCOMApplication.AppID="{E7299E79-75E5-47BB-A03D-6D319FB7F886}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{E7299E79-75E5-47BB-A03D-6D319FB7F886}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{E7299E79-75E5-47BB-A03D-6D319FB7F886}" - Win32_SID.SID="S-1-5-32-545" Win32_DCOMApplication.AppID="{E8054D20-497D-4E16-BF41-6E69FCD381A5}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{E8054D20-497D-4E16-BF41-6E69FCD381A5}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{E8054D20-497D-4E16-BF41-6E69FCD381A5}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{E9495B87-D950-4ab5-87A5-FF6D70BF3E90}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{E9495B87-D950-4ab5-87A5-FF6D70BF3E90}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{E9495B87-D950-4ab5-87A5-FF6D70BF3E90}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{E95186C7-7D80-4311-843D-0702CBC8B1E4}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{E95186C7-7D80-4311-843D-0702CBC8B1E4}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{E95186C7-7D80-4311-843D-0702CBC8B1E4}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{EA022610-0748-4c24-B229-6C507EBDFDBB}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{EA022610-0748-4c24-B229-6C507EBDFDBB}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{EA022610-0748-4c24-B229-6C507EBDFDBB}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{EA022610-0748-4c24-B229-6C507EBDFDBB}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{EA2C6B24-C590-457B-BAC8-4A0F9B13B5B8}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{EA2C6B24-C590-457B-BAC8-4A0F9B13B5B8}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{EA2C6B24-C590-457B-BAC8-4A0F9B13B5B8}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{EB521D7D-4095-4E61-88FB-BF25700F142A}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{EB521D7D-4095-4E61-88FB-BF25700F142A}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{EB521D7D-4095-4E61-88FB-BF25700F142A}" - Win32_SID.SID="S-1-5-20" Win32_DCOMApplication.AppID="{EC9846B3-2762-4A6B-A214-6ACB603462D2}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{EC9846B3-2762-4A6B-A214-6ACB603462D2}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{EC9846B3-2762-4A6B-A214-6ACB603462D2}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{EE3C7093-A852-49BA-8AC8-7DFBEC469F72}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{EE3C7093-A852-49BA-8AC8-7DFBEC469F72}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{efe2d6d8-a81b-41e7-ae77-e5244ab80522}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{efe2d6d8-a81b-41e7-ae77-e5244ab80522}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{efe2d6d8-a81b-41e7-ae77-e5244ab80522}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{F135BE18-BF34-4CBD-B1D5-55D49F0DEDCC}" - Win32_SID.SID="S-1-1-0" Win32_DCOMApplication.AppID="{F135BE18-BF34-4CBD-B1D5-55D49F0DEDCC}" - Win32_SID.SID="S-1-5-7" Win32_DCOMApplication.AppID="{F135BE18-BF34-4CBD-B1D5-55D49F0DEDCC}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{F135BE18-BF34-4CBD-B1D5-55D49F0DEDCC}" - Win32_SID.SID="S-1-15-3-1024-1692970155-4054893335-185714091-3362601943-3526593181-1159816984-2199008581-497492991" Win32_DCOMApplication.AppID="{F1425A67-1545-44A2-AB59-8DF1020452D9}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{F1425A67-1545-44A2-AB59-8DF1020452D9}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{F1425A67-1545-44A2-AB59-8DF1020452D9}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{F1425A67-1545-44A2-AB59-8DF1020452D9}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{F290BFB2-1864-45B1-8804-2654194A87E7}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{F290BFB2-1864-45B1-8804-2654194A87E7}" - Win32_SID.SID="S-1-5-32-551" Win32_DCOMApplication.AppID="{F290BFB2-1864-45B1-8804-2654194A87E7}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{F2F94BB3-595C-4509-B7EE-243FA2BDEA5B}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{F2F94BB3-595C-4509-B7EE-243FA2BDEA5B}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{F2F94BB3-595C-4509-B7EE-243FA2BDEA5B}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{f32d97df-e3e5-4cb9-9e3e-0eb5b4e49801}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{f32d97df-e3e5-4cb9-9e3e-0eb5b4e49801}" - Win32_SID.SID="S-1-5-20" Win32_DCOMApplication.AppID="{f32d97df-e3e5-4cb9-9e3e-0eb5b4e49801}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{f32d97df-e3e5-4cb9-9e3e-0eb5b4e49801}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{f32d97df-e3e5-4cb9-9e3e-0eb5b4e49801}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{F3D3AA8D-EF96-4470-848E-BD70B803047A}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{F3D3AA8D-EF96-4470-848E-BD70B803047A}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{F3D3AA8D-EF96-4470-848E-BD70B803047A}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{f4be747e-45c4-4701-90f1-d49d9ac30248}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{f4be747e-45c4-4701-90f1-d49d9ac30248}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{f4be747e-45c4-4701-90f1-d49d9ac30248}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{F632543F-3A79-4cc9-AACD-07036DF9FFCD}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{F632543F-3A79-4cc9-AACD-07036DF9FFCD}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{F72671A9-012C-4725-9D2F-2A4D32D65169}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{F72671A9-012C-4725-9D2F-2A4D32D65169}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{F72671A9-012C-4725-9D2F-2A4D32D65169}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{F72671A9-012C-4725-9D2F-2A4D32D65169}" - Win32_SID.SID="S-1-5-80-3433512109-503559027-1389316256-1766580070-2256751264" Win32_DCOMApplication.AppID="{F72671A9-012C-4725-9D2F-2A4D32D65169}" - Win32_SID.SID="S-1-5-80-1260278928-804197538-2066346633-4268302704-2216462912" Win32_DCOMApplication.AppID="{F72671A9-012C-4725-9D2F-2A4D32D65169}" - Win32_SID.SID="S-1-5-80-345135819-4012009209-3062012967-1747265747-3674605950" Win32_DCOMApplication.AppID="{F72671A9-012C-4725-9D2F-2A4D32D65169}" - Win32_SID.SID="S-1-5-80-951620777-1059631183-2804607755-3010024351-809615488" Win32_DCOMApplication.AppID="{f735e733-d681-4aef-83c1-7ec82cac5ecc}" - Win32_SID.SID="S-1-5-80-364023826-931424190-487969545-1024119571-74567675" Win32_DCOMApplication.AppID="{f735e733-d681-4aef-83c1-7ec82cac5ecc}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{f735e733-d681-4aef-83c1-7ec82cac5ecc}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{f735e733-d681-4aef-83c1-7ec82cac5ecc}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{f8842f8e-dafe-4b37-9d38-4e0714a61149}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{f8842f8e-dafe-4b37-9d38-4e0714a61149}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{f8842f8e-dafe-4b37-9d38-4e0714a61149}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{f8842f8e-dafe-4b37-9d38-4e0714a61149}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{F8FD03A6-DDD9-4C1B-84EE-58159476A0D7}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{F9717507-6651-4EDB-BFF7-AE615179BCCF}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{F9717507-6651-4EDB-BFF7-AE615179BCCF}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{F9717507-6651-4EDB-BFF7-AE615179BCCF}" - Win32_SID.SID="S-1-15-2-1" Win32_DCOMApplication.AppID="{F9717507-6651-4EDB-BFF7-AE615179BCCF}" - Win32_SID.SID="S-1-15-3-1" Win32_DCOMApplication.AppID="{F9717507-6651-4EDB-BFF7-AE615179BCCF}" - Win32_SID.SID="S-1-15-3-2" Win32_DCOMApplication.AppID="{F9717507-6651-4EDB-BFF7-AE615179BCCF}" - Win32_SID.SID="S-1-15-3-3" Win32_DCOMApplication.AppID="{FA1456D3-4B97-4f9c-8511-2786161DC333}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{FA1456D3-4B97-4f9c-8511-2786161DC333}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{FA1456D3-4B97-4f9c-8511-2786161DC333}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{FBF23B40-E3F0-101B-8488-00AA003E56F8}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{FBF23B40-E3F0-101B-8488-00AA003E56F8}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{FBF23B40-E3F0-101B-8488-00AA003E56F8}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{FC5EEAF6-0002-11DF-ADB9-F4CE462D9137}" - Win32_SID.SID="S-1-5-32-544" Win32_DCOMApplication.AppID="{FC5EEAF6-0002-11DF-ADB9-F4CE462D9137}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{FC5EEAF6-0002-11DF-ADB9-F4CE462D9137}" - Win32_SID.SID="S-1-5-19" Win32_DCOMApplication.AppID="{FC5EEAF6-0002-11DF-ADB9-F4CE462D9137}" - Win32_SID.SID="S-1-5-20" Win32_DCOMApplication.AppID="{FC5EEAF6-0002-11DF-ADB9-F4CE462D9137}" - Win32_SID.SID="S-1-5-32-556" Win32_DCOMApplication.AppID="{FCC74B77-EC3E-4dd8-A80B-008A702075A9}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{FCC74B77-EC3E-4dd8-A80B-008A702075A9}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{FCC74B77-EC3E-4dd8-A80B-008A702075A9}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{ff9e6131-a8c1-4188-aa03-82e9f10a05a8}" - Win32_SID.SID="S-1-5-4" Win32_DCOMApplication.AppID="{ff9e6131-a8c1-4188-aa03-82e9f10a05a8}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{ff9e6131-a8c1-4188-aa03-82e9f10a05a8}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{FFE1E5FE-F1F0-48C8-953E-72BA272F2744}" - Win32_SID.SID="S-1-1-0" Win32_DCOMApplication.AppID="{FFE1E5FE-F1F0-48C8-953E-72BA272F2744}" - Win32_SID.SID="S-1-5-10" Win32_DCOMApplication.AppID="{FFE1E5FE-F1F0-48C8-953E-72BA272F2744}" - Win32_SID.SID="S-1-5-18" Win32_DCOMApplication.AppID="{FFE1E5FE-F1F0-48C8-953E-72BA272F2744}" - Win32_SID.SID="S-1-5-32-544" ---------- | SvcHost (Whitelist) [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost] "DcomLaunch"=Power LSM BrokerInfrastructure PlugPlay DcomLaunch SystemEventsBroker DeviceInstall "Camera"=FrameS "LocalServiceNoNetworkFirewall"=BFE mpssvc "diagnostics"=DiagSvc "AarSvcGroup"=AarSvc "PrintWorkflow"=PrintWorkflowUserSvc "wusvcs"=WaaSMedicSvc "BcastDVRUserService"=BcastDVRUserService "GraphicsPerfSvcGroup"=GraphicsPerfSvc "autoTimeSvc"=autoTimeSvc "rdxgroup"=RetailDemo "ClipboardSvcGroup"=cbdhsvc "BthAppGroup"=BluetoothUserService "smbsvcs"=lanmanserver browser "UdkSvcGroup"=UdkUserSvc "DevicesFlow"=DeviceAssociationBrokerSvc DevicesFlowUserSvc DevicePickerUserSvc ConsentUxUserSvc "osrss"=osrss [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost] "DcomLaunch"=DcomLaunch DeviceInstall "PrintWorkflow"=PrintWorkflowUserSvc "AarSvcGroup"=AarSvc "DevicesFlow"=DeviceAssociationBrokerSvc "smbsvcs"=lanmanserver ---------- | SvcHost - Netsvcs (Whitelist) ---------- | Software [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\360] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\360desktoplite] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\7-Zip] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Adlice Software] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Adobe] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Aimersoft] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\ALLPlayer] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\AMD Driver Downloader] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Anvsoft] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\AOMEI] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Apeaksoft Studio] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Apowersoft] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\AppDataLow] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Apple Inc.] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\ArcticLine] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Ashampoo] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\ASProtect] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\ATI] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\AutoIt v3] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Avant Browser] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Avast Software] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\AVG] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\BandiMPEG1] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\BANDISOFT] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Bandizip] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Bigasoft] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Bitcomet] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Bitdefender] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\BlueStacksInstaller] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Browser Cleanup] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\BugSplat] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\BVRP Software] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\ByteFence] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Caphyon] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Clients] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\CocCoc] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Comodo] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\ComodoGroup] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\CrowdStrike] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\CStart8] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\CyberLink] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Dashlane_profiles] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Daum] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\DBKFR] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Defendemus] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Disk] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\DownloadManager] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Dragon] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Dropbox] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\DRP] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\DVDVideoSoft] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\EaseUS] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Epic] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Epic Privacy Browser] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\EPSON] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\ESET] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\eSupport.com] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\famatech] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\FC] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Filzip] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\foobar2000] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Freecom] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\FreeDownloadManager.ORG] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\FreeGrabApp] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Freemake] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Gabest] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\geissplugin] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\GNU] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Google] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Greatis] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\GRETECH] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Hardcoded Software] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\HashTab] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Icaros] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\iFotosoft] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\ImgBurn] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Innovative Solutions] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\InstallShield] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Integrator] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Intel] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\iPhone Backup Extractor] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\IvoSoft] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\JavaSoft] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Kingsoft] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\KMPlayer] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\KMPlayer 64X] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\LAV] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\LiberKey] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Licenses] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\LiteManagerTeam] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Local AppWizard-Generated Applications] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\LogiShrd] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Logitech] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\LogMeInRescueCallingCard] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Macromedia] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\madshi] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\MAGIX] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Malwarebytes] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\MarBit] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\MediaHuman] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Michael Herf] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Mirage] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Mozilla] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\MPC-HC] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\MPC-HC64] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\NCH Software] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\NCH Swift Sound] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\NewBlue] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Nurgo-Software] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Obsidium] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\OEM] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Opera Software] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Opera Stable Offer] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Orange] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\OrangeInside] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Ordinarysoft] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Paragon Software] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\PC Optimizer Pro] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\PcWinTech] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\PEiD] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Piriform] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Policies] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\PortableApps.com] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\ProtectStar] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\ProtectStar Inc.] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\QtProject] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Rapid Environment Editor] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\RapidSolution] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Raxco] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Realtek] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\RegisteredApplications] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\RISING] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\SafelyRemove] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Samsung] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Seifert] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\SharewareOnSale] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\ShellExtBridge110] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Siber Systems] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Smart PC Solutions] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\SMTTB2009] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Softland] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\SoftVoice] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Sony Corporation] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\SUPERAntiSpyware.com] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\SWiSHzone.com] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\SyncEngines] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\TechWorld] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Tencent] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\TGInstallStatus] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\TGUP] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Tihiy] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Tracker Software] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Trolltech] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\TWTSC] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\UsbFix] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\uTorrentPlus] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\ViOrb] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\WebMinds] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Winamp] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Windows X] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\WinRAR SFX] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Wondershare] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Wow6432Node] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\WsAudio_Device] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\WSVCUPlugin] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\XenArmor] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Yodot Software] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\ZebHelpProcess Helper] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Zemana] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\ZHP] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\{6487FE51-5D05-4253-8338-2B2FAF2E0214}] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\{6D3583B9-13A8-4a3f-A59D-207EA03D26A1}] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\{EC8B56DC-A99A-4D61-9009-C4D20D65A336}] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\{EEEFD125-70B2-4241-850E-6D42FCAB505A}] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\AppDataLow\Software\Microsoft] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\AppDataLow\Software\Monitored] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\AppDataLow\Software\MyAshampoo] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\AppDataLow\Software\settings] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\%BrowserAppProfile%] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\%BrowserAppProfile_InternetSettings%] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Accessibility] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Active Setup] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\ActiveMovie] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\ActiveSync] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Assistance] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\AuthCookies] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Avalon.Graphics] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\CalendarRT] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Clipboard] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Command Processor] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\CommsAPHost] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\ComPstUI] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Connection Manager] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\ContactsRT] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\CTF] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\DeviceDirectory] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Direct3D] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\DirectInput] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\DirectShow] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\DirectX Diagnostic Tool] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Ease of Access] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Edge] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\EdgeUpdate] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\EventSystem] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\F12] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\FamilyStore] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Fax] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Feeds] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Fiddler2] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\FTP] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\GameBar] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\GameBarApi] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\IdentityCRL] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\IME] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Input] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\InputMethod] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\InputPersonalization] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Installer] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Internet Connection Wizard] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Internet Explorer] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Java VM] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Journal] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Keyboard] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\LanguageOverlay] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Lptr] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\MediaPlayer] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Messaging] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Microsoft Management Console] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\MicrosoftEdge] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\MPEG2Demultiplexer] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\MSF] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Multimedia] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Narrator] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\NGC] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Notepad] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Office] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\OneDrive] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Osk] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\PaidWiFi] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Payment] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\PeerNet] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Personalization] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Phone] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Pim] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\PlayToReceiver] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Poom] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\RAS AutoDial] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Registration] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Remote Assistance] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\RTC] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\ScreenMagnifier] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Sensors] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Shared Tools] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Siuf] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\SkyDrive] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Speech] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Speech Virtual] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Speech_OneCore] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Spelling] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\SQMClient] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\StorageLibrary] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\SystemCertificates] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\TabletTip] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\TelemetryClient] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\TPG] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\UCCPlatform] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Unified Store] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Unistore] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\UserData] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\UserDataService] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Visual Basic] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\WAB] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\WcmSvc] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\wfs] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows Defender Security Center] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows Kits] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows Live] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows Live Contacts] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows Live Mail] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows Media] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows NT] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows Script] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows Script Host] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows Search] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Windows Security Health] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Wisp] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\XAML] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\AssignedAccessConfiguration] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\DWM] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\PrivacySettingsBeforeCreatorsUpdate] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\Shell] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\TabletPC] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\Windows Error Reporting] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\Winlogon] [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows NT\CurrentVersion] [HKLM\Software\7-Zip] [HKLM\Software\AMD] [HKLM\Software\Ashampoo] [HKLM\Software\ASIO] [HKLM\Software\ATI] [HKLM\Software\ATI Technologies] [HKLM\Software\AVAST Software] [HKLM\Software\AVC3] [HKLM\Software\BandiMPEG1] [HKLM\Software\BANDISOFT] [HKLM\Software\Bandizip] [HKLM\Software\Bitdefender] [HKLM\Software\BlueStacksInstaller] [HKLM\Software\ByteFence] [HKLM\Software\Canneverbe Limited] [HKLM\Software\Clients] [HKLM\Software\Code Sector] [HKLM\Software\COMODO] [HKLM\Software\CPUID] [HKLM\Software\CVSM] [HKLM\Software\CyberLink] [HKLM\Software\DAUM] [HKLM\Software\Debug] [HKLM\Software\DefaultUserEnvironment] [HKLM\Software\DriverBackup!] [HKLM\Software\Eassos] [HKLM\Software\Emsi Software GmbH] [HKLM\Software\Emsisoft] [HKLM\Software\EPSON] [HKLM\Software\ESET] [HKLM\Software\FileZilla 3] [HKLM\Software\Fortemedia] [HKLM\Software\g3n-h@ckm@n] [HKLM\Software\Google] [HKLM\Software\GREATIS] [HKLM\Software\HaaliMkx] [HKLM\Software\Huawei technologies] [HKLM\Software\Icaros] [HKLM\Software\INextUUID] [HKLM\Software\Intel] [HKLM\Software\JavaSoft] [HKLM\Software\JreMetrics] [HKLM\Software\KeyCryptSDK] [HKLM\Software\Logitech] [HKLM\Software\Macromedia] [HKLM\Software\MAGIX] [HKLM\Software\Malwarebytes] [HKLM\Software\Martin Prikryl] [HKLM\Software\McAfee] [HKLM\Software\Michael Herf] [HKLM\Software\Microsoft] [HKLM\Software\Mozilla] [HKLM\Software\mozilla.org] [HKLM\Software\MozillaPlugins] [HKLM\Software\NCH Swift Sound] [HKLM\Software\NeoSmart Technologies] [HKLM\Software\NewBlue] [HKLM\Software\Nuance] [HKLM\Software\ODBC] [HKLM\Software\OEM] [HKLM\Software\Oracle] [HKLM\Software\Ordinarysoft] [HKLM\Software\Paragon Software] [HKLM\Software\Partner] [HKLM\Software\PC Optimizer Pro] [HKLM\Software\Piriform] [HKLM\Software\Policies] [HKLM\Software\proDAD] [HKLM\Software\Propellerhead Software] [HKLM\Software\Raxco] [HKLM\Software\Realtek] [HKLM\Software\RealVNC] [HKLM\Software\Reason] [HKLM\Software\RegisteredApplications] [HKLM\Software\SAMSUNG] [HKLM\Software\SCU] [HKLM\Software\SoftVoice] [HKLM\Software\SRS Labs] [HKLM\Software\SUPERAntiSpyware.com] [HKLM\Software\tinc] [HKLM\Software\Tracker Software] [HKLM\Software\TWTSC] [HKLM\Software\UVK - Ultra virus killer] [HKLM\Software\UVK - Ultra virus killer backups] [HKLM\Software\VideoLAN] [HKLM\Software\Volatile] [HKLM\Software\Windows] [HKLM\Software\WOW6432Node] [HKLM\Software\Yodot Software] [HKLM\Software\Zemana] [HKLM\Software\ZmnGlobalSDK] [HKLM\SOFTWARE\Microsoft\%BrowserAppProfile%] [HKLM\SOFTWARE\Microsoft\%BrowserAppProfile_InternetSettings%] [HKLM\SOFTWARE\Microsoft\.NETFramework] [HKLM\SOFTWARE\Microsoft\AccountsControl] [HKLM\SOFTWARE\Microsoft\Active Setup] [HKLM\SOFTWARE\Microsoft\ActiveSync] [HKLM\SOFTWARE\Microsoft\ADs] [HKLM\SOFTWARE\Microsoft\Advanced INF Setup] [HKLM\SOFTWARE\Microsoft\ALG] [HKLM\SOFTWARE\Microsoft\AllUserInstallAgent] [HKLM\SOFTWARE\Microsoft\AMSI] [HKLM\SOFTWARE\Microsoft\Analog] [HKLM\SOFTWARE\Microsoft\AOMEI] [HKLM\SOFTWARE\Microsoft\AppServiceProtocols] [HKLM\SOFTWARE\Microsoft\ASP.NET] [HKLM\SOFTWARE\Microsoft\Assistance] [HKLM\SOFTWARE\Microsoft\AudioCompressionManager] [HKLM\SOFTWARE\Microsoft\AuthHost] [HKLM\SOFTWARE\Microsoft\BidInterface] [HKLM\SOFTWARE\Microsoft\BitLockerCsp] [HKLM\SOFTWARE\Microsoft\CallAndMessagingEnhancement] [HKLM\SOFTWARE\Microsoft\Cellular] [HKLM\SOFTWARE\Microsoft\Chkdsk] [HKLM\SOFTWARE\Microsoft\Clipboard] [HKLM\SOFTWARE\Microsoft\ClipboardServer] [HKLM\SOFTWARE\Microsoft\COM3] [HKLM\SOFTWARE\Microsoft\Command Processor] [HKLM\SOFTWARE\Microsoft\CommsAPHost] [HKLM\SOFTWARE\Microsoft\Composition] [HKLM\SOFTWARE\Microsoft\Conferencing] [HKLM\SOFTWARE\Microsoft\CoreShell] [HKLM\SOFTWARE\Microsoft\Cryptography] [HKLM\SOFTWARE\Microsoft\CTF] [HKLM\SOFTWARE\Microsoft\DataAccess] [HKLM\SOFTWARE\Microsoft\DataCollection] [HKLM\SOFTWARE\Microsoft\DataMarketplace] [HKLM\SOFTWARE\Microsoft\DataSharing] [HKLM\SOFTWARE\Microsoft\DDDS] [HKLM\SOFTWARE\Microsoft\DevDiv] [HKLM\SOFTWARE\Microsoft\Device Association Framework] [HKLM\SOFTWARE\Microsoft\DeviceReg] [HKLM\SOFTWARE\Microsoft\Dfrg] [HKLM\SOFTWARE\Microsoft\DFS] [HKLM\SOFTWARE\Microsoft\DiagnosticLogCSP] [HKLM\SOFTWARE\Microsoft\DirectDraw] [HKLM\SOFTWARE\Microsoft\DirectInput] [HKLM\SOFTWARE\Microsoft\DirectMusic] [HKLM\SOFTWARE\Microsoft\DirectPlay8] [HKLM\SOFTWARE\Microsoft\DirectPlayNATHelp] [HKLM\SOFTWARE\Microsoft\DirectShow] [HKLM\SOFTWARE\Microsoft\DirectX] [HKLM\SOFTWARE\Microsoft\DownloadManager] [HKLM\SOFTWARE\Microsoft\Driver Signing] [HKLM\SOFTWARE\Microsoft\DRM] [HKLM\SOFTWARE\Microsoft\DusmSvc] [HKLM\SOFTWARE\Microsoft\DVDNavigator] [HKLM\SOFTWARE\Microsoft\DVR] [HKLM\SOFTWARE\Microsoft\DXP] [HKLM\SOFTWARE\Microsoft\EAPSIMMethods] [HKLM\SOFTWARE\Microsoft\Enrollment] [HKLM\SOFTWARE\Microsoft\Enrollments] [HKLM\SOFTWARE\Microsoft\EnterpriseCertificates] [HKLM\SOFTWARE\Microsoft\EnterpriseDataProtection] [HKLM\SOFTWARE\Microsoft\EnterpriseResourceManager] [HKLM\SOFTWARE\Microsoft\EventSounds] [HKLM\SOFTWARE\Microsoft\EventSystem] [HKLM\SOFTWARE\Microsoft\Exchange] [HKLM\SOFTWARE\Microsoft\F12] [HKLM\SOFTWARE\Microsoft\FamilyStore] [HKLM\SOFTWARE\Microsoft\Fax] [HKLM\SOFTWARE\Microsoft\FaxServer] [HKLM\SOFTWARE\Microsoft\Feeds] [HKLM\SOFTWARE\Microsoft\FilePicker] [HKLM\SOFTWARE\Microsoft\FilterDS] [HKLM\SOFTWARE\Microsoft\FingerKB] [HKLM\SOFTWARE\Microsoft\FTH] [HKLM\SOFTWARE\Microsoft\Function Discovery] [HKLM\SOFTWARE\Microsoft\Fusion] [HKLM\SOFTWARE\Microsoft\FuzzyDS] [HKLM\SOFTWARE\Microsoft\GameOverlay] [HKLM\SOFTWARE\Microsoft\HTMLHelp] [HKLM\SOFTWARE\Microsoft\IdentityCRL] [HKLM\SOFTWARE\Microsoft\IdentityStore] [HKLM\SOFTWARE\Microsoft\IHDS] [HKLM\SOFTWARE\Microsoft\ImageTimeSettings] [HKLM\SOFTWARE\Microsoft\IMAPI] [HKLM\SOFTWARE\Microsoft\IME] [HKLM\SOFTWARE\Microsoft\IMEJP] [HKLM\SOFTWARE\Microsoft\IMEKR] [HKLM\SOFTWARE\Microsoft\IMETC] [HKLM\SOFTWARE\Microsoft\InProcLogger] [HKLM\SOFTWARE\Microsoft\Input] [HKLM\SOFTWARE\Microsoft\InputMethod] [HKLM\SOFTWARE\Microsoft\InputPersonalization] [HKLM\SOFTWARE\Microsoft\Internet Account Manager] [HKLM\SOFTWARE\Microsoft\Internet Domains] [HKLM\SOFTWARE\Microsoft\Internet Explorer] [HKLM\SOFTWARE\Microsoft\IsoBurn] [HKLM\SOFTWARE\Microsoft\KGL] [HKLM\SOFTWARE\Microsoft\LanguageOverlay] [HKLM\SOFTWARE\Microsoft\LexiconUpdate] [HKLM\SOFTWARE\Microsoft\Managed Desktop] [HKLM\SOFTWARE\Microsoft\MdmCommon] [HKLM\SOFTWARE\Microsoft\MdmDiagnostics] [HKLM\SOFTWARE\Microsoft\MediaEngine] [HKLM\SOFTWARE\Microsoft\MediaPlayer] [HKLM\SOFTWARE\Microsoft\MemoryDiagnostic] [HKLM\SOFTWARE\Microsoft\Messaging] [HKLM\SOFTWARE\Microsoft\MessengerService] [HKLM\SOFTWARE\Microsoft\Microsoft Camera Codec Pack] [HKLM\SOFTWARE\Microsoft\Microsoft SQL Server] [HKLM\SOFTWARE\Microsoft\Microsoft SQL Server 2005 Redist] [HKLM\SOFTWARE\Microsoft\Microsoft SQL Server 2012 Redist] [HKLM\SOFTWARE\Microsoft\Microsoft SQL Server Native Client 11.0] [HKLM\SOFTWARE\Microsoft\MiracastReceiver] [HKLM\SOFTWARE\Microsoft\MMC] [HKLM\SOFTWARE\Microsoft\Mobile] [HKLM\SOFTWARE\Microsoft\MpSigStub] [HKLM\SOFTWARE\Microsoft\MSBuild] [HKLM\SOFTWARE\Microsoft\MSDE] [HKLM\SOFTWARE\Microsoft\MSDRM] [HKLM\SOFTWARE\Microsoft\MSDTC] [HKLM\SOFTWARE\Microsoft\MSF] [HKLM\SOFTWARE\Microsoft\MSIME] [HKLM\SOFTWARE\Microsoft\MSLicensing] [HKLM\SOFTWARE\Microsoft\MSMQ] [HKLM\SOFTWARE\Microsoft\MSN Apps] [HKLM\SOFTWARE\Microsoft\MSSQLServer] [HKLM\SOFTWARE\Microsoft\MTF] [HKLM\SOFTWARE\Microsoft\MTFFuzzyFactors] [HKLM\SOFTWARE\Microsoft\MTFInputType] [HKLM\SOFTWARE\Microsoft\MTFKeyboardMappings] [HKLM\SOFTWARE\Microsoft\Multimedia] [HKLM\SOFTWARE\Microsoft\Multivariant] [HKLM\SOFTWARE\Microsoft\NET Framework Setup] [HKLM\SOFTWARE\Microsoft\NetSh] [HKLM\SOFTWARE\Microsoft\Network] [HKLM\SOFTWARE\Microsoft\Non-Driver Signing] [HKLM\SOFTWARE\Microsoft\Notepad] [HKLM\SOFTWARE\Microsoft\ODBC] [HKLM\SOFTWARE\Microsoft\OEM] [HKLM\SOFTWARE\Microsoft\Office] [HKLM\SOFTWARE\Microsoft\OfficeCSP] [HKLM\SOFTWARE\Microsoft\Ole] [HKLM\SOFTWARE\Microsoft\OnlineProviders] [HKLM\SOFTWARE\Microsoft\Outlook Express] [HKLM\SOFTWARE\Microsoft\Palm] [HKLM\SOFTWARE\Microsoft\PCHealth] [HKLM\SOFTWARE\Microsoft\Personalization] [HKLM\SOFTWARE\Microsoft\Phone] [HKLM\SOFTWARE\Microsoft\Photos] [HKLM\SOFTWARE\Microsoft\PIM] [HKLM\SOFTWARE\Microsoft\PLA] [HKLM\SOFTWARE\Microsoft\PlayReady] [HKLM\SOFTWARE\Microsoft\PlayToReceiver] [HKLM\SOFTWARE\Microsoft\PointOfService] [HKLM\SOFTWARE\Microsoft\Policies] [HKLM\SOFTWARE\Microsoft\PolicyManager] [HKLM\SOFTWARE\Microsoft\Poom] [HKLM\SOFTWARE\Microsoft\PowerShell] [HKLM\SOFTWARE\Microsoft\Print] [HKLM\SOFTWARE\Microsoft\Provisioning] [HKLM\SOFTWARE\Microsoft\PushRouter] [HKLM\SOFTWARE\Microsoft\RADAR] [HKLM\SOFTWARE\Microsoft\Ras] [HKLM\SOFTWARE\Microsoft\RAS AutoDial] [HKLM\SOFTWARE\Microsoft\RcsPresence] [HKLM\SOFTWARE\Microsoft\Reliability Analysis] [HKLM\SOFTWARE\Microsoft\Remediation] [HKLM\SOFTWARE\Microsoft\RemovalTools] [HKLM\SOFTWARE\Microsoft\rempl] [HKLM\SOFTWARE\Microsoft\RendezvousApps] [HKLM\SOFTWARE\Microsoft\Router] [HKLM\SOFTWARE\Microsoft\Rpc] [HKLM\SOFTWARE\Microsoft\SchedulingAgent] [HKLM\SOFTWARE\Microsoft\SDDS] [HKLM\SOFTWARE\Microsoft\Security Center] [HKLM\SOFTWARE\Microsoft\SecurityManager] [HKLM\SOFTWARE\Microsoft\SEMgr] [HKLM\SOFTWARE\Microsoft\Sensors] [HKLM\SOFTWARE\Microsoft\ServicesForNFS] [HKLM\SOFTWARE\Microsoft\Settings] [HKLM\SOFTWARE\Microsoft\Shared Tools] [HKLM\SOFTWARE\Microsoft\Shared Tools Location] [HKLM\SOFTWARE\Microsoft\Shell] [HKLM\SOFTWARE\Microsoft\SideShow] [HKLM\SOFTWARE\Microsoft\sih] [HKLM\SOFTWARE\Microsoft\Silverlight] [HKLM\SOFTWARE\Microsoft\Siuf] [HKLM\SOFTWARE\Microsoft\SMB1Uninstall] [HKLM\SOFTWARE\Microsoft\Software] [HKLM\SOFTWARE\Microsoft\Speech] [HKLM\SOFTWARE\Microsoft\Speech_OneCore] [HKLM\SOFTWARE\Microsoft\SQLNCLI11] [HKLM\SOFTWARE\Microsoft\SQMClient] [HKLM\SOFTWARE\Microsoft\StrongName] [HKLM\SOFTWARE\Microsoft\Sync Framework] [HKLM\SOFTWARE\Microsoft\Sysprep] [HKLM\SOFTWARE\Microsoft\SystemCertificates] [HKLM\SOFTWARE\Microsoft\SystemSettings] [HKLM\SOFTWARE\Microsoft\TableTextService] [HKLM\SOFTWARE\Microsoft\TabletTip] [HKLM\SOFTWARE\Microsoft\TaskFlowDataEngine] [HKLM\SOFTWARE\Microsoft\Tcpip] [HKLM\SOFTWARE\Microsoft\TelemetryClient] [HKLM\SOFTWARE\Microsoft\Terminal Server Client] [HKLM\SOFTWARE\Microsoft\TermServLicensing] [HKLM\SOFTWARE\Microsoft\TMM] [HKLM\SOFTWARE\Microsoft\TouchPrediction] [HKLM\SOFTWARE\Microsoft\TPG] [HKLM\SOFTWARE\Microsoft\Tpm] [HKLM\SOFTWARE\Microsoft\Tracing] [HKLM\SOFTWARE\Microsoft\Transaction Server] [HKLM\SOFTWARE\Microsoft\TV System Services] [HKLM\SOFTWARE\Microsoft\uDRM] [HKLM\SOFTWARE\Microsoft\UEV] [HKLM\SOFTWARE\Microsoft\Unified Store] [HKLM\SOFTWARE\Microsoft\Unistore] [HKLM\SOFTWARE\Microsoft\UNP] [HKLM\SOFTWARE\Microsoft\UPnP Control Point] [HKLM\SOFTWARE\Microsoft\UPnP Device Host] [HKLM\SOFTWARE\Microsoft\UserData] [HKLM\SOFTWARE\Microsoft\UserManager] [HKLM\SOFTWARE\Microsoft\Virtual Machine] [HKLM\SOFTWARE\Microsoft\VisualStudio] [HKLM\SOFTWARE\Microsoft\WAB] [HKLM\SOFTWARE\Microsoft\Wallet] [HKLM\SOFTWARE\Microsoft\Wbem] [HKLM\SOFTWARE\Microsoft\WcmSvc] [HKLM\SOFTWARE\Microsoft\WIMMount] [HKLM\SOFTWARE\Microsoft\Windows] [HKLM\SOFTWARE\Microsoft\Windows Defender] [HKLM\SOFTWARE\Microsoft\Windows Defender Security Center] [HKLM\SOFTWARE\Microsoft\Windows Desktop Search] [HKLM\SOFTWARE\Microsoft\Windows Kits] [HKLM\SOFTWARE\Microsoft\Windows Live] [HKLM\SOFTWARE\Microsoft\Windows Mail] [HKLM\SOFTWARE\Microsoft\Windows Media Device Manager] [HKLM\SOFTWARE\Microsoft\Windows Media Foundation] [HKLM\SOFTWARE\Microsoft\Windows Media Player NSS] [HKLM\SOFTWARE\Microsoft\Windows Messaging Subsystem] [HKLM\SOFTWARE\Microsoft\Windows NT] [HKLM\SOFTWARE\Microsoft\Windows Performance Toolkit] [HKLM\SOFTWARE\Microsoft\Windows Phone] [HKLM\SOFTWARE\Microsoft\Windows Photo Viewer] [HKLM\SOFTWARE\Microsoft\Windows Portable Devices] [HKLM\SOFTWARE\Microsoft\Windows Script Host] [HKLM\SOFTWARE\Microsoft\Windows Search] [HKLM\SOFTWARE\Microsoft\Windows Security Health] [HKLM\SOFTWARE\Microsoft\WindowsRuntime] [HKLM\SOFTWARE\Microsoft\WindowsSelfHost] [HKLM\SOFTWARE\Microsoft\WindowsStore] [HKLM\SOFTWARE\Microsoft\WindowsUpdate] [HKLM\SOFTWARE\Microsoft\Wisp] [HKLM\SOFTWARE\Microsoft\WlanSvc] [HKLM\SOFTWARE\Microsoft\Wlpasvc] [HKLM\SOFTWARE\Microsoft\Wow64] [HKLM\SOFTWARE\Microsoft\WSDAPI] [HKLM\SOFTWARE\Microsoft\WwanSvc] [HKLM\SOFTWARE\Microsoft\XAML] [HKLM\SOFTWARE\Microsoft\XboxGameSaveStorage] [HKLM\Software\Microsoft\Windows\Autopilot] [HKLM\Software\Microsoft\Windows\ClickNote] [HKLM\Software\Microsoft\Windows\CurrentVersion] [HKLM\Software\Microsoft\Windows\Dwm] [HKLM\Software\Microsoft\Windows\DynamicManagement] [HKLM\Software\Microsoft\Windows\EnterpriseResourceManager] [HKLM\Software\Microsoft\Windows\Heat] [HKLM\Software\Microsoft\Windows\HTML Help] [HKLM\Software\Microsoft\Windows\ITStorage] [HKLM\Software\Microsoft\Windows\NcsiUwpApp] [HKLM\Software\Microsoft\Windows\PrivacySettingsBeforeCreatorsUpdate] [HKLM\Software\Microsoft\Windows\ScheduledDiagnostics] [HKLM\Software\Microsoft\Windows\ScriptedDiagnosticsProvider] [HKLM\Software\Microsoft\Windows\Shell] [HKLM\Software\Microsoft\Windows\Tablet PC] [HKLM\Software\Microsoft\Windows\TabletPC] [HKLM\Software\Microsoft\Windows\UpdateApi] [HKLM\Software\Microsoft\Windows\Windows Error Reporting] [HKLM\Software\Microsoft\Windows\Windows Search] [HKLM\Software\Microsoft\Windows NT\CurrentVersion] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\AarSvc] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\appmodel] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\autotimesvc] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\BcastDVRUserService] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\btagservice] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\BthAppGroup] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\Camera] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\ClipboardSvcGroup] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\defragsvc] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\DevicesFlow] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\diagnostics] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\GraphicsPerfSvcGroup] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\ICService] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\LicenseManager] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalService] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalServiceAndNoImpersonation] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalServiceHttp] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalServiceNetworkRestricted] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalServiceNetworkRestrictedDhcpLmHosts] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalServiceNoNetwork] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalServiceNoNetworkFirewall] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalSystemNetworkRestricted] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\netsvcs] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\NetworkService] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\NetworkServiceDnsNla] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\NetworkServiceRemoteDesktopHyperVAgent] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\NetworkServiceRemoteDesktopPublishing] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\print] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\PrintWorkflow] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\rdxgroup] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\RmSvc] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\SDRSVC] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\swprv] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\termsvcs] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\UdkSvcGroup] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\UnistackSvcGroup] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\utcsvc] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\WepHostSvcGroup] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\wercplsupport] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\wsappx] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\wusvcs] [HKLM\Software\WOW6432Node\Adobe] [HKLM\Software\WOW6432Node\Aimersoft] [HKLM\Software\WOW6432Node\Anvisoft] [HKLM\Software\WOW6432Node\Apple Inc.] [HKLM\Software\WOW6432Node\Applogon] [HKLM\Software\WOW6432Node\ASDMA] [HKLM\Software\WOW6432Node\Ashampoo] [HKLM\Software\WOW6432Node\ATI] [HKLM\Software\WOW6432Node\ATI Technologies] [HKLM\Software\WOW6432Node\AutoIt v3] [HKLM\Software\WOW6432Node\AVAST Software] [HKLM\Software\WOW6432Node\AVG] [HKLM\Software\WOW6432Node\BandiMPEG1] [HKLM\Software\WOW6432Node\BANDISOFT] [HKLM\Software\WOW6432Node\Bigasoft] [HKLM\Software\WOW6432Node\BVRP Software] [HKLM\Software\WOW6432Node\ByteFence] [HKLM\Software\WOW6432Node\Caphyon] [HKLM\Software\WOW6432Node\COMODO] [HKLM\Software\WOW6432Node\ComodoGroup] [HKLM\Software\WOW6432Node\CStart8] [HKLM\Software\WOW6432Node\CyberLink] [HKLM\Software\WOW6432Node\Debug] [HKLM\Software\WOW6432Node\DigitalWave] [HKLM\Software\WOW6432Node\Disk] [HKLM\Software\WOW6432Node\Dragon] [HKLM\Software\WOW6432Node\DVDFab] [HKLM\Software\WOW6432Node\DVDVideoSoft] [HKLM\Software\WOW6432Node\EaseUS] [HKLM\Software\WOW6432Node\EPSON] [HKLM\Software\WOW6432Node\Eset] [HKLM\Software\WOW6432Node\FileZilla 3] [HKLM\Software\WOW6432Node\foobar2000] [HKLM\Software\WOW6432Node\FreeGrabApp] [HKLM\Software\WOW6432Node\Freemake] [HKLM\Software\WOW6432Node\Google] [HKLM\Software\WOW6432Node\Greatis] [HKLM\Software\WOW6432Node\GRETECH] [HKLM\Software\WOW6432Node\GuidGuid13] [HKLM\Software\WOW6432Node\HaaliMkx] [HKLM\Software\WOW6432Node\HeimdalSecurity] [HKLM\Software\WOW6432Node\Icaros] [HKLM\Software\WOW6432Node\ImgBurn] [HKLM\Software\WOW6432Node\Innovative Solutions] [HKLM\Software\WOW6432Node\Intel] [HKLM\Software\WOW6432Node\Internet Download Manager] [HKLM\Software\WOW6432Node\JavaSoft] [HKLM\Software\WOW6432Node\JreMetrics] [HKLM\Software\WOW6432Node\KeepVid] [HKLM\Software\WOW6432Node\KLCodecPack] [HKLM\Software\WOW6432Node\LAV] [HKLM\Software\WOW6432Node\Licenses] [HKLM\Software\WOW6432Node\logishrd] [HKLM\Software\WOW6432Node\Logitech] [HKLM\Software\WOW6432Node\LogMeInRescueCallingCard] [HKLM\Software\WOW6432Node\Macromedia] [HKLM\Software\WOW6432Node\MAGIX] [HKLM\Software\WOW6432Node\Magoshare] [HKLM\Software\WOW6432Node\Malwarebytes] [HKLM\Software\WOW6432Node\Malwarebytes Anti-Rootkit] [HKLM\Software\WOW6432Node\Malwarebytes' Anti-Malware] [HKLM\Software\WOW6432Node\McAfee] [HKLM\Software\WOW6432Node\McAfee.com] [HKLM\Software\WOW6432Node\Microsoft] [HKLM\Software\WOW6432Node\Mozilla] [HKLM\Software\WOW6432Node\MSI] [HKLM\Software\WOW6432Node\NCH Software] [HKLM\Software\WOW6432Node\NCH Swift Sound] [HKLM\Software\WOW6432Node\Nektra] [HKLM\Software\WOW6432Node\NewBlue] [HKLM\Software\WOW6432Node\Nuance] [HKLM\Software\WOW6432Node\NVDA] [HKLM\Software\WOW6432Node\ODBC] [HKLM\Software\WOW6432Node\OEM] [HKLM\Software\WOW6432Node\Oracle] [HKLM\Software\WOW6432Node\Panda Security] [HKLM\Software\WOW6432Node\Panda Software] [HKLM\Software\WOW6432Node\Piriform] [HKLM\Software\WOW6432Node\Propellerhead Software] [HKLM\Software\WOW6432Node\ProtectStar] [HKLM\Software\WOW6432Node\QQ] [HKLM\Software\WOW6432Node\RapidSolution] [HKLM\Software\WOW6432Node\Realtek] [HKLM\Software\WOW6432Node\Realtek Semiconductor Corp.] [HKLM\Software\WOW6432Node\Remo Software] [HKLM\Software\WOW6432Node\rising] [HKLM\Software\WOW6432Node\Samsung] [HKLM\Software\WOW6432Node\Serif] [HKLM\Software\WOW6432Node\SoftVoice] [HKLM\Software\WOW6432Node\TeamViewer] [HKLM\Software\WOW6432Node\Tencent] [HKLM\Software\WOW6432Node\Tweaking] [HKLM\Software\WOW6432Node\UltraUXThemePatcher] [HKLM\Software\WOW6432Node\Unwinder] [HKLM\Software\WOW6432Node\VideoLAN] [HKLM\Software\WOW6432Node\Volatile] [HKLM\Software\WOW6432Node\WafCX] [HKLM\Software\WOW6432Node\Wondershare] [HKLM\Software\WOW6432Node\WOW6432Node] [HKLM\Software\WOW6432Node\WSDATA] [HKLM\Software\WOW6432Node\Xara] [HKLM\Software\WOW6432Node\XenArmor] [HKLM\Software\WOW6432Node\Yodot Software] [HKLM\Software\WOW6432Node\Zemana] [HKLM\Software\WOW6432Node\zotero.org] [HKLM\Software\WOW6432Node\Clients] [HKLM\Software\WOW6432Node\Policies] [HKLM\Software\WOW6432Node\RegisteredApplications] [HKLM\Software\WOW6432Node\Microsoft\.NETFramework] [HKLM\Software\WOW6432Node\Microsoft\Active Setup] [HKLM\Software\WOW6432Node\Microsoft\ADs] [HKLM\Software\WOW6432Node\Microsoft\Advanced INF Setup] [HKLM\Software\WOW6432Node\Microsoft\AMSI] [HKLM\Software\WOW6432Node\Microsoft\AOMEI] [HKLM\Software\WOW6432Node\Microsoft\AppServiceProtocols] [HKLM\Software\WOW6432Node\Microsoft\ASP.NET] [HKLM\Software\WOW6432Node\Microsoft\Assessments] [HKLM\Software\WOW6432Node\Microsoft\Assistance] [HKLM\Software\WOW6432Node\Microsoft\AudioCompressionManager] [HKLM\Software\WOW6432Node\Microsoft\AuthHost] [HKLM\Software\WOW6432Node\Microsoft\Avalon.Graphics] [HKLM\Software\WOW6432Node\Microsoft\BidInterface] [HKLM\Software\WOW6432Node\Microsoft\BitLockerCsp] [HKLM\Software\WOW6432Node\Microsoft\ClipboardServer] [HKLM\Software\WOW6432Node\Microsoft\Command Processor] [HKLM\Software\WOW6432Node\Microsoft\Cryptography] [HKLM\Software\WOW6432Node\Microsoft\CTF] [HKLM\Software\WOW6432Node\Microsoft\DataAccess] [HKLM\Software\WOW6432Node\Microsoft\DevDiv] [HKLM\Software\WOW6432Node\Microsoft\Device Association Framework] [HKLM\Software\WOW6432Node\Microsoft\Dfrg] [HKLM\Software\WOW6432Node\Microsoft\Direct3D] [HKLM\Software\WOW6432Node\Microsoft\DirectDraw] [HKLM\Software\WOW6432Node\Microsoft\DirectInput] [HKLM\Software\WOW6432Node\Microsoft\DirectMusic] [HKLM\Software\WOW6432Node\Microsoft\DirectPlay] [HKLM\Software\WOW6432Node\Microsoft\DirectPlay8] [HKLM\Software\WOW6432Node\Microsoft\DirectPlayNATHelp] [HKLM\Software\WOW6432Node\Microsoft\DirectShow] [HKLM\Software\WOW6432Node\Microsoft\DirectX] [HKLM\Software\WOW6432Node\Microsoft\DownloadManager] [HKLM\Software\WOW6432Node\Microsoft\DRM] [HKLM\Software\WOW6432Node\Microsoft\DVDNavigator] [HKLM\Software\WOW6432Node\Microsoft\DVR] [HKLM\Software\WOW6432Node\Microsoft\EAPSIMMethods] [HKLM\Software\WOW6432Node\Microsoft\Edge] [HKLM\Software\WOW6432Node\Microsoft\EdgeUpdate] [HKLM\Software\WOW6432Node\Microsoft\ENROLLMENTS] [HKLM\Software\WOW6432Node\Microsoft\EnterpriseResourceManager] [HKLM\Software\WOW6432Node\Microsoft\Exchange] [HKLM\Software\WOW6432Node\Microsoft\F12] [HKLM\Software\WOW6432Node\Microsoft\Fax] [HKLM\Software\WOW6432Node\Microsoft\Feeds] [HKLM\Software\WOW6432Node\Microsoft\FilePicker] [HKLM\Software\WOW6432Node\Microsoft\Function Discovery] [HKLM\Software\WOW6432Node\Microsoft\Fusion] [HKLM\Software\WOW6432Node\Microsoft\GameOverlay] [HKLM\Software\WOW6432Node\Microsoft\HTMLHelp] [HKLM\Software\WOW6432Node\Microsoft\IdentityCRL] [HKLM\Software\WOW6432Node\Microsoft\IdentityStore] [HKLM\Software\WOW6432Node\Microsoft\IMAPI] [HKLM\Software\WOW6432Node\Microsoft\IME] [HKLM\Software\WOW6432Node\Microsoft\IMEJP] [HKLM\Software\WOW6432Node\Microsoft\IMEKR] [HKLM\Software\WOW6432Node\Microsoft\IMETC] [HKLM\Software\WOW6432Node\Microsoft\InputMethod] [HKLM\Software\WOW6432Node\Microsoft\Internet Account Manager] [HKLM\Software\WOW6432Node\Microsoft\Internet Domains] [HKLM\Software\WOW6432Node\Microsoft\Internet Explorer] [HKLM\Software\WOW6432Node\Microsoft\IsoBurn] [HKLM\Software\WOW6432Node\Microsoft\Jet] [HKLM\Software\WOW6432Node\Microsoft\Lptr] [HKLM\Software\WOW6432Node\Microsoft\MediaEngine] [HKLM\Software\WOW6432Node\Microsoft\MediaPlayer] [HKLM\Software\WOW6432Node\Microsoft\MessengerService] [HKLM\Software\WOW6432Node\Microsoft\Microsoft Camera Codec Pack] [HKLM\Software\WOW6432Node\Microsoft\Microsoft SQL Server] [HKLM\Software\WOW6432Node\Microsoft\Microsoft SQL Server Compact Edition] [HKLM\Software\WOW6432Node\Microsoft\Microsoft SQL Server Native Client 11.0] [HKLM\Software\WOW6432Node\Microsoft\Microsoft SQL Server Redist] [HKLM\Software\WOW6432Node\Microsoft\MiracastReceiver] [HKLM\Software\WOW6432Node\Microsoft\MMC] [HKLM\Software\WOW6432Node\Microsoft\MSBuild] [HKLM\Software\WOW6432Node\Microsoft\MSDE] [HKLM\Software\WOW6432Node\Microsoft\MSDRM] [HKLM\Software\WOW6432Node\Microsoft\MSDTC] [HKLM\Software\WOW6432Node\Microsoft\MSF] [HKLM\Software\WOW6432Node\Microsoft\MSLicensing] [HKLM\Software\WOW6432Node\Microsoft\MSN Apps] [HKLM\Software\WOW6432Node\Microsoft\MSSOAP] [HKLM\Software\WOW6432Node\Microsoft\MSSQLServer] [HKLM\Software\WOW6432Node\Microsoft\MTF] [HKLM\Software\WOW6432Node\Microsoft\Multimedia] [HKLM\Software\WOW6432Node\Microsoft\NET Framework Setup] [HKLM\Software\WOW6432Node\Microsoft\NetSh] [HKLM\Software\WOW6432Node\Microsoft\Network] [HKLM\Software\WOW6432Node\Microsoft\Notepad] [HKLM\Software\WOW6432Node\Microsoft\ODBC] [HKLM\Software\WOW6432Node\Microsoft\OEM] [HKLM\Software\WOW6432Node\Microsoft\Office] [HKLM\Software\WOW6432Node\Microsoft\Office Server] [HKLM\Software\WOW6432Node\Microsoft\OnlineProviders] [HKLM\Software\WOW6432Node\Microsoft\Outlook Express] [HKLM\Software\WOW6432Node\Microsoft\Palm] [HKLM\Software\WOW6432Node\Microsoft\PCHealth] [HKLM\Software\WOW6432Node\Microsoft\Personalization] [HKLM\Software\WOW6432Node\Microsoft\Photos] [HKLM\Software\WOW6432Node\Microsoft\PLA] [HKLM\Software\WOW6432Node\Microsoft\Policies] [HKLM\Software\WOW6432Node\Microsoft\PowerShell] [HKLM\Software\WOW6432Node\Microsoft\Print] [HKLM\Software\WOW6432Node\Microsoft\Provisioning] [HKLM\Software\WOW6432Node\Microsoft\RADAR] [HKLM\Software\WOW6432Node\Microsoft\RendezvousApps] [HKLM\Software\WOW6432Node\Microsoft\RFC1156Agent] [HKLM\Software\WOW6432Node\Microsoft\RSSearch] [HKLM\Software\WOW6432Node\Microsoft\SchedulingAgent] [HKLM\Software\WOW6432Node\Microsoft\Security Center] [HKLM\Software\WOW6432Node\Microsoft\Sensors] [HKLM\Software\WOW6432Node\Microsoft\Shared Tools] [HKLM\Software\WOW6432Node\Microsoft\Shared Tools Location] [HKLM\Software\WOW6432Node\Microsoft\Silverlight] [HKLM\Software\WOW6432Node\Microsoft\Software] [HKLM\Software\WOW6432Node\Microsoft\SPEECH] [HKLM\Software\WOW6432Node\Microsoft\Speech_OneCore] [HKLM\Software\WOW6432Node\Microsoft\SQLNCLI11] [HKLM\Software\WOW6432Node\Microsoft\SQMClient] [HKLM\Software\WOW6432Node\Microsoft\StrongName] [HKLM\Software\WOW6432Node\Microsoft\Sync Framework] [HKLM\Software\WOW6432Node\Microsoft\SystemSettings] [HKLM\Software\WOW6432Node\Microsoft\TableTextService] [HKLM\Software\WOW6432Node\Microsoft\TabletTip] [HKLM\Software\WOW6432Node\Microsoft\Tcpip] [HKLM\Software\WOW6432Node\Microsoft\Terminal Server Client] [HKLM\Software\WOW6432Node\Microsoft\TouchPrediction] [HKLM\Software\WOW6432Node\Microsoft\TPG] [HKLM\Software\WOW6432Node\Microsoft\Tpm] [HKLM\Software\WOW6432Node\Microsoft\Tracing] [HKLM\Software\WOW6432Node\Microsoft\TV System Services] [HKLM\Software\WOW6432Node\Microsoft\uDRM] [HKLM\Software\WOW6432Node\Microsoft\Updates] [HKLM\Software\WOW6432Node\Microsoft\UPnP Control Point] [HKLM\Software\WOW6432Node\Microsoft\UPnP Device Host] [HKLM\Software\WOW6432Node\Microsoft\VAMT3] [HKLM\Software\WOW6432Node\Microsoft\VisualStudio] [HKLM\Software\WOW6432Node\Microsoft\WAB] [HKLM\Software\WOW6432Node\Microsoft\WBEM] [HKLM\Software\WOW6432Node\Microsoft\WIMMount] [HKLM\Software\WOW6432Node\Microsoft\Windows] [HKLM\Software\WOW6432Node\Microsoft\Windows Desktop Search] [HKLM\Software\WOW6432Node\Microsoft\Windows Error Reporting] [HKLM\Software\WOW6432Node\Microsoft\Windows Kits] [HKLM\Software\WOW6432Node\Microsoft\Windows Live] [HKLM\Software\WOW6432Node\Microsoft\Windows Live Writer] [HKLM\Software\WOW6432Node\Microsoft\Windows Mail] [HKLM\Software\WOW6432Node\Microsoft\Windows Media Device Manager] [HKLM\Software\WOW6432Node\Microsoft\Windows Media Foundation] [HKLM\Software\WOW6432Node\Microsoft\Windows Media Player NSS] [HKLM\Software\WOW6432Node\Microsoft\Windows Messaging Subsystem] [HKLM\Software\WOW6432Node\Microsoft\Windows NT] [HKLM\Software\WOW6432Node\Microsoft\Windows Phone] [HKLM\Software\WOW6432Node\Microsoft\Windows Photo Viewer] [HKLM\Software\WOW6432Node\Microsoft\Windows Portable Devices] [HKLM\Software\WOW6432Node\Microsoft\Windows Script Host] [HKLM\Software\WOW6432Node\Microsoft\WindowsRuntime] [HKLM\Software\WOW6432Node\Microsoft\WindowsUpdate] [HKLM\Software\WOW6432Node\Microsoft\Wisp] [HKLM\Software\WOW6432Node\Microsoft\WlanSvc] [HKLM\Software\WOW6432Node\Microsoft\WSDAPI] [HKLM\Software\WOW6432Node\Microsoft\XNA] [HKLM\Software\WOW6432Node\Microsoft\Cellular] [HKLM\Software\WOW6432Node\Microsoft\COM3] [HKLM\Software\WOW6432Node\Microsoft\DeviceReg] [HKLM\Software\WOW6432Node\Microsoft\DFS] [HKLM\Software\WOW6432Node\Microsoft\Driver Signing] [HKLM\Software\WOW6432Node\Microsoft\EnterpriseCertificates] [HKLM\Software\WOW6432Node\Microsoft\EventSystem] [HKLM\Software\WOW6432Node\Microsoft\FingerKB] [HKLM\Software\WOW6432Node\Microsoft\FuzzyDS] [HKLM\Software\WOW6432Node\Microsoft\Input] [HKLM\Software\WOW6432Node\Microsoft\LanguageOverlay] [HKLM\Software\WOW6432Node\Microsoft\Messaging] [HKLM\Software\WOW6432Node\Microsoft\MSMQ] [HKLM\Software\WOW6432Node\Microsoft\MTFFuzzyFactors] [HKLM\Software\WOW6432Node\Microsoft\MTFInputType] [HKLM\Software\WOW6432Node\Microsoft\MTFKeyboardMappings] [HKLM\Software\WOW6432Node\Microsoft\Non-Driver Signing] [HKLM\Software\WOW6432Node\Microsoft\Ole] [HKLM\Software\WOW6432Node\Microsoft\Phone] [HKLM\Software\WOW6432Node\Microsoft\Pim] [HKLM\Software\WOW6432Node\Microsoft\Poom] [HKLM\Software\WOW6432Node\Microsoft\Ras] [HKLM\Software\WOW6432Node\Microsoft\Rpc] [HKLM\Software\WOW6432Node\Microsoft\SecurityManager] [HKLM\Software\WOW6432Node\Microsoft\Semgr] [HKLM\Software\WOW6432Node\Microsoft\Shell] [HKLM\Software\WOW6432Node\Microsoft\SystemCertificates] [HKLM\Software\WOW6432Node\Microsoft\TermServLicensing] [HKLM\Software\WOW6432Node\Microsoft\Transaction Server] [HKLM\Software\WOW6432Node\Microsoft\Unified Store] [HKLM\Software\WOW6432Node\Microsoft\UserData] [HKLM\Software\WOW6432Node\Microsoft\Windows Search] [HKLM\Software\WOW6432Node\Microsoft\XAML] [HKLM\Software\WOW6432Node\Microsoft\Windows\ClickNote] [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion] [HKLM\Software\WOW6432Node\Microsoft\Windows\Dwm] [HKLM\Software\WOW6432Node\Microsoft\Windows\EnterpriseResourceManager] [HKLM\Software\WOW6432Node\Microsoft\Windows\Heat] [HKLM\Software\WOW6432Node\Microsoft\Windows\HTML Help] [HKLM\Software\WOW6432Node\Microsoft\Windows\ITStorage] [HKLM\Software\WOW6432Node\Microsoft\Windows\ScriptedDiagnosticsProvider] [HKLM\Software\WOW6432Node\Microsoft\Windows\Tablet PC] [HKLM\Software\WOW6432Node\Microsoft\Windows\UpdateApi] [HKLM\Software\WOW6432Node\Microsoft\Windows\Windows Error Reporting] [HKLM\Software\WOW6432Node\Microsoft\Windows\Windows Search] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\AarSvc] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\appmodel] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalService] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalServiceAndNoImpersonation] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalServiceHttp] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalServiceNetworkRestricted] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalServiceNetworkRestrictedDhcpLmHosts] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalServiceNoNetwork] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalServiceNoNetworkFirewall] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalSystemNetworkRestricted] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\netsvcs] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\NetworkService] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\NetworkServiceDnsNla] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\NetworkServiceRemoteDesktopHyperVAgent] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\NetworkServiceRemoteDesktopPublishing] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\PrintWorkflow] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\termsvcs] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\wusvcs] ---------- | FeatureControl [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT] "ybrowser.exe"="0" "xbrowser.exe"="0" "zbrowser.exe"="0" [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION] "ybrowser.exe"="11001" "xbrowser.exe"="7000" "UVKPortable.com"="11001" "Main.exe"="11000" "Bootstrap.exe"="11000" "ashsnap.exe"="10001" "PotPlayerMini64.exe"="11000" "Ashampoo Soundstage.exe"="10001" "d959eb740657300c308a0378e07d0d02.exe"="11001" "flux.exe"="11000" "fdm.exe"="11000" "OneDrive.exe"="11000" "ALLUpdate.exe"="11000" [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_CrossDomain_Fix_KB867801] "UI8.exe"="1" "ashsnap.exe"="1" "Ashampoo Soundstage.exe"="1" [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_Cross_Domain_Redirect_Mitigation] "UI8.exe"="1" "ashsnap.exe"="1" "Ashampoo Soundstage.exe"="1" [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE] "Bootstrap.exe"="110000" [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_CLIPCHILDREN_OPTIMIZATION] "PotPlayerMini64.exe"="1" [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT] "ybrowser.exe"="0" "xbrowser.exe"="0" "zbrowser.exe"="0" [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_GPU_RENDERING] "ybrowser.exe"="1" "xbrowser.exe"="1" "zbrowser.exe"="1" "fdm.exe"="1" [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN] "ybrowser.exe"="0" "xbrowser.exe"="0" "zbrowser.exe"="0" [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER] "UI8.exe"="10" "ybrowser.exe"="16" "xbrowser.exe"="16" "zbrowser.exe"="16" "ashsnap.exe"="10" "Ashampoo Soundstage.exe"="10" [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER] "UI8.exe"="10" "ybrowser.exe"="16" "xbrowser.exe"="16" "zbrowser.exe"="16" "ashsnap.exe"="10" "Ashampoo Soundstage.exe"="10" [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SCRIPTURL_MITIGATION] "UI8.exe"="1" "ybrowser.exe"="1" "xbrowser.exe"="1" "zbrowser.exe"="1" "ashsnap.exe"="1" "Ashampoo Soundstage.exe"="1" [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND] "ybrowser.exe"="1" "xbrowser.exe"="1" "zbrowser.exe"="1" [HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_TABBED_BROWSING] "ybrowser.exe"="1" "xbrowser.exe"="1" "zbrowser.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION] "PresentationHost.exe"="1" "sllauncher.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT] "HelpPane.exe"="1" "prevhost.exe"="1" "wmplayer.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS] "*"="1" "explorer.exe"="1" "iexplore.exe"="1" "infopath.exe"="0" "wmplayer.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS] "HelpPane.exe"="1" "prevhost.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG] "HelpPane.exe"="1" "PresentationHost.exe"="1" "sllauncher.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT] "HelpPane.exe"="1" "PresentationHost.exe"="1" "sllauncher.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT] "HelpPane.exe"="1" "PresentationHost.exe"="1" "sllauncher.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION] "HelpPane.exe"="10000" "prevhost.exe"="8000" "UNPUXHost.exe"="11000" "Filmora.exe"="9999" "sllauncher.exe"="8000" "FL64.exe"="11001" "FL64 (scaled).exe"="11001" "PhotoDirector11.exe"="10000" "ACD.exe"="11000" "PDR.exe"="11000" "Bandizip.exe"="11000" "Updater.exe"="11000" "fdm.exe"="11000" "googledrivesync.exe"="8000" "ApowerMirror.exe"="11001" "PhotoDirector9.exe"="10000" "SRVE.exe"="11000" "mbam.exe"="11000" "mbamtray.exe"="11000" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION] "PresentationHost.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL] "*"="1" "explorer.exe"="1" "iexplore.exe"="1" "SAPfewgsrv.exe"="0" "SAPGUI.exe"="0" "SAPGuiIT.exe"="0" "SAPLgPad.exe"="0" "SAPLOGON.exe"="0" "Scale_for_R3.exe"="0" "wmplayer.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP] "ieuser.exe"="1" "iexplore.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL] "HelpPane.exe"="1" "PresentationHost.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK] "YahooMusicEngine.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE] "HelpPane.exe"="100000" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT] "devenv.exe"="1" "dexplore.exe"="1" "helppane.exe"="1" "PresentationHost.exe"="0" "sllauncher.exe"="0" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS] "msfeedssync.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS] "PresentationHost.exe"="1" "prevhost.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_GPU_RENDERING] "fdm.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE] "HelpPane.exe"="1" "wmplayer.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG] ""="" "msiexec.exe"="0" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART] "cs.exe"="1" "waol.exe"="1" "wm.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS] "iexplore.exe"="0" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS] "helppane.exe"="0" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS] "wlmail.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN] "explorer.exe"="1" "HelpPane.exe"="1" "iexplore.exe"="1" "PresentationHost.exe"="1" "prevhost.exe"="1" "sllauncher.exe"="1" "wmplayer.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER] "explorer.exe"="10" "sllauncher.exe"="6" "iexplore.exe"="10" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER] "explorer.exe"="10" "sllauncher.exe"="6" "iexplore.exe"="10" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING] "explorer.exe"="1" "HelpPane.exe"="1" "iexplore.exe"="1" "prevhost.exe"="1" "wmplayer.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING] "explorer.exe"="1" "iexplore.exe"="1" "wmplayer.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME] "mshta.exe"="1" "outlook.exe"="1" "sidebar.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING] "explorer.exe"="1" "iexplore.exe"="1" "wmplayer.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN] "explorer.exe"="0" "iexplore.exe"="0" "wmplayer.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING] "communicator.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7] "HelpPane.exe"="1" "PresentationHost.exe"="1" "prevhost.exe"="1" "sllauncher.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL] "HelpPane.exe"="1" "prevhost.exe"="1" "wmplayer.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD] "msimn.exe"="1" "prevhost.exe"="1" "winmail.exe"="1" "wmplayer.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE] "PresentationHost.exe"="1" "sllauncher.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ] "HelpPane.exe"="1" "PresentationHost.exe"="1" "prevhost.exe"="1" "sllauncher.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT] "explorer.exe"="1" "HelpPane.exe"="1" "iexplore.exe"="1" "wmplayer.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND] "prevhost.exe"="1" "wmplayer.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE] "HelpPane.exe"="0" "prevhost.exe"="0" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG] "PresentationHost.exe"="1" "sllauncher.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX] "PresentationHost.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN] "msimn.exe"="1" "outlook.exe"="1" "winmail.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK] "HelpPane.exe"="1" "wmplayer.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL] "infopath.exe"="1" "excel.exe"="1" "powerpnt.exe"="1" "winword.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL] "HelpPane.exe"="1" "prevhost.exe"="1" "wmplayer.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE] "HelpPane.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD] "msn.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT] "explorer.exe"="1" "iexplore.exe"="1" "wmplayer.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS] "explorer.exe"="1" "iexplore.exe"="1" "wmplayer.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER] "iexplore.exe"="1" "prevhost.exe"="1" [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION] "explorer.exe"="1" "iexplore.exe"="1" "PresentationHost.exe"="1" "prevhost.exe"="1" "wmplayer.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_96DPI_PIXEL] [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION] "PresentationHost.exe"="1" "sllauncher.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT] "HelpPane.exe"="1" "prevhost.exe"="1" "wmplayer.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS] "*"="1" "explorer.exe"="1" "iexplore.exe"="1" "infopath.exe"="0" "wmplayer.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS] "HelpPane.exe"="1" "prevhost.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG] "HelpPane.exe"="1" "PresentationHost.exe"="1" "sllauncher.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT] "HelpPane.exe"="1" "PresentationHost.exe"="1" "sllauncher.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT] "HelpPane.exe"="1" "PresentationHost.exe"="1" "sllauncher.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION] "HelpPane.exe"="10000" "prevhost.exe"="8000" "popwndexe.exe"="11000" "FL.exe"="11001" "FL (scaled).exe"="11001" "Power2Go.exe"="11000" "Power2GoExpress.exe"="11000" "Main.exe"="9999" "WiseJetSearch.exe"="11000" "WiseProgramUninstaller.exe"="11000" "mbamtray.exe"="11000" "mbam.exe"="11000" "Bandizip.exe"="11000" "Updater.exe"="11000" "GOMA.exe"="11000" "GOM.exe"="10001" "KMPlayer64.exe"="11000" "ApowerMirror.exe"="11001" "MediaShow6.exe"="11000" "PowerDVD.exe"="8000" "Audials.exe"="11000" "AudialsNotifier.exe"="11000" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION] "PresentationHost.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL] "*"="1" "explorer.exe"="1" "iexplore.exe"="1" "SAPfewgsrv.exe"="0" "SAPGUI.exe"="0" "SAPGuiIT.exe"="0" "SAPLgPad.exe"="0" "SAPLOGON.exe"="0" "Scale_for_R3.exe"="0" "wmplayer.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP] "ieuser.exe"="1" "iexplore.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL] "HelpPane.exe"="1" "PresentationHost.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK] "YahooMusicEngine.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE] "HelpPane.exe"="100000" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT] "devenv.exe"="1" "dexplore.exe"="1" "helppane.exe"="1" "PresentationHost.exe"="0" "sllauncher.exe"="0" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS] "msfeedssync.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS] "PresentationHost.exe"="1" "prevhost.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE] "HelpPane.exe"="1" "wmplayer.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG] ""="" "msiexec.exe"="0" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART] "cs.exe"="1" "waol.exe"="1" "wm.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS] "iexplore.exe"="0" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS] "helppane.exe"="0" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS] "wlmail.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN] "explorer.exe"="1" "HelpPane.exe"="1" "iexplore.exe"="1" "PresentationHost.exe"="1" "prevhost.exe"="1" "sllauncher.exe"="1" "wmplayer.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER] "explorer.exe"="4" "sllauncher.exe"="6" "iexplore.exe"="10" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER] "explorer.exe"="2" "sllauncher.exe"="6" "iexplore.exe"="10" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING] "explorer.exe"="1" "HelpPane.exe"="1" "iexplore.exe"="1" "prevhost.exe"="1" "wmplayer.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING] "explorer.exe"="1" "iexplore.exe"="1" "wmplayer.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME] "mshta.exe"="1" "outlook.exe"="1" "sidebar.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING] "explorer.exe"="1" "iexplore.exe"="1" "wmplayer.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN] "explorer.exe"="0" "iexplore.exe"="0" "wmplayer.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING] "communicator.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7] "HelpPane.exe"="1" "PresentationHost.exe"="1" "prevhost.exe"="1" "sllauncher.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL] "HelpPane.exe"="1" "prevhost.exe"="1" "wmplayer.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD] "msimn.exe"="1" "prevhost.exe"="1" "winmail.exe"="1" "wmplayer.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE] "PresentationHost.exe"="1" "WindowsLiveWriter.exe"="1" "sllauncher.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ] "HelpPane.exe"="1" "PresentationHost.exe"="1" "prevhost.exe"="1" "sllauncher.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT] "explorer.exe"="1" "HelpPane.exe"="1" "iexplore.exe"="1" "wmplayer.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SCRIPTURL_MITIGATION] "bdcam.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND] "prevhost.exe"="1" "wmplayer.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE] "HelpPane.exe"="0" "prevhost.exe"="0" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG] "PresentationHost.exe"="1" "sllauncher.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX] "PresentationHost.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN] "msimn.exe"="1" "outlook.exe"="1" "winmail.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK] "HelpPane.exe"="1" "wmplayer.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL] "infopath.exe"="1" "excel.exe"="1" "powerpnt.exe"="1" "winword.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL] "HelpPane.exe"="1" "prevhost.exe"="1" "wmplayer.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE] "HelpPane.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WARN_ON_SEC_CERT_REV_FAILED] "mbam.exe"="0" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD] "msn.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT] "explorer.exe"="1" "iexplore.exe"="1" "wmplayer.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS] "explorer.exe"="1" "iexplore.exe"="1" "wmplayer.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER] "iexplore.exe"="1" "prevhost.exe"="1" [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION] "explorer.exe"="1" "iexplore.exe"="1" "PresentationHost.exe"="1" "prevhost.exe"="1" "wmplayer.exe"="1" ---------- | The Created last ones ¦ Modified [MD5.00000000000000000000000000000000] - [07/04/2020 11:28:36] - |D| - [54874714] - C:\Program Files (x86)\Anvisoft [MD5.00000000000000000000000000000000] - [07/04/2020 11:03:31] - |D| - [262338015] - C:\Program Files (x86)\Ashampoo [MD5.00000000000000000000000000000000] - [03/04/2020 01:26:26] - |D| - [30696646] - C:\Program Files (x86)\AutoIt3 [MD5.00000000000000000000000000000000] - [06/04/2020 10:28:34] - |D| - [2762171] - C:\Program Files (x86)\Defendemus [MD5.00000000000000000000000000000000] - [03/04/2020 11:39:53] - |D| - [20641460] - C:\Program Files (x86)\FreeCodecPack [MD5.00000000000000000000000000000000] - [06/04/2020 10:34:37] - |D| - [115610054] - C:\Program Files (x86)\Innovative Solutions [MD5.00000000000000000000000000000000] - [01/04/2020 14:05:14] - |D| - [197840] - C:\Program Files (x86)\KeyCryptSDK [MD5.00000000000000000000000000000000] - [05/04/2020 15:06:47] - |D| - [12067195] - C:\Program Files (x86)\MyPC Backup [MD5.00000000000000000000000000000000] - [06/04/2020 10:33:56] - |D| - [16095136] - C:\Program Files (x86)\QQ [MD5.00000000000000000000000000000000] - [01/04/2020 10:07:00] - |D| - [65019955] - C:\Program Files (x86)\Samsung [MD5.52485C93341F8504F453CC8D5543482C] - [04/04/2020 09:56:23] - |A| - [76567] - C:\WINDOWS\ZAM.krnl.trace [MD5.3A0B2FD01FC4DB8439466F4624EF94AE] - [04/04/2020 09:56:23] - |A| - [42219] - C:\WINDOWS\ZAM_Guard.krnl.trace [MD5.00F8D7789FB6CD8299FDE51C9D5F1A5C] - [06/04/2020 10:27:46] - |A| - [1880064] - C:\WINDOWS\Installer\3620bca.msi [MD5.A7F1BB43A5AC54931CAD22F8465B09E7] - [02/04/2020 13:26:07] - |A| - [20480] - C:\WINDOWS\Installer\SourceHash{2BDF230B-4373-444E-BBC9-9C1AE58F8AF8} [MD5.353E354C9601C8B494C8646FF0A946E8] - [06/04/2020 10:28:30] - |A| - [20480] - C:\WINDOWS\Installer\SourceHash{50380485-9F99-4EA1-BD78-045C5E1BAD0A} [MD5.A2BDED540FFB859C5D7CCB889458EBA9] - [01/04/2020 14:06:49] - |A| - [20480] - C:\WINDOWS\Installer\SourceHash{54D8BC39-FC50-48C0-AEF9-AB651946989C} [MD5.1C37AB654F2EE2346779D8314D15C88E] - [01/04/2020 16:43:20] - |A| - [20480] - C:\WINDOWS\Installer\SourceHash{567591EE-85F7-4E4D-AE28-FD65FCF4F201} [MD5.A8837EF946879CB986739B70B51ED586] - [01/04/2020 16:11:01] - |A| - [20480] - C:\WINDOWS\Installer\SourceHash{D15DF9B0-3A98-4BEF-B7D5-FC3AEA478445} [MD5.CA462C25434F84FA1261CAD23E09F77B] - [03/04/2020 01:08:10] - |A| - [200704] - C:\WINDOWS\Installer\SourceHash{DE57204B-4E6E-44E0-814A-D3823B5F45FE} [MD5.00000000000000000000000000000000] - [06/04/2020 10:28:36] - |D| - [67646] - C:\WINDOWS\Installer\{50380485-9F99-4EA1-BD78-045C5E1BAD0A} [MD5.00000000000000000000000000000000] - [01/04/2020 14:07:48] - |D| - [114212] - C:\WINDOWS\Installer\{54D8BC39-FC50-48C0-AEF9-AB651946989C} [MD5.00000000000000000000000000000000] - [01/04/2020 18:02:03] - |D| - [764030] - C:\WINDOWS\Installer\{567591EE-85F7-4E4D-AE28-FD65FCF4F201} [MD5.00000000000000000000000000000000] - [01/04/2020 16:12:06] - |D| - [8503983] - C:\WINDOWS\Installer\{D15DF9B0-3A98-4BEF-B7D5-FC3AEA478445} [MD5.00000000000000000000000000000000] - [03/04/2020 01:09:15] - |D| - [830308] - C:\WINDOWS\Installer\{DE57204B-4E6E-44E0-814A-D3823B5F45FE} [MD5.D03124A92936B3B1D38AC31D9B5582F8] - [03/04/2020 01:02:14] - |A| - [51120] - C:\WINDOWS\system32\ambakdrv.sys [MD5.98B78382C46541F2FFBFFB4CB3C709A2] - [03/04/2020 01:02:14] - |A| - [171952] - C:\WINDOWS\system32\ammntdrv.sys [MD5.301167E69BDE24CE24FB53376C422B3B] - [03/04/2020 01:02:14] - |A| - [38320] - C:\WINDOWS\system32\amwrtdrv.sys [MD5.B340DD232771980C38884EE99B191051] - [01/04/2020 16:13:17] - |A| - [341224] - C:\WINDOWS\system32\cmdkbdcss64.dll [MD5.0861DD5714AE84CAA7087957C64251B2] - [01/04/2020 16:13:40] - |A| - [454616] - C:\WINDOWS\system32\cssguard64.dll [MD5.0BD06FB509A21021CB3488B6E9222C82] - [06/04/2020 10:34:52] - |A| - [178840] - C:\WINDOWS\system32\Drivers\avgntflt.sys [MD5.57AD887283D961B370F655B7BC541903] - [06/04/2020 10:34:52] - |A| - [169864] - C:\WINDOWS\system32\Drivers\avipbb.sys [MD5.2CBA09A7983B1D39531B768BCED08C20] - [06/04/2020 10:34:52] - |A| - [44488] - C:\WINDOWS\system32\Drivers\avkmgr.sys [MD5.42A0DD2C97751447DEDADA1A18536707] - [01/04/2020 17:47:39] - |A| - [17872] - C:\WINDOWS\system32\Drivers\cmdboot.sys [MD5.419679B07459AE41BED0EA733702E960] - [01/04/2020 16:14:06] - |A| - [125000] - C:\WINDOWS\system32\Drivers\cmdcss.sys [MD5.01B95474F03A1844D66AC280A1763C79] - [05/04/2020 08:54:03] - |A| - [37776] - C:\WINDOWS\system32\Drivers\eppdisk.sys [MD5.9DA36321263CCD2954E4062370A1DF5E] - [02/04/2020 17:31:56] - |A| - [195432] - C:\WINDOWS\system32\Drivers\farflt.sys [MD5.0BEB78AC69A1E8B77FE407CF5BE9DB1E] - [01/04/2020 16:32:38] - |A| - [63256] - C:\WINDOWS\system32\Drivers\isedrv.sys [MD5.BF0E0B7DE4E9BC8E0515779F66ACA853] - [01/04/2020 14:05:28] - |A| - [161408] - C:\WINDOWS\system32\Drivers\KeyCrypt64.sys [MD5.2EC5A65E71610FBA01F1E5CF054E9701] - [02/04/2020 09:15:05] - |A| - [153312] - C:\WINDOWS\system32\Drivers\mbae64.sys [MD5.31E4AC0C3D3BAC32082304BD43560760] - [02/04/2020 09:15:16] - |A| - [20936] - C:\WINDOWS\system32\Drivers\MbamElam.sys [MD5.D3FC26580CEA5AEFBE9227695DF8DCDA] - [01/04/2020 18:00:51] - |A| - [272] - C:\WINDOWS\system32\Drivers\sfi.dat [MD5.A39B84A3788C0D2B21FD47929E821E0B] - [06/04/2020 18:37:43] - |A| - [95952] - C:\WINDOWS\system32\Drivers\TFsFltX64_ev.sys [MD5.21E13F2CB269DEFEAE5E1D09887D47BB] - [01/04/2020 14:17:16] - |A| - [203680] - C:\WINDOWS\system32\Drivers\zam64.sys [MD5.21E13F2CB269DEFEAE5E1D09887D47BB] - [01/04/2020 14:17:12] - |A| - [203680] - C:\WINDOWS\system32\Drivers\zamguard64.sys [MD5.63D0A18DC95178D4D6CA646D79FD311D] - [03/04/2020 01:06:19] - |A| - [104] - C:\WINDOWS\syswow64\AbBakConfig.dat [MD5.8CBFDA9D6623325B17EAB2B99314FF26] - [01/04/2020 16:13:09] - |A| - [262376] - C:\WINDOWS\syswow64\cmdkbdcss32.dll [MD5.772EFE2E9B31B4509976F0FEAD355021] - [01/04/2020 16:13:32] - |A| - [337856] - C:\WINDOWS\syswow64\cssguard32.dll [MD5.0EF2541BCEA24F3489233B1F93AFD56E] - [06/04/2020 19:04:12] - |AH| - [78188] - C:\WINDOWS\syswow64\mlfcache.dat [MD5.156E6300DF4379290F181C518D2233C1] - [03/04/2020 01:06:19] - |A| - [150] - C:\WINDOWS\syswow64\winsevr.dat ---------- | Drives D: [07/04/2020 10:48:38] - |A| - (.-.) - [1381] - (0.0.0.0) - D:\Advanced Disk Cleaner.lnk [07/04/2020 10:48:38] - |A| - (.-.) - [1249] - (0.0.0.0) - D:\Advanced Task Manager.lnk [07/04/2020 10:48:38] - |A| - (.-.) - [1746] - (0.0.0.0) - D:\Advanced Uninstaller PRO 12.lnk [07/04/2020 10:48:38] - |A| - (.-.) - [1024] - (0.0.0.0) - D:\Chercher tout.lnk [07/04/2020 10:48:38] - |A| - (.-.) - [1144] - (0.0.0.0) - D:\MyPC Backup.lnk [07/04/2020 10:48:39] - |A| - (.-.) - [1480] - (0.0.0.0) - D:\Orange Defender Antivirus.lnk [07/04/2020 10:48:38] - |A| - (.-.) - [1487] - (0.0.0.0) - D:\UsbFix.lnk [07/04/2020 10:48:38] - |A| - (.-.) - [1288] - (0.0.0.0) - D:\VPN PRO.lnk E: [07/04/2020 10:48:12] - |A| - (.-.) - [1381] - (0.0.0.0) - E:\Advanced Disk Cleaner.lnk [07/04/2020 10:48:12] - |A| - (.-.) - [1249] - (0.0.0.0) - E:\Advanced Task Manager.lnk [07/04/2020 10:48:12] - |A| - (.-.) - [1746] - (0.0.0.0) - E:\Advanced Uninstaller PRO 12.lnk [07/04/2020 10:48:12] - |A| - (.-.) - [1024] - (0.0.0.0) - E:\Chercher tout.lnk [07/04/2020 10:48:12] - |A| - (.-.) - [1144] - (0.0.0.0) - E:\MyPC Backup.lnk [07/04/2020 10:48:12] - |A| - (.-.) - [1480] - (0.0.0.0) - E:\Orange Defender Antivirus.lnk [07/04/2020 10:48:12] - |A| - (.-.) - [1487] - (0.0.0.0) - E:\UsbFix.lnk [07/04/2020 10:48:12] - |A| - (.-.) - [1288] - (0.0.0.0) - E:\VPN PRO.lnk G: [25/02/2019 07:10:47] - |A| - (.-.) - [1232] - (0.0.0.0) - G:\Slowin' Killer - Donner son avis.lnk [25/02/2019 07:10:47] - |A| - (.-.) - [1261] - (0.0.0.0) - G:\Slowin' Killer - Analyse_(1).lnk [25/02/2019 07:10:48] - |A| - (.-.) - [1266] - (0.0.0.0) - G:\Slowin' Killer - Optimize_(1).lnk [07/04/2020 10:29:58] - |A| - (.-.) - [1232] - (0.0.0.0) - G:\Donner votre avis sur Slowin' Killer.lnk [25/02/2019 07:10:49] - |A| - (.Copyright (C) 2013-2019 SosVirus Software - AdsFix.) - [5736344] - (21.2.19.2) - G:\adsfix_V6_21.02.19.2.exe [25/02/2019 07:09:36] - |A| - (.- Junkware Removal Tool.) - [1790024] - (8.1.4.0) - G:\JRT.exe [25/02/2019 07:09:44] - |A| - (.Copyright (C) 2013-2017 SosVirus Software - Pre_Scan.) - [3059624] - (16.10.17.1) - G:\pre-scan_7_16.10.17.1.exe [25/02/2019 07:09:53] - |A| - (.© BleepingComputer.com. - Terminates malware processes so that you can run your normal security programs..) - [1792640] - (2.9.1.0) - G:\rkill_2.9.1.0.exe [25/02/2019 07:09:57] - |A| - (. - Kahica Setup .) - [2439402] - (0.0.0.0) - G:\SkinPacks_0475149786.exe [25/02/2019 07:10:00] - |A| - (.? 2008/2019 - El Desaparecido - www.SOSVirus.net - UsbFix Premium.) - [4576600] - (11.0.1.1) - G:\UsbFix_2019_11.012.exe [25/02/2019 07:10:05] - |A| - (.Nicolas Coolman - ZHPDiag.) - [3201408] - (2019.2.19.22) - G:\ZHPDiag3.exe [25/02/2019 09:30:41] - |A| - (.NCH Software - Debut Video Capture Software.) - [2406960] - (0.0.0.0) - G:\DebutVideoCaptureSoftware.exe [25/02/2019 09:30:43] - |A| - (.© BleepingComputer.com. - Terminates malware processes so that you can run your normal security programs..) - [1802704] - (2.9.1.0) - G:\iExplore.exe H: [07/04/2020 10:48:03] - |A| - (.-.) - [1381] - (0.0.0.0) - H:\Advanced Disk Cleaner.lnk [07/04/2020 10:48:06] - |A| - (.-.) - [1249] - (0.0.0.0) - H:\Advanced Task Manager.lnk [07/04/2020 10:48:08] - |A| - (.-.) - [1746] - (0.0.0.0) - H:\Advanced Uninstaller PRO 12.lnk [07/04/2020 10:48:08] - |A| - (.-.) - [1024] - (0.0.0.0) - H:\Chercher tout.lnk [07/04/2020 10:47:48] - |A| - (.-.) - [1144] - (0.0.0.0) - H:\MyPC Backup.lnk [07/04/2020 10:47:53] - |A| - (.-.) - [1480] - (0.0.0.0) - H:\Orange Defender Antivirus.lnk [07/04/2020 10:47:58] - |A| - (.-.) - [1487] - (0.0.0.0) - H:\UsbFix.lnk [07/04/2020 10:47:58] - |A| - (.-.) - [1288] - (0.0.0.0) - H:\VPN PRO.lnk I: [10/05/2017 22:03:43] - |N| - (.-.) - [415] - (0.0.0.0) - I:\SmartClean.ini J: [27/11/2016 17:14:03] - |H| - (.-.) - [16] - (0.0.0.0) - J:\AUTORUN.INF M: [05/12/2019 12:26:12] - |A| - (.-.) - [1962] - (0.0.0.0) - M:\4 - Moby Dawn - Anti-JJAD en internet repairs for barro account - Raccourci.lnk [07/04/2020 10:47:11] - |A| - (.-.) - [1381] - (0.0.0.0) - M:\Advanced Disk Cleaner.lnk [07/04/2020 10:47:11] - |A| - (.-.) - [1249] - (0.0.0.0) - M:\Advanced Task Manager.lnk [07/04/2020 10:47:11] - |A| - (.-.) - [1746] - (0.0.0.0) - M:\Advanced Uninstaller PRO 12.lnk [02/04/2020 19:42:59] - |A| - (.-.) - [968] - (0.0.0.0) - M:\AIMP.lnk [07/04/2020 10:47:11] - |A| - (.-.) - [1024] - (0.0.0.0) - M:\Chercher tout.lnk [05/12/2019 12:26:12] - |A| - (.-.) - [604] - (0.0.0.0) - M:\COMODO TrustConnect (VPN).lnk [05/12/2019 12:26:07] - |A| - (.-.) - [1232] - (0.0.0.0) - M:\Donner votre avis sur Slowin' Killer.lnk [02/04/2020 19:43:01] - |A| - (.-.) - [1108] - (0.0.0.0) - M:\foobar2000.lnk [05/12/2019 12:26:09] - |A| - (.-.) - [1450] - (0.0.0.0) - M:\Microsoft Edge.lnk [07/04/2020 10:47:11] - |A| - (.-.) - [1144] - (0.0.0.0) - M:\MyPC Backup.lnk [07/04/2020 10:47:11] - |A| - (.-.) - [1480] - (0.0.0.0) - M:\Orange Defender Antivirus.lnk [05/12/2019 12:26:07] - |A| - (.-.) - [1262] - (0.0.0.0) - M:\Slowin' Killer - Analyser (1).lnk [07/04/2020 10:47:11] - |A| - (.-.) - [1487] - (0.0.0.0) - M:\UsbFix.lnk [05/12/2019 12:26:12] - |A| - (.-.) - [956] - (0.0.0.0) - M:\Utilisateurs - Raccourci.lnk [07/04/2020 10:47:11] - |A| - (.-.) - [1288] - (0.0.0.0) - M:\VPN PRO.lnk [02/04/2020 19:42:59] - |A| - (.Artem Izmaylov - AIMP Setup.) - [11855640] - (4.0.0.0) - M:\AIMP_v4.60.2180.exe [06/10/2019 23:50:07] - || - (.Ashampoo GmbH & Co. KG - Ashampoo HDD Control 3 Setup .) - [17669784] - (3.20.0.0) - M:\ashampoo_hdd_control_3_3.20.00_sm.exe [16/03/2020 14:57:25] - |A| - (.Copyright © Avanquest Software 2008 - Avanquest Connection Manager .) - [11135472] - (4.1.100.1332) - M:\avanquest-connection-manager-2.03.exe [08/10/2019 20:16:31] - || - (.Copyright (c) Baidu Inc. - Baidu Browser.) - [48299056] - (43.23.1000.467) - M:\baidu-spark-browser43-23-1000-467.exe [08/10/2019 20:16:33] - || - (.-.) - [42845184] - (5.1.0.0) - M:\banner-designer-5-1-en-win.exe [05/12/2019 12:26:07] - |A| - (.-.) - [11787448] - (0.0.0.0) - M:\bitdefender_windows_c6108922-9134-4747-9cf3-cd4cd5ee8587.exe [08/10/2019 20:16:35] - || - (. - .) - [61197060] - (4.1.100.1332) - M:\digital-video-duplicator_1_16766.exe [08/10/2019 20:16:40] - || - (.-.) - [21958840] - (0.0.0.0) - M:\iston-pdf-creator.exe [05/12/2019 12:26:04] - |A| - (.- Junkware Removal Tool.) - [1790024] - (8.1.4.0) - M:\JRT.exe [20/08/2019 06:04:06] - || - (.-.) - [43709] - (0.0.0.0) - M:\kcwinamp.exe [11/09/2019 18:28:03] - || - (.-.) - [49801040] - (0.0.0.0) - M:\sony-ericsson-update-service-2-13-8-201307151333-es-en-br-fr-de-it-win.exe [20/08/2019 06:04:06] - || - (.© Valve Corporation - Steam.) - [1573568] - (2.10.91.91) - M:\SteamSetup.exe [27/10/2019 17:39:00] - |RASH| - (.Copyright (C) 2013-2019 SOSVirus - Real Time Protection for UsbFix Anti-Malware Professionnal.) - [1168504] - (10.0.0.31) - M:\UsbFixMonitor.exe [01/07/2019 06:30:12] - || - (.-.) - [3885] - (0.0.0.0) - M:\Lastsession.inf [02/04/2020 19:43:01] - |A| - (.-.) - [1550] - (0.0.0.0) - M:\AIMP3.ini [11/10/2019 11:19:42] - |A| - (.-.) - [68] - (0.0.0.0) - M:\pmp_usb.ini O: [07/04/2020 10:47:05] - |A| - (.-.) - [1144] - (0.0.0.0) - O:\MyPC Backup.lnk [07/04/2020 10:47:06] - |A| - (.-.) - [1487] - (0.0.0.0) - O:\UsbFix.lnk [07/04/2020 10:47:05] - |A| - (.-.) - [1480] - (0.0.0.0) - O:\Orange Defender Antivirus.lnk [07/04/2020 10:47:06] - |A| - (.-.) - [1288] - (0.0.0.0) - O:\VPN PRO.lnk [07/04/2020 10:47:06] - |A| - (.-.) - [1381] - (0.0.0.0) - O:\Advanced Disk Cleaner.lnk [07/04/2020 10:47:06] - |A| - (.-.) - [1249] - (0.0.0.0) - O:\Advanced Task Manager.lnk [07/04/2020 10:47:06] - |A| - (.-.) - [1024] - (0.0.0.0) - O:\Chercher tout.lnk [07/04/2020 10:47:06] - |A| - (.-.) - [1746] - (0.0.0.0) - O:\Advanced Uninstaller PRO 12.lnk [14/02/2010 00:18:58] - |A| - (.Codyssey.com - StartCodySafe - Starter for CodySafe portable environment.) - [182756] - (0.2.0.3) - O:\StartCodySafe.exe [27/02/2020 16:09:16] - |A| - (.- Download Manager.) - [973104] - (1.3.2.3) - O:\ejay_hiphop5_reloaded_downloader.exe [18/12/2024 22:52:34] - |A| - (.Copyright©2017 Wondershare. - wondershare-dvd-creator_setup_full619.exe.) - [1580272] - (2.1.3.2) - O:\dvd-creator_setup_full619.exe [27/02/2020 16:09:49] - |A| - (.- Download Manager.) - [973104] - (1.3.2.3) - O:\ejay_dance6_reloaded_downloader.exe [18/12/2024 19:31:30] - |A| - (. - iBoysoft File Protector Setup .) - [4981393] - (0.0.0.0) - O:\iboysoftfileprotectorx64.exe [10/03/2020 17:54:20] - |A| - (.- Installs and updates drivers.) - [88112] - (1.0.0.0) - O:\DriverPack.exe [18/12/2024 22:52:31] - |A| - (.Copyright by Abelssoft - ScreenVideo 2019 .) - [49801120] - (1.0.0.0) - O:\screenvideo.exe [18/12/2024 22:52:33] - |A| - (.Copyright©2017 Wondershare. - video-converter-ultimate_setup_full905.exe.) - [990312] - (2.0.9.2) - O:\video-converter-ultimate_setup_full905.exe [18/12/2024 22:52:34] - |A| - (.Copyright©2017 IskySoft. - iskysoft-video-converter-ultimate-(cpc)_setup_full1329.exe.) - [971400] - (2.0.15.2) - O:\video-converter-ultimate_setup_full1329.exe [18/12/2024 22:52:33] - |A| - (.-.) - [79067832] - (0.0.0.0) - O:\x-ipad-magic-platinum-fr.exe [18/12/2024 23:49:44] - |A| - (.©1999-2018 Jonathan Bennett & AutoIt Team - Farbar Recovery Scan Tool.) - [2581504] - (27.1.2020.0) - O:\FRST64.exe [25/02/2020 14:43:38] - |A| - (.-.) - [68] - (0.0.0.0) - O:\pmp_usb.ini ---------- | C: [MD5.6A937195C91BA067EF0DF5849E690E76] - [10/03/2020 11:29:02] - |A| - (.-.) - [67] - (0.0.0.0) - C:\$-crew - j’aurais pas dû.m3u [09/05/2019 16:20:52] - |SD| - [175195960] - C:\$360Section [17/10/2019 09:48:30] - |D| - [672834] - C:\$AV_ASW [31/08/2016 13:42:08] - |D| - [334295] - C:\$GetCurrent [05/04/2020 09:21:29] - |SHD| - [129] - C:\$RECYCLE.BIN [20/10/2019 19:52:44] - |HD| - [0] - C:\$WinREAgent [MD5.D41D8CD98F00B204E9800998ECF8427E] - [31/08/2016 16:29:29] - |N| - (.-.) - [0] - (0.0.0.0) - C:\$WINRE_BACKUP_PARTITION.MARKER [MD5.62502E20C905989A887B7B193A8A6FCD] - [10/03/2020 11:29:06] - |A| - (.-.) - [96] - (0.0.0.0) - C:\...que vive l industrie.m3u [MD5.FAD5D2C0650BB7BB8007153274C79829] - [18/12/2024 23:52:45] - |A| - (.-.) - [644094] - (0.0.0.0) - C:\.com.google.Chrome.7uMCf1 [MD5.D857E9B75C070BF6198CEF298B328071] - [24/09/2018 16:34:55] - |ASH| - (.-.) - [56] - (0.0.0.0) - C:\.dropbox.device [MD5.6E8F79F0EE3E0735DBD312ED3D978E6B] - [10/03/2020 11:29:13] - |A| - (.-.) - [197] - (0.0.0.0) - C:\.m3u [MD5.B6DE93EF158C9964EAA48B3B9B40F489] - [27/01/2020 14:34:40] - |A| - (.-.) - [441333916] - (0.0.0.0) - C:\.thumbdata3--1967290299 [12/03/2020 17:20:54] - |D| - [1727115920] - C:\100APPLE [MD5.B3426552821ADA6DE1606D26270B43E2] - [19/12/2024 03:11:02] - |A| - (.-.) - [215673357] - (0.0.0.0) - C:\10CREM A UPLOADER SUR ASSISTE ET WANTETE FLUX.mp4 [MD5.BA0964EDB61F32A94C7AA2716B1A92CA] - [10/03/2020 11:21:45] - |A| - (.-.) - [89] - (0.0.0.0) - C:\11_11 - byo (audio).m3u [MD5.8C8C9B4EB9E5D2BABD0535760665AD20] - [27/01/2020 14:35:21] - |A| - (.-.) - [25887] - (0.0.0.0) - C:\1513157253674.jpg [MD5.9A6D118A690F633D8A14386C9497B9AB] - [07/03/2020 00:49:21] - |A| - (.-.) - [805306368] - (0.0.0.0) - C:\16152812.bin [MD5.5DCE2C9231AED4D76D3E2289154E45D4] - [10/03/2020 11:22:18] - |A| - (.-.) - [60] - (0.0.0.0) - C:\2018-12-27 004633(1).m3u [MD5.3420B3246E09F0A3CC132E34120FFD8C] - [25/02/2020 18:44:19] - |A| - (.-.) - [45992356] - (0.0.0.0) - C:\20180609_140437.mp4 [MD5.2D1350F4858358175D218303726528ED] - [25/02/2020 18:07:44] - |A| - (.-.) - [280903985] - (0.0.0.0) - C:\20180609_181553.mp4 [MD5.C055B846332310203B7FECE96CBA3030] - [25/02/2020 18:44:19] - |A| - (.-.) - [185043] - (0.0.0.0) - C:\2019-05-02 at 09-31-58.mp4 [MD5.43DE67261885ED1FA5B225EB96EEDBB8] - [19/12/2024 00:30:37] - |A| - (.-.) - [1361744024] - (0.0.0.0) - C:\20200129-075058-720x360.mp4 [MD5.D8711216E4FDC8E5202D5161A5F21BCC] - [19/12/2024 00:28:23] - |A| - (.-.) - [350730246] - (0.0.0.0) - C:\20200129-090920-720x360.mp4 [MD5.014D3DBE36C3C7808625159BA751F1AD] - [19/12/2024 00:28:36] - |A| - (.-.) - [81841220] - (0.0.0.0) - C:\20200129-102603-720x360.mp4 [MD5.3EC05151C96F14F82C87ED588E22384B] - [19/12/2024 00:29:59] - |A| - (.-.) - [301096154] - (0.0.0.0) - C:\20200129-145319-720x360.mp4 [MD5.034716620E5AD0AF040095CD82BFE1F7] - [19/12/2024 00:52:54] - |A| - (.-.) - [18886826] - (0.0.0.0) - C:\20200201-113416-480x240.mp4 [MD5.BBBFB93DEAFC15CF9F8F786038AF7A57] - [19/12/2024 01:57:28] - |A| - (.-.) - [643969964] - (0.0.0.0) - C:\20200210_164742.mp4 [MD5.6CD3E17D826A8889C254216A61FF802D] - [25/02/2020 18:44:57] - |A| - (.-.) - [4111507] - (0.0.0.0) - C:\22 - johnson sc & price towers images (1).mp4 [MD5.6CD3E17D826A8889C254216A61FF802D] - [25/02/2020 18:43:29] - |A| - (.-.) - [4111507] - (0.0.0.0) - C:\22 - johnson sc & price towers images (2).mp4 [MD5.6CD3E17D826A8889C254216A61FF802D] - [25/02/2020 18:09:36] - |A| - (.-.) - [4111507] - (0.0.0.0) - C:\22 - johnson sc & price towers images.mp4 [MD5.04EEE6190A24F8FC74EC3A050D6AFA95] - [25/02/2020 18:12:22] - |A| - (.-.) - [55234986] - (0.0.0.0) - C:\26-05-18-12-33 (1).mp4 [MD5.04EEE6190A24F8FC74EC3A050D6AFA95] - [25/02/2020 18:44:19] - |A| - (.-.) - [55234986] - (0.0.0.0) - C:\26-05-18-12-33 (2).mp4 [02/07/2019 11:40:57] - |RSD| - [2351104] - C:\360SANDBOX [MD5.96A3EB383A1D40146C91054C334B0D9F] - [10/03/2020 11:29:30] - |A| - (.-.) - [102] - (0.0.0.0) - C:\3rd wish feat. baby bash - obsesion (official music video, hq).m3u [MD5.96A3EB383A1D40146C91054C334B0D9F] - [10/03/2020 11:29:41] - |A| - (.-.) - [102] - (0.0.0.0) - C:\3rd wish feat. baby bash - obsession.m3u [MD5.9F86F681CCC7DD9A6996267E043A7BD5] - [10/03/2020 11:29:21] - |A| - (.-.) - [121] - (0.0.0.0) - C:\3à4 rem folie ice-tea hibiscus scène 1 version finale propriété.m3u [MD5.1E8D2F6B1719C51AAD510C1FC4975A33] - [10/03/2020 11:21:53] - |A| - (.-.) - [70] - (0.0.0.0) - C:\50 cent - baby by me ft. ne-yo.m3u [MD5.F673755EC1779228689EE9024333F0DE] - [27/01/2020 14:35:21] - |A| - (.-.) - [53053] - (0.0.0.0) - C:\6f4914fdd31be2b7fef56d53e50dadb2ce2a5cad.zip [06/03/2020 20:15:24] - |D| - [66738955] - C:\72280804a098bce2a63231 [MD5.8ADEA174011E2192B705B145350B330C] - [10/03/2020 11:22:07] - |A| - (.-.) - [91] - (0.0.0.0) - C:\727 [Bonus Tracks].m3u [22/01/2020 21:50:19] - |D| - [8281] - C:\@RestoreQuarantine [MD5.4617FA5831975B76E0A001013825D6C7] - [25/02/2020 18:44:56] - |A| - (.-.) - [16848462] - (0.0.0.0) - C:\A.mp4 [MD5.A0631B384D781025028F2216020087CE] - [10/03/2020 11:22:29] - |A| - (.-.) - [101] - (0.0.0.0) - C:\aaliyah - try again[128k]__[mp3-128k] (2).m3u [MD5.A0631B384D781025028F2216020087CE] - [10/03/2020 11:22:39] - |A| - (.-.) - [101] - (0.0.0.0) - C:\aaliyah - try again[128k]__[mp3-128k].m3u [MD5.778621D65C315C7B19C6614017DAF118] - [10/03/2020 11:22:47] - |A| - (.-.) - [91] - (0.0.0.0) - C:\aaliyah - we need a resolution[128k]__[mp3-128k].m3u [02/04/2020 23:20:34] - |D| - [756231353] - C:\AdsFix [MD5.BA3CE09C2F56683704C703C25246DBD5] - [03/04/2020 01:41:03] - |A| - (.-.) - [42399] - (0.0.0.0) - C:\AdsFix.txt [02/04/2020 12:52:30] - |D| - [2214351] - C:\AdwCleaner [11/02/2020 08:19:09] - |D| - [0] - C:\Aimersoft Video Converter Ultimate [MD5.DCD791F8A54AE8389C335581C599938D] - [10/03/2020 11:22:58] - |A| - (.-.) - [156] - (0.0.0.0) - C:\akon - lonely.m3u [MD5.6D9FEF668EC7B0E768B23CC52314BB82] - [10/03/2020 11:23:12] - |A| - (.-.) - [93] - (0.0.0.0) - C:\akon ft obie trice- look at me now.m3u [MD5.A0822430A2A2BC099ADCAEDC33AD1289] - [10/03/2020 11:23:26] - |A| - (.-.) - [95] - (0.0.0.0) - C:\akon last forever new stadium 2014_2.m3u [MD5.E7C20146755BB924FA6776793308AF6F] - [10/03/2020 11:23:38] - |A| - (.-.) - [118] - (0.0.0.0) - C:\alain chamfort - joy (clip officiel).m3u [MD5.3E5CA8A3E470F7A9A506A329EF29FE64] - [10/03/2020 11:23:49] - |A| - (.-.) - [378] - (0.0.0.0) - C:\alarm (2).m3u [MD5.0FE34D32C01CC7CCB879A90EF549F89C] - [10/03/2020 11:24:01] - |A| - (.-.) - [486] - (0.0.0.0) - C:\alarm.m3u [MD5.58B31D6DD2F49DD28D59317CD43C9B0B] - [10/03/2020 11:24:09] - |A| - (.-.) - [166] - (0.0.0.0) - C:\alarm2 (2).m3u [MD5.58B31D6DD2F49DD28D59317CD43C9B0B] - [10/03/2020 11:24:18] - |A| - (.-.) - [166] - (0.0.0.0) - C:\alarm2.m3u [MD5.9F17614CD9B8AF9A2D212D6927F53190] - [10/03/2020 11:24:22] - |A| - (.-.) - [148] - (0.0.0.0) - C:\alert (2).m3u [MD5.9F17614CD9B8AF9A2D212D6927F53190] - [10/03/2020 11:24:24] - |A| - (.-.) - [148] - (0.0.0.0) - C:\alert.m3u [28/08/2016 12:52:26] - |D| - [0] - C:\AMD [MD5.3B66F638B0135B011DD231C504A2F72B] - [23/01/2020 15:32:12] - |AH| - (.-.) - [1024] - (0.0.0.0) - C:\AMTAG.BIN [25/01/2020 09:54:11] - |D| - [0] - C:\Android [MD5.CEC4B718AFBBB71841B64BA9B72DFFBE] - [10/03/2020 11:49:31] - |A| - (.-.) - [160100] - (0.0.0.0) - C:\Android Start Button.exe [MD5.B2625407074C7F4DC10A9F45CF31C2C3] - [10/03/2020 11:24:25] - |A| - (.-.) - [143] - (0.0.0.0) - C:\Antena 1 - Love Flashback II.m3u [MD5.EE8D898F8A441BF48F554FC4E5CFA509] - [04/02/2008 07:35:00] - |A| - (.-.) - [42205184] - (0.0.0.0) - C:\anti-tfl 3.avi [MD5.01580102DDAB252BE99A4A3863320639] - [10/03/2020 11:24:36] - |A| - (.-.) - [70] - (0.0.0.0) - C:\Apocalypse Soon.m3u [15/02/2020 18:01:17] - |D| - [131612672] - C:\Apowersoft Screen Recorder Temp [MD5.84EF002513246BBD339A672C580FA741] - [10/03/2020 11:24:45] - |A| - (.-.) - [190] - (0.0.0.0) - C:\appear (2).m3u [MD5.84EF002513246BBD339A672C580FA741] - [10/03/2020 11:24:56] - |A| - (.-.) - [190] - (0.0.0.0) - C:\appear.m3u [MD5.6EF1A364FA92978125FBD267B8236A5D] - [10/03/2020 11:25:08] - |A| - (.-.) - [238] - (0.0.0.0) - C:\applause.m3u [09/04/2019 07:56:31] - |D| - [0] - C:\Apps [MD5.A529A907DE7D87657A00F874EAEE1924] - [13/12/2017 11:32:10] - |A| - (.-.) - [1281743] - (0.0.0.0) - C:\apture_impossibiliter_installer_cyberlink_powermedia_player_mr_windows_store.PNG.png [MD5.807D2DA34638778E812F69293D30BA69] - [10/03/2020 11:25:22] - |A| - (.-.) - [88] - (0.0.0.0) - C:\ariana grande - break free ft.m3u [MD5.713C905C85DFE652C1A769012CCE7787] - [10/03/2020 11:25:33] - |A| - (.-.) - [101] - (0.0.0.0) - C:\ariana grande - right there ft. big sean_1.m3u [MD5.33405C403FEAE7B5239D6B370906E7D9] - [10/03/2020 11:25:38] - |A| - (.-.) - [205] - (0.0.0.0) - C:\atomic bomb (2).m3u [MD5.33405C403FEAE7B5239D6B370906E7D9] - [10/03/2020 11:25:38] - |A| - (.-.) - [205] - (0.0.0.0) - C:\atomic bomb.m3u [MD5.14D283DC05128FF721C69067F1E4B42D] - [10/03/2020 11:25:38] - |A| - (.-.) - [415] - (0.0.0.0) - C:\Au Delà Des Rêves.m3u [MD5.C8C13B06DECF85B4552970DFF306523C] - [10/03/2020 11:25:38] - |A| - (.-.) - [60] - (0.0.0.0) - C:\auslogics octobre (2).m3u [MD5.C8C13B06DECF85B4552970DFF306523C] - [10/03/2020 11:25:50] - |A| - (.-.) - [60] - (0.0.0.0) - C:\auslogics octobre.m3u [15/02/2020 18:03:48] - |D| - [642] - C:\Auslogics Rescue [MD5.75E96DD722A564D3EA1ECD47238D8E9D] - [10/03/2020 11:26:02] - |A| - (.-.) - [90] - (0.0.0.0) - C:\austin mahone - banga! banga!_1.m3u [01/12/2017 02:23:37] - |RASHD| - [0] - C:\Autorun.inf [MD5.C9CE6AC5294B96D5CBE041B543822767] - [10/03/2020 11:26:12] - |A| - (.-.) - [108] - (0.0.0.0) - C:\ava-max-sweet-but-psycho-official-music-video.m3u [27/02/2020 16:35:28] - |D| - [0] - C:\avast! sandbox [MD5.95D78C096C79043EF1573A0AA05076ED] - [10/03/2020 11:26:25] - |A| - (.-.) - [124] - (0.0.0.0) - C:\Avenue De St Antoine.m3u [MD5.B6035EA8427C0F8821976A3D3A91EF66] - [09/03/2020 20:27:40] - |A| - (.-.) - [326364] - (0.0.0.0) - C:\avert sécurité certlock.PNG [06/03/2020 14:26:19] - |D| - [21314940] - C:\AVG_Remover [MD5.2AD11FC335E5D5866980E378926326F6] - [10/03/2020 11:26:36] - |A| - (.-.) - [79] - (0.0.0.0) - C:\avicii - lay me down.m3u [MD5.56DDF28E4DF1A00F0384E9AF25C97FF5] - [10/03/2020 11:26:46] - |A| - (.-.) - [102] - (0.0.0.0) - C:\avicii vs nicky romero - i could be the one.m3u [MD5.788B2EB754C1641B23367EB169DD2120] - [10/03/2020 11:26:53] - |A| - (.-.) - [71] - (0.0.0.0) - C:\baby g. & m.d. love - boom boom.m3u [15/02/2020 18:04:03] - |D| - [0] - C:\backup [MD5.C62609AA87B806CC322A6939CA9847DF] - [10/03/2020 11:27:03] - |A| - (.-.) - [76] - (0.0.0.0) - C:\bande son souvenirs 2019 et asmmd.m3u [MD5.F1A44A9B4D26CD06983CE356073F998E] - [10/03/2020 11:27:10] - |A| - (.-.) - [165] - (0.0.0.0) - C:\barrow 2 & widen 100% sécurisé.m3u [MD5.D1A2D52BB91F6ED77387D887E145139F] - [10/03/2020 11:27:21] - |A| - (.-.) - [96] - (0.0.0.0) - C:\bastille - things we lost in the fire.m3u [MD5.DE6A6DB8157A96E2655772C9499DA85A] - [10/03/2020 11:27:29] - |A| - (.-.) - [69] - (0.0.0.0) - C:\bazzi - mine (official video).m3u [24/12/2019 15:18:43] - |D| - [18830401] - C:\BCUninstaller [MD5.C0330C26B49C543BEADA7B6E3AF8C207] - [10/03/2020 11:27:40] - |A| - (.-.) - [104] - (0.0.0.0) - C:\beam2.m3u [MD5.81D1BE9F13A564C6BC3F9AD27F99BB0D] - [10/03/2020 11:27:48] - |A| - (.-.) - [200] - (0.0.0.0) - C:\benassi bros feat. dhany - every single day [official video hd].m3u [MD5.81D1BE9F13A564C6BC3F9AD27F99BB0D] - [10/03/2020 11:28:00] - |A| - (.-.) - [200] - (0.0.0.0) - C:\benassi-bros-feat-dhany-every-single-day-official-video-hd.m3u [MD5.81D1BE9F13A564C6BC3F9AD27F99BB0D] - [10/03/2020 11:28:08] - |A| - (.-.) - [200] - (0.0.0.0) - C:\benny benassi - every single day(2).m3u [MD5.81D1BE9F13A564C6BC3F9AD27F99BB0D] - [10/03/2020 11:28:16] - |A| - (.-.) - [200] - (0.0.0.0) - C:\benny benassi - every single day.m3u [MD5.212104399CC737107118BFEC101AA4D2] - [10/03/2020 11:28:29] - |A| - (.-.) - [119] - (0.0.0.0) - C:\Berceuses.m3u [MD5.8C7DEC9454FF3DCD49AAFCBE9D76B016] - [10/03/2020 11:29:18] - |A| - (.-.) - [182] - (0.0.0.0) - C:\beyonce missy elliott mc lyte & free - fighting temptations.m3u [MD5.30A7C57392A13E613488960E58FAB76B] - [10/03/2020 11:28:40] - |A| - (.-.) - [60] - (0.0.0.0) - C:\beyoncé - all night.m3u [MD5.D62B97A1529495002261A96028AD05A1] - [10/03/2020 11:28:53] - |A| - (.-.) - [75] - (0.0.0.0) - C:\beyoncé - formation - lyrics.m3u [MD5.FEF1415E00558DFC286316D8605DA78B] - [10/03/2020 11:29:03] - |A| - (.-.) - [59] - (0.0.0.0) - C:\beyoncé - sorry(1).m3u [MD5.FEF1415E00558DFC286316D8605DA78B] - [10/03/2020 11:29:10] - |A| - (.-.) - [59] - (0.0.0.0) - C:\beyoncé - sorry.m3u [MD5.41B25F488F5004F84A73F6E16EDF374F] - [10/03/2020 11:29:28] - |A| - (.-.) - [69] - (0.0.0.0) - C:\beyoncé party ft andré 3000 (2).m3u [MD5.41B25F488F5004F84A73F6E16EDF374F] - [10/03/2020 11:29:35] - |A| - (.-.) - [69] - (0.0.0.0) - C:\beyoncé party ft andré 3000.m3u [MD5.487F02ECCB7BABAF16291E93676B0EC3] - [10/03/2020 11:29:42] - |A| - (.-.) - [76] - (0.0.0.0) - C:\big boi - all night (official video).m3u [MD5.34D6738911FA22DD31D7AB10498AEC3A] - [10/03/2020 11:29:53] - |A| - (.-.) - [180] - (0.0.0.0) - C:\billie-eilish-bury-a-friend.m3u [MD5.EF4F5B61A9389F7FAAB93C8C91757641] - [10/03/2020 11:30:00] - |A| - (.-.) - [71] - (0.0.0.0) - C:\billie-eilish-wish-you-were-gay-audio.m3u [10/03/2020 18:07:58] - |D| - [28564217] - C:\bin [MD5.FCAFBDBF890A7821297F9D3D47B9B384] - [10/03/2020 11:30:12] - |A| - (.-.) - [259] - (0.0.0.0) - C:\birthday.m3u [MD5.0DF05C09517A5F5C4FE03D5816415E71] - [10/03/2020 11:30:18] - |A| - (.-.) - [84] - (0.0.0.0) - C:\black eyed peas - yesterday (official video) (2).m3u [MD5.0DF05C09517A5F5C4FE03D5816415E71] - [10/03/2020 11:30:20] - |A| - (.-.) - [84] - (0.0.0.0) - C:\black eyed peas - yesterday (official video).m3u [MD5.C0894DE5EEEA2C3ED12AD3CCCC0D8F9C] - [10/03/2020 11:30:20] - |A| - (.-.) - [182] - (0.0.0.0) - C:\black m - je suis chez moi (clip officiel).m3u [MD5.537251B3B37B3BDEE197F8F34FF2B9CD] - [10/03/2020 11:30:20] - |A| - (.-.) - [49] - (0.0.0.0) - C:\black-eyed-peas-xoxoxo-hq.m3u [MD5.5EBEDB23BD16E9C8498D0684E9A7E166] - [08/02/2008 00:01:51] - |A| - (.-.) - [677412864] - (0.0.0.0) - C:\boisson vitalook ou tricologue de anti-tfl 3.avi [MD5.711B8EE14237357AEAFA0997A9F8789E] - [10/03/2020 11:30:21] - |A| - (.-.) - [193] - (0.0.0.0) - C:\boo (2).m3u [MD5.711B8EE14237357AEAFA0997A9F8789E] - [10/03/2020 11:30:21] - |A| - (.-.) - [193] - (0.0.0.0) - C:\boo.m3u [MD5.C486C113B7DBD0D8A89B8361EA01810A] - [10/03/2020 11:30:22] - |A| - (.-.) - [93] - (0.0.0.0) - C:\booba - mon son clip officiel hd (2).m3u [MD5.C486C113B7DBD0D8A89B8361EA01810A] - [10/03/2020 11:30:23] - |A| - (.-.) - [93] - (0.0.0.0) - C:\booba - mon son clip officiel hd.m3u [MD5.654DBB5881952BEC91B0855B6AEB0E55] - [10/03/2020 11:30:24] - |A| - (.-.) - [76] - (0.0.0.0) - C:\booba - une vie_1.m3u [MD5.F10A865994BBCCAAE2C60540E2ECB551] - [10/03/2020 11:30:24] - |A| - (.-.) - [169] - (0.0.0.0) - C:\booba mon son.m3u [MD5.CC5D73E2A696964F77293BD068FE32E9] - [10/03/2020 11:30:24] - |A| - (.-.) - [90] - (0.0.0.0) - C:\booba-pgp-paroleslyrics (1).m3u [MD5.1C23DDF9784E19DEB870EEEAEBA7CA50] - [10/03/2020 11:30:24] - |A| - (.-.) - [68] - (0.0.0.0) - C:\Boom Clap.m3u [02/08/2012 04:02:18] - |SHD| - [94407472] - C:\Boot [MD5.2F84D7D58EE8D83C01191DB67076BAEE] - [13/03/2020 14:34:04] - |A| - (.-.) - [2048] - (0.0.0.0) - C:\BOOTCTG.BIN [MD5.0DBACCF6F62484244F6A48B7584019A8] - [30/10/2015 10:13:43] - |RASH| - (.-.) - [400228] - (0.0.0.0) - C:\bootmgr [MD5.75D0032AE18E04A1254448F3FEF14A6A] - [13/03/2020 14:34:06] - |A| - (.© Microsoft Corporation. - Boot Manager.) - [1350896] - (6.2.9200.16384) - C:\bootmgr.efi [MD5.93B885ADFE0DA089CDF634904FD59F71] - [30/10/2015 10:13:44] - |N| - (.-.) - [1] - (0.0.0.0) - C:\BOOTNXT [MD5.FFD762AC73CFA70809EB414591C80B75] - [06/03/2020 20:19:57] - |ASH| - (.-.) - [72] - (0.0.0.0) - C:\bootTel.dat [MD5.1A65512DD400B821D8352968EB148370] - [10/03/2020 11:30:25] - |A| - (.-.) - [62] - (0.0.0.0) - C:\brandy - what about us.m3u [MD5.80847F22110E8D04044E830ADC334DFB] - [10/03/2020 11:30:25] - |A| - (.-.) - [110] - (0.0.0.0) - C:\brandy never say never.m3u [MD5.88EB289C81E3C9F35F18742C30857445] - [10/03/2020 11:30:25] - |A| - (.-.) - [79] - (0.0.0.0) - C:\brice conrad - oh la.m3u [MD5.A4083A941562816027E3FF4A84873697] - [10/03/2020 11:30:26] - |A| - (.-.) - [96] - (0.0.0.0) - C:\calvin harris - blame ft. john newman.m3u [MD5.154933B3DFC45B3816F009834417E875] - [10/03/2020 11:30:26] - |A| - (.-.) - [89] - (0.0.0.0) - C:\calvin harris - i´m not alone.m3u [MD5.9F00A205B7D8CE5ECA6E773AB8775BC0] - [10/03/2020 11:30:26] - |A| - (.-.) - [79] - (0.0.0.0) - C:\calvin harris - my way (official video).m3u [05/02/2020 13:10:18] - |RD| - [0] - C:\Camera Roll [MD5.9FF3D526504C82CE5286D6D4589CA11A] - [10/03/2020 11:30:26] - |A| - (.-.) - [102] - (0.0.0.0) - C:\can't hold us (ft. ray dalton) (2).m3u [MD5.9FF3D526504C82CE5286D6D4589CA11A] - [10/03/2020 11:30:26] - |A| - (.-.) - [102] - (0.0.0.0) - C:\can't hold us (ft. ray dalton) (3).m3u [MD5.9FF3D526504C82CE5286D6D4589CA11A] - [10/03/2020 11:30:26] - |A| - (.-.) - [102] - (0.0.0.0) - C:\can't hold us (ft. ray dalton) (4).m3u [MD5.9FF3D526504C82CE5286D6D4589CA11A] - [10/03/2020 11:30:26] - |A| - (.-.) - [102] - (0.0.0.0) - C:\can't hold us (ft. ray dalton).m3u [MD5.3115BC3E740BA7ADBAB0A493D857104B] - [10/03/2020 11:30:27] - |A| - (.-.) - [68] - (0.0.0.0) - C:\cant-cant.m3u [24/12/2019 16:32:52] - |D| - [2747076717] - C:\Capture [MD5.6FD71CD80AF20B26C5A157CA0C1DFBD6] - [19/12/2024 01:50:21] - |A| - (.-.) - [2275819] - (0.0.0.0) - C:\CapturePNG.PNG [MD5.3774B211361F242DE820D4D62B294B74] - [10/03/2020 11:30:27] - |A| - (.-.) - [200] - (0.0.0.0) - C:\carly rae jepsen - good kiss maybe (brunoan mashup)[256k]__[mp3-320k].m3u [MD5.10EED3FDA24AF87A082EAC4D95DC63A9] - [10/03/2020 11:30:27] - |A| - (.-.) - [89] - (0.0.0.0) - C:\carly rae jepsen - this kiss_1.m3u [MD5.11B39925C7D57A0A2C12CD53D3468752] - [19/12/2024 00:23:13] - |A| - (.-.) - [109101] - (0.0.0.0) - C:\CARTE_LA_CITY (1).pdf [MD5.11B39925C7D57A0A2C12CD53D3468752] - [19/12/2024 00:23:01] - |A| - (.-.) - [109101] - (0.0.0.0) - C:\CARTE_LA_CITY.pdf [MD5.27F990B8E037D337B88BC97DA03C438A] - [10/03/2020 11:30:27] - |A| - (.-.) - [83] - (0.0.0.0) - C:\cascada - san francisco (official video hd).m3u [MD5.D1796CC15AFF329765F10E59155BF4FA] - [10/03/2020 11:30:27] - |A| - (.-.) - [114] - (0.0.0.0) - C:\cash cash - take me home ft bebe rexha [official video].m3u [10/03/2020 18:07:58] - |D| - [49689614] - C:\catalog [MD5.8C6BB9BCDA06BC525F655D83376B0E5A] - [10/03/2020 11:30:28] - |A| - (.-.) - [259] - (0.0.0.0) - C:\cavalry to the rescue.m3u [MD5.670F2ADC8A53738000CA5532C059F3C9] - [25/02/2020 15:42:52] - |A| - (.-.) - [7616580] - (0.0.0.0) - C:\cee-shine-drop-the-pen-prod-itsjowdyonthebeat-new-single-2019-newschool.mp3 [MD5.1EE91BB10B6B8853FA379CAE688E339F] - [10/03/2020 11:30:28] - |A| - (.-.) - [62] - (0.0.0.0) - C:\Celebration.m3u [MD5.1A6BA38EA1098B0F42E6DFAAD4B2ADBB] - [10/03/2020 11:30:28] - |A| - (.-.) - [204] - (0.0.0.0) - C:\celery break (2).m3u [MD5.1A6BA38EA1098B0F42E6DFAAD4B2ADBB] - [10/03/2020 11:30:28] - |A| - (.-.) - [204] - (0.0.0.0) - C:\celery break.m3u [MD5.212104399CC737107118BFEC101AA4D2] - [10/03/2020 11:30:29] - |A| - (.-.) - [119] - (0.0.0.0) - C:\charlie puth - _how long_ [official video](2).m3u [MD5.212104399CC737107118BFEC101AA4D2] - [10/03/2020 11:30:29] - |A| - (.-.) - [119] - (0.0.0.0) - C:\charlie puth - _how long_ [official video].m3u [MD5.F9EE3894265A56E87153120C0C765AA4] - [10/03/2020 11:30:29] - |A| - (.-.) - [266] - (0.0.0.0) - C:\chawki - time of our lives (official music video).m3u [MD5.6BA8DBC773FD509757264EAFD62AC149] - [10/03/2020 11:30:30] - |A| - (.-.) - [92] - (0.0.0.0) - C:\Checkmate!.m3u [MD5.CD1EA4EC0D4A1D49CFCDD17BBA49C751] - [10/03/2020 11:30:30] - |A| - (.-.) - [93] - (0.0.0.0) - C:\cheerful clapping whistler.m3u [MD5.92680C9E33EDCE27FC8D90207D216188] - [10/03/2020 11:30:31] - |A| - (.-.) - [79] - (0.0.0.0) - C:\cher lloyd - oath ft.m3u [MD5.7C31CB542739174B0827BDCBC8FB178C] - [10/03/2020 11:30:31] - |A| - (.-.) - [202] - (0.0.0.0) - C:\chickens (2).m3u [MD5.7C31CB542739174B0827BDCBC8FB178C] - [10/03/2020 11:30:32] - |A| - (.-.) - [202] - (0.0.0.0) - C:\chickens.m3u [MD5.A5D9C2B02052CF47D028B383FD2CEEF8] - [10/03/2020 11:30:32] - |A| - (.-.) - [88] - (0.0.0.0) - C:\chris brown - new flame (feat.m3u [MD5.B85B52962BA19C2F0C861FA513BD1C02] - [10/03/2020 11:30:34] - |A| - (.-.) - [95] - (0.0.0.0) - C:\chromeo - jealous (i aint with it) [official video] (1).m3u [MD5.FAD5D2C0650BB7BB8007153274C79829] - [18/12/2024 23:29:47] - |A| - (.-.) - [644094] - (0.0.0.0) - C:\CIGC-DEPLIANT_Juillet2019+3 (1).pdf [MD5.FAD5D2C0650BB7BB8007153274C79829] - [18/12/2024 23:34:07] - |A| - (.-.) - [644094] - (0.0.0.0) - C:\CIGC-DEPLIANT_Juillet2019+3 (2).pdf [MD5.FAD5D2C0650BB7BB8007153274C79829] - [19/12/2024 00:28:03] - |A| - (.-.) - [644094] - (0.0.0.0) - C:\CIGC-DEPLIANT_Juillet2019+3.pdf [MD5.4ABA1CA7E93115ACE5B23914DDB3688E] - [10/03/2020 11:30:34] - |A| - (.-.) - [208] - (0.0.0.0) - C:\cinematic horn (2).m3u [MD5.4ABA1CA7E93115ACE5B23914DDB3688E] - [10/03/2020 11:30:34] - |A| - (.-.) - [208] - (0.0.0.0) - C:\cinematic horn.m3u [MD5.B080475306418BB59DAAB5909BA8505A] - [15/02/2020 18:04:26] - |A| - (.-.) - [16384] - (0.0.0.0) - C:\cleanmaster [MD5.B41E22017081CE0708469A3CE1807813] - [10/03/2020 11:30:36] - |A| - (.-.) - [264] - (0.0.0.0) - C:\ClipConverter.cc.m3u [MD5.C60B2FA6FE44CCBACE4A4D1A6B2E74E4] - [10/03/2020 11:30:36] - |A| - (.-.) - [152] - (0.0.0.0) - C:\clockbell (2).m3u [MD5.C60B2FA6FE44CCBACE4A4D1A6B2E74E4] - [10/03/2020 11:30:37] - |A| - (.-.) - [152] - (0.0.0.0) - C:\clockbell.m3u [01/04/2020 10:05:06] - |SD| - [4015016] - C:\CodySafe [MD5.261C86EF8C99FC848409CCBF9A967094] - [10/03/2020 11:30:37] - |A| - (.-.) - [92] - (0.0.0.0) - C:\coldplay - magic (official audio).m3u [MD5.F8E29727A52D851E2F0B78CA4470F6A4] - [10/03/2020 11:30:37] - |A| - (.-.) - [203] - (0.0.0.0) - C:\complete.m3u [06/03/2020 19:26:03] - |SHD| - [0] - C:\Config.Msi [MD5.DBFFA11B7EFC455BD3F4C32B68EBFD04] - [10/03/2020 11:30:37] - |A| - (.-.) - [89] - (0.0.0.0) - C:\copie replay audio points commun 3à5 rem aimp.m3u [23/01/2020 14:47:24] - |D| - [3741203826] - C:\Copies-replays Widen21 Evolution [MD5.508A705C6954E3E4D577E1E6F403FFA7] - [10/03/2020 11:30:37] - |A| - (.-.) - [90] - (0.0.0.0) - C:\cris cab - loves me not (audio).m3u [09/02/2020 20:04:20] - |D| - [0] - C:\CrystalDiskMark00E6D02D [MD5.243825667F3764775D0493F3A455A0B9] - [13/03/2020 14:34:06] - |A| - (.-.) - [746] - (0.0.0.0) - C:\CSP.DAT [MD5.CF3383256E334FD0211C49D85FD9CB1D] - [10/03/2020 11:30:38] - |A| - (.-.) - [55] - (0.0.0.0) - C:\culture-abuse-goo (1).m3u [MD5.CF3383256E334FD0211C49D85FD9CB1D] - [10/03/2020 11:30:38] - |A| - (.-.) - [55] - (0.0.0.0) - C:\culture-abuse-goo.m3u [MD5.800A706E3987EAF5DCDFD9474EA25024] - [10/03/2020 11:30:39] - |A| - (.-.) - [104] - (0.0.0.0) - C:\curve.m3u [MD5.403C397E966756B3AAEE3C339C0CDC20] - [10/03/2020 11:30:39] - |A| - (.-.) - [91] - (0.0.0.0) - C:\d.o.d - stomp (official video)_1.m3u [MD5.AFF6252E44800020359D4699F06A8BE7] - [10/03/2020 11:30:39] - |A| - (.-.) - [94] - (0.0.0.0) - C:\da french connexion - igloo brother.m3u [MD5.A9B55D85133FDE806E1BF5768D9EDCFB] - [10/03/2020 11:30:39] - |A| - (.-.) - [103] - (0.0.0.0) - C:\darkmp3-ru-jacques-loussier-prelude-ndeg8-en-re-diese-mineur-1.m3u [MD5.C93102C40839486C4C3A3FDD5BFE78C5] - [10/03/2020 11:30:39] - |A| - (.-.) - [139] - (0.0.0.0) - C:\dat night feat trey songz & young thug.m3u [09/04/2019 07:56:49] - |D| - [14302141] - C:\Data [MD5.06F2A94021543666C6CBAA8C716C58FD] - [10/03/2020 11:30:40] - |A| - (.-.) - [90] - (0.0.0.0) - C:\david guetta & showtek - bad ft.m3u [MD5.BE5D7C013636F2F67D1AC05EC65FB866] - [10/03/2020 11:30:40] - |A| - (.-.) - [185] - (0.0.0.0) - C:\david guetta - sexy chick (featuring akon).m3u [MD5.EA190D0CB3AF67A6985863539A64049E] - [10/03/2020 11:30:40] - |A| - (.-.) - [108] - (0.0.0.0) - C:\david guetta - she wolf (falling to pieces) ft. sia (official video).m3u [MD5.1839703994019797D6387C373691B753] - [10/03/2020 11:30:40] - |A| - (.-.) - [91] - (0.0.0.0) - C:\de planète en planète (yannick noah).m3u [10/03/2020 00:30:03] - |D| - [248949265] - C:\de427124ea4800ffef5578779b9efe [MD5.243D7E08618745A4EE829F9E9F0EAA19] - [10/03/2020 11:30:40] - |A| - (.-.) - [126] - (0.0.0.0) - C:\default.m3u [MD5.50E985789DEE7C2AEBC93B70AAFD257A] - [19/06/2019 11:00:08] - |A| - (.Xplode - Removal tools cleaner.) - [797760] - (1.0.1.3) - C:\delfix_1.013.exe [MD5.D3D5A621C5284084B8D2F921C182D6BA] - [10/03/2020 11:30:40] - |A| - (.-.) - [195] - (0.0.0.0) - C:\demi lovato - cool for the summer (audio only)[160k]__[mp3-192k].m3u [MD5.44771109B0B5C7823E24323E585DFFA6] - [10/03/2020 11:30:41] - |A| - (.-.) - [79] - (0.0.0.0) - C:\des'ree you gotta be.m3u [MD5.E0FD7E6B4853592AC9AC73DF9D83783F] - [13/03/2020 14:34:12] - |ASH| - (.-.) - [174] - (0.0.0.0) - C:\desktop.ini [MD5.AD5C14B3F2E6384E9D2360B9F469513A] - [10/03/2020 11:30:41] - |A| - (.-.) - [118] - (0.0.0.0) - C:\desobry, les biscuits qui riment en i - anti-allergie.m3u [MD5.6BEE6D86410368FE022B86AB8CB4AA57] - [10/03/2020 11:30:41] - |A| - (.-.) - [117] - (0.0.0.0) - C:\desobry, les biscuits qui riment en i - royalty.m3u [MD5.1D2F1AE37F0A4F63B1E58F43EAA91458] - [10/03/2020 11:30:41] - |A| - (.-.) - [92] - (0.0.0.0) - C:\digital alert (2).m3u [MD5.1D2F1AE37F0A4F63B1E58F43EAA91458] - [10/03/2020 11:30:42] - |A| - (.-.) - [92] - (0.0.0.0) - C:\digital alert.m3u [MD5.3E19E0F68F3DE891D194951F8D25F87C] - [10/03/2020 11:30:42] - |A| - (.-.) - [113] - (0.0.0.0) - C:\disiz - complexité française ft. simon buret (aaron).m3u [MD5.E53180B7C38137916F5594ACD5517A09] - [10/03/2020 11:30:42] - |A| - (.-.) - [106] - (0.0.0.0) - C:\disiz - inspecteur disiz[128k]__[mp3-128k].m3u [20/01/2020 11:29:47] - |D| - [1221404532] - C:\Dist [MD5.803C563E70633BFA23BE2955D3C98C09] - [10/03/2020 11:30:42] - |A| - (.-.) - [113] - (0.0.0.0) - C:\dj antoine vs timati feat kalenna - welcome to st tropez (official video).m3u [MD5.ABCE619F58C559CAAC8CB7394022E886] - [10/03/2020 11:30:42] - |A| - (.-.) - [232] - (0.0.0.0) - C:\dj c.flo - what it is (baby bash ft sean kingston vs t.i.).m3u [MD5.D1CD7D401223749AB96412AEA65E5143] - [10/03/2020 11:30:42] - |A| - (.-.) - [98] - (0.0.0.0) - C:\dj snake & lil jon - turn down for what.m3u [MD5.83E385A517D4795148E8069BC84EF4A1] - [10/03/2020 11:30:43] - |A| - (.-.) - [64] - (0.0.0.0) - C:\dnce - cake by the ocean.m3u [10/02/2020 18:25:17] - |SD| - [573] - C:\Documents [26/07/2012 09:22:08] - |SD| - [0] - C:\Documents and Settings [MD5.8BE8F5002DAA6ECC4776AF32EE1A7AB6] - [10/03/2020 11:30:43] - |A| - (.-.) - [200] - (0.0.0.0) - C:\don omar - dile (video oficial).m3u [MD5.1D2F1AE37F0A4F63B1E58F43EAA91458] - [10/03/2020 11:30:43] - |A| - (.-.) - [92] - (0.0.0.0) - C:\done.m3u [11/03/2020 04:36:48] - |D| - [33882038] - C:\Download [MD5.A5EABCB71D510151BB38C1F378AF1F69] - [10/03/2020 11:30:43] - |A| - (.-.) - [62] - (0.0.0.0) - C:\drake - find your love.m3u [MD5.871B3A6EB154AD6E2DA291B598FAB5CC] - [10/03/2020 11:30:43] - |A| - (.-.) - [104] - (0.0.0.0) - C:\drama.m3u [MD5.B1CFA58BB7B4795A3CC20CDBBCB4137A] - [10/03/2020 11:30:43] - |A| - (.-.) - [204] - (0.0.0.0) - C:\drift - drift (2).m3u [MD5.B1CFA58BB7B4795A3CC20CDBBCB4137A] - [10/03/2020 11:30:44] - |A| - (.-.) - [204] - (0.0.0.0) - C:\drift - drift .m3u [MD5.65661DA95DCDBAEE5EB6AA8D5B8880CB] - [10/03/2020 11:30:44] - |A| - (.-.) - [172] - (0.0.0.0) - C:\drift - pages turn (2).m3u [MD5.65661DA95DCDBAEE5EB6AA8D5B8880CB] - [10/03/2020 11:30:44] - |A| - (.-.) - [172] - (0.0.0.0) - C:\drift - pages turn.m3u [MD5.15724AD5ABC4821819165191A4F19080] - [09/03/2020 18:25:40] - |A| - (.Copyright (c) 1999-2019 Igor Pavlov - 7z SFX.) - [617901703] - (19.2.0.0) - C:\DriverPack_17.10.14-19125_Network(1).exe [MD5.15724AD5ABC4821819165191A4F19080] - [09/03/2020 18:50:03] - |A| - (.Copyright (c) 1999-2019 Igor Pavlov - 7z SFX.) - [617901703] - (19.2.0.0) - C:\DriverPack_17.10.14-19125_Network.exe [10/03/2020 18:07:59] - |D| - [585742891] - C:\drivers [MD5.A6FF5DCD446E054FBEA3A457E7B349B2] - [19/12/2024 01:33:03] - |A| - (.-.) - [221736611] - (0.0.0.0) - C:\DRIW1133.MP4 [MD5.2C5852644464B0A3C4BC66E879644D49] - [10/03/2020 11:30:44] - |A| - (.-.) - [205] - (0.0.0.0) - C:\drone scape (2).m3u [MD5.2C5852644464B0A3C4BC66E879644D49] - [10/03/2020 11:30:44] - |A| - (.-.) - [205] - (0.0.0.0) - C:\drone scape.m3u [21/04/2019 11:07:17] - |D| - [0] - C:\DU Recorder Videos [MD5.2C0CD9C21FDBAA03CEBED7800CEC9F21] - [10/03/2020 11:30:45] - |A| - (.-.) - [98] - (0.0.0.0) - C:\duke dumont - need u (100%) feat. a-m-e.m3u [MD5.3288F5B90E0D789D67BB1B2759AB22D5] - [01/04/2020 09:08:03] - |ASH| - (.-.) - [16384] - (0.0.0.0) - C:\DumpStack.log [MD5.D41D8CD98F00B204E9800998ECF8427E] - [04/04/2020 09:56:17] - |ASH| - (.-.) - [16384] - (0.0.0.0) - C:\DumpStack.log.tmp [MD5.773EEA13C7BD057569B95092DAC267DF] - [13/03/2020 09:36:56] - |A| - (.Copyright © 2008-2020 Au?slogics Labs Pty Ltd - A?uslogics Duplicate Fil?e Finder Installation File .) - [14460144] - (8.4.0.2) - C:\duplicate-file-finder-setup.exe [MD5.1FFD2E50A7D25A5EBC6A3E79C7C622FA] - [18/12/2024 23:52:34] - |A| - (.Copyright©2017 Wondershare. - wondershare-dvd-creator_setup_full619.exe.) - [1580272] - (2.1.3.2) - C:\dvd-creator_setup_full619.exe [MD5.A1F4C551CD70987E941C7B0727798A16] - [25/02/2020 18:07:33] - |A| - (.-.) - [20978251] - (0.0.0.0) - C:\E - 100% s finalis juin part 2 & HDD Regenerator.mp4 [MD5.2E06476EBE1137F543EE7176D34716E7] - [10/03/2020 10:24:06] - |A| - (.-.) - [2282112] - (0.0.0.0) - C:\easybcd_2-4_fr_33420.exe [15/03/2020 21:08:07] - |D| - [237523522] - C:\eclipse [MD5.B839F24A58DDD94738C9C5CBAFC75733] - [10/03/2020 11:30:45] - |A| - (.-.) - [99] - (0.0.0.0) - C:\ed sheeran - bibia be ye ye.m3u [MD5.8ED2596B1FBE1E65E617224FD32A047F] - [10/03/2020 11:30:45] - |A| - (.-.) - [94] - (0.0.0.0) - C:\ed sheeran - don't [official video].m3u [MD5.3DB5168F11E95D9402CB02DA18965B01] - [10/03/2020 11:30:46] - |A| - (.-.) - [93] - (0.0.0.0) - C:\ed sheeran - sing [official video].m3u [MD5.4A75B8DFC9802F993F939E987DDEA8E7] - [13/03/2020 09:37:05] - |A| - (.Copyright © 2007-2018 WebMinds, Inc. - Easy Duplicate Finder Setup .) - [1220040] - (5.28.0.1100) - C:\edfSetup.exe [MD5.B62B518B351BF2208E58D6D07054EA17] - [13/03/2020 09:36:54] - |A| - (.-.) - [629] - (0.0.0.0) - C:\EdrawInfo.lnk [MD5.CB07E24DBEE7A75A0B7CB61DC8890264] - [13/03/2020 09:36:54] - |A| - (.-.) - [1222] - (0.0.0.0) - C:\EdrawMax.exe.lnk [06/03/2020 18:45:43] - |D| - [775008305] - C:\EEK [03/01/2014 14:34:11] - |RAD| - [51547337] - C:\EFI [MD5.D7D1C6E30A210FBF1D50FD6D1CB4A8F5] - [13/03/2020 14:34:06] - |A| - (.-.) - [1474560] - (0.0.0.0) - C:\efisys_noprompt.bin [MD5.B3F1FCEFC71AA9A693DBE83DC58A0342] - [27/02/2020 17:09:49] - |A| - (.- Download Manager.) - [973104] - (1.3.2.3) - C:\ejay_dance6_reloaded_downloader.exe [MD5.630040573853A3B1623082637B39FB4C] - [27/02/2020 17:09:16] - |A| - (.- Download Manager.) - [973104] - (1.3.2.3) - C:\ejay_hiphop5_reloaded_downloader.exe [MD5.82AD2DABF57DC37442628F44A5637FEF] - [10/03/2020 11:30:47] - |A| - (.-.) - [254] - (0.0.0.0) - C:\eject.m3u [MD5.D62B97A1529495002261A96028AD05A1] - [10/03/2020 11:30:48] - |A| - (.-.) - [75] - (0.0.0.0) - C:\Electricka Reloaded.m3u [MD5.F63C78526C45DBEAD2C3ADB573625FA6] - [10/03/2020 11:30:48] - |A| - (.-.) - [249] - (0.0.0.0) - C:\elegant.m3u [MD5.6BB7C9870EB6056EB387EF6ACE8D35D3] - [10/03/2020 11:30:48] - |A| - (.-.) - [83] - (0.0.0.0) - C:\eminem - walk on water (audio) ft. beyoncé.m3u [MD5.E626B8F7F38B6B76DD9E76D44751E263] - [10/03/2020 11:30:48] - |A| - (.-.) - [211] - (0.0.0.0) - C:\enregistrement audio 2017-05-11 14-39-14.m3u [MD5.A116F360DDEF3D3D3B505C34508BECCE] - [10/03/2020 11:30:49] - |A| - (.-.) - [211] - (0.0.0.0) - C:\enregistrement audio 2017-05-15 14-40-49.m3u [07/02/2020 12:25:09] - |D| - [7143479] - C:\ESET [MD5.0582F9648DC2F7570886896413CA2D22] - [13/03/2020 09:37:06] - |A| - (.-.) - [685] - (0.0.0.0) - C:\ESET Online Scanner.lnk [MD5.D4BEFEBF3CEF129AC087422B9E912788] - [13/03/2020 14:34:07] - |A| - (.-.) - [4096] - (0.0.0.0) - C:\etfsboot.com [MD5.9133F917655630E66AEC51A528FBC4AF] - [10/03/2020 11:30:49] - |A| - (.-.) - [87] - (0.0.0.0) - C:\etienne daho le premier jour du reste de ta vie.m3u [MD5.1521F52963F3314AC4C1B0AD97CF6AB2] - [10/03/2020 11:30:49] - |A| - (.-.) - [162] - (0.0.0.0) - C:\eva - on fleek ft. lartiste.m3u [06/09/2016 20:41:46] - |D| - [0] - C:\EverySync [MD5.1D2F1AE37F0A4F63B1E58F43EAA91458] - [10/03/2020 11:30:49] - |A| - (.-.) - [92] - (0.0.0.0) - C:\explosion (2).m3u [MD5.1D2F1AE37F0A4F63B1E58F43EAA91458] - [10/03/2020 11:30:49] - |A| - (.-.) - [92] - (0.0.0.0) - C:\explosion.m3u [MD5.856CDE34BE411D01AC7A7CB497F441CC] - [13/03/2020 09:37:04] - |A| - (.© F-Secure Corporation. - Network Installer.) - [1797504] - (4.7.663.0) - C:\F-SecureNetworkInstaller-IS.exe [MD5.08843F5CCDEBD6E55BB87E46F7BB3B53] - [10/03/2020 11:30:50] - |A| - (.-.) - [106] - (0.0.0.0) - C:\falling.m3u [MD5.777B4CEBF60802C8E3D946FABC85CB24] - [10/03/2020 11:30:50] - |A| - (.-.) - [81] - (0.0.0.0) - C:\feder - blind feat. emmi (official video).m3u [MD5.B33C03E3FF91247300B5D53F79BF22F1] - [10/03/2020 11:30:50] - |A| - (.-.) - [110] - (0.0.0.0) - C:\fergie - l.a.love (la la) (audio)[128k]__[mp3-192k].m3u [MD5.8484214A469C533ACD95E53D401DC51E] - [10/03/2020 11:30:50] - |A| - (.-.) - [149] - (0.0.0.0) - C:\festival verre gourmet 2014 exposant caviar de neuvic[720p].m3u [MD5.90B6D7CA0CCC3042C2B880BA368A601B] - [10/03/2020 11:30:50] - |A| - (.-.) - [176] - (0.0.0.0) - C:\fifth harmony - worth it ft. kid ink.m3u [25/02/2020 15:41:48] - |D| - [289055] - C:\FileViewPro 1.5.0.0 Portable by Spirit Summer [MD5.D488FD7EF7B27D622100752A727A378A] - [10/03/2020 11:30:50] - |A| - (.-.) - [103] - (0.0.0.0) - C:\flo rida - hello friday ft. jason derulo [official music video].m3u [MD5.E1B2A9D01C3D965499A47FA587A95EAB] - [10/03/2020 11:30:50] - |A| - (.-.) - [171] - (0.0.0.0) - C:\flo rida - i dont like it i love it (feat. robin thicke).m3u [MD5.1ECF0A234B584C5EF1B50F3823FDDA2C] - [10/03/2020 11:30:51] - |A| - (.-.) - [156] - (0.0.0.0) - C:\flo rida - who dat girl ft. akon [official video] (320 kbps) (mp3converter.net).m3u [MD5.1ECF0A234B584C5EF1B50F3823FDDA2C] - [10/03/2020 11:30:51] - |A| - (.-.) - [156] - (0.0.0.0) - C:\flo rida - who dat girl ft. akon [official video].m3u [MD5.0A6382980C83C6D3D095F81E94B5E6E2] - [10/03/2020 11:30:52] - |A| - (.-.) - [116] - (0.0.0.0) - C:\foals-on-the-luna-official-video.m3u [MD5.CCD25F03AB508A38A8C7B4A856B128E6] - [10/03/2020 11:30:52] - |A| - (.-.) - [134] - (0.0.0.0) - C:\foster the people - best friend (1).m3u [MD5.CCD25F03AB508A38A8C7B4A856B128E6] - [10/03/2020 11:30:52] - |A| - (.-.) - [134] - (0.0.0.0) - C:\foster the people - best friend.m3u [MD5.CBBD921E0B52D9BC3BB632321A1E45A6] - [10/03/2020 11:30:53] - |A| - (.-.) - [200] - (0.0.0.0) - C:\foster the people - best friend_2.m3u [MD5.DA44C6AA5BCAFC262717FACF832846F0] - [10/03/2020 11:30:53] - |A| - (.-.) - [82] - (0.0.0.0) - C:\foster the people - sit next to me (audio).m3u [04/04/2020 09:30:05] - |D| - [142383776] - C:\FRST [MD5.71D244A1E7A24E7372C10D6C938B8028] - [10/03/2020 11:30:53] - |A| - (.-.) - [62] - (0.0.0.0) - C:\Full Clip A Decade Of Gang Starr [Disc 1].m3u [MD5.727E06061ADB1A5E9967C0B9DD732275] - [10/03/2020 11:30:54] - |A| - (.-.) - [126] - (0.0.0.0) - C:\fuse odg ft. angel - tina (official music video) - out now on itunes[128k]__[mp3-192k].m3u [MD5.D09EC78E001B6F43D59D344FF5E9257C] - [10/03/2020 11:30:54] - |A| - (.-.) - [90] - (0.0.0.0) - C:\fuse odg ft. wyclef - antenna_2.m3u [MD5.F56B4F6B9BF140D2B4D6618D7BE4494A] - [10/03/2020 11:30:54] - |A| - (.-.) - [99] - (0.0.0.0) - C:\future - i.c.w.n.t (i cant wife no thot).m3u [MD5.0932E8B3D9BCA8A0F85A3D1721C850BB] - [10/03/2020 11:30:54] - |A| - (.-.) - [79] - (0.0.0.0) - C:\Ghetto Love.m3u [MD5.DEC52253F30336FFB1E88DB9A83C4D63] - [10/03/2020 11:30:55] - |A| - (.-.) - [74] - (0.0.0.0) - C:\gilberto gil toda menina bahiana.m3u [MD5.DEC52253F30336FFB1E88DB9A83C4D63] - [10/03/2020 11:30:55] - |A| - (.-.) - [74] - (0.0.0.0) - C:\gilberto gil toda menina bahiana.m3u [MD5.BF82C58786FFE6059F37AB3A3CFABB79] - [10/03/2020 11:30:55] - |A| - (.-.) - [203] - (0.0.0.0) - C:\glass break explosi.m3u [MD5.BF82C58786FFE6059F37AB3A3CFABB79] - [10/03/2020 11:30:55] - |A| - (.-.) - [203] - (0.0.0.0) - C:\glass break explosion (2).m3u [MD5.BF82C58786FFE6059F37AB3A3CFABB79] - [10/03/2020 11:30:55] - |A| - (.-.) - [203] - (0.0.0.0) - C:\glass break explosion.m3u [MD5.2EAD398BB6FEF45E6E3BB497E9B1B4E5] - [10/03/2020 11:30:56] - |A| - (.-.) - [89] - (0.0.0.0) - C:\go girl lyrics ciara ft t pain.m3u [MD5.CADFB0F4CA1D2BA0D21592A1B58FAAD1] - [10/03/2020 11:30:56] - |A| - (.-.) - [188] - (0.0.0.0) - C:\gong (2).m3u [MD5.961F3CF2F13DCB2B49A4B004ED7D847D] - [10/03/2020 11:30:56] - |A| - (.-.) - [291] - (0.0.0.0) - C:\gong.m3u [MD5.D3B92F2137BC6CCE224C4968746ACDD7] - [10/03/2020 11:30:56] - |A| - (.-.) - [101] - (0.0.0.0) - C:\gorgon city - here for you ft. laura welsh.m3u [MD5.19FE41B661178F73AFFBAADFF1EB6ED7] - [10/03/2020 11:30:57] - |A| - (.-.) - [75] - (0.0.0.0) - C:\Groove -Sweet R&B Mix.m3u [MD5.DA644593921B18D3C41A41C643648042] - [10/03/2020 11:30:57] - |A| - (.-.) - [256] - (0.0.0.0) - C:\gums - dont give up (french version) hd.m3u [MD5.D41D8CD98F00B204E9800998ECF8427E] - [31/03/2020 18:44:52] - |ASH| - (.-.) - [1535000576] - (0.0.0.0) - C:\hiberfil.sys [MD5.D41D8CD98F00B204E9800998ECF8427E] - [13/03/2020 23:12:34] - |A| - (.-.) - [0] - (0.0.0.0) - C:\History [MD5.65ECF09E40AFE29E3823381B16CE36C5] - [10/03/2020 11:30:57] - |A| - (.-.) - [95] - (0.0.0.0) - C:\HITHGRIPLIP2011.m3u [MD5.03C347FEE332DAABBC4F83242D346FF6] - [10/03/2020 11:30:57] - |A| - (.-.) - [228] - (0.0.0.0) - C:\hoodie allen - all about it ft. ed sheeran (official video).m3u [MD5.A50061A752D083A53535C708F6387D9F] - [09/03/2020 21:03:48] - |A| - (.-.) - [128404] - (0.0.0.0) - C:\Hosts-MEP.zip [07/01/2013 13:49:41] - |D| - [6616304] - C:\hp [MD5.D41D8CD98F00B204E9800998ECF8427E] - [13/03/2020 14:34:07] - |A| - (.-.) - [0] - (0.0.0.0) - C:\hpdrcu.prc [03/02/2020 23:14:02] - |D| - [0] - C:\Huawei [MD5.1A20AD52B40BB6F4862D4A2774F902A9] - [10/03/2020 11:30:57] - |A| - (.-.) - [231] - (0.0.0.0) - C:\I Care 4 U.m3u [MD5.181CAF9B977E7CA03524AD268ADBF874] - [18/12/2024 20:31:30] - |A| - (. - iBoysoft File Protector Setup .) - [4981393] - (0.0.0.0) - C:\iboysoftfileprotectorx64.exe [MD5.E57B6E9F480F7770686D06250CB16639] - [10/03/2020 11:30:57] - |A| - (.-.) - [96] - (0.0.0.0) - C:\iggy azalea - black widow (lyrics) ft.m3u [MD5.EC6AAE2BB7D8781226EA61ADCA8F0586] - [27/01/2020 14:35:22] - |A| - (.-.) - [116] - (0.0.0.0) - C:\imagenade.png [MD5.EC6AAE2BB7D8781226EA61ADCA8F0586] - [27/01/2020 14:35:22] - |A| - (.-.) - [116] - (0.0.0.0) - C:\imagenafe.png [MD5.5DCE2C9231AED4D76D3E2289154E45D4] - [10/03/2020 11:30:58] - |A| - (.-.) - [60] - (0.0.0.0) - C:\img_0005~video.m3u [MD5.26B88FCAE68D6B1393BEF35FAE015A7F] - [10/03/2020 11:30:58] - |A| - (.-.) - [72] - (0.0.0.0) - C:\img_0009~video.m3u [MD5.5195108D4CDF57CA895429001393B31D] - [25/02/2020 18:12:23] - |A| - (.-.) - [82608634] - (0.0.0.0) - C:\IMG_0013~video.mov [18/01/2020 17:01:06] - |D| - [0] - C:\iMobieBackup [10/03/2020 18:07:59] - |D| - [69476352] - C:\index [MD5.A13BE90F6897DF2F3234D61293302959] - [25/02/2020 15:43:16] - |A| - (.-.) - [2633] - (0.0.0.0) - C:\index.html [MD5.82A0949D48B7BE0F6C6D1D70EA9B793E] - [10/03/2020 11:30:58] - |A| - (.-.) - [85] - (0.0.0.0) - C:\indila - run run (paroles).m3u [07/03/2020 07:30:48] - |D| - [675224] - C:\inetpub [MD5.98D309043A52DF1936F00A3F868659AF] - [10/03/2020 11:30:59] - |A| - (.-.) - [63] - (0.0.0.0) - C:\initiale eûmes tv.m3u [MD5.8F3228FCDCC01F35E37F6B66A67A855C] - [10/03/2020 11:30:59] - |A| - (.-.) - [94] - (0.0.0.0) - C:\inna - cola song (feat. j balvin)_1.m3u [MD5.60E394D4019D6630BD5704F5002C39AF] - [10/03/2020 11:31:02] - |A| - (.-.) - [86] - (0.0.0.0) - C:\inna - good time ft pitbull.m3u [23/01/2020 15:27:33] - |D| - [0] - C:\Intel [15/08/2019 16:51:49] - |D| - [281901441] - C:\intermar'shit de l'art du moine anti-bug framo mac ux themepack [MD5.2432EF81AF96B2C64A118B2D5995720C] - [13/03/2020 09:37:13] - |A| - (.-.) - [1049] - (0.0.0.0) - C:\Internet Explorer.lnk [MD5.F7945DAEB11A115BAC6CB9384E139D87] - [10/03/2020 11:31:02] - |A| - (.-.) - [58] - (0.0.0.0) - C:\interpol-fine-mess.m3u [MD5.E338357F5F104D462FAE79413663AB4B] - [11/03/2020 19:27:33] - |A| - (.-.) - [1164] - (0.0.0.0) - C:\iOS Ads Remover.lnk [MD5.F8856F2C86797549705533B6F2FB961E] - [10/03/2020 11:31:03] - |A| - (.-.) - [200] - (0.0.0.0) - C:\jadakiss - u make me wanna (feat. mariah carey)_1.m3u [MD5.48B0BAD4A1631E8D1985238AA5244F9E] - [10/03/2020 11:31:03] - |A| - (.-.) - [83] - (0.0.0.0) - C:\jadakiss - u make me wanna ft. mariah carey.m3u [MD5.0932E8B3D9BCA8A0F85A3D1721C850BB] - [10/03/2020 11:31:03] - |A| - (.-.) - [79] - (0.0.0.0) - C:\jaheim - could it be.m3u [MD5.3E14F55AE79ED8F937DDCF375BB59C6E] - [10/03/2020 11:31:04] - |A| - (.-.) - [80] - (0.0.0.0) - C:\jaheim - i've changed.m3u [MD5.82E2DBF618D9CFBEF99FB30B2BF2597F] - [10/03/2020 11:31:04] - |A| - (.-.) - [111] - (0.0.0.0) - C:\james hype - more than friends (ft. kelli-leigh) [official lyric video].m3u [MD5.2DDEEC8B6C2149955F068320DC4C447E] - [10/03/2020 11:31:05] - |A| - (.-.) - [205] - (0.0.0.0) - C:\jamie foxx - you changed me (audio) ft.m3u [MD5.6CAD5BF8C676733BD4A57076F4CF9543] - [10/03/2020 11:31:05] - |A| - (.-.) - [88] - (0.0.0.0) - C:\jamiroquai - virtual insanity.m3u [MD5.9A5C0FFDEC681BA896787A254BF94CEA] - [10/03/2020 11:31:06] - |A| - (.-.) - [88] - (0.0.0.0) - C:\janelle monáe, jidenna - yoga[256k]__[mp3-192k].m3u [MD5.154933B3DFC45B3816F009834417E875] - [10/03/2020 11:31:06] - |A| - (.-.) - [89] - (0.0.0.0) - C:\jason derulo - it girl (official video) (2).m3u [MD5.154933B3DFC45B3816F009834417E875] - [10/03/2020 11:31:06] - |A| - (.-.) - [89] - (0.0.0.0) - C:\jason derulo - it girl (official video).m3u [MD5.E7C9AC43FACD29EFEBCB1052D324C49A] - [10/03/2020 11:31:06] - |A| - (.-.) - [169] - (0.0.0.0) - C:\jay-z feat. kanye west - why i love you (feat mr hudson).m3u [MD5.896DCE4CCEDA1A0FBF9166B03F07868A] - [10/03/2020 11:31:06] - |A| - (.-.) - [85] - (0.0.0.0) - C:\jennifer lopez - same girl.m3u [MD5.5DFCBB31A839F487772453940F638B08] - [10/03/2020 11:31:07] - |A| - (.-.) - [97] - (0.0.0.0) - C:\jeremih - break up to make up (2).m3u [MD5.5DFCBB31A839F487772453940F638B08] - [10/03/2020 11:31:07] - |A| - (.-.) - [97] - (0.0.0.0) - C:\jeremih - break up to make up.m3u [MD5.C5C0A97D70E142B1450A64167E635C9B] - [10/03/2020 11:31:07] - |A| - (.-.) - [233] - (0.0.0.0) - C:\jeremih - tonight belongs to u! (audio) ft flo-rida.m3u [MD5.8F888996509B7E8D1E8E812E85EC288F] - [13/03/2020 09:37:13] - |A| - (.-.) - [978187] - (0.0.0.0) - C:\JkDefrag_3.36_full.exe [MD5.EC8273168A87DBCA97325DBE2E793D80] - [10/03/2020 11:31:07] - |A| - (.-.) - [59] - (0.0.0.0) - C:\john-legend-preach-official-video.m3u [MD5.78C31D78F17670B6F0E88682A341D3A3] - [10/03/2020 11:31:07] - |A| - (.-.) - [84] - (0.0.0.0) - C:\jonas blue - perfect strangers ft. jp cooper.m3u [MD5.508096DC4D49C8D378534BB22239CB77] - [10/03/2020 11:31:08] - |A| - (.-.) - [82] - (0.0.0.0) - C:\jorja smith - blue lights (official video).m3u [MD5.FA4751E093B4B684AD5524838A56AAEC] - [10/03/2020 11:31:08] - |A| - (.-.) - [85] - (0.0.0.0) - C:\junior-jack-my-feeling.m3u [MD5.62DF7550889765E067B2012E8C0516F6] - [10/03/2020 11:31:08] - |A| - (.-.) - [61] - (0.0.0.0) - C:\kaaris - tchoin (2).m3u [MD5.62DF7550889765E067B2012E8C0516F6] - [10/03/2020 11:31:08] - |A| - (.-.) - [61] - (0.0.0.0) - C:\kaaris - tchoin(2).m3u [MD5.62DF7550889765E067B2012E8C0516F6] - [10/03/2020 11:31:08] - |A| - (.-.) - [61] - (0.0.0.0) - C:\kaaris - tchoin(3).m3u [MD5.62DF7550889765E067B2012E8C0516F6] - [10/03/2020 11:31:08] - |A| - (.-.) - [61] - (0.0.0.0) - C:\kaaris - tchoin.m3u [MD5.DF6D7AD4CA7BB0383CFD9341FF7F365B] - [10/03/2020 11:31:09] - |A| - (.-.) - [200] - (0.0.0.0) - C:\kanye west & 50 cent - if i can't come home (dj redluke mashup)[256k]__[mp3-320k].m3u [MD5.DF6D7AD4CA7BB0383CFD9341FF7F365B] - [10/03/2020 11:31:09] - |A| - (.-.) - [200] - (0.0.0.0) - C:\kanye west & 50 cent - if i can't come home (dj redluke mashup)_1.m3u [MD5.E110E1D3A017064563448D530AB55920] - [10/03/2020 11:31:08] - |A| - (.-.) - [107] - (0.0.0.0) - C:\kanye west - gold digger ft. jamie foxx.m3u [MD5.E110E1D3A017064563448D530AB55920] - [10/03/2020 11:31:09] - |A| - (.-.) - [107] - (0.0.0.0) - C:\kanye west - gold digger ft. jamie foxx[128k]__[mp3-128k].m3u [MD5.3BFFD04A836E976BA7F9B6BF3FF6634A] - [10/03/2020 11:31:09] - |A| - (.-.) - [109] - (0.0.0.0) - C:\kanye west ft pusha t, 2 chains & big sean - mercy.m3u [MD5.43A664B13F82DA749D7038883CA70862] - [10/03/2020 11:31:09] - |A| - (.-.) - [75] - (0.0.0.0) - C:\kash vs. inxs - dream on black girl.m3u [MD5.C8C13B06DECF85B4552970DFF306523C] - [10/03/2020 11:31:09] - |A| - (.-.) - [60] - (0.0.0.0) - C:\kc_rename.auslogics octobre.m3u [MD5.41B25F488F5004F84A73F6E16EDF374F] - [10/03/2020 11:31:10] - |A| - (.-.) - [69] - (0.0.0.0) - C:\kc_rename.beyoncé party ft andré 3000.m3u [MD5.A212A04635695F83679D484A9E98C137] - [10/03/2020 11:31:10] - |A| - (.-.) - [200] - (0.0.0.0) - C:\ke$ha - tik tok (2).m3u [MD5.A212A04635695F83679D484A9E98C137] - [10/03/2020 11:31:10] - |A| - (.-.) - [200] - (0.0.0.0) - C:\ke$ha - tik tok.m3u [MD5.A212A04635695F83679D484A9E98C137] - [10/03/2020 11:31:10] - |A| - (.-.) - [200] - (0.0.0.0) - C:\ke$ha - tik tok[256k]__[mp3-320k].m3u [MD5.A150807BDA18E04426C9BBC43D4B34E3] - [10/03/2020 11:31:10] - |A| - (.-.) - [87] - (0.0.0.0) - C:\ke$ha - your love is my drug.m3u [MD5.408536A55AE060AF131800C93C091D4E] - [10/03/2020 11:31:10] - |A| - (.-.) - [81] - (0.0.0.0) - C:\kelly rowland - work ( freemasons remix).m3u [MD5.C4A96F767BAFA0A4A982963DBEF43909] - [10/03/2020 11:31:10] - |A| - (.-.) - [77] - (0.0.0.0) - C:\Kendrick Lamar - I.m3u [MD5.BE8FBFBCF064ECE1817423EBAC0595E7] - [10/03/2020 11:31:10] - |A| - (.-.) - [85] - (0.0.0.0) - C:\kesha - woo hoo (new 2013).m3u [MD5.0E8943FC06763062A1B9A0F7254B2030] - [10/03/2020 11:31:10] - |A| - (.-.) - [158] - (0.0.0.0) - C:\khalid - young dumb & broke (official video)(2).m3u [MD5.D9A09F43AEEC1B3CADA69305B18FDC71] - [10/03/2020 11:31:11] - |A| - (.-.) - [77] - (0.0.0.0) - C:\king and cross (1).m3u [MD5.D9A09F43AEEC1B3CADA69305B18FDC71] - [10/03/2020 11:31:11] - |A| - (.-.) - [77] - (0.0.0.0) - C:\king and cross.m3u [19/06/2019 06:37:47] - |D| - [2903056876] - C:\KPRM [MD5.11C57F9069C900568AFC6D4B88FC4067] - [19/06/2019 11:00:08] - |A| - (.©1999-2018 Jonathan Bennett & AutoIt Team - KpRm By Kernel-Panik.) - [970752] - (28.0.0.0) - C:\kprm_1.0.1.exe [MD5.74E616C8CD3782D5EB836181CEDAEDB2] - [10/03/2020 11:31:11] - |A| - (.-.) - [99] - (0.0.0.0) - C:\kungs - don't you know (official video) ft. jamie n commons.m3u [MD5.E7114DDDD6574559881CDD80E8E7DC20] - [10/03/2020 11:31:11] - |A| - (.-.) - [83] - (0.0.0.0) - C:\kungs vs cookin’ on 3 burners - this girl.m3u [15/02/2020 11:13:55] - |D| - [87128] - C:\KVRT_Data [MD5.BC23CBC49B00DBB51651BF2E647B6D90] - [10/03/2020 11:31:12] - |A| - (.-.) - [155] - (0.0.0.0) - C:\kylie minogue - timebomb-1.m3u [MD5.BC23CBC49B00DBB51651BF2E647B6D90] - [10/03/2020 11:31:12] - |A| - (.-.) - [155] - (0.0.0.0) - C:\kylie minogue - timebomb-2.m3u [MD5.BC23CBC49B00DBB51651BF2E647B6D90] - [10/03/2020 11:31:11] - |A| - (.-.) - [155] - (0.0.0.0) - C:\kylie minogue - timebomb.m3u [MD5.3CD1A820876EA30BECC93053CDEE5EF1] - [10/03/2020 11:31:13] - |A| - (.-.) - [97] - (0.0.0.0) - C:\l'algerino - les bronzés font du biff.m3u [MD5.C9A42A7BBD47692156FF8E501A5B1E16] - [10/03/2020 11:31:12] - |A| - (.-.) - [152] - (0.0.0.0) - C:\la folie u bouton 3.m3u [MD5.0A17B35FB31774561BFC91151F231DB2] - [10/03/2020 11:31:12] - |A| - (.-.) - [202] - (0.0.0.0) - C:\la fouine - l'unité.m3u [MD5.780E28D51ADCF6E4289A8D33C5A6F131] - [10/03/2020 11:31:12] - |A| - (.-.) - [43] - (0.0.0.0) - C:\La plage de Blâne-Est.m3u [MD5.C18D40349134577DFC58EBD5C85765B2] - [10/03/2020 11:31:12] - |A| - (.-.) - [165] - (0.0.0.0) - C:\lac de téléchargement du didinser.m3u [MD5.278BC8C4D90F6F563535A6D6B0DF294C] - [10/03/2020 11:31:12] - |A| - (.-.) - [108] - (0.0.0.0) - C:\lafawndah - storm chaser.m3u [MD5.732045A237A43E5937AFA8DA0DCE2BB6] - [13/03/2020 14:34:07] - |A| - (.-.) - [44] - (0.0.0.0) - C:\language.ini [MD5.98D57DF376518C59A9567BC0667FD70B] - [13/03/2020 09:36:32] - |A| - (.-.) - [82] - (0.0.0.0) - C:\launchcode [MD5.DBB147AAF3771641A7CCA7736C088DA6] - [25/02/2020 15:43:36] - |A| - (.-.) - [37512] - (0.0.0.0) - C:\ldlinux.sys [12/03/2020 14:09:39] - |D| - [21951533] - C:\LFS Hyper-Anti-JJAD-UEFM Suite v2021.2 [20/01/2020 22:33:27] - |D| - [2356817137] - C:\LiberKey [MD5.478711A6A2D0A514F4C2F4C76353148F] - [10/03/2020 11:31:13] - |A| - (.-.) - [139] - (0.0.0.0) - C:\live it up (official video) - nicky jam feat. will smith & era istrefi (2018 fifa world cup russia).m3u [MD5.723B07C17DA1623A57A4DE2A8CB2F40E] - [10/03/2020 11:31:13] - |A| - (.-.) - [212] - (0.0.0.0) - C:\living pulse - go goes (2).m3u [MD5.723B07C17DA1623A57A4DE2A8CB2F40E] - [10/03/2020 11:31:13] - |A| - (.-.) - [212] - (0.0.0.0) - C:\living pulse - go goes.m3u [11/03/2020 22:22:59] - |D| - [0] - C:\Log [MD5.52C2CB48EF8075D045DE2AF10067ACF2] - [10/03/2020 11:31:13] - |A| - (.-.) - [96] - (0.0.0.0) - C:\logic-keanu-reeves-official-audio (1).m3u [MD5.52C2CB48EF8075D045DE2AF10067ACF2] - [10/03/2020 11:31:13] - |A| - (.-.) - [96] - (0.0.0.0) - C:\logic-keanu-reeves-official-audio (2).m3u [MD5.52C2CB48EF8075D045DE2AF10067ACF2] - [10/03/2020 11:31:14] - |A| - (.-.) - [96] - (0.0.0.0) - C:\logic-keanu-reeves-official-audio.m3u [MD5.76070930E03D5979AA18F38598A824F2] - [13/03/2020 09:36:55] - |A| - (.Copyright (C) 2013-2017 SosVirus Software - Look_my_hardware.) - [1239464] - (26.4.17.1) - C:\look-my-hardware_2_26.04.17.1.exe [01/04/2020 15:35:14] - |D| - [271966] - C:\Look_my_hardware [MD5.085CEE2023C94E4C274A8432FB16410D] - [10/03/2020 11:31:14] - |A| - (.-.) - [71] - (0.0.0.0) - C:\lorde - team.m3u [25/01/2020 09:54:10] - |D| - [9027584] - C:\LOST.DIR [MD5.0F1B0B80033AEC8679BE2FB769557849] - [10/03/2020 11:31:14] - |A| - (.-.) - [149] - (0.0.0.0) - C:\lunchmoney lewis - bills (official video)-_irqhedcmi8.m3u [MD5.5FE92FB5C4CE8F31D4B8F6B284166651] - [25/02/2020 15:43:36] - |A| - (.-.) - [9630100] - (0.0.0.0) - C:\Ma vidéo diaporama.wmv [MD5.9FF3D526504C82CE5286D6D4589CA11A] - [10/03/2020 11:31:14] - |A| - (.-.) - [102] - (0.0.0.0) - C:\macklemore & ryan lewis - can't hold us (ft. ray dalton) (2).m3u [MD5.9FF3D526504C82CE5286D6D4589CA11A] - [10/03/2020 11:31:14] - |A| - (.-.) - [102] - (0.0.0.0) - C:\macklemore & ryan lewis - can't hold us (ft. ray dalton) (3).m3u [MD5.9FF3D526504C82CE5286D6D4589CA11A] - [10/03/2020 11:31:14] - |A| - (.-.) - [102] - (0.0.0.0) - C:\macklemore & ryan lewis - can't hold us (ft. ray dalton) (4).m3u [MD5.9FF3D526504C82CE5286D6D4589CA11A] - [10/03/2020 11:31:14] - |A| - (.-.) - [102] - (0.0.0.0) - C:\macklemore & ryan lewis - can't hold us (ft. ray dalton).m3u [10/03/2020 10:37:54] - |D| - [1394] - C:\MaConfig [MD5.38EE62A29ED94942423984170E364088] - [10/03/2020 11:31:14] - |A| - (.-.) - [93] - (0.0.0.0) - C:\madeon - pop culture (music video).m3u [MD5.671F799E3B273AFC4D873FA6B66B7BE4] - [10/03/2020 11:31:14] - |A| - (.-.) - [108] - (0.0.0.0) - C:\mariah carey - get your number ft. jermaine dupri.m3u [MD5.98AC6D212F0380FDB23714031D956267] - [10/03/2020 11:31:15] - |A| - (.-.) - [202] - (0.0.0.0) - C:\mariah carey - shake it off (2).m3u [MD5.98AC6D212F0380FDB23714031D956267] - [10/03/2020 11:31:15] - |A| - (.-.) - [202] - (0.0.0.0) - C:\mariah carey - shake it off.m3u [MD5.98AC6D212F0380FDB23714031D956267] - [10/03/2020 11:31:15] - |A| - (.-.) - [202] - (0.0.0.0) - C:\mariah carey - shake it off[256k]__[mp3-320k].m3u [MD5.98AC6D212F0380FDB23714031D956267] - [10/03/2020 11:31:15] - |A| - (.-.) - [202] - (0.0.0.0) - C:\mariah carey - shake it off_1.m3u [MD5.FBDB3C9E21D68FAA010357D6A810F2EA] - [10/03/2020 11:31:15] - |A| - (.-.) - [100] - (0.0.0.0) - C:\marlon roudette - when the beat drops out.m3u [MD5.D7F305C5AD89D27F8C0BEC79D7536C74] - [10/03/2020 11:31:15] - |A| - (.-.) - [85] - (0.0.0.0) - C:\maroon 5 - maps (explicit).m3u [MD5.46F0FAAA7DCDFF0D22F5BA93592CE0B8] - [10/03/2020 11:31:15] - |A| - (.-.) - [170] - (0.0.0.0) - C:\martin solveig - c'est la vie[128k]__[mp3-128k].m3u [MD5.973670A3390FD0551B6CAE51CF396E74] - [13/03/2020 09:37:14] - |A| - (.-.) - [1924728] - (0.0.0.0) - C:\MBSetup.exe [MD5.39C35D90C667C45E0BA6EA0C97F4E1AD] - [25/02/2020 15:43:37] - |A| - (.-.) - [2874] - (0.0.0.0) - C:\md5sum [MD5.1A6BA38EA1098B0F42E6DFAAD4B2ADBB] - [10/03/2020 11:31:16] - |A| - (.-.) - [204] - (0.0.0.0) - C:\mechinical (2).m3u [MD5.1A6BA38EA1098B0F42E6DFAAD4B2ADBB] - [10/03/2020 11:31:16] - |A| - (.-.) - [204] - (0.0.0.0) - C:\mechinical.m3u [MD5.0E07F5AA9F7E930F5E322E31BE0DEC86] - [10/03/2020 11:31:16] - |A| - (.-.) - [177] - (0.0.0.0) - C:\megamix good kiss maybe & if i can't come home.m3u [MD5.5183A5C58C56AB0E3B6E16ED4BE3863B] - [10/03/2020 11:31:16] - |A| - (.-.) - [170] - (0.0.0.0) - C:\megamix ushuaïa, tik tok & check arrow.m3u [05/02/2020 13:10:18] - |D| - [0] - C:\MEmu Photo [MD5.80DE2873A6DFF0E7F4DBC9A6A9967061] - [10/03/2020 03:17:08] - |A| - (.Copyright (C) 2016 Microvirt Software Technology Co. Ltd. All rights reserved - MEmu Installer.) - [357365080] - (7.1.3.0) - C:\MEmu-Setup-7.1.3-ha80de2873.exe [MD5.FD9CB2022D19A386A37B4EF30D998D28] - [13/03/2020 09:36:56] - |A| - (.-.) - [927] - (0.0.0.0) - C:\MEmu.lnk [MD5.BD2A2C04DAB9E036CECD61F5AF002433] - [08/02/2025 02:28:48] - |A| - (.-.) - [501814] - (0.0.0.0) - C:\Menu.Food_.MrBleu.New_.fr_.pdf [MD5.23F0D2059FD6DE82613F0CE17387DBBA] - [09/03/2020 21:03:48] - |A| - (.-.) - [3326] - (0.0.0.0) - C:\MEP-CleanTemps.zip [MD5.7DA34E240A25A9946A0A6694029A9FE7] - [10/03/2020 11:31:16] - |A| - (.-.) - [343] - (0.0.0.0) - C:\Microsoft Plus! ® for Windows 95 ®.m3u [MD5.067B72110ECC15586FA6C9F6ECD23B3F] - [19/12/2024 02:10:20] - |A| - (.-.) - [38958425] - (0.0.0.0) - C:\migre.mp4 [MD5.BDB3D798CE258FD7FFAFCDC1A41F1021] - [10/03/2020 11:31:17] - |A| - (.-.) - [86] - (0.0.0.0) - C:\milky chance - stolen dance.m3u [MD5.9F93CB5C3C74EEF4D0BB17E5A902F8C6] - [11/03/2020 19:27:33] - |A| - (.-.) - [635] - (0.0.0.0) - C:\MindMaster.lnk [MD5.7415530043020C31FD3A8F4C3BFFAA6E] - [11/03/2020 19:27:33] - |A| - (.-.) - [494] - (0.0.0.0) - C:\mindmaster_setup_full5370.exe.lnk [MD5.AAD9CB919B7A6E4CA63CCA29235F138F] - [10/03/2020 11:31:17] - |A| - (.-.) - [83] - (0.0.0.0) - C:\mnek - every little word.m3u [12/02/2020 12:47:14] - |D| - [103523302] - C:\Mobizen [MD5.02187BE98BAEC4B8EB570E298E583E95] - [19/12/2024 02:06:04] - |A| - (.-.) - [562808154] - (0.0.0.0) - C:\mobizen_20200211_222210.mp4 [MD5.9133F917655630E66AEC51A528FBC4AF] - [10/03/2020 11:31:17] - |A| - (.-.) - [87] - (0.0.0.0) - C:\Monsieur Daho.m3u [12/02/2020 08:28:40] - |D| - [6644701] - C:\Moo0 SystemMonitor v1.83 Portable [MD5.0A23A9E058DDB65D46B40A1A7A6EE869] - [10/03/2020 11:31:17] - |A| - (.-.) - [204] - (0.0.0.0) - C:\motorcycle (2).m3u [MD5.0A23A9E058DDB65D46B40A1A7A6EE869] - [10/03/2020 11:31:17] - |A| - (.-.) - [204] - (0.0.0.0) - C:\motorcycle.m3u [MD5.077806E6174C387DB9D2FF154CB33E72] - [13/03/2020 09:37:12] - |A| - (.-.) - [1771] - (0.0.0.0) - C:\MPC-BE x64.lnk [MD5.7EA008FAC94781FEB52FF4F6C760B526] - [13/03/2020 09:37:12] - |A| - (.-.) - [1743] - (0.0.0.0) - C:\MPC-HC~1.del [MD5.88A9527889239865C2F441B9CC6D1823] - [10/03/2020 11:31:18] - |A| - (.-.) - [110] - (0.0.0.0) - C:\mr. probz - waves (robin schulz remix radio edit)_1.m3u [MD5.3E0A64E1AA36CF304720ED5BB28D6510] - [13/03/2020 09:36:56] - |A| - (.-.) - [968] - (0.0.0.0) - C:\Multi-MEmu.lnk [MD5.C55DBF5D7E8C6B92A2898DCC69DDEAE5] - [10/03/2020 11:31:18] - |A| - (.-.) - [104] - (0.0.0.0) - C:\muse - something human [official music video].m3u [25/02/2020 15:41:27] - |D| - [0] - C:\My Backups [MD5.D579BF824D6EE57D5D7B2FE8E3833643] - [10/03/2020 11:31:18] - |A| - (.-.) - [1114] - (0.0.0.0) - C:\My House.m3u [MD5.B0C91F966C6B63A8BE41896D764BC688] - [10/03/2020 11:31:18] - |A| - (.-.) - [85] - (0.0.0.0) - C:\mya - the best of me (feat.m3u [MD5.E5B048F0DFA94B6F38F67D29AE393746] - [13/03/2020 09:37:15] - |A| - (.-.) - [2082630] - (0.0.0.0) - C:\MyDefrag-v4.3.1.exe [MD5.1C9E40BEFFEC2A8C0B15637B880DE17F] - [10/03/2020 11:31:18] - |A| - (.-.) - [106] - (0.0.0.0) - C:\nature1.m3u [MD5.768206C3F02014B270B118100BD3F1A3] - [10/03/2020 11:31:19] - |A| - (.-.) - [199] - (0.0.0.0) - C:\naughty boy - runnin' (lose it all) ft. beyoncé, arrow benjamin.m3u [MD5.7B1163ADF7001B60C1CD2FFA2D4D3CED] - [13/03/2020 09:37:13] - |A| - (.-.) - [1530] - (0.0.0.0) - C:\Navigateur Opera.lnk [MD5.547E45F6CB686D7EBBCBCF278E1566F2] - [10/03/2020 11:31:19] - |A| - (.-.) - [98] - (0.0.0.0) - C:\navii - on se sent seul [clip officiel].m3u [MD5.29B192B95D1B856638EB327ADD405377] - [10/03/2020 11:31:19] - |A| - (.-.) - [99] - (0.0.0.0) - C:\nekfeu - on verra.m3u [MD5.751E054B46822CC61AF8D4DE6A633310] - [10/03/2020 11:31:19] - |A| - (.-.) - [223] - (0.0.0.0) - C:\nekfeu - reuf feat ed sheeran.m3u [MD5.10990389A43D7680745D0406EC0FC08E] - [10/03/2020 11:31:19] - |A| - (.-.) - [184] - (0.0.0.0) - C:\nelly furtado - promiscuous ft. timbaland.m3u [MD5.2713CBF9765DCA4545A02BCA47E8194E] - [10/03/2020 11:31:19] - |A| - (.-.) - [160] - (0.0.0.0) - C:\nick jonas - jealous.m3u [MD5.C70DDCA3A5A26042877480F7345FA8A5] - [10/03/2020 11:31:20] - |A| - (.-.) - [81] - (0.0.0.0) - C:\nicki minaj - anaconda.m3u [MD5.26C7E469CEF8F7DF9F9EA9718C6798FD] - [10/03/2020 11:31:20] - |A| - (.-.) - [96] - (0.0.0.0) - C:\nicki minaj - pills n potions (audio).m3u [MD5.036F27C22161FEDF51530A51261D87B8] - [10/03/2020 11:31:20] - |A| - (.-.) - [89] - (0.0.0.0) - C:\nicole scherzinger - your love.m3u [MD5.E13E509090A89D7C8FF837B48FEA1B92] - [13/03/2020 09:36:54] - |A| - (.-.) - [3195] - (0.0.0.0) - C:\NoClone 2017.lnk [MD5.8D357AD36A58CD031B9881F8582085A9] - [10/03/2020 11:31:21] - |A| - (.-.) - [71] - (0.0.0.0) - C:\Nothing But The Beat 2.0.m3u [MD5.2D0CCA881AF8792A6648861E3962FA0F] - [19/12/2024 00:23:03] - |A| - (.-.) - [133400] - (0.0.0.0) - C:\NOUVELLE-CARTE-novembre-2018.pdf [MD5.B307A5758CFBCC4EBF70591B5F48AAB0] - [10/03/2020 11:31:21] - |A| - (.-.) - [72] - (0.0.0.0) - C:\Now That's What I call Music! 72.m3u [MD5.B461D38E2E089D46BA465CAC2490F4C3] - [10/03/2020 11:31:21] - |A| - (.-.) - [131] - (0.0.0.0) - C:\NRJ 300% Hits 2017, Vol. 2.m3u [MD5.7768381A0EF3DDCDD8DE9B5AC3E3E604] - [27/01/2020 14:35:22] - |A| - (.-.) - [8192] - (0.0.0.0) - C:\ntuser.dat [MD5.30C4B8AC324C0CA69C2AC0B98AC9351E] - [27/01/2020 14:35:22] - |AS| - (.-.) - [8192] - (0.0.0.0) - C:\ntuser.dat.LOG1 [MD5.D41D8CD98F00B204E9800998ECF8427E] - [27/01/2020 14:35:22] - |AS| - (.-.) - [0] - (0.0.0.0) - C:\ntuser.dat.LOG2 [MD5.2D9B0F93DF6EB18A23DDEC1E39DEDCDC] - [27/01/2020 14:35:22] - |AS| - (.-.) - [65536] - (0.0.0.0) - C:\ntuser.dat{ad15df7d-3b60-11ea-8129-685acf6a7e41}.TM.blf [MD5.7D6E2BF9F9DDFEA814224DC85B03BD87] - [27/01/2020 14:35:22] - |AS| - (.-.) - [524288] - (0.0.0.0) - C:\ntuser.dat{ad15df7d-3b60-11ea-8129-685acf6a7e41}.TMContainer00000000000000000001.regtrans-ms [MD5.59071590099D21DD439896592338BF95] - [27/01/2020 14:35:22] - |AS| - (.-.) - [524288] - (0.0.0.0) - C:\ntuser.dat{ad15df7d-3b60-11ea-8129-685acf6a7e41}.TMContainer00000000000000000002.regtrans-ms [MD5.D22850206CA6C7FC9669D9B92AA7D1EB] - [10/03/2020 11:31:22] - |A| - (.-.) - [172] - (0.0.0.0) - C:\ocean park standoff - good time (audio only).m3u [09/09/2016 06:31:09] - |D| - [107330] - C:\oklog [MD5.D2800B8EEA420BAAFF0AA669FD83DC7C] - [10/03/2020 11:31:22] - |A| - (.-.) - [163] - (0.0.0.0) - C:\omi - hula hoop (official video).m3u [MD5.0DDB76AEC7C0A67F263E39042AEA1E8C] - [10/03/2020 11:31:22] - |A| - (.-.) - [92] - (0.0.0.0) - C:\one direction - midnight memories.m3u [23/01/2020 15:27:33] - |D| - [0] - C:\OneDriveTemp [MD5.6F545FE545960ED20A59084DF0F03EBA] - [10/03/2020 11:31:22] - |A| - (.-.) - [202] - (0.0.0.0) - C:\orelsan - plus rien ne m'étonne (paroles) (1).m3u [MD5.6F545FE545960ED20A59084DF0F03EBA] - [10/03/2020 11:31:22] - |A| - (.-.) - [202] - (0.0.0.0) - C:\orelsan - plus rien ne m'étonne (paroles).m3u [MD5.CE57B1C8CEE4EF387D9B4BB4E34147B7] - [11/03/2020 19:27:33] - |A| - (.-.) - [745] - (0.0.0.0) - C:\OrgCharting.exe.lnk [MD5.D41D8CD98F00B204E9800998ECF8427E] - [01/04/2020 09:08:28] - |ASH| - (.-.) - [5637144576] - (0.0.0.0) - C:\pagefile.sys [MD5.7B8F144B9469817171E60545CC8E0711] - [10/03/2020 11:31:23] - |A| - (.-.) - [57] - (0.0.0.0) - C:\part z sigma++sfce, 3rem & 4rem scénario 15.m3u [MD5.0583F0BF3E0DC079B7559BBC7B56C283] - [10/03/2020 11:31:23] - |A| - (.-.) - [121] - (0.0.0.0) - C:\Pattaya.m3u [06/03/2018 16:34:25] - |D| - [0] - C:\PCTransImage [12/12/2019 09:33:57] - |D| - [0] - C:\PerfLogs [MD5.0182DDC7C6225A3BD08D44E3941DF733] - [10/03/2020 11:31:23] - |A| - (.-.) - [101] - (0.0.0.0) - C:\ph d - i won't let you down (hd) 1981 (1).m3u [MD5.0182DDC7C6225A3BD08D44E3941DF733] - [10/03/2020 11:31:23] - |A| - (.-.) - [101] - (0.0.0.0) - C:\ph d - i won't let you down (hd) 1981.m3u [MD5.B76EB88454EC2479761D00914DC9F553] - [10/03/2020 11:31:24] - |A| - (.-.) - [91] - (0.0.0.0) - C:\pharrell williams - gust of wind.m3u [MD5.517C6FC1117FFDAB0E585A331DD31FDD] - [18/12/2024 22:32:42] - |A| - (.-.) - [16384] - (0.0.0.0) - C:\phoneservice [23/08/2004 17:54:37] - |D| - [0] - C:\PHOTO [MD5.CA5D1FA3938B7EA406CA1DC81D2BCDBD] - [19/12/2024 02:32:49] - |A| - (.-.) - [16384] - (0.0.0.0) - C:\Pictures [MD5.449E89E2C95FB314507A92C0E805268B] - [10/03/2020 11:31:24] - |A| - (.-.) - [2805] - (0.0.0.0) - C:\piment ô self.m3u [MD5.5C9DB24159B9B6FEEEF93440C41D262F] - [10/03/2020 11:31:24] - |A| - (.-.) - [101] - (0.0.0.0) - C:\pitbull - fun ft. chris brown (2).m3u [MD5.5C9DB24159B9B6FEEEF93440C41D262F] - [10/03/2020 11:31:24] - |A| - (.-.) - [101] - (0.0.0.0) - C:\pitbull - fun ft. chris brown (3).m3u [MD5.5C9DB24159B9B6FEEEF93440C41D262F] - [10/03/2020 11:31:25] - |A| - (.-.) - [101] - (0.0.0.0) - C:\pitbull - fun ft. chris brown (4).m3u [MD5.5C9DB24159B9B6FEEEF93440C41D262F] - [10/03/2020 11:31:25] - |A| - (.-.) - [101] - (0.0.0.0) - C:\pitbull - fun ft. chris brown.m3u [15/02/2020 18:06:58] - |RD| - [51619300] - C:\placard des objets conf, anti-tfm 2rem & anti-tfm 118Rem [13/03/2020 20:56:20] - |D| - [0] - C:\placard obj conf 14REM WIDEN 4.6 ET 21 FINALI. ET SMD [MD5.9DFAED4C41AA193FDD2C06CBA028A32B] - [25/02/2020 15:43:38] - |A| - (.-.) - [68] - (0.0.0.0) - C:\pmp_usb.ini [MD5.73B3AD64A8E81651D5281A354B4C14FD] - [10/03/2020 11:31:25] - |A| - (.-.) - [151] - (0.0.0.0) - C:\point commun 3 rem, 4 rem, folie ice-tea hibiscus-pdvd365md3ms17 & psz++sfce avec vestiges g-a3a scénario 1.m3u [MD5.25FBB8F590D5EC8CF8C18EAAF0672B3D] - [10/03/2020 11:31:25] - |A| - (.-.) - [250] - (0.0.0.0) - C:\police siren.m3u [10/02/2020 18:25:18] - |RD| - [16619] - C:\PortableApps [MD5.A4845B9E18B4CD3840F72830D6876C81] - [10/03/2020 11:31:25] - |A| - (.-.) - [87] - (0.0.0.0) - C:\portugal. the man - _feel it still_ (official video)(2).m3u [MD5.A4845B9E18B4CD3840F72830D6876C81] - [10/03/2020 11:31:25] - |A| - (.-.) - [87] - (0.0.0.0) - C:\portugal. the man - _feel it still_ (official video).m3u [12/12/2019 09:33:57] - |D| - [11249132889] - C:\Program Files [13/03/2020 19:42:55] - |D| - [0] - C:\program files (x64) [12/12/2019 09:33:57] - |RD| - [9132177727] - C:\Program Files (x86) [12/12/2019 09:33:57] - |HD| - [5172038430] - C:\ProgramData [13/03/2020 19:43:55] - |D| - [0] - C:\ProgramFiles [27/03/2020 11:14:26] - |D| - [11676547738] - C:\ProgramFiles (x32) [10/03/2020 18:13:27] - |D| - [0] - C:\programs [MD5.846E6C6C8DD2FE95E11D27555940F539] - [19/12/2024 01:28:37] - |A| - (.-.) - [322900656] - (0.0.0.0) - C:\projet montage 600anav à uploader sur youtube assiste wantété commun 3à14rem anti-imudar.wmv [MD5.22341EE763ADE6CC3F110E17149DDF7E] - [10/03/2020 11:31:26] - |A| - (.-.) - [96] - (0.0.0.0) - C:\présentation du parc du petit prince.m3u [31/03/2020 13:12:16] - |D| - [68718] - C:\QuickDiag [MD5.62D620CC41E1ADB3B0A522FCEC89DDCA] - [07/04/2020 13:13:01] - |A| - (.-.) - [561445] - (0.0.0.0) - C:\QuickDiag.txt [MD5.7D43CE8D97208A91109B96C10C8FC355] - [31/03/2020 13:13:14] - |A| - (.-.) - [310] - (0.0.0.0) - C:\QuickScript.txt [09/03/2020 20:42:15] - |D| - [72189892] - C:\rapports zhpsuite galaxy book [09/03/2020 20:41:34] - |D| - [1013693173] - C:\rapports zhpsuite tour compaq [MD5.580DF14E09DD7012D76DC542FE1A8B99] - [18/12/2024 10:19:32] - |A| - (.-.) - [8933341] - (0.0.0.0) - C:\rapsody-ibtihaj-ft-dangelo-gza.mp3 [MD5.2014A9BD1A7EB585A2C0A73BE863930F] - [10/03/2020 11:31:27] - |A| - (.-.) - [154] - (0.0.0.0) - C:\Rated R.m3u [MD5.986054AD07C866A3A05DF8F1CB2EA902] - [18/12/2024 07:51:28] - |A| - (.-.) - [878] - (0.0.0.0) - C:\README [MD5.3E5E46CD75BA4C0875739BFA60DDC31A] - [13/03/2020 09:36:55] - |A| - (.-.) - [1175] - (0.0.0.0) - C:\Reason Core Security.lnk [23/08/2004 17:54:37] - |D| - [0] - C:\RECORD [MD5.AC83F9799B59B82947155A6C98BE692C] - [10/03/2020 11:31:27] - |A| - (.-.) - [205] - (0.0.0.0) - C:\record fuzz (2).m3u [MD5.AC83F9799B59B82947155A6C98BE692C] - [10/03/2020 11:31:27] - |A| - (.-.) - [205] - (0.0.0.0) - C:\record fuzz.m3u [31/08/2016 16:56:32] - |SHD| - [1472886799] - C:\Recovery [13/03/2020 19:12:23] - |D| - [0] - C:\Recovery 7 User Data Backup [04/04/2020 18:05:36] - |D| - [226506430] - C:\RegBackup [13/03/2020 20:55:19] - |D| - [0] - C:\Rem-VBSqt [MD5.C131299D97731D197FE3D1316C8CF114] - [10/03/2020 11:31:31] - |A| - (.-.) - [94] - (0.0.0.0) - C:\remady ft. craig david - do it on my own.m3u [MD5.3A74CBC2962325F8940571007D47CB9F] - [13/03/2020 09:36:55] - |A| - (.-.) - [1164] - (0.0.0.0) - C:\Reset Edge Home.lnk [MD5.5A3E7D063662B3CA05B34B4E2798E566] - [13/03/2020 09:37:06] - |A| - (.-.) - [9552817] - (0.0.0.0) - C:\RevoUninstaller_Portable(1).zip [MD5.056A0E3859587BFAE2C14EAA646BE0BC] - [10/03/2020 11:31:31] - |A| - (.-.) - [144] - (0.0.0.0) - C:\Rey Ruiz.m3u [MD5.B84A2FB6F5F1054DD81696A20F31506B] - [10/03/2020 11:31:32] - |A| - (.-.) - [88] - (0.0.0.0) - C:\rihanna - only girl (in the world).m3u [MD5.2FA60F0960306D3A860B500D138C5187] - [10/03/2020 11:31:32] - |A| - (.-.) - [171] - (0.0.0.0) - C:\rihanna - watch n' learn (audio).m3u [MD5.ED86BD03EE8E56EF32D2A02F35E744E1] - [10/03/2020 11:31:32] - |A| - (.-.) - [97] - (0.0.0.0) - C:\rita ora - i will never let you down_1.m3u [MD5.46DF10018AFCC49A3B32F7F97FBB7952] - [10/03/2020 11:31:33] - |A| - (.-.) - [92] - (0.0.0.0) - C:\robin schulz - sun goes down feat.m3u [MD5.ADDB5E5500C4B4813C6740D26CF9E440] - [10/03/2020 11:31:33] - |A| - (.-.) - [96] - (0.0.0.0) - C:\rohff - l'oseille lyrics hd (paroles).m3u [MD5.C455C7D3397C2BFBDBFCB86D4CFD86B4] - [10/03/2020 11:31:33] - |A| - (.-.) - [103] - (0.0.0.0) - C:\roll.m3u [MD5.3F375BBC0B25E41A2FAF9208B7624182] - [10/03/2020 11:31:33] - |A| - (.-.) - [105] - (0.0.0.0) - C:\romans.m3u [05/09/2019 14:56:07] - |D| - [0] - C:\s3c_Sistemas [MD5.65901245EFC03EF585D05107B1DE1C51] - [09/03/2020 21:02:42] - |A| - (.-.) - [21481] - (0.0.0.0) - C:\Saamu _ - CleanTemps.html [09/03/2020 21:02:43] - |D| - [196574] - C:\Saamu _ - CleanTemps_files [MD5.28C5E106E57B41BFBBA63790B1D22573] - [09/03/2020 20:30:26] - |A| - (.-.) - [223866434] - (0.0.0.0) - C:\Sans titre 1.avi [MD5.F473503F5FDCF446A6054215A476E6DF] - [09/03/2020 20:32:39] - |A| - (.-.) - [548277196] - (0.0.0.0) - C:\Sans titre 2.avi [05/02/2020 13:10:18] - |RD| - [0] - C:\Saved Pictures [MD5.067D12B491626D6826455E2AD0630693] - [10/03/2020 10:50:45] - |A| - (.Copyright © Learnpulse 2020 - Screenpresso.) - [12217440] - (1.7.15.0) - C:\Screenpresso.exe [MD5.5BEF6BB5F039FF6983911BCA5B742A79] - [18/12/2024 23:52:31] - |A| - (.Copyright by Abelssoft - ScreenVideo 2019 .) - [49801120] - (1.0.0.0) - C:\screenvideo.exe [MD5.4785F8BAECB0A3FB50B4FBDD556AC51C] - [10/03/2020 11:31:34] - |A| - (.-.) - [185] - (0.0.0.0) - C:\sean kingston - letting go (dutty love) ft. nicki minaj (official music video) (320 kbps) (mp3converter.net).m3u [MD5.876843A74687B726CB9D374C6C8DE8AD] - [10/03/2020 11:31:34] - |A| - (.-.) - [107] - (0.0.0.0) - C:\selah sue ft guizmo - crazy vibes remix & nekfeu.m3u [MD5.636FF454C2E19A7FAB8DB20E76508D45] - [10/03/2020 11:31:35] - |A| - (.-.) - [205] - (0.0.0.0) - C:\sevyn streeter - don't kill the fun ft.m3u [MD5.6320B82338D82254ADDB86585432F7EE] - [10/03/2020 11:31:36] - |A| - (.-.) - [96] - (0.0.0.0) - C:\sexion d'assaut - l'ogive nucléaire.m3u [MD5.08D87167C6531F13B7400EA6B82C82C8] - [13/03/2020 09:37:12] - |A| - (.-.) - [1958] - (0.0.0.0) - C:\SHADOW~1.del [08/02/2020 17:02:08] - |D| - [360] - C:\ShellBags Backups day=6 hour=22 min=30 s=42 [13/03/2020 20:55:19] - |D| - [27069097] - C:\SkinPack [05/02/2020 13:08:00] - |D| - [0] - C:\Smart Game Booster [10/03/2020 11:04:32] - |D| - [191760] - C:\Smart Privacy Cleaner [MD5.A2CE5495D300E1111D49EE9FF59284AD] - [10/03/2020 11:31:36] - |A| - (.-.) - [197] - (0.0.0.0) - C:\sniper- j'te parle feat. soprano (clip officiel).m3u [MD5.A2CE5495D300E1111D49EE9FF59284AD] - [10/03/2020 11:31:36] - |A| - (.-.) - [197] - (0.0.0.0) - C:\sniper- j'te parle feat. soprano (clip officiel)_1.m3u [MD5.DE92DC2B4D415419E95321DA44C2A396] - [10/03/2020 11:31:36] - |A| - (.-.) - [212] - (0.0.0.0) - C:\snoop dogg - vato.m3u [MD5.47FCDDF6E23FF2E61B56F921DAC38D45] - [10/03/2020 11:31:36] - |A| - (.-.) - [188] - (0.0.0.0) - C:\snoop dogg, pharrell williams - let's get blown[128k]__[mp3-128k].m3u [MD5.61A7CC55992349A087552D606B3BA573] - [10/03/2020 11:31:37] - |A| - (.-.) - [103] - (0.0.0.0) - C:\soft.m3u [MD5.9AAB10E5C343C4A80092DFE699830ECA] - [10/03/2020 11:31:37] - |A| - (.-.) - [102] - (0.0.0.0) - C:\soprano - cosmo [clip officiel] #cosmofolie.m3u [MD5.2B2E510194708F4194F4E07F52A738BB] - [10/03/2020 11:31:38] - |A| - (.-.) - [97] - (0.0.0.0) - C:\soprano - fresh prince [clip officiel].m3u [MD5.58ECDAAC7CD7A02026E9E02C746356B0] - [10/03/2020 11:31:38] - |A| - (.-.) - [109] - (0.0.0.0) - C:\soprano - ils nous connaissent pas [clip officiel].m3u [MD5.BCA2ED514EAADA636722098AED1E869D] - [10/03/2020 11:31:38] - |A| - (.-.) - [120] - (0.0.0.0) - C:\sound68.m3u [MD5.C7329761467E4DC3AE0B5324420EF427] - [10/03/2020 11:31:39] - |A| - (.-.) - [121] - (0.0.0.0) - C:\sound827.m3u [25/02/2020 15:43:12] - |D| - [0] - C:\Sounds [03/01/2014 14:34:12] - |RAD| - [3952548642] - C:\sources [MD5.36D7043B4D3396538A3847D1019115E1] - [10/03/2020 11:31:40] - |A| - (.-.) - [104] - (0.0.0.0) - C:\space.m3u [MD5.9EB2CB238F5E470FE22B0BDA7CDC0927] - [10/03/2020 11:31:40] - |A| - (.-.) - [105] - (0.0.0.0) - C:\space2.m3u [MD5.0BD8D69E65D8F916B7DF4811645C9931] - [10/03/2020 11:31:40] - |A| - (.-.) - [105] - (0.0.0.0) - C:\space3.m3u [MD5.13A775958C70DC7E53DF8B7157C9D787] - [10/03/2020 11:31:40] - |A| - (.-.) - [106] - (0.0.0.0) - C:\sparcle.m3u [MD5.5D9721C7EDA049732CD9F6973355CFAE] - [09/03/2020 15:26:07] - |A| - (.-.) - [1491720] - (0.0.0.0) - C:\speech narration noémie faché anti-nathalie sur cube mc flury amoureuses.mp3 [MD5.46E3580B327045EDB96FC4F80DC44566] - [10/03/2020 11:31:40] - |A| - (.-.) - [86] - (0.0.0.0) - C:\stanislas - la belle de mai.m3u [10/03/2020 10:50:29] - |D| - [0] - C:\Stardock [MD5.04E3524ADBF0E572CAC8081CC3502B48] - [13/03/2020 09:36:54] - |A| - (.-.) - [1285] - (0.0.0.0) - C:\Stellar Phoenix CD DVD Data Recovery.lnk [MD5.08843F5CCDEBD6E55BB87E46F7BB3B53] - [10/03/2020 11:31:41] - |A| - (.-.) - [106] - (0.0.0.0) - C:\strom.m3u [MD5.EE923B486EB0785887456D9E3AC4F97E] - [18/12/2024 07:51:28] - |A| - (.-.) - [1217] - (0.0.0.0) - C:\style.css [MD5.D66A7CC2EDFBE1A6EC6636CAB9B89354] - [10/03/2020 11:31:41] - |A| - (.-.) - [202] - (0.0.0.0) - C:\sub boom (2).m3u [MD5.D66A7CC2EDFBE1A6EC6636CAB9B89354] - [10/03/2020 11:31:41] - |A| - (.-.) - [202] - (0.0.0.0) - C:\sub boom.m3u [MD5.0BD8D69E65D8F916B7DF4811645C9931] - [10/03/2020 11:31:41] - |A| - (.-.) - [105] - (0.0.0.0) - C:\success (2).m3u [MD5.0BD8D69E65D8F916B7DF4811645C9931] - [10/03/2020 11:31:42] - |A| - (.-.) - [105] - (0.0.0.0) - C:\success.m3u [MD5.AD409EF87C68F756295F1284BF3F08E4] - [10/03/2020 11:31:42] - |A| - (.-.) - [162] - (0.0.0.0) - C:\successfully (2).m3u [MD5.6EEB95E1ACCBE13361932D8D338824CD] - [13/03/2020 09:37:12] - |A| - (.-.) - [1281] - (0.0.0.0) - C:\SUMo.lnk [MD5.CCD25F03AB508A38A8C7B4A856B128E6] - [10/03/2020 11:31:42] - |A| - (.-.) - [134] - (0.0.0.0) - C:\Supermodel.m3u [MD5.D41D8CD98F00B204E9800998ECF8427E] - [20/01/2020 12:56:11] - |ASH| - (.-.) - [268435456] - (0.0.0.0) - C:\swapfile.sys [02/08/2012 05:15:28] - |AD| - [556975971] - C:\SWSETUP [MD5.73C7FE9300115275F2929D435C05C5C2] - [16/03/2020 20:50:12] - |AH| - (.-.) - [13460777] - (0.0.0.0) - C:\sync.ffs_db [MD5.CCD62FD5FB17E26556518A1CF51EAAC2] - [27/03/2020 12:30:46] - |A| - (.-.) - [3540] - (0.0.0.0) - C:\sync.ffs_lock [MD5.9251543296B51865AE809440B3206B4A] - [18/12/2024 07:51:28] - |A| - (.-.) - [104] - (0.0.0.0) - C:\syslinux.cfg [MD5.AC5CFE07D058007181537389789877B2] - [13/03/2020 09:36:56] - |A| - (.-.) - [15042] - (0.0.0.0) - C:\System Info.htm [28/08/2016 11:39:40] - |SHD| - [0] - C:\System Volume Information [01/08/2012 11:57:15] - |D| - [38369446] - C:\SYSTEM.SAV [MD5.2459053F7FF5C13F0E153D25651FF6AE] - [10/03/2020 11:31:43] - |A| - (.-.) - [110] - (0.0.0.0) - C:\t.i. - get back up ft. chris brown [official video].m3u [MD5.3C758E99B53EEAC5F0209CC088F11D26] - [10/03/2020 11:31:43] - |A| - (.-.) - [91] - (0.0.0.0) - C:\t.i. - no mediocre (explicit) ft.m3u [MD5.D31DB2F8A60B4614533BD1DD5EC77F10] - [10/03/2020 11:31:43] - |A| - (.-.) - [192] - (0.0.0.0) - C:\tal & irma - streets of philadelphia (clip officiel).m3u [MD5.E579D19F13AE34F94B96B28A64F4B6E1] - [10/03/2020 11:31:44] - |A| - (.-.) - [2639] - (0.0.0.0) - C:\Talk That Talk (Deluxe Edition).m3u [MD5.2FA60F0960306D3A860B500D138C5187] - [10/03/2020 11:31:44] - |A| - (.-.) - [171] - (0.0.0.0) - C:\Talk That Talk [Deluxe Explicit Edition].m3u [MD5.47B6F8FCFC8391CBABFF1B5C63956111] - [10/03/2020 11:31:44] - |A| - (.-.) - [225] - (0.0.0.0) - C:\taylor swift - bad blood ft. kendrick lamar.m3u [12/02/2020 13:48:54] - |D| - [160] - C:\tec tool store widen 5, 16 et 21 et oath widen 5 acte 2 [11/02/2020 23:11:10] - |RD| - [160] - C:\tech tool store widen 5, 16 & 21 &oath widen 5 act 1 [MD5.307DCD842B128EB05CFF0ADD8E8D264D] - [10/03/2020 11:31:44] - |A| - (.-.) - [132] - (0.0.0.0) - C:\Tek It Out (feat. Shendou Gang, Mafio House).m3u [04/01/2020 14:38:55] - |D| - [0] - C:\temp [23/01/2020 10:39:20] - |D| - [3104576] - C:\tenorshare [MD5.DC7C0B9B32E1C76C866DE7E2EA573EB4] - [10/03/2020 11:31:45] - |A| - (.-.) - [87] - (0.0.0.0) - C:\termanology - real recognize.m3u [MD5.587B3F05D384E9145665151FC7E44896] - [10/03/2020 11:31:45] - |A| - (.-.) - [109] - (0.0.0.0) - C:\the avener - fade out lines (official music video).m3u [MD5.57F2EE1713C8B7EEE6A656DED6E744CE] - [10/03/2020 11:31:45] - |A| - (.-.) - [89] - (0.0.0.0) - C:\the black eyed peas - #wheresthelove ft. the world (2).m3u [MD5.57F2EE1713C8B7EEE6A656DED6E744CE] - [10/03/2020 11:31:45] - |A| - (.-.) - [89] - (0.0.0.0) - C:\the black eyed peas - #wheresthelove ft. the world.m3u [MD5.AA8B2466EAE40BA55BF8CDB801F7AC04] - [10/03/2020 11:31:46] - |A| - (.-.) - [200] - (0.0.0.0) - C:\the black eyed peas - don't lie(2).m3u [MD5.AA8B2466EAE40BA55BF8CDB801F7AC04] - [10/03/2020 11:31:46] - |A| - (.-.) - [200] - (0.0.0.0) - C:\the black eyed peas - don't lie.m3u [MD5.50C3A7332896E2385B2C3F8A9F4D4D9F] - [10/03/2020 11:31:46] - |A| - (.-.) - [111] - (0.0.0.0) - C:\the black eyed peas - pump it[128k]__[mp3-128k].m3u [MD5.57F2EE1713C8B7EEE6A656DED6E744CE] - [10/03/2020 11:31:46] - |A| - (.-.) - [89] - (0.0.0.0) - C:\the black eyed peas - wheresthelove ft. the world.m3u [MD5.0AFC1CA4390888D558860B7461E22122] - [10/03/2020 11:31:46] - |A| - (.-.) - [132] - (0.0.0.0) - C:\the peacemaker project - ich lassâ´ dich nicht zurã¼ck (original mix).m3u [MD5.52752BD41AD54440EE34F2A6FB7809C0] - [10/03/2020 11:31:47] - |A| - (.-.) - [87] - (0.0.0.0) - C:\the toxic avenger - chase ii.m3u [MD5.AA8B2466EAE40BA55BF8CDB801F7AC04] - [10/03/2020 11:31:47] - |A| - (.-.) - [200] - (0.0.0.0) - C:\the-black-eyed-peas-dont-lie-official-music-video.m3u [MD5.814BFAB22E563A46716BF39165AF3991] - [18/12/2024 10:19:32] - |A| - (.-.) - [6282167] - (0.0.0.0) - C:\therapie-taxi-ft-romeo-elvis-hit-sale-clip-officiel-13.mp3 [29/02/2020 11:07:07] - |D| - [1201694] - C:\TileCreator [MD5.8F52CEB600C289593D6AA9EF5F9CACFF] - [13/03/2020 09:37:12] - |A| - (.-.) - [683] - (0.0.0.0) - C:\Total Commander 64 bit.lnk [MD5.449E89E2C95FB314507A92C0E805268B] - [10/03/2020 11:31:48] - |A| - (.-.) - [2805] - (0.0.0.0) - C:\tribute to piment ô self.m3u [MD5.1DC9F535E64F1606A81649CCD7930E96] - [10/03/2020 11:31:49] - |A| - (.-.) - [150] - (0.0.0.0) - C:\trumpet (2).m3u [MD5.1DC9F535E64F1606A81649CCD7930E96] - [10/03/2020 11:31:49] - |A| - (.-.) - [150] - (0.0.0.0) - C:\trumpet.m3u [MD5.C1FE290A237092CA52142234C8018329] - [10/03/2020 11:31:49] - |A| - (.-.) - [198] - (0.0.0.0) - C:\trumpet1 (2).m3u [MD5.C1FE290A237092CA52142234C8018329] - [10/03/2020 11:31:50] - |A| - (.-.) - [198] - (0.0.0.0) - C:\trumpet1.m3u [26/02/2020 08:10:17] - |D| - [119] - C:\TTS Reports [MD5.6D6571E5DF89B5B4F927798249740311] - [13/03/2020 09:37:13] - |A| - (.-.) - [1198] - (0.0.0.0) - C:\TunesKit M4V Converter.lnk [MD5.50DC35BB0A581FD6BC28FB37F28208C9] - [13/03/2020 17:28:16] - |A| - (.-.) - [29896267] - (0.0.0.0) - C:\tuto outdate fighter dero's illunicolas.mp4 [01/04/2020 11:05:06] - |D| - [2701960] - C:\ubuntu [MD5.613217CE369F980C0BE12AB70DE72EE2] - [10/03/2020 11:31:51] - |A| - (.-.) - [57] - (0.0.0.0) - C:\uefm essentials.m3u [MD5.462BB5352B04FDDF99CFF0E660A5BD89] - [13/03/2020 09:36:56] - |A| - (.-.) - [43930] - (0.0.0.0) - C:\Ultra Virus Killer Report.htm [MD5.96D1CC9F2AF949140F5D74F35F21BE78] - [09/03/2020 18:14:28] - |A| - (.Nicolas Coolman - ZHPSuite.) - [3425664] - (2020.3.9.19) - C:\Unconfirmed 110420.crdownload [MD5.96D1CC9F2AF949140F5D74F35F21BE78] - [09/03/2020 18:14:22] - |A| - (.Nicolas Coolman - ZHPSuite.) - [3425664] - (2020.3.9.19) - C:\Unconfirmed 266425.crdownload [MD5.C1B9746A3EB0F3F660D669420D8C4A4B] - [09/03/2020 18:14:35] - |A| - (.Copyright (c) 1999-2019 Igor Pavlov - 7z SFX.) - [536541145] - (19.2.0.0) - C:\Unconfirmed 702729.crdownload [MD5.21EBB01523064AF36EF394D3E0C05751] - [13/03/2020 09:36:54] - |A| - (.-.) - [1080] - (0.0.0.0) - C:\UnHackMe.lnk [MD5.7624B67622053E1EBF83814B68B0866C] - [10/03/2020 11:31:51] - |A| - (.-.) - [1687] - (0.0.0.0) - C:\Unknown Album.m3u [MD5.CBFF6E531902FAD90C4BF0E720551F72] - [10/03/2020 11:31:52] - |A| - (.-.) - [104] - (0.0.0.0) - C:\untie.m3u [14/01/2020 22:10:46] - |D| - [1006812] - C:\UnZacMe [MD5.BDB691E989078C4E9E2A4669EFABFE28] - [13/03/2020 09:36:56] - |A| - (.-.) - [1629] - (0.0.0.0) - C:\Update Windows.lnk [07/04/2020 10:46:12] - |D| - [5782609] - C:\UsbFix [12/12/2019 09:19:58] - |RD| - [665916024727] - C:\Users [MD5.E9B1DB89B25999A6D4B52C24965BA68C] - [10/03/2020 11:31:52] - |A| - (.-.) - [80] - (0.0.0.0) - C:\usher - good kisser_1.m3u [MD5.1344EB5D4119C16B43F233459EF2079C] - [10/03/2020 11:31:52] - |A| - (.-.) - [96] - (0.0.0.0) - C:\usher - she came to give it to you ft.m3u [MD5.B19AF70CE69007637E98EFACAF6808DA] - [10/03/2020 11:31:52] - |A| - (.-.) - [231] - (0.0.0.0) - C:\usher new song summer 2015 - nina simone cover.m3u [MD5.150F3E331B90A2560A9AA682C1248194] - [10/03/2020 11:31:54] - |A| - (.-.) - [208] - (0.0.0.0) - C:\ushuaïa_20141006095138_01.m3u [MD5.04CA458AFB734A79EF144B0B3C0CCE0C] - [11/03/2020 20:02:20] - |A| - (.NCH Software - Verbose Text to Speech.) - [521240] - (0.0.0.0) - C:\vbsetup.exe [23/08/2004 17:54:37] - |D| - [342097920] - C:\VIDEO [MD5.732702D3DEABFAC8802DE236DB9DAB2F] - [18/12/2024 23:52:34] - |A| - (.Copyright©2017 IskySoft. - iskysoft-video-converter-ultimate-(cpc)_setup_full1329.exe.) - [971400] - (2.0.15.2) - C:\video-converter-ultimate_setup_full1329.exe [MD5.1A071D0F7A82C3128A60A7E44B3060E6] - [18/12/2024 23:52:33] - |A| - (.Copyright©2017 Wondershare. - video-converter-ultimate_setup_full905.exe.) - [990312] - (2.0.9.2) - C:\video-converter-ultimate_setup_full905.exe [MD5.4DCC0B871897AD04F3534166C20A6883] - [10/03/2020 11:31:55] - |A| - (.-.) - [93] - (0.0.0.0) - C:\Virgin Radio Cauet s'lâche.m3u [25/02/2020 15:43:12] - |D| - [0] - C:\VirtualEditProjects [MD5.35294E7FC2D318A2D5C18115FC4B5CD7] - [13/03/2020 09:37:12] - |A| - (.-.) - [2425] - (0.0.0.0) - C:\Vivaldi.lnk [MD5.D06112AC1B253E178EDBA10C3AA68393] - [10/03/2020 11:31:56] - |A| - (.-.) - [340] - (0.0.0.0) - C:\vocal 001.m3u [MD5.87B8EDBAE54D5373593B68A0D27865E6] - [10/03/2020 11:31:56] - |A| - (.-.) - [80] - (0.0.0.0) - C:\voicefx_drunk_20190203_055028.m3u [MD5.BFDA50091CE45AA02B1111EA5FB04EA9] - [10/03/2020 11:31:57] - |A| - (.-.) - [80] - (0.0.0.0) - C:\voicefx_drunk_20190203_132854.m3u [MD5.627E4CC5E6C71B4621FA108A3F288531] - [10/03/2020 11:31:57] - |A| - (.-.) - [80] - (0.0.0.0) - C:\voicefx_drunk_20190205_072551.m3u [18/02/2020 09:08:18] - |D| - [5704] - C:\vortex AFAMFUW coté lfs hyper & débug batterie PC coté forum désinfection [03/05/2019 07:43:08] - |D| - [0] - C:\VTRoot [31/03/2020 11:55:31] - |HD| - [21433344] - C:\W7P_Backups [MD5.9EB2CB238F5E470FE22B0BDA7CDC0927] - [10/03/2020 11:31:58] - |A| - (.-.) - [105] - (0.0.0.0) - C:\wallewal.m3u [MD5.111039CBA7FD6A5587CCB1083A762F08] - [10/03/2020 11:31:59] - |A| - (.-.) - [204] - (0.0.0.0) - C:\war sounds (2).m3u [MD5.111039CBA7FD6A5587CCB1083A762F08] - [10/03/2020 11:31:59] - |A| - (.-.) - [204] - (0.0.0.0) - C:\war sounds.m3u [MD5.778621D65C315C7B19C6614017DAF118] - [10/03/2020 11:31:59] - |A| - (.-.) - [91] - (0.0.0.0) - C:\We Need A Resolution [Single].m3u [03/02/2020 23:33:34] - |D| - [0] - C:\Wi-Fi Direct [MD5.6D7C2743C02F8EBA979A17D131018FF6] - [19/12/2024 01:46:58] - |A| - (.-.) - [473591472] - (0.0.0.0) - C:\widen 21 evolution 14rem bnan anti-dfm2 8FEV202016H58.wmv [MD5.A37C38302DC0E75A0C77A82F751FC9E1] - [10/03/2020 11:31:59] - |A| - (.-.) - [57] - (0.0.0.0) - C:\widen 4.2.m3u [MD5.655D96CB59A07D0DE4E0E3D0DF4BA879] - [10/03/2020 11:32:00] - |A| - (.-.) - [80] - (0.0.0.0) - C:\Wild Ones.m3u [MD5.F804A506EC76C8FD4B42D736BC2014B8] - [10/03/2020 11:32:00] - |A| - (.-.) - [104] - (0.0.0.0) - C:\will.i.am feat. cody wine -- it's my birthday.m3u [MD5.72F5F406CE92CFF8564F8A8134CDDBD4] - [10/03/2020 11:32:00] - |A| - (.-.) - [200] - (0.0.0.0) - C:\will_smith_-_will_2k_ft._k-ci_mp3.m3u [MD5.76A66845F666C52790C3442F7E1A491A] - [18/12/2024 11:16:50] - |A| - (.-.) - [8] - (0.0.0.0) - C:\winamp_metadata.dat [MD5.137FAA0C3BAA69F733EAADB966B64ADE] - [18/12/2024 11:16:50] - |A| - (.-.) - [32] - (0.0.0.0) - C:\winamp_metadata.idx [12/12/2019 09:19:58] - |D| - [26848706775] - C:\Windows [26/01/2020 11:37:59] - |D| - [21598833] - C:\Windows10Upgrade [MD5.B2697875405719F5096A7083EA28B67C] - [18/12/2024 21:09:44] - |A| - (.-.) - [146953352] - (0.0.0.0) - C:\wine-4.21-arm.apk [MD5.A3B7ABCF4F6F93D52C26BEFFC4FD63DF] - [13/03/2020 09:37:12] - |A| - (.-.) - [916254] - (0.0.0.0) - C:\WSA_SA_Report-Fri_2020-03-06_18-09-47.bmp [MD5.CF5AC496523D3C3A0C0F4C81DC784DE0] - [13/03/2020 09:37:13] - |A| - (.-.) - [79] - (0.0.0.0) - C:\WSA_SA_Report-Fri_2020-03-06_18-09-47.html [MD5.E805E412B98E92745154EEBC04F47476] - [18/12/2024 23:52:33] - |A| - (.-.) - [79067832] - (0.0.0.0) - C:\x-ipad-magic-platinum-fr.exe [25/02/2020 15:41:49] - |D| - [0] - C:\x7yo [MD5.EE7AAE16A5402F1FF0E2D3F825B1FD9E] - [13/03/2020 09:36:54] - |A| - (.-.) - [1351] - (0.0.0.0) - C:\Xilisoft Media Toolkit Ultimate.lnk [MD5.537251B3B37B3BDEE197F8F34FF2B9CD] - [10/03/2020 11:32:00] - |A| - (.-.) - [49] - (0.0.0.0) - C:\xoxoxo (album version).m3u [25/02/2020 15:41:49] - |D| - [47] - C:\Ygoow v2 [MD5.0D72935B59EF80B916231D7CDFDE87A3] - [10/03/2020 11:32:01] - |A| - (.-.) - [195] - (0.0.0.0) - C:\ying yang twins - wait (the whisper song) (hq dirty)[128k]__[mp3-128k].m3u [MD5.610501900A3695B751AC60C4B14EBABA] - [19/12/2024 01:29:50] - |A| - (.-.) - [16384] - (0.0.0.0) - C:\~00~~~.0x0 [MD5.D962546EB6D406992111C7DF4F0B3EB6] - [10/03/2020 11:25:35] - |A| - (.-.) - [136] - (0.0.0.0) - C:\ásgeir - king and cross (official video).m3u [MD5.D9A09F43AEEC1B3CADA69305B18FDC71] - [10/03/2020 11:25:36] - |A| - (.-.) - [77] - (0.0.0.0) - C:\ásgeir - king and cross (video).m3u [MD5.95F02B3182DF917AFAF5688AECCD3257] - [10/03/2020 11:32:01] - |A| - (.-.) - [100] - (0.0.0.0) - C:\?? ?? ?? ?? 2?.m3u ---------- | C:\WINDOWS [MD5.A486C15BA34B4C23677AA34F47CE2C0D] - [27/01/2020 14:35:08] - |A| - (.-.) - [1078] - (0.0.0.0) - C:\WINDOWS\ACU.ico [12/12/2019 16:00:17] - |D| - [1604] - C:\WINDOWS\addins [MD5.944B50D106DD9ECB52E0F5E3BD54199C] - [28/01/2020 17:23:50] - |A| - (.-.) - [2179160] - (0.0.0.0) - C:\WINDOWS\ampa.exe [MD5.41CD34F96EE48B35868DC4B3A7315525] - [08/09/2016 20:26:08] - |A| - (.-.) - [750] - (0.0.0.0) - C:\WINDOWS\ampa.ini [12/12/2019 09:33:57] - |D| - [16061599] - C:\WINDOWS\appcompat [12/12/2019 09:33:57] - |D| - [18765526] - C:\WINDOWS\apppatch [12/12/2019 09:33:57] - |D| - [0] - C:\WINDOWS\AppReadiness [12/12/2019 09:33:57] - |RSD| - [2246586577] - C:\WINDOWS\assembly [MD5.D41D8CD98F00B204E9800998ECF8427E] - [31/08/2016 15:59:37] - |A| - (.-.) - [0] - (0.0.0.0) - C:\WINDOWS\ativpsrm.bin [MD5.109A5F45347B4D4555A9589F1EE2D13D] - [12/01/2015 03:56:38] - |A| - (.-.) - [48128] - (0.0.0.0) - C:\WINDOWS\AUDBootDefrag.exe [12/12/2019 09:33:57] - |D| - [1477646] - C:\WINDOWS\bcastdvr [MD5.55F49769891E4DC7CAB3E293E1238888] - [28/01/2020 17:23:52] - |A| - (.© Microsoft Corporation. - Boot File Servicing Utility.) - [65536] - (10.0.16299.15) - C:\WINDOWS\bfsvc(1).exe [MD5.27F1FADCA0EE291FDE372EB6B45852D9] - [12/12/2019 09:24:42] - |A| - (.© Microsoft Corporation. Tous droits réservés. - Utilitaire de service de fichier de démarrage.) - [77824] - (10.0.19536.1000) - C:\WINDOWS\bfsvc.exe [12/12/2019 09:33:57] - |D| - [60866323] - C:\WINDOWS\Boot [MD5.6B9322493ECB4B6289E8575D62E5A5EE] - [27/01/2020 14:35:09] - |AS| - (.-.) - [67584] - (0.0.0.0) - C:\WINDOWS\bootstat(1).dat [MD5.C9DE49BBA8A7C3674C6A831823FB1BB8] - [30/12/2019 02:04:55] - |AS| - (.-.) - [67584] - (0.0.0.0) - C:\WINDOWS\bootstat.dat [12/12/2019 09:33:57] - |D| - [185440] - C:\WINDOWS\Branding [12/12/2019 09:33:57] - |D| - [106549] - C:\WINDOWS\BrowserCore [12/12/2019 09:19:58] - |D| - [0] - C:\WINDOWS\CbsTemp [MD5.D45FA1C1B94487D50DD06AC4628235D3] - [28/01/2020 17:23:53] - |A| - (.Copyright © 1995 - CKCONFIG MFC Application.) - [165888] - (1.0.0.1) - C:\WINDOWS\Ckconfig.exe [MD5.7A1A627BA8AC85A3C1E863664037008F] - [28/01/2020 17:23:54] - |A| - (.-.) - [11776] - (0.0.0.0) - C:\WINDOWS\Ckrfresh.exe [12/12/2019 09:33:57] - |D| - [1] - C:\WINDOWS\Containers [MD5.C6C52AF48A75DCC59644DC894D2F524E] - [12/12/2019 16:01:05] - |A| - (.-.) - [29857] - (0.0.0.0) - C:\WINDOWS\Core.xml [MD5.A155FFABF2F04265A97274CCAB44D773] - [27/01/2020 14:35:10] - |A| - (.-.) - [35138] - (0.0.0.0) - C:\WINDOWS\CoreSingleLanguage.xml [MD5.D36A0733F25F17ED36C40DB8D3A88AE1] - [22/08/2019 21:13:52] - |A| - (.-.) - [115] - (0.0.0.0) - C:\WINDOWS\Crypkey.ini [MD5.BD1868AC684B5AD6C0A2A7A1C764FA1F] - [27/01/2020 14:35:10] - |A| - (.-.) - [10] - (0.0.0.0) - C:\WINDOWS\Csup.txt [12/12/2019 09:33:57] - |D| - [23508293] - C:\WINDOWS\Cursors [MD5.2AABDB49AD062CC52957094D05B1163A] - [28/01/2020 17:23:55] - |A| - (.-.) - [1298584] - (0.0.0.0) - C:\WINDOWS\ddmmain.exe [27/01/2020 14:35:10] - |D| - [107520] - C:\WINDOWS\de-DE [12/12/2019 09:33:57] - |D| - [0] - C:\WINDOWS\debug [27/01/2020 14:35:10] - |D| - [0] - C:\WINDOWS\DeliveryOptimization [MD5.F5BD40D97C7E4E52A0ED1A2A7CA2A643] - [30/12/2019 03:15:29] - |A| - (.-.) - [102873] - (0.0.0.0) - C:\WINDOWS\diagerr.xml [12/12/2019 09:33:57] - |D| - [9799287] - C:\WINDOWS\diagnostics [12/12/2019 09:33:57] - |D| - [1672723] - C:\WINDOWS\DiagTrack [MD5.F5BD40D97C7E4E52A0ED1A2A7CA2A643] - [30/12/2019 03:15:29] - |A| - (.-.) - [102873] - (0.0.0.0) - C:\WINDOWS\diagwrn.xml [12/12/2019 15:57:55] - |D| - [0] - C:\WINDOWS\DigitalLocker [MD5.316CA3D5EA8563947DB891EB001910AB] - [31/08/2016 13:12:29] - |A| - (.-.) - [64] - (0.0.0.0) - C:\WINDOWS\dm.dmap [05/09/2019 15:21:52] - |D| - [12125356] - C:\WINDOWS\Downloaded Installations [12/12/2019 09:33:57] - |SD| - [0] - C:\WINDOWS\Downloaded Program Files [12/12/2019 09:33:57] - |D| - [179232] - C:\WINDOWS\ELAMBKUP [12/12/2019 15:57:55] - |D| - [0] - C:\WINDOWS\en-US [MD5.B4B6636235CF109DA20D28240FE11F21] - [27/01/2020 14:35:10] - |AH| - (.-.) - [3176] - (0.0.0.0) - C:\WINDOWS\EPMBatch.ept [MD5.B0C72A8C72E1DD8FFD9587D318F1C089] - [13/03/2020 17:54:46] - |A| - (.-.) - [2259] - (0.0.0.0) - C:\WINDOWS\epplauncher.mif [16/06/2019 16:15:05] - |D| - [136293475] - C:\WINDOWS\ERUNT [27/01/2020 14:35:11] - |D| - [107520] - C:\WINDOWS\es-ES [MD5.5CDE14540712838961E3B63930CE8C5D] - [28/01/2020 17:23:56] - |A| - (.© Microsoft Corporation. - Windows Explorer.) - [3904304] - (10.0.16299.637) - C:\WINDOWS\explorer(1).exe [MD5.A36E012BACCDF4DF1A3FDE4509FFD806] - [12/12/2019 09:24:55] - |A| - (.© Microsoft Corporation. Tous droits réservés. - Explorateur Windows.) - [4519840] - (10.0.19536.1000) - C:\WINDOWS\explorer.exe [MD5.04810EC57CBBDD1F047C8217B9F6C092] - [15/08/2019 18:39:14] - |A| - (.Copyright © 2003 Matt Ginzton - Flurry screen saver for Windows.) - [118845] - (1.1.1.11) - C:\WINDOWS\Flurry.scr [12/12/2019 09:33:57] - |RSD| - [733047073] - C:\WINDOWS\Fonts [12/12/2019 15:57:55] - |D| - [220160] - C:\WINDOWS\fr-FR [12/12/2019 09:33:57] - |D| - [0] - C:\WINDOWS\GameBarPresenceWriter [12/12/2019 09:33:57] - |D| - [98270809] - C:\WINDOWS\Globalization [12/12/2019 09:33:57] - |D| - [4153466] - C:\WINDOWS\Help [MD5.67422BB31C52F0E4697C2A413677E033] - [28/01/2020 17:23:57] - |A| - (.© Microsoft Corporation. - Microsoft Help and Support.) - [976896] - (10.0.16299.402) - C:\WINDOWS\HelpPane(1).exe [MD5.CBA0C75A4A3BFC5AD9753BB40E78AEAB] - [12/12/2019 09:27:38] - |A| - (.© Microsoft Corporation. Tous droits réservés. - Aide et support Microsoft.) - [1071616] - (10.0.19536.1000) - C:\WINDOWS\HelpPane.exe [MD5.620517DFE23E0DEB918F70538DF8AD67] - [28/01/2020 17:23:58] - |A| - (.© Microsoft Corporation. - Microsoft® HTML Help Executable.) - [17920] - (10.0.16299.15) - C:\WINDOWS\hh(1).exe [MD5.9F535B3F6204B99914CC33521B88AD8D] - [12/12/2019 09:27:38] - |A| - (.© Microsoft Corporation. Tous droits réservés. - Exécutable de l’aide HTML Microsoft®.) - [18432] - (10.0.19536.1000) - C:\WINDOWS\hh.exe [12/12/2019 09:33:57] - |D| - [30327] - C:\WINDOWS\IdentityCRL [12/12/2019 09:33:57] - |D| - [201883446] - C:\WINDOWS\IME [12/12/2019 09:33:57] - |RD| - [15587675] - C:\WINDOWS\ImmersiveControlPanel [12/12/2019 09:32:08] - |D| - [103162835] - C:\WINDOWS\INF [12/04/2018 01:38:21] - |D| - [0] - C:\WINDOWS\InfusedApps [12/04/2018 01:38:21] - |D| - [678] - C:\WINDOWS\InfusedApps.tmp [12/12/2019 09:33:57] - |D| - [76163589] - C:\WINDOWS\InputMethod [12/12/2019 09:33:57] - |SHD| - [1309124518] - C:\WINDOWS\Installer [MD5.E69FE1CEEE067BB19788A9E13A329A76] - [15/01/2003 11:46:24] - |A| - (.© 2001-2003 Dachshund Software -.) - [151552] - (1.5.0.1) - C:\WINDOWS\Integrator.exe [MD5.9063DD0BDA9C718115B34A510D9EE40A] - [27/03/2020 11:54:22] - |A| - (.- Setup/Uninstall.) - [1183176] - (51.1052.0.0) - C:\WINDOWS\is-UOD9U.exe [MD5.F3CA612F2977F8857359E4EC5FD660AD] - [27/03/2020 11:54:22] - |A| - (.-.) - [301] - (0.0.0.0) - C:\WINDOWS\is-UOD9U.lst [MD5.79173DA528082489A43F39CF200A7647] - [27/03/2020 11:54:22] - |A| - (.-.) - [22709] - (0.0.0.0) - C:\WINDOWS\is-UOD9U.msg [12/12/2019 09:33:57] - |D| - [203813] - C:\WINDOWS\L2Schemas [12/12/2019 09:33:57] - |D| - [0] - C:\WINDOWS\LanguageOverlayCache [12/12/2019 09:33:57] - |D| - [0] - C:\WINDOWS\LiveKernelReports [12/12/2019 09:33:57] - |D| - [10526443] - C:\WINDOWS\Logs [12/12/2019 09:33:57] - |D| - [40391610] - C:\WINDOWS\Media [MD5.23AF90D2355D8C83AA4567EF1763B467] - [27/01/2020 14:35:12] - |A| - (.-.) - [43131] - (0.0.0.0) - C:\WINDOWS\mib(1).bin [MD5.23AF90D2355D8C83AA4567EF1763B467] - [12/12/2019 09:25:03] - |A| - (.-.) - [43131] - (0.0.0.0) - C:\WINDOWS\mib.bin [12/12/2019 09:33:57] - |RD| - [1729411345] - C:\WINDOWS\Microsoft.NET [12/12/2019 09:33:57] - |D| - [7001] - C:\WINDOWS\Migration [03/02/2020 21:16:41] - |D| - [0] - C:\WINDOWS\Minidump [12/12/2019 09:33:57] - |D| - [0] - C:\WINDOWS\ModemLogs [MD5.D4EE18887818F0782C0D72F1D67AAB5E] - [28/01/2020 17:23:59] - |A| - (.(c) Samsung Electronics. - Conditional Caller.) - [1731072] - (1.0.0.1) - C:\WINDOWS\MSetCaller.exe [27/01/2020 14:35:13] - |D| - [968370] - C:\WINDOWS\MSetup [MD5.38619528CC7E41CD46A0D4D92505F296] - [12/12/2019 09:44:23] - |A| - (.© Microsoft Corporation. Tous droits réservés. - Bloc-notes.) - [203776] - (10.0.19536.1000) - C:\WINDOWS\notepad.exe [12/12/2019 15:58:54] - |D| - [199472] - C:\WINDOWS\OCR [07/04/2019 08:44:14] - |D| - [98304] - C:\WINDOWS\OEMTemp [12/12/2019 09:33:57] - |RD| - [65] - C:\WINDOWS\Offline Web Pages [12/12/2019 09:33:57] - |D| - [570024] - C:\WINDOWS\Performance [12/12/2019 09:33:57] - |D| - [1136442] - C:\WINDOWS\PLA [12/12/2019 09:33:57] - |D| - [7272284] - C:\WINDOWS\PolicyDefinitions [30/12/2019 02:26:31] - |D| - [27587941] - C:\WINDOWS\Prefetch [12/12/2019 09:33:57] - |RD| - [1742144] - C:\WINDOWS\PrintDialog [MD5.5BE009A50FCCBED5B07591EE5F1611AC] - [27/01/2020 14:34:54] - |A| - (.-.) - [35] - (0.0.0.0) - C:\WINDOWS\progress.ini [12/12/2019 09:33:57] - |D| - [9962409] - C:\WINDOWS\Provisioning [07/05/2019 20:11:30] - |D| - [151552] - C:\WINDOWS\pss [MD5.77303DB3860BF5CBE6E1E8AE2EE5276B] - [28/01/2020 17:24:00] - |A| - (.Copyright (C) Nero AG 2016 - RegDefragTask.) - [157704] - (1.0.0.462) - C:\WINDOWS\RegDefragTask.exe [MD5.14A3681D6247758B1F4880022ABEE0D7] - [28/01/2020 17:24:01] - |A| - (.© Microsoft Corporation. - Registry Editor.) - [335872] - (10.0.16299.15) - C:\WINDOWS\regedit(1).exe [MD5.0A6314AB2B085DEC948986C0D7C7AB1A] - [12/12/2019 09:27:52] - |A| - (.© Microsoft Corporation. Tous droits réservés. - Éditeur du Registre.) - [370688] - (10.0.19536.1000) - C:\WINDOWS\regedit.exe [12/12/2019 09:33:57] - |D| - [2166452] - C:\WINDOWS\Registration [12/12/2019 09:33:57] - |D| - [8590082] - C:\WINDOWS\rescache [12/12/2019 09:33:57] - |D| - [12328578] - C:\WINDOWS\Resources [27/01/2020 14:35:13] - |D| - [0] - C:\WINDOWS\RSTLog [MD5.F17FC1B9623917BAA4C9C32259240D5E] - [28/01/2020 17:24:02] - |A| - (.Copyright (C) Realtek Semiconductor Corp. - RtCRU.) - [4330712] - (1.13.0.0) - C:\WINDOWS\RtCRU64.exe [MD5.49F66188C137CEEEBDAF751041B60B79] - [28/01/2020 17:24:03] - |A| - (.Copyright (C) 2017 Realtek Semiconductor Corp. - RtlExUpd DLL for setup utility function.) - [2839488] - (1.0.7.1) - C:\WINDOWS\RtlExUpd.dll [MD5.294DF39F9DCF1DC2EB384F835661B06E] - [27/01/2020 14:35:14] - |A| - (.-.) - [6284] - (0.0.0.0) - C:\WINDOWS\Samsung.png [12/12/2019 09:33:57] - |D| - [0] - C:\WINDOWS\SchCache [12/12/2019 09:33:57] - |D| - [205799] - C:\WINDOWS\schemas [27/01/2020 14:35:14] - |D| - [149836] - C:\WINDOWS\sec [MD5.69D0E0C0848937803A2B0D73F2F0F533] - [28/01/2020 17:24:04] - |A| - (.(c) . All right reserved. - Time Sync Utility.) - [1630256] - (1.0.2.0) - C:\WINDOWS\SecTimeSync.exe [12/12/2019 09:33:57] - |D| - [8470528] - C:\WINDOWS\security [30/12/2019 02:02:29] - |D| - [56926097] - C:\WINDOWS\ServiceProfiles [12/12/2019 09:33:57] - |D| - [4096] - C:\WINDOWS\ServiceState [12/12/2019 09:19:58] - |D| - [153247469] - C:\WINDOWS\servicing [12/12/2019 09:37:38] - |D| - [67057] - C:\WINDOWS\Setup [MD5.1DC81022E7605CE5FC7BF08ACFE5FD9C] - [28/01/2020 17:24:05] - |A| - (.-.) - [18432] - (0.0.0.0) - C:\WINDOWS\Setup_ck.dll [MD5.178A4F6A92760DD8927B4B8C51E760DB] - [28/01/2020 17:24:06] - |RA| - (.-.) - [27648] - (0.0.0.0) - C:\WINDOWS\Setup_ck.exe [12/12/2019 09:33:57] - |D| - [7003136] - C:\WINDOWS\ShellComponents [12/12/2019 09:33:57] - |D| - [56707584] - C:\WINDOWS\ShellExperiences [30/10/2015 21:03:03] - |D| - [312] - C:\WINDOWS\ShellNew [12/12/2019 09:33:57] - |D| - [6141472] - C:\WINDOWS\SKB [23/05/2019 11:16:36] - |D| - [248481759] - C:\WINDOWS\SoftwareDistribution [12/12/2019 09:33:57] - |D| - [101465530] - C:\WINDOWS\Speech [12/12/2019 09:33:57] - |D| - [126236755] - C:\WINDOWS\Speech_OneCore [MD5.B3FBABDA876CFA2B4695471D5348F59F] - [28/01/2020 17:24:07] - |A| - (.© Microsoft Corporation. - Print driver host for applications.) - [130560] - (10.0.16299.15) - C:\WINDOWS\splwow64(1).exe [MD5.B80743CC4CE149C5C0905411D899998E] - [12/12/2019 09:24:52] - |A| - (.© Microsoft Corporation. - Print driver host for applications.) - [170496] - (10.0.19536.1000) - C:\WINDOWS\splwow64.exe [12/12/2019 09:33:57] - |D| - [2008877] - C:\WINDOWS\System [MD5.286A9EDB379DC3423A528B0864A0F111] - [30/10/2015 09:24:29] - |A| - (.-.) - [219] - (0.0.0.0) - C:\WINDOWS\system.ini [12/12/2019 09:19:58] - |D| - [6136141417] - C:\WINDOWS\System32 [MD5.5579E061705E1554883A1B7D12F8C7AD] - [21/05/2019 09:04:56] - |A| - (.-.) - [720] - (0.0.0.0) - C:\WINDOWS\system32RegistryCleaner.txt [12/12/2019 09:33:57] - |D| - [353791662] - C:\WINDOWS\SystemApps [12/12/2019 09:33:57] - |D| - [178865893] - C:\WINDOWS\SystemResources [12/12/2019 09:33:57] - |D| - [5829574002] - C:\WINDOWS\SysWOW64 [12/12/2019 09:33:57] - |D| - [0] - C:\WINDOWS\TAPI [30/10/2015 09:24:25] - |D| - [10958] - C:\WINDOWS\Tasks [12/12/2019 09:33:57] - |D| - [0] - C:\WINDOWS\Temp [22/09/2019 12:34:44] - |D| - [11467264] - C:\WINDOWS\TextInput [12/12/2019 09:33:57] - |D| - [0] - C:\WINDOWS\tracing [12/12/2019 09:33:57] - |D| - [15360] - C:\WINDOWS\twain_32 [MD5.F6C33A8A65C6AF007812EED398D783B2] - [28/01/2020 17:24:08] - |A| - (.- Twain_32 Source Manager (Image Acquisition Interface).) - [65536] - (1.7.1.3) - C:\WINDOWS\twain_32(1).dll [MD5.65A9224438F47EAD17D6867CF30B3ECC] - [12/12/2019 09:28:20] - |A| - (.- Gestionnaire de sources Twain_32 (Image Acquisition Interface).) - [65536] - (1.7.1.3) - C:\WINDOWS\twain_32.dll [MD5.CA2A8AF1DBAD0F31F9B33A2827DFBC16] - [21/05/2019 13:31:22] - |A| - (.-.) - [207] - (0.0.0.0) - C:\WINDOWS\tweaking.com-regbackup-DESKTOP-37KC94K-Windows-10-Home-(64-bit).dat [MD5.1E82D1F9C8DEE41B76B603F6D3D2613F] - [27/03/2020 11:53:25] - |A| - (.-.) - [36426] - (0.0.0.0) - C:\WINDOWS\unins000.dat [MD5.9063DD0BDA9C718115B34A510D9EE40A] - [27/03/2020 11:53:25] - |A| - (.- Setup/Uninstall.) - [1183176] - (51.1052.0.0) - C:\WINDOWS\unins000.exe [MD5.79173DA528082489A43F39CF200A7647] - [27/03/2020 11:54:22] - |A| - (.-.) - [22709] - (0.0.0.0) - C:\WINDOWS\unins000.msg [MD5.B38882E54F783A2C37946C27091DC8B4] - [02/09/2016 16:50:25] - |A| - (.(C) 2000-2009 Dritek System Inc. - Uninstall Application.) - [349776] - (2.1.2.2017) - C:\WINDOWS\UNINSTLMv4.EXE [27/01/2020 14:35:15] - |D| - [7946330] - C:\WINDOWS\UpdateAssistant [07/04/2019 02:46:35] - |SD| - [0] - C:\WINDOWS\UpdateAssistantV2 [MD5.8ABC2E146197097ECCF09C40B2AFB4FE] - [15/08/2019 18:39:14] - |A| - (.-.) - [499712] - (0.0.0.0) - C:\WINDOWS\uxpack.icons [MD5.7255732B7ED89086BEA8DD5C4014E57B] - [15/08/2019 18:39:14] - |A| - (.-.) - [2413056] - (0.0.0.0) - C:\WINDOWS\UxStyle_Core_Jul13_x86.msi [12/12/2019 09:33:57] - |D| - [24840] - C:\WINDOWS\Vss [MD5.98540955F498DF125A5199E1C1DFBCFD] - [07/07/2016 09:08:40] - |A| - (.-.) - [86448] - (0.0.0.0) - C:\WINDOWS\vssMgr.exe [12/12/2019 09:33:57] - |D| - [33204] - C:\WINDOWS\WaaS [12/12/2019 09:33:57] - |D| - [48078412] - C:\WINDOWS\Web [MD5.23CF8138F49416231807E6DE371FB9E6] - [30/10/2015 09:24:29] - |A| - (.-.) - [92] - (0.0.0.0) - C:\WINDOWS\win.ini [MD5.C844CA459F3B209329984772269B6E56] - [27/01/2020 14:35:15] - |RA| - (.-.) - [670] - (0.0.0.0) - C:\WINDOWS\WindowsShell(1).Manifest [MD5.C844CA459F3B209329984772269B6E56] - [12/12/2019 09:26:38] - |RA| - (.-.) - [670] - (0.0.0.0) - C:\WINDOWS\WindowsShell.Manifest [MD5.02BD03E57C66CB40AEDB7039E93E7CB0] - [28/01/2020 17:24:09] - |A| - (.© Microsoft Corporation. - Windows Winhlp32 Stub.) - [11776] - (10.0.16299.15) - C:\WINDOWS\winhlp32(1).exe [MD5.07D7F232BDC1B173FBFF868367E5E839] - [12/12/2019 09:28:20] - |A| - (.© Microsoft Corporation. Tous droits réservés. - Relais Windows Winhlp32.) - [12288] - (10.0.19536.1000) - C:\WINDOWS\winhlp32.exe [MD5.0A34066D56D57C0DA73BFFC1E4169FF2] - [25/03/2020 19:16:13] - |A| - (.-.) - [85] - (0.0.0.0) - C:\WINDOWS\wininit.ini [MD5.039AA85739CF3E0EF895BB207F9D3A5A] - [24/08/2019 05:41:18] - |A| - (.-.) - [51] - (0.0.0.0) - C:\WINDOWS\winshell.dat [12/12/2019 09:19:58] - |D| - [6558721612] - C:\WINDOWS\WinSxS [MD5.360A166B4DD11DFD897F73F5410FDEE2] - [02/09/2016 16:49:07] - |A| - (.© 2008 Microsoft Corporation. Tous droits réservés. - Écran de veille photos Windows Live.) - [307056] - (14.0.8117.416) - C:\WINDOWS\WLXPGSS.SCR [MD5.E7E4D8D7340DA6934B9EA81CBB21374C] - [27/01/2020 14:35:15] - |A| - (.-.) - [316640] - (0.0.0.0) - C:\WINDOWS\WMSysPr9(1).prx [MD5.E7E4D8D7340DA6934B9EA81CBB21374C] - [12/12/2019 09:43:51] - |A| - (.-.) - [316640] - (0.0.0.0) - C:\WINDOWS\WMSysPr9.prx [MD5.0D5D4E344F5581C954355D7164DD4BE1] - [28/01/2020 17:24:10] - |A| - (.© Microsoft Corporation. - Windows Write.) - [11264] - (10.0.16299.15) - C:\WINDOWS\write(1).exe [MD5.D1DACD9A1FF78BFDC52D4C6F11FEC14B] - [12/12/2019 15:59:11] - |A| - (.© Microsoft Corporation. - Windows Write.) - [11264] - (10.0.19536.1000) - C:\WINDOWS\write.exe [MD5.52485C93341F8504F453CC8D5543482C] - [04/04/2020 09:56:23] - |A| - (.-.) - [76567] - (0.0.0.0) - C:\WINDOWS\ZAM.krnl.trace [MD5.3A0B2FD01FC4DB8439466F4624EF94AE] - [04/04/2020 09:56:23] - |A| - (.-.) - [42219] - (0.0.0.0) - C:\WINDOWS\ZAM_Guard.krnl.trace ---------- | C:\WINDOWS\System32\GroupPolicy ---------- | Systemroot\System [10/06/2018 05:45:55] - |A| - [1384] - C:\WINDOWS\System\linjqbyk.kfl () - () [04/05/2019 09:41:43] - |A| - [935632] - C:\WINDOWS\System\Vb40016.dll (Copyright © 1987-1995 Microsoft Corp.) - (Visual Basic 4.0 runtime library) [04/05/2019 09:41:43] - |A| - [271264] - C:\WINDOWS\System\vbrun100.dll () - () [04/05/2019 09:41:43] - |A| - [356992] - C:\WINDOWS\System\vbrun200.dll (Copyright © 1987-1992 Microsoft Corp) - (Visual Basic 2.0 runtime library) [04/05/2019 09:41:43] - |A| - [398416] - C:\WINDOWS\System\Vbrun300.dll (Copyright © 1987-1993 Microsoft Corp) - (Visual Basic 3.0 runtime library) [10/09/1999 13:06:00] - |A| - [5600] - C:\WINDOWS\System\WINASPI.DLL (Copyright © 1989-1999 Adaptec, Inc.) - (ASPI for Win16 (95/NT) DLL) [10/09/1999 13:06:00] - |A| - [4672] - C:\WINDOWS\System\WOWPOST.EXE (Copyright © 1989-1999 Adaptec, Inc.) - (ASPI for Win16 (NT) Callback Helper) [03/02/2019 22:32:36] - |A| - [3878] - C:\WINDOWS\System\wpmjoaye.dwu () - () ---------- | Systemroot\Installer (Microsoft Files Whitelisted) [31/03/2020 10:47:03] - C:\WINDOWS\Installer\103f17c.msi : (Audials 2020 - Audials AG) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [05/12/2019 10:58:15] - C:\WINDOWS\Installer\1117d50.msi : (Watchdog PC Cleaner 2019 - Watchdog Development) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [11/11/2014 10:49:56] - C:\WINDOWS\Installer\114980c.msi : (Branding - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/08/2015 20:06:16] - C:\WINDOWS\Installer\1149812.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/08/2015 20:03:22] - C:\WINDOWS\Installer\1149818.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/08/2015 20:03:30] - C:\WINDOWS\Installer\114981e.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/08/2015 20:03:36] - C:\WINDOWS\Installer\1149824.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/08/2015 20:03:44] - C:\WINDOWS\Installer\114982a.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/08/2015 20:03:52] - C:\WINDOWS\Installer\1149830.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/08/2015 20:04:00] - C:\WINDOWS\Installer\1149836.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/08/2015 20:04:06] - C:\WINDOWS\Installer\114983c.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/08/2015 20:04:16] - C:\WINDOWS\Installer\1149842.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/08/2015 20:04:22] - C:\WINDOWS\Installer\1149848.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/08/2015 20:04:30] - C:\WINDOWS\Installer\114984e.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/08/2015 20:04:38] - C:\WINDOWS\Installer\1149854.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/08/2015 20:04:46] - C:\WINDOWS\Installer\114985a.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/08/2015 20:04:54] - C:\WINDOWS\Installer\1149860.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/08/2015 20:05:02] - C:\WINDOWS\Installer\1149866.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/08/2015 20:05:10] - C:\WINDOWS\Installer\114986c.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/08/2015 20:05:18] - C:\WINDOWS\Installer\1149872.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/08/2015 20:05:26] - C:\WINDOWS\Installer\1149878.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/08/2015 20:05:34] - C:\WINDOWS\Installer\114987e.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/08/2015 20:05:42] - C:\WINDOWS\Installer\1149884.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/08/2015 20:05:50] - C:\WINDOWS\Installer\114988a.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/08/2015 20:05:58] - C:\WINDOWS\Installer\1149890.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/08/2015 20:06:06] - C:\WINDOWS\Installer\1149896.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/08/2015 20:06:40] - C:\WINDOWS\Installer\114989c.msi : (Catalyst Control Center Utility 64 - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/08/2015 20:07:30] - C:\WINDOWS\Installer\11498a2.msi : (AMD Fuel - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/08/2015 20:03:12] - C:\WINDOWS\Installer\11498a8.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [15/03/2020 17:44:34] - C:\WINDOWS\Installer\12b0284.msi : (La Banque Postale - e-Carte Bleue La Banque Postale) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [15/03/2020 17:46:56] - C:\WINDOWS\Installer\12b0287.msi : (Banque Populaire - e-Carte Bleue Banque Populaire) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [02/08/2019 16:43:53] - C:\WINDOWS\Installer\16c4a55.msi : (Java SE Runtime Environment 8 Update 221 - Oracle Corporation) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [21/08/2019 09:18:02] - C:\WINDOWS\Installer\18315b4.msi : (COMODO Secure Shopping - COMODO) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [15/03/2020 18:57:55] - C:\WINDOWS\Installer\18e3d0c.msi : (Backup and Sync from Google - Google, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/12/2017 12:25:56] - C:\WINDOWS\Installer\1b6aed.msi : ( - Tweaking Technologies) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [13/03/2020 17:33:04] - C:\WINDOWS\Installer\1f996ce.msi : (Java SE Runtime Environment 8 Update 241 - Oracle Corporation) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [13/03/2020 17:34:44] - C:\WINDOWS\Installer\1f996d6.msi : (Java Auto Updater - Oracle Corporation) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [13/03/2020 17:42:07] - C:\WINDOWS\Installer\2023e5e.msi : (Google Chrome Installer - Google LLC) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [14/02/2020 14:06:08] - C:\WINDOWS\Installer\2599522.msi : (PerfectDisk Professional - Raxco Software Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/08/2015 20:06:24] - C:\WINDOWS\Installer\35795.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [06/04/2020 10:27:46] - C:\WINDOWS\Installer\3620bca.msi : (VPN Shield - Defendemus) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [17/10/2019 09:02:49] - C:\WINDOWS\Installer\3a95c0.msi : (Google Update Helper - Google Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [25/03/2020 05:14:14] - C:\WINDOWS\Installer\41576f.msi : (Google Update Helper - Google LLC) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [27/02/2020 20:14:49] - C:\WINDOWS\Installer\415770.msi : (Backup and Sync from Google - Google, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [09/03/2020 19:03:44] - C:\WINDOWS\Installer\4a883a.msi : (AntimalwareEngine - adaware) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [01/08/2019 17:47:36] - C:\WINDOWS\Installer\4ee4ffb.msi : (Remote Desktop Connection Manager - Julian Burger) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [14/08/2017 10:17:26] - C:\WINDOWS\Installer\7a9d13f.msi : (Oracle VM VirtualBox 4.3.12_ZZZZ installation package - Oracle Corporation) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [23/01/2020 13:13:39] - C:\WINDOWS\Installer\8809b18.msi : (iPhone Backup Extractor - Reincubate Ltd) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [14/02/2012 20:41:52] - C:\WINDOWS\Installer\a6fb2d7.msi : ( - ProtectStar Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [20/01/2020 16:25:11] - C:\WINDOWS\Installer\bfe62a.msi : (iPhone Backup Extractor - Reincubate Ltd) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [14/03/2020 22:06:38] - C:\WINDOWS\Installer\e4d3b8.msi : (SocialMediaBlocker Personal Edition - XenArmor) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [09/12/2019 20:16:52] - C:\WINDOWS\Installer\ebc7c2.msi : (Apple Application Support Installer - Apple Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [09/03/2020 17:50:55] - C:\WINDOWS\Installer\f3bab.msi : (Google Toolbar for Internet Explorer - Google Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [24/09/2016 04:34:40] - [49152] - (.().-. - ()) - C:\WINDOWS\Installer\10c9303.msp [24/09/2016 04:34:42] - [19398656] - (.().-. - ()) - C:\WINDOWS\Installer\10c9314.msp [05/05/2015 07:35:20] - [49152] - (.().-. - ()) - C:\WINDOWS\Installer\138133e.msp [05/05/2015 07:35:20] - [19406848] - (.().-. - ()) - C:\WINDOWS\Installer\1381350.msp [07/04/2019 14:36:01] - [53014528] - (.().-. - ()) - C:\WINDOWS\Installer\27fd30a.msp [03/09/2016 08:59:16] - [53339648] - (.().-. - ()) - C:\WINDOWS\Installer\38fae4.msp [10/02/2012 17:28:12] - [4637184] - (.().-. - ()) - C:\WINDOWS\Installer\e360cb.msp [10/02/2012 17:33:18] - [4028928] - (.().-. - ()) - C:\WINDOWS\Installer\e360d5.msp [16/05/2014 22:50:22] - [385024] - (.().-. - ()) - C:\WINDOWS\Installer\e360ef.msp [16/05/2014 22:50:24] - [2940928] - (.().-. - ()) - C:\WINDOWS\Installer\e360f9.msp [16/05/2014 22:56:14] - [184320] - (.().-. - ()) - C:\WINDOWS\Installer\e36103.msp [16/05/2014 22:56:10] - [3444736] - (.().-. - ()) - C:\WINDOWS\Installer\e36117.msp [16/05/2014 22:50:08] - [516096] - (.().-. - ()) - C:\WINDOWS\Installer\e36121.msp [16/05/2014 22:56:14] - [14839808] - (.().-. - ()) - C:\WINDOWS\Installer\e3613b.msp [16/05/2014 22:56:14] - [27779072] - (.().-. - ()) - C:\WINDOWS\Installer\e36145.msp [16/05/2014 22:50:08] - [745472] - (.().-. - ()) - C:\WINDOWS\Installer\e3614f.msp [16/05/2014 22:50:08] - [7680000] - (.().-. - ()) - C:\WINDOWS\Installer\e36159.msp [28/01/2020 00:10:25] - [5430] - C:\WINDOWS\Installer\{00C154CB-EEDD-4728-8489-962431232884}\insert_icon.EXE () - () [01/08/2019 17:55:26] - [53248] - C:\WINDOWS\Installer\{0240359E-6A4C-4884-9E94-B397A02D893C}\ARPPRODUCTICON.exe (Copyright (c) 2012 Flexera Software LLC.) - (InstallShield) [20/01/2020 18:16:15] - [88102] - C:\WINDOWS\Installer\{063E67F0-C298-8A2A-0FA6-84C15322A4E0}\ARPPRODUCTICON.exe () - () [20/01/2020 18:10:58] - [88102] - C:\WINDOWS\Installer\{07326A3E-02B3-1078-25D7-B8666BA8FE15}\ARPPRODUCTICON.exe () - () [20/01/2020 18:07:47] - [88102] - C:\WINDOWS\Installer\{085EBD0C-F24E-EB94-6D33-2A22EF64C5CF}\ARPPRODUCTICON.exe () - () [28/01/2020 00:10:25] - [5430] - C:\WINDOWS\Installer\{08B07CFF-67E5-4CE7-B465-78EB81B4C0F1}\edit_icon.EXE () - () [20/01/2020 18:05:27] - [10134] - C:\WINDOWS\Installer\{11087D24-567D-7D88-69C6-D7A08B5F4C47}\ARPPRODUCTICON.exe () - () [28/01/2020 00:10:24] - [53248] - C:\WINDOWS\Installer\{18373B57-4FC3-4B1A-95B3-A7E5DCA577F7}\ARPPRODUCTICON.exe (Copyright (c) 2014 Flexera Software LLC.) - (InstallShield) [20/01/2020 18:06:26] - [88102] - C:\WINDOWS\Installer\{1AD99E77-37CC-744E-39CA-67F6FD34565A}\ARPPRODUCTICON.exe () - () [28/01/2020 00:10:24] - [5430] - C:\WINDOWS\Installer\{1B8E8A93-E8DA-448E-8392-B6FE20B859B2}\ocr_icon.EXE () - () [20/01/2020 18:07:29] - [88102] - C:\WINDOWS\Installer\{1BB85E73-0D92-604A-0AAF-C7AAD5E3A3C6}\ARPPRODUCTICON.exe () - () [20/01/2020 18:08:47] - [88102] - C:\WINDOWS\Installer\{1E72F5D1-553E-CFF9-06A3-8C5AF507DD1C}\ARPPRODUCTICON.exe () - () [02/09/2016 16:49:07] - [132096] - C:\WINDOWS\Installer\{1EE04769-91C4-4A06-92B7-FCAFE6BABDD9}\WLXPhotoGalleryIcon.exe (© 2009 Microsoft Corporation.) - (Windows Live Photo Gallery) [28/01/2020 00:10:23] - [5430] - C:\WINDOWS\Installer\{2420E810-4D2C-47C2-8AD1-7D892319900E}\asian_icon.EXE () - () [28/01/2020 00:10:52] - [11502] - C:\WINDOWS\Installer\{2452C59D-5140-4A9A-A97F-B925390619E1}\app_icon.ico.EXE () - () [20/01/2020 18:13:21] - [88102] - C:\WINDOWS\Installer\{25ACE797-EBDA-0E4B-096F-9FE97A1E2A6F}\ARPPRODUCTICON.exe () - () [20/01/2020 18:09:26] - [88102] - C:\WINDOWS\Installer\{2D07E15C-A9A4-D8D6-D371-92EC8779E587}\ARPPRODUCTICON.exe () - () [20/01/2020 18:07:39] - [88102] - C:\WINDOWS\Installer\{350E61E5-6C2C-2F3C-3A14-7E094AB6D3A0}\ARPPRODUCTICON.exe () - () [20/01/2020 18:15:26] - [88102] - C:\WINDOWS\Installer\{35A71DED-DA81-1313-352A-EC8A0B27DF3B}\ARPPRODUCTICON.exe () - () [28/01/2020 00:10:23] - [134655] - C:\WINDOWS\Installer\{429D6E81-8E1E-42E6-8AB9-025DD9157F9B}\HFS4Win.ico.EXE () - () [28/01/2020 00:10:23] - [74840] - C:\WINDOWS\Installer\{42F25DDC-1AEF-428B-A479-ED2201B43DA6}\Icon.exe (© Slimware Utilities Holdings, Inc..) - (Icon) [02/09/2016 16:49:05] - [80395] - C:\WINDOWS\Installer\{445B183D-F4F1-45C8-B9DB-F11355CA657B}\MsblIco.Exe () - () [28/01/2020 00:10:22] - [109207] - C:\WINDOWS\Installer\{5493FC89-21E8-4D88-BCA1-4D33F1410968}\_853F67D554F05449430E7E.exe () - () [01/04/2020 14:07:48] - [99678] - C:\WINDOWS\Installer\{54D8BC39-FC50-48C0-AEF9-AB651946989C}\icon.exe () - () [01/04/2020 14:07:48] - [14534] - C:\WINDOWS\Installer\{54D8BC39-FC50-48C0-AEF9-AB651946989C}\SystemFoldermsiexec.exe () - () [28/01/2020 00:10:22] - [5430] - C:\WINDOWS\Installer\{55532D76-6906-4954-BA3F-B8B2273C1B35}\create_icon.EXE () - () [28/01/2020 00:10:22] - [102134] - C:\WINDOWS\Installer\{5A3751AC-4A67-40D1-AD46-834C78A4E97C}\main_icon.EXE () - () [09/03/2020 19:04:22] - [59352] - C:\WINDOWS\Installer\{5C7A5F94-02E9-4C5D-A594-B1F10865965A}\ARPPRODUCTICON.exe (Copyright (c) 2012 Flexera Software LLC.) - (InstallShield) [08/09/2016 16:23:03] - [58945] - C:\WINDOWS\Installer\{5DD76286-9BE7-4894-A990-E905E91AC818}\wlmail.exe () - () [28/01/2020 00:10:22] - [59664] - C:\WINDOWS\Installer\{628988B4-3FA5-4EA6-BAA3-DA640F6718BD}\ARPPRODUCTICON.exe (Copyright (c) 2014 Flexera Software LLC.) - (InstallShield) [31/08/2016 16:00:36] - [88102] - C:\WINDOWS\Installer\{64D5A142-BD50-726E-ED9E-D2508D2A17E2}\ARPPRODUCTICON.exe () - () [28/01/2020 00:10:22] - [92043] - C:\WINDOWS\Installer\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}\Bonjour.ico.EXE () - () [20/01/2020 18:07:01] - [88102] - C:\WINDOWS\Installer\{6FDCB1C3-9EDC-3CBC-473C-DD85ED5E0494}\ARPPRODUCTICON.exe () - () [15/03/2020 17:46:31] - [81120] - C:\WINDOWS\Installer\{73734A45-6D87-4624-9EE9-8CC9291FFC12}\ARPPRODUCTICON.exe (Copyright (c) 2015 Flexera Software LLC.) - (InstallShield) [15/03/2020 17:46:31] - [81120] - C:\WINDOWS\Installer\{73734A45-6D87-4624-9EE9-8CC9291FFC12}\NewShortcut11_5B3688267F2443E580FC02DCEDE93838.exe (Copyright (c) 2015 Flexera Software LLC.) - (InstallShield) [15/03/2020 17:46:31] - [81120] - C:\WINDOWS\Installer\{73734A45-6D87-4624-9EE9-8CC9291FFC12}\NewShortcut1_EC9F7D09A94D4B009FF7DE9A65D3FF1A.exe (Copyright (c) 2015 Flexera Software LLC.) - (InstallShield) [15/03/2020 17:46:31] - [56544] - C:\WINDOWS\Installer\{73734A45-6D87-4624-9EE9-8CC9291FFC12}\UNINST_Uninstall_L_9AA5BD64BC824FF7A0D9AF30EBCB48E8.exe (Copyright (c) 2015 Flexera Software LLC.) - (InstallShield) [20/01/2020 18:15:53] - [88102] - C:\WINDOWS\Installer\{79D22166-78C1-2AD4-04E7-BD22BD58FD46}\ARPPRODUCTICON.exe () - () [28/01/2020 00:10:21] - [173898] - C:\WINDOWS\Installer\{7B473CF8-CE4F-4AE1-A86D-CFBDDCC85FAF}\DriveIcon.EXE () - () [20/01/2020 18:09:55] - [88102] - C:\WINDOWS\Installer\{82CA1714-13EA-F419-91FE-12834424745E}\ARPPRODUCTICON.exe () - () [28/01/2020 00:10:21] - [372526] - C:\WINDOWS\Installer\{87A08690-781E-4A8E-8300-775A2EA02932}\icon.exe () - () [13/01/2020 19:18:49] - [10806] - C:\WINDOWS\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon.EXE () - () [20/01/2020 18:14:50] - [88102] - C:\WINDOWS\Installer\{8CBC65A3-40AB-DE65-2CB1-997ABDA8FD68}\ARPPRODUCTICON.exe () - () [20/01/2020 18:14:01] - [88102] - C:\WINDOWS\Installer\{8FFCCB27-EE2D-D58F-5ABD-ED5C06B91E81}\ARPPRODUCTICON.exe () - () [28/01/2020 00:10:21] - [5430] - C:\WINDOWS\Installer\{90464120-53C5-4104-A51E-E02DF6176B7F}\forms_icon.EXE () - () [29/08/2016 06:53:17] - [1241296] - C:\WINDOWS\Installer\{9F205E94-9E42-4486-A92A-DF3F6CB85444}\icon.exe (Copyright (C) 2011) - (EProjManager Application) [28/01/2020 00:10:20] - [27136] - C:\WINDOWS\Installer\{A3985C05-7386-411F-A4BF-32A73F37EB44}\AppleSoftwareUpdateIco.exe () - () [20/01/2020 18:11:50] - [88102] - C:\WINDOWS\Installer\{A5A6A4D0-2005-2A05-2E21-495808CF95ED}\ARPPRODUCTICON.exe () - () [20/01/2020 18:14:24] - [88102] - C:\WINDOWS\Installer\{A760847A-C4D9-E7EF-716F-07C6CBF6B147}\ARPPRODUCTICON.exe () - () [28/01/2020 00:10:20] - [5430] - C:\WINDOWS\Installer\{A8BB4258-DE7D-4AAB-834E-0BAD9648E083}\review_icon.EXE () - () [20/01/2020 18:17:39] - [88102] - C:\WINDOWS\Installer\{AF0FDA86-6E7B-1A6C-51D4-43AF50181ED2}\ARPPRODUCTICON.exe () - () [02/09/2016 16:49:07] - [61272] - C:\WINDOWS\Installer\{B3B487E7-6171-4376-9074-B28082CEB504}\IconWlc.exe (Copyright © 2008 Microsoft Corporation.) - (start phone dialer through Messenger) [20/01/2020 18:12:45] - [88102] - C:\WINDOWS\Installer\{B839153C-D4D2-F89C-5033-0A160C62706B}\ARPPRODUCTICON.exe () - () [20/01/2020 18:10:27] - [88102] - C:\WINDOWS\Installer\{C1EA3764-1138-AE27-AD63-549BAD99BA15}\ARPPRODUCTICON.exe () - () [20/01/2020 18:06:43] - [88102] - C:\WINDOWS\Installer\{C3D13AB8-468A-0174-1D06-DB9AAE8A131B}\ARPPRODUCTICON.exe () - () [15/03/2020 17:47:27] - [101592] - C:\WINDOWS\Installer\{C418F413-6D57-4AC6-862B-66B1CDDBCF92}\ARPPRODUCTICON.exe (Copyright (c) 2015 Flexera Software LLC.) - (InstallShield) [15/03/2020 17:47:27] - [101592] - C:\WINDOWS\Installer\{C418F413-6D57-4AC6-862B-66B1CDDBCF92}\BanquePopulaire.ex_02868ADF20784994AD152F7421C36E19.exe (Copyright (c) 2015 Flexera Software LLC.) - (InstallShield) [15/03/2020 17:47:27] - [101592] - C:\WINDOWS\Installer\{C418F413-6D57-4AC6-862B-66B1CDDBCF92}\BanquePopulaire.ex_42172188B4064EFA96D6CA4281812749.exe (Copyright (c) 2015 Flexera Software LLC.) - (InstallShield) [15/03/2020 17:47:27] - [56536] - C:\WINDOWS\Installer\{C418F413-6D57-4AC6-862B-66B1CDDBCF92}\UNINST_Uninstall_B_70152A80E2214C8DA276059A6ED7B279.exe (Copyright (c) 2015 Flexera Software LLC.) - (InstallShield) [31/03/2020 18:13:27] - [322877] - C:\WINDOWS\Installer\{C4E01CDC-0063-493C-B383-9C4FCF7A89F7}\ARPPRODUCTICON.exe () - () [31/03/2020 18:13:27] - [322877] - C:\WINDOWS\Installer\{C4E01CDC-0063-493C-B383-9C4FCF7A89F7}\DesktopStartPD.exe () - () [31/03/2020 18:13:27] - [364544] - C:\WINDOWS\Installer\{C4E01CDC-0063-493C-B383-9C4FCF7A89F7}\MenuStartPD.exe (Copyright (C) 2006 Macrovision Corporation) - (InstallShield) [20/01/2020 18:11:27] - [88102] - C:\WINDOWS\Installer\{CA95D57F-9FC3-0DD7-7C36-362F74D8C04E}\ARPPRODUCTICON.exe () - () [31/03/2020 11:26:06] - [432254] - C:\WINDOWS\Installer\{CC5EFF2C-EC29-430F-B2F5-7CCA1DD606FE}\GooglePasswordDecryptor.exe () - () [31/03/2020 11:26:06] - [415302] - C:\WINDOWS\Installer\{CC5EFF2C-EC29-430F-B2F5-7CCA1DD606FE}\SystemFoldermsiexec_1.exe () - () [17/10/2019 09:19:44] - [143360] - C:\WINDOWS\Installer\{CD95F661-A5C4-44F5-A6AA-ECDD91C2411D}\WinZip64_Shortcut_Desktop.exe (Copyright (c) 2016 Flexera Software LLC.) - (InstallShield) [17/10/2019 09:19:45] - [143360] - C:\WINDOWS\Installer\{CD95F661-A5C4-44F5-A6AA-ECDD91C2411D}\WinZip64_Shortcut_MenuGroup.exe (Copyright (c) 2016 Flexera Software LLC.) - (InstallShield) [17/10/2019 09:19:44] - [143360] - C:\WINDOWS\Installer\{CD95F661-A5C4-44F5-A6AA-ECDD91C2411D}\WinZip64_Shortcut_StartMenu.exe (Copyright (c) 2016 Flexera Software LLC.) - (InstallShield) [28/01/2020 00:10:19] - [370070] - C:\WINDOWS\Installer\{D1F92E87-D837-491F-A588-34EB2CD184D1}\APFS4Win.ico.EXE () - () [28/01/2020 00:10:19] - [138667] - C:\WINDOWS\Installer\{D21EED26-59C0-4315-BDCC-D682496465E9}\_853F67D554F05449430E7E.exe () - () [28/01/2020 00:10:19] - [138667] - C:\WINDOWS\Installer\{D21EED26-59C0-4315-BDCC-D682496465E9}\_C99CA1BB496FD6B48BD347.exe () - () [03/04/2020 01:09:15] - [215888] - C:\WINDOWS\Installer\{DE57204B-4E6E-44E0-814A-D3823B5F45FE}\AudialsOne_installer.exe () - () [03/04/2020 01:09:15] - [223524] - C:\WINDOWS\Installer\{DE57204B-4E6E-44E0-814A-D3823B5F45FE}\ext.exe () - () [03/04/2020 01:09:15] - [196067] - C:\WINDOWS\Installer\{DE57204B-4E6E-44E0-814A-D3823B5F45FE}\ext_1.exe () - () [03/04/2020 01:09:15] - [194829] - C:\WINDOWS\Installer\{DE57204B-4E6E-44E0-814A-D3823B5F45FE}\ext_2.exe () - () [28/01/2020 00:10:15] - [245760] - C:\WINDOWS\Installer\{E1132DE9-69DA-41FB-B385-2EC707A49FFD}\ARPPRODUCTICON.exe (Copyright (c) 2015 Flexera Software LLC.) - (InstallShield) [28/01/2020 00:10:15] - [245760] - C:\WINDOWS\Installer\{E1132DE9-69DA-41FB-B385-2EC707A49FFD}\NewShortcut11_E14F0314D97A4432A49C5F7B566ADC7B.exe (Copyright (c) 2015 Flexera Software LLC.) - (InstallShield) [28/01/2020 00:10:15] - [245760] - C:\WINDOWS\Installer\{E1132DE9-69DA-41FB-B385-2EC707A49FFD}\NewShortcut12_324DA38AC43D47D5B3BEDB29F73E8AC0.exe (Copyright (c) 2015 Flexera Software LLC.) - (InstallShield) [28/01/2020 00:10:15] - [245760] - C:\WINDOWS\Installer\{E1132DE9-69DA-41FB-B385-2EC707A49FFD}\NewShortcut1_CE11F1A5002843F9AE3CCAF91F21D1C5.exe (Copyright (c) 2015 Flexera Software LLC.) - (InstallShield) [20/01/2020 18:16:33] - [4846] - C:\WINDOWS\Installer\{E7366CA8-7179-77AE-E712-BA18D70A0A07}\ARPPRODUCTICON.exe () - () [20/01/2020 18:12:22] - [88102] - C:\WINDOWS\Installer\{E817E580-6318-AFC8-2102-322C73117EC4}\ARPPRODUCTICON.exe () - () [20/01/2020 18:07:19] - [88102] - C:\WINDOWS\Installer\{F77474EE-EB6C-C87B-88AF-3310C848E068}\ARPPRODUCTICON.exe () - () [20/01/2020 18:06:53] - [88102] - C:\WINDOWS\Installer\{F8DDBE95-DCBE-03B5-5359-DE3601146E21}\ARPPRODUCTICON.exe () - () [28/01/2020 00:10:15] - [5430] - C:\WINDOWS\Installer\{FAB0C3DD-2CC1-4871-9527-CAD511D03EA3}\convert_icon.EXE () - () [28/01/2020 00:10:15] - [5430] - C:\WINDOWS\Installer\{FF06B7E1-95A7-493C-8C69-B6CCB977FFEA}\secure_icon.EXE () - () ---------- | %System%\*.in* [12/12/2019 09:27:44] - [3329] - C:\WINDOWS\System32\ieuinit.inf [23/10/2012 04:05:36] - [29494] - C:\WINDOWS\System32\lvcoin64.ini [30/12/2019 02:42:46] - [2004882] - C:\WINDOWS\System32\PerfStringBackup.INI [23/01/2020 10:52:48] - [57] - C:\WINDOWS\System32\setupepmdrv.ini [12/12/2019 09:26:34] - [60124] - C:\WINDOWS\System32\tcpmon.ini [12/12/2019 09:26:01] - [2404] - C:\WINDOWS\System32\WimBootCompress.ini [14/04/2019 00:30:18] - [36] - C:\WINDOWS\Syswow64\Error.ini [28/01/2020 05:17:24] - [3329] - C:\WINDOWS\Syswow64\ieuinit(1)(1).inf [27/01/2020 15:14:16] - [3329] - C:\WINDOWS\Syswow64\ieuinit(1).inf [12/12/2019 09:28:20] - [3329] - C:\WINDOWS\Syswow64\ieuinit.inf [27/01/2020 16:28:10] - [29494] - C:\WINDOWS\Syswow64\lvcoin64.ini [27/08/2002 00:42:18] - [1199] - C:\WINDOWS\Syswow64\panadv.inf [27/01/2020 16:07:08] - [1889170] - C:\WINDOWS\Syswow64\PerfStringBackup.INI [27/01/2020 16:28:50] - [60124] - C:\WINDOWS\Syswow64\tcpmon.ini [12/12/2019 09:27:05] - [2404] - C:\WINDOWS\Syswow64\WimBootCompress.ini ---------- | Listing no Microsoft signed files (Not necessary Malwares) | system32 | Syswow64 | General scan [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [0 Ko] - C:\WINDOWS\AppPatch\Custom\Custom64 [MD5.46B3D982A88E64F3CB983A4A7D0C43BC] - |A| - [04/04/2020 10:24:14] - (.-.) - [52 Ko] - (0.0.0.0) - C:\WINDOWS\PSS\boot.backup [MD5.695C95FB76F3F2437F98F29071DD1BF2] - |ASH| - [23/05/2019 11:13:55] - (.-.) - [96 Ko] - (0.0.0.0) - C:\WINDOWS\PSS\boot.backup.LOG [MD5.D41D8CD98F00B204E9800998ECF8427E] - |ASH| - [07/05/2019 20:11:30] - (.-.) - [0 Ko] - (0.0.0.0) - C:\WINDOWS\PSS\boot.backup.LOG1 [MD5.D41D8CD98F00B204E9800998ECF8427E] - |ASH| - [07/05/2019 20:11:30] - (.-.) - [0 Ko] - (0.0.0.0) - C:\WINDOWS\PSS\boot.backup.LOG2 [MD5.00000000000000000000000000000000] - |D| - [06/04/2020 20:07:43] - [0 Ko] - C:\WINDOWS\Temp\tmp00004892 [MD5.00000000000000000000000000000000] - |D| - [07/04/2020 00:15:29] - [0 Ko] - C:\WINDOWS\Temp\tmp00006e87 [MD5.537D7328E51DD29D1F8FC6F526781486] - |A| - [15/02/2020 09:38:16] - (.-.) - [5.22 Ko] - (0.0.0.0) - C:\WINDOWS\System32\.crusader [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 15:57:56] - [0 Ko] - C:\WINDOWS\System32\0409 [MD5.00000000000000000000000000000000] - |D| - [07/09/2016 01:46:15] - [328.34 Ko] - C:\WINDOWS\System32\1033 [MD5.C652A5EA6545C98CE71684018E0640E7] - |A| - [12/12/2019 09:25:05] - (.-.) - [3.1 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@AdvancedKeySettingsNotification.png [MD5.D6F8DD9F561B8A67FFAC2BAD7E989770] - |A| - [12/12/2019 09:26:00] - (.-.) - [0.23 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@AppHelpToast.png [MD5.82C37C3E27020AF6C2E018E944284676] - |A| - [12/12/2019 09:26:01] - (.-.) - [0.3 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@AudioToastIcon.png [MD5.8E4B25CC8E98F63DBD54176DFAB539E0] - |A| - [12/12/2019 09:25:09] - (.-.) - [0.44 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@BackgroundAccessToastIcon.png [MD5.3937359E324E15F6A7A7092D4DAEBD64] - |A| - [12/12/2019 09:26:09] - (.-.) - [0.19 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@bitlockertoastimage.png [MD5.495C1F072039B434827A5FE0D9761E4D] - |A| - [12/12/2019 09:26:09] - (.-.) - [0.32 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@EnrollmentToastIcon.png [MD5.C2A332DE50FE519DA21AFB8BD6E134F4] - |A| - [12/12/2019 09:26:20] - (.-.) - [0.55 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@language_notification_icon.png [MD5.A119D69B4C29845D3F8CE2E5638C8E65] - |A| - [12/12/2019 09:27:52] - (.-.) - [0.47 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@optionalfeatures.png [MD5.A3437673F5766635A8378F67645B81C0] - |A| - [12/12/2019 09:27:37] - (.-.) - [0.35 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@StorageSenseToastIcon.png [MD5.1622DE67156496C78D6B7BE9B471645B] - |A| - [12/12/2019 09:26:34] - (.-.) - [0.39 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@VpnToastIcon.png [MD5.79166EAF65485F1432DD72B72870026B] - |A| - [12/12/2019 09:27:26] - (.-.) - [190.86 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@windows-hello-V4.1.gif [MD5.13EF2C8D799F7B6E9D8E3D6BACB9C779] - |A| - [12/12/2019 09:27:26] - (.-.) - [0.7 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@WindowsHelloFaceToastIcon.png [MD5.F553B252FEC3134D4F5303D9B25298B3] - |A| - [12/12/2019 09:25:45] - (.-.) - [0.51 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@WindowsUpdateToastIcon.contrast-black.png [MD5.DAD405CBDE259DE527EBF71BCC28099C] - |A| - [12/12/2019 09:25:45] - (.-.) - [0.79 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@WindowsUpdateToastIcon.contrast-white.png [MD5.F553B252FEC3134D4F5303D9B25298B3] - |A| - [12/12/2019 09:25:45] - (.-.) - [0.51 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@WindowsUpdateToastIcon.png [MD5.DB71001FC261F6685BE410527DAE3942] - |A| - [12/12/2019 09:25:05] - (.-.) - [0.67 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@WirelessDisplayToast.png [MD5.147B047B46B79A91CC34499D4F89119E] - |A| - [12/12/2019 09:26:32] - (.-.) - [0.39 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@WLOGO_48x48.png [MD5.21FA138B2FDDDCD34DC74FA66BBB1A1A] - |A| - [26/07/2019 10:03:18] - (.Copyright (c) 2002-2013 by Alexander Vigovsky - ac3filter.) - [2179 Ko] - (2.6.0.0) - C:\WINDOWS\System32\ac3filter.acm [MD5.31A16C523B62500F83C82217F056A538] - |A| - [12/12/2019 09:25:45] - (.-.) - [8.13 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ActiveHours.png [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [2768.78 Ko] - C:\WINDOWS\System32\AdvancedInstallers [MD5.6003F30BCB5034157E457D69B5ECCAF3] - |A| - [12/12/2019 09:24:40] - (.-.) - [13 Ko] - (0.0.0.0) - C:\WINDOWS\System32\agentactivationruntimestarter.exe [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [5.97 Ko] - C:\WINDOWS\System32\am-et [MD5.D03124A92936B3B1D38AC31D9B5582F8] - |A| - [03/04/2020 01:02:14] - (.-.) - [49.92 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ambakdrv.sys [MD5.4B10D8998C824DD84AD597F9E058F6F0] - |A| - [30/07/2015 21:58:04] - (.-.) - [171.53 Ko] - (0.0.0.0) - C:\WINDOWS\System32\amde31a.dat [MD5.20D02093FDAE925192D03D00E822FA05] - |A| - [20/01/2020 17:47:39] - (.-.) - [232.02 Ko] - (0.0.0.0) - C:\WINDOWS\System32\amdgfxinfo64.dll [MD5.AF1928F5E15921A29877C2E18626F80E] - |A| - [21/10/2015 02:14:42] - (.-.) - [139.98 Ko] - (0.0.0.0) - C:\WINDOWS\System32\amdhdl64.dll [MD5.3138CAE93E07531AED348AA5E0F44E59] - |A| - [20/01/2020 17:46:22] - (.-.) - [822.27 Ko] - (0.0.0.0) - C:\WINDOWS\System32\amdicdxx.dat [MD5.82CAB4EAF1E1CBA85AE5DEBB4C068EE2] - |A| - [21/10/2015 02:14:42] - (.Advanced Micro Devices, Inc. Copyright (C) 2015 - LiquidVR SDK 1.0.) - [616.48 Ko] - (1.0.3.8) - C:\WINDOWS\System32\amdlvr64.dll [MD5.99DCE7F71521AFD4D9275C7924DFC649] - |A| - [20/01/2020 17:47:45] - (.Copyright (C) 2013 AMD Inc. - Mantle driver, support for SI family and above.) - [6205.52 Ko] - (9.1.10.77) - C:\WINDOWS\System32\amdmantle64.dll [MD5.3960C946E67311C9831550AEDC649C3A] - |A| - [21/10/2015 02:14:54] - (.-.) - [460.27 Ko] - (0.0.0.0) - C:\WINDOWS\System32\amdmiracast.dll [MD5.180E8545784CDFDD14647AF8AFE14BD5] - |A| - [20/01/2020 17:47:48] - (.Copyright (c) 2013 Advanced Micro Devices, Inc. - Radeon MMOCL Universal Driver.) - [58.02 Ko] - (1.6.0.0) - C:\WINDOWS\System32\amdmmcl6.dll [MD5.F9165EE5B68C6DB3EBF5AE50A9F203FA] - |A| - [20/01/2020 17:47:55] - (.Copyright (C) 2011 Advanced Micro Devices Inc. - AMD COMPILER OpenCL 1.1 Compiler.) - [26899.02 Ko] - (0.8.0.0) - C:\WINDOWS\System32\amdocl12cl64.dll [MD5.2AB66430E863E4D2FDAB0139F0B162F3] - |A| - [20/01/2020 17:47:59] - (.Copyright (C) 2011 Advanced Micro Devices Inc. - AMD Accelerated Parallel Processing OpenCL 2.0 Runtime.) - [46673.52 Ko] - (10.0.1800.12) - C:\WINDOWS\System32\amdocl64.dll [MD5.C21212C706FA633BDDDC566726BB3965] - |A| - [20/01/2020 17:46:44] - (.-.) - [1168.04 Ko] - (0.0.0.0) - C:\WINDOWS\System32\amdocl_as64.exe [MD5.E9C4DA5CD1A3F954EF8EE698DCC494A2] - |A| - [20/01/2020 17:46:45] - (.-.) - [1045.54 Ko] - (0.0.0.0) - C:\WINDOWS\System32\amdocl_ld64.exe [MD5.E2D08A56561D5ABF824773FA59900341] - |A| - [20/01/2020 17:48:18] - (.Copyright (c) 2009 Advanced Micro Devices, Inc. - Radeon PCOM Universal Driver.) - [116.94 Ko] - (8.14.10.23) - C:\WINDOWS\System32\amdpcom64.dll [MD5.3053E4BB0120A51D2F0B5490A61F3426] - |A| - [20/01/2020 17:48:04] - (.Copyright (C) 2010 - amdverag Dynamic Link Library.) - [60.52 Ko] - (1.446.693.611) - C:\WINDOWS\System32\amdverag.dll [MD5.98B78382C46541F2FFBFFB4CB3C709A2] - |A| - [03/04/2020 01:02:14] - (.-.) - [167.92 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ammntdrv.sys [MD5.766A3BC550C16070DE4AC86C5599FC8D] - |A| - [08/09/2016 16:15:01] - (.-.) - [11.96 Ko] - (0.0.0.0) - C:\WINDOWS\System32\amreg.sys [MD5.301167E69BDE24CE24FB53376C422B3B] - |A| - [03/04/2020 01:02:14] - (.-.) - [37.42 Ko] - (0.0.0.0) - C:\WINDOWS\System32\amwrtdrv.sys [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [0 Ko] - C:\WINDOWS\System32\AppLocker [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [2744.9 Ko] - C:\WINDOWS\System32\appraiser [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [355.5 Ko] - C:\WINDOWS\System32\ar-SA [MD5.AC8F8609EE201BEB479590D307F69E8D] - |A| - [12/12/2019 09:27:28] - (.Copyright (c) libarchive authors - Windows-internal libarchive library.) - [614 Ko] - (3.3.2.0) - C:\WINDOWS\System32\archiveint.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\as-IN [MD5.42FE37B90A47609B7A362660BCA5F3C4] - |A| - [24/01/2020 18:00:40] - (.Copyright (c) 2019 AVAST Software - Avast Antivirus start-up scanner.) - [347.38 Ko] - (19.8.4793.0) - C:\WINDOWS\System32\aswBoot.exe [MD5.6159D566B662DB96DA549F03F578B9C9] - |A| - [20/01/2020 17:48:09] - (.Copyright (C) 2008-2014 Advanced Micro Devices, Inc. - ADL.) - [1228.52 Ko] - (7.15.20.1301) - C:\WINDOWS\System32\atiadlxx.dll [MD5.72498D619EAC8545E23F39CD5A580E22] - |A| - [20/01/2020 17:46:15] - (.-.) - [648.28 Ko] - (0.0.0.0) - C:\WINDOWS\System32\atiapfxx.blb [MD5.2EB4629207D134DB601741290311EFA6] - |A| - [20/01/2020 17:46:46] - (.Copyright (C) 2009 Advanced Micro Devices, Inc. - atiapfxx Application.) - [385.02 Ko] - (6.14.10.1001) - C:\WINDOWS\System32\atiapfxx.exe [MD5.CB62BD8995E8B38D2FDD10AAF835273E] - |A| - [20/01/2020 17:48:10] - (.Copyright (C) 2008 Advanced Micro Devices Inc. - ATI CAL compiler runtime.) - [63.02 Ko] - (6.14.10.1848) - C:\WINDOWS\System32\aticalcl64.dll [MD5.425AA99062CCD692534246FA4DEEF530] - |A| - [20/01/2020 17:48:13] - (.Copyright (C) 2008 Advanced Micro Devices Inc. - ATI CAL DD.) - [15357.02 Ko] - (6.14.10.1848) - C:\WINDOWS\System32\aticaldd64.dll [MD5.A0D556582CA9A5C35E1B81DE5240CC1B] - |A| - [20/01/2020 17:48:14] - (.Copyright (C) 2008 Advanced Micro Devices Inc. - ATI CAL runtime.) - [69.52 Ko] - (6.14.10.1848) - C:\WINDOWS\System32\aticalrt64.dll [MD5.2844B0A64A74CDCE78707ED9AB6CF57B] - |A| - [20/01/2020 17:48:15] - (.Copyright (C) 1998-2012 AMD Inc. - aticfx64.dll.) - [1435.37 Ko] - (8.17.10.1404) - C:\WINDOWS\System32\aticfx64.dll [MD5.B3214D74FFBFA98A97E28311CAA098E2] - |A| - [20/01/2020 17:48:15] - (.2002-2012 - Graphics DEM.) - [440.52 Ko] - (4.5.5786.39459) - C:\WINDOWS\System32\atidemgy.dll [MD5.340EAFEB6B84991ECD281F0D101D5A22] - |A| - [20/01/2020 17:48:17] - (.Copyright (C) 1998-2011 AMD Inc. - atidxx64.dll.) - [11002.17 Ko] - (8.17.10.625) - C:\WINDOWS\System32\atidxx64.dll [MD5.83D7A3D0E526508E6A04B6B708204AC7] - |A| - [20/01/2020 17:46:46] - (.-.) - [214.02 Ko] - (0.0.0.0) - C:\WINDOWS\System32\atieah64.exe [MD5.01625EB8FA13D3047D7C75F26D97D47E] - |A| - [20/01/2020 17:46:46] - (.Copyright © 2008-2009 AMD - AMD External Events Client Module.) - [688.02 Ko] - (6.14.11.1199) - C:\WINDOWS\System32\atieclxx.exe [MD5.9A306200F2F54FAEB423CCAAA76260EC] - |A| - [20/01/2020 17:46:47] - (.Copyright © 2008-2009 AMD - AMD External Events Service Module.) - [298.02 Ko] - (6.14.11.1199) - C:\WINDOWS\System32\atiesrxx.exe [MD5.DE33904CD846F6F2C356BB941736E81A] - |A| - [20/01/2020 17:48:17] - (.Copyright (C) 2007 Advanced Micro Devices, Inc. - atiglpxx.dll.) - [111.52 Ko] - (8.14.1.6463) - C:\WINDOWS\System32\atig6pxx.dll [MD5.43F017A5BFC8A8BA3FEE5F8C9CC7831B] - |A| - [20/01/2020 17:48:17] - (.Copyright (C) 2007 Advanced Micro Devices, Inc. - atigktxx.dll.) - [189.02 Ko] - (8.14.1.6463) - C:\WINDOWS\System32\atig6txx.dll [MD5.9B5C3A4C12E618920C46BF08B4E03D61] - |A| - [20/01/2020 17:48:18] - (.Copyright (C) 2007 Advanced Micro Devices, Inc. - atiglpxx.dll.) - [97.02 Ko] - (8.14.1.6463) - C:\WINDOWS\System32\atiglpxx.dll [MD5.079EFFD5BECB418FE6596229B28D7324] - |A| - [06/11/2014 10:53:26] - (.-.) - [720.13 Ko] - (0.0.0.0) - C:\WINDOWS\System32\atiicdxx.dat [MD5.E2D08A56561D5ABF824773FA59900341] - |A| - [20/01/2020 17:48:18] - (.Copyright (c) 2009 Advanced Micro Devices, Inc. - Radeon PCOM Universal Driver.) - [116.94 Ko] - (8.14.10.23) - C:\WINDOWS\System32\atimpc64.dll [MD5.3CAE153A7A756FC3B1F7E6497D306B31] - |A| - [20/01/2020 17:48:19] - (.Copyright ? 2009 AMD - Multi-language DPPE DLL.) - [37.52 Ko] - (6.14.10.1002) - C:\WINDOWS\System32\atimuixx.dll [MD5.24DA8DEA5A2FAE8BD604D39C0A339D0C] - |A| - [20/01/2020 17:48:19] - (.Copyright (C) 1998-2011 Advanced Micro Devices, Inc. - AMD OpenGL driver.) - [29838.52 Ko] - (6.14.10.13411) - C:\WINDOWS\System32\atio6axx.dll [MD5.60A04A833EE77A8336413B7E32313FB5] - |A| - [20/01/2020 17:46:48] - (.Copyright (C) 2008 - ATIODCLI Application.) - [58.52 Ko] - (1.0.0.1) - C:\WINDOWS\System32\ATIODCLI.exe [MD5.75CE82D0D42120A3D75FA519A15B14B5] - |A| - [20/01/2020 17:46:48] - (.Copyright (C) 2008 - ATIODE Application.) - [333.52 Ko] - (1.0.0.1) - C:\WINDOWS\System32\ATIODE.exe [MD5.4BFDB7D9345E72B30A885292BD32B9A6] - |A| - [20/01/2020 17:48:25] - (.Copy Right © 2012 Advanced Micro Devices, Inc - TMM Clone Control Module.) - [195.02 Ko] - (6.14.11.25) - C:\WINDOWS\System32\atitmm64.dll [MD5.B1BDE64FC1391179DA320933B1AA2FA3] - |A| - [20/01/2020 17:48:25] - (.Copyright (C) 2007 Advanced Micro Devices, Inc. - atiu9pag.dll.) - [156.02 Ko] - (8.14.1.6463) - C:\WINDOWS\System32\atiu9p64.dll [MD5.F97E4FE1A44353E389F3C126D136AB70] - |A| - [20/01/2020 17:48:26] - (.Copyright (C) 1998-2011 AMD Inc. - atiumd64.dll.) - [8501.52 Ko] - (9.14.10.1128) - C:\WINDOWS\System32\atiumd64.dll [MD5.F7FB0F39B2BC57AD63E812660326D3F7] - |A| - [20/01/2020 17:46:15] - (.-.) - [3357.06 Ko] - (0.0.0.0) - C:\WINDOWS\System32\atiumd6a.cap [MD5.9FE90CFD08A49A9EEB4F8E056DB59690] - |A| - [20/01/2020 17:48:26] - (.Copyright (c) 2009 Advanced Micro Devices, Inc. - Radeon Video Acceleration Universal Driver.) - [8701.83 Ko] - (8.14.10.513) - C:\WINDOWS\System32\atiumd6a.dll [MD5.112AFC90FCC0B1584B161E264426A530] - |A| - [20/01/2020 17:48:29] - (.Copyright (C) 2007 Advanced Micro Devices, Inc. - atiuxpag.dll.) - [172.7 Ko] - (8.14.1.6463) - C:\WINDOWS\System32\atiuxp64.dll [MD5.EFA5E3D55F1CC185BC690B7D79D015A9] - |A| - [24/07/2015 21:44:06] - (.-.) - [98.45 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ativce02.dat [MD5.B974290EEE645249EE212FF62DD0824A] - |A| - [30/07/2015 22:00:06] - (.-.) - [173.19 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ativce03.dat [MD5.5EBC73A78E5903E7CE6F6B25E4A6BE8F] - |A| - [29/05/2015 01:00:42] - (.-.) - [228.93 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ativvaxy_cik.dat [MD5.C55D2CBC17AAE1FBAC9135E7C31A4D31] - |A| - [29/05/2015 00:58:32] - (.-.) - [227.3 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ativvaxy_cik_nd.dat [MD5.0770A5AB5218E6D3134A7A7239B9A216] - |A| - [29/05/2015 01:21:32] - (.-.) - [249.81 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ativvaxy_cz_nd.dat [MD5.A81F68A0D3387A06182EFA3880D3F0BD] - |A| - [29/05/2015 01:17:24] - (.-.) - [245 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ativvaxy_FJ.dat [MD5.7EE8F6853798F7A900DB15F3054A0277] - |A| - [29/05/2015 01:15:12] - (.-.) - [243.25 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ativvaxy_FJ_nd.dat [MD5.11355CAC5334C8999211C09CAAE194EF] - |A| - [29/05/2015 01:10:58] - (.-.) - [315.3 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ativvaxy_vi.dat [MD5.3544D6AF6E0C9783C2CF6FA9CE42D520] - |A| - [29/05/2015 01:08:18] - (.-.) - [313.67 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ativvaxy_vi_nd.dat [MD5.4F1F22EF604DE04ED2BCA4C5916BF9E0] - |A| - [20/01/2020 17:46:23] - (.-.) - [20.3 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ativvsnl.dat [MD5.CFBA17101E04BBCDA5E50CC8A92CEBB0] - |A| - [20/01/2020 17:46:23] - (.-.) - [0.02 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ativvsny.dat [MD5.7C163EDE63854539828F5B2C1BC529FD] - |A| - [22/08/2015 01:54:10] - (.-.) - [153.46 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ativvsva.dat [MD5.219D7091DD1D93728392337FE9C7ADD6] - |A| - [22/08/2015 01:54:10] - (.-.) - [200.15 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ativvsvl.dat [MD5.C03F0062C0749CDB59A4D60862C3E83E] - |A| - [12/12/2019 09:24:42] - (.-.) - [134.86 Ko] - (0.0.0.0) - C:\WINDOWS\System32\AverageRoom.bin [MD5.651AC39DA640A3A28A94F3A8A74D92E8] - |A| - [31/03/2020 12:18:17] - (.Copyright (C) 2020 AVG Technologies CZ, s.r.o. - AVG Internet Security System start-up scanner.) - [359.46 Ko] - (20.1.5069.0) - C:\WINDOWS\System32\avgBoot.exe [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\az-Latn-AZ [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\be-BY [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [348 Ko] - C:\WINDOWS\System32\bg-BG [MD5.705628497C0012302212A46ADD463E6E] - |A| - [12/12/2019 09:24:32] - (.-.) - [8.3 Ko] - (0.0.0.0) - C:\WINDOWS\System32\BluetoothPairingSystemToastIcon.contrast-black.png [MD5.F63C615733A3337BF2BEA96C6EE9B568] - |A| - [12/12/2019 09:24:32] - (.-.) - [8.53 Ko] - (0.0.0.0) - C:\WINDOWS\System32\BluetoothPairingSystemToastIcon.contrast-high.png [MD5.705628497C0012302212A46ADD463E6E] - |A| - [12/12/2019 09:24:32] - (.-.) - [8.3 Ko] - (0.0.0.0) - C:\WINDOWS\System32\BluetoothPairingSystemToastIcon.contrast-white.png [MD5.DAF1DCB4AEE839A1965F4CC160C49A53] - |A| - [12/12/2019 09:24:32] - (.-.) - [8.34 Ko] - (0.0.0.0) - C:\WINDOWS\System32\BluetoothPairingSystemToastIcon.png [MD5.28ECA83D7F9D10D69E969675D1FF6725] - |A| - [12/12/2019 09:24:32] - (.-.) - [1.29 Ko] - (0.0.0.0) - C:\WINDOWS\System32\BluetoothSystemToastIcon.contrast-white.png [MD5.A620186FF1CDE4EE117FC4CAD648B9CC] - |A| - [12/12/2019 09:24:32] - (.-.) - [1.2 Ko] - (0.0.0.0) - C:\WINDOWS\System32\BluetoothSystemToastIcon.png [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\bn-BD [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\bn-IN [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [6018.41 Ko] - C:\WINDOWS\System32\Boot [MD5.5614386D4CFDF9E56F355C45BEEBC976] - |A| - [15/02/2020 09:38:15] - (.Copyright © 2010 SurfRight B.V. - Hitman Pro 3.5 BootDelete.) - [12.57 Ko] - (1.1.0.335) - C:\WINDOWS\System32\bootdelete.exe [MD5.50FC3682A35D3257076247D601DE8DF5] - |A| - [23/01/2020 10:52:43] - (.-.) - [5203.66 Ko] - (0.0.0.0) - C:\WINDOWS\System32\BootMan.exe [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\bs-Latn-BA [MD5.C4F59EA6A42EC92FC0D683D84BD25350] - |A| - [12/12/2019 09:26:01] - (.Copyright (C) 2008 - Gestionnaire de contexte pour réseau personnel Bluetooth.) - [184.5 Ko] - (1.0.0.1) - C:\WINDOWS\System32\BthpanContextHandler.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [0.1 Ko] - C:\WINDOWS\System32\Bthprops [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\ca-ES [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\ca-ES-valencia [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:19:58] - [130449.86 Ko] - C:\WINDOWS\System32\CatRoot [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [188211.47 Ko] - C:\WINDOWS\System32\catroot2 [MD5.A526341D6FC12DA1B623C26C0552FAD1] - |A| - [09/03/2020 23:24:12] - (.Copyright (C) 2017-2018, Callback Technologies, Inc. - Message definitions for event logging (no code).) - [10.3 Ko] - (1.0.1.366) - C:\WINDOWS\System32\cbfsconnectevtmsg.dll [MD5.C8BACD7A30FC57E14A393F967E15C30C] - |A| - [09/03/2020 23:24:20] - (.Copyright (c) 2017-2020, Callback Technologies, Inc. - CBFS Connect Mount Notifier.) - [184.8 Ko] - (2017.0.24.71) - C:\WINDOWS\System32\cbfsconnectMntNtf2017.dll [MD5.77470B9E13FE5F47FF164234E04985A6] - |A| - [09/03/2020 23:24:19] - (.Copyright (c) 2017-2020, Callback Technologies, Inc. - CBFS Connect Network Redirector.) - [263.8 Ko] - (2017.0.24.66) - C:\WINDOWS\System32\cbfsconnectNetRdr2017.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\chr-CHER-US [MD5.2263727032E9B19231A706046B8C82D3] - |A| - [22/08/2019 21:13:49] - (.-.) - [27.99 Ko] - (0.0.0.0) - C:\WINDOWS\System32\Ckldrv.sys [MD5.00000000000000000000000000000000] - |D| - [09/05/2019 16:41:19] - [1377.98 Ko] - C:\WINDOWS\System32\CleanLog [MD5.917E2783C189303B26DEABEB8F733B74] - |A| - [20/01/2020 17:47:35] - (.-.) - [238.02 Ko] - (0.0.0.0) - C:\WINDOWS\System32\clinfo.exe [MD5.BC859716522518B12257FF175C18D5C0] - |A| - [17/10/2019 10:49:10] - (.2005-2018 COMODO. - COMODO Internet Security.) - [46.49 Ko] - (12.1.0.6914) - C:\WINDOWS\System32\cmdcsr.dll [MD5.B340DD232771980C38884EE99B191051] - |A| - [01/04/2020 16:13:17] - (.2005-2019 COMODO. - COMODO Secure Shopping.) - [333.23 Ko] - (1.4.50284.159) - C:\WINDOWS\System32\cmdkbdcss64.dll [MD5.A8B8098909B69E8210AC045F78EAC998] - |A| - [17/10/2019 10:39:54] - (.2005-2018 COMODO. - COMODO Internet Security.) - [498.95 Ko] - (12.1.0.6914) - C:\WINDOWS\System32\cmdvrt64.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [18.3 Ko] - C:\WINDOWS\System32\CodeIntegrity [MD5.C4C69804BFCD40496BAF22F81F72FA3D] - |A| - [20/01/2020 17:48:29] - (.AMD. - CoInstaller DLL.) - [853.02 Ko] - (1.0.5.9) - C:\WINDOWS\System32\coinst_15.20.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [368.5 Ko] - C:\WINDOWS\System32\Com [MD5.535884123FABC2C15AA7DEC9834B55D4] - |A| - [12/12/2019 09:24:32] - (.-.) - [0.67 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ComputerToastIcon.contrast-white.png [MD5.89F92266DFC6F93961DFFBB2D6C61A15] - |A| - [12/12/2019 09:24:32] - (.-.) - [0.38 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ComputerToastIcon.png [MD5.DFBB2BB2DFFD86F6FFEFBB6FED63723A] - |A| - [07/12/2019 08:46:55] - (.2013 © Real Sound Lab SIA, iSoft Solutions - CONEQ™ Media Suite APO GUI Library.) - [119.35 Ko] - (1.0.0.4) - C:\WINDOWS\System32\CONEQMSAPOGUILibrary.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:19:58] - [461875.86 Ko] - C:\WINDOWS\System32\config [MD5.00000000000000000000000000000000] - |SD| - [12/12/2019 09:33:57] - [53.11 Ko] - C:\WINDOWS\System32\Configuration [MD5.E98AFBDBB5008ED4F2023E960BA96299] - |A| - [12/12/2019 09:25:32] - (.-.) - [231.78 Ko] - (0.0.0.0) - C:\WINDOWS\System32\containerdevicemanagement.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [0.69 Ko] - C:\WINDOWS\System32\ContainerSettingsProviders [MD5.23995E976B593F7D57DC65CC83DB1B9B] - |A| - [12/12/2019 09:24:42] - (.-.) - [280.5 Ko] - (0.0.0.0) - C:\WINDOWS\System32\CoreMas.dll [MD5.133F82B6391F3390BECFA429C23FB2BE] - |A| - [22/08/2019 21:13:49] - (.Copyright © 2000 - CrypKey License Service.) - [120 Ko] - (1.1.0.2) - C:\WINDOWS\System32\Crypserv.exe [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [406 Ko] - C:\WINDOWS\System32\cs-CZ [MD5.0861DD5714AE84CAA7087957C64251B2] - |A| - [01/04/2020 16:13:40] - (.2005-2019 COMODO. - COMODO Secure Shopping.) - [443.96 Ko] - (1.4.50284.159) - C:\WINDOWS\System32\cssguard64.dll [MD5.1C3645EBDDBE2DA6A32A5F9FB43A3C23] - |A| - [12/12/2019 09:27:28] - (.© 1996 - 2017 Daniel Stenberg, . - The curl executable.) - [411.5 Ko] - (7.55.1.0) - C:\WINDOWS\System32\curl.exe [MD5.074BF7CCDCE132C5648AD1D7623BF99E] - |A| - [08/09/2016 14:59:03] - (.©Conexant Systems Inc. - Conexant APO.) - [1564.41 Ko] - (1.31.0.0) - C:\WINDOWS\System32\CX64APO.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\cy-GB [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [408.5 Ko] - C:\WINDOWS\System32\da-DK [MD5.830B9554066917A67CADF3BDE942A341] - |A| - [12/12/2019 09:24:59] - (.-.) - [146.5 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DataStoreCacheDumpTool.exe [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [271.02 Ko] - C:\WINDOWS\System32\DDFs [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [456 Ko] - C:\WINDOWS\System32\de-DE [MD5.6C2C2119620536315B5F2A9FFE4ACDF9] - |A| - [13/04/2019 08:49:21] - (.-.) - [2.13 Ko] - (0.0.0.0) - C:\WINDOWS\System32\debug.log [MD5.C1684AACAAD62889ACFCA988AA46562D] - |A| - [12/12/2019 09:25:09] - (.-.) - [28.83 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DefaultAccountTile.png [MD5.618BA9E529EAB7E11DBA43469481835F] - |A| - [12/12/2019 09:24:42] - (.-.) - [4128.04 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DefaultHrtfs.bin [MD5.664AA698FC0106A2B075A641E8DC6302] - |A| - [12/12/2019 09:31:46] - (.-.) - [0.84 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DefaultQuestions.json [MD5.041A7B079E9776721847031A7CF533E1] - |A| - [12/12/2019 09:27:27] - (.-.) - [15.97 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DeliveryOptimizationMIProv.mof [MD5.59D5500F74109D59522F5A9457B8D9A2] - |A| - [12/12/2019 09:27:27] - (.-.) - [0.89 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DeliveryOptimizationMIProvUninstall.mof [MD5.09FA55C58AA94DA4EE611B10229DD547] - |A| - [12/12/2019 09:26:09] - (.-.) - [35 Ko] - (0.0.0.0) - C:\WINDOWS\System32\deploymentcsphelper.exe [MD5.851A9305E14B348CA0D9C7FB75391FDB] - |A| - [12/12/2019 09:25:45] - (.-.) - [272.34 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DesktopKeepOnToastImg.gif [MD5.4A6FA3C0EFD237F104E09A22883D9388] - |A| - [12/12/2019 09:25:54] - (.-.) - [3.85 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DetailedReading-Default.xml [MD5.B227DF8720C51EE0A80CB23CCCEF1EC6] - |A| - [23/10/2012 04:17:38] - (.-.) - [328.35 Ko] - (13.80.853.0) - C:\WINDOWS\System32\DevManagerCore.dll [MD5.00000000000000000000000000000000] - |SD| - [12/12/2019 09:33:57] - [897.5 Ko] - C:\WINDOWS\System32\DiagSvcs [MD5.037DF43BCC9F9A4DF6548FED8F4503AF] - |A| - [12/12/2019 09:25:38] - (.-.) - [82.96 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DiskSnapshot.conf [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [9918.53 Ko] - C:\WINDOWS\System32\Dism [MD5.6AB2B935BF38EB13CFCB9506223FD6E7] - |A| - [12/12/2019 09:24:32] - (.-.) - [0.59 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DisplaySystemToastIcon.contrast-white.png [MD5.FF004E0B30E5E4EC747B3D8EF6E3B89E] - |A| - [12/12/2019 09:24:32] - (.-.) - [0.34 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DisplaySystemToastIcon.png [MD5.D28B65E67BEC1E5690BE7185EEB3ED81] - |A| - [01/08/2019 15:56:15] - (.-.) - [0.02 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DNT.txt [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [1972.08 Ko] - C:\WINDOWS\System32\downlevel [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:21] - [190580.17 Ko] - C:\WINDOWS\System32\drivers [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [0 Ko] - C:\WINDOWS\System32\DriverState [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:19:58] - [1472568.09 Ko] - C:\WINDOWS\System32\DriverStore [MD5.4D858BDB2636D9035DE3ADB28D3E3DB9] - |A| - [12/12/2019 09:27:27] - (.-.) - [7.02 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DrtmAuthTxt.wim [MD5.00000000000000000000000000000000] - |D| - [13/05/2019 09:29:59] - [324.56 Ko] - C:\WINDOWS\System32\DRVSTORE [MD5.00000000000000000000000000000000] - |SD| - [12/12/2019 09:33:57] - [161.5 Ko] - C:\WINDOWS\System32\dsc [MD5.6A64621D54ADE63FC836BFA3FDD5AC98] - |A| - [12/12/2019 09:26:01] - (.-.) - [2210.5 Ko] - (0.0.0.0) - C:\WINDOWS\System32\dwmscene.dll [MD5.DF84EB7B44D1414284BA384F0061D1DC] - |A| - [12/12/2019 09:24:42] - (.-.) - [728.08 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DynamicLong.bin [MD5.346870077DFD18867A9693C7A59AA3E6] - |A| - [12/12/2019 09:24:42] - (.-.) - [503.08 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DynamicMedium.bin [MD5.2BEC13D68312ADE8C0065D8BCC146D2F] - |A| - [12/12/2019 09:24:42] - (.-.) - [315.58 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DynamicShort.bin [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [461 Ko] - C:\WINDOWS\System32\el-GR [MD5.DDA5F58B2C735CAE078920C9B83348F7] - |A| - [31/08/2016 16:16:44] - (.-.) - [22.66 Ko] - (0.0.0.0) - C:\WINDOWS\System32\emptyregdb.dat [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 15:57:56] - [0 Ko] - C:\WINDOWS\System32\en [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [326 Ko] - C:\WINDOWS\System32\en-GB [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [1739.03 Ko] - C:\WINDOWS\System32\en-US [MD5.E2E6482D9AD2F895C4CDF79F1E5B7284] - |A| - [12/12/2019 09:25:54] - (.-.) - [149.5 Ko] - (0.0.0.0) - C:\WINDOWS\System32\EoAExperiences.exe [MD5.940654288036686DF81AD1B1AC52FEA1] - |A| - [23/01/2020 10:52:47] - (.-.) - [35.43 Ko] - (0.0.0.0) - C:\WINDOWS\System32\epmntdrv.sys [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [436.5 Ko] - C:\WINDOWS\System32\es-ES [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [361.5 Ko] - C:\WINDOWS\System32\es-MX [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [320 Ko] - C:\WINDOWS\System32\et-EE [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\eu-ES [MD5.8015403C6C2595E5F36B22ACC1394521] - |A| - [23/01/2020 10:52:46] - (.-.) - [18.16 Ko] - (0.0.0.0) - C:\WINDOWS\System32\EuEpmGdi.dll [MD5.BAC5074667751F72A9CE48CDC31BAC48] - |A| - [18/04/2019 19:54:41] - (.Copyright (C) 2007 SEIKO EPSON CORP. - E_GCINST.) - [10.5 Ko] - (1.0.0.6) - C:\WINDOWS\System32\E_GCINST.DLL [MD5.8159960E8BA20F1C4A4EBCF0DAEC60E5] - |A| - [18/04/2019 19:54:39] - (.Copyright (C) SEIKO EPSON CORPORATION 2005-2010. - ECBTEGB AMD64.) - [82 Ko] - (3.3.0.0) - C:\WINDOWS\System32\E_ID4BLPE.DLL [MD5.2E21840342850A8A7F28D28D6DD3A1CD] - |A| - [18/04/2019 19:54:39] - (.Copyright (C) SEIKO EPSON CORPORATION 2005-2013. - EPSON Bi-directional Monitor AMD64.) - [175.5 Ko] - (4.4.0.0) - C:\WINDOWS\System32\E_ILMBLPE.DLL [MD5.00000000000000000000000000000000] - |SD| - [12/12/2019 09:33:57] - [17155.14 Ko] - C:\WINDOWS\System32\F12 [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\fa-IR [MD5.4DED57BD7ACB9B0EBBE82034EC44645A] - |A| - [12/12/2019 09:25:51] - (.-.) - [43.22 Ko] - (0.0.0.0) - C:\WINDOWS\System32\FeatureToastBulldogImg.png [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [7.11 Ko] - C:\WINDOWS\System32\ff-Adlm-SN [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [414 Ko] - C:\WINDOWS\System32\fi-FI [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\fil-PH [MD5.17197AAA9EC6882A548A9C45CA665052] - |A| - [31/03/2020 18:21:58] - (.-.) - [274.8 Ko] - (0.0.0.0) - C:\WINDOWS\System32\FNTCACHE.DAT [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 15:57:56] - [3404.5 Ko] - C:\WINDOWS\System32\fr [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [371.5 Ko] - C:\WINDOWS\System32\fr-CA [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [45892.8 Ko] - C:\WINDOWS\System32\fr-FR [MD5.156FA6623EFB304192AE290BFDBA4715] - |A| - [12/12/2019 09:27:54] - (.-.) - [690 Ko] - (0.0.0.0) - C:\WINDOWS\System32\FsNVSDeviceSource.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 16:00:17] - [0 Ko] - C:\WINDOWS\System32\FxsTmp [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\ga-IE [MD5.41FD64AE28A0C932CA7B2A250993D675] - |A| - [12/12/2019 09:24:32] - (.-.) - [1.45 Ko] - (0.0.0.0) - C:\WINDOWS\System32\GameSystemToastIcon.contrast-white.png [MD5.6DC77FD8B062264AF1C6DA325ABB7010] - |A| - [12/12/2019 09:24:32] - (.-.) - [1.11 Ko] - (0.0.0.0) - C:\WINDOWS\System32\GameSystemToastIcon.png [MD5.2E6AF4D5BF6E31E728F409984C3045D4] - |A| - [12/12/2019 09:27:57] - (.-.) - [86.7 Ko] - (0.0.0.0) - C:\WINDOWS\System32\gatherNetworkInfo.vbs [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\gd-GB [MD5.D41D8CD98F00B204E9800998ECF8427E] - |A| - [07/12/2017 08:03:13] - (.-.) - [0 Ko] - (0.0.0.0) - C:\WINDOWS\System32\GfxValDisplayLog.bin [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\gl-ES [MD5.00000000000000000000000000000000] - |D| - [30/10/2015 09:24:25] - [0 Ko] - C:\WINDOWS\System32\GroupPolicy [MD5.00000000000000000000000000000000] - |D| - [30/10/2015 09:24:25] - [0 Ko] - C:\WINDOWS\System32\GroupPolicyUsers [MD5.BBAFA0A9EABE70C58063BD1220265BDE] - |A| - [13/07/2019 10:54:33] - (.Copyright (C) 2017 - GeneStor co-installer.) - [150.85 Ko] - (4.5.1.9) - C:\WINDOWS\System32\GSCoinst.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\gu-IN [MD5.E25F612F01FA78AB6F4341D502C99452] - |A| - [17/10/2019 10:49:00] - (.2005-2018 COMODO. - COMODO Internet Security.) - [954.9 Ko] - (12.1.0.6914) - C:\WINDOWS\System32\guard64.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\ha-Latn-NG [MD5.EA99A87E98D995DE6E280CF85CEAD413] - |A| - [12/12/2019 09:24:32] - (.-.) - [1.21 Ko] - (0.0.0.0) - C:\WINDOWS\System32\HandwritingSystemToastIcon.contrast-white.png [MD5.B8E586ED92DB703FFA480E254996160E] - |A| - [12/12/2019 09:24:32] - (.-.) - [0.89 Ko] - (0.0.0.0) - C:\WINDOWS\System32\HandwritingSystemToastIcon.png [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [329.5 Ko] - C:\WINDOWS\System32\he-IL [MD5.6E9E9D56B192B2995493E529CFF2BBFE] - |A| - [12/12/2019 09:24:32] - (.-.) - [1.43 Ko] - (0.0.0.0) - C:\WINDOWS\System32\HeadphoneSystemToastIcon.contrast-white.png [MD5.7F1E9502267F778F3A8139C35A352190] - |A| - [12/12/2019 09:24:32] - (.-.) - [1.09 Ko] - (0.0.0.0) - C:\WINDOWS\System32\HeadphoneSystemToastIcon.png [MD5.202A07E4526B050E22624328E64E0470] - |A| - [12/12/2019 09:24:32] - (.-.) - [1.52 Ko] - (0.0.0.0) - C:\WINDOWS\System32\HeadsetSystemToastIcon.contrast-white.png [MD5.1892ACC10CAC009BCAC146AD650ABA58] - |A| - [12/12/2019 09:24:32] - (.-.) - [1.17 Ko] - (0.0.0.0) - C:\WINDOWS\System32\HeadsetSystemToastIcon.png [MD5.031713BFD5F30E63336D3CA5D2767BE9] - |A| - [12/12/2019 09:24:32] - (.-.) - [1.79 Ko] - (0.0.0.0) - C:\WINDOWS\System32\HealthSystemToastIcon.contrast-white.png [MD5.C1BD7976C99830E33A713D02374054EC] - |A| - [12/12/2019 09:24:32] - (.-.) - [1.62 Ko] - (0.0.0.0) - C:\WINDOWS\System32\HealthSystemToastIcon.png [MD5.C273EE6C15B9C3AD1712EC9F15DBCAE3] - |A| - [12/12/2019 09:25:24] - (.-.) - [319 Ko] - (0.0.0.0) - C:\WINDOWS\System32\HeatCore.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\hi-IN [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [337.5 Ko] - C:\WINDOWS\System32\hr-HR [MD5.538CAFD66ACD247DABFADEA64C9B67D8] - |A| - [20/01/2020 17:48:31] - (.-.) - [157.52 Ko] - (0.0.0.0) - C:\WINDOWS\System32\hsa-thunk64.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [414 Ko] - C:\WINDOWS\System32\hu-HU [MD5.72C23AE4D8D56D9CA0D666ED80223DD8] - |A| - [12/12/2019 09:28:07] - (.-.) - [41.28 Ko] - (0.0.0.0) - C:\WINDOWS\System32\HvSocket.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\hy-AM [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 16:00:45] - [149.55 Ko] - C:\WINDOWS\System32\Hydrogen [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [5.36 Ko] - C:\WINDOWS\System32\ias [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [36.27 Ko] - C:\WINDOWS\System32\icsxml [MD5.2D3F2A6F196B61ECD7A414B9D5C631ED] - |RA| - [12/12/2019 09:25:31] - (.Copyright (C) 2016 and later: Unicode, Inc. and others. License & terms of use: http://www.unicode.org/copyright.html - ICU Combined Library.) - [2238.5 Ko] - (64.2.0.0) - C:\WINDOWS\System32\icu.dll [MD5.8487436DDAB30187D71B977DEEE80BAC] - |RA| - [12/12/2019 09:25:31] - (.Copyright (C) 2016 and later: Unicode, Inc. and others. License & terms of use: http://www.unicode.org/copyright.html - ICU I18N Forwarder DLL.) - [24.5 Ko] - (64.2.0.0) - C:\WINDOWS\System32\icuin.dll [MD5.66C365C160599D54C5953953621DE774] - |RA| - [12/12/2019 09:25:31] - (.Copyright (C) 2016 and later: Unicode, Inc. and others. License & terms of use: http://www.unicode.org/copyright.html - ICU Common Forwarder DLL.) - [29 Ko] - (64.2.0.0) - C:\WINDOWS\System32\icuuc.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\id-ID [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\ig-NG [MD5.6B2625F32172A793165C9D3233693381] - |A| - [12/12/2019 09:24:33] - (.-.) - [182 Ko] - (0.0.0.0) - C:\WINDOWS\System32\IHDS.dll [MD5.7D06C40DA380CCF56E21D3FB6287607F] - |A| - [13/03/2020 17:53:58] - (.Copyright © 2004-2018 Olof Lagerkvist. - Control Panel Applet for the ImDisk Virtual Disk Driver.) - [130.83 Ko] - (2.0.10.59) - C:\WINDOWS\System32\imdisk.cpl [MD5.75804BD78F491923441DB54E5B083A17] - |A| - [13/03/2020 17:53:58] - (.Copyright © 2004-2018 Olof Lagerkvist. - Control program for the ImDisk Virtual Disk Driver.) - [52.12 Ko] - (2.0.10.49) - C:\WINDOWS\System32\imdisk.exe [MD5.4D7A7E9D9E9E45EE64F7151449C2DA8A] - |A| - [13/03/2020 17:53:58] - (.Copyright © 2005-2018 Olof Lagerkvist. - ImDisk Virtual Disk Driver helper service.) - [30.8 Ko] - (2.0.10.24) - C:\WINDOWS\System32\imdsksvc.exe [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [26884.67 Ko] - C:\WINDOWS\System32\IME [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [0 Ko] - C:\WINDOWS\System32\inetsrv [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [6899 Ko] - C:\WINDOWS\System32\InputMethod [MD5.8DE9AE82152650C178BF1E24014E8503] - |A| - [12/12/2019 09:24:32] - (.-.) - [1.25 Ko] - (0.0.0.0) - C:\WINDOWS\System32\InputSystemToastIcon.contrast-white.png [MD5.0B9FBD6F3ED617CD36D042D3422F1C2B] - |A| - [12/12/2019 09:24:32] - (.-.) - [0.9 Ko] - (0.0.0.0) - C:\WINDOWS\System32\InputSystemToastIcon.png [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [0 Ko] - C:\WINDOWS\System32\Ipmi [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\is-IS [MD5.809642A2A3B54E3026AABA7A65BCEA1E] - |A| - [09/04/2019 09:58:11] - (.2005-2019 COMODO. - Internet Security Essentials.) - [248.48 Ko] - (1.6.13835.185) - C:\WINDOWS\System32\iseguard64.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [437 Ko] - C:\WINDOWS\System32\it-IT [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [326.84 Ko] - C:\WINDOWS\System32\ja-jp [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\ka-GE [MD5.23AC7515B6D8A794BCC01B582F044078] - |A| - [12/12/2019 09:24:32] - (.-.) - [0.82 Ko] - (0.0.0.0) - C:\WINDOWS\System32\KeyboardSystemToastIcon.contrast-white.png [MD5.3DF873E16CCEA9B42857FB5FA085CB00] - |A| - [12/12/2019 09:24:32] - (.-.) - [0.51 Ko] - (0.0.0.0) - C:\WINDOWS\System32\KeyboardSystemToastIcon.png [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [4924.44 Ko] - C:\WINDOWS\System32\Keywords [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\kk-KZ [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\km-KH [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\kn-IN [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [298 Ko] - C:\WINDOWS\System32\ko-KR [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\kok-IN [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\ku-Arab-IQ [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\ky-KG [MD5.9451D4436E2EA67EB33FCC764E4AABED] - |A| - [12/12/2019 09:25:45] - (.-.) - [186.29 Ko] - (0.0.0.0) - C:\WINDOWS\System32\LaptopPlugInToastImg.gif [MD5.F0CC83E1BA7E24F9B3292160C28AECD7] - |A| - [12/12/2019 09:24:42] - (.-.) - [145.56 Ko] - (0.0.0.0) - C:\WINDOWS\System32\LargeRoom.bin [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\lb-LU [MD5.157FB82D7141B18624FF2D42190C97E1] - |A| - [12/12/2019 16:00:11] - (.-.) - [1572 Ko] - (2.6.5.1) - C:\WINDOWS\System32\libcrypto.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [625.17 Ko] - C:\WINDOWS\System32\Licenses [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\lo-LA [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [97086.34 Ko] - C:\WINDOWS\System32\LogFiles [MD5.B65E8E52916A527F88486875EE291AA8] - |A| - [23/10/2012 04:17:38] - (.-.) - [10663.85 Ko] - (13.80.853.0) - C:\WINDOWS\System32\LogiDPP.dll [MD5.24764C249F769991079F6D4B14B822AF] - |A| - [23/10/2012 04:17:38] - (.-.) - [100.85 Ko] - (13.80.853.0) - C:\WINDOWS\System32\LogiDPPApp.exe [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [335.5 Ko] - C:\WINDOWS\System32\lt-LT [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [333.5 Ko] - C:\WINDOWS\System32\lv-LV [MD5.4D4248F6D008D86D5575EE5B154971AE] - |A| - [23/10/2012 04:13:10] - (.(c) 1996-2012 Logitech. - Logitech Co-Installer.) - [256.28 Ko] - (13.80.853.0) - C:\WINDOWS\System32\lvco1380853.dll [MD5.FF510CF2A7FA73192E7DB06D7C311799] - |A| - [23/10/2012 04:13:10] - (.(c) 1996-2012 Logitech. - Video Codec.) - [171.28 Ko] - (13.80.853.0) - C:\WINDOWS\System32\lvcod64.dll [MD5.1A8AE8A66B6C289046276453768EF270] - |A| - [23/10/2012 04:05:36] - (.-.) - [28.8 Ko] - (0.0.0.0) - C:\WINDOWS\System32\lvcoin64.ini [MD5.8E808089A19469D2DFA1E2323962CE34] - |A| - [06/04/2019 13:28:18] - (.-.) - [25.91 Ko] - (0.0.0.0) - C:\WINDOWS\System32\lvcoinst.log [MD5.B4CD287DFAA6578AC763A3800F0C2DC8] - |A| - [23/10/2012 04:13:10] - (.(c) 1996-2012 Logitech. - Logitech Camera Property Pages.) - [750.28 Ko] - (13.80.853.0) - C:\WINDOWS\System32\LVUI64.dll [MD5.CCFDDF84B42198B0AAD27D11ACFD254E] - |A| - [23/10/2012 04:13:10] - (.(c) 1996-2012 Logitech. - Logitech Camera Property Pages.) - [547.28 Ko] - (13.80.853.0) - C:\WINDOWS\System32\LVUIRC64.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [30125.3 Ko] - C:\WINDOWS\System32\Macromed [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 15:59:01] - [32.68 Ko] - C:\WINDOWS\System32\MailContactsCalendarSync [MD5.FCB9790369B8F3690D766D010A2BCD44] - |A| - [20/01/2020 17:48:32] - (.Copyright (C) 2013 AMD Inc. - Mantle loader.) - [147.52 Ko] - (9.1.10.77) - C:\WINDOWS\System32\mantle64.dll [MD5.113AE370945F0D12C0CA65BC02706DA5] - |A| - [20/01/2020 17:48:32] - (.Copyright (C) 2013 AMD Inc. - Mantle extension library.) - [115.02 Ko] - (9.1.10.77) - C:\WINDOWS\System32\mantleaxl64.dll [MD5.2339F0159A1D0387814588435D48892C] - |A| - [12/12/2019 09:26:41] - (.-.) - [1012.5 Ko] - (0.0.0.0) - C:\WINDOWS\System32\MBR2GPT.EXE [MD5.F23EB28468FC8B62AF941308EC30387F] - |A| - [12/12/2019 09:24:32] - (.-.) - [1.25 Ko] - (0.0.0.0) - C:\WINDOWS\System32\MediaSystemToastIcon.contrast-white.png [MD5.6E27512E38D598E0A60F8E5ADCF032CD] - |A| - [12/12/2019 09:24:32] - (.-.) - [0.83 Ko] - (0.0.0.0) - C:\WINDOWS\System32\MediaSystemToastIcon.png [MD5.69D04DE701CF1E8CE69C65D1671D2B3F] - |A| - [12/12/2019 09:24:42] - (.-.) - [107.46 Ko] - (0.0.0.0) - C:\WINDOWS\System32\MediumRoom.bin [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\mi-NZ [MD5.00000000000000000000000000000000] - |D| - [30/12/2019 02:02:29] - [1110.45 Ko] - C:\WINDOWS\System32\Microsoft [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [5595.95 Ko] - C:\WINDOWS\System32\migration [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [45352.92 Ko] - C:\WINDOWS\System32\migwiz [MD5.08749DCC252AE1148E3BEA32B3FFFBFC] - |A| - [12/12/2019 09:28:46] - (.-.) - [0.11 Ko] - (0.0.0.0) - C:\WINDOWS\System32\MixedRealityRuntime.json [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\mk-MK [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\ml-IN [MD5.C8BF077B236ED2803347BD95DE29BF68] - |A| - [12/12/2019 09:31:46] - (.-.) - [3.03 Ko] - (0.0.0.0) - C:\WINDOWS\System32\mmc.exe.config [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\mn-MN [MD5.B43E43FFFDD0F06A6925C7C89594042B] - |A| - [12/12/2019 09:24:32] - (.-.) - [1.35 Ko] - (0.0.0.0) - C:\WINDOWS\System32\MouseSystemToastIcon.contrast-white.png [MD5.5D2F0D3E50BF1129D260AC1405FF2A18] - |A| - [12/12/2019 09:24:32] - (.-.) - [1.06 Ko] - (0.0.0.0) - C:\WINDOWS\System32\MouseSystemToastIcon.png [MD5.00000000000000000000000000000000] - |D| - [16/03/2020 04:16:32] - [42.22 Ko] - C:\WINDOWS\System32\MpEngineStore [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\mr-IN [MD5.00000000000000000000000000000000] - |D| - [31/08/2016 13:06:40] - [221.68 Ko] - C:\WINDOWS\System32\MRT [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\ms-MY [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [45.5 Ko] - C:\WINDOWS\System32\MSDRM [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 01:38:21] - [4532.28 Ko] - C:\WINDOWS\System32\MsDtc [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\mt-MT [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [19.16 Ko] - C:\WINDOWS\System32\MUI [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [45.64 Ko] - C:\WINDOWS\System32\my-mm [MD5.4615FA4BA082F6BBD4EA23DAEAB1EF9B] - |A| - [12/12/2019 09:26:00] - (.-.) - [29.95 Ko] - (0.0.0.0) - C:\WINDOWS\System32\NarratorControlTemplates.xml [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [404 Ko] - C:\WINDOWS\System32\nb-NO [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [384 Ko] - C:\WINDOWS\System32\NDF [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\ne-NP [MD5.A6056795DE05372A470BA8D93B2372C9] - |A| - [31/08/2016 15:57:43] - (.-.) - [161.17 Ko] - (0.0.0.0) - C:\WINDOWS\System32\NetSetupMig.log [MD5.C146E873B22C3B300B21A859FE66C27A] - |A| - [12/12/2019 09:27:54] - (.-.) - [21.15 Ko] - (0.0.0.0) - C:\WINDOWS\System32\NetTrace.PLA.Diagnostics.xml [MD5.D24E5363284332119630EF62E207C000] - |A| - [12/12/2019 09:27:54] - (.-.) - [76.5 Ko] - (0.0.0.0) - C:\WINDOWS\System32\nettraceex.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [51 Ko] - C:\WINDOWS\System32\networklist [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [431.5 Ko] - C:\WINDOWS\System32\nl-NL [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\nn-NO [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\nso-ZA [MD5.00000000000000000000000000000000] - |SD| - [12/12/2019 09:33:57] - [3781.5 Ko] - C:\WINDOWS\System32\Nui [MD5.6976E3F18E775B704AB7887323ABC4B5] - |A| - [12/12/2019 16:00:45] - (.-.) - [19.86 Ko] - (0.0.0.0) - C:\WINDOWS\System32\OEMDefaultAssociations.xml [MD5.F3DC097E834C1A11F2BEDFD429C644A9] - |A| - [12/12/2019 09:25:45] - (.-.) - [0.41 Ko] - (0.0.0.0) - C:\WINDOWS\System32\OkDone_80.contrast-black.png [MD5.BFE1CCA08FEFC8A3422F7DA615567D75] - |A| - [12/12/2019 09:25:45] - (.-.) - [0.43 Ko] - (0.0.0.0) - C:\WINDOWS\System32\OkDone_80.contrast-white.png [MD5.F3DC097E834C1A11F2BEDFD429C644A9] - |A| - [12/12/2019 09:25:45] - (.-.) - [0.41 Ko] - (0.0.0.0) - C:\WINDOWS\System32\OkDone_80.png [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [25915.75 Ko] - C:\WINDOWS\System32\oobe [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 16:00:11] - [3554.5 Ko] - C:\WINDOWS\System32\OpenSSH [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\or-IN [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [3.81 Ko] - C:\WINDOWS\System32\osa-Osge-001 [MD5.459FB33AA2114A28C5932FEAA115B072] - |A| - [12/12/2019 09:24:42] - (.-.) - [45.82 Ko] - (0.0.0.0) - C:\WINDOWS\System32\OutdoorAudioEnvironment.bin [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\pa-Arab-PK [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\pa-IN [MD5.9909F37A0AC6D4C7B0307D9CCCB89A9E] - |A| - [18/02/2020 17:37:31] - (.-.) - [22.22 Ko] - (0.0.0.0) - C:\WINDOWS\System32\PCloudBroom64.exe [MD5.1DF05F5872A134EA0C3281520EB92615] - |A| - [14/02/2020 14:04:58] - (.Copyright (C) 2020 Raxco Software Inc. - PerfectDisk Boot Time Defragmentation.) - [264.14 Ko] - (14.0.895.0) - C:\WINDOWS\System32\PDBoot.exe [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [1736.33 Ko] - C:\WINDOWS\System32\PerceptionSimulation [MD5.D5838B059D5B0633748B34345F155107] - |A| - [12/12/2019 09:36:39] - (.-.) - [178.51 Ko] - (0.0.0.0) - C:\WINDOWS\System32\perfc009.dat [MD5.5AD116A4CB277710C650B1461A159340] - |A| - [12/12/2019 15:57:58] - (.-.) - [163.79 Ko] - (0.0.0.0) - C:\WINDOWS\System32\perfc00C.dat [MD5.1E60BC5E525063B96078DF17FBD3C4E1] - |A| - [12/12/2019 09:36:39] - (.-.) - [32.64 Ko] - (0.0.0.0) - C:\WINDOWS\System32\perfd009.dat [MD5.9F9AF8517189B0D61B2615007E071084] - |A| - [12/12/2019 15:57:58] - (.-.) - [39.74 Ko] - (0.0.0.0) - C:\WINDOWS\System32\perfd00C.dat [MD5.230B49817EBA84BF38047CDBB720A84E] - |A| - [12/12/2019 09:36:39] - (.-.) - [784.44 Ko] - (0.0.0.0) - C:\WINDOWS\System32\perfh009.dat [MD5.2D1112DCDCC311C65DC7C20023E8A4D7] - |A| - [12/12/2019 15:57:58] - (.-.) - [831.1 Ko] - (0.0.0.0) - C:\WINDOWS\System32\perfh00C.dat [MD5.E28589327898F09F38491CFFB1104817] - |A| - [30/12/2019 02:42:46] - (.-.) - [1957.89 Ko] - (0.0.0.0) - C:\WINDOWS\System32\PerfStringBackup.INI [MD5.79D34E3B62076D4C875C748F5BE71ECA] - |A| - [12/12/2019 09:24:33] - (.-.) - [2.21 Ko] - (0.0.0.0) - C:\WINDOWS\System32\PhoneSystemToastIcon.contrast-white.png [MD5.4D9495349D00D9AD907F227FF51F289F] - |A| - [12/12/2019 09:24:33] - (.-.) - [1.92 Ko] - (0.0.0.0) - C:\WINDOWS\System32\PhoneSystemToastIcon.png [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [430.5 Ko] - C:\WINDOWS\System32\pl-PL [MD5.54E4F432DE2F1D635F3C1F1431C28E76] - |A| - [12/12/2019 09:26:32] - (.-.) - [258.5 Ko] - (0.0.0.0) - C:\WINDOWS\System32\pnpdiag.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [424 Ko] - C:\WINDOWS\System32\PointOfService [MD5.9206EB7F57AAA3172602A12274E9A0A3] - |A| - [12/12/2019 09:25:25] - (.-.) - [44 Ko] - (0.0.0.0) - C:\WINDOWS\System32\pospaymentsworker.exe [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 15:57:56] - [420.74 Ko] - C:\WINDOWS\System32\Printing_Admin_Scripts [MD5.5A52C85491493E305709AFAE8802A61E] - |A| - [28/09/2019 17:23:03] - (.-.) - [24.83 Ko] - (0.0.0.0) - C:\WINDOWS\System32\protector.log [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [0 Ko] - C:\WINDOWS\System32\ProximityToast [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\prs-AF [MD5.007893E8374C766471239EB291BA8C17] - |A| - [12/12/2019 09:26:23] - (.-.) - [4.05 Ko] - (0.0.0.0) - C:\WINDOWS\System32\psmodulediscoveryprovider.mof [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [424.5 Ko] - C:\WINDOWS\System32\pt-BR [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [426.5 Ko] - C:\WINDOWS\System32\pt-PT [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\quc-Latn-GT [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\quz-PE [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [23.75 Ko] - C:\WINDOWS\System32\ras [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [0 Ko] - C:\WINDOWS\System32\RasToast [MD5.19AA8CF1124AC31FF3E898828B1E6BFA] - |A| - [12/12/2019 09:27:52] - (.-.) - [2849.5 Ko] - (1.0.1910.28002) - C:\WINDOWS\System32\rdpnano.dll [MD5.51E3964829DD8104DBBB985F55AB0BDF] - |A| - [12/12/2019 09:24:42] - (.-.) - [81.5 Ko] - (0.0.0.0) - C:\WINDOWS\System32\rdsxvmaudio.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [2.17 Ko] - C:\WINDOWS\System32\Recovery [MD5.55B7086A11E6B242C7A6C409B8016646] - |A| - [03/02/2020 12:41:13] - (.-.) - [5.91 Ko] - (0.0.0.0) - C:\WINDOWS\System32\RegDefragNT 2020-02-03 09-56-08.cfg [MD5.826549DF7B1333179BA8CA939B12DAD3] - |A| - [12/12/2019 09:24:33] - (.-.) - [1.58 Ko] - (0.0.0.0) - C:\WINDOWS\System32\RemoteSystemToastIcon.contrast-white.png [MD5.B4DEEC96F9DF6961D5DE054F11BF9C2B] - |A| - [12/12/2019 09:24:33] - (.-.) - [1.1 Ko] - (0.0.0.0) - C:\WINDOWS\System32\RemoteSystemToastIcon.png [MD5.C6CA43573C21CA6392F57F238C8391FC] - |A| - [23/10/2012 04:05:58] - (.-.) - [39.45 Ko] - (0.0.0.0) - C:\WINDOWS\System32\Repository.reg [MD5.1A740D99CC7BEA261F9EB6989A7F3751] - |A| - [12/12/2019 09:27:26] - (.-.) - [118.5 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ResBParser.dll [MD5.250746BE98705C6BC3BDD6003363BD88] - |A| - [12/12/2019 09:28:08] - (.-.) - [9.25 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ResPriHMImageList [MD5.5504F7F27D0AB178346D643D444A612C] - |A| - [12/12/2019 09:28:08] - (.-.) - [8.98 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ResPriHMImageListLowCost [MD5.D833DF4BD1F0656D4069ABA57F40B19F] - |A| - [12/12/2019 09:28:08] - (.-.) - [8.74 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ResPriImageList [MD5.1391FB4E005C208A35E77DF6F3F055E2] - |A| - [12/12/2019 09:28:08] - (.-.) - [8.49 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ResPriImageListLowCost [MD5.831C579709F4761E4AB7053FCF4176EC] - |A| - [12/12/2019 09:25:45] - (.-.) - [0.74 Ko] - (0.0.0.0) - C:\WINDOWS\System32\RestartNowPower_80.contrast-black.png [MD5.DF286186041C6BF73C5DC21CEEEFFED5] - |A| - [12/12/2019 09:25:45] - (.-.) - [0.77 Ko] - (0.0.0.0) - C:\WINDOWS\System32\RestartNowPower_80.contrast-white.png [MD5.831C579709F4761E4AB7053FCF4176EC] - |A| - [12/12/2019 09:25:45] - (.-.) - [0.74 Ko] - (0.0.0.0) - C:\WINDOWS\System32\RestartNowPower_80.png [MD5.AE9FE55FED83149715734CB83339055A] - |A| - [12/12/2019 09:25:45] - (.-.) - [1.07 Ko] - (0.0.0.0) - C:\WINDOWS\System32\RestartTonight_80.png [MD5.AE9FE55FED83149715734CB83339055A] - |A| - [12/12/2019 09:25:45] - (.-.) - [1.07 Ko] - (0.0.0.0) - C:\WINDOWS\System32\RestartTonight_80_contrast-black.png [MD5.891AD355AB777A95695FC8A8A623A614] - |A| - [12/12/2019 09:25:45] - (.-.) - [0.98 Ko] - (0.0.0.0) - C:\WINDOWS\System32\RestartTonight_80_contrast-white.png [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [0.07 Ko] - C:\WINDOWS\System32\restore [MD5.5F683366176201AD3A8FA870144C9EFC] - |A| - [07/12/2019 08:46:56] - (.© 2008,2009 Dolby Laboratories, Inc. - PCEE3 DAA Control Panel x64.) - [319.49 Ko] - (6.0.6001.18) - C:\WINDOWS\System32\RP3DAA64.dll [MD5.DC5A70CB7FD5494D7BE5760996058B5B] - |A| - [07/12/2019 08:46:56] - (.© 2008,2009 Dolby Laboratories, Inc. - PCEE3 DHT Control Panel x64.) - [319.49 Ko] - (6.0.6001.18) - C:\WINDOWS\System32\RP3DHT64.dll [MD5.EABD549516BF670A684743EEE6A1ADA9] - |A| - [06/09/2016 16:52:09] - (.Copyright (C) 2014 - RtCRX.) - [81.21 Ko] - (1.11.9600.0) - C:\WINDOWS\System32\RtCRX64.dll [MD5.B6B8B43657682941905CC4B080D95D9F] - |A| - [07/12/2019 08:46:56] - (.©2009 Dolby Laboratories, Inc. - Dolby PCEE3 COM DLL x64.) - [215.12 Ko] - (6.1.6001.33) - C:\WINDOWS\System32\RTEED64A.dll [MD5.57E90A3EFB0E0901B7778685EE779C38] - |A| - [07/12/2019 08:46:56] - (.©2009 Dolby Laboratories, Inc. - Dolby PCEE3 GFX APO x64.) - [91.59 Ko] - (6.1.6001.33) - C:\WINDOWS\System32\RTEEG64A.dll [MD5.F63FE841C11A192A6024838715421032] - |A| - [07/12/2019 08:46:56] - (.©2009 Dolby Laboratories, Inc. - Dolby PCEE3 LFX APO x64.) - [113.7 Ko] - (6.1.6001.33) - C:\WINDOWS\System32\RTEEL64A.dll [MD5.24851D6F8E0C3F50C57635991D1710CC] - |A| - [07/12/2019 08:46:56] - (.©2009 Dolby Laboratories, Inc. - Dolby PCEE3 Control Panel x64.) - [383.55 Ko] - (6.1.6001.33) - C:\WINDOWS\System32\RTEEP64A.dll [MD5.E80F1A83EA9CA6BBB614BF0BB1303EAB] - |A| - [12/12/2019 09:26:05] - (.-.) - [61 Ko] - (0.0.0.0) - C:\WINDOWS\System32\runexehelper.exe [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\rw-RW [MD5.5C18CD22BE4628865FCB63337A6E5EF6] - |A| - [12/12/2019 09:29:31] - (.-.) - [10.18 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ScavengeSpace.xml [MD5.2F24BC74DCB28FE032C1596755385917] - |A| - [12/12/2019 09:25:45] - (.-.) - [0.53 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ScheduleTime_80.contrast-black.png [MD5.E72B1B6800DE45AA9AE7E10F899E5999] - |A| - [12/12/2019 09:25:45] - (.-.) - [0.54 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ScheduleTime_80.contrast-white.png [MD5.2F24BC74DCB28FE032C1596755385917] - |A| - [12/12/2019 09:25:45] - (.-.) - [0.53 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ScheduleTime_80.png [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\sd-Arab-PK [MD5.A8308D2F3DDE0745E8B678BF69A2ECD0] - |A| - [12/12/2019 09:25:49] - (.-.) - [8 Ko] - (0.0.0.0) - C:\WINDOWS\System32\settings.dat [MD5.54EA4643DE398477683BE4E0F6687668] - |A| - [23/01/2020 10:52:47] - (.-.) - [165.16 Ko] - (0.0.0.0) - C:\WINDOWS\System32\setupempdrvx64.exe [MD5.D4EB58FC6AFF88941021D7C1579E755A] - |A| - [23/01/2020 10:52:48] - (.-.) - [0.06 Ko] - (0.0.0.0) - C:\WINDOWS\System32\setupepmdrv.ini [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [74.57 Ko] - C:\WINDOWS\System32\Sgrm [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [1830.5 Ko] - C:\WINDOWS\System32\ShellExperiences [MD5.00000000000000000000000000000000] - |D| - [13/03/2020 17:28:24] - [7395 Ko] - C:\WINDOWS\System32\ShellExtBridge [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [23.7 Ko] - C:\WINDOWS\System32\si-lk [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [341.5 Ko] - C:\WINDOWS\System32\sk-SK [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [337.5 Ko] - C:\WINDOWS\System32\sl-SI [MD5.D79CDB7743C1EE7D5C826E865B19A5E8] - |A| - [07/12/2019 08:46:56] - (.Copyright (C) 2018 DTS, Inc. - DTS Universal APO DLL.) - [1084.28 Ko] - (3.5.18.0) - C:\WINDOWS\System32\sl3apo64.dll [MD5.AB27824DDDBA6D083859769D46960B8C] - |A| - [07/12/2019 08:46:56] - (.Copyright (C) 2018 DTS, Inc. - DTS APO Controller DLL.) - [3365.09 Ko] - (3.5.18.0) - C:\WINDOWS\System32\slcnt64.dll [MD5.00000000000000000000000000000000] - |D| - [30/12/2019 02:26:48] - [149841.33 Ko] - C:\WINDOWS\System32\SleepStudy [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 15:57:56] - [52.14 Ko] - C:\WINDOWS\System32\slmgr [MD5.6D3F0C726F57F9E91F263A6F78DDE888] - |A| - [07/12/2019 08:46:56] - (.TODO: (c) . - TODO: .) - [260.2 Ko] - (1.0.0.1) - C:\WINDOWS\System32\slprp64.dll [MD5.E3F85DAE7FA0D1659820AFC247605033] - |A| - [07/12/2019 08:46:56] - (.Copyright (C) 2018 DTS, Inc. - DTS APO Technology DLL.) - [3094.23 Ko] - (3.5.18.0) - C:\WINDOWS\System32\sltech64.dll [MD5.DAC275ABAAD2B689D7BB3685E4032072] - |A| - [12/12/2019 09:24:42] - (.-.) - [68.15 Ko] - (0.0.0.0) - C:\WINDOWS\System32\SmallRoom.bin [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:19:58] - [12105.02 Ko] - C:\WINDOWS\System32\SMI [MD5.55121989BE7B289813D419BA0FDEE8B7] - |A| - [12/12/2019 09:25:45] - (.-.) - [0.9 Ko] - (0.0.0.0) - C:\WINDOWS\System32\Snooze_80.contrast-black.png [MD5.E30B7D226E7B5B0EC2B9FC2316694ECC] - |A| - [12/12/2019 09:25:45] - (.-.) - [0.88 Ko] - (0.0.0.0) - C:\WINDOWS\System32\Snooze_80.contrast-white.png [MD5.55121989BE7B289813D419BA0FDEE8B7] - |A| - [12/12/2019 09:25:45] - (.-.) - [0.9 Ko] - (0.0.0.0) - C:\WINDOWS\System32\Snooze_80.png [MD5.DE3EAAF17BC934C77C4FC0C626EEA03B] - |A| - [12/12/2019 09:24:33] - (.-.) - [1.48 Ko] - (0.0.0.0) - C:\WINDOWS\System32\SpeakersSystemToastIcon.contrast-white.png [MD5.3308374DB8D20CFDA4D4204E2B5E559E] - |A| - [12/12/2019 09:24:33] - (.-.) - [0.88 Ko] - (0.0.0.0) - C:\WINDOWS\System32\SpeakersSystemToastIcon.png [MD5.B7A8432CD1055FD330C8A02471CCE9BB] - |A| - [12/12/2019 09:28:07] - (.-.) - [40.5 Ko] - (0.0.0.0) - C:\WINDOWS\System32\SpectrumSyncClient.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [7140.28 Ko] - C:\WINDOWS\System32\Speech [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [12537.27 Ko] - C:\WINDOWS\System32\Speech_OneCore [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [127031.74 Ko] - C:\WINDOWS\System32\spool [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [7399.26 Ko] - C:\WINDOWS\System32\spp [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [23.61 Ko] - C:\WINDOWS\System32\sppui [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\sq-AL [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\sr-Cyrl-BA [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\sr-Cyrl-RS [MD5.00000000000000000000000000000000] - |D| - [16/07/2016 13:47:48] - [0 Ko] - C:\WINDOWS\System32\sr-Latn-CS [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [339.5 Ko] - C:\WINDOWS\System32\sr-Latn-RS [MD5.45423B028F9C2B7B90ED69FA562DE022] - |A| - [07/12/2019 08:46:56] - (.Copyright (c) 2006-2012 Synopsys, Inc. All Rights Reserved - SRAPO.DLL.) - [456.31 Ko] - (4.0.0.59) - C:\WINDOWS\System32\SRAPO64.dll [MD5.E6043A3CC33531D69A44C56E65F1E044] - |A| - [07/12/2019 08:46:56] - (.Copyright (c) 2006-2012 Synopsys, Inc. All Rights Reserved - SRCOM.DLL.) - [333.26 Ko] - (4.0.0.59) - C:\WINDOWS\System32\SRCOM.dll [MD5.8859BB4AA04408556696A809BB9F2756] - |A| - [07/12/2019 08:46:56] - (.Copyright (c) 2006-2012 Synopsys, Inc. All Rights Reserved - SRCOM.DLL.) - [372.57 Ko] - (4.0.0.59) - C:\WINDOWS\System32\SRCOM64.dll [MD5.BA7D4E5FAE64BD0403C7F7E91CD93F77] - |A| - [12/12/2019 09:28:08] - (.-.) - [11.03 Ko] - (0.0.0.0) - C:\WINDOWS\System32\srms-apr-v.dat [MD5.DC9450258D80F46AEF8EF063A7C629B0] - |A| - [12/12/2019 09:28:08] - (.-.) - [19.03 Ko] - (0.0.0.0) - C:\WINDOWS\System32\srms-apr.dat [MD5.67894C70461ABD4EF6C116637EBB218A] - |A| - [12/12/2019 09:27:52] - (.-.) - [58.16 Ko] - (0.0.0.0) - C:\WINDOWS\System32\srms.dat [MD5.CD054E96B20CAE0B3DF3F22366F813BF] - |A| - [07/12/2019 08:46:56] - (.Copyright (c) 2006-2012 Synopsys, Inc. All Rights Reserved - SRRPTR.DLL.) - [1401.61 Ko] - (4.0.0.59) - C:\WINDOWS\System32\SRRPTR64.dll [MD5.D5CE85A870CE64CD699E585A9D913195] - |A| - [07/12/2019 08:46:55] - (.(c) 2007 SRS Labs, Inc. - COM object implementing SRS Headphone 360.) - [213.26 Ko] - (1.1.0.0) - C:\WINDOWS\System32\SRSHP64.dll [MD5.00000000000000000000000000000000] - |D| - [31/08/2016 15:59:48] - [2334.74 Ko] - C:\WINDOWS\System32\SRSLabs [MD5.4F2CFD04770B2777513AC7BD5E6BC2B2] - |A| - [07/12/2019 08:46:55] - (.Copyright (c) 2006 SRS Labs, Inc.. - TruSurround HD and HD4 COM object for Windows.) - [225.4 Ko] - (1.1.4.0) - C:\WINDOWS\System32\SRSTSH64.dll [MD5.59C6B571A84DE3DD080016A12F787ABB] - |A| - [07/12/2019 08:46:55] - (.Copyright 2002 SRS Labs, Inc. - TruSurroundXT Module.) - [528.54 Ko] - (3.2.0.0) - C:\WINDOWS\System32\SRSTSX64.dll [MD5.E5619AFDE0A59F19C34A50654CD98650] - |A| - [07/12/2019 08:46:55] - (.(c) 2006 SRS Labs, Inc. - WOW HD COM object for Windows.) - [170.97 Ko] - (1.1.3.0) - C:\WINDOWS\System32\SRSWOW64.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [39496 Ko] - C:\WINDOWS\System32\sru [MD5.D776957369C1AEBA23AF97BA8D31F0BB] - |A| - [12/12/2019 09:24:41] - (.-.) - [438.5 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ssdm.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [410 Ko] - C:\WINDOWS\System32\sv-SE [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\sw-KE [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [1422.75 Ko] - C:\WINDOWS\System32\Sysprep [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [948.28 Ko] - C:\WINDOWS\System32\SystemResetPlatform [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [8.16 Ko] - C:\WINDOWS\System32\ta-in [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [10.73 Ko] - C:\WINDOWS\System32\ta-lk [MD5.792EC0BB96691FB79F0F10741F7A0A17] - |A| - [12/12/2019 09:27:28] - (.Copyright (c) libarchive authors - bsdtar archive tool.) - [52 Ko] - (3.3.2.0) - C:\WINDOWS\System32\tar.exe [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [696.11 Ko] - C:\WINDOWS\System32\Tasks [MD5.00000000000000000000000000000000] - |D| - [28/09/2019 09:35:07] - [717.33 Ko] - C:\WINDOWS\System32\Tasks_Migrated [MD5.D602CA245CC6774A0981B607F0675609] - |A| - [12/12/2019 09:26:34] - (.-.) - [58.71 Ko] - (0.0.0.0) - C:\WINDOWS\System32\tcpmon.ini [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\te-IN [MD5.9178172B1215BB58389D624F9947E413] - |A| - [12/12/2019 09:25:24] - (.-.) - [1934 Ko] - (0.0.0.0) - C:\WINDOWS\System32\TextInputMethodFormatter.dll [MD5.663B554A308CD2E7B91599B282D01D7E] - |A| - [12/12/2019 09:25:24] - (.-.) - [682.5 Ko] - (0.0.0.0) - C:\WINDOWS\System32\TextShaping.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\tg-Cyrl-TJ [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [317.5 Ko] - C:\WINDOWS\System32\th-TH [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [5.97 Ko] - C:\WINDOWS\System32\ti-et [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\tk-TM [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\tn-ZA [MD5.7D40C3DA8D797E63528FA6BF7EB435C2] - |A| - [12/12/2019 09:24:54] - (.-.) - [267 Ko] - (0.0.0.0) - C:\WINDOWS\System32\TpmTool.exe [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [394 Ko] - C:\WINDOWS\System32\tr-TR [MD5.B88B8D017386A00D7724519F475317A0] - |A| - [12/12/2019 09:24:55] - (.-.) - [10.33 Ko] - (0.0.0.0) - C:\WINDOWS\System32\TransformPPSToWlan.xslt [MD5.2F05390B798363D51EBE65D6320CD45E] - |A| - [12/12/2019 09:24:55] - (.-.) - [1.65 Ko] - (0.0.0.0) - C:\WINDOWS\System32\TransformPPSToWlanCredentials.xslt [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\tt-RU [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\ug-CN [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [337 Ko] - C:\WINDOWS\System32\uk-UA [MD5.E72F1F13476FD8284880CD6E138138E6] - |A| - [12/12/2019 09:24:49] - (.-.) - [50.44 Ko] - (0.0.0.0) - C:\WINDOWS\System32\umpdc.dll [MD5.C617B2AD808AF8F0D23CDB64F01B9D00] - |A| - [13/03/2020 17:53:58] - (.-.) - [1.51 Ko] - (0.0.0.0) - C:\WINDOWS\System32\uninstall_imdisk.cmd [MD5.00000000000000000000000000000000] - |SD| - [12/12/2019 09:33:57] - [2326.41 Ko] - C:\WINDOWS\System32\UNP [MD5.24D44C1F6166ED471780750B70D248B2] - |A| - [26/07/2019 10:03:17] - (.Copyright © Alexander Roshal 1993-2018 - RAR decompression library.) - [314.71 Ko] - (5.61.100.2835) - C:\WINDOWS\System32\unrar.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\ur-PK [MD5.1CAD8CB3A53DA4B379F987772BFCC5B2] - |A| - [12/12/2019 09:25:37] - (.-.) - [48 Ko] - (0.0.0.0) - C:\WINDOWS\System32\UsbPmApi.dll [MD5.8EF6A5F1B22FB0C5900EB50F055E18A5] - |A| - [12/12/2019 09:25:45] - (.-.) - [38.5 Ko] - (0.0.0.0) - C:\WINDOWS\System32\usocoreps.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\uz-Latn-UZ [MD5.A308AED56BF6948C6C00D0A80CF6D6D1] - |A| - [12/12/2019 09:24:49] - (.-.) - [36.5 Ko] - (0.0.0.0) - C:\WINDOWS\System32\VhfUm.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\vi-VN [MD5.A91A57C8E48F703C6D55099D907D1C68] - |A| - [12/12/2019 09:45:20] - (.-.) - [96.5 Ko] - (0.0.0.0) - C:\WINDOWS\System32\VirtualMonitorManager.dll [MD5.92CF84881F22443900CD1CDFB735D97E] - |A| - [15/03/2020 18:50:59] - (.Copyright ® 2002-2012 RealVNC Ltd. - Port Monitor DLL.) - [36.82 Ko] - (1.8.0.0) - C:\WINDOWS\System32\VNCpm.dll [MD5.7366847FFAD2B9A69D41E95E2C4D36E6] - |A| - [26/07/2019 10:03:29] - (.Copyright © 2002-2019 all contributors, see Authors.txt - VobSub & TextSub filter for DirectShow/VirtualDub/Avisynth.) - [2037.5 Ko] - (1.5.4.4621) - C:\WINDOWS\System32\VSFilter.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [169959.13 Ko] - C:\WINDOWS\System32\wbem [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 15:57:57] - [0 Ko] - C:\WINDOWS\System32\WCN [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [78785.16 Ko] - C:\WINDOWS\System32\WDI [MD5.6EDD021A8B6457DDE09DE7B7FA4E8C8B] - |A| - [12/12/2019 09:26:01] - (.-.) - [0.6 Ko] - (0.0.0.0) - C:\WINDOWS\System32\WdsUnattendTemplate.xml [MD5.A82278F0394833A280A634A996A9F46D] - |A| - [12/12/2019 09:26:09] - (.-.) - [153.28 Ko] - (0.0.0.0) - C:\WINDOWS\System32\Win32AppSettingsProvider.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [1.12 Ko] - C:\WINDOWS\System32\WinBioDatabase [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [48369.46 Ko] - C:\WINDOWS\System32\WinBioPlugIns [MD5.A8985EC2D19E3A9C5CC5635407AE961D] - |A| - [12/12/2019 09:25:31] - (.-.) - [605.5 Ko] - (0.0.0.0) - C:\WINDOWS\System32\WindowManagementAPI.dll [MD5.7B232F5B0A76A160D92D991976144CC7] - |A| - [13/03/2020 17:34:20] - (.Copyright © 2019 - Java(TM) Platform SE binary.) - [126.06 Ko] - (8.0.2410.7) - C:\WINDOWS\System32\WindowsAccessBridge-64.dll [MD5.19E3436DA8296309E4A8F29DF81199E8] - |A| - [12/12/2019 09:25:24] - (.-.) - [129.5 Ko] - (0.0.0.0) - C:\WINDOWS\System32\WindowsDefaultHeatProcessor.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [10660.62 Ko] - C:\WINDOWS\System32\WindowsPowerShell [MD5.28E98ED0B6B08B7F1D163FFD184B28AF] - |A| - [12/12/2019 09:25:51] - (.-.) - [0.74 Ko] - (0.0.0.0) - C:\WINDOWS\System32\WindowsSecurityIcon.png [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [246160 Ko] - C:\WINDOWS\System32\winevt [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [6204.79 Ko] - C:\WINDOWS\System32\WinMetadata [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 15:57:57] - [107.56 Ko] - C:\WINDOWS\System32\winrm [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\wo-SN [MD5.1B46E2E85D401A629966A8F62D9B0775] - |A| - [12/12/2019 09:24:52] - (.-.) - [9.91 Ko] - (0.0.0.0) - C:\WINDOWS\System32\wpcatltoast.png [MD5.C30C621748C66CE751B19B2788559A3E] - |A| - [12/12/2019 09:24:52] - (.-.) - [4.58 Ko] - (0.0.0.0) - C:\WINDOWS\System32\wpcmon.png [MD5.69FEC1494F4C454E994D27CA6750832B] - |A| - [12/12/2019 09:26:05] - (.-.) - [0.71 Ko] - (0.0.0.0) - C:\WINDOWS\System32\wpr.config.xml [MD5.BC1F19DFEF56D14AE742CE46951F83A2] - |A| - [26/07/2019 10:03:19] - (.Copyright (C) 2003-2017 x264vfw project - x264vfw - H.264/MPEG-4 AVC codec.) - [3710.5 Ko] - (44.2851.44825.0) - C:\WINDOWS\System32\x264vfw.dll [MD5.D4CA51D8064AEDAB7CB31AC6B4FFC85B] - |A| - [26/07/2019 10:03:22] - (.-.) - [27748.09 Ko] - (0.0.0.0) - C:\WINDOWS\System32\x265vfw.dll [MD5.7936293E69F6EDA85AFE4B4B36813032] - |A| - [12/12/2019 09:25:10] - (.-.) - [87 Ko] - (0.0.0.0) - C:\WINDOWS\System32\xboxgipsynthetic.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\xh-ZA [MD5.F7B865265606C41B0E07779D3317E0A8] - |A| - [12/12/2019 09:25:45] - (.-.) - [0.61 Ko] - (0.0.0.0) - C:\WINDOWS\System32\X_80.contrast-black.png [MD5.6FF92221AF9D6CDF0966C4E44C367975] - |A| - [12/12/2019 09:25:45] - (.-.) - [0.57 Ko] - (0.0.0.0) - C:\WINDOWS\System32\X_80.contrast-white.png [MD5.F7B865265606C41B0E07779D3317E0A8] - |A| - [12/12/2019 09:25:45] - (.-.) - [0.61 Ko] - (0.0.0.0) - C:\WINDOWS\System32\X_80.png [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\yo-NG [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [287.99 Ko] - C:\WINDOWS\System32\zh-CN [MD5.00000000000000000000000000000000] - |D| - [16/07/2016 13:47:48] - [0 Ko] - C:\WINDOWS\System32\zh-HK [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [258 Ko] - C:\WINDOWS\System32\zh-TW [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [0 Ko] - C:\WINDOWS\System32\zu-ZA [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 15:57:57] - [0 Ko] - C:\WINDOWS\SysWOW64\0409 [MD5.00000000000000000000000000000000] - |D| - [07/09/2016 01:46:14] - [328.34 Ko] - C:\WINDOWS\SysWOW64\1033 [MD5.0A0FEB9EB28BDE8CD835716343B03B14] - |A| - [27/01/2020 15:13:52] - (.-.) - [2.1 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\12520437(1).cpx [MD5.D69AE057CD82D04EE7D311809ABEFB2A] - |A| - [27/01/2020 15:13:52] - (.-.) - [2.18 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\12520850(1).cpx [MD5.D6F8DD9F561B8A67FFAC2BAD7E989770] - |A| - [12/12/2019 09:27:05] - (.-.) - [0.23 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@AppHelpToast.png [MD5.82C37C3E27020AF6C2E018E944284676] - |A| - [27/01/2020 15:36:57] - (.-.) - [0.3 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@AudioToastIcon(1)(1).png [MD5.82C37C3E27020AF6C2E018E944284676] - |A| - [27/01/2020 15:13:52] - (.-.) - [0.3 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@AudioToastIcon(1).png [MD5.82C37C3E27020AF6C2E018E944284676] - |A| - [12/12/2019 09:27:05] - (.-.) - [0.3 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@AudioToastIcon.png [MD5.8E4B25CC8E98F63DBD54176DFAB539E0] - |A| - [27/01/2020 16:25:15] - (.-.) - [0.44 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@BackgroundAccessToastIcon.png [MD5.3937359E324E15F6A7A7092D4DAEBD64] - |A| - [27/01/2020 16:25:15] - (.-.) - [0.19 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@bitlockertoastimage.png [MD5.495C1F072039B434827A5FE0D9761E4D] - |A| - [27/01/2020 15:36:59] - (.-.) - [0.32 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@EnrollmentToastIcon(1)(1).png [MD5.495C1F072039B434827A5FE0D9761E4D] - |A| - [27/01/2020 15:13:52] - (.-.) - [0.32 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@EnrollmentToastIcon(1).png [MD5.495C1F072039B434827A5FE0D9761E4D] - |A| - [12/12/2019 09:27:08] - (.-.) - [0.32 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@EnrollmentToastIcon.png [MD5.C2A332DE50FE519DA21AFB8BD6E134F4] - |A| - [27/01/2020 16:25:15] - (.-.) - [0.55 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@language_notification_icon.png [MD5.2B7002E9C7EA6B436F3A0F7C305AACD8] - |A| - [27/01/2020 16:25:15] - (.-.) - [0.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@NotifierToastIcon.png [MD5.A119D69B4C29845D3F8CE2E5638C8E65] - |A| - [27/01/2020 16:25:15] - (.-.) - [0.47 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@optionalfeatures.png [MD5.1622DE67156496C78D6B7BE9B471645B] - |A| - [27/01/2020 15:37:01] - (.-.) - [0.39 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@VpnToastIcon(1)(1).png [MD5.1622DE67156496C78D6B7BE9B471645B] - |A| - [27/01/2020 15:13:52] - (.-.) - [0.39 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@VpnToastIcon(1).png [MD5.1622DE67156496C78D6B7BE9B471645B] - |A| - [12/12/2019 09:27:21] - (.-.) - [0.39 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@VpnToastIcon.png [MD5.7AC3EA1A5175106ED6467FF0C5315541] - |A| - [27/01/2020 16:25:15] - (.-.) - [14.75 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@WiFiNotificationIcon.png [MD5.13EF2C8D799F7B6E9D8E3D6BACB9C779] - |A| - [27/01/2020 16:25:15] - (.-.) - [0.7 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@WindowsHelloFaceToastIcon.png [MD5.F553B252FEC3134D4F5303D9B25298B3] - |A| - [27/01/2020 16:25:15] - (.-.) - [0.51 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@WindowsUpdateToastIcon.contrast-black.png [MD5.DAD405CBDE259DE527EBF71BCC28099C] - |A| - [27/01/2020 16:25:15] - (.-.) - [0.79 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@WindowsUpdateToastIcon.contrast-white.png [MD5.F553B252FEC3134D4F5303D9B25298B3] - |A| - [27/01/2020 16:25:15] - (.-.) - [0.51 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@WindowsUpdateToastIcon.png [MD5.DB71001FC261F6685BE410527DAE3942] - |A| - [27/01/2020 15:37:03] - (.-.) - [0.67 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@WirelessDisplayToast(1)(1).png [MD5.DB71001FC261F6685BE410527DAE3942] - |A| - [27/01/2020 15:13:52] - (.-.) - [0.67 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@WirelessDisplayToast(1).png [MD5.DB71001FC261F6685BE410527DAE3942] - |A| - [12/12/2019 09:26:56] - (.-.) - [0.67 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@WirelessDisplayToast.png [MD5.D0FCF781D0801ABF5F74B54E98076A5B] - |A| - [27/01/2020 16:25:15] - (.-.) - [0.15 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@WwanNotificationIcon.png [MD5.85D91E478AF18125007C531227FF6E59] - |A| - [27/01/2020 16:25:15] - (.-.) - [0.34 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@WwanSimLockIcon.png [MD5.63D0A18DC95178D4D6CA646D79FD311D] - |A| - [03/04/2020 01:06:19] - (.-.) - [0.1 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\AbBakConfig.dat [MD5.F76E1461807291997B309BF34CCC59E2] - |A| - [20/01/2020 14:45:26] - (.Copyright c 2002-2007 by Alexander Vigovsky - ac3filter.) - [660 Ko] - (1.3.1.0) - C:\WINDOWS\SysWOW64\ac3filter.ax [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [1865.78 Ko] - C:\WINDOWS\SysWOW64\AdvancedInstallers [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [29.5 Ko] - C:\WINDOWS\SysWOW64\af-ZA [MD5.C848238E9256B92A5B493EB334D15205] - |A| - [12/12/2019 09:26:42] - (.-.) - [11 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\agentactivationruntimestarter.exe [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [22 Ko] - C:\WINDOWS\SysWOW64\am-ET [MD5.16C212249068A275CB8D2D0C92BE8A28] - |A| - [20/01/2020 17:47:38] - (.-.) - [205.02 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\amdgfxinfo32.dll [MD5.F12467373381C72FAE9CA7C08ED6C919] - |A| - [21/10/2015 02:14:42] - (.-.) - [128.98 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\amdhdl32.dll [MD5.87882BCCDF63B74B675ECCE6B6609DC2] - |A| - [21/10/2015 02:14:42] - (.Advanced Micro Devices, Inc. Copyright (C) 2015 - LiquidVR SDK 1.0.) - [511.98 Ko] - (1.0.3.8) - C:\WINDOWS\SysWOW64\amdlvr32.dll [MD5.FA2E69449375FA9C6326541E4004DCC2] - |A| - [20/01/2020 17:47:44] - (.Copyright (C) 2013 AMD Inc. - Mantle driver, support for SI family and above.) - [5018.02 Ko] - (9.1.10.77) - C:\WINDOWS\SysWOW64\amdmantle32.dll [MD5.5EAFF79FA8D9DB645082BC5D5362035B] - |A| - [20/01/2020 17:47:47] - (.Copyright (c) 2013 Advanced Micro Devices, Inc. - Radeon MMOCL Universal Driver.) - [46.02 Ko] - (1.6.0.0) - C:\WINDOWS\SysWOW64\amdmmcl.dll [MD5.3880D4E6EAEE6E89CF4EBC5C2A0E424C] - |A| - [20/01/2020 17:47:48] - (.Copyright (C) 2011 Advanced Micro Devices Inc. - AMD Accelerated Parallel Processing OpenCL 2.0 Runtime.) - [38790.52 Ko] - (10.0.1800.12) - C:\WINDOWS\SysWOW64\amdocl.dll [MD5.CE5AF9528DF32E0DD2E13DF37C3BD652] - |A| - [20/01/2020 17:47:53] - (.Copyright (C) 2011 Advanced Micro Devices Inc. - AMD COMPILER OpenCL 1.1 Compiler.) - [21804.02 Ko] - (0.8.0.0) - C:\WINDOWS\SysWOW64\amdocl12cl.dll [MD5.418489CA1F6532B67EE90D91C290B834] - |A| - [20/01/2020 17:46:42] - (.-.) - [980.54 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\amdocl_as32.exe [MD5.45AE785FEEAAA71C592D3B4AAA90793F] - |A| - [20/01/2020 17:46:45] - (.-.) - [788.53 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\amdocl_ld32.exe [MD5.919888BD5F036832129D5B68234633D1] - |A| - [20/01/2020 17:48:18] - (.Copyright (c) 2009 Advanced Micro Devices, Inc. - Radeon PCOM Universal Driver.) - [99.65 Ko] - (8.14.10.23) - C:\WINDOWS\SysWOW64\amdpcom32.dll [MD5.D0C50C113FE59C21AD59932E6B9C202F] - |A| - [27/01/2020 15:13:38] - (.-.) - [37.42 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\ampa.sys [MD5.6DBFE2F49ADAA2E3683B93B437133734] - |A| - [27/01/2020 16:25:16] - (.-.) - [431.94 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\ApnDatabase.xml [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [0 Ko] - C:\WINDOWS\SysWOW64\AppLocker [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:16] - [2686.05 Ko] - C:\WINDOWS\SysWOW64\appraiser [MD5.85ACFC76E1BE21CD8602F85D1CF845BA] - |A| - [27/01/2020 15:39:09] - (.-.) - [2.89 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\AppxProvisioning(1)(1).xml [MD5.85ACFC76E1BE21CD8602F85D1CF845BA] - |A| - [27/01/2020 15:13:54] - (.-.) - [2.89 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\AppxProvisioning(1).xml [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [480.5 Ko] - C:\WINDOWS\SysWOW64\ar-SA [MD5.378401459FE222E7E64FFB973231DE91] - |A| - [12/12/2019 09:28:15] - (.Copyright (c) libarchive authors - Windows-internal libarchive library.) - [520 Ko] - (3.3.2.0) - C:\WINDOWS\SysWOW64\archiveint.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [30.5 Ko] - C:\WINDOWS\SysWOW64\as-IN [MD5.42FE37B90A47609B7A362660BCA5F3C4] - |A| - [27/01/2020 16:27:09] - (.Copyright (c) 2019 AVAST Software - Avast Antivirus start-up scanner.) - [347.38 Ko] - (19.8.4793.0) - C:\WINDOWS\SysWOW64\aswBoot.exe [MD5.EB0BEA12E138B40A8F537E184026C699] - |A| - [20/01/2020 17:48:09] - (.Copyright (C) 2008-2014 Advanced Micro Devices, Inc. - ADL.) - [923.52 Ko] - (7.15.20.1301) - C:\WINDOWS\SysWOW64\atiadlxx.dll [MD5.EB0BEA12E138B40A8F537E184026C699] - |A| - [20/01/2020 17:48:09] - (.Copyright (C) 2008-2014 Advanced Micro Devices, Inc. - ADL.) - [923.52 Ko] - (7.15.20.1301) - C:\WINDOWS\SysWOW64\atiadlxy.dll [MD5.72498D619EAC8545E23F39CD5A580E22] - |A| - [20/01/2020 17:46:15] - (.-.) - [648.28 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\atiapfxx.blb [MD5.7FCC3CFEC2E7B2B23B30E949981F1146] - |A| - [20/01/2020 17:48:10] - (.Copyright (C) 2008 Advanced Micro Devices Inc. - ATI CAL compiler runtime.) - [56.52 Ko] - (6.14.10.1848) - C:\WINDOWS\SysWOW64\aticalcl.dll [MD5.4D43C854CDBA3846FC5BB4357DDC47A7] - |A| - [20/01/2020 17:48:10] - (.Copyright (C) 2008 Advanced Micro Devices Inc. - ATI CAL DD.) - [13975.52 Ko] - (6.14.10.1848) - C:\WINDOWS\SysWOW64\aticaldd.dll [MD5.4B7AAFC915AE95E83F45C8E151EEECD7] - |A| - [20/01/2020 17:48:14] - (.Copyright (C) 2008 Advanced Micro Devices Inc. - ATI CAL runtime.) - [59.52 Ko] - (6.14.10.1848) - C:\WINDOWS\SysWOW64\aticalrt.dll [MD5.C8FE842392305F855B8B792B48D604E0] - |A| - [20/01/2020 17:48:14] - (.Copyright (C) 1998-2012 AMD Inc. - aticfx32.dll.) - [1185.79 Ko] - (8.17.10.1404) - C:\WINDOWS\SysWOW64\aticfx32.dll [MD5.14CE93B63CA70642CAC7C2050C420BCE] - |A| - [20/01/2020 17:48:16] - (.Copyright (C) 1998-2011 AMD Inc. - atidxx32.dll.) - [9337.59 Ko] - (8.17.10.625) - C:\WINDOWS\SysWOW64\atidxx32.dll [MD5.9573957E8B88D5E3457EE76ACDC6381B] - |A| - [20/01/2020 17:46:46] - (.-.) - [193.52 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\atieah32.exe [MD5.A4FD82D9331819AEF7D66E543420FF11] - |A| - [20/01/2020 17:48:18] - (.Copyright (C) 2007 Advanced Micro Devices, Inc. - atigktxx.dll.) - [163.02 Ko] - (8.14.1.6463) - C:\WINDOWS\SysWOW64\atigktxx.dll [MD5.9B5C3A4C12E618920C46BF08B4E03D61] - |A| - [20/01/2020 17:48:18] - (.Copyright (C) 2007 Advanced Micro Devices, Inc. - atiglpxx.dll.) - [97.02 Ko] - (8.14.1.6463) - C:\WINDOWS\SysWOW64\atiglpxx.dll [MD5.919888BD5F036832129D5B68234633D1] - |A| - [20/01/2020 17:48:18] - (.Copyright (c) 2009 Advanced Micro Devices, Inc. - Radeon PCOM Universal Driver.) - [99.65 Ko] - (8.14.10.23) - C:\WINDOWS\SysWOW64\atimpc32.dll [MD5.ABB02A4B94358A924A7665EAC66A61B3] - |A| - [20/01/2020 17:48:23] - (.Copyright (C) 1998-2011 Advanced Micro Devices, Inc. - AMD OpenGL driver.) - [24472.02 Ko] - (6.14.10.13411) - C:\WINDOWS\SysWOW64\atioglxx.dll [MD5.85361053E8222D44B0208E6FC83E9F9B] - |A| - [20/01/2020 17:48:25] - (.Copyright (C) 2007 Advanced Micro Devices, Inc. - atiu9pag.dll.) - [130.12 Ko] - (8.14.1.6463) - C:\WINDOWS\SysWOW64\atiu9pag.dll [MD5.A949FBDE1C928875559EB767B684BCC2] - |A| - [20/01/2020 17:48:27] - (.Copyright (C) 1998-2011 AMD Inc. - atiumdag.dll.) - [7069.32 Ko] - (9.14.10.1128) - C:\WINDOWS\SysWOW64\atiumdag.dll [MD5.779B11BD407DDB038091ECC85551DBCC] - |A| - [20/01/2020 17:46:16] - (.-.) - [3390.02 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\atiumdva.cap [MD5.32A8DED0E7E52662A37844ECF614BF2B] - |A| - [20/01/2020 17:48:28] - (.Copyright (c) 2009 Advanced Micro Devices, Inc. - Radeon Video Acceleration Universal Driver.) - [7784.09 Ko] - (8.14.10.513) - C:\WINDOWS\SysWOW64\atiumdva.dll [MD5.6A411716F1A8EB45D1891D3778C14FB7] - |A| - [20/01/2020 17:48:29] - (.Copyright (C) 2007 Advanced Micro Devices, Inc. - atiuxpag.dll.) - [143.29 Ko] - (8.14.1.6463) - C:\WINDOWS\SysWOW64\atiuxpag.dll [MD5.4F1F22EF604DE04ED2BCA4C5916BF9E0] - |A| - [20/01/2020 17:46:23] - (.-.) - [20.3 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\ativvsnl.dat [MD5.CFBA17101E04BBCDA5E50CC8A92CEBB0] - |A| - [20/01/2020 17:46:23] - (.-.) - [0.02 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\ativvsny.dat [MD5.7C163EDE63854539828F5B2C1BC529FD] - |A| - [22/08/2015 01:54:10] - (.-.) - [153.46 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\ativvsva.dat [MD5.219D7091DD1D93728392337FE9C7ADD6] - |A| - [22/08/2015 01:54:10] - (.-.) - [200.15 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\ativvsvl.dat [MD5.C03F0062C0749CDB59A4D60862C3E83E] - |A| - [27/01/2020 16:25:18] - (.-.) - [134.86 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\AverageRoom.bin [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [30 Ko] - C:\WINDOWS\SysWOW64\az-Latn-AZ [MD5.69BC2386DFA5E79BCDD1079B59CCA1C4] - |A| - [26/01/2017 09:26:38] - (.-.) - [69.48 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\bdmjpeg.dll [MD5.9B3C54A9C49CA00F5A9DA7C7F84A57F9] - |A| - [26/01/2017 09:26:48] - (.-.) - [69.51 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\bdmpega.acm [MD5.90476773F98F4AE0A3CB013F4D21650B] - |A| - [26/01/2017 09:26:44] - (.-.) - [69.51 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\bdmpegv.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [29.5 Ko] - C:\WINDOWS\SysWOW64\be-BY [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [394 Ko] - C:\WINDOWS\SysWOW64\bg-BG [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [28.5 Ko] - C:\WINDOWS\SysWOW64\bn-BD [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [29.5 Ko] - C:\WINDOWS\SysWOW64\bn-IN [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:19] - [4833.62 Ko] - C:\WINDOWS\SysWOW64\Boot [MD5.22D9945B4AAE36DD59620A918F2E65F4] - |A| - [27/01/2020 15:41:06] - (.-.) - [3096 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\boot(1)(1).sdi [MD5.22D9945B4AAE36DD59620A918F2E65F4] - |A| - [27/01/2020 15:13:57] - (.-.) - [3096 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\boot(1).sdi [MD5.EBCB7C2A1986AB1631A15A64778E0D9F] - |A| - [23/01/2020 10:52:40] - (.-.) - [3532.16 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\BootMan.exe [MD5.405E1EF8E3C88E9BCD2853382BB12430] - |A| - [27/01/2020 15:41:11] - (.-.) - [22.45 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\bopomofo(1)(1).uce [MD5.405E1EF8E3C88E9BCD2853382BB12430] - |A| - [27/01/2020 15:13:57] - (.-.) - [22.45 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\bopomofo(1).uce [MD5.3B16AA54D04E93D6BE2BD2E55755AFDA] - |A| - [18/02/2020 17:37:29] - (.-.) - [1.6 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\BroomData.bit [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [28.5 Ko] - C:\WINDOWS\SysWOW64\bs-Latn-BA [MD5.5712256A8FAB555CC50AEAC2A899A17A] - |A| - [27/01/2020 16:25:19] - (.Copyright (C) 2008 - Gestionnaire de contexte pour réseau personnel Bluetooth.) - [180.5 Ko] - (1.0.0.1) - C:\WINDOWS\SysWOW64\BthpanContextHandler.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [0.1 Ko] - C:\WINDOWS\SysWOW64\Bthprops [MD5.49BBA53691DE4F3158733CB91FF4D541] - |A| - [27/01/2020 15:41:24] - (.Copyright (C) 2008 - ContextH Application.) - [61.5 Ko] - (1.0.0.1) - C:\WINDOWS\SysWOW64\BWContextHandler(1)(1).dll [MD5.22CD6AFB17563BBC6497B65429516B10] - |A| - [27/01/2020 15:13:57] - (.Copyright (C) 2008 - ContextH Application.) - [53 Ko] - (1.0.0.1) - C:\WINDOWS\SysWOW64\BWContextHandler(1).dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [30.5 Ko] - C:\WINDOWS\SysWOW64\ca-ES [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [31 Ko] - C:\WINDOWS\SysWOW64\ca-ES-valencia [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [0 Ko] - C:\WINDOWS\SysWOW64\catroot [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:23] - [1658.41 Ko] - C:\WINDOWS\SysWOW64\cAVS [MD5.B30CDA81AC9BD1E8AA8D326E6C9E01E9] - |A| - [09/03/2020 23:24:20] - (.Copyright (c) 2017-2020, Callback Technologies, Inc. - CBFS Connect Mount Notifier.) - [158.3 Ko] - (2017.0.24.71) - C:\WINDOWS\SysWOW64\cbfsconnectMntNtf2017.dll [MD5.B9B1AEC6D7E0A3499D515DE90E03BEE1] - |A| - [09/03/2020 23:24:19] - (.Copyright (c) 2017-2020, Callback Technologies, Inc. - CBFS Connect Network Redirector.) - [228.8 Ko] - (2017.0.24.66) - C:\WINDOWS\SysWOW64\cbfsconnectNetRdr2017.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [23 Ko] - C:\WINDOWS\SysWOW64\chr-CHER-US [MD5.CCEAEFAA4DF2F399E9A179D942FEB23C] - |A| - [27/01/2020 15:43:15] - (.-.) - [163.71 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\chs_singlechar_pinyin(1)(1).dat [MD5.CCEAEFAA4DF2F399E9A179D942FEB23C] - |A| - [27/01/2020 15:14:00] - (.-.) - [163.71 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\chs_singlechar_pinyin(1).dat [MD5.8CBFDA9D6623325B17EAB2B99314FF26] - |A| - [01/04/2020 16:13:09] - (.2005-2019 COMODO. - COMODO Secure Shopping.) - [256.23 Ko] - (1.4.50284.159) - C:\WINDOWS\SysWOW64\cmdkbdcss32.dll [MD5.993A09D2026171A07714870B587CCAC6] - |A| - [17/10/2019 10:39:04] - (.2005-2018 COMODO. - COMODO Internet Security.) - [361.45 Ko] - (12.1.0.6914) - C:\WINDOWS\SysWOW64\cmdvrt32.dll [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:25] - [3121.09 Ko] - C:\WINDOWS\SysWOW64\CodeIntegrity [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [996 Ko] - C:\WINDOWS\SysWOW64\Com [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [36391.24 Ko] - C:\WINDOWS\SysWOW64\config [MD5.00000000000000000000000000000000] - |SD| - [12/12/2019 09:33:57] - [53.11 Ko] - C:\WINDOWS\SysWOW64\Configuration [MD5.3C7B27C52085B7DEBF68D9335F2B8BAA] - |A| - [12/12/2019 09:26:42] - (.-.) - [235 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\CoreMas.dll [MD5.0E7CCD69215CA3615CDF824D81D82D1B] - |A| - [27/01/2020 16:27:30] - (.-.) - [547.13 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\cp_resources.bin [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [559.5 Ko] - C:\WINDOWS\SysWOW64\cs-CZ [MD5.772EFE2E9B31B4509976F0FEAD355021] - |A| - [01/04/2020 16:13:32] - (.2005-2019 COMODO. - COMODO Secure Shopping.) - [329.94 Ko] - (1.4.50284.159) - C:\WINDOWS\SysWOW64\cssguard32.dll [MD5.4329254E74AD91D047E3CEDCC7C138C3] - |A| - [12/12/2019 09:28:15] - (.© 1996 - 2017 Daniel Stenberg, . - The curl executable.) - [377.5 Ko] - (7.55.1.0) - C:\WINDOWS\SysWOW64\curl.exe [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [31.5 Ko] - C:\WINDOWS\SysWOW64\cy-GB [MD5.1FF104ED4F6E5D912459FD9184006269] - |A| - [25/01/2020 05:26:43] - (.© Smart Game Booster. - D3DX8Wra Dynamic Link Library.) - [271.55 Ko] - (3.0.0.0) - C:\WINDOWS\SysWOW64\D3DX8Wrapper.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [557.5 Ko] - C:\WINDOWS\SysWOW64\da-DK [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:12:41] - [293.5 Ko] - C:\WINDOWS\SysWOW64\da-DK(1) [MD5.CDED5C5EF0B224FE8E696B66426BC2C3] - |A| - [18/01/2020 01:02:28] - (.©2000 Dart Communications - PowerTCP© Certificate Controls.) - [244 Ko] - (2.11.1.0) - C:\WINDOWS\SysWOW64\DartCertificate.dll [MD5.82709DCA75E8EAD5574FFAD16E65C4B9] - |A| - [18/01/2020 01:02:29] - (.©2000 Dart Communications - PowerTCP© Secure Controls.) - [392 Ko] - (2.2.2.0) - C:\WINDOWS\SysWOW64\DartSecure2.dll [MD5.855C04BDEADE5EA0BE6892419568B13B] - |A| - [18/01/2020 01:02:26] - (.©2000 Dart Communications - PowerTCP© Winsock Controls.) - [430 Ko] - (2.11.1.0) - C:\WINDOWS\SysWOW64\DartSock.dll [MD5.F44338D6E9FBBBDFAB849988897CA626] - |A| - [27/01/2020 16:25:29] - (.-.) - [83 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\DataStoreCacheDumpTool.exe [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:29] - [198.83 Ko] - C:\WINDOWS\SysWOW64\DDFs [MD5.DF6465F349C9CBDF3FCEB3F198E8FCB6] - |A| - [27/01/2020 15:47:45] - (.-.) - [34.92 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\ddmdrv(1).sys [MD5.877B7E3E7C3574DE6A4C4E890EABDC4F] - |A| - [27/01/2020 15:13:41] - (.-.) - [32.42 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\ddmdrv.sys [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 15:13:41] - [6483 Ko] - C:\WINDOWS\SysWOW64\de [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [47455.69 Ko] - C:\WINDOWS\SysWOW64\de-DE [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:12:42] - [37478.09 Ko] - C:\WINDOWS\SysWOW64\de-DE(1) [MD5.C04ED7B2794D40E8E777FD44ED44FC50] - |A| - [27/01/2020 15:47:54] - (.-.) - [0.36 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\DefaultAccountTile(1)(1).png [MD5.C04ED7B2794D40E8E777FD44ED44FC50] - |A| - [27/01/2020 15:14:05] - (.-.) - [0.36 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\DefaultAccountTile(1).png [MD5.C1684AACAAD62889ACFCA988AA46562D] - |A| - [12/12/2019 09:26:57] - (.-.) - [28.83 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\DefaultAccountTile.png [MD5.26206C944AD7CDD1F50DD58868B32F7F] - |A| - [27/01/2020 15:13:41] - (.-.) - [64.38 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\defaultCpff.aiqb [MD5.618BA9E529EAB7E11DBA43469481835F] - |A| - [27/01/2020 16:25:29] - (.-.) - [4128.04 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\DefaultHrtfs.bin [MD5.664AA698FC0106A2B075A641E8DC6302] - |A| - [27/01/2020 16:25:30] - (.-.) - [0.84 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\DefaultQuestions.json [MD5.B227DF8720C51EE0A80CB23CCCEF1EC6] - |A| - [28/01/2020 04:12:44] - (.-.) - [328.35 Ko] - (13.80.853.0) - C:\WINDOWS\SysWOW64\DevManagerCore(1).dll [MD5.B227DF8720C51EE0A80CB23CCCEF1EC6] - |A| - [23/10/2012 04:17:38] - (.-.) - [328.35 Ko] - (13.80.853.0) - C:\WINDOWS\SysWOW64\DevManagerCore.dll [MD5.00000000000000000000000000000000] - |SD| - [12/12/2019 09:33:57] - [1058 Ko] - C:\WINDOWS\SysWOW64\DiagSvcs [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:12:44] - [193.5 Ko] - C:\WINDOWS\SysWOW64\DiagSvcs(1) [MD5.037DF43BCC9F9A4DF6548FED8F4503AF] - |A| - [27/01/2020 16:27:43] - (.-.) - [82.96 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\DiskSnapshot.conf [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [20875.52 Ko] - C:\WINDOWS\SysWOW64\Dism [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:12:44] - [7298.7 Ko] - C:\WINDOWS\SysWOW64\Dism(1) [MD5.F5E1F4E75B9F83862539C6720BC47FB2] - |A| - [17/08/2015 17:29:18] - (.© PoINT Software & Systems GmbH 1994-2015 - API of PoINT CD/DVD Audio/Video SDK.) - [698.32 Ko] - (13.0.0.244) - C:\WINDOWS\SysWOW64\DLLAV32.dll [MD5.76698A4AF0B2E7E4FF73101676B0EB0C] - |A| - [17/08/2015 17:29:18] - (.© PoINT Software & Systems GmbH 1994-2015 - PoINT Shared DLL.) - [158.32 Ko] - (4.1.0.173) - C:\WINDOWS\SysWOW64\DLLCPY32.dll [MD5.E7C573FCA80135FCE8C7012B369C3EA7] - |A| - [17/08/2015 17:29:18] - (.© PoINT Software & Systems GmbH 1994-2015 - PoINT Shared DLL.) - [222.32 Ko] - (4.0.0.309) - C:\WINDOWS\SysWOW64\DLLDEV32.dll [MD5.5071B49CD59906AF32DDDD2BB349DE12] - |A| - [27/04/2007 10:43:58] - (.-.) - [117.38 Ko] - (3.7.0.12) - C:\WINDOWS\SysWOW64\DLLDEV32i.dll [MD5.DAF26BF9024AFF8D39D6C91EFE82EC8B] - |A| - [17/08/2015 17:29:18] - (.© PoINT Software & Systems GmbH 1994-2015 - PoINT Shared DLL.) - [214.32 Ko] - (4.0.0.406) - C:\WINDOWS\SysWOW64\DLLDRV32.dll [MD5.0902754B4F3041FD31673CB63B34012D] - |A| - [01/08/2019 16:19:31] - (.-.) - [0.23 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\dllhost.exe.config [MD5.D515497625D56CCC1A82F0CFE74D3F53] - |A| - [17/08/2015 17:29:18] - (.© PoINT Software & Systems GmbH 1994-2015 - PoINT Shared DLL.) - [98.32 Ko] - (3.2.0.116) - C:\WINDOWS\SysWOW64\DLLIO32.dll [MD5.784C395DF97ACAC1A55A3425B8B4F039] - |A| - [17/08/2015 17:29:18] - (.Copyright © PoINT Software & Systems GmbH 1994-2013 - PoINT Shared DLL.) - [82.32 Ko] - (3.3.0.62) - C:\WINDOWS\SysWOW64\DLLPNT32.dll [MD5.C1CBA95F091BE37EAFB3577851D31CC6] - |A| - [17/08/2015 17:29:18] - (.PoINT Software & Systems GmbH 1994-2015 - PoINT Shared DLL.) - [298.32 Ko] - (3.3.0.222) - C:\WINDOWS\SysWOW64\DLLRES32.dll [MD5.8C6F56F4CDDE6A1FD01F4FCF2773298E] - |A| - [27/01/2020 16:14:21] - (.-.) - [210.88 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\dssec(1)(1).dat [MD5.8C6F56F4CDDE6A1FD01F4FCF2773298E] - |A| - [27/01/2020 15:14:07] - (.-.) - [210.88 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\dssec(1).dat [MD5.9B8413CAD2279F7D2C92506270FD820E] - |A| - [11/12/2002 10:19:59] - (.Copyright (C) 2001-2002 Gabest - DirectVobSub.) - [244 Ko] - (2.0.23.0) - C:\WINDOWS\SysWOW64\DVobSub.ax [MD5.DF84EB7B44D1414284BA384F0061D1DC] - |A| - [27/01/2020 16:25:36] - (.-.) - [728.08 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\DynamicLong.bin [MD5.346870077DFD18867A9693C7A59AA3E6] - |A| - [27/01/2020 16:25:36] - (.-.) - [503.08 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\DynamicMedium.bin [MD5.2BEC13D68312ADE8C0065D8BCC146D2F] - |A| - [27/01/2020 16:25:37] - (.-.) - [315.58 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\DynamicShort.bin [MD5.10C38E1CA0D664F58E8B9F3645885E1D] - |A| - [27/01/2020 16:25:38] - (.-.) - [0.07 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\edgehtmlpluginpolicy.bin [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [542.5 Ko] - C:\WINDOWS\SysWOW64\el-GR [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:38] - [353 Ko] - C:\WINDOWS\SysWOW64\el-GR(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:12:52] - [330 Ko] - C:\WINDOWS\SysWOW64\el-GR(2) [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:39] - [22.42 Ko] - C:\WINDOWS\SysWOW64\elambkup [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 15:57:57] - [0 Ko] - C:\WINDOWS\SysWOW64\en [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:39] - [0 Ko] - C:\WINDOWS\SysWOW64\en(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:12:52] - [0 Ko] - C:\WINDOWS\SysWOW64\en(2) [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [343 Ko] - C:\WINDOWS\SysWOW64\en-GB [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:39] - [242.5 Ko] - C:\WINDOWS\SysWOW64\en-GB(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:12:52] - [223 Ko] - C:\WINDOWS\SysWOW64\en-GB(2) [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [2100.05 Ko] - C:\WINDOWS\SysWOW64\en-US [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:39] - [2136.53 Ko] - C:\WINDOWS\SysWOW64\en-US(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:12:52] - [1501.53 Ko] - C:\WINDOWS\SysWOW64\en-US(2) [MD5.2AA1C4DF2E3E3D5AEEDAD4A27859BB3A] - |A| - [14/04/2019 00:30:18] - (.-.) - [0.04 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\Error.ini [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 15:13:41] - [6509 Ko] - C:\WINDOWS\SysWOW64\es [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [36983.04 Ko] - C:\WINDOWS\SysWOW64\es-ES [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:40] - [44118.96 Ko] - C:\WINDOWS\SysWOW64\es-ES(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:12:53] - [36781.54 Ko] - C:\WINDOWS\SysWOW64\es-ES(2) [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [380 Ko] - C:\WINDOWS\SysWOW64\es-MX [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:40] - [270 Ko] - C:\WINDOWS\SysWOW64\es-MX(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:12:53] - [248.5 Ko] - C:\WINDOWS\SysWOW64\es-MX(2) [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [337.5 Ko] - C:\WINDOWS\SysWOW64\et-EE [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:40] - [238 Ko] - C:\WINDOWS\SysWOW64\et-EE(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:12:53] - [219 Ko] - C:\WINDOWS\SysWOW64\et-EE(2) [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [29 Ko] - C:\WINDOWS\SysWOW64\eu-ES [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:41] - [29 Ko] - C:\WINDOWS\SysWOW64\eu-ES(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:12:53] - [29 Ko] - C:\WINDOWS\SysWOW64\eu-ES(2) [MD5.E4ECC932BDD7ECD52811CE4C45BBF260] - |A| - [23/01/2020 10:52:42] - (.-.) - [21.66 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\EuEpmGdi.dll [MD5.93E76CF7B04EC33A1E9E0FD7546D3603] - |A| - [27/01/2020 16:15:30] - (.-.) - [17.51 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\EventViewer_EventDetails(1)(1).xsl [MD5.93E76CF7B04EC33A1E9E0FD7546D3603] - |A| - [27/01/2020 15:14:11] - (.-.) - [17.51 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\EventViewer_EventDetails(1).xsl [MD5.00000000000000000000000000000000] - |SD| - [12/12/2019 09:33:57] - [36066.31 Ko] - C:\WINDOWS\SysWOW64\F12 [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:41] - [28261.16 Ko] - C:\WINDOWS\SysWOW64\F12(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:12:54] - [24384.66 Ko] - C:\WINDOWS\SysWOW64\F12(2) [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [28.5 Ko] - C:\WINDOWS\SysWOW64\fa-IR [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:41] - [28.5 Ko] - C:\WINDOWS\SysWOW64\fa-IR(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:12:54] - [28.5 Ko] - C:\WINDOWS\SysWOW64\fa-IR(2) [MD5.BEB1E18B7F2CE225D7B8B246B896F5F1] - |A| - [27/01/2020 16:25:41] - (.-.) - [952.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\FaceProcessor.dll [MD5.C009F5D7740AAC4BDC99EF7C62803C21] - |A| - [27/01/2020 16:25:41] - (.-.) - [263.28 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\FaceProcessorCore.dll [MD5.812CDFD967D2E82A3D24FCAA5784749D] - |A| - [27/01/2020 16:25:41] - (.-.) - [1325.65 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\FaceTrackerInternal.dll [MD5.E65D2A37B6D4445D0CD9234BA933475B] - |A| - [27/01/2020 16:25:42] - (.-.) - [72.96 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\FeatureToastHeroImg.jpg [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [487 Ko] - C:\WINDOWS\SysWOW64\fi-FI [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:43] - [317.5 Ko] - C:\WINDOWS\SysWOW64\fi-FI(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:12:55] - [296.5 Ko] - C:\WINDOWS\SysWOW64\fi-FI(2) [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [32.5 Ko] - C:\WINDOWS\SysWOW64\fil-PH [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:43] - [32.5 Ko] - C:\WINDOWS\SysWOW64\fil-PH(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:12:55] - [32.5 Ko] - C:\WINDOWS\SysWOW64\fil-PH(2) [MD5.5C8874EE321F4623FFF7A1315039DDBC] - |A| - [18/01/2020 01:03:19] - (.Copyright (C) 2005, Fox Magic Software - FM Screen Capture Codec (VFW).) - [76 Ko] - (1.0.0.0) - C:\WINDOWS\SysWOW64\fmcodec.DLL [MD5.E0DDE188A917E495F67E587B65E4E058] - |A| - [27/01/2020 16:25:44] - (.-.) - [260.02 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\FNTCACHE.DAT [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 15:57:57] - [6300.5 Ko] - C:\WINDOWS\SysWOW64\fr [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:44] - [3403 Ko] - C:\WINDOWS\SysWOW64\fr(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:12:56] - [3149.5 Ko] - C:\WINDOWS\SysWOW64\fr(2) [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [391 Ko] - C:\WINDOWS\SysWOW64\fr-CA [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:44] - [278 Ko] - C:\WINDOWS\SysWOW64\fr-CA(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:12:56] - [255.5 Ko] - C:\WINDOWS\SysWOW64\fr-CA(2) [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [49606.49 Ko] - C:\WINDOWS\SysWOW64\fr-FR [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:44] - [43942.57 Ko] - C:\WINDOWS\SysWOW64\fr-FR(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:12:56] - [37496.63 Ko] - C:\WINDOWS\SysWOW64\fr-FR(2) [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 16:00:17] - [0 Ko] - C:\WINDOWS\SysWOW64\FxsTmp [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:47] - [0 Ko] - C:\WINDOWS\SysWOW64\FxsTmp(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:12:56] - [0 Ko] - C:\WINDOWS\SysWOW64\FxsTmp(2) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 05:29:05] - [0 Ko] - C:\WINDOWS\SysWOW64\FxsTmp(3) [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [32.5 Ko] - C:\WINDOWS\SysWOW64\ga-IE [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:47] - [32.5 Ko] - C:\WINDOWS\SysWOW64\ga-IE(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:12:57] - [32.5 Ko] - C:\WINDOWS\SysWOW64\ga-IE(2) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 05:29:05] - [32.5 Ko] - C:\WINDOWS\SysWOW64\ga-IE(3) [MD5.2E6AF4D5BF6E31E728F409984C3045D4] - |A| - [27/01/2020 16:27:56] - (.-.) - [86.7 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\gatherNetworkInfo.vbs [MD5.4FDED87068052EEB9B72A97FDBC141DB] - |A| - [27/01/2020 16:16:57] - (.-.) - [23.44 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\gb2312(1)(1).uce [MD5.4FDED87068052EEB9B72A97FDBC141DB] - |A| - [27/01/2020 15:14:14] - (.-.) - [23.44 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\gb2312(1).uce [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [34 Ko] - C:\WINDOWS\SysWOW64\gd-GB [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:47] - [34 Ko] - C:\WINDOWS\SysWOW64\gd-GB(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:12:57] - [34 Ko] - C:\WINDOWS\SysWOW64\gd-GB(2) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 05:29:05] - [34 Ko] - C:\WINDOWS\SysWOW64\gd-GB(3) [MD5.D41D8CD98F00B204E9800998ECF8427E] - |A| - [27/01/2020 16:25:48] - (.-.) - [0 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\GfxValDisplayLog.bin [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [31 Ko] - C:\WINDOWS\SysWOW64\gl-ES [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:48] - [31 Ko] - C:\WINDOWS\SysWOW64\gl-ES(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:12:58] - [31 Ko] - C:\WINDOWS\SysWOW64\gl-ES(2) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 05:29:06] - [31 Ko] - C:\WINDOWS\SysWOW64\gl-ES(3) [MD5.44A8F60A38C87271B582FE4DEEAF73E0] - |A| - [28/01/2020 05:27:17] - (.Copyright (C) 2017 - Gracenote SDK component.) - [4762.5 Ko] - (3.10.5.5585) - C:\WINDOWS\SysWOW64\gnsdk_fp(1)(1).dll [MD5.B873A5ABCFBC42B1BAC9EBE8741C6162] - |A| - [28/01/2020 04:12:58] - (.Copyright (C) 2019 - Gracenote SDK component.) - [244 Ko] - (3.9.511.0) - C:\WINDOWS\SysWOW64\gnsdk_fp(1).dll [MD5.B873A5ABCFBC42B1BAC9EBE8741C6162] - |A| - [12/12/2019 16:00:03] - (.Copyright (C) 2019 - Gracenote SDK component.) - [244 Ko] - (3.9.511.0) - C:\WINDOWS\SysWOW64\gnsdk_fp.dll [MD5.D3294ACCC2B60A8754801D392C3E1820] - |A| - [27/01/2020 16:25:48] - (.- GripResetService.) - [21 Ko] - (1.0.0.6) - C:\WINDOWS\SysWOW64\GripResetService.exe [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [0.01 Ko] - C:\WINDOWS\SysWOW64\GroupPolicy [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:48] - [0.31 Ko] - C:\WINDOWS\SysWOW64\GroupPolicy(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:12:59] - [0.01 Ko] - C:\WINDOWS\SysWOW64\GroupPolicy(2) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 05:29:06] - [0.31 Ko] - C:\WINDOWS\SysWOW64\GroupPolicy(3) [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [0 Ko] - C:\WINDOWS\SysWOW64\GroupPolicyUsers [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:48] - [0 Ko] - C:\WINDOWS\SysWOW64\GroupPolicyUsers(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:12:59] - [0 Ko] - C:\WINDOWS\SysWOW64\GroupPolicyUsers(2) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 05:29:06] - [0 Ko] - C:\WINDOWS\SysWOW64\GroupPolicyUsers(3) [MD5.BBAFA0A9EABE70C58063BD1220265BDE] - |A| - [27/01/2020 16:27:57] - (.Copyright (C) 2017 - GeneStor co-installer.) - [150.85 Ko] - (4.5.1.9) - C:\WINDOWS\SysWOW64\GSCoinst.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [29 Ko] - C:\WINDOWS\SysWOW64\gu-IN [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:48] - [29 Ko] - C:\WINDOWS\SysWOW64\gu-IN(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:12:59] - [29 Ko] - C:\WINDOWS\SysWOW64\gu-IN(2) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 05:29:06] - [29 Ko] - C:\WINDOWS\SysWOW64\gu-IN(3) [MD5.2FE3A8ECA350453841CBE0A58864028E] - |A| - [17/10/2019 10:49:04] - (.2005-2018 COMODO. - COMODO Internet Security.) - [720.33 Ko] - (12.1.0.6914) - C:\WINDOWS\SysWOW64\guard32.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [29 Ko] - C:\WINDOWS\SysWOW64\ha-Latn-NG [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:48] - [29 Ko] - C:\WINDOWS\SysWOW64\ha-Latn-NG(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:12:59] - [29 Ko] - C:\WINDOWS\SysWOW64\ha-Latn-NG(2) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 05:29:06] - [29 Ko] - C:\WINDOWS\SysWOW64\ha-Latn-NG(3) [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [388 Ko] - C:\WINDOWS\SysWOW64\he-IL [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:49] - [255.5 Ko] - C:\WINDOWS\SysWOW64\he-IL(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:12:59] - [238 Ko] - C:\WINDOWS\SysWOW64\he-IL(2) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 05:29:07] - [255.5 Ko] - C:\WINDOWS\SysWOW64\he-IL(3) [MD5.4CD16A9C15397E1FAD5F19E35A13BE58] - |A| - [27/01/2020 16:17:19] - (.-.) - [215.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\HeatCore(1)(1).dll [MD5.3A7F920893FD6F49BC4CC07B72914013] - |A| - [27/01/2020 15:14:14] - (.-.) - [188.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\HeatCore(1).dll [MD5.5AE1E7E77F0C791C185CC986F44DBD08] - |A| - [12/12/2019 09:27:00] - (.-.) - [253.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\HeatCore.dll [MD5.00000000000000000000000000000000] - |D| - [28/12/2019 11:57:23] - [0 Ko] - C:\WINDOWS\SysWOW64\Heimdal Security [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [29 Ko] - C:\WINDOWS\SysWOW64\hi-IN [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:49] - [29 Ko] - C:\WINDOWS\SysWOW64\hi-IN(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:13:00] - [29 Ko] - C:\WINDOWS\SysWOW64\hi-IN(2) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 05:29:07] - [29 Ko] - C:\WINDOWS\SysWOW64\hi-IN(3) [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [355 Ko] - C:\WINDOWS\SysWOW64\hr-HR [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:49] - [249.5 Ko] - C:\WINDOWS\SysWOW64\hr-HR(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:13:00] - [229.5 Ko] - C:\WINDOWS\SysWOW64\hr-HR(2) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 05:29:07] - [249.5 Ko] - C:\WINDOWS\SysWOW64\hr-HR(3) [MD5.6845E3250813B93F07D2FA19707EB97A] - |A| - [20/01/2020 17:48:31] - (.-.) - [148.02 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\hsa-thunk.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [497.5 Ko] - C:\WINDOWS\SysWOW64\hu-HU [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:50] - [324 Ko] - C:\WINDOWS\SysWOW64\hu-HU(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:13:00] - [302.5 Ko] - C:\WINDOWS\SysWOW64\hu-HU(2) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 05:29:07] - [324 Ko] - C:\WINDOWS\SysWOW64\hu-HU(3) [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [27.5 Ko] - C:\WINDOWS\SysWOW64\hy-AM [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:51] - [27.5 Ko] - C:\WINDOWS\SysWOW64\hy-AM(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:13:00] - [27.5 Ko] - C:\WINDOWS\SysWOW64\hy-AM(2) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 05:29:07] - [27.5 Ko] - C:\WINDOWS\SysWOW64\hy-AM(3) [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:51] - [124.21 Ko] - C:\WINDOWS\SysWOW64\hydrogen [MD5.A565537F1580872AE5B95D0CA457D780] - |A| - [27/01/2020 16:25:53] - (.-.) - [44.4 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\hypervisor.mof [MD5.0EF7FF52652DB03630FE4C57E550E862] - |A| - [28/01/2020 04:13:01] - (.Copyright © 1992-1995 Radius Inc., All Rights Reserved - Cinepak® Codec.) - [83 Ko] - (1.10.0.12) - C:\WINDOWS\SysWOW64\iccvid(1).dll [MD5.D6DFCAAA26F7081B309CA16298523EC9] - |A| - [27/01/2020 15:14:15] - (.Copyright ©1995-1997 Heidelberger Druckmaschinen AG - Microsoft Color Management Module (CMM).) - [225.5 Ko] - (10.0.16299.334) - C:\WINDOWS\SysWOW64\icm32(1)(1).dll [MD5.E1B89703CF7A52E4A18FFC39B1AAD916] - |A| - [28/01/2020 05:10:08] - (.Copyright ©1995-1997 Heidelberger Druckmaschinen AG - Microsoft Color Management Module (CMM).) - [239.5 Ko] - (10.0.16299.334) - C:\WINDOWS\SysWOW64\icm32(1).dll [MD5.60AFBD58F9DFAF558003BD13E60F6BB3] - |A| - [20/01/2020 14:45:27] - (.Copyright (C) 1999-2003 - LGPLed libiconv for Windows NT/2000/XP and Windows 95/98/ME.) - [872 Ko] - (1.9.0.0) - C:\WINDOWS\SysWOW64\iconv.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [36.27 Ko] - C:\WINDOWS\SysWOW64\icsxml [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:53] - [36.27 Ko] - C:\WINDOWS\SysWOW64\icsxml(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:13:01] - [36.27 Ko] - C:\WINDOWS\SysWOW64\icsxml(2) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 05:29:07] - [36.27 Ko] - C:\WINDOWS\SysWOW64\icsxml(3) [MD5.3AEBEAD6C199CE0C6F13FA39732CAD84] - |RA| - [12/12/2019 09:27:00] - (.Copyright (C) 2016 and later: Unicode, Inc. and others. License & terms of use: http://www.unicode.org/copyright.html - ICU Combined Library.) - [1835.5 Ko] - (64.2.0.0) - C:\WINDOWS\SysWOW64\icu.dll [MD5.8487436DDAB30187D71B977DEEE80BAC] - |RA| - [28/01/2020 05:27:46] - (.Copyright (C) 2016 and later: Unicode, Inc. and others. License & terms of use: http://www.unicode.org/copyright.html - ICU I18N Forwarder DLL.) - [24.5 Ko] - (64.2.0.0) - C:\WINDOWS\SysWOW64\icuin(1)(1).dll [MD5.960CD6069C91C444EE41B52CC5C23E09] - |RA| - [28/01/2020 04:13:01] - (.Copyright (C) 2016 and later: Unicode, Inc. and others. License & terms of use: http://www.unicode.org/copyright.html - ICU I18N Forwarder DLL.) - [24 Ko] - (64.2.0.0) - C:\WINDOWS\SysWOW64\icuin(1).dll [MD5.960CD6069C91C444EE41B52CC5C23E09] - |RA| - [12/12/2019 09:27:00] - (.Copyright (C) 2016 and later: Unicode, Inc. and others. License & terms of use: http://www.unicode.org/copyright.html - ICU I18N Forwarder DLL.) - [24 Ko] - (64.2.0.0) - C:\WINDOWS\SysWOW64\icuin.dll [MD5.66C365C160599D54C5953953621DE774] - |RA| - [28/01/2020 05:27:48] - (.Copyright (C) 2016 and later: Unicode, Inc. and others. License & terms of use: http://www.unicode.org/copyright.html - ICU Common Forwarder DLL.) - [29 Ko] - (64.2.0.0) - C:\WINDOWS\SysWOW64\icuuc(1)(1).dll [MD5.C3967061975B0164D01FB68AA0674336] - |RA| - [28/01/2020 04:13:01] - (.Copyright (C) 2016 and later: Unicode, Inc. and others. License & terms of use: http://www.unicode.org/copyright.html - ICU Common Forwarder DLL.) - [28.5 Ko] - (64.2.0.0) - C:\WINDOWS\SysWOW64\icuuc(1).dll [MD5.C3967061975B0164D01FB68AA0674336] - |RA| - [12/12/2019 09:27:00] - (.Copyright (C) 2016 and later: Unicode, Inc. and others. License & terms of use: http://www.unicode.org/copyright.html - ICU Common Forwarder DLL.) - [28.5 Ko] - (64.2.0.0) - C:\WINDOWS\SysWOW64\icuuc.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [28.5 Ko] - C:\WINDOWS\SysWOW64\id-ID [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:53] - [28.5 Ko] - C:\WINDOWS\SysWOW64\id-ID(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:13:01] - [28.5 Ko] - C:\WINDOWS\SysWOW64\id-ID(2) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 05:29:08] - [28.5 Ko] - C:\WINDOWS\SysWOW64\id-ID(3) [MD5.038F6AD6CEE43585D814CDBC7CDFD3EC] - |A| - [27/01/2020 15:14:15] - (.-.) - [59.04 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\ideograf(1).uce [MD5.C1127463655F541956FF02A325996ECF] - |A| - [28/01/2020 05:17:24] - (.-.) - [3.25 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\ieuinit(1)(1).inf [MD5.C1127463655F541956FF02A325996ECF] - |A| - [27/01/2020 15:14:16] - (.-.) - [3.25 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\ieuinit(1).inf [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [27 Ko] - C:\WINDOWS\SysWOW64\ig-NG [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:53] - [27 Ko] - C:\WINDOWS\SysWOW64\ig-NG(1) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 04:13:02] - [27 Ko] - C:\WINDOWS\SysWOW64\ig-NG(2) [MD5.00000000000000000000000000000000] - |D| - [28/01/2020 05:29:08] - [27 Ko] - C:\WINDOWS\SysWOW64\ig-NG(3) [MD5.955B60E4202B99C66977EFFF0C336E77] - |A| - [27/01/2020 16:27:58] - (.-.) - [265.01 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\igfxCPL.cpl [MD5.19C3C8394B1A8EBE7CF61A8C0221C024] - |A| - [27/01/2020 16:25:53] - (.-.) - [168.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\IHDS.dll [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:53] - [2848.42 Ko] - C:\WINDOWS\SysWOW64\ihvmanager [MD5.E8D279A233A76C64669FC5649E82BF1D] - |A| - [13/03/2020 17:53:58] - (.Copyright © 2004-2018 Olof Lagerkvist. - Control Panel Applet for the ImDisk Virtual Disk Driver.) - [120.33 Ko] - (2.0.10.59) - C:\WINDOWS\SysWOW64\imdisk.cpl [MD5.0DC59BCA1318398DD8513F44D09E6D0C] - |A| - [13/03/2020 17:53:58] - (.Copyright © 2004-2018 Olof Lagerkvist. - Control program for the ImDisk Virtual Disk Driver.) - [52.62 Ko] - (2.0.10.49) - C:\WINDOWS\SysWOW64\imdisk.exe [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [63180.15 Ko] - C:\WINDOWS\SysWOW64\IME [MD5.922D5BABA5B7BA8253C6257B26FEDA6C] - |A| - [27/01/2020 16:25:54] - (.-.) - [188.18 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\IMX241_CM500RF05SW700_SKY(1).cpf [MD5.922D5BABA5B7BA8253C6257B26FEDA6C] - |A| - [27/01/2020 15:13:42] - (.-.) - [188.18 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\IMX241_CM500RF05SW700_SKY.cpf [MD5.1DE08BB9D54D2B2931D3A39695892511] - |A| - [27/01/2020 16:25:54] - (.-.) - [186.9 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\IMX241_CM500RF05SW700_SKY_Video(1).cpf [MD5.1DE08BB9D54D2B2931D3A39695892511] - |A| - [27/01/2020 15:13:42] - (.-.) - [186.9 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\IMX241_CM500RF05SW700_SKY_Video.cpf [MD5.CFC5B24CA92142B55EF237208466205E] - |A| - [27/01/2020 16:25:54] - (.-.) - [162.38 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\IMX241_FN50FF469H_SKY(1).cpf [MD5.CFC5B24CA92142B55EF237208466205E] - |A| - [27/01/2020 15:13:42] - (.-.) - [162.38 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\IMX241_FN50FF469H_SKY.cpf [MD5.E96F40F27BBFDCD5C41D695187EF2003] - |A| - [27/01/2020 16:25:54] - (.-.) - [40.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\IMX241_FRONT.aiqd [MD5.29A8CA39130FCC8647014CFF162C608C] - |A| - [27/01/2020 16:25:54] - (.-.) - [221.56 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\IMX241_NSMM4D5_SKY(1).cpf [MD5.29A8CA39130FCC8647014CFF162C608C] - |A| - [27/01/2020 15:13:42] - (.-.) - [221.56 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\IMX241_NSMM4D5_SKY.cpf [MD5.AA6EFEDA4D5C5E22FF8EEB15CEF88098] - |A| - [27/01/2020 16:25:54] - (.-.) - [216.24 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\IMX241_NSMM4D5_SKY_Video(1).cpf [MD5.AA6EFEDA4D5C5E22FF8EEB15CEF88098] - |A| - [27/01/2020 15:13:42] - (.-.) - [216.24 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\IMX241_NSMM4D5_SKY_Video.cpf [MD5.B159017886623CAAC51E57307F5D834E] - |A| - [27/01/2020 16:25:55] - (.-.) - [166.86 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\IMX241_START2FRONT_SKY(1).cpf [MD5.B159017886623CAAC51E57307F5D834E] - |A| - [27/01/2020 15:13:42] - (.-.) - [166.86 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\IMX241_START2FRONT_SKY.cpf [MD5.1139B72E9CCB12A00D0BA01195CE83A8] - |A| - [27/01/2020 16:25:55] - (.-.) - [167.77 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\IMX241_START2FRONT_SKY_Video(1).cpf [MD5.1139B72E9CCB12A00D0BA01195CE83A8] - |A| - [27/01/2020 15:13:42] - (.-.) - [167.77 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\IMX241_START2FRONT_SKY_Video.cpf [MD5.CF8F4D695FF586D2448032710FAD8904] - |A| - [27/01/2020 16:25:55] - (.-.) - [40.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\IMX258_REAR.aiqd [MD5.6CF0A4151CEBBD50664EF4C35EC94434] - |A| - [27/01/2020 16:25:55] - (.-.) - [311.39 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\IMX258_START2REAR_SKY(1).cpf [MD5.6CF0A4151CEBBD50664EF4C35EC94434] - |A| - [27/01/2020 15:13:42] - (.-.) - [311.39 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\IMX258_START2REAR_SKY.cpf [MD5.E172D9B2DF8542B9BA124338476D65A8] - |A| - [27/01/2020 16:25:55] - (.-.) - [309.15 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\IMX258_START2REAR_SKY_4KVideo(1).cpf [MD5.E172D9B2DF8542B9BA124338476D65A8] - |A| - [27/01/2020 15:13:42] - (.-.) - [309.15 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\IMX258_START2REAR_SKY_4KVideo.cpf [MD5.D5082A13FF3DA91F6DE930951F6DA404] - |A| - [27/01/2020 16:25:55] - (.-.) - [312.56 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\IMX258_START2REAR_SKY_HD120fpsVideo(1).cpf [MD5.D5082A13FF3DA91F6DE930951F6DA404] - |A| - [27/01/2020 15:13:42] - (.-.) - [312.56 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\IMX258_START2REAR_SKY_HD120fpsVideo.cpf [MD5.1EF7FF713DD0E3DC8D969E77CABBAE3C] - |A| - [27/01/2020 16:25:55] - (.-.) - [311.37 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\IMX258_START2REAR_SKY_Video(1).cpf [MD5.1EF7FF713DD0E3DC8D969E77CABBAE3C] - |A| - [27/01/2020 15:13:42] - (.-.) - [311.37 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\IMX258_START2REAR_SKY_Video.cpf [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [0 Ko] - C:\WINDOWS\SysWOW64\inetsrv [MD5.4CED7C72B126C457F5E00A943B18B924] - |A| - [27/01/2020 15:14:16] - (.-.) - [146.45 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\InputHost(1)(1).dll [MD5.2B6D7ACE8C37A726F442B69DA1AC8B4A] - |A| - [28/01/2020 05:17:50] - (.-.) - [180.02 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\InputHost(1).dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [6674.5 Ko] - C:\WINDOWS\SysWOW64\InputMethod [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [2320 Ko] - C:\WINDOWS\SysWOW64\InstallShield [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:25:56] - [56604.07 Ko] - C:\WINDOWS\SysWOW64\Intel [MD5.E66B4BD4203818FC8203111D32512B88] - |A| - [27/01/2020 15:13:42] - (.Copyright © The Khronos Group Inc 2014 - OpenCL Client DLL.) - [102.01 Ko] - (2.1.0.0) - C:\WINDOWS\SysWOW64\Intel_OpenCL_ICD32.dll [MD5.A3D9D8020EA13FBB255C645C500CE646] - |A| - [27/01/2020 16:25:56] - (.Copyright © The Khronos Group Inc 2014 - OpenCL Client DLL.) - [111 Ko] - (2.1.0.0) - C:\WINDOWS\SysWOW64\Intel_OpenCL_ICD64.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [0 Ko] - C:\WINDOWS\SysWOW64\Ipmi [MD5.7D2445C2A8CB3A1DDA2972ED6D1741ED] - |A| - [27/01/2020 15:14:17] - (.-.) - [193 Ko] - (3.24.15.3) - C:\WINDOWS\SysWOW64\ir32_32original(1).dll [MD5.38D09762BB34B740F231EB8EF92A9C59] - |A| - [09/04/2019 09:58:11] - (.2005-2019 COMODO. - Internet Security Essentials.) - [200.22 Ko] - (1.6.13835.185) - C:\WINDOWS\SysWOW64\iseguard32.dll [MD5.250472A135D73A0ABA073EEF65A7F8B2] - |A| - [27/01/2020 15:13:43] - (.2005-2017 COMODO. - Internet Security Essentials.) - [4023.02 Ko] - (1.3.59977.152) - C:\WINDOWS\SysWOW64\ise_installer.exe [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [666.5 Ko] - C:\WINDOWS\SysWOW64\it-IT [MD5.3DDBC542B1410087A25A74C557649906] - |A| - [27/01/2020 15:14:18] - (.Copyright © 1997 - Intel Indeo® video IVF Source Filter 5.10.) - [143.5 Ko] - (5.10.2.51) - C:\WINDOWS\SysWOW64\ivfsrc(1).ax [MD5.7C0C25F4BA1084C4ABBEEA2C74194C5F] - |A| - [28/01/2020 05:18:43] - (.-.) - [6.79 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\kanji_1(1)(1).uce [MD5.7C0C25F4BA1084C4ABBEEA2C74194C5F] - |A| - [27/01/2020 15:14:19] - (.-.) - [6.79 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\kanji_1(1).uce [MD5.529BBD63519BBD654EF328454019693F] - |A| - [28/01/2020 05:18:44] - (.-.) - [8.29 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\kanji_2(1)(1).uce [MD5.529BBD63519BBD654EF328454019693F] - |A| - [27/01/2020 15:14:19] - (.-.) - [8.29 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\kanji_2(1).uce [MD5.214F51F66802C851F1C50BC662EDA828] - |A| - [27/01/2020 15:13:43] - (.-.) - [398.41 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\KBL_AIC.dll [MD5.C781EC82ED4F82C42ABE87774B56009C] - |A| - [27/01/2020 16:25:57] - (.-.) - [457.41 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\KBL_AIC64.dll [MD5.5ACD11DF2AA5F3E3F30F785589B70347] - |A| - [13/11/2005 20:07:12] - (.-.) - [6.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\kc.exe [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [4924.44 Ko] - C:\WINDOWS\SysWOW64\Keywords [MD5.6315AB54B0156C7B5B1B6E499601C171] - |A| - [29/10/2006 17:36:54] - (.Killer{R} -.) - [1158 Ko] - (2.8.4.0) - C:\WINDOWS\SysWOW64\killcopy.exe [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [28.5 Ko] - C:\WINDOWS\SysWOW64\kk-KZ [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [28 Ko] - C:\WINDOWS\SysWOW64\km-KH [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [31.5 Ko] - C:\WINDOWS\SysWOW64\kn-IN [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [467 Ko] - C:\WINDOWS\SysWOW64\ko-KR [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [29 Ko] - C:\WINDOWS\SysWOW64\kok-IN [MD5.7A7A04370A6030B9B0E8178DAD4A6E41] - |A| - [28/01/2020 05:23:46] - (.-.) - [12.57 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\korean(1)(1).uce [MD5.7A7A04370A6030B9B0E8178DAD4A6E41] - |A| - [27/01/2020 15:14:23] - (.-.) - [12.57 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\korean(1).uce [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [29.5 Ko] - C:\WINDOWS\SysWOW64\ku-Arab-IQ [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [30 Ko] - C:\WINDOWS\SysWOW64\ky-KG [MD5.0B110EA2041858D4B863680584E1A947] - |A| - [28/01/2020 05:23:55] - (.Copyright © 2004 Fraunhofer IIS - MPEG Audio Layer-3 Codec for MSACM.) - [177 Ko] - (3.4.0.0) - C:\WINDOWS\SysWOW64\l3codecp(1)(1).acm [MD5.1E6B8D8ADB19747237795AA869D77FE0] - |A| - [27/01/2020 15:14:24] - (.Copyright © 2004 Fraunhofer IIS - MPEG Audio Layer-3 Codec for MSACM.) - [185.5 Ko] - (3.4.0.0) - C:\WINDOWS\SysWOW64\l3codecp(1).acm [MD5.F0CC83E1BA7E24F9B3292160C28AECD7] - |A| - [27/01/2020 16:25:58] - (.-.) - [145.56 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\LargeRoom.bin [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [33 Ko] - C:\WINDOWS\SysWOW64\lb-LU [MD5.531FE5A2634D87A078017259F21D9736] - |A| - [28/01/2020 05:24:01] - (.-.) - [206.97 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\lcphrase(1)(1).tbl [MD5.531FE5A2634D87A078017259F21D9736] - |A| - [27/01/2020 15:14:24] - (.-.) - [206.97 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\lcphrase(1).tbl [MD5.D3C85593F8C4576FCF9B42AC48CA4368] - |A| - [28/01/2020 05:24:02] - (.-.) - [23.55 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\lcptr(1)(1).tbl [MD5.D3C85593F8C4576FCF9B42AC48CA4368] - |A| - [27/01/2020 15:14:24] - (.-.) - [23.55 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\lcptr(1).tbl [MD5.ED4B1271A2E2BC840696619E6DB9BC55] - |A| - [04/08/2004 09:00:00] - (.-.) - [896.45 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\libeay32.dll [MD5.B058DE688867787B5229A14BCDC3D701] - |A| - [27/01/2020 15:13:44] - (.-.) - [138.01 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\libEGL.dll [MD5.F73857DCC382FFFD100362B5EA30C837] - |A| - [27/01/2020 15:13:44] - (.-.) - [99.01 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\libGLESv1_CM.dll [MD5.0A819F7815AC0217A295B83A074D74EF] - |A| - [27/01/2020 15:13:44] - (.-.) - [109.51 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\libGLESv2.dll [MD5.D6834D1BA5633B96C628EC62AFE9241C] - |A| - [27/01/2020 15:13:44] - (.-.) - [10144.91 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\libia_cp.dll [MD5.0A815163FE721142D326FA94F09FCFD4] - |A| - [27/01/2020 16:28:04] - (.-.) - [12134.84 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\libia_cp64.dll [MD5.B65E8E52916A527F88486875EE291AA8] - |A| - [23/10/2012 04:17:38] - (.-.) - [10663.85 Ko] - (13.80.853.0) - C:\WINDOWS\SysWOW64\LogiDPP.dll [MD5.24764C249F769991079F6D4B14B822AF] - |A| - [23/10/2012 04:17:38] - (.-.) - [100.85 Ko] - (13.80.853.0) - C:\WINDOWS\SysWOW64\LogiDPPApp.exe [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [429.5 Ko] - C:\WINDOWS\SysWOW64\lt-LT [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [428.5 Ko] - C:\WINDOWS\SysWOW64\lv-LV [MD5.4D4248F6D008D86D5575EE5B154971AE] - |A| - [27/01/2020 16:28:10] - (.(c) 1996-2012 Logitech. - Logitech Co-Installer.) - [256.28 Ko] - (13.80.853.0) - C:\WINDOWS\SysWOW64\lvco1380853.dll [MD5.FF510CF2A7FA73192E7DB06D7C311799] - |A| - [27/01/2020 16:28:10] - (.(c) 1996-2012 Logitech. - Video Codec.) - [171.28 Ko] - (13.80.853.0) - C:\WINDOWS\SysWOW64\lvcod64.dll [MD5.BDC67729D0A4940C525654FF869C5289] - |A| - [23/10/2012 04:17:54] - (.(c) 1996-2012 Logitech. - Video Codec.) - [297.85 Ko] - (13.80.853.0) - C:\WINDOWS\SysWOW64\lvcodec2.dll [MD5.1A8AE8A66B6C289046276453768EF270] - |A| - [27/01/2020 16:28:10] - (.-.) - [28.8 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\lvcoin64.ini [MD5.E8C604C7E16CE90C0D4564EC06B118E8] - |A| - [23/10/2012 04:18:06] - (.(c) 1996-2012 Logitech. - Logitech Camera Property Pages.) - [529.85 Ko] - (13.80.853.0) - C:\WINDOWS\SysWOW64\LVUI2.dll [MD5.F13DA78D0873B2025556D65DB5E3210D] - |A| - [23/10/2012 04:18:06] - (.(c) 1996-2012 Logitech. - Logitech Camera Property Pages.) - [525.85 Ko] - (13.80.853.0) - C:\WINDOWS\SysWOW64\LVUI2RC.dll [MD5.B4CD287DFAA6578AC763A3800F0C2DC8] - |A| - [27/01/2020 16:26:00] - (.(c) 1996-2012 Logitech. - Logitech Camera Property Pages.) - [750.28 Ko] - (13.80.853.0) - C:\WINDOWS\SysWOW64\LVUI64.dll [MD5.CCFDDF84B42198B0AAD27D11ACFD254E] - |A| - [27/01/2020 16:26:00] - (.(c) 1996-2012 Logitech. - Logitech Camera Property Pages.) - [547.28 Ko] - (13.80.853.0) - C:\WINDOWS\SysWOW64\LVUIRC64.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [84180.32 Ko] - C:\WINDOWS\SysWOW64\Macromed [MD5.9D3C9572F9DDCD99FF55528FCC49A293] - |A| - [23/08/2001 12:00:00] - (.© 2001-2002 Dachshund Software - Mage Engine.) - [1356 Ko] - (1.0.0.0) - C:\WINDOWS\SysWOW64\MAGE.DLL [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 15:59:01] - [98.03 Ko] - C:\WINDOWS\SysWOW64\MailContactsCalendarSync [MD5.5B62BD1040274A1249A3EB6F0D34BF37] - |A| - [20/01/2020 17:48:32] - (.Copyright (C) 2013 AMD Inc. - Mantle loader.) - [123.52 Ko] - (9.1.10.77) - C:\WINDOWS\SysWOW64\mantle32.dll [MD5.F625F0416DE820C3E0D94BF0A37686BC] - |A| - [20/01/2020 17:48:32] - (.Copyright (C) 2013 AMD Inc. - Mantle extension library.) - [96.02 Ko] - (9.1.10.77) - C:\WINDOWS\SysWOW64\mantleaxl32.dll [MD5.B209D959831AEF092817ECF8756F71B3] - |A| - [27/01/2020 16:26:01] - (.-.) - [776 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\MBR2GPT.EXE [MD5.F2E9643DC05CD824F0E5525E5C940714] - |A| - [27/01/2020 16:26:02] - (.Copyright (C) 2016 - Samsung Modem Loader Service executable.) - [438.1 Ko] - (2.3.0.7) - C:\WINDOWS\SysWOW64\MdmLdrSvc.exe [MD5.69D04DE701CF1E8CE69C65D1671D2B3F] - |A| - [27/01/2020 16:26:02] - (.-.) - [107.46 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\MediumRoom.bin [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [29 Ko] - C:\WINDOWS\SysWOW64\mi-NZ [MD5.D2DE9D6B9B0BA17D0A0AC75A973848BD] - |A| - [27/03/2020 11:53:59] - (.-.) - [0.42 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\Microsoft.VC80.CRT.manifest [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [10158 Ko] - C:\WINDOWS\SysWOW64\migration [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [48587.4 Ko] - C:\WINDOWS\SysWOW64\migwiz [MD5.08749DCC252AE1148E3BEA32B3FFFBFC] - |A| - [12/12/2019 09:28:47] - (.-.) - [0.11 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\MixedRealityRuntime.json [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [30 Ko] - C:\WINDOWS\SysWOW64\mk-MK [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [32.5 Ko] - C:\WINDOWS\SysWOW64\ml-IN [MD5.0EF2541BCEA24F3489233B1F93AFD56E] - |AH| - [06/04/2020 19:04:12] - (.-.) - [76.36 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mlfcache.dat [MD5.C8BF077B236ED2803347BD95DE29BF68] - |A| - [12/12/2019 09:31:49] - (.-.) - [3.03 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mmc.exe.config [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [30.5 Ko] - C:\WINDOWS\SysWOW64\mn-MN [MD5.2CF0B546AA8A9863D54367948BF8AAB9] - |A| - [27/01/2020 16:26:04] - (.-.) - [1.08 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\Modellist.txt [MD5.6E1EF1F6FBB2002AE726199EA2EDFACE] - |RA| - [27/01/2020 16:28:15] - (.-.) - [30433.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\modem.bin [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:26:04] - [31068.88 Ko] - C:\WINDOWS\SysWOW64\modem_core [MD5.B83967E8E83318C36A2D4EF76EBD1D3B] - |A| - [15/08/2019 18:39:25] - (.-.) - [74.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\moveex.exe [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [29.5 Ko] - C:\WINDOWS\SysWOW64\mr-IN [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:26:05] - [0 Ko] - C:\WINDOWS\SysWOW64\MRT [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [30 Ko] - C:\WINDOWS\SysWOW64\ms-MY [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msacay.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msaccwy.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msadnss.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msadyl.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msadypw.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msaet.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msajoa.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msakydq.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msamwl.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msanf.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msapcrv.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msaru.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msasvie.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msatd.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msawfcp.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msaxktq.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msazfv.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msbbaqy.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msbbpfoi.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msbeuz.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msbgzf.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msbhwckg.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msbiwz.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msbjcu.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msbjjor.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msbjm.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msblos.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msbma.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msbmr.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msbngk.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msbnuzuf.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msboiy.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msbpx.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msbrfacy.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msbrq.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msbtdzz.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msbtrz.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msbvxg.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msbwkpa.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msbwyyc.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msbxzvk.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mscbu.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mscdhzs.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msces.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mscfm.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mscgtonl.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mschir.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mschwdo.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mscnns.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mscok.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mscqfeg.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mscqokq.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mscrl.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mscvi.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mscyjq.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mscyvt.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msdfqqf.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msdgh.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msdhu.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msdiajkz.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msdihde.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msdjudzm.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msdkvsm.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msdlcgyz.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msdlxbdp.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msdmaq.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msdof.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msdozzfb.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msdpdvf.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [136.5 Ko] - C:\WINDOWS\SysWOW64\MSDRM [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msdrpiai.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msdrs.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msdrxd.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [52.28 Ko] - C:\WINDOWS\SysWOW64\Msdtc [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msducxv.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msdvsei.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msdwc.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msdyrqpm.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msdzhigb.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msdzkpzn.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msdzswk.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msebqxg.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msebrfm.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msecsuer.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msedx.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mseeftjs.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mseftxsf.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mseis.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [17/10/2019 09:54:27] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msejfcw.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msemcudn.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msemkrg.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mseotin.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mseoxeo.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msepikn.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mseqbv.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msercj.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mserqgcn.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msesz.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mseuc.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mseufjcd.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msevaab.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mseyjzvr.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mseynw.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msezolqq.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msfap.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msfaute.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msfdfdm.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msfja.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msflu.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msfqjiq.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msfrn.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msfsalj.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msftr.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msfuyug.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msfwzhe.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msfxci.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msfxqj.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msgddy.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msgdz.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msgiusx.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msgkr.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msgnqzab.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msgoakn.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msgsc.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msgsn.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msgtkaj.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msgwlp.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msgxlksa.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msgxsb.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mshaq.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mshaqdna.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mshbxv.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mshepv.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mshgg.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mshgzsfw.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mshhdv.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mshhe.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mshhvd.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mshjdcl.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mshlkjc.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mshlmbr.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mshomysi.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mshoxxv.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mshreo.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mshtugop.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 10:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mshubb.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mshvkagt.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mshwj.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mshzasn.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mshzhovs.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mshzwr.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msiajsjn.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msiar.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msienbi.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msigz.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msiih.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msiittav.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msijd.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msinuxp.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msiolcug.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msivublt.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msiwwdr.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msizga.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msjaix.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msjasdu.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msjbhu.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msjconr.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msjdg.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msjek.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msjgkvl.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msjjgwd.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msjliu.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msjoqxv.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msjrolhp.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msjsknn.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msjuzz.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msjvn.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msjvpjga.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msjwdva.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msjzpfz.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mskar.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mskfgp.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mskguqks.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mskhcvhw.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mskhvxli.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mskiuhs.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mskjbe.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mskjmys.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msknb.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mskngtb.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msknjmj.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mskqnfdt.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mskqqoij.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mskriv.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mskrjip.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msksylfc.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mskvec.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mskyddz.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mskzni.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mskztt.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mslai.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mslajmww.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msldet.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mslepvz.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mslhjprn.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 10:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msljo.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mslkqzca.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mslkvn.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msllwc.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mslnhwwo.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mslse.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mslvxg.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mslxraxe.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mslxvmd.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msmavgfw.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msmbdjl.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msmcevrf.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msmgzh.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msmhdie.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msmhlyf.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msmjbt.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msmjl.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msmjm.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msmkp.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msmlq.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msmmapwn.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msmmj.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msmmubxz.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msmtel.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msmuaeob.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msmvdvyg.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msmvmijl.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msnahkbt.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msnam.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msnbhrp.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msnbkjfx.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msnck.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msncw.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msncx.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msnevozi.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msnjhfyr.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msnksv.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msnnzcp.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msnod.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msnospi.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msnptjyi.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msnqxar.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msnrdmbx.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msnssgii.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msntr.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msnxab.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msnxvajc.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msoarf.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msobyqs.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msobytv.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msoce.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msodaro.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msoeq.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msoes.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msoezb.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msogg.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msogki.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msoixi.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msokjuq.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msoktbpm.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msolthu.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msoqja.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msosaux.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msovfry.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msoxmqcq.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msozy.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mspfwbnh.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mspihc.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mspipcwo.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mspjfp.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msplsmh.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mspmkh.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mspomry.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mspshg.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mspswrl.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mspxi.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mspymcaw.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msqdcaj.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msqdsa.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msqevht.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msqgg.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msqlge.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msqlzuxh.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msqoqflm.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msqqrsib.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msqqt.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msqsdhi.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msqulzx.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msqwr.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msqwtkol.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msqwv.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msqyez.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msqyubgf.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msrbwl.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msrceut.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msrdb.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msrddq.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msrfyg.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msrgijl.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msrhn.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msrkghhw.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msrlqxe.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msrlw.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msrmcnqj.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msrmj.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msrni.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msrnive.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msroan.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msrpx.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msrrzz.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msrsb.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msrtkyw.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msrtyv.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msrulg.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msrxxuu.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msscux.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mssdv.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msshb.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mssizqkr.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msskx.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mssmnop.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mssodc.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mssqwfn.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mssrfq.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mssrpjiw.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mssuvm.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mssyc.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mssyyhm.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mstahux.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mstcnqmb.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mstcvxy.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mstdvxd.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mstdyapq.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msthnntz.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mstitij.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mstjezgd.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mstjl.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mstkre.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mstmdr.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mstmkcez.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mstpnkb.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mstqcntg.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mstron.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mstse.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mstsu.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mstujs.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mstuycv.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mstvgul.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mstxjtl.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mstyo.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msuaigpo.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msuakhki.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msufmav.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msugjsn.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msuhjjhn.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msuinfm.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msuiugmb.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msukfio.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msukg.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msulvk.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msupf.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msusskis.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msuwnpn.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msuxum.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msvbh.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msvcwqc.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msvgiqb.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msvifo.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msvlm.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msvls.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msvltg.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msvmdza.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msvmu.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msvphuus.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msvqcb.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msvqtxjh.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msvrjvy.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msvrsp.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msvtfwr.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msvvdp.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mswapayd.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mswas.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mswbh.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mswcqu.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mswho.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mswkrmd.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mswkxplg.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mswqem.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mswqxv.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mswsikje.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mswsmp.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mswsvqcf.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mswth.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mswug.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mswxc.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mswyi.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mswysxni.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mswyufb.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msxdt.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msxfaqw.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msxghlu.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msxjxhs.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msxkg.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msxllalu.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msxuf.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msxumam.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msxwz.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msxyobx.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msyhem.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msyiejo.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msyizj.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msyjdfy.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msyjwjqq.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msykf.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msynxnew.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msypirbn.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msyqfcf.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msyqfh.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msytjsfh.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msytsl.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msytv.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msywrrot.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msyxtt.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msyyodq.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msyznkxp.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mszaxxxw.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mszcdnw.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mszdo.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mszfkz.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mszfshp.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mszholcs.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mszje.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mszkgkac.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mszkq.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mszln.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mszmrhz.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mszmucnl.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msznu.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mszrvujv.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\msztyp.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mszyx.dll [MD5.6FD652753EEDC8C6146C4A6AC4045EA4] - |A| - [04/08/2004 09:00:00] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mszzibo.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [31 Ko] - C:\WINDOWS\SysWOW64\mt-MT [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [83.74 Ko] - C:\WINDOWS\SysWOW64\MUI [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [610.5 Ko] - C:\WINDOWS\SysWOW64\nb-NO [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [0 Ko] - C:\WINDOWS\SysWOW64\NDF [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [31.5 Ko] - C:\WINDOWS\SysWOW64\ne-NP [MD5.C146E873B22C3B300B21A859FE66C27A] - |A| - [27/01/2020 16:26:18] - (.-.) - [21.15 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\NetTrace.PLA.Diagnostics.xml [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [51 Ko] - C:\WINDOWS\SysWOW64\NetworkList [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [651 Ko] - C:\WINDOWS\SysWOW64\nl-NL [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [28.5 Ko] - C:\WINDOWS\SysWOW64\nn-NO [MD5.53F7546E8DAEFB3A0813F5E19C4613C9] - |A| - [24/03/2004 04:12:34] - (.Copyright © 1995-2004 Printing Communications Assoc., Inc. (PCAUSA) - NetStumbler NDIS 5.0 Protocol Driver.) - [16.88 Ko] - (5.3.16.58) - C:\WINDOWS\SysWOW64\nsndis5.sys [MD5.25513C7AD5A8097D95DECE57B7B0B0B9] - |A| - [24/03/2004 04:49:36] - (.Copyright © 1997-2004 Printing Communications Assoc., Inc. - NetStumbler 32 API & Platform Compatibility DLL.) - [92 Ko] - (5.3.16.58) - C:\WINDOWS\SysWOW64\nsndis50.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [30.5 Ko] - C:\WINDOWS\SysWOW64\nso-ZA [MD5.00000000000000000000000000000000] - |SD| - [12/12/2019 09:33:57] - [11344.5 Ko] - C:\WINDOWS\SysWOW64\Nui [MD5.34FFABE8384D7FD3A39D0A0073058FE7] - |A| - [27/01/2020 16:28:25] - (.-.) - [47.94 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\nv_data.bin [MD5.19C3C27105083637FCF230BF0C04E0E0] - |A| - [27/01/2020 16:28:25] - (.-.) - [0.02 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\nv_data.bin.md5 [MD5.5D4A5E27D573738E0C8C8FF4C0715DAF] - |A| - [27/01/2020 16:26:21] - (.-.) - [17.16 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\OEMDefaultAssociations.xml [MD5.F3DC097E834C1A11F2BEDFD429C644A9] - |A| - [27/01/2020 16:26:22] - (.-.) - [0.41 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\OkDone_80.contrast-black.png [MD5.BFE1CCA08FEFC8A3422F7DA615567D75] - |A| - [27/01/2020 16:26:22] - (.-.) - [0.43 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\OkDone_80.contrast-white.png [MD5.F3DC097E834C1A11F2BEDFD429C644A9] - |A| - [27/01/2020 16:26:22] - (.-.) - [0.41 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\OkDone_80.png [MD5.B3B9C8925432FDA674ACCA908FE3CFDE] - |A| - [12/12/2019 09:48:08] - (.-.) - [36.79 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\OneDrive.ico [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [17405.37 Ko] - C:\WINDOWS\SysWOW64\oobe [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [32.5 Ko] - C:\WINDOWS\SysWOW64\or-IN [MD5.459FB33AA2114A28C5932FEAA115B072] - |A| - [27/01/2020 16:26:23] - (.-.) - [45.82 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\OutdoorAudioEnvironment.bin [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [28.5 Ko] - C:\WINDOWS\SysWOW64\pa-Arab-PK [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [30 Ko] - C:\WINDOWS\SysWOW64\pa-IN [MD5.C412BBA31B6443874BC677B92620B161] - |A| - [27/08/2002 00:42:18] - (.-.) - [1.17 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\panadv.inf [MD5.AD93D5412F3A30D74D6FD5D7053CCB48] - |A| - [27/01/2020 16:26:23] - (.-.) - [375.45 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\PanelManagerSvc.exe [MD5.FF6651BF8443920A61D432E8C9CA3BE5] - |A| - [23/01/2020 15:57:42] - (.-.) - [0.25 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\PARTIZAN.TXT [MD5.C998E69D8884F49D0A6316DF96BA3DF2] - |A| - [19/11/1999 15:49:50] - (.Copyright (C) Matsushita Electric 1998 - DV Video for Windows Driver.) - [259.57 Ko] - (2.64.1119.1600) - C:\WINDOWS\SysWOW64\pdvcodec.dll [MD5.0C100E0085F62A51E3202EB8F5997687] - |A| - [15/08/2019 17:59:36] - (.-.) - [7.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\PEChecksum.exe [MD5.82B36D39067C90E20114AE1F87C2BEBB] - |A| - [15/08/2019 17:59:36] - (.-.) - [15.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\PEChecksum.x64 [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [86.5 Ko] - C:\WINDOWS\SysWOW64\PerceptionSimulation [MD5.578BAEFDD01D7BE3594D20F54A0FE997] - |A| - [27/01/2020 16:28:26] - (.-.) - [371.46 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\perfc007.dat [MD5.2C19A5CB7036DC1196A77A57A352DB49] - |A| - [27/01/2020 16:26:23] - (.-.) - [162.65 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\perfc009.dat [MD5.E0ADF97348AA0C54C0B2ACA5A51E034D] - |A| - [27/01/2020 16:28:26] - (.-.) - [376.85 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\perfc00A.dat [MD5.195367A470FC483E93A6DDD434FD71D8] - |A| - [27/01/2020 16:26:23] - (.-.) - [145.76 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\perfc00C.dat [MD5.C6A00700213A4CDFAC7B02FAABC2FA10] - |A| - [27/01/2020 16:28:26] - (.-.) - [39.57 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\perfd007.dat [MD5.1E60BC5E525063B96078DF17FBD3C4E1] - |A| - [27/01/2020 16:28:26] - (.-.) - [32.64 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\perfd009.dat [MD5.08728AEF33BBAC5884423C1597E74A29] - |A| - [27/01/2020 16:28:26] - (.-.) - [42.92 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\perfd00A.dat [MD5.9F9AF8517189B0D61B2615007E071084] - |A| - [27/01/2020 16:28:27] - (.-.) - [39.74 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\perfd00C.dat [MD5.9B74CB85AF324AA6AEC8592921C7C6DF] - |A| - [27/01/2020 16:28:27] - (.-.) - [1062.92 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\perfh007.dat [MD5.11A07DB29A597A60507F12A6D6559547] - |A| - [27/01/2020 16:26:23] - (.-.) - [767.83 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\perfh009.dat [MD5.CA97C9F81D68147DD4FA035DDBA3FA5F] - |A| - [27/01/2020 16:28:27] - (.-.) - [1106.73 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\perfh00A.dat [MD5.B763584C62D426DD4625C45910A92F1B] - |A| - [27/01/2020 16:26:23] - (.-.) - [771.3 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\perfh00C.dat [MD5.A88BF3D30466950D93432B879FCD3376] - |A| - [27/01/2020 16:07:08] - (.-.) - [1844.89 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\PerfStringBackup.INI [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:26:24] - [353.13 Ko] - C:\WINDOWS\SysWOW64\Phonexml [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [652.5 Ko] - C:\WINDOWS\SysWOW64\pl-PL [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:26:24] - [681 Ko] - C:\WINDOWS\SysWOW64\PointOfService [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 15:57:57] - [2099.82 Ko] - C:\WINDOWS\SysWOW64\Printing_Admin_Scripts [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:26:24] - [0 Ko] - C:\WINDOWS\SysWOW64\ProximityToast [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [30.5 Ko] - C:\WINDOWS\SysWOW64\prs-AF [MD5.007893E8374C766471239EB291BA8C17] - |A| - [27/01/2020 16:28:31] - (.-.) - [4.05 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\psmodulediscoveryprovider.mof [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [650.5 Ko] - C:\WINDOWS\SysWOW64\pt-BR [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [647.5 Ko] - C:\WINDOWS\SysWOW64\pt-PT [MD5.D5315B9A346EA9AEAD836DBCE8FED34A] - |A| - [27/01/2020 15:13:48] - (.-.) - [15023.41 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\pvl.dll [MD5.5F5329F815A833452B35E018C6A11906] - |A| - [27/01/2020 16:28:32] - (.-.) - [30817.34 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\pvl64.dll [MD5.6BE006E30928C81322196A1949B042E2] - |A| - [27/01/2020 15:13:49] - (.-.) - [749.91 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\pvl_perspective_control.dll [MD5.8AADB02E36788C9BDA7B507963F22148] - |A| - [27/01/2020 16:28:35] - (.-.) - [485.36 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\pvl_perspective_control64.dll [MD5.70A36915F333E318C67E463375F192BF] - |A| - [27/01/2020 15:13:49] - (.-.) - [108.41 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\pvl_skin_smoothing_denoising.dll [MD5.5B5657DB98F96C0A460FBC2CA073A112] - |A| - [27/01/2020 16:28:35] - (.-.) - [124.86 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\pvl_skin_smoothing_denoising64.dll [MD5.C32ECB99AD25E9A04F01C8665DF29EF8] - |A| - [27/01/2020 16:28:35] - (.-.) - [18.7 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\pwdrvio.sys [MD5.D619356B955EEFA642F5FF72755E8B3C] - |A| - [27/01/2020 16:28:35] - (.-.) - [12.21 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\pwdspio.sys [MD5.CC2BDE8319ED1C3BC60513E0A6037549] - |A| - [27/01/2020 16:28:35] - (.-.) - [3516.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\pwNative.exe [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [32.5 Ko] - C:\WINDOWS\SysWOW64\quc-Latn-GT [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [30.5 Ko] - C:\WINDOWS\SysWOW64\quz-PE [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [71.24 Ko] - C:\WINDOWS\SysWOW64\ras [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [0 Ko] - C:\WINDOWS\SysWOW64\RasToast [MD5.49A390CA472675F87262798CBD46BBEA] - |A| - [27/01/2020 16:28:37] - (.Copyright (C) 2016 - Samsung Radio Control Delegation Service executable.) - [460.1 Ko] - (2.3.0.7) - C:\WINDOWS\SysWOW64\RCDService.exe [MD5.692DC6EF573FFCDD9DFB55D1C783DB93] - |A| - [27/01/2020 16:28:39] - (.-.) - [0.16 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\removehypervisor.mof [MD5.C6CA43573C21CA6392F57F238C8391FC] - |A| - [27/01/2020 16:28:40] - (.-.) - [39.45 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\Repository.reg [MD5.E17EAD4E09FB96BD6DB717CB605B17F1] - |A| - [27/01/2020 16:28:40] - (.-.) - [8.86 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\ResPriHMImageList [MD5.8286304CD9A20E2A4621D931F1CEF5CB] - |A| - [27/01/2020 16:28:40] - (.-.) - [8.28 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\ResPriImageList [MD5.831C579709F4761E4AB7053FCF4176EC] - |A| - [27/01/2020 16:28:40] - (.-.) - [0.74 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\RestartNowPower_80.contrast-black.png [MD5.DF286186041C6BF73C5DC21CEEEFFED5] - |A| - [27/01/2020 16:28:40] - (.-.) - [0.77 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\RestartNowPower_80.contrast-white.png [MD5.831C579709F4761E4AB7053FCF4176EC] - |A| - [27/01/2020 16:28:40] - (.-.) - [0.74 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\RestartNowPower_80.png [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [0 Ko] - C:\WINDOWS\SysWOW64\restore [MD5.D07E424408708A52CC5680F2C552EE5A] - |A| - [27/01/2020 16:28:41] - (.-.) - [17.07 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\results.xml [MD5.CC8CBFB54680D57C3767A631A0D291D1] - |A| - [27/01/2020 16:28:42] - (.-.) - [26.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\RstMwEventLogMsg.dll [MD5.00000000000000000000000000000000] - |D| - [31/08/2016 15:59:44] - [7242.61 Ko] - C:\WINDOWS\SysWOW64\RTCOM [MD5.E80F1A83EA9CA6BBB614BF0BB1303EAB] - |A| - [27/01/2020 16:26:28] - (.-.) - [61 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\runexehelper.exe [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [29.5 Ko] - C:\WINDOWS\SysWOW64\rw-RW [MD5.0EF31C4363277197B9528FDC80128B7E] - |A| - [27/01/2020 16:26:28] - (.Copyright (C) 2017 -.) - [26.61 Ko] - (1.0.48.0) - C:\WINDOWS\SysWOW64\SamsungSystemAgentInstaller.dll [MD5.5C18CD22BE4628865FCB63337A6E5EF6] - |A| - [27/01/2020 16:26:28] - (.-.) - [10.18 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\ScavengeSpace.xml [MD5.2F24BC74DCB28FE032C1596755385917] - |A| - [27/01/2020 16:26:28] - (.-.) - [0.53 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\ScheduleTime_80.contrast-black.png [MD5.E72B1B6800DE45AA9AE7E10F899E5999] - |A| - [27/01/2020 16:26:28] - (.-.) - [0.54 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\ScheduleTime_80.contrast-white.png [MD5.2F24BC74DCB28FE032C1596755385917] - |A| - [27/01/2020 16:26:29] - (.-.) - [0.53 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\ScheduleTime_80.png [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [30 Ko] - C:\WINDOWS\SysWOW64\sd-Arab-PK [MD5.00000000000000000000000000000000] - |D| - [06/09/2016 16:52:31] - [129.71 Ko] - C:\WINDOWS\SysWOW64\sda [MD5.99F86B98160742F3395A688D70B45FF5] - |A| - [27/01/2020 16:26:29] - (.-.) - [162.6 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\SecRilProxy.dll [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:26:29] - [4.85 Ko] - C:\WINDOWS\SysWOW64\SecureBootUpdates [MD5.A8308D2F3DDE0745E8B678BF69A2ECD0] - |A| - [27/01/2020 16:28:44] - (.-.) - [8 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\settings.dat [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [29.5 Ko] - C:\WINDOWS\SysWOW64\si-LK [MD5.55AA2F021E09B07B7F36E1C1F439C1E8] - |A| - [27/01/2020 16:26:36] - (.-.) - [241.46 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\SingleBom(1).xml [MD5.55AA2F021E09B07B7F36E1C1F439C1E8] - |A| - [27/01/2020 15:13:49] - (.-.) - [241.46 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\SingleBom.xml [MD5.9600A53FFCD61F92ED1933AF66EF2E42] - |A| - [27/01/2020 16:26:36] - (.-.) - [951.41 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\SingleBom2(1).xml [MD5.9600A53FFCD61F92ED1933AF66EF2E42] - |A| - [27/01/2020 15:13:49] - (.-.) - [951.41 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\SingleBom2.xml [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [436.5 Ko] - C:\WINDOWS\SysWOW64\sk-SK [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [433.5 Ko] - C:\WINDOWS\SysWOW64\sl-SI [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 15:57:57] - [261.19 Ko] - C:\WINDOWS\SysWOW64\slmgr [MD5.DAC275ABAAD2B689D7BB3685E4032072] - |A| - [27/01/2020 16:26:37] - (.-.) - [68.15 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\SmallRoom.bin [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [12113.02 Ko] - C:\WINDOWS\SysWOW64\SMI [MD5.55121989BE7B289813D419BA0FDEE8B7] - |A| - [27/01/2020 16:26:38] - (.-.) - [0.9 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\Snooze_80.contrast-black.png [MD5.E30B7D226E7B5B0EC2B9FC2316694ECC] - |A| - [27/01/2020 16:26:38] - (.-.) - [0.88 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\Snooze_80.contrast-white.png [MD5.55121989BE7B289813D419BA0FDEE8B7] - |A| - [27/01/2020 16:26:38] - (.-.) - [0.9 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\Snooze_80.png [MD5.8D30AAF519A40D69F6BABFFD60C75E56] - |A| - [27/01/2020 16:26:39] - (.-.) - [37 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\SpectrumSyncClient.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [5151.18 Ko] - C:\WINDOWS\SysWOW64\Speech [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [13073.62 Ko] - C:\WINDOWS\SysWOW64\Speech_OneCore [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [8003.61 Ko] - C:\WINDOWS\SysWOW64\spp [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [47.22 Ko] - C:\WINDOWS\SysWOW64\sppui [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [30.5 Ko] - C:\WINDOWS\SysWOW64\sq-AL [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [29.5 Ko] - C:\WINDOWS\SysWOW64\sr-Cyrl-BA [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [29.5 Ko] - C:\WINDOWS\SysWOW64\sr-Cyrl-RS [MD5.00000000000000000000000000000000] - |D| - [16/07/2016 13:47:48] - [0 Ko] - C:\WINDOWS\SysWOW64\sr-Latn-CS [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [434.5 Ko] - C:\WINDOWS\SysWOW64\sr-Latn-RS [MD5.BA7D4E5FAE64BD0403C7F7E91CD93F77] - |A| - [12/12/2019 09:28:28] - (.-.) - [11.03 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\srms-apr-v.dat [MD5.DC9450258D80F46AEF8EF063A7C629B0] - |A| - [12/12/2019 09:28:28] - (.-.) - [19.03 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\srms-apr.dat [MD5.047BCF71FB0E5EC754437879E8DAA7F6] - |A| - [27/01/2020 16:28:48] - (.-.) - [56.38 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\srms.dat [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [0 Ko] - C:\WINDOWS\SysWOW64\sru [MD5.5C5F8FF41287C7B05E765FE8A870157C] - |A| - [12/12/2019 09:26:42] - (.-.) - [328.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\ssdm.dll [MD5.353618698E3796A00CE44B0411BF6AD4] - |A| - [04/08/2004 09:00:00] - (.-.) - [187.19 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\ssleay32.dll [MD5.DEEAA7E52C0D72BF01CCA0E5474ED335] - |A| - [17/08/2015 17:29:16] - (.© PoINT Software & Systems GmbH 1994-2012 - PoINT Shared DLL.) - [70.32 Ko] - (3.0.0.25) - C:\WINDOWS\SysWOW64\STRING32.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [637.5 Ko] - C:\WINDOWS\SysWOW64\sv-SE [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [29 Ko] - C:\WINDOWS\SysWOW64\sw-KE [MD5.58D904A2FA970BC23B636C47CB60E649] - |A| - [07/01/2020 16:34:25] - (.-.) - [0.01 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\SysMachine.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 15:57:57] - [1282.56 Ko] - C:\WINDOWS\SysWOW64\sysprep [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:26:44] - [922.78 Ko] - C:\WINDOWS\SysWOW64\SystemResetPlatform [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [34 Ko] - C:\WINDOWS\SysWOW64\ta-IN [MD5.1226C3F65AC1E26E1F960A1CC74EB8BD] - |A| - [12/12/2019 09:28:15] - (.Copyright (c) libarchive authors - bsdtar archive tool.) - [42.5 Ko] - (3.3.2.0) - C:\WINDOWS\SysWOW64\tar.exe [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [0 Ko] - C:\WINDOWS\SysWOW64\Tasks [MD5.D602CA245CC6774A0981B607F0675609] - |A| - [27/01/2020 16:28:50] - (.-.) - [58.71 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\tcpmon.ini [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [30 Ko] - C:\WINDOWS\SysWOW64\te-IN [MD5.CB86C6A16A941D3E074136DC5AF39171] - |A| - [12/12/2019 09:27:00] - (.-.) - [1356.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll [MD5.06F0C3C0CAC34C0E3DBE5ECD0CD58EC0] - |A| - [12/12/2019 09:27:00] - (.-.) - [588.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\TextShaping.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [32 Ko] - C:\WINDOWS\SysWOW64\tg-Cyrl-TJ [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [394.5 Ko] - C:\WINDOWS\SysWOW64\th-TH [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [22.5 Ko] - C:\WINDOWS\SysWOW64\ti-ET [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [27.5 Ko] - C:\WINDOWS\SysWOW64\tk-TM [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [32.5 Ko] - C:\WINDOWS\SysWOW64\tn-ZA [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:26:48] - [330.69 Ko] - C:\WINDOWS\SysWOW64\ToastGenerator [MD5.2DE97232E3FCB778F76F2964362CBC72] - |A| - [12/12/2019 09:26:49] - (.-.) - [220.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\TpmTool.exe [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [607.5 Ko] - C:\WINDOWS\SysWOW64\tr-TR [MD5.B88B8D017386A00D7724519F475317A0] - |A| - [27/01/2020 16:26:48] - (.-.) - [10.33 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\TransformPPSToWlan.xslt [MD5.2F05390B798363D51EBE65D6320CD45E] - |A| - [27/01/2020 16:26:48] - (.-.) - [1.65 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\TransformPPSToWlanCredentials.xslt [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [28.5 Ko] - C:\WINDOWS\SysWOW64\tt-RU [MD5.F76BD364312E9E25D94041C57D7A5F21] - |A| - [12/12/2019 09:27:00] - (.-.) - [42.33 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\umpdc.dll [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:26:49] - [2739.92 Ko] - C:\WINDOWS\SysWOW64\UNP [MD5.5DF89E27F8161E0105D129EB32AFD06F] - |A| - [16/10/2002 00:54:04] - (.-.) - [149.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\unrar.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [29.5 Ko] - C:\WINDOWS\SysWOW64\ur-PK [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [32 Ko] - C:\WINDOWS\SysWOW64\uz-Latn-UZ [MD5.DD4447DFCB5018987FDA850C6BCDE2A7] - |A| - [27/01/2020 16:26:52] - (.-.) - [0.04 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\VersionID.txt [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [31.5 Ko] - C:\WINDOWS\SysWOW64\vi-VN [MD5.C4F97E10038EDC4E772480B0DA11B9D8] - |A| - [11/12/2002 10:19:32] - (.Copyright (C) 2000-2002 Gabest - vobsub.) - [360 Ko] - (2.0.23.0) - C:\WINDOWS\SysWOW64\vobsub.dll [MD5.F6580F5D0408FCD200F535F08BEA1C18] - |A| - [27/01/2020 16:28:56] - (.Copyright (C) 2015-2016 - Vulkan Loader.) - [259.28 Ko] - (1.0.33.0) - C:\WINDOWS\SysWOW64\vulkan-1(1).dll [MD5.F6580F5D0408FCD200F535F08BEA1C18] - |A| - [27/01/2020 16:28:56] - (.Copyright (C) 2015-2016 - Vulkan Loader.) - [259.28 Ko] - (1.0.33.0) - C:\WINDOWS\SysWOW64\vulkan-1-1-0-33-0(1).dll [MD5.1083642C30E7A3F79D565698BC1B70E4] - |A| - [27/01/2020 15:13:51] - (.Copyright (C) 2015-2016 - Vulkan Loader.) - [265.28 Ko] - (1.0.33.0) - C:\WINDOWS\SysWOW64\vulkan-1-1-0-33-0.dll [MD5.1083642C30E7A3F79D565698BC1B70E4] - |A| - [27/01/2020 15:13:51] - (.Copyright (C) 2015-2016 - Vulkan Loader.) - [265.28 Ko] - (1.0.33.0) - C:\WINDOWS\SysWOW64\vulkan-1.dll [MD5.324D0656179A6237150B851A03F2FB17] - |A| - [27/01/2020 16:28:56] - (.-.) - [122.28 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\vulkaninfo(1).exe [MD5.324D0656179A6237150B851A03F2FB17] - |A| - [27/01/2020 16:28:56] - (.-.) - [122.28 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\vulkaninfo-1-1-0-33-0(1).exe [MD5.900B60ECDDF695C0A55CA7C82AD75668] - |A| - [27/01/2020 15:13:51] - (.-.) - [108.28 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\vulkaninfo-1-1-0-33-0.exe [MD5.900B60ECDDF695C0A55CA7C82AD75668] - |A| - [27/01/2020 15:13:51] - (.-.) - [108.28 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\vulkaninfo.exe [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [131777.25 Ko] - C:\WINDOWS\SysWOW64\wbem [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 15:57:57] - [0 Ko] - C:\WINDOWS\SysWOW64\WCN [MD5.6EDD021A8B6457DDE09DE7B7FA4E8C8B] - |A| - [27/01/2020 16:26:55] - (.-.) - [0.6 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\WdsUnattendTemplate.xml [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:26:57] - [1.12 Ko] - C:\WINDOWS\SysWOW64\WinBioDatabase [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:26:57] - [80360.22 Ko] - C:\WINDOWS\SysWOW64\WinBioPlugIns [MD5.24DF60514CD1C93D10AECA3CCC93E261] - |A| - [12/12/2019 09:27:00] - (.-.) - [477.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\WindowManagementAPI.dll [MD5.8F8AA7409EA799D653EA1754163226BC] - |A| - [12/12/2019 09:27:00] - (.-.) - [113 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\WindowsDefaultHeatProcessor.dll [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [26826.88 Ko] - C:\WINDOWS\SysWOW64\WindowsPowerShell [MD5.00000000000000000000000000000000] - |D| - [27/01/2020 16:27:00] - [0 Ko] - C:\WINDOWS\SysWOW64\winevt [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [6204.79 Ko] - C:\WINDOWS\SysWOW64\WinMetadata [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 15:57:57] - [428.86 Ko] - C:\WINDOWS\SysWOW64\winrm [MD5.156E6300DF4379290F181C518D2233C1] - |A| - [03/04/2020 01:06:19] - (.-.) - [0.15 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\winsevr.dat [MD5.63CFE4B848F85D1883FE8D9F1820B667] - |A| - [27/01/2020 16:29:06] - (.Copyright (C) 2015 Samsung Electronics Co., Ltd. - WLAN SAR Service.) - [54.5 Ko] - (1.0.0.7) - C:\WINDOWS\SysWOW64\WlSarService.exe [MD5.128EC62FF59A59BEB5772E52ED8D3148] - |A| - [10/09/1999 13:06:00] - (.Copyright © 1989-1999 Adaptec, Inc. - ASPI for Win32 (95/NT) DLL.) - [44 Ko] - (4.6.0.1021) - C:\WINDOWS\SysWOW64\WNASPI32.DLL [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [27.5 Ko] - C:\WINDOWS\SysWOW64\wo-SN [MD5.C30C621748C66CE751B19B2788559A3E] - |A| - [27/01/2020 16:29:09] - (.-.) - [4.58 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\wpcmon.png [MD5.69FEC1494F4C454E994D27CA6750832B] - |A| - [27/01/2020 16:29:10] - (.-.) - [0.71 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\wpr.config.xml [MD5.E1FEDF746C5EE63886B06756867F728C] - |A| - [27/01/2020 15:13:52] - (.Copyright (C) 2012 - WSABI.) - [42.28 Ko] - (1.0.0.3) - C:\WINDOWS\SysWOW64\wsabi.dll [MD5.EE0400D000267864C41B55EFC0C8F357] - |A| - [20/01/2020 14:45:56] - (.-.) - [150 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\WSContextMenu.dll [MD5.4C1FEAC843B5EBA3D82CE69CFADF99F0] - |A| - [20/01/2020 14:49:29] - (.All rights reserved. - ATLMovie Module.) - [149.5 Ko] - (2.0.1.12) - C:\WINDOWS\SysWOW64\WS_ATLMovie.dll [MD5.8890DFD6C6EDD9D5E53461197CC88948] - |A| - [12/12/2019 09:27:00] - (.-.) - [67 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\xboxgipsynthetic.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [30 Ko] - C:\WINDOWS\SysWOW64\xh-ZA [MD5.00000000000000000000000000000000] - |D| - [30/12/2019 01:51:37] - [40.63 Ko] - C:\WINDOWS\SysWOW64\XPSViewer [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [29 Ko] - C:\WINDOWS\SysWOW64\yo-NG [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [401.54 Ko] - C:\WINDOWS\SysWOW64\zh-CN [MD5.00000000000000000000000000000000] - |D| - [16/07/2016 13:47:48] - [0 Ko] - C:\WINDOWS\SysWOW64\zh-HK [MD5.00000000000000000000000000000000] - |D| - [12/12/2019 09:33:57] - [367.5 Ko] - C:\WINDOWS\SysWOW64\zh-TW [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:22:49] - [30 Ko] - C:\WINDOWS\SysWOW64\zu-ZA ---------- | [.android] [28/04/2019 10:10:21] - |A| - [1704] - C:\Users\jean-\.android\adbkey [28/04/2019 10:10:21] - |A| - [716] - C:\Users\jean-\.android\adbkey.pub [16/03/2020 19:51:08] - |A| - [553] - C:\Users\jean-\.android\adb_usb.ini ---------- | [.cache] [04/05/2019 09:31:58] - |D| - [56] - C:\Users\jean-\.cache\aria2 ---------- | [.eclipse] [02/04/2020 20:28:56] - |D| - [20] - C:\Users\jean-\.eclipse\org.eclipse.oomph.p2 ---------- | [.MemuHyperv] [16/03/2020 19:55:06] - |A| - [1282] - C:\Users\jean-\.MemuHyperv\MemuHyperv.xml [16/03/2020 19:53:03] - |A| - [1118] - C:\Users\jean-\.MemuHyperv\MemuHyperv.xml-prev [16/03/2020 21:37:25] - |A| - [2177] - C:\Users\jean-\.MemuHyperv\MEmuSVC.log [16/03/2020 20:33:07] - |A| - [2498] - C:\Users\jean-\.MemuHyperv\MEmuSVC.log.1 [16/03/2020 20:32:35] - |A| - [5426] - C:\Users\jean-\.MemuHyperv\MEmuSVC.log.2 [16/03/2020 20:32:05] - |A| - [2498] - C:\Users\jean-\.MemuHyperv\MEmuSVC.log.3 [16/03/2020 19:57:31] - |A| - [2498] - C:\Users\jean-\.MemuHyperv\MEmuSVC.log.4 [16/03/2020 19:56:28] - |A| - [3451] - C:\Users\jean-\.MemuHyperv\MEmuSVC.log.5 [16/03/2020 19:54:40] - |A| - [2461] - C:\Users\jean-\.MemuHyperv\MEmuSVC.log.6 [16/03/2020 19:52:57] - |A| - [2352] - C:\Users\jean-\.MemuHyperv\MEmuSVC.log.7 [16/03/2020 19:52:34] - |A| - [2232] - C:\Users\jean-\.MemuHyperv\MEmuSVC.log.8 ---------- | [.nx] [02/08/2019 10:26:01] - |D| - [7883] - C:\Users\jean-\.nx\config [02/08/2019 10:26:01] - |D| - [0] - C:\Users\jean-\.nx\temp ---------- | [.p2] [02/04/2020 20:28:56] - |D| - [0] - C:\Users\jean-\.p2\org.eclipse.equinox.p2.engine [02/04/2020 20:28:56] - |A| - [25] - C:\Users\jean-\.p2\pools.info [02/04/2020 20:28:56] - |A| - [0] - C:\Users\jean-\.p2\profiles.info ---------- | [.smplayer] ---------- | [.VirtualBox] ---------- | [3D Objects] [19/04/2019 09:10:16] - |ASH| - [298] - C:\Users\jean-\3D Objects\desktop.ini [18/01/2020 16:03:04] - |A| - [993192] - C:\Users\jean-\3D Objects\PROCESSCLOSE_2_08.01.17.1.del [03/04/2020 11:22:00] - |A| - [28426960] - C:\Users\jean-\3D Objects\Vocal 014___.m4a [03/04/2020 11:22:03] - |A| - [81] - C:\Users\jean-\3D Objects\vocal 016___.m3u [03/04/2020 11:22:03] - |A| - [41844653] - C:\Users\jean-\3D Objects\Vocal 016___.m4a ---------- | [AppData] [30/12/2019 02:30:43] - |D| - [4698898330] - C:\Users\jean-\AppData\Local [28/08/2016 12:41:30] - |D| - [52330263] - C:\Users\jean-\AppData\LocalLow [30/12/2019 02:30:43] - |HD| - [579593739] - C:\Users\jean-\AppData\Roaming ---------- | [Application Data] ---------- | [Contacts] [28/08/2016 12:43:49] - |ASH| - [412] - C:\Users\jean-\Contacts\desktop.ini ---------- | [Cookies] ---------- | [Desktop] [23/01/2020 11:17:31] - |D| - [772123253] - C:\Users\jean-\Desktop\1689 [23/01/2020 10:12:35] - |D| - [591758878] - C:\Users\jean-\Desktop\2e19 [06/04/2020 10:44:53] - |A| - [1381] - C:\Users\jean-\Desktop\Advanced Disk Cleaner.lnk [06/04/2020 10:45:42] - |A| - [1249] - C:\Users\jean-\Desktop\Advanced Task Manager.lnk [06/04/2020 10:39:40] - |A| - [1746] - C:\Users\jean-\Desktop\Advanced Uninstaller PRO 12.lnk [13/03/2020 14:40:49] - |AD| - [26876125] - C:\Users\jean-\Desktop\boot [09/09/2016 16:27:19] - |D| - [2108173995] - C:\Users\jean-\Desktop\cadeaux muscade moulue jessica jessica franprix temptations & lfsu100%sf [05/04/2020 09:19:38] - |A| - [1024] - C:\Users\jean-\Desktop\Chercher tout.lnk [10/02/2020 20:42:48] - |D| - [46770744] - C:\Users\jean-\Desktop\claude couderc tools [10/03/2020 10:45:42] - |D| - [0] - C:\Users\jean-\Desktop\DU Recorder Videos [29/10/2019 09:17:28] - |D| - [63825724] - C:\Users\jean-\Desktop\dépannage pavé numérique [13/03/2020 14:42:15] - |AD| - [25206407] - C:\Users\jean-\Desktop\EFI [10/03/2020 10:37:16] - |D| - [502723] - C:\Users\jean-\Desktop\Hosts-MEP [13/03/2020 14:43:37] - |AD| - [104874] - C:\Users\jean-\Desktop\hp [10/03/2020 10:43:20] - |D| - [281901441] - C:\Users\jean-\Desktop\intermar'shit de l'art du moine anti-bug framo mac ux themepack [29/03/2020 11:15:40] - |D| - [179313907] - C:\Users\jean-\Desktop\Laurent, sifaou, carole, nathalie, christine, léa, lynnlo, amélie, noémie Anti-JJAD Suite & Goodies [01/04/2020 15:46:44] - |A| - [46946] - C:\Users\jean-\Desktop\Look_my_hardware.txt [16/03/2020 19:56:42] - |D| - [0] - C:\Users\jean-\Desktop\MEmu Download [10/03/2020 10:37:01] - |D| - [5766] - C:\Users\jean-\Desktop\MEP-CleanTemps [05/04/2020 15:06:55] - |A| - [1144] - C:\Users\jean-\Desktop\MyPC Backup.lnk [06/04/2020 10:34:53] - |A| - [1480] - C:\Users\jean-\Desktop\Orange Defender Antivirus.lnk [23/01/2020 10:20:16] - |D| - [292739664] - C:\Users\jean-\Desktop\out [10/03/2020 10:45:42] - |D| - [0] - C:\Users\jean-\Desktop\PHOTO [27/01/2020 12:44:25] - |D| - [0] - C:\Users\jean-\Desktop\placard des objets confisqués anti-dfm1&2 BNAN sjc a le b [10/01/2020 05:45:40] - |D| - [63243] - C:\Users\jean-\Desktop\playlists [10/02/2020 20:42:52] - |D| - [350728] - C:\Users\jean-\Desktop\Quick Any2Ico [10/03/2020 10:41:51] - |D| - [0] - C:\Users\jean-\Desktop\rapports zhpsuite galaxy book [10/03/2020 10:41:51] - |D| - [155070896] - C:\Users\jean-\Desktop\rapports zhpsuite tour compaq [10/03/2020 10:45:42] - |D| - [0] - C:\Users\jean-\Desktop\RECORD [13/03/2020 14:34:02] - |AD| - [330815405] - C:\Users\jean-\Desktop\Recovery [10/03/2020 10:41:51] - |D| - [196574] - C:\Users\jean-\Desktop\Saamu _ - CleanTemps_files [10/02/2020 20:42:52] - |D| - [79661648] - C:\Users\jean-\Desktop\scoped_dir8752_12749 [10/02/2020 20:42:56] - |D| - [27004352] - C:\Users\jean-\Desktop\scoped_dir8752_25698 [10/02/2020 20:42:58] - |D| - [6679761] - C:\Users\jean-\Desktop\scoped_dir8752_28313 [13/03/2020 14:34:05] - |AD| - [3952548642] - C:\Users\jean-\Desktop\sources [10/02/2020 20:42:31] - |D| - [1201664] - C:\Users\jean-\Desktop\TileCreatorProxy [10/02/2020 20:42:32] - |D| - [48974] - C:\Users\jean-\Desktop\trusty [04/04/2020 12:22:23] - |A| - [206930] - C:\Users\jean-\Desktop\Tweaking.com - Windows Repair 2019 - Pre-Scan.txt [04/04/2020 17:12:59] - |A| - [509626] - C:\Users\jean-\Desktop\Tweaking.com - Windows Repair 2019 - Repair Repair Reparse Points Log.txt [07/04/2020 10:46:17] - |A| - [1487] - C:\Users\jean-\Desktop\UsbFix.lnk [10/03/2020 10:45:42] - |D| - [1064534016] - C:\Users\jean-\Desktop\VIDEO [06/04/2020 10:43:14] - |A| - [1288] - C:\Users\jean-\Desktop\VPN PRO.lnk [01/04/2020 13:42:12] - |A| - [1136823] - C:\Users\jean-\Desktop\ZHPDiag.html [01/04/2020 13:44:32] - |A| - [489731] - C:\Users\jean-\Desktop\zhpdiag.txt [01/04/2020 13:42:15] - |D| - [3345265] - C:\Users\jean-\Desktop\ZHPDiag_files [01/04/2020 13:39:24] - |A| - [61590] - C:\Users\jean-\Desktop\ZHPFix.txt ---------- | [Doctor Web] [23/05/2019 13:57:37] - |SHD| - [53848652985] - C:\Users\jean-\Doctor Web\CureIt Quarantine [23/05/2019 11:27:04] - |A| - [860024626] - C:\Users\jean-\Doctor Web\cureit.log ---------- | [Documents] [14/05/2019 07:36:13] - |D| - [677925095] - C:\Users\jean-\Documents\.tmp.drivedownload [25/04/2019 12:08:55] - |D| - [1078002630] - C:\Users\jean-\Documents\3-events nouveau logo blini [18/11/2010 18:27:30] - |A| - [914432] - C:\Users\jean-\Documents\7z.dll [21/05/2019 09:02:58] - |A| - [6154648] - C:\Users\jean-\Documents\adsfix_V6_13.05.19.1.exe [18/03/2016 11:58:40] - |A| - [1381] - C:\Users\jean-\Documents\adware.txt [03/05/2019 13:55:02] - |D| - [0] - C:\Users\jean-\Documents\AIDA64 Reports [22/06/2019 09:39:32] - |D| - [0] - C:\Users\jean-\Documents\Any Audio Converter [07/09/2016 14:47:15] - |D| - [179] - C:\Users\jean-\Documents\AoaoPhoto Digital Studio [03/02/2020 16:45:42] - |D| - [76904667] - C:\Users\jean-\Documents\Apeaksoft Studio [09/08/2019 07:32:40] - |D| - [28116818] - C:\Users\jean-\Documents\App [30/08/2019 11:44:02] - |A| - [1508] - C:\Users\jean-\Documents\argument adsfix muscade moulue widen 31 aout 2019.txt [07/09/2016 14:12:53] - |D| - [0] - C:\Users\jean-\Documents\Avatar [02/05/2019 09:36:52] - |D| - [14158400] - C:\Users\jean-\Documents\Bandicam [16/09/2019 09:27:04] - |A| - [124285564] - C:\Users\jean-\Documents\Barrow 5 gold 2008.avi [12/07/2019 19:56:22] - |D| - [8209] - C:\Users\jean-\Documents\BCU Backup 2019-07-12_19-56-22 [22/01/2020 22:15:01] - |A| - [667185] - C:\Users\jean-\Documents\capture crystal disk info tour campaq Tridôme.png [22/01/2020 22:16:13] - |A| - [629970] - C:\Users\jean-\Documents\capture crystal disk mark tour campaq Brico Dépôt.png [04/01/2020 14:29:43] - |A| - [602265] - C:\Users\jean-\Documents\Capture update sata driver avec systweak.PNG [04/01/2020 14:36:24] - |A| - [532020] - C:\Users\jean-\Documents\Capture update sata driver bug à 25%k.PNG [21/01/2020 19:46:41] - |D| - [10859914] - C:\Users\jean-\Documents\cb71e3a05e17ffb979d15063ef3a079e72a14858 [25/04/2019 14:51:04] - |A| - [1047] - C:\Users\jean-\Documents\clés de license restoro.txt [22/06/2016 10:05:01] - |A| - [1279955] - C:\Users\jean-\Documents\creee-en-1959-la-poupee-barbie-a-toujours-autant-de-succes-photo-rl-1439655987.jpg [28/08/2016 12:43:49] - |ASH| - [402] - C:\Users\jean-\Documents\desktop.ini [09/04/2019 09:19:16] - |D| - [8997] - C:\Users\jean-\Documents\donate [09/08/2019 07:32:42] - |A| - [176] - C:\Users\jean-\Documents\Download Full Software.url [10/03/2020 00:09:49] - |D| - [1881] - C:\Users\jean-\Documents\DVDFab11 [03/02/2020 16:25:14] - |A| - [14338870] - C:\Users\jean-\Documents\Enregistrement #1.mp4 [03/01/2020 10:49:52] - |A| - [126158] - C:\Users\jean-\Documents\eset online scanner rapport.txt [26/01/2020 22:03:21] - |A| - [978] - C:\Users\jean-\Documents\Fiche technique Fiat 500L, Peugeot 1007 & Renault Velsatis Allo Ribérac Ambulances.txt [03/04/2020 11:41:40] - |D| - [0] - C:\Users\jean-\Documents\Freemake [03/05/2019 12:11:40] - |A| - [1883736] - C:\Users\jean-\Documents\GPU-Z Sensor Log.txt [20/01/2020 21:11:02] - |D| - [0] - C:\Users\jean-\Documents\HiSuite [21/01/2020 19:33:26] - |D| - [0] - C:\Users\jean-\Documents\iMazing.Versions [03/02/2020 10:43:36] - |A| - [3541084] - C:\Users\jean-\Documents\InstallLogs.zip [15/08/2019 17:15:14] - |D| - [281901441] - C:\Users\jean-\Documents\intermar'shit de l'art du moine anti-bug framo mac ux themepack [07/09/2016 13:27:09] - |D| - [0] - C:\Users\jean-\Documents\iSkysoft iMedia Converter Deluxe [08/09/2016 14:42:20] - |D| - [260] - C:\Users\jean-\Documents\jean-marie.carribon@wanadoo.fr's Online Sync [24/12/2019 19:34:31] - |D| - [5404044] - C:\Users\jean-\Documents\jonathan souffle [08/09/2016 11:02:16] - |D| - [10413597] - C:\Users\jean-\Documents\l'art du moine du wa miss dessert de widen, du ou quel tritoir nadia winiccyx, & du ou cewbélink power2ccyx [09/09/2016 12:26:24] - |D| - [0] - C:\Users\jean-\Documents\lin [03/02/2020 16:32:42] - |D| - [49861] - C:\Users\jean-\Documents\Log Files [30/12/2019 02:30:43] - |SD| - [0] - C:\Users\jean-\Documents\Ma musique [03/02/2020 10:27:59] - |RD| - [248] - C:\Users\jean-\Documents\MAGIX [03/02/2020 09:01:04] - |D| - [853726896] - C:\Users\jean-\Documents\MAGIX Downloads [03/02/2020 10:39:19] - |D| - [0] - C:\Users\jean-\Documents\MAGIX_MusicEditor [30/12/2019 02:30:43] - |SD| - [0] - C:\Users\jean-\Documents\Mes images [30/12/2019 02:30:43] - |SD| - [0] - C:\Users\jean-\Documents\Mes vidéos [12/02/2020 14:23:57] - |A| - [38958425] - C:\Users\jean-\Documents\migre.mp4 [21/05/2019 13:21:01] - |D| - [1422861679] - C:\Users\jean-\Documents\My Music [21/05/2019 13:21:03] - |D| - [113792302] - C:\Users\jean-\Documents\My Pictures [08/09/2016 16:31:08] - |RSD| - [246884] - C:\Users\jean-\Documents\My Stationery [21/05/2019 13:21:05] - |D| - [2394215754] - C:\Users\jean-\Documents\My Videos [28/08/2016 15:03:20] - |RD| - [548653] - C:\Users\jean-\Documents\Notes [09/09/2016 12:28:09] - |D| - [0] - C:\Users\jean-\Documents\Nouveau dossier [09/09/2016 12:28:34] - |D| - [0] - C:\Users\jean-\Documents\Nouveau dossier (2) [01/08/2019 17:26:22] - |D| - [0] - C:\Users\jean-\Documents\oCam [08/09/2016 16:11:34] - |A| - [18732264] - C:\Users\jean-\Documents\OneKeyPro.exe [09/08/2019 07:32:42] - |D| - [9765] - C:\Users\jean-\Documents\Other [18/03/2016 11:58:40] - |A| - [219136] - C:\Users\jean-\Documents\peid.exe [09/09/2016 12:19:25] - |D| - [24674095] - C:\Users\jean-\Documents\pilpa 2 - pitmann playthrough - souvenir chez stine & lix le quadrige [13/03/2020 09:55:20] - |A| - [1136] - C:\Users\jean-\Documents\Process_Analyzer.txt [03/05/2019 12:10:52] - |A| - [25469] - C:\Users\jean-\Documents\rapport gpu-z.gif [22/01/2020 20:49:32] - |D| - [1350003] - C:\Users\jean-\Documents\RegRun2 [03/05/2019 13:55:31] - |A| - [9656251] - C:\Users\jean-\Documents\Report aida64.txt [13/03/2020 09:55:20] - |A| - [82594] - C:\Users\jean-\Documents\rk rapprtr( 1.txt [13/03/2020 09:55:20] - |A| - [10030] - C:\Users\jean-\Documents\rk rapprtr( 2.txt [13/03/2020 09:55:20] - |A| - [1416] - C:\Users\jean-\Documents\rk rapprtr( 3.txt [09/09/2016 16:44:20] - |A| - [1717254] - C:\Users\jean-\Documents\réparer windows 7 sans perdre des données avec iso et dvd.pdf [05/09/2019 14:53:18] - |D| - [0] - C:\Users\jean-\Documents\s3c_k13_Setups [21/01/2020 22:40:37] - |D| - [382851033] - C:\Users\jean-\Documents\Screencast-O-Matic [18/03/2020 09:53:19] - |A| - [13964] - C:\Users\jean-\Documents\script zhpfix pour la fête des mères.txt [09/04/2019 09:19:15] - |D| - [4806] - C:\Users\jean-\Documents\scripts [21/03/2020 01:35:47] - |D| - [0] - C:\Users\jean-\Documents\ShareX [04/04/2020 11:04:52] - |D| - [429] - C:\Users\jean-\Documents\Smart PC [13/03/2020 16:27:17] - |D| - [0] - C:\Users\jean-\Documents\Smart PC Utilities [28/08/2016 19:43:07] - |A| - [2879] - C:\Users\jean-\Documents\starburn.txt [09/09/2016 16:29:07] - |A| - [119671960] - C:\Users\jean-\Documents\tb_free.exe [09/04/2019 09:17:19] - |A| - [642605] - C:\Users\jean-\Documents\tgup0018.exe [09/08/2019 07:32:42] - |A| - [194792] - C:\Users\jean-\Documents\TUPortable.exe [13/03/2020 17:03:48] - |A| - [29896267] - C:\Users\jean-\Documents\tuto outdate fighter dero's illunicolas.mp4 [22/01/2020 22:12:18] - |D| - [3157271] - C:\Users\jean-\Documents\TweakShot Screen Capture [26/01/2020 22:41:59] - |A| - [695] - C:\Users\jean-\Documents\UnZacMe_14_01_2020_21.16.47.txt [20/05/2019 10:52:09] - |AD| - [173538309] - C:\Users\jean-\Documents\Verbatim [13/03/2020 09:55:20] - |A| - [23144] - C:\Users\jean-\Documents\ZHPCleaner (S).txt [13/03/2020 09:55:20] - |A| - [588394] - C:\Users\jean-\Documents\ZHPDiag.html [13/03/2020 09:55:21] - |A| - [485807] - C:\Users\jean-\Documents\ZHPDiag.txt [13/03/2020 09:55:21] - |A| - [4987] - C:\Users\jean-\Documents\ZHPFix.txt ---------- | [Downloads] [01/04/2020 10:08:41] - |A| - [2838042624] - C:\Users\jean-\Downloads\16-04-3-LTS-x64.iso [01/04/2020 09:28:40] - |A| - [17395987] - C:\Users\jean-\Downloads\AcebyteUtilities.exe [06/04/2020 10:44:02] - |A| - [2728448] - C:\Users\jean-\Downloads\adc.exe [04/04/2020 12:12:42] - |A| - [93315] - C:\Users\jean-\Downloads\Addition.txt [06/04/2020 10:38:12] - |A| - [9530592] - C:\Users\jean-\Downloads\Advanced_Uninstaller12.exe [03/05/2019 11:44:02] - |D| - [80398173] - C:\Users\jean-\Downloads\aida64business599 [03/04/2020 11:38:18] - |A| - [63195072] - C:\Users\jean-\Downloads\any-audio-converter.exe [01/04/2020 11:15:01] - |A| - [86070288] - C:\Users\jean-\Downloads\ashampoo_backup_2018_11.10_sm.exe [07/04/2020 11:11:26] - |A| - [55627728] - C:\Users\jean-\Downloads\ashampoo_snap_10_10.1.0_sm.exe [07/04/2020 11:02:15] - |A| - [47138208] - C:\Users\jean-\Downloads\ashampoo_snap_8_e8.0.11_sm.exe [06/04/2020 10:44:25] - |A| - [2872256] - C:\Users\jean-\Downloads\atm.exe [07/04/2020 11:19:46] - |A| - [31674378] - C:\Users\jean-\Downloads\audsetup.exe [07/04/2020 12:25:49] - |A| - [3500904] - C:\Users\jean-\Downloads\Bitser-03-SEP-2018-V150.exe [04/04/2020 10:50:13] - |A| - [14001208] - C:\Users\jean-\Downloads\bytefence-installer-needle-5.5.0.7.exe [01/04/2020 20:17:39] - |A| - [19004592] - C:\Users\jean-\Downloads\ccsetup565_slim (1).exe [02/04/2020 11:51:07] - |A| - [19004592] - C:\Users\jean-\Downloads\ccsetup565_slim (2).exe [01/04/2020 20:16:55] - |A| - [19004592] - C:\Users\jean-\Downloads\ccsetup565_slim.exe [10/04/2019 14:54:23] - |D| - [21567760] - C:\Users\jean-\Downloads\chc [01/04/2020 15:35:33] - |A| - [5613920] - C:\Users\jean-\Downloads\cispremium_installer_138430008_dd.exe [01/04/2020 10:03:49] - |A| - [2154578] - C:\Users\jean-\Downloads\CodySafe_Setup.exe [01/04/2020 10:32:19] - |A| - [2873120] - C:\Users\jean-\Downloads\dbkfr.exe [28/08/2016 12:43:49] - |ASH| - [282] - C:\Users\jean-\Downloads\desktop.ini [06/04/2020 10:29:30] - |A| - [5867256] - C:\Users\jean-\Downloads\drivermax.exe [04/04/2020 09:25:22] - |A| - [4658776] - C:\Users\jean-\Downloads\drivesecurity-installer.exe [05/04/2020 15:07:35] - |A| - [359210024] - C:\Users\jean-\Downloads\EmsisoftEmergencyKit.exe [05/04/2020 09:18:56] - |A| - [1651744] - C:\Users\jean-\Downloads\Everything-1.4.1.969.x64-Setup.exe [05/04/2020 15:26:05] - |A| - [108832000] - C:\Users\jean-\Downloads\Fix-It_Pro_FRA.exe [02/04/2020 20:33:28] - |A| - [3717475] - C:\Users\jean-\Downloads\Foobar2000_1_8404.exe [03/04/2020 11:37:48] - |A| - [32205456] - C:\Users\jean-\Downloads\FreeAudioConverter_5.1.9.310_u.exe [03/04/2020 11:36:46] - |A| - [1004760] - C:\Users\jean-\Downloads\FreemakeAudioConverterSetup.exe [04/04/2020 09:34:28] - |A| - [822690] - C:\Users\jean-\Downloads\FRST.txt [04/04/2020 09:28:44] - |A| - [2280448] - C:\Users\jean-\Downloads\FRST64.exe [23/01/2020 09:56:42] - |D| - [8147994] - C:\Users\jean-\Downloads\Huawei Android USB Driver [03/04/2020 00:46:56] - |A| - [12302216] - C:\Users\jean-\Downloads\iobitsoftwareupdater3_rc.exe [07/04/2020 12:14:33] - |A| - [181757] - C:\Users\jean-\Downloads\KomodiaSSLSnifferV2.zip [01/04/2020 15:33:43] - |A| - [1239464] - C:\Users\jean-\Downloads\look-my-hardware_2_26.04.17.1 (1).exe [01/04/2020 17:40:27] - |A| - [1239464] - C:\Users\jean-\Downloads\look-my-hardware_2_26.04.17.1 (2).exe [01/04/2020 15:33:26] - |A| - [1239464] - C:\Users\jean-\Downloads\look-my-hardware_2_26.04.17.1.exe [02/04/2020 08:59:47] - |A| - [1957784] - C:\Users\jean-\Downloads\MBSetup.exe [09/05/2019 07:36:17] - |D| - [0] - C:\Users\jean-\Downloads\Music [05/04/2020 15:04:13] - |A| - [4112792] - C:\Users\jean-\Downloads\MyPCBackup_WebInstaller (1).exe [05/04/2020 15:04:07] - |A| - [4112792] - C:\Users\jean-\Downloads\MyPCBackup_WebInstaller.exe [07/04/2020 14:59:48] - |A| - [2149712] - C:\Users\jean-\Downloads\outdatefighter_1_83681 (1).exe [07/04/2020 14:59:44] - |A| - [2149712] - C:\Users\jean-\Downloads\outdatefighter_1_83681.exe [02/04/2020 12:21:35] - |A| - [177755696] - C:\Users\jean-\Downloads\Paragon-1081-FRU_WinInstallDemo_x64_17.9.1_000 (2).exe [06/04/2020 10:46:58] - |A| - [330612448] - C:\Users\jean-\Downloads\PCMgr_Setup_123_26600_901.exe [05/04/2020 15:03:28] - |A| - [5654464] - C:\Users\jean-\Downloads\PCOptimizerProInstaller.exe [31/03/2020 18:07:57] - |A| - [41392248] - C:\Users\jean-\Downloads\pd14.0_pro.exe [01/04/2020 13:59:03] - |A| - [6618104] - C:\Users\jean-\Downloads\PerfectGuard_Setup.exe [25/04/2019 10:11:35] - |D| - [11712939] - C:\Users\jean-\Downloads\plpbt-5.0.15 [05/04/2020 15:17:13] - |A| - [5217136] - C:\Users\jean-\Downloads\PortableApps.com_Platform_Setup_16.1.1.paf.exe [07/04/2020 12:16:16] - |A| - [21854480] - C:\Users\jean-\Downloads\PrivDogSetup.exe [09/05/2019 07:36:17] - |D| - [20790047] - C:\Users\jean-\Downloads\Programs [06/04/2020 10:32:26] - |A| - [4987221] - C:\Users\jean-\Downloads\qq_qq_anglais_221116.exe [07/04/2020 13:11:31] - |A| - [5321112] - C:\Users\jean-\Downloads\quickdiag_V5_29.10.19.1.exe [31/03/2020 13:01:53] - |A| - [498868] - C:\Users\jean-\Downloads\seaf_1.exe [04/04/2020 12:52:54] - |A| - [221294] - C:\Users\jean-\Downloads\Shortcut.txt [01/04/2020 10:04:26] - |A| - [49215520] - C:\Users\jean-\Downloads\SideSync_4.7.5.203.exe [04/04/2020 10:56:05] - |A| - [4209720] - C:\Users\jean-\Downloads\smartpcsetup.exe [05/04/2020 15:16:12] - |A| - [47013343] - C:\Users\jean-\Downloads\Spybot_Search___Destroy___Av_Full_2.3.39_TrucNet.com.rar [03/04/2020 01:37:11] - |D| - [0] - C:\Users\jean-\Downloads\Stardock [07/04/2020 12:03:33] - |A| - [6230072] - C:\Users\jean-\Downloads\TechToolStore.exe [01/04/2020 10:18:25] - |A| - [2634022912] - C:\Users\jean-\Downloads\trisquel_8.0_amd64.iso [07/04/2020 12:03:14] - |A| - [160] - C:\Users\jean-\Downloads\TTSlicense.ttskey [04/04/2020 10:34:55] - |A| - [38038316] - C:\Users\jean-\Downloads\tweaking.com_windows_repair_aio.zip [07/04/2020 12:13:24] - |A| - [20161184] - C:\Users\jean-\Downloads\UltraHDBlu-rayAdvisor_3201_BD_CDT180731-01.exe [02/04/2020 12:21:30] - |A| - [6291456] - C:\Users\jean-\Downloads\Unconfirmed 174309.crdownload [04/04/2020 09:10:04] - |A| - [2280448] - C:\Users\jean-\Downloads\Unconfirmed 436758.crdownload [02/04/2020 12:21:27] - |A| - [6291456] - C:\Users\jean-\Downloads\Unconfirmed 726097.crdownload [07/04/2020 10:44:57] - |A| - [3574207] - C:\Users\jean-\Downloads\UsbFix.v9.049_AsanDl.com.zip [09/05/2019 07:36:17] - |D| - [0] - C:\Users\jean-\Downloads\Video [07/04/2020 13:10:32] - |A| - [42030736] - C:\Users\jean-\Downloads\vlc-3.0.8-win64.exe [06/04/2020 10:41:11] - |A| - [12415696] - C:\Users\jean-\Downloads\vpnpro_setup.exe [06/04/2020 10:27:30] - |A| - [1880064] - C:\Users\jean-\Downloads\vpnshield.8.9.0.msi [06/04/2020 18:52:48] - |A| - [347584] - C:\Users\jean-\Downloads\WebLaunchRecorder.exe [01/04/2020 10:19:53] - |A| - [2504624] - C:\Users\jean-\Downloads\wubi-r272-signed-12.04.5.exe [01/04/2020 13:41:45] - |A| - [1136823] - C:\Users\jean-\Downloads\ZHPDiag.html [01/04/2020 13:41:45] - |D| - [3345265] - C:\Users\jean-\Downloads\ZHPDiag_files [01/04/2020 09:56:35] - |A| - [3428224] - C:\Users\jean-\Downloads\ZHPSuite.exe ---------- | [drivers] [24/01/2020 18:39:28] - |D| - [795] - C:\Users\jean-\drivers\etc ---------- | [Dropbox] [27/04/2019 13:20:21] - |AH| - [35] - C:\Users\jean-\Dropbox\.dropbox [27/04/2019 13:20:11] - |SHD| - [0] - C:\Users\jean-\Dropbox\.dropbox.cache [27/04/2019 13:41:22] - |AD| - [315702817] - C:\Users\jean-\Dropbox\Applications [01/05/2019 19:44:54] - |A| - [1433632] - C:\Users\jean-\Dropbox\CamStudioPortable_2.0_English.paf.exe [27/04/2019 13:34:06] - |A| - [224949] - C:\Users\jean-\Dropbox\ccauto_updater_v1_3.zip [01/05/2019 19:39:07] - |AD| - [0] - C:\Users\jean-\Dropbox\cce_2.5.242177.201_x64 [01/05/2019 20:12:31] - |A| - [5309954] - C:\Users\jean-\Dropbox\Coupe du monde de football de 2014 — Wikipédia.pdf [27/04/2019 13:41:00] - |AD| - [4523310] - C:\Users\jean-\Dropbox\DCIM [27/04/2019 13:20:22] - |ASH| - [324] - C:\Users\jean-\Dropbox\desktop.ini [27/04/2019 13:31:03] - |A| - [4770269] - C:\Users\jean-\Dropbox\dfsetup219.zip [27/04/2019 13:26:31] - |RD| - [674] - C:\Users\jean-\Dropbox\Documents [27/04/2019 13:41:05] - |AD| - [21421700] - C:\Users\jean-\Dropbox\Download [27/04/2019 13:41:27] - |AD| - [122992140] - C:\Users\jean-\Dropbox\Download (1) [01/05/2019 19:43:03] - |A| - [324112] - C:\Users\jean-\Dropbox\DriveSecurityPortable_1.0.paf.exe [27/04/2019 13:30:58] - |A| - [4817440] - C:\Users\jean-\Dropbox\DSInstall.exe [27/04/2019 13:32:54] - |A| - [1709792] - C:\Users\jean-\Dropbox\DTLiteInstaller.exe [27/04/2019 13:31:58] - |A| - [27564824] - C:\Users\jean-\Dropbox\DTPro610-0484.exe [27/04/2019 13:26:32] - |AD| - [12833508] - C:\Users\jean-\Dropbox\Epson Connect [01/05/2019 19:38:25] - |A| - [81705] - C:\Users\jean-\Dropbox\fileassassin-setup-1.06 (1).zip [01/05/2019 19:39:47] - |A| - [81705] - C:\Users\jean-\Dropbox\fileassassin-setup-1.06-1 (1).zip [01/05/2019 19:38:18] - |A| - [81705] - C:\Users\jean-\Dropbox\fileassassin-setup-1.06-1.zip [27/04/2019 13:42:50] - |A| - [81705] - C:\Users\jean-\Dropbox\fileassassin-setup-1.06.zip [01/05/2019 20:00:21] - |A| - [9178672] - C:\Users\jean-\Dropbox\FirefoxPortableLegacy36_3.6.25_English.paf.exe [27/04/2019 13:32:16] - |A| - [4790044] - C:\Users\jean-\Dropbox\ir052_portable.zip [27/04/2019 13:26:31] - |AD| - [29789840] - C:\Users\jean-\Dropbox\le diapa'vexe [27/04/2019 13:30:32] - |A| - [73] - C:\Users\jean-\Dropbox\lorus.txt [27/04/2019 13:35:09] - |A| - [3548092] - C:\Users\jean-\Dropbox\luminaires bricomarché.MP4 [27/04/2019 13:42:55] - |A| - [1178000] - C:\Users\jean-\Dropbox\MemoryOptimizerProSetup.exe [01/05/2019 21:40:27] - |A| - [179047] - C:\Users\jean-\Dropbox\MTV Base, MTV Rock, MTV Pulse, MTV Idol disparaissent de Canalsat. - LeBlogTvNews.pdf [27/04/2019 13:41:16] - |AD| - [8610] - C:\Users\jean-\Dropbox\My Documents [27/04/2019 13:41:46] - |AD| - [0] - C:\Users\jean-\Dropbox\My Documents (1) [01/05/2019 21:47:33] - |A| - [52727] - C:\Users\jean-\Dropbox\Official DAEMON Tools Store. Buy DAEMON Tools and Astroburn software - Disc Soft Ltd..pdf [01/05/2019 19:43:52] - |A| - [16879392] - C:\Users\jean-\Dropbox\OnlineVideoRecorder_3_4_4_AQFR.exe [27/04/2019 13:41:31] - |RD| - [1441442094] - C:\Users\jean-\Dropbox\PortableApps [01/05/2019 20:12:31] - |A| - [895480] - C:\Users\jean-\Dropbox\PortableApps.comAppCompactor_3.1.0_English.paf.exe [01/05/2019 19:44:58] - |A| - [767904] - C:\Users\jean-\Dropbox\PortableApps.comLauncher_2.2.paf (1).exe [01/05/2019 19:44:51] - |A| - [767904] - C:\Users\jean-\Dropbox\PortableApps.comLauncher_2.2.paf.exe [01/05/2019 19:47:02] - |A| - [633926] - C:\Users\jean-\Dropbox\PortableApps.com_Carbide_UserGuide.pdf [01/05/2019 19:48:04] - |A| - [3793168] - C:\Users\jean-\Dropbox\PortableApps.com_Platform_Setup_12.2.paf.exe [01/05/2019 19:47:46] - |A| - [1487280] - C:\Users\jean-\Dropbox\PrivateBrowsingByPortableApps_3.0.paf.exe [27/04/2019 13:34:49] - |A| - [4274096] - C:\Users\jean-\Dropbox\spywareblastersetup54.exe [08/08/2019 23:36:26] - |A| - [1445712] - C:\Users\jean-\Dropbox\Start.exe [01/05/2019 19:42:59] - |A| - [2541384] - C:\Users\jean-\Dropbox\SumatraPDFPortable_2.3.2.paf.exe [27/04/2019 13:33:14] - |A| - [3661512] - C:\Users\jean-\Dropbox\SysInspector (1).exe [27/04/2019 13:32:33] - |A| - [3661512] - C:\Users\jean-\Dropbox\SysInspector-1.exe [27/04/2019 13:31:32] - |A| - [3661512] - C:\Users\jean-\Dropbox\SysInspector.exe [01/05/2019 19:47:19] - |A| - [3317344] - C:\Users\jean-\Dropbox\tenorshare-card-data-recovery-trial.exe [01/05/2019 19:48:36] - |A| - [24343000] - C:\Users\jean-\Dropbox\tenorshare-video-converter-trial.exe [27/04/2019 13:30:50] - |A| - [73] - C:\Users\jean-\Dropbox\u be'rome.txt [27/04/2019 13:34:45] - |A| - [1908225] - C:\Users\jean-\Dropbox\VirtualDub-1.10.4 (1).zip [27/04/2019 13:33:31] - |A| - [1908225] - C:\Users\jean-\Dropbox\VirtualDub-1.10.4.zip [27/04/2019 13:34:33] - |A| - [26948496] - C:\Users\jean-\Dropbox\VLCPortable_2.2.1.paf.exe [01/05/2019 19:37:54] - |A| - [1596168] - C:\Users\jean-\Dropbox\Wise_Data_Recovery_v3.71.exe [01/05/2019 19:43:12] - |A| - [2154328] - C:\Users\jean-\Dropbox\Wise_Program_Uninstaller_v1.71.exe [27/04/2019 13:41:09] - |AD| - [0] - C:\Users\jean-\Dropbox\ZipShare [01/05/2019 19:44:31] - |AD| - [42736468] - C:\Users\jean-\Dropbox\émissions & pubs radio pour lecteur mp3 ---------- | [Favorites] [23/04/2019 00:12:21] - |D| - [116] - C:\Users\jean-\Favorites\Acer [24/09/2019 20:50:09] - |A| - [208] - C:\Users\jean-\Favorites\Bing.url [28/08/2016 12:43:49] - |ASH| - [402] - C:\Users\jean-\Favorites\desktop.ini [17/03/2019 21:00:13] - |A| - [69] - C:\Users\jean-\Favorites\Giveaway of the Day.url [28/08/2016 12:46:04] - |D| - [2101] - C:\Users\jean-\Favorites\HP [28/08/2016 12:43:45] - |RD| - [1381] - C:\Users\jean-\Favorites\Links [23/04/2019 00:12:22] - |D| - [1015] - C:\Users\jean-\Favorites\Links for France [23/04/2019 00:12:21] - |D| - [0] - C:\Users\jean-\Favorites\NCH Software Download Site [09/03/2020 15:14:36] - |A| - [264] - C:\Users\jean-\Favorites\NCH Software Download Site.lnk [09/03/2020 14:21:32] - |A| - [256] - C:\Users\jean-\Favorites\Site de téléchargement NCH Software.lnk [23/04/2019 00:12:19] - |D| - [577] - C:\Users\jean-\Favorites\Sites Web Microsoft [23/04/2019 00:12:22] - |D| - [864] - C:\Users\jean-\Favorites\Sites Web MSN [19/05/2017 21:57:32] - |A| - [167] - C:\Users\jean-\Favorites\The NeoSmart Files.url [23/04/2019 00:12:21] - |D| - [0] - C:\Users\jean-\Favorites\Volet des favoris [23/04/2019 00:12:22] - |D| - [576] - C:\Users\jean-\Favorites\Windows Live ---------- | [Google Drive] [09/05/2019 15:53:11] - |HD| - [0] - C:\Users\jean-\Google Drive\.tmp.drivedownload [09/05/2019 16:00:12] - |A| - [2441] - C:\Users\jean-\Google Drive\1er topic forums désinfection pour écran hors désinfection cadeau eau de coco 3 mai.txt [09/05/2019 15:54:25] - |A| - [3336] - C:\Users\jean-\Google Drive\4 & 5rem, bouton pier au le ponant 16,2, u bouton 8, lfs hyper & anaamfuw finalis info genio.txt [09/05/2019 15:54:51] - |A| - [0] - C:\Users\jean-\Google Drive\5 ways to extend trial period of applications all pages.pdf [09/05/2019 15:54:40] - |A| - [0] - C:\Users\jean-\Google Drive\5 ways to extend trial period of applications page 1.pdf [09/05/2019 15:54:33] - |A| - [0] - C:\Users\jean-\Google Drive\5 ways to extend trial period of applications page 2.pdf [09/05/2019 15:52:54] - |D| - [129361642] - C:\Users\jean-\Google Drive\Bandicam [09/05/2019 15:59:43] - |A| - [6775624] - C:\Users\jean-\Google Drive\billie-eilish-wish-you-were-gay-audio.mp3 [09/05/2019 16:04:01] - |A| - [784107] - C:\Users\jean-\Google Drive\Capture taille icones barre de taches écran.PNG [09/05/2019 15:59:21] - |A| - [3989695] - C:\Users\jean-\Google Drive\culture-abuse-goo (1).mp3 [09/05/2019 15:58:47] - |A| - [3989695] - C:\Users\jean-\Google Drive\culture-abuse-goo.mp3 [14/05/2019 07:22:27] - |RAH| - [181] - C:\Users\jean-\Google Drive\desktop.ini [09/05/2019 16:03:51] - |A| - [61522] - C:\Users\jean-\Google Drive\Extras.Txt [09/05/2019 16:01:25] - |A| - [1494882] - C:\Users\jean-\Google Drive\GPU-Z Sensor Log.txt [09/05/2019 15:58:22] - |A| - [127407] - C:\Users\jean-\Google Drive\Le Musée Spiritain des arts africains, un lieu paisible à Allex - Cyberarchi.html [09/05/2019 15:58:33] - |A| - [507343] - C:\Users\jean-\Google Drive\Le Musée Spiritain des arts africains, un lieu paisible à Allex - Cyberarchi.pdf [09/05/2019 15:52:51] - |D| - [1826976] - C:\Users\jean-\Google Drive\Le Musée Spiritain des arts africains, un lieu paisible à Allex - Cyberarchi_files [09/05/2019 16:02:13] - |A| - [76325] - C:\Users\jean-\Google Drive\Look_my_hardware.txt [09/05/2019 16:01:50] - |A| - [3763328] - C:\Users\jean-\Google Drive\OTL.Txt [09/05/2019 15:58:28] - |A| - [1441] - C:\Users\jean-\Google Drive\powerdvd 19 en mediasuite 17 en powerdvd 365.txt [09/05/2019 16:00:29] - |A| - [24068] - C:\Users\jean-\Google Drive\Pre_Scan.txt [14/05/2019 07:26:15] - |A| - [187] - C:\Users\jean-\Google Drive\QuickDiag win10 raspberry pi 16_01_2019_20_41_57.gdoc [09/05/2019 16:03:51] - |A| - [750389] - C:\Users\jean-\Google Drive\QuickDiag_03_05_2019_14_33_35.txt [09/05/2019 16:01:14] - |A| - [25469] - C:\Users\jean-\Google Drive\rapport gpu-z.gif [09/05/2019 16:00:38] - |A| - [9656251] - C:\Users\jean-\Google Drive\Report aida64.txt [14/05/2019 07:25:58] - |A| - [187] - C:\Users\jean-\Google Drive\Rkill.gdoc [09/05/2019 15:55:06] - |A| - [43746] - C:\Users\jean-\Google Drive\runasdate-x64.zip [09/05/2019 15:55:27] - |A| - [5425830] - C:\Users\jean-\Google Drive\tek-it-out-feat-shendou-gang-mafio-house.mp3 [14/05/2019 07:25:20] - |A| - [15544] - C:\Users\jean-\Google Drive\topic astuces internet config bugs 3 pc supports externes.txt [09/05/2019 15:53:11] - |A| - [69571] - C:\Users\jean-\Google Drive\TOPICA~2.TXT [09/05/2019 15:54:58] - |A| - [573900] - C:\Users\jean-\Google Drive\trashreg_setup.exe [09/05/2019 15:55:17] - |A| - [615575] - C:\Users\jean-\Google Drive\Trial-Reset40Final.zip [09/05/2019 16:02:31] - |A| - [348682] - C:\Users\jean-\Google Drive\ZHPDiag.txt ---------- | [Google Drive (lfshyper.efm.widen16.6@gmail.com)] [14/05/2019 07:27:03] - |HD| - [0] - C:\Users\jean-\Google Drive (lfshyper.efm.widen16.6@gmail.com)\.tmp.drivedownload [14/05/2019 07:26:18] - |RAH| - [176] - C:\Users\jean-\Google Drive (lfshyper.efm.widen16.6@gmail.com)\desktop.ini [29/05/2019 07:21:00] - |A| - [47027106] - C:\Users\jean-\Google Drive (lfshyper.efm.widen16.6@gmail.com)\Quickdiag rapport tour compaq 29 mai 2019.txt [14/05/2019 07:26:55] - |D| - [59671724] - C:\Users\jean-\Google Drive (lfshyper.efm.widen16.6@gmail.com)\topic anti-smartscreen debug tv optim galaxy book cadeau eau de coco finalis 12_5_2019 [14/05/2019 12:45:22] - |D| - [1590261] - C:\Users\jean-\Google Drive (lfshyper.efm.widen16.6@gmail.com)\WinThruster ---------- | [Links] [28/08/2016 12:43:50] - |SH| - [504] - C:\Users\jean-\Links\desktop.ini [28/08/2016 12:43:50] - |A| - [496] - C:\Users\jean-\Links\Desktop.lnk [28/08/2016 12:43:50] - |A| - [953] - C:\Users\jean-\Links\Downloads.lnk ---------- | [Local Settings] ---------- | [LocalLow] ---------- | [Menu Démarrer] ---------- | [Mes documents] ---------- | [MicrosoftEdgeBackups] [19/04/2019 09:13:45] - |D| - [6300488] - C:\Users\jean-\MicrosoftEdgeBackups\backups ---------- | [Modèles] ---------- | [Music] [25/04/2019 12:12:05] - |A| - [10681444] - C:\Users\jean-\Music\02.) Aaliyah - Are You That Somebody.mp3 [25/04/2019 12:09:04] - |A| - [11414320] - C:\Users\jean-\Music\07.) Aaliyah - Try Again.mp3 [25/04/2019 12:09:07] - |A| - [9746035] - C:\Users\jean-\Music\15.) Aaliyah - We Need A Resolution Feat. Timbaland.mp3 [25/04/2019 12:12:06] - |A| - [4427454] - C:\Users\jean-\Music\3rd Wish Feat Baby Bash - Obsesion (official Music Video, Hq)(1).mp3 [25/04/2019 12:12:07] - |A| - [4427454] - C:\Users\jean-\Music\3rd Wish Feat Baby Bash - Obsesion (official Music Video, Hq).mp3 [25/04/2019 12:12:07] - |A| - [3676365] - C:\Users\jean-\Music\3rd Wish feat. Baby Bash - Obsesion (Official Music Video, HQ).mp3 [25/04/2019 12:09:08] - |A| - [3558966] - C:\Users\jean-\Music\Aaliyah - Try Again[128K]__[MP3-128K] (2).mp3 [25/04/2019 12:09:08] - |A| - [3558966] - C:\Users\jean-\Music\Aaliyah - Try Again[128K]__[MP3-128K].mp3 [25/04/2019 12:09:09] - |A| - [5827717] - C:\Users\jean-\Music\Aerosol Can.mp3 [25/04/2019 12:09:10] - |A| - [4141063] - C:\Users\jean-\Music\Akon Ft Obie Trice- Look At Me Now.mp3 [25/04/2019 12:09:11] - |A| - [6024208] - C:\Users\jean-\Music\Akon Last Forever NEW STADIUM 2014_2.mp3 [21/01/2020 19:04:26] - |SH| - [6006] - C:\Users\jean-\Music\AlbumArtSmall.jpg [21/01/2020 19:09:30] - |SH| - [37630] - C:\Users\jean-\Music\AlbumArt_{B5020207-474E-4720-02F2-B8383D12BA00}_Large.jpg [21/01/2020 19:09:31] - |SH| - [8632] - C:\Users\jean-\Music\AlbumArt_{B5020207-474E-4720-02F2-B8383D12BA00}_Small.jpg [21/01/2020 19:10:25] - |SH| - [24831] - C:\Users\jean-\Music\AlbumArt_{B5020207-474E-4720-2EE6-FD2AFFCB3300}_Large.jpg [21/01/2020 19:10:25] - |SH| - [6586] - C:\Users\jean-\Music\AlbumArt_{B5020207-474E-4720-2EE6-FD2AFFCB3300}_Small.jpg [21/01/2020 19:08:42] - |SH| - [23519] - C:\Users\jean-\Music\AlbumArt_{B5020207-474E-4720-39BD-EE2FEC881200}_Large.jpg [21/01/2020 19:08:41] - |SH| - [23519] - C:\Users\jean-\Music\AlbumArt_{B5020207-474E-4720-39BD-EE2FEC881200}_Small.jpg [21/01/2020 19:04:48] - |SH| - [30780] - C:\Users\jean-\Music\AlbumArt_{B5020207-474E-4720-3BAC-702C29D47B00}_Large.jpg [21/01/2020 19:04:49] - |SH| - [6379] - C:\Users\jean-\Music\AlbumArt_{B5020207-474E-4720-3BAC-702C29D47B00}_Small.jpg [21/01/2020 19:12:07] - |SH| - [289552] - C:\Users\jean-\Music\AlbumArt_{B5020207-474E-4720-587C-B6399DF27B00}_Large.jpg [21/01/2020 19:12:07] - |SH| - [289552] - C:\Users\jean-\Music\AlbumArt_{B5020207-474E-4720-587C-B6399DF27B00}_Small.jpg [21/01/2020 19:13:16] - |SH| - [23046] - C:\Users\jean-\Music\AlbumArt_{B5020207-474E-4720-65F3-2B218BA95100}_Large.jpg [21/01/2020 19:13:16] - |SH| - [5857] - C:\Users\jean-\Music\AlbumArt_{B5020207-474E-4720-65F3-2B218BA95100}_Small.jpg [21/01/2020 19:05:25] - |SH| - [30780] - C:\Users\jean-\Music\AlbumArt_{B5020207-474E-4720-9844-0C2CED8EDB00}_Large.jpg [21/01/2020 19:05:26] - |SH| - [6379] - C:\Users\jean-\Music\AlbumArt_{B5020207-474E-4720-9844-0C2CED8EDB00}_Small.jpg [21/01/2020 19:09:36] - |SH| - [21043] - C:\Users\jean-\Music\AlbumArt_{B5020207-474E-4720-D4AF-803C4EABCB00}_Large.jpg [21/01/2020 19:09:36] - |SH| - [4031] - C:\Users\jean-\Music\AlbumArt_{B5020207-474E-4720-D4AF-803C4EABCB00}_Small.jpg [25/04/2019 12:09:13] - |A| - [3334130] - C:\Users\jean-\Music\Anything(To Find You) Monica Feat. Rick Ross_Dj Kenken.mp3 [25/04/2019 12:09:13] - |A| - [5948551] - C:\Users\jean-\Music\Ariana Grande - Break Free ft.mp3 [25/04/2019 12:09:14] - |A| - [6216576] - C:\Users\jean-\Music\Ariana Grande - Right There ft. Big Sean_1.mp3 [25/04/2019 12:09:15] - |A| - [8382601] - C:\Users\jean-\Music\Austin Mahone - Banga! Banga!_1.mp3 [25/04/2019 12:09:20] - |A| - [5326471] - C:\Users\jean-\Music\Avicii - Lay Me Down.mp3 [25/04/2019 12:09:22] - |A| - [13201779] - C:\Users\jean-\Music\Avicii vs Nicky Romero - I Could Be The One.mp3 [25/04/2019 12:09:23] - |A| - [7786813] - C:\Users\jean-\Music\BABY G. & M.D. LOVE - Boom boom.mp3 [25/04/2019 12:09:25] - |A| - [6259015] - C:\Users\jean-\Music\Bastille - Things We Lost In The Fire.mp3 [25/04/2019 12:09:26] - |A| - [5203245] - C:\Users\jean-\Music\Bazzi - Mine (Official Video).mp3 [25/04/2019 12:09:27] - |A| - [5107808] - C:\Users\jean-\Music\Benassi Bros Feat. Dhany - Every Single Day [Official Video HD].mp3 [25/04/2019 12:09:28] - |A| - [6399010] - C:\Users\jean-\Music\Benny Benassi - Every Single Day(2).mp3 [25/04/2019 12:09:30] - |A| - [6399010] - C:\Users\jean-\Music\Benny Benassi - Every Single Day.mp3 [25/04/2019 12:09:31] - |A| - [6110719] - C:\Users\jean-\Music\Beyoncé - All Night.mp3 [25/04/2019 12:09:32] - |A| - [6062400] - C:\Users\jean-\Music\Beyoncé party ft André 3000.mp3 [25/04/2019 12:09:33] - |A| - [5094642] - C:\Users\jean-\Music\Big Boi - All Night (Official Video).mp3 [25/04/2019 12:09:34] - |A| - [5709042] - C:\Users\jean-\Music\Bingo Players - Knock You Out (Official Video).mp3 [25/04/2019 12:09:35] - |A| - [7937182] - C:\Users\jean-\Music\Black Eyed Peas - Yesterday (Official Video) (2).mp3 [25/04/2019 12:09:36] - |A| - [7937182] - C:\Users\jean-\Music\Black Eyed Peas - Yesterday (Official Video).mp3 [25/04/2019 12:09:38] - |A| - [12563658] - C:\Users\jean-\Music\Booba - Une Vie_1.mp3 [25/04/2019 12:09:39] - |A| - [5427267] - C:\Users\jean-\Music\Boom Clap.mp3 [25/04/2019 12:09:40] - |A| - [5692115] - C:\Users\jean-\Music\Brandy - What About Us.mp3 [25/04/2019 12:09:40] - |A| - [8054073] - C:\Users\jean-\Music\Brice Conrad - Oh La.mp3 [25/04/2019 12:09:42] - |A| - [10268431] - C:\Users\jean-\Music\Calvin Harris - Blame ft. John Newman.mp3 [25/04/2019 12:09:43] - |A| - [5039623] - C:\Users\jean-\Music\Calvin Harris - I´m Not Alone.mp3 [25/04/2019 12:09:44] - |A| - [5869961] - C:\Users\jean-\Music\Calvin Harris - My Way (Official Video).mp3 [25/04/2019 12:09:45] - |A| - [8191098] - C:\Users\jean-\Music\Carly Rae Jepsen - Good Kiss Maybe (BrunoAN Mashup)[256K]__[MP3-320K].mp3 [25/04/2019 12:09:47] - |A| - [5669440] - C:\Users\jean-\Music\Carly Rae Jepsen - This Kiss_1.mp3 [25/04/2019 12:09:48] - |A| - [5801202] - C:\Users\jean-\Music\CASCADA - San Francisco (Official Video HD).mp3 [25/04/2019 12:09:49] - |A| - [6581647] - C:\Users\jean-\Music\Cash Cash - Take Me Home ft Bebe Rexha [Official Video].mp3 [25/04/2019 12:09:51] - |A| - [3320613] - C:\Users\jean-\Music\Charlie Puth - _How Long_ [Official Video](2).mp3 [25/04/2019 12:09:52] - |A| - [3320613] - C:\Users\jean-\Music\Charlie Puth - _How Long_ [Official Video].mp3 [25/04/2019 12:09:53] - |A| - [5260231] - C:\Users\jean-\Music\Cher Lloyd - Oath ft.mp3 [25/04/2019 12:09:54] - |A| - [6017095] - C:\Users\jean-\Music\Chris Brown - New Flame (Feat.mp3 [25/04/2019 12:09:55] - |A| - [6039439] - C:\Users\jean-\Music\Chromeo - Jealous (I Aint With It) [Official Video] (1).mp3 [25/04/2019 12:09:57] - |A| - [11672826] - C:\Users\jean-\Music\Coldplay - Magic (Official audio).mp3 [25/04/2019 12:09:59] - |A| - [8735307] - C:\Users\jean-\Music\Cris Cab - Loves Me Not (Audio).mp3 [25/04/2019 12:10:00] - |A| - [4621183] - C:\Users\jean-\Music\D.O.D - STOMP (Official Video)_1.mp3 [25/04/2019 12:10:02] - |A| - [4519680] - C:\Users\jean-\Music\Da French Connexion - Igloo Brother.mp3 [25/04/2019 12:10:03] - |A| - [6109439] - C:\Users\jean-\Music\Dance, Dance, Dance! (Featuring MC Scholar).mp3 [25/04/2019 12:10:04] - |A| - [6248992] - C:\Users\jean-\Music\Dare (La La La) (Brasil 2014).mp3 [25/04/2019 12:10:09] - |A| - [4095559] - C:\Users\jean-\Music\David Guetta & Showtek - Bad ft.mp3 [25/04/2019 12:10:06] - |A| - [9506618] - C:\Users\jean-\Music\David Guetta - She Wolf (Falling To Pieces) ft. Sia (Official Video).mp3 [25/04/2019 12:10:08] - |A| - [9109184] - C:\Users\jean-\Music\David Guetta - She Wolf ft. Sia.mp3 [25/04/2019 12:10:10] - |A| - [5743495] - C:\Users\jean-\Music\Des'Ree You Gotta Be.mp3 [28/08/2016 12:43:49] - |ASH| - [504] - C:\Users\jean-\Music\desktop.ini [25/04/2019 12:10:12] - |A| - [8673779] - C:\Users\jean-\Music\Disiz - Complexité Française ft. Simon Buret (Aaron).mp3 [25/04/2019 12:10:13] - |A| - [11112367] - C:\Users\jean-\Music\Disiz - King Of Cool.mp3 [25/04/2019 12:10:14] - |A| - [5352314] - C:\Users\jean-\Music\Dj Antoine vs Timati feat Kalenna - Welcome To St Tropez (Official Video).mp3 [25/04/2019 12:10:15] - |A| - [8672772] - C:\Users\jean-\Music\DJ Snake & Lil Jon - Turn Down for What.mp3 [25/04/2019 12:10:16] - |A| - [8220558] - C:\Users\jean-\Music\DNCE - Cake By The Ocean.mp3 [25/04/2019 12:10:18] - |A| - [7864822] - C:\Users\jean-\Music\Don't (Don Diablo Remix).mp3 [25/04/2019 12:10:19] - |A| - [9959016] - C:\Users\jean-\Music\Drake - Find Your Love.mp3 [25/04/2019 12:10:20] - |A| - [3076238] - C:\Users\jean-\Music\Drake - Passionfruit.mp3 [25/04/2019 12:10:20] - |A| - [3775386] - C:\Users\jean-\Music\Duke Dumont - Need U (100%) feat. A-M-E.mp3 [25/04/2019 12:10:21] - |A| - [7589815] - C:\Users\jean-\Music\Duke Dumont - Won't Look Back.mp3 [25/04/2019 12:10:22] - |A| - [11648061] - C:\Users\jean-\Music\Ed Sheeran - Don't [Official Video].mp3 [25/04/2019 12:10:24] - |A| - [10988360] - C:\Users\jean-\Music\Ed Sheeran - SING [Official Video].mp3 [25/04/2019 12:10:25] - |A| - [7406708] - C:\Users\jean-\Music\Ella Henderson - Glow.mp3 [25/04/2019 12:10:26] - |A| - [9622782] - C:\Users\jean-\Music\Eminem - Guts Over Fear ft. Sia.mp3 [25/04/2019 12:10:27] - |A| - [4742349] - C:\Users\jean-\Music\Eminem - Walk On Water (Audio) ft. Beyoncé.mp3 [25/04/2019 12:10:28] - |A| - [6483080] - C:\Users\jean-\Music\Etienne DAHO Le premier jour du reste de ta vie.mp3 [25/04/2019 12:10:28] - |A| - [3294948] - C:\Users\jean-\Music\Feder - Blind feat. Emmi (Official Video).mp3 [25/04/2019 12:10:29] - |A| - [4627572] - C:\Users\jean-\Music\Fergie - L.A.LOVE (la la) (Audio)[128K]__[MP3-192K].mp3 [25/04/2019 12:10:29] - |A| - [3476873] - C:\Users\jean-\Music\Fifth Harmony - All In My Head (Flex) ft. Fetty Wap.mp3 [25/04/2019 12:10:30] - |A| - [6543701] - C:\Users\jean-\Music\Flo Rida - Good Feeling [Official Video].mp3 [25/04/2019 12:10:31] - |A| - [3245172] - C:\Users\jean-\Music\Flo Rida - Hello Friday ft. Jason Derulo [Official Music Video].mp3 [25/04/2019 12:10:31] - |A| - [6320628] - C:\Users\jean-\Music\Flo Rida - My House [Official Video].mp3 [21/01/2020 19:04:28] - |SH| - [24729] - C:\Users\jean-\Music\Folder.jpg [25/04/2019 12:10:32] - |A| - [4359045] - C:\Users\jean-\Music\Foster The People - Best Friend (1).mp3 [25/04/2019 12:10:33] - |A| - [4409245] - C:\Users\jean-\Music\Foster The People - Best Friend.mp3 [25/04/2019 12:10:34] - |A| - [5477971] - C:\Users\jean-\Music\Foster The People - Best Friend_2.mp3 [25/04/2019 12:10:35] - |A| - [6221340] - C:\Users\jean-\Music\Foster The People - Pumped up Kicks.mp3 [25/04/2019 12:10:36] - |A| - [7783378] - C:\Users\jean-\Music\Foster The People - Sit Next to Me (Audio).mp3 [25/04/2019 12:10:37] - |A| - [4855150] - C:\Users\jean-\Music\Fuse ODG ft. Angel - TINA (Official Music Video) - OUT NOW on iTunes[128K]__[MP3-192K].mp3 [25/04/2019 12:10:38] - |A| - [5778560] - C:\Users\jean-\Music\Fuse ODG ft. Wyclef - Antenna_2.mp3 [25/04/2019 12:10:39] - |A| - [4321000] - C:\Users\jean-\Music\Future - I.C.W.N.T (I Cant Wife No Thot).mp3 [25/04/2019 12:10:40] - |A| - [3673351] - C:\Users\jean-\Music\Gang Starr - Full Clip.mp3 [25/04/2019 12:10:41] - |A| - [5386796] - C:\Users\jean-\Music\Gilberto Gil Toda menina Bahiana.mp3 [25/04/2019 12:10:42] - |A| - [3602743] - C:\Users\jean-\Music\Gilberto Gil Toda menina Bahiana.mp3 [25/04/2019 12:10:43] - |A| - [9374066] - C:\Users\jean-\Music\Gorgon City - Here For You ft. Laura Welsh.mp3 [25/04/2019 12:10:44] - |A| - [5541184] - C:\Users\jean-\Music\i - kendrick-lamar.mp3 [25/04/2019 12:10:45] - |A| - [5059207] - C:\Users\jean-\Music\Iggy Azalea - Black Widow (Lyrics) ft.mp3 [25/04/2019 12:10:46] - |A| - [5208967] - C:\Users\jean-\Music\Indila - Run Run (paroles).mp3 [25/04/2019 12:10:47] - |A| - [8210755] - C:\Users\jean-\Music\INNA - Cola Song (feat. J Balvin)_1.mp3 [25/04/2019 12:10:48] - |A| - [5169223] - C:\Users\jean-\Music\INNA - Good Time ft pitbull.mp3 [25/04/2019 12:10:48] - |A| - [6738178] - C:\Users\jean-\Music\interpol-fine-mess.mp3 [15/06/2019 15:24:36] - |D| - [0] - C:\Users\jean-\Music\iTunes [25/04/2019 12:10:49] - |A| - [2846914] - C:\Users\jean-\Music\Izzy Bizu - White Tiger (Official Video).mp3 [25/04/2019 12:10:50] - |A| - [11785728] - C:\Users\jean-\Music\Jadakiss - U Make Me Wanna (Feat. Mariah Carey)_1.mp3 [25/04/2019 12:10:51] - |A| - [4112750] - C:\Users\jean-\Music\Jadakiss - U Make Me Wanna ft. Mariah Carey.mp3 [25/04/2019 12:10:52] - |A| - [5476567] - C:\Users\jean-\Music\Jaheim - 6. Could It Be - Ghetto Love.mp3 [25/04/2019 12:10:53] - |A| - [8925632] - C:\Users\jean-\Music\Jaheim - Could It Be.mp3 [25/04/2019 12:10:55] - |A| - [9035840] - C:\Users\jean-\Music\Jaheim - I've Changed.mp3 [25/04/2019 12:10:55] - |A| - [3612559] - C:\Users\jean-\Music\James Hype - More Than Friends (ft. Kelli-Leigh) [Official Lyric Video].mp3 [25/04/2019 12:10:56] - |A| - [5524285] - C:\Users\jean-\Music\Jamiroquai - Virtual Insanity.mp3 [25/04/2019 12:10:57] - |A| - [5633814] - C:\Users\jean-\Music\Janelle Monáe, Jidenna - Yoga[256K]__[MP3-192K].mp3 [25/04/2019 12:10:58] - |A| - [3423953] - C:\Users\jean-\Music\Jason Derulo - It Girl (Official Video) (2).mp3 [25/04/2019 12:10:58] - |A| - [3423953] - C:\Users\jean-\Music\Jason Derulo - It Girl (Official Video).mp3 [25/04/2019 12:10:59] - |A| - [5112512] - C:\Users\jean-\Music\Jennifer Lopez - Same Girl.mp3 [25/04/2019 12:10:59] - |A| - [6486000] - C:\Users\jean-\Music\Jeremy Hills - Let The Love In (Clip Officiel).mp3 [25/04/2019 12:11:00] - |A| - [3560650] - C:\Users\jean-\Music\Jonas Blue - Fast Car ft. Dakota.mp3 [25/04/2019 12:11:01] - |A| - [3322513] - C:\Users\jean-\Music\Jonas Blue - Perfect Strangers ft. JP Cooper.mp3 [25/04/2019 12:11:02] - |A| - [10485165] - C:\Users\jean-\Music\Jorja Smith - Blue Lights (Official Video).mp3 [25/04/2019 12:11:03] - |A| - [6686445] - C:\Users\jean-\Music\Kanye West & 50 Cent - If I Can't Come Home (Dj RedLuke Mashup)[256K]__[MP3-320K].mp3 [25/04/2019 12:11:03] - |A| - [3540982] - C:\Users\jean-\Music\Kanye West - Gold Digger ft. Jamie Foxx.mp3 [25/04/2019 12:11:05] - |A| - [7982407] - C:\Users\jean-\Music\Kanye West ft Pusha T, 2 Chains & Big Sean - Mercy.mp3 [25/04/2019 12:11:06] - |A| - [5725227] - C:\Users\jean-\Music\Kash feat. INXS - Dream On Black Girl (Original Sin).mp3 [25/04/2019 12:11:08] - |A| - [4906494] - C:\Users\jean-\Music\Kash vs. INXs - Dream on black girl.mp3 [25/04/2019 12:11:11] - |A| - [6062400] - C:\Users\jean-\Music\kc_rename.Beyoncé party ft André 3000.mp3 [25/04/2019 12:11:12] - |A| - [8428803] - C:\Users\jean-\Music\Ke$ha - Your Love Is My Drug.mp3 [25/04/2019 12:11:13] - |A| - [4585891] - C:\Users\jean-\Music\Kelly Rowland - Work ( Freemasons Remix).mp3 [25/04/2019 12:11:14] - |A| - [3942703] - C:\Users\jean-\Music\Kendji Girac - Tu Y Yo.mp3 [25/04/2019 12:11:14] - |A| - [4411358] - C:\Users\jean-\Music\Kendrick Lamar - HUMBLE.mp3 [25/04/2019 12:11:15] - |A| - [7109139] - C:\Users\jean-\Music\Kenza Farah - Il est (Clip officiel).mp3 [25/04/2019 12:11:17] - |A| - [7687129] - C:\Users\jean-\Music\Kesha - Woo Hoo (NEW 2013).mp3 [25/04/2019 12:11:18] - |A| - [7040567] - C:\Users\jean-\Music\King and Cross (1).mp3 [25/04/2019 12:11:20] - |A| - [7040567] - C:\Users\jean-\Music\King and Cross.mp3 [25/04/2019 12:11:21] - |A| - [3199633] - C:\Users\jean-\Music\Kungs - Don't You Know (Official Video) ft. Jamie N Commons.mp3 [25/04/2019 12:11:21] - |A| - [3160746] - C:\Users\jean-\Music\Kungs Vs Cookin’ On 3 Burners - This Girl.mp3 [25/04/2019 12:11:26] - |A| - [8609448] - C:\Users\jean-\Music\L'Algerino - Les Bronzés Font Du Biff.mp3 [25/04/2019 12:11:24] - |A| - [6697066] - C:\Users\jean-\Music\L'Algérino - Grosse Garde Robe.mp3 [25/04/2019 12:11:22] - |A| - [7465261] - C:\Users\jean-\Music\La légende Black Feat. Dr Beriz.mp3 [25/04/2019 12:11:23] - |A| - [5853549] - C:\Users\jean-\Music\Lacrim - Barbade.mp3 [25/04/2019 12:11:23] - |A| - [7278899] - C:\Users\jean-\Music\Lady Gaga - Do What U Want (Audio) ft. R. Kelly.mp3 [25/04/2019 12:11:27] - |A| - [7047668] - C:\Users\jean-\Music\Live It Up (Official Video) - Nicky Jam feat. Will Smith & Era Istrefi (2018 FIFA World Cup Russia).mp3 [25/04/2019 12:11:28] - |A| - [4810951] - C:\Users\jean-\Music\Lorde - Team.mp3 [25/04/2019 12:11:29] - |A| - [7701769] - C:\Users\jean-\Music\Luidji - Route 999.mp3 [25/04/2019 12:11:31] - |A| - [8204611] - C:\Users\jean-\Music\Madeon - Pop Culture (Music Video).mp3 [25/04/2019 12:11:32] - |A| - [7893230] - C:\Users\jean-\Music\Mariah Carey - Get Your Number ft. Jermaine Dupri.mp3 [25/04/2019 12:11:33] - |A| - [8921037] - C:\Users\jean-\Music\Marlon Roudette - When The Beat Drops Out.mp3 [25/04/2019 12:11:33] - |A| - [8374779] - C:\Users\jean-\Music\Maroon 5 - Maps (Explicit).mp3 [16/03/2020 19:56:42] - |D| - [0] - C:\Users\jean-\Music\MEmu Music [25/04/2019 12:11:34] - |A| - [4472839] - C:\Users\jean-\Music\Milky Chance - Stolen Dance.mp3 [25/04/2019 12:11:35] - |A| - [5548231] - C:\Users\jean-\Music\MNEK - Every Little Word.mp3 [25/04/2019 12:11:35] - |A| - [5355782] - C:\Users\jean-\Music\Mr. Probz - Waves (Robin Schulz Remix Radio Edit)_1.mp3 [25/04/2019 12:11:36] - |A| - [6332846] - C:\Users\jean-\Music\MUSE - Something Human [Official Music Video].mp3 [25/04/2019 12:11:37] - |A| - [6060871] - C:\Users\jean-\Music\MYA - The Best Of Me (feat.mp3 [25/04/2019 12:11:37] - |A| - [4716487] - C:\Users\jean-\Music\Navii - On Se Sent Seul [Clip Officiel].mp3 [25/04/2019 12:11:38] - |A| - [6952519] - C:\Users\jean-\Music\Nicki Minaj - Anaconda.mp3 [25/04/2019 12:11:38] - |A| - [10779176] - C:\Users\jean-\Music\Nicki Minaj - Pills N Potions (Audio).mp3 [25/04/2019 12:11:39] - |A| - [9885905] - C:\Users\jean-\Music\Nicole Scherzinger - Your Love.mp3 [25/04/2019 12:11:40] - |A| - [4820670] - C:\Users\jean-\Music\One Direction - Midnight Memories.mp3 [25/04/2019 12:11:41] - |A| - [5011765] - C:\Users\jean-\Music\Petit Biscuit - Waterfall Ft. Panama (Official Audio).mp3 [25/04/2019 12:11:41] - |A| - [7108981] - C:\Users\jean-\Music\PH D - I Won't Let You Down (HD) 1981 (1).mp3 [25/04/2019 12:11:42] - |A| - [7108981] - C:\Users\jean-\Music\PH D - I Won't Let You Down (HD) 1981.mp3 [25/04/2019 12:11:43] - |A| - [6815431] - C:\Users\jean-\Music\Pharrell Williams - gust of wind.mp3 [25/04/2019 12:11:43] - |A| - [5788036] - C:\Users\jean-\Music\Pitbull - Fun ft. Chris Brown.mp3 [25/04/2019 12:11:44] - |A| - [2972781] - C:\Users\jean-\Music\Portugal. The Man - _Feel It Still_ (Official Video)(2).mp3 [25/04/2019 12:11:44] - |A| - [2972781] - C:\Users\jean-\Music\Portugal. The Man - _Feel It Still_ (Official Video).mp3 [25/04/2019 12:11:45] - |A| - [748285] - C:\Users\jean-\Music\Présentation du Parc du Petit Prince.mp3 [25/04/2019 12:11:45] - |A| - [8370784] - C:\Users\jean-\Music\RITA ORA - I Will Never Let You Down_1.mp3 [25/04/2019 12:11:46] - |A| - [4182535] - C:\Users\jean-\Music\Robin Schulz - Sun Goes Down feat.mp3 [25/04/2019 12:11:46] - |A| - [10181880] - C:\Users\jean-\Music\Rohff - l'oseille lyrics HD (paroles).mp3 [25/04/2019 12:11:47] - |A| - [4559815] - C:\Users\jean-\Music\Selah Sue ft Guizmo - Crazy Vibes Remix & Nekfeu.mp3 [25/04/2019 12:11:47] - |A| - [7027399] - C:\Users\jean-\Music\Sexion d'assaut - L'ogive nucléaire.mp3 [25/04/2019 12:11:48] - |A| - [9092591] - C:\Users\jean-\Music\SNIPER- J'te parle feat. Soprano (Clip Officiel).mp3 [25/04/2019 12:11:49] - |A| - [6216391] - C:\Users\jean-\Music\Soprano - Cosmo [Clip Officiel] #Cosmofolie.mp3 [25/04/2019 12:11:49] - |A| - [6591367] - C:\Users\jean-\Music\Soprano - Fresh Prince [Clip officiel].mp3 [25/04/2019 12:11:50] - |A| - [10276351] - C:\Users\jean-\Music\Soprano - Ils nous connaissent pas [Clip Officiel].mp3 [25/04/2019 12:11:51] - |A| - [9134787] - C:\Users\jean-\Music\Stanislas - La Belle De Mai.mp3 [25/04/2019 12:11:52] - |A| - [8007443] - C:\Users\jean-\Music\T.I. - Get Back Up ft. Chris Brown [Official Video].mp3 [25/04/2019 12:11:53] - |A| - [4857031] - C:\Users\jean-\Music\T.I. - No Mediocre (Explicit) ft.mp3 [25/04/2019 12:11:53] - |A| - [5866183] - C:\Users\jean-\Music\Termanology - Real Recognize.mp3 [25/04/2019 12:11:54] - |A| - [7960958] - C:\Users\jean-\Music\That's Not Me.mp3 [25/04/2019 12:11:55] - |A| - [6790087] - C:\Users\jean-\Music\The Avener - Fade Out Lines (Official Music Video).mp3 [25/04/2019 12:11:55] - |A| - [5158053] - C:\Users\jean-\Music\The Black Eyed Peas - #WHERESTHELOVE ft. The World (2).mp3 [25/04/2019 12:11:56] - |A| - [5158053] - C:\Users\jean-\Music\The Black Eyed Peas - #WHERESTHELOVE ft. The World.mp3 [25/04/2019 12:11:57] - |A| - [7102274] - C:\Users\jean-\Music\The Black Eyed Peas - Don't Lie(2).mp3 [25/04/2019 12:11:57] - |A| - [7102274] - C:\Users\jean-\Music\The Black Eyed Peas - Don't Lie.mp3 [25/04/2019 12:11:58] - |A| - [7913359] - C:\Users\jean-\Music\The Black Eyed Peas - WHERESTHELOVE ft. The World.mp3 [25/04/2019 12:11:59] - |A| - [5760000] - C:\Users\jean-\Music\The Peacemaker Project - Ich Lass´ Dich Nicht Zurück (Original Mix).mp3 [25/04/2019 12:12:00] - |A| - [6342535] - C:\Users\jean-\Music\The Toxic Avenger - Chase II.mp3 [25/04/2019 12:12:00] - |A| - [8289474] - C:\Users\jean-\Music\Tove Lo (Habits Remix).mp3 [25/04/2019 12:12:01] - |A| - [5994928] - C:\Users\jean-\Music\Ummet Ozcan - Raise Your Hands (Official Video).mp3 [25/04/2019 12:12:02] - |A| - [12206723] - C:\Users\jean-\Music\Usher - Good Kisser_1.mp3 [25/04/2019 12:12:03] - |A| - [7433479] - C:\Users\jean-\Music\Usher - She Came To Give It To You ft.mp3 [25/04/2019 12:12:04] - |A| - [6533191] - C:\Users\jean-\Music\Vance Joy - 'Riptide' Official Video.mp3 [03/04/2020 11:49:44] - |A| - [93801709] - C:\Users\jean-\Music\Vocal 014___.mp3 [03/04/2020 11:49:44] - |A| - [137963629] - C:\Users\jean-\Music\Vocal 016___(1).mp3 [25/04/2019 12:12:04] - |A| - [6286663] - C:\Users\jean-\Music\will.i.am feat. cody wine -- it's my birthday.mp3 ---------- | [My Documents] [14/05/2019 07:36:13] - |D| - [677925095] - C:\Users\jean-\My Documents\.tmp.drivedownload [25/04/2019 12:08:55] - |D| - [1078002630] - C:\Users\jean-\My Documents\3-events nouveau logo blini [18/11/2010 18:27:30] - |A| - [914432] - C:\Users\jean-\My Documents\7z.dll [21/05/2019 09:02:58] - |A| - [6154648] - C:\Users\jean-\My Documents\adsfix_V6_13.05.19.1.exe [18/03/2016 11:58:40] - |A| - [1381] - C:\Users\jean-\My Documents\adware.txt [03/05/2019 13:55:02] - |D| - [0] - C:\Users\jean-\My Documents\AIDA64 Reports [22/06/2019 09:39:32] - |D| - [0] - C:\Users\jean-\My Documents\Any Audio Converter [07/09/2016 14:47:15] - |D| - [179] - C:\Users\jean-\My Documents\AoaoPhoto Digital Studio [03/02/2020 16:45:42] - |D| - [76904667] - C:\Users\jean-\My Documents\Apeaksoft Studio [09/08/2019 07:32:40] - |D| - [28116818] - C:\Users\jean-\My Documents\App [30/08/2019 11:44:02] - |A| - [1508] - C:\Users\jean-\My Documents\argument adsfix muscade moulue widen 31 aout 2019.txt [07/09/2016 14:12:53] - |D| - [0] - C:\Users\jean-\My Documents\Avatar [02/05/2019 09:36:52] - |D| - [14158400] - C:\Users\jean-\My Documents\Bandicam [16/09/2019 09:27:04] - |A| - [124285564] - C:\Users\jean-\My Documents\Barrow 5 gold 2008.avi [12/07/2019 19:56:22] - |D| - [8209] - C:\Users\jean-\My Documents\BCU Backup 2019-07-12_19-56-22 [22/01/2020 22:15:01] - |A| - [667185] - C:\Users\jean-\My Documents\capture crystal disk info tour campaq Tridôme.png [22/01/2020 22:16:13] - |A| - [629970] - C:\Users\jean-\My Documents\capture crystal disk mark tour campaq Brico Dépôt.png [04/01/2020 14:29:43] - |A| - [602265] - C:\Users\jean-\My Documents\Capture update sata driver avec systweak.PNG [04/01/2020 14:36:24] - |A| - [532020] - C:\Users\jean-\My Documents\Capture update sata driver bug à 25%k.PNG [21/01/2020 19:46:41] - |D| - [10859914] - C:\Users\jean-\My Documents\cb71e3a05e17ffb979d15063ef3a079e72a14858 [25/04/2019 14:51:04] - |A| - [1047] - C:\Users\jean-\My Documents\clés de license restoro.txt [22/06/2016 10:05:01] - |A| - [1279955] - C:\Users\jean-\My Documents\creee-en-1959-la-poupee-barbie-a-toujours-autant-de-succes-photo-rl-1439655987.jpg [28/08/2016 12:43:49] - |ASH| - [402] - C:\Users\jean-\My Documents\desktop.ini [09/04/2019 09:19:16] - |D| - [8997] - C:\Users\jean-\My Documents\donate [09/08/2019 07:32:42] - |A| - [176] - C:\Users\jean-\My Documents\Download Full Software.url [10/03/2020 00:09:49] - |D| - [1881] - C:\Users\jean-\My Documents\DVDFab11 [03/02/2020 16:25:14] - |A| - [14338870] - C:\Users\jean-\My Documents\Enregistrement #1.mp4 [03/01/2020 10:49:52] - |A| - [126158] - C:\Users\jean-\My Documents\eset online scanner rapport.txt [26/01/2020 22:03:21] - |A| - [978] - C:\Users\jean-\My Documents\Fiche technique Fiat 500L, Peugeot 1007 & Renault Velsatis Allo Ribérac Ambulances.txt [03/04/2020 11:41:40] - |D| - [0] - C:\Users\jean-\My Documents\Freemake [03/05/2019 12:11:40] - |A| - [1883736] - C:\Users\jean-\My Documents\GPU-Z Sensor Log.txt [20/01/2020 21:11:02] - |D| - [0] - C:\Users\jean-\My Documents\HiSuite [21/01/2020 19:33:26] - |D| - [0] - C:\Users\jean-\My Documents\iMazing.Versions [03/02/2020 10:43:36] - |A| - [3541084] - C:\Users\jean-\My Documents\InstallLogs.zip [15/08/2019 17:15:14] - |D| - [281901441] - C:\Users\jean-\My Documents\intermar'shit de l'art du moine anti-bug framo mac ux themepack [07/09/2016 13:27:09] - |D| - [0] - C:\Users\jean-\My Documents\iSkysoft iMedia Converter Deluxe [08/09/2016 14:42:20] - |D| - [260] - C:\Users\jean-\My Documents\jean-marie.carribon@wanadoo.fr's Online Sync [24/12/2019 19:34:31] - |D| - [5404044] - C:\Users\jean-\My Documents\jonathan souffle [08/09/2016 11:02:16] - |D| - [10413597] - C:\Users\jean-\My Documents\l'art du moine du wa miss dessert de widen, du ou quel tritoir nadia winiccyx, & du ou cewbélink power2ccyx [09/09/2016 12:26:24] - |D| - [0] - C:\Users\jean-\My Documents\lin [03/02/2020 16:32:42] - |D| - [49861] - C:\Users\jean-\My Documents\Log Files [30/12/2019 02:30:43] - |SD| - [0] - C:\Users\jean-\My Documents\Ma musique [03/02/2020 10:27:59] - |RD| - [248] - C:\Users\jean-\My Documents\MAGIX [03/02/2020 09:01:04] - |D| - [853726896] - C:\Users\jean-\My Documents\MAGIX Downloads [03/02/2020 10:39:19] - |D| - [0] - C:\Users\jean-\My Documents\MAGIX_MusicEditor [30/12/2019 02:30:43] - |SD| - [0] - C:\Users\jean-\My Documents\Mes images [30/12/2019 02:30:43] - |SD| - [0] - C:\Users\jean-\My Documents\Mes vidéos [12/02/2020 14:23:57] - |A| - [38958425] - C:\Users\jean-\My Documents\migre.mp4 [21/05/2019 13:21:01] - |D| - [1422861679] - C:\Users\jean-\My Documents\My Music [21/05/2019 13:21:03] - |D| - [113792302] - C:\Users\jean-\My Documents\My Pictures [08/09/2016 16:31:08] - |RSD| - [246884] - C:\Users\jean-\My Documents\My Stationery [21/05/2019 13:21:05] - |D| - [2394215754] - C:\Users\jean-\My Documents\My Videos [28/08/2016 15:03:20] - |RD| - [548653] - C:\Users\jean-\My Documents\Notes [09/09/2016 12:28:09] - |D| - [0] - C:\Users\jean-\My Documents\Nouveau dossier [09/09/2016 12:28:34] - |D| - [0] - C:\Users\jean-\My Documents\Nouveau dossier (2) [01/08/2019 17:26:22] - |D| - [0] - C:\Users\jean-\My Documents\oCam [08/09/2016 16:11:34] - |A| - [18732264] - C:\Users\jean-\My Documents\OneKeyPro.exe [09/08/2019 07:32:42] - |D| - [9765] - C:\Users\jean-\My Documents\Other [18/03/2016 11:58:40] - |A| - [219136] - C:\Users\jean-\My Documents\peid.exe [09/09/2016 12:19:25] - |D| - [24674095] - C:\Users\jean-\My Documents\pilpa 2 - pitmann playthrough - souvenir chez stine & lix le quadrige [13/03/2020 09:55:20] - |A| - [1136] - C:\Users\jean-\My Documents\Process_Analyzer.txt [03/05/2019 12:10:52] - |A| - [25469] - C:\Users\jean-\My Documents\rapport gpu-z.gif [22/01/2020 20:49:32] - |D| - [1350003] - C:\Users\jean-\My Documents\RegRun2 [03/05/2019 13:55:31] - |A| - [9656251] - C:\Users\jean-\My Documents\Report aida64.txt [13/03/2020 09:55:20] - |A| - [82594] - C:\Users\jean-\My Documents\rk rapprtr( 1.txt [13/03/2020 09:55:20] - |A| - [10030] - C:\Users\jean-\My Documents\rk rapprtr( 2.txt [13/03/2020 09:55:20] - |A| - [1416] - C:\Users\jean-\My Documents\rk rapprtr( 3.txt [09/09/2016 16:44:20] - |A| - [1717254] - C:\Users\jean-\My Documents\réparer windows 7 sans perdre des données avec iso et dvd.pdf [05/09/2019 14:53:18] - |D| - [0] - C:\Users\jean-\My Documents\s3c_k13_Setups [21/01/2020 22:40:37] - |D| - [382851033] - C:\Users\jean-\My Documents\Screencast-O-Matic [18/03/2020 09:53:19] - |A| - [13964] - C:\Users\jean-\My Documents\script zhpfix pour la fête des mères.txt [09/04/2019 09:19:15] - |D| - [4806] - C:\Users\jean-\My Documents\scripts [21/03/2020 01:35:47] - |D| - [0] - C:\Users\jean-\My Documents\ShareX [04/04/2020 11:04:52] - |D| - [429] - C:\Users\jean-\My Documents\Smart PC [13/03/2020 16:27:17] - |D| - [0] - C:\Users\jean-\My Documents\Smart PC Utilities [28/08/2016 19:43:07] - |A| - [2879] - C:\Users\jean-\My Documents\starburn.txt [09/09/2016 16:29:07] - |A| - [119671960] - C:\Users\jean-\My Documents\tb_free.exe [09/04/2019 09:17:19] - |A| - [642605] - C:\Users\jean-\My Documents\tgup0018.exe [09/08/2019 07:32:42] - |A| - [194792] - C:\Users\jean-\My Documents\TUPortable.exe [13/03/2020 17:03:48] - |A| - [29896267] - C:\Users\jean-\My Documents\tuto outdate fighter dero's illunicolas.mp4 [22/01/2020 22:12:18] - |D| - [3157271] - C:\Users\jean-\My Documents\TweakShot Screen Capture [26/01/2020 22:41:59] - |A| - [695] - C:\Users\jean-\My Documents\UnZacMe_14_01_2020_21.16.47.txt [20/05/2019 10:52:09] - |AD| - [173538309] - C:\Users\jean-\My Documents\Verbatim [13/03/2020 09:55:20] - |A| - [23144] - C:\Users\jean-\My Documents\ZHPCleaner (S).txt [13/03/2020 09:55:20] - |A| - [588394] - C:\Users\jean-\My Documents\ZHPDiag.html [13/03/2020 09:55:21] - |A| - [485807] - C:\Users\jean-\My Documents\ZHPDiag.txt [13/03/2020 09:55:21] - |A| - [4987] - C:\Users\jean-\My Documents\ZHPFix.txt ---------- | [NCH Software Suite] [27/03/2020 00:38:02] - |A| - [1279] - C:\Users\jean-\NCH Software Suite\Accounting Software.lnk [27/03/2020 00:38:01] - |A| - [1269] - C:\Users\jean-\NCH Software Suite\Audio Editing Software.lnk [27/03/2020 00:38:02] - |A| - [1263] - C:\Users\jean-\NCH Software Suite\Audio File Converter.lnk [27/03/2020 00:38:02] - |A| - [1243] - C:\Users\jean-\NCH Software Suite\Call Recorder.lnk [27/03/2020 00:38:02] - |A| - [1267] - C:\Users\jean-\NCH Software Suite\Cash Register Software.lnk [27/03/2020 00:38:02] - |A| - [1255] - C:\Users\jean-\NCH Software Suite\CD Label Maker.lnk [27/03/2020 00:38:02] - |A| - [1235] - C:\Users\jean-\NCH Software Suite\CD Ripper.lnk [27/03/2020 00:38:02] - |A| - [1277] - C:\Users\jean-\NCH Software Suite\CD, DVD, BluRay Burner.lnk [27/03/2020 00:38:02] - |A| - [1265] - C:\Users\jean-\NCH Software Suite\Checkbook Software.lnk [27/03/2020 00:38:02] - |A| - [1271] - C:\Users\jean-\NCH Software Suite\Classic FTP Software.lnk [27/03/2020 00:38:02] - |A| - [1293] - C:\Users\jean-\NCH Software Suite\Diagram and Flowchart Software.lnk [27/03/2020 00:38:02] - |A| - [1261] - C:\Users\jean-\NCH Software Suite\Dictation Software.lnk [27/03/2020 00:38:02] - |A| - [1285] - C:\Users\jean-\NCH Software Suite\Doxillion Document Converter.lnk [27/03/2020 00:38:02] - |A| - [1271] - C:\Users\jean-\NCH Software Suite\House Design Software.lnk [27/03/2020 00:38:02] - |A| - [1269] - C:\Users\jean-\NCH Software Suite\Image File Converter.lnk [27/03/2020 00:38:02] - |A| - [1289] - C:\Users\jean-\NCH Software Suite\Inventory Management Software.lnk [27/03/2020 00:38:02] - |A| - [1271] - C:\Users\jean-\NCH Software Suite\Invoice Software.lnk [27/03/2020 00:38:02] - |A| - [1281] - C:\Users\jean-\NCH Software Suite\Multitrack Recording Software.lnk [27/03/2020 00:38:02] - |A| - [1271] - C:\Users\jean-\NCH Software Suite\Photo Editing Software.lnk [27/03/2020 00:38:02] - |A| - [1267] - C:\Users\jean-\NCH Software Suite\Slideshow Software.lnk [27/03/2020 00:38:02] - |A| - [1275] - C:\Users\jean-\NCH Software Suite\Streaming Audio Recorder.lnk [27/03/2020 00:38:02] - |A| - [1269] - C:\Users\jean-\NCH Software Suite\Text Expander Software.lnk [27/03/2020 00:38:02] - |A| - [1267] - C:\Users\jean-\NCH Software Suite\Transcription Software.lnk [27/03/2020 00:38:02] - |A| - [1251] - C:\Users\jean-\NCH Software Suite\Typing Tutor.lnk [27/03/2020 00:38:02] - |A| - [1301] - C:\Users\jean-\NCH Software Suite\VHS to Digital Converter Software.lnk [27/03/2020 00:38:02] - |A| - [1271] - C:\Users\jean-\NCH Software Suite\Video Editing Software.lnk [27/03/2020 00:38:02] - |A| - [1261] - C:\Users\jean-\NCH Software Suite\Video File Converter.lnk [27/03/2020 00:38:02] - |A| - [1253] - C:\Users\jean-\NCH Software Suite\Zip Program.lnk ---------- | [NetHood] ---------- | [OneDrive] [09/09/2016 16:20:48] - |ASHT| - [0] - C:\Users\jean-\OneDrive\.849C9593-D756-4E56-8D6E-42412F2A707B [15/03/2020 19:30:55] - |SH| - [96] - C:\Users\jean-\OneDrive\desktop.ini [28/08/2016 12:55:39] - |D| - [120] - C:\Users\jean-\OneDrive\Documents [28/08/2016 12:54:44] - |D| - [1036245095] - C:\Users\jean-\OneDrive\events nouveau logo blini [28/08/2016 12:55:37] - |D| - [0] - C:\Users\jean-\OneDrive\EVENTS NOUVEAU LOGO BLINI APPLICATION [28/08/2016 12:55:36] - |D| - [0] - C:\Users\jean-\OneDrive\IMAGE [28/08/2016 13:30:39] - |A| - [20] - C:\Users\jean-\OneDrive\time.txt [28/08/2016 13:32:04] - |A| - [53786168] - C:\Users\jean-\OneDrive\tvc_setup_2.0.0.145_ML.exe [28/08/2016 12:54:50] - |D| - [1883439104] - C:\Users\jean-\OneDrive\VIDEO ---------- | [Pictures] [14/05/2019 07:32:53] - |D| - [0] - C:\Users\jean-\Pictures\.tmp.drivedownload [15/02/2020 13:04:38] - |A| - [97606] - C:\Users\jean-\Pictures\2020-02-15_12h03_54.png [28/12/2019 16:17:01] - |D| - [0] - C:\Users\jean-\Pictures\Apowersoft [07/04/2020 11:13:49] - |D| - [0] - C:\Users\jean-\Pictures\Ashampoo Snap 10 [07/04/2020 11:04:27] - |D| - [0] - C:\Users\jean-\Pictures\Ashampoo Snap 8 [28/08/2016 12:49:20] - |D| - [190] - C:\Users\jean-\Pictures\Camera Roll [04/04/2020 17:13:55] - |A| - [219360] - C:\Users\jean-\Pictures\Capture eset drive security flox.PNG [04/04/2020 18:06:37] - |A| - [219360] - C:\Users\jean-\Pictures\Capture eset drive security game boosster.PNG [04/04/2020 12:30:45] - |A| - [219360] - C:\Users\jean-\Pictures\Capture eset drive security man.PNG [04/04/2020 12:04:15] - |A| - [219360] - C:\Users\jean-\Pictures\Capture eset drive security uuliyuh.PNG [03/05/2019 12:30:22] - |A| - [784107] - C:\Users\jean-\Pictures\Capture taille icones barre de taches écran.PNG [22/06/2016 10:05:01] - |A| - [1279955] - C:\Users\jean-\Pictures\creee-en-1959-la-poupee-barbie-a-toujours-autant-de-succes-photo-rl-1439655987.jpg [28/08/2016 12:43:49] - |ASH| - [504] - C:\Users\jean-\Pictures\desktop.ini [09/09/2016 06:45:37] - |D| - [1790115] - C:\Users\jean-\Pictures\Feedback [16/03/2020 19:56:42] - |D| - [0] - C:\Users\jean-\Pictures\MEmu Photo [04/01/2020 17:05:21] - |A| - [1556493] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_02_06_3.jpg [04/01/2020 17:05:22] - |A| - [1766450] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_02_08_1.jpg [04/01/2020 17:05:24] - |A| - [1581112] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_02_14_6.jpg [04/01/2020 17:05:25] - |A| - [1025030] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_02_17_1.jpg [04/01/2020 17:05:30] - |A| - [1251573] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_02_18_2.jpg [04/01/2020 17:05:33] - |A| - [1619092] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_02_24_1.jpg [04/01/2020 17:05:34] - |A| - [1699065] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_02_27_9.jpg [04/01/2020 17:05:37] - |A| - [1141048] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_02_33_9.jpg [04/01/2020 17:05:38] - |A| - [1160302] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_02_35_7.jpg [04/01/2020 17:05:39] - |A| - [1044584] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_02_36_8.jpg [04/01/2020 17:05:41] - |A| - [1881911] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_03_27_1.jpg [04/01/2020 17:05:42] - |A| - [1804625] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_03_48_8.jpg [04/01/2020 17:05:43] - |A| - [1893062] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_05_52_9.jpg [04/01/2020 17:05:43] - |A| - [1854663] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_05_54_4.jpg [04/01/2020 17:05:44] - |A| - [1808397] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_05_55_6.jpg [04/01/2020 17:05:46] - |A| - [1699209] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_06_31_0.jpg [04/01/2020 17:05:47] - |A| - [1657775] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_06_34_3.jpg [04/01/2020 17:05:47] - |A| - [1615912] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_06_35_7.jpg [04/01/2020 17:05:48] - |A| - [1644051] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_06_37_2.jpg [04/01/2020 17:05:49] - |A| - [1282883] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_06_38_7.jpg [04/01/2020 17:05:50] - |A| - [1692028] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_06_40_3.jpg [04/01/2020 17:05:50] - |A| - [1810974] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_06_42_2.jpg [04/01/2020 17:05:52] - |A| - [1704907] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_06_44_2.jpg [04/01/2020 17:05:53] - |A| - [1613553] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_06_46_0.jpg [04/01/2020 17:05:53] - |A| - [1777185] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_06_47_4.jpg [04/01/2020 17:05:54] - |A| - [1931095] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_06_48_7.jpg [04/01/2020 17:05:55] - |A| - [1749126] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_06_50_2.jpg [04/01/2020 17:05:56] - |A| - [1782414] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_06_51_6.jpg [04/01/2020 17:05:57] - |A| - [1672481] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_06_52_7.jpg [04/01/2020 17:06:01] - |A| - [1526888] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_06_54_2.jpg [04/01/2020 17:06:02] - |A| - [1881636] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_06_56_0.jpg [04/01/2020 17:06:03] - |A| - [1753824] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_06_57_0.jpg [04/01/2020 17:06:04] - |A| - [1684740] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_06_58_9.jpg [04/01/2020 17:06:05] - |A| - [1804860] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_07_00_2.jpg [04/01/2020 17:06:06] - |A| - [1909332] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_07_01_8.jpg [04/01/2020 17:06:08] - |A| - [1477019] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_07_28_3.jpg [04/01/2020 17:06:09] - |A| - [1686776] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_07_30_0.jpg [04/01/2020 17:06:10] - |A| - [1659417] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_07_59_4.jpg [04/01/2020 17:06:11] - |A| - [1649468] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_08_01_1.jpg [04/01/2020 17:06:12] - |A| - [1499854] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_08_33_5.jpg [04/01/2020 17:06:13] - |A| - [1358011] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_11_01_4.jpg [04/01/2020 17:06:14] - |A| - [1688923] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_11_03_4.jpg [04/01/2020 17:06:15] - |A| - [1725934] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_11_07_5.jpg [04/01/2020 17:06:16] - |A| - [1862395] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_11_08_5.jpg [04/01/2020 17:06:16] - |A| - [2071034] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_11_13_6.jpg [04/01/2020 17:06:18] - |A| - [1988318] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_11_19_8.jpg [04/01/2020 17:06:19] - |A| - [2060884] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_11_26_8.jpg [04/01/2020 17:06:20] - |A| - [2204647] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_11_28_3.jpg [04/01/2020 17:06:21] - |A| - [1232272] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_11_46_1.jpg [04/01/2020 17:06:22] - |A| - [1109322] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_11_55_5.jpg [04/01/2020 17:06:22] - |A| - [1751160] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_12_21_6.jpg [04/01/2020 17:06:24] - |A| - [1863452] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_12_22_6.jpg [04/01/2020 17:06:25] - |A| - [1847648] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_12_26_7.jpg [04/01/2020 17:06:26] - |A| - [1673449] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_12_29_1.jpg [04/01/2020 17:06:27] - |A| - [1804461] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_12_31_3.jpg [04/01/2020 17:06:28] - |A| - [1859505] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_13_19_0.jpg [04/01/2020 17:06:29] - |A| - [1818123] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_13_20_5.jpg [04/01/2020 17:06:30] - |A| - [1746431] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_13_55_1.jpg [04/01/2020 17:06:31] - |A| - [1720426] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_13_56_4.jpg [04/01/2020 17:06:32] - |A| - [1593376] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_16_30_1.jpg [04/01/2020 17:06:33] - |A| - [1612734] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_16_34_3.jpg [04/01/2020 17:06:33] - |A| - [1671918] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_16_38_0.jpg [04/01/2020 17:06:34] - |A| - [1598993] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_16_48_9.jpg [04/01/2020 17:06:35] - |A| - [1849338] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_16_55_6.jpg [04/01/2020 17:06:36] - |A| - [1889559] - C:\Users\jean-\Pictures\Picture_2020_01_04_03_17_01_8.jpg [25/04/2019 11:28:31] - |A| - [24314] - C:\Users\jean-\Pictures\propriétés systême.PNG [28/08/2016 12:49:21] - |D| - [190] - C:\Users\jean-\Pictures\Saved Pictures [15/02/2020 13:02:52] - |D| - [80754] - C:\Users\jean-\Pictures\Screenpresso [25/01/2020 05:33:51] - |D| - [0] - C:\Users\jean-\Pictures\Smart Game Booster [09/08/2019 07:57:07] - |D| - [0] - C:\Users\jean-\Pictures\smplayer_screenshots ---------- | [PrintHood] ---------- | [Recent] ---------- | [RegBack 2016-09-06 15-49-18] ---------- | [Saved Games] [28/08/2016 12:43:50] - |ASH| - [282] - C:\Users\jean-\Saved Games\desktop.ini ---------- | [Searches] [28/08/2016 12:43:49] - |ASH| - [524] - C:\Users\jean-\Searches\desktop.ini [28/08/2016 12:43:50] - |RA| - [248] - C:\Users\jean-\Searches\Everywhere.search-ms [28/08/2016 12:43:50] - |RA| - [248] - C:\Users\jean-\Searches\Indexed Locations.search-ms [28/08/2016 12:49:45] - |A| - [852] - C:\Users\jean-\Searches\winrt--{S-1-5-21-4265624635-2019933758-61733912-1001}-.searchconnector-ms ---------- | [SendTo] ---------- | [Start Menu] [28/01/2020 01:41:52] - |A| - [174] - C:\Users\jean-\Start Menu\desktop.ini [30/12/2019 02:30:43] - |SD| - [0] - C:\Users\jean-\Start Menu\Programmes [31/08/2016 16:04:34] - |RD| - [58237] - C:\Users\jean-\Start Menu\Programs ---------- | [Suite NCH Software] [09/03/2020 15:32:01] - |A| - [1291] - C:\Users\jean-\Suite NCH Software\Convertisseur d'images.lnk [09/03/2020 15:28:28] - |A| - [1303] - C:\Users\jean-\Suite NCH Software\Convertisseur de fichiers audio.lnk [09/03/2020 15:31:10] - |A| - [1301] - C:\Users\jean-\Suite NCH Software\Convertisseur de fichiers vidéo.lnk [09/03/2020 15:31:28] - |A| - [1313] - C:\Users\jean-\Suite NCH Software\Convertisseur VHS en numérique.lnk [09/03/2020 15:32:10] - |A| - [1307] - C:\Users\jean-\Suite NCH Software\Créateur d'étiquettes de disque.lnk [09/03/2020 15:30:26] - |A| - [1303] - C:\Users\jean-\Suite NCH Software\Didacticiel de dactylographie.lnk [09/03/2020 15:35:15] - |A| - [1323] - C:\Users\jean-\Suite NCH Software\Doxillion - Convertisseur de documents.lnk [09/03/2020 15:29:38] - |A| - [1277] - C:\Users\jean-\Suite NCH Software\Enregistreur d'appels.lnk [09/03/2020 15:29:26] - |A| - [1307] - C:\Users\jean-\Suite NCH Software\Enregistreur de streaming audio.lnk [09/03/2020 15:28:42] - |A| - [1287] - C:\Users\jean-\Suite NCH Software\Enregistreur multipiste.lnk [09/03/2020 15:29:05] - |A| - [1267] - C:\Users\jean-\Suite NCH Software\Extracteur de CD.lnk [09/03/2020 15:35:03] - |A| - [1303] - C:\Users\jean-\Suite NCH Software\Graveur de CD, DVD, BluRay.lnk [09/03/2020 15:36:31] - |A| - [1289] - C:\Users\jean-\Suite NCH Software\Logiciel Classic FTP.lnk [09/03/2020 15:34:28] - |A| - [1305] - C:\Users\jean-\Suite NCH Software\Logiciel de caisse enregistreuse.lnk [09/03/2020 15:30:54] - |A| - [1289] - C:\Users\jean-\Suite NCH Software\Logiciel de capture vidéo.lnk [09/03/2020 15:33:33] - |A| - [1307] - C:\Users\jean-\Suite NCH Software\Logiciel de comptabilité.lnk [09/03/2020 15:33:02] - |A| - [1307] - C:\Users\jean-\Suite NCH Software\Logiciel de design pour maison.lnk [09/03/2020 15:32:28] - |A| - [1333] - C:\Users\jean-\Suite NCH Software\Logiciel de diagrammes et d'organigrammes.lnk [09/03/2020 15:31:20] - |A| - [1291] - C:\Users\jean-\Suite NCH Software\Logiciel de diaporama.lnk [09/03/2020 15:30:11] - |A| - [1279] - C:\Users\jean-\Suite NCH Software\Logiciel de dictée.lnk [09/03/2020 15:33:17] - |A| - [1303] - C:\Users\jean-\Suite NCH Software\Logiciel de facturation.lnk [09/03/2020 15:33:46] - |A| - [1313] - C:\Users\jean-\Suite NCH Software\Logiciel de finances personnelles.lnk [09/03/2020 15:34:07] - |A| - [1319] - C:\Users\jean-\Suite NCH Software\Logiciel de gestion de l’inventaire.lnk [09/03/2020 15:30:41] - |A| - [1295] - C:\Users\jean-\Suite NCH Software\Logiciel de montage vidéo.lnk [09/03/2020 15:31:41] - |A| - [1297] - C:\Users\jean-\Suite NCH Software\Logiciel de retouche photo.lnk [09/03/2020 15:29:56] - |A| - [1291] - C:\Users\jean-\Suite NCH Software\Logiciel de transcription.lnk [09/03/2020 15:36:03] - |A| - [1301] - C:\Users\jean-\Suite NCH Software\Logiciel développeur de texte.lnk [09/03/2020 15:35:39] - |A| - [1275] - C:\Users\jean-\Suite NCH Software\Programme zip.lnk [09/03/2020 15:28:13] - |A| - [1269] - C:\Users\jean-\Suite NCH Software\Éditeur audio.lnk ---------- | [Templates] ---------- | [ultracopier] ---------- | [Videos] [29/12/2019 10:11:08] - |A| - [185043] - C:\Users\jean-\Videos\2019-05-02 at 09-31-58.mp4 [03/04/2020 11:50:50] - |D| - [92541172] - C:\Users\jean-\Videos\Any Audio Converter [29/12/2019 10:08:58] - |D| - [231355486] - C:\Users\jean-\Videos\claire destandau fachée à cause mêmes choses qui donnes des baffes [29/12/2019 10:11:08] - |A| - [103820492] - C:\Users\jean-\Videos\copie replay 8 juin 2018 3à5rem 10Crem anti-JJAD before part z sigma++sfce part 6.wmv [29/12/2019 10:11:11] - |D| - [1838963106] - C:\Users\jean-\Videos\Debut [28/08/2016 12:43:49] - |ASH| - [504] - C:\Users\jean-\Videos\desktop.ini [16/03/2020 19:56:42] - |D| - [0] - C:\Users\jean-\Videos\MEmu Video [29/12/2019 10:11:09] - |A| - [127349951] - C:\Users\jean-\Videos\scène 1 # APUB3AMFUW & Anti-TFM21.mp4 [25/01/2020 05:33:51] - |D| - [0] - C:\Users\jean-\Videos\Smart Game Booster ---------- | [Voisinage d'impression] ---------- | [Voisinage réseau] ---------- | C:\ProgramData [23/01/2020 10:52:05] - |A| - [89878] - C:\ProgramData\1579769487.bdinstall.bin [23/01/2020 10:52:50] - |A| - [72529] - C:\ProgramData\1579769552.bdinstall.bin [23/01/2020 15:47:40] - |A| - [88017] - C:\ProgramData\1579781718.bdinstall.bin [06/03/2020 14:26:44] - |D| - [0] - C:\ProgramData\360Quarant [11/03/2020 22:13:49] - |D| - [2746698] - C:\ProgramData\ABBYY [11/03/2020 16:53:43] - |D| - [459807875] - C:\ProgramData\Abelssoft [11/03/2020 18:18:17] - |D| - [13658568] - C:\ProgramData\ADiag [09/03/2020 22:05:31] - |D| - [0] - C:\ProgramData\Adobe [19/01/2020 09:04:51] - |A| - [102940] - C:\ProgramData\agent.1579417490.bdinstall.v2.bin [22/01/2020 15:45:23] - |A| - [42004] - C:\ProgramData\agent.1579700723.10212.v2.bin [22/01/2020 19:39:20] - |A| - [42004] - C:\ProgramData\agent.1579714760.9016.v2.bin [23/01/2020 08:29:48] - |A| - [42004] - C:\ProgramData\agent.1579760988.9144.v2.bin [23/01/2020 14:44:48] - |A| - [42004] - C:\ProgramData\agent.1579783488.13888.v2.bin [22/01/2020 10:30:05] - |A| - [45924] - C:\ProgramData\agent.uninstall.1579681800.bdinstall.v2.bin [19/01/2020 15:49:55] - |A| - [75180] - C:\ProgramData\agent.update.1579441777.bdinstall.v2.bin [05/03/2020 18:47:49] - |D| - [0] - C:\ProgramData\Aimersoft [09/03/2020 22:17:50] - |D| - [29] - C:\ProgramData\ALLPlayer [31/08/2016 16:01:16] - |D| - [152] - C:\ProgramData\AMD [03/04/2020 01:06:19] - |D| - [104] - C:\ProgramData\Aomei [22/01/2020 15:36:37] - |D| - [443] - C:\ProgramData\AomeiBR [15/08/2019 19:47:38] - |D| - [0] - C:\ProgramData\Apeaksoft Studio [20/01/2020 17:15:17] - |D| - [179746381] - C:\ProgramData\Apple [23/01/2020 00:09:35] - |D| - [166125733] - C:\ProgramData\Apple Computer [30/12/2019 03:19:37] - |SHD| - [0] - C:\ProgramData\Application Data [01/04/2020 12:57:29] - |D| - [577820] - C:\ProgramData\Ashampoo [01/04/2020 13:00:46] - |D| - [110235] - C:\ProgramData\Ashampoo Backup [19/01/2020 10:02:08] - |D| - [0] - C:\ProgramData\Atc [21/01/2020 20:35:37] - |D| - [186] - C:\ProgramData\ATI [03/04/2020 01:08:49] - |D| - [81375306] - C:\ProgramData\Audials [03/04/2020 01:08:49] - |D| - [0] - C:\ProgramData\AUDIALS_TEMP_INSTALL [22/01/2020 16:16:20] - |D| - [1944648] - C:\ProgramData\AVAST Software [05/03/2020 19:39:47] - |D| - [8767721] - C:\ProgramData\AVG [22/01/2020 13:15:07] - |D| - [0] - C:\ProgramData\Avira [19/01/2020 10:01:15] - |D| - [0] - C:\ProgramData\BDLogging [19/01/2020 09:04:50] - |D| - [0] - C:\ProgramData\Bitdefender Agent [09/12/2019 16:10:06] - |D| - [104680] - C:\ProgramData\boost_interprocess [31/03/2020 11:42:29] - |D| - [114] - C:\ProgramData\BootRacer [07/12/2017 08:05:27] - |D| - [89242] - C:\ProgramData\Broadcom [06/10/2019 21:09:16] - |SHD| - [0] - C:\ProgramData\Bureau [07/08/2019 20:23:11] - |D| - [0] - C:\ProgramData\BVRP Software [10/03/2020 18:31:38] - |D| - [0] - C:\ProgramData\cache [07/12/2017 07:47:34] - |AD| - [0] - C:\ProgramData\CacheWrite [09/03/2020 23:01:20] - |D| - [0] - C:\ProgramData\Chemtable Software [19/01/2020 15:47:34] - |A| - [813740] - C:\ProgramData\cl.1579418035.bdinstall.v2.bin [22/01/2020 10:30:23] - |A| - [107624] - C:\ProgramData\cl.1579681818.bdinstall.v2.bin [19/01/2020 15:47:37] - |A| - [102308] - C:\ProgramData\cl.kit.1579418024.bdinstall.v2.bin [22/01/2020 10:30:56] - |A| - [406864] - C:\ProgramData\cl.uninstall.1579681754.bdinstall.v2.bin [24/12/2019 18:22:37] - |D| - [202] - C:\ProgramData\CLSK [01/04/2020 15:39:53] - |D| - [36864] - C:\ProgramData\Comodo [07/08/2019 20:21:25] - |D| - [3886] - C:\ProgramData\Configuration [17/08/2019 02:58:40] - |A| - [33683] - C:\ProgramData\Cute3gpformat.ini [17/08/2019 02:55:26] - |A| - [22148] - C:\ProgramData\Cutepspformat.ini [23/01/2020 13:50:09] - |D| - [5654347] - C:\ProgramData\CyberLink [06/04/2020 10:29:16] - |D| - [1383] - C:\ProgramData\Defendemus z o.o [04/04/2020 12:56:17] - |D| - [59927] - C:\ProgramData\Desktop [21/01/2020 19:15:41] - |D| - [100] - C:\ProgramData\DigiDNA [19/01/2020 15:48:33] - |A| - [63589] - C:\ProgramData\dm.1579441695.bdinstall.bin [22/01/2020 10:30:16] - |A| - [20355] - C:\ProgramData\dm.1579681806.bdinstall.bin [22/01/2020 10:29:44] - |A| - [38141] - C:\ProgramData\dm.uninstall.1579681771.bdinstall.bin [30/12/2019 03:19:37] - |SHD| - [0] - C:\ProgramData\Documents [08/03/2020 16:06:45] - |D| - [62] - C:\ProgramData\Easy Duplicate Finder [12/03/2020 16:07:19] - |D| - [0] - C:\ProgramData\EdrawSoft [05/04/2020 16:27:12] - |D| - [0] - C:\ProgramData\Emsisoft [05/02/2020 17:46:06] - |D| - [10720724] - C:\ProgramData\EPSON [04/02/2020 16:35:50] - |D| - [0] - C:\ProgramData\ESET [08/03/2020 16:19:51] - |D| - [231920455] - C:\ProgramData\F-Secure [07/04/2020 15:01:08] - |D| - [11911] - C:\ProgramData\Fighters [08/03/2020 22:40:34] - |D| - [0] - C:\ProgramData\FileOpen [03/04/2020 11:41:33] - |D| - [30273343] - C:\ProgramData\Freemake [19/01/2020 10:02:08] - |D| - [0] - C:\ProgramData\Gemma [17/08/2019 08:52:17] - |D| - [0] - C:\ProgramData\gifconverter [09/03/2020 17:50:27] - |D| - [12722] - C:\ProgramData\Google [10/03/2020 01:38:52] - |D| - [2582927] - C:\ProgramData\GRETECH [28/12/2019 11:51:51] - |D| - [30427011] - C:\ProgramData\Heimdal Security [15/03/2020 11:51:40] - |D| - [0] - C:\ProgramData\IDM [08/03/2020 22:21:43] - |D| - [98204] - C:\ProgramData\Immunet [06/04/2020 10:34:47] - |D| - [252763516] - C:\ProgramData\Innovative Solutions [28/12/2019 17:03:30] - |D| - [306922] - C:\ProgramData\install_backup [22/08/2019 21:14:31] - |D| - [3786333] - C:\ProgramData\install_clap [07/12/2017 08:00:43] - |D| - [148814877] - C:\ProgramData\Intel [24/03/2020 21:25:58] - |D| - [0] - C:\ProgramData\IObit [27/03/2020 11:48:56] - |D| - [3960] - C:\ProgramData\KeepVid [06/03/2020 21:25:14] - |D| - [28501] - C:\ProgramData\Kingsoft [13/01/2020 16:43:44] - |D| - [0] - C:\ProgramData\Lamia [06/03/2020 18:30:40] - |D| - [143] - C:\ProgramData\Licenses [28/10/2019 16:09:20] - |D| - [82642] - C:\ProgramData\LiteManager Files [23/01/2020 12:42:08] - |D| - [0] - C:\ProgramData\LogiShrd [18/01/2020 10:41:51] - |D| - [0] - C:\ProgramData\Logs [03/02/2020 10:26:04] - |D| - [838] - C:\ProgramData\MAGIX [07/12/2017 08:10:18] - |A| - [2064264] - C:\ProgramData\MakeMarkerFile.exe [07/12/2017 08:10:18] - |A| - [3004] - C:\ProgramData\MakeMarkerFile.xml [03/02/2020 21:35:32] - |D| - [408584602] - C:\ProgramData\Malwarebytes [07/08/2019 20:34:27] - |D| - [512] - C:\ProgramData\Malwarebytes' Anti-Malware (portable) [15/02/2020 11:15:51] - |D| - [49357] - C:\ProgramData\MB2Migration [06/10/2019 21:09:16] - |SHD| - [0] - C:\ProgramData\Menu Démarrer [12/12/2019 09:33:57] - |SD| - [1330910864] - C:\ProgramData\Microsoft [30/12/2019 03:26:16] - |D| - [25] - C:\ProgramData\Microsoft OneDrive [11/03/2020 22:20:14] - |A| - [227] - C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc [08/12/2019 12:41:47] - |A| - [16] - C:\ProgramData\mntemp [06/10/2019 21:09:16] - |SHD| - [0] - C:\ProgramData\Modèles [21/01/2020 21:22:31] - |D| - [6366] - C:\ProgramData\Mozilla [22/08/2019 21:04:14] - |D| - [0] - C:\ProgramData\NCH Software [15/02/2020 13:07:48] - |D| - [6333] - C:\ProgramData\Norton [13/01/2020 16:43:41] - |RASH| - [290] - C:\ProgramData\ntuser.pol [27/10/2019 12:08:13] - |D| - [82552078] - C:\ProgramData\Oracle [22/08/2019 21:14:43] - |D| - [1566444863] - C:\ProgramData\Package Cache [15/08/2019 18:14:51] - |D| - [49152] - C:\ProgramData\Packages [02/04/2020 13:35:57] - |D| - [2918166] - C:\ProgramData\Paragon Software [25/01/2020 05:31:32] - |D| - [145] - C:\ProgramData\PCGameBoost [27/03/2020 13:18:29] - |D| - [36] - C:\ProgramData\PDVD [20/01/2020 16:26:08] - |D| - [0] - C:\ProgramData\ProductData [31/03/2020 18:13:27] - |D| - [12550144] - C:\ProgramData\Raxco [15/03/2020 18:50:52] - |D| - [0] - C:\ProgramData\RealVNC-Service [12/12/2019 09:33:57] - |D| - [1001] - C:\ProgramData\regid.1991-06.com.microsoft [23/01/2020 10:56:05] - |D| - [908660] - C:\ProgramData\Samsung [13/01/2020 16:44:21] - |D| - [0] - C:\ProgramData\Shared Space [31/03/2020 12:15:44] - |D| - [1008816] - C:\ProgramData\SharewareOnSale Notifier [12/12/2019 09:33:57] - |D| - [0] - C:\ProgramData\SoftwareDistribution [23/01/2020 10:55:39] - |D| - [9868926] - C:\ProgramData\Sony Corporation [04/04/2020 12:56:19] - |D| - [218145] - C:\ProgramData\Start Menu [17/01/2020 17:58:39] - |D| - [4309] - C:\ProgramData\StartMenuX [27/12/2019 12:40:15] - |D| - [31886829] - C:\ProgramData\SUPPORTDIR [26/10/2019 17:10:02] - |D| - [16704] - C:\ProgramData\SystemAcCrux [03/02/2020 18:16:01] - |D| - [406] - C:\ProgramData\Tech Tool Store [05/09/2019 20:07:39] - |D| - [0] - C:\ProgramData\Temp [30/03/2020 07:32:43] - |A| - [32] - C:\ProgramData\Temp.log [04/04/2020 12:56:25] - |D| - [0] - C:\ProgramData\Templates [06/04/2020 18:36:01] - |D| - [36990954] - C:\ProgramData\Tencent [15/08/2019 19:44:53] - |D| - [0] - C:\ProgramData\Tipard Studio [19/01/2020 21:57:35] - |D| - [0] - C:\ProgramData\ToastGenerator [15/03/2020 17:57:16] - |D| - [21549] - C:\ProgramData\USBSRService [12/12/2019 09:33:57] - |D| - [14518108] - C:\ProgramData\USOPrivate [12/12/2019 09:33:57] - |D| - [7753728] - C:\ProgramData\USOShared [31/10/2019 08:13:36] - |D| - [27119658] - C:\ProgramData\UVK [19/01/2020 15:49:20] - |A| - [73817] - C:\ProgramData\vpn.1579441738.bdinstall.bin [22/01/2020 10:30:48] - |A| - [40329] - C:\ProgramData\vpn.uninstall.1579681824.bdinstall.bin [12/12/2019 16:00:45] - |D| - [0] - C:\ProgramData\WindowsHolographicDevices [17/03/2020 19:52:24] - |D| - [2242] - C:\ProgramData\Wondershare [13/01/2020 16:44:27] - |D| - [583734] - C:\ProgramData\{4C13979D-F8C4-41F2-B4D5-07A2A4FB8F6B} [25/01/2020 06:08:59] - |D| - [138] - C:\ProgramData\{E0224FF9-7AE3-4F9E-991A-2F004F7E3952} [15/03/2020 18:16:18] - |D| - [68] - C:\ProgramData\{EAAB5A83-3809-4B0E-83A6-E4B0DBF2157E} [20/01/2020 16:47:54] - |D| - [0] - C:\ProgramData\{F86B0233-9A85-4589-8AAF-524CC4F8211B} ---------- | C:\ProgramData\Microsoft\Windows\Start Menu [28/01/2020 01:52:18] - |A| - [1956] - C:\ProgramData\Microsoft\Windows\Start Menu\Avant Browser(1).lnk [21/01/2020 18:50:25] - |A| - [1998] - C:\ProgramData\Microsoft\Windows\Start Menu\Avant Browser.lnk [12/12/2019 09:31:45] - |ASH| - [174] - C:\ProgramData\Microsoft\Windows\Start Menu\desktop.ini [03/02/2020 10:26:16] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Optimisation du système [06/10/2019 21:09:16] - |SHD| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programmes [12/12/2019 09:33:57] - |RD| - [214017] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs ---------- | C:\ProgramData\Microsoft\Windows\Start Menu\Programs [09/03/2020 22:18:28] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\(Default) [03/04/2020 01:01:41] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip [12/12/2019 09:33:57] - |RD| - [2858] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility [12/12/2019 09:33:57] - |RD| - [23744] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories [12/12/2019 09:33:57] - |RD| - [38874] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools [06/04/2020 10:44:52] - |D| - [3765] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced Disk Cleaner [06/04/2020 10:45:41] - |D| - [3527] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced Task Manager [06/04/2020 10:39:40] - |D| - [3091] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced Uninstaller PRO [06/04/2020 10:39:40] - |A| - [1630] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced Uninstaller PRO 12.lnk [15/03/2020 18:43:20] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AIMP [28/01/2020 01:52:20] - |D| - [49] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AirCopy [20/01/2020 18:18:00] - |D| - [4377] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center [07/04/2020 11:28:41] - |D| - [5073] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anvisoft [03/04/2020 01:04:00] - |D| - [49] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Backupper [22/01/2020 15:36:27] - |D| - [128] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Partition Assistant Standard Edition 8.6 [03/02/2020 16:32:19] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apeaksoft [27/03/2020 12:06:38] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft [23/01/2020 00:08:37] - |A| - [2535] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk [01/04/2020 13:00:12] - |D| - [2579] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo [18/01/2020 01:03:24] - |D| - [92] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aTube Catcher [03/04/2020 01:26:27] - |D| - [14821] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3 [21/01/2020 18:50:34] - |D| - [5070] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avant Browser [22/01/2020 13:15:12] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira [15/03/2020 19:35:06] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup and Sync from Google [09/03/2020 23:11:29] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bandizip [16/01/2020 16:57:36] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BCUninstaller [31/03/2020 11:42:21] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BootRacer [13/01/2020 16:49:16] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BulletProfSoft.com [04/04/2020 11:07:13] - |D| - [1072] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ByteFence Anti-Malware [02/04/2020 08:38:43] - |D| - [82] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner [13/03/2020 17:59:34] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Chat [28/01/2020 01:52:20] - |D| - [49] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ChrisPC Free Ads Blocker [22/01/2020 23:01:48] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskMark7 [17/08/2019 02:58:41] - |D| - [494] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cute DVD to 3GP Converter [17/08/2019 02:55:26] - |D| - [494] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cute DVD to PSP Converter [13/01/2020 20:19:13] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Daum [06/04/2020 10:28:36] - |D| - [1339] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defendemus [12/12/2019 09:31:45] - |ASH| - [4248] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\desktop.ini [13/01/2020 16:49:16] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX [10/03/2020 00:10:50] - |D| - [376] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDFab 11 (x64) [03/04/2020 11:40:27] - |D| - [5890] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft [15/03/2020 17:47:27] - |D| - [4852] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\e-Carte Bleue Banque Populaire [15/03/2020 17:46:31] - |D| - [1955] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\e-Carte Bleue La Banque Postale [15/03/2020 18:32:02] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Everything [13/01/2020 16:49:16] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fantasy Codec2.9 Build 1110 [15/03/2020 18:40:20] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client [23/01/2020 09:15:50] - |A| - [973] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox Nightly.lnk [10/03/2020 01:01:15] - |A| - [973] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk [10/03/2020 01:13:15] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeGrabApp [03/04/2020 11:41:39] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake [10/03/2020 01:39:05] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOM [13/03/2020 17:35:38] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Graphique [28/01/2020 01:52:21] - |D| - [52] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\herdProtect [15/03/2020 18:39:26] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn [28/01/2020 01:52:19] - |RAS| - [2349] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Immersive Control Panel(1).lnk [12/12/2019 09:29:29] - |RAS| - [2349] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Immersive Control Panel.lnk [18/01/2020 16:58:03] - |D| - [140] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iMobie [13/03/2020 17:41:15] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet [13/01/2020 16:49:16] - |D| - [360] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java [15/03/2020 19:32:57] - |D| - [7188] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack [29/03/2020 12:49:43] - |D| - [2127] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeepVid [23/01/2020 12:40:53] - |D| - [1701] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech [03/02/2020 10:12:06] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MAGIX [24/03/2020 19:12:28] - |D| - [51] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Magoshare Uninstaller 2.7 [12/12/2019 09:33:57] - |D| - [170] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance [02/04/2020 09:16:22] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes [15/02/2020 07:55:13] - |A| - [2429] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk [28/01/2020 01:52:22] - |D| - [2314] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight [13/01/2020 16:49:16] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mobile Master [13/03/2020 17:47:26] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Multimedia [15/03/2020 20:21:20] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MusicBee [18/01/2020 10:41:16] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\muvee Wedding Studio [10/03/2020 10:25:04] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NeoSmart Technologies [15/03/2020 18:28:01] - |D| - [166] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVDA [06/04/2020 10:34:52] - |D| - [3132] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Orange Defender Antivirus [18/02/2020 16:36:25] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Security [02/04/2020 13:42:54] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Partition Manager 17 CE [05/04/2020 15:06:47] - |D| - [878] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Optimizer Pro [01/04/2020 14:05:15] - |D| - [992] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PerfectGuard [06/04/2020 10:34:29] - |D| - [2350] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QQ [28/01/2020 01:52:22] - |D| - [1235] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung [13/01/2020 16:49:16] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Satsuki Decoder Pack [13/12/2019 11:47:33] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Silent Install Builder 5 [31/03/2020 11:57:24] - |D| - [2207] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SkinPack [04/04/2020 11:04:31] - |D| - [5896] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart PC [31/03/2020 11:26:05] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SocialMediaBlocker [28/01/2020 01:52:22] - |D| - [52] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Start Menu X [03/02/2020 18:50:53] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware [28/01/2020 01:52:23] - |D| - [49] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Ninja [12/12/2019 09:33:57] - |RD| - [2578] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools [29/03/2020 13:15:32] - |D| - [4301] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SysTools PDF Bates Numberer [13/03/2020 17:52:03] - |D| - [1682] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tools [07/04/2020 13:14:48] - |D| - [5634] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN [15/03/2020 19:34:26] - |D| - [981] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio Code [28/01/2020 01:52:23] - |D| - [54] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VoodooShield [06/04/2020 10:43:13] - |D| - [2744] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VPN PRO [28/01/2020 01:52:23] - |D| - [22797] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits [17/03/2020 19:53:45] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare [17/01/2020 17:53:35] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xilisoft ---------- | C:\Program Files (x86) [11/03/2020 18:20:12] - |D| - [520749] - C:\Program Files (x86)\AC3Filter [07/04/2020 11:28:36] - |D| - [93315206] - C:\Program Files (x86)\Anvisoft [07/04/2020 11:03:31] - |D| - [262338015] - C:\Program Files (x86)\Ashampoo [31/08/2016 16:00:35] - |AD| - [106367882] - C:\Program Files (x86)\ATI Technologies [03/04/2020 01:26:26] - |D| - [30696646] - C:\Program Files (x86)\AutoIt3 [28/01/2020 01:54:15] - |D| - [14887659] - C:\Program Files (x86)\Avant Browser [12/12/2019 09:33:57] - |D| - [713077932] - C:\Program Files (x86)\Common Files [06/04/2020 10:28:34] - |D| - [2762171] - C:\Program Files (x86)\Defendemus [28/01/2020 01:54:12] - |ASH| - [174] - C:\Program Files (x86)\desktop(1).ini [12/12/2019 09:31:45] - |ASH| - [174] - C:\Program Files (x86)\desktop.ini [07/04/2020 15:01:15] - |D| - [0] - C:\Program Files (x86)\Fighters [03/04/2020 11:39:53] - |D| - [20641460] - C:\Program Files (x86)\FreeCodecPack [02/05/2019 13:53:05] - |D| - [319784] - C:\Program Files (x86)\Google [06/04/2020 10:34:37] - |D| - [115610054] - C:\Program Files (x86)\Innovative Solutions [07/08/2019 20:21:41] - |HD| - [99166900] - C:\Program Files (x86)\InstallShield Installation Information [02/09/2016 16:22:41] - |D| - [33549630] - C:\Program Files (x86)\Intel [15/03/2020 11:51:25] - |D| - [450688] - C:\Program Files (x86)\Internet Download Manager [12/12/2019 09:33:57] - |D| - [3155408] - C:\Program Files (x86)\Internet Explorer [01/04/2020 14:05:14] - |D| - [197840] - C:\Program Files (x86)\KeyCryptSDK [29/03/2020 11:17:03] - |D| - [164341107] - C:\Program Files (x86)\Laurent, sifaou, carole, nathalie, christine, léa, lynnlo, amélie, noémie Anti-JJAD Suite & Goodies [31/08/2016 12:57:52] - |D| - [592390872] - C:\Program Files (x86)\Microsoft [02/09/2016 16:23:56] - |AD| - [42894550] - C:\Program Files (x86)\Microsoft Silverlight [07/09/2016 01:39:58] - |AD| - [1462723850] - C:\Program Files (x86)\Microsoft SQL Server [02/09/2016 16:50:26] - |AD| - [1829877] - C:\Program Files (x86)\Microsoft SQL Server Compact Edition [07/09/2016 01:50:21] - |D| - [4850] - C:\Program Files (x86)\Microsoft Visual Studio 10.0 [13/07/2019 11:25:15] - |D| - [6076507] - C:\Program Files (x86)\Microsoft XNA [12/12/2019 09:33:57] - |D| - [731582] - C:\Program Files (x86)\Microsoft.NET [09/04/2019 10:53:21] - |D| - [579403] - C:\Program Files (x86)\Mozilla Maintenance Service [30/12/2019 01:51:32] - |D| - [51514] - C:\Program Files (x86)\MSBuild [28/01/2020 01:54:15] - |D| - [1526705] - C:\Program Files (x86)\MSECache [05/04/2020 15:06:47] - |D| - [12067195] - C:\Program Files (x86)\MyPC Backup [22/08/2019 21:15:46] - |D| - [0] - C:\Program Files (x86)\NSIS Uninstall Information [06/04/2020 10:33:56] - |D| - [16095136] - C:\Program Files (x86)\QQ [28/01/2020 01:54:15] - |D| - [6830294] - C:\Program Files (x86)\Qualcomm [06/09/2016 16:52:08] - |D| - [129858377] - C:\Program Files (x86)\Realtek [30/12/2019 01:51:32] - |D| - [81288706] - C:\Program Files (x86)\Reference Assemblies [01/04/2020 10:07:00] - |D| - [65019955] - C:\Program Files (x86)\Samsung [15/03/2020 18:43:35] - |D| - [3059712] - C:\Program Files (x86)\SugarSync [27/03/2020 12:27:51] - |A| - [3575] - C:\Program Files (x86)\sync.ffs_lock [05/03/2020 18:44:34] - |D| - [96018524] - C:\Program Files (x86)\TunesKit M4V Converter [31/03/2020 11:55:22] - |D| - [100372] - C:\Program Files (x86)\UltraUXThemePatcher [21/05/2019 13:58:02] - |HD| - [0] - C:\Program Files (x86)\Uninstall Information [03/05/2019 14:52:15] - |D| - [73025] - C:\Program Files (x86)\WinASPI [12/12/2019 09:33:57] - |D| - [3732504] - C:\Program Files (x86)\Windows Defender [07/09/2016 00:36:43] - |D| - [4954776709] - C:\Program Files (x86)\Windows Kits [12/12/2019 09:33:57] - |D| - [1251328] - C:\Program Files (x86)\Windows Mail [09/01/2020 17:33:09] - |D| - [4100580] - C:\Program Files (x86)\Windows Media Player [28/01/2020 01:54:16] - |D| - [42960] - C:\Program Files (x86)\Windows Multimedia Platform [12/12/2019 09:33:57] - |D| - [9577498] - C:\Program Files (x86)\Windows NT [12/12/2019 16:00:45] - |D| - [10841664] - C:\Program Files (x86)\Windows Photo Viewer [28/01/2020 01:54:16] - |D| - [42960] - C:\Program Files (x86)\Windows Portable Devices [12/12/2019 09:33:57] - |SD| - [118550] - C:\Program Files (x86)\Windows Sidebar [12/12/2019 09:33:57] - |D| - [5021396] - C:\Program Files (x86)\WindowsPowerShell [15/03/2020 18:41:13] - |D| - [486904] - C:\Program Files (x86)\WinSCP [25/12/2019 17:56:25] - |A| - [1106] - C:\Program Files (x86)\_readme.txt ---------- | C:\Program Files [03/04/2020 01:01:40] - |D| - [78336] - C:\Program Files\7-Zip [31/08/2016 15:59:22] - |D| - [96862059] - C:\Program Files\AMD [28/01/2020 01:54:12] - |D| - [0] - C:\Program Files\Athentech [20/01/2020 18:16:32] - |D| - [5595872] - C:\Program Files\ATI Technologies [09/03/2020 23:11:25] - |D| - [655272] - C:\Program Files\Bandizip [23/01/2020 00:06:52] - |D| - [133392] - C:\Program Files\Bonjour [04/04/2020 10:54:07] - |D| - [45062775] - C:\Program Files\ByteFence [12/12/2019 09:33:57] - |D| - [541545156] - C:\Program Files\Common Files [28/01/2020 01:54:12] - |ASH| - [174] - C:\Program Files\desktop(1).ini [05/04/2020 09:19:35] - |D| - [3142346] - C:\Program Files\Everything [28/08/2016 12:31:27] - |SHD| - [541545156] - C:\Program Files\Fichiers communs [15/03/2020 18:40:13] - |D| - [50440] - C:\Program Files\FileZilla FTP Client [05/03/2020 15:16:58] - |D| - [203365044] - C:\Program Files\Firefox Developer Edition [27/03/2020 11:20:25] - |D| - [205244778] - C:\Program Files\Firefox Nightly [09/03/2020 17:51:46] - |D| - [61179648] - C:\Program Files\Google [28/01/2020 01:54:12] - |D| - [67423663] - C:\Program Files\Intel [12/12/2019 09:33:57] - |D| - [5222862] - C:\Program Files\Internet Explorer [28/01/2020 01:54:12] - |D| - [4264763] - C:\Program Files\iPod [13/03/2020 17:33:12] - |D| - [207186200] - C:\Program Files\Java [03/09/2016 08:59:52] - |AD| - [55728894] - C:\Program Files\Microsoft Silverlight [07/09/2016 01:46:14] - |AD| - [576993] - C:\Program Files\Microsoft SQL Server [15/03/2020 19:33:42] - |D| - [267421024] - C:\Program Files\Microsoft VS Code [12/12/2019 09:33:57] - |D| - [0] - C:\Program Files\ModifiableWindowsApps [13/03/2020 13:10:36] - |D| - [199542707] - C:\Program Files\Mozilla Firefox [30/12/2019 01:51:32] - |D| - [51514] - C:\Program Files\MSBuild [06/03/2020 23:49:46] - |D| - [106805631] - C:\Program Files\Pale Moon [02/04/2020 13:31:24] - |D| - [77920] - C:\Program Files\Paragon Software [08/09/2016 15:05:54] - |D| - [75133344] - C:\Program Files\Realtek [30/12/2019 01:51:32] - |D| - [78062418] - C:\Program Files\Reference Assemblies [28/01/2020 01:54:13] - |D| - [6471183] - C:\Program Files\rempl [27/03/2020 12:28:31] - |A| - [3567] - C:\Program Files\sync.ffs_lock [28/08/2016 12:33:35] - |HD| - [0] - C:\Program Files\Uninstall Information [07/04/2020 13:14:09] - |D| - [176869892] - C:\Program Files\VideoLAN [12/12/2019 09:33:57] - |D| - [19042026] - C:\Program Files\Windows Defender [12/12/2019 09:33:57] - |D| - [1277440] - C:\Program Files\Windows Mail [09/01/2020 17:33:09] - |D| - [5937470] - C:\Program Files\Windows Media Player [28/01/2020 01:54:13] - |D| - [49680] - C:\Program Files\Windows Multimedia Platform [12/12/2019 09:33:57] - |D| - [9874970] - C:\Program Files\Windows NT [12/12/2019 16:00:45] - |D| - [12141120] - C:\Program Files\Windows Photo Viewer [28/01/2020 01:54:13] - |D| - [49688] - C:\Program Files\Windows Portable Devices [28/01/2020 01:54:14] - |D| - [96941] - C:\Program Files\Windows Security [12/12/2019 09:33:57] - |SHD| - [0] - C:\Program Files\Windows Sidebar [12/12/2019 09:33:57] - |HD| - [8239905377] - C:\Program Files\WindowsApps [12/04/2018 01:38:20] - |HD| - [77190] - C:\Program Files\WindowsApps.tmp [12/12/2019 09:33:57] - |D| - [5377964] - C:\Program Files\WindowsPowerShell ---------- | C:\Program Files (x86)\Common Files [11/03/2020 22:14:16] - |D| - [7996212] - C:\Program Files (x86)\Common Files\ABBYY [02/09/2016 16:11:46] - |AD| - [14507996] - C:\Program Files (x86)\Common Files\Adobe [11/03/2020 16:03:16] - |D| - [2221568] - C:\Program Files (x86)\Common Files\Anvisoft [20/05/2019 12:59:53] - |D| - [149134217] - C:\Program Files (x86)\Common Files\Apple [28/01/2020 02:30:09] - |D| - [0] - C:\Program Files (x86)\Common Files\Atheros [11/03/2020 22:21:16] - |D| - [194177265] - C:\Program Files (x86)\Common Files\AVSMedia [07/03/2020 00:36:47] - |D| - [14218752] - C:\Program Files (x86)\Common Files\COWON [27/03/2020 13:08:25] - |D| - [0] - C:\Program Files (x86)\Common Files\CyberLink [25/03/2020 19:53:01] - |D| - [86016] - C:\Program Files (x86)\Common Files\DESIGNER [02/05/2019 09:26:20] - |D| - [83448064] - C:\Program Files (x86)\Common Files\DVDVideoSoft [03/04/2020 11:41:33] - |D| - [4553251] - C:\Program Files (x86)\Common Files\Freemake Shared [10/03/2020 01:38:53] - |D| - [309184] - C:\Program Files (x86)\Common Files\GOM & Company [29/10/2019 10:32:20] - |D| - [1065560] - C:\Program Files (x86)\Common Files\Innovative Solutions [03/05/2019 14:49:04] - |D| - [4679514] - C:\Program Files (x86)\Common Files\InstallShield [28/01/2020 02:30:09] - |D| - [75345023] - C:\Program Files (x86)\Common Files\Intel [25/01/2020 06:10:02] - |D| - [656] - C:\Program Files (x86)\Common Files\IOTransfer [13/03/2020 17:34:49] - |D| - [2038832] - C:\Program Files (x86)\Common Files\Java [07/09/2016 13:36:49] - |AD| - [90787536] - C:\Program Files (x86)\Common Files\LogiShrd [03/02/2020 10:11:37] - |D| - [0] - C:\Program Files (x86)\Common Files\MAGIX Services [12/12/2019 09:33:57] - |D| - [28809522] - C:\Program Files (x86)\Common Files\Microsoft Shared [14/05/2019 15:07:07] - |D| - [0] - C:\Program Files (x86)\Common Files\MSSoap [23/07/2019 20:36:04] - |D| - [2358728] - C:\Program Files (x86)\Common Files\Oracle [17/09/2019 03:43:48] - |D| - [1435256] - C:\Program Files (x86)\Common Files\Propellerhead Software [07/03/2020 09:33:41] - |D| - [4780336] - C:\Program Files (x86)\Common Files\PX Storage Engine [28/01/2020 02:30:09] - |D| - [55445] - C:\Program Files (x86)\Common Files\Qualcomm [28/01/2020 02:30:09] - |D| - [2702] - C:\Program Files (x86)\Common Files\Services [03/08/2019 10:46:45] - |D| - [5888487] - C:\Program Files (x86)\Common Files\Steam [12/12/2019 09:33:57] - |D| - [20446998] - C:\Program Files (x86)\Common Files\System [06/04/2020 18:37:52] - |D| - [4730812] - C:\Program Files (x86)\Common Files\Tencent [07/04/2019 08:44:43] - |D| - [0] - C:\Program Files (x86)\Common Files\Windows Live ---------- | C:\Program Files\Common files [18/01/2020 17:07:18] - |D| - [188450150] - C:\Program Files\Common files\Apple [23/01/2020 10:52:40] - |D| - [1660520] - C:\Program Files\Common files\AVAST Software [15/03/2020 21:30:17] - |D| - [1692296] - C:\Program Files\Common files\AVG [28/08/2016 22:38:00] - |D| - [152640] - C:\Program Files\Common files\EPSON [07/09/2016 13:37:25] - |D| - [23196117] - C:\Program Files\Common files\logishrd [12/12/2019 09:33:57] - |D| - [61287063] - C:\Program Files\Common files\microsoft shared [17/09/2019 03:43:48] - |D| - [2193016] - C:\Program Files\Common files\Propellerhead Software [31/03/2020 18:13:26] - |D| - [8412917] - C:\Program Files\Common files\Raxco [28/01/2020 02:48:57] - |D| - [2702] - C:\Program Files\Common files\Services [12/12/2019 09:33:57] - |D| - [21815574] - C:\Program Files\Common files\System [05/03/2020 18:58:58] - |D| - [3275774] - C:\Program Files\Common files\TechSmith Shared [08/03/2020 22:40:06] - |D| - [222152371] - C:\Program Files\Common files\Tracker Software [17/09/2019 03:43:49] - |D| - [7254016] - C:\Program Files\Common files\VST2 ---------- | Tasks [MD5.00000000000000000000000000000000] - [09/05/2019 16:39:51] - |D| - [2642] - C:\WINDOWS\Tasks\360Disabled [MD5.16F5B62BB8E50D2614C1DAC5BBCB5C04] - [31/03/2020 12:18:57] - |AH| - [336] - C:\WINDOWS\Tasks\Antivirus Emergency Update.job [MD5.3609A29B2671EAA4944B2D15061589A3] - [07/04/2020 15:14:02] - |A| - [390] - C:\WINDOWS\Tasks\Anvi Ultimate Defrag.job [MD5.88DB448B5180816D215EFE7C9AB02DE1] - [06/04/2020 10:39:51] - |A| - [560] - C:\WINDOWS\Tasks\AupAvUpdate.job [MD5.BE98F7D65614C1C6BA8FC6E5F49181A8] - [05/04/2020 18:44:09] - |A| - [214] - C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job [MD5.65DD945772C0067AB18B9D211A71E1DF] - [06/04/2020 10:29:25] - |A| - [442] - C:\WINDOWS\Tasks\Defendemus - VPN Shield.job [MD5.C32331056985A53843898C8D87BC5038] - [05/02/2020 17:46:36] - |A| - [765] - C:\WINDOWS\Tasks\EPSON XP-710 Series Invitation {3440B0D0-F9B6-4D74-80BE-C92B3391AA1E}.job [MD5.81516F0C6A5DDD1CB2CDA8E140A532AC] - [05/02/2020 17:46:33] - |A| - [951] - C:\WINDOWS\Tasks\EPSON XP-710 Series Update {3440B0D0-F9B6-4D74-80BE-C92B3391AA1E}.job [MD5.070CD117F16E4B63BD8846BF71930E25] - [09/03/2020 17:48:35] - |A| - [1122] - C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [MD5.685546F558FF3619DB1DB512680B3928] - [06/04/2020 10:39:50] - |A| - [404] - C:\WINDOWS\Tasks\Health-Check-deep.job [MD5.716BC76EB299834BC953EC31FB0B365C] - [06/04/2020 10:39:50] - |A| - [396] - C:\WINDOWS\Tasks\Health-Check.job [MD5.00000000000000000000000000000000] - [23/05/2019 10:27:08] - |D| - [0] - C:\WINDOWS\Tasks\ImCleanDisabled [MD5.A32F93A1484D4E996599B640764EF294] - [05/04/2020 15:07:18] - |A| - [340] - C:\WINDOWS\Tasks\LaunchSignup.job [MD5.D2006952C9E88A3BB1AB3753B9F3733E] - [06/04/2020 19:11:19] - |A| - [596] - C:\WINDOWS\Tasks\OrangeDefenderUpdate.job [MD5.F1A6CD5ADAAB953A6764EA364E17BFB8] - [26/01/2020 11:49:32] - |AH| - [6] - C:\WINDOWS\Tasks\SA(1).DAT [MD5.708EA029F398E51E2AEBBD0AD5E5CA73] - [30/12/2019 03:18:53] - |AH| - [6] - C:\WINDOWS\Tasks\SA.DAT [MD5.94670A1A2AB6CB2A2E9EC6D7DEE0B8B3] - [06/04/2020 10:39:51] - |A| - [574] - C:\WINDOWS\Tasks\UninstallMonitor.job [MD5.2428AC3041A7E0886D6B5F20922B5CCB] - [03/04/2020 00:51:04] - |AH| - [326] - C:\WINDOWS\Tasks\User_Feed_Synchronization-{3EF053DA-9088-495B-9E19-1A7664ABB844}.job [MD5.66E1663B6FD99F7B992361B54DA4BF2F] - [16/03/2020 20:05:41] - |AH| - [308] - C:\WINDOWS\Tasks\User_Feed_Synchronization-{9F79E92A-4A53-4ED9-9D9E-8AD398BF43C5}.job [MD5.607633254E8CCF59507306EACBAE1979] - [06/04/2020 10:43:36] - |A| - [496] - C:\WINDOWS\Tasks\VPN PRO WELCOME.job [MD5.A4BD18A6A4BA7498A959D5ED4B70E0A3] - [06/04/2020 10:43:36] - |A| - [474] - C:\WINDOWS\Tasks\VPN PRO.job [MD5.DB0B5F053696AFFDC4B268C324C5E37B] - [30/12/2019 03:18:52] - |A| - [3486] - C:\WINDOWS\System32\Tasks\AdvancedDriverSupport-Maintenance-Autorun : C:\Program Files (x86)\Advanced Driver Support 1.8.0.2\AdvancedDriverSupport.exe [MD5.00000000000000000000000000000000] - [20/02/2020 17:39:09] - |D| - [0] - C:\WINDOWS\System32\Tasks\Apeaksoft Studio [MD5.00000000000000000000000000000000] - [30/12/2019 03:18:52] - |D| - [0] - C:\WINDOWS\System32\Tasks\Auslogics [MD5.00000000000000000000000000000000] - [30/12/2019 03:18:52] - |D| - [3996] - C:\WINDOWS\System32\Tasks\Avast Software [MD5.CE847D82D999253E13ECF003797AF134] - [02/04/2020 08:39:11] - |A| - [4210] - C:\WINDOWS\System32\Tasks\CCleaner Update : C:\Program Files\CCleaner\CCUpdate.exe [MD5.D559FB21B7B8D31096A8F595124C2256] - [24/03/2020 19:36:50] - |A| - [2916] - C:\WINDOWS\System32\Tasks\CCleanerSkipUAC : "C:\Program Files\CCleaner\CCleaner.exe" [MD5.0AE00F3AFE169BE0F8FCA6FFDB353817] - [25/01/2020 06:55:51] - |A| - [3684] - C:\WINDOWS\System32\Tasks\CreateExplorerShellUnelevatedTask : C:\WINDOWS\explorer.exe [MD5.B21D201F77A701EDC8606A5D29FE409F] - [30/12/2019 03:18:52] - |A| - [2968] - C:\WINDOWS\System32\Tasks\Driver Booster Beta SkipUAC (jean-) : C:\Program Files (x86)\IObit\Driver Booster Beta\7.0.0\DriverBooster.exe [MD5.F2C33332DB7F3D4B5CBF02015074886A] - [20/01/2020 17:15:39] - |A| - [2952] - C:\WINDOWS\System32\Tasks\Driver Booster SkipUAC (jean-) : "C:\Program Files (x86)\IObit\Driver Booster\7.2.0\DriverBooster.exe" [MD5.E935971AD2B5FD69F95439C906527B7B] - [05/02/2020 17:46:36] - |A| - [3970] - C:\WINDOWS\System32\Tasks\EPSON XP-710 Series Invitation {3440B0D0-F9B6-4D74-80BE-C92B3391AA1E} : C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLPE.EXE [MD5.3244A9D7CA0E270400078F3D9A6F4E0D] - [05/02/2020 17:46:34] - |A| - [4148] - C:\WINDOWS\System32\Tasks\EPSON XP-710 Series Update {3440B0D0-F9B6-4D74-80BE-C92B3391AA1E} : C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLPE.EXE [MD5.00000000000000000000000000000000] - [30/12/2019 03:18:52] - |D| - [0] - C:\WINDOWS\System32\Tasks\JumpingBytes [MD5.00000000000000000000000000000000] - [12/12/2019 09:33:57] - |D| - [657214] - C:\WINDOWS\System32\Tasks\Microsoft [MD5.00000000000000000000000000000000] - [30/12/2019 03:18:53] - |D| - [0] - C:\WINDOWS\System32\Tasks\NCH Software [MD5.EACE935A022BC6C04B933413059C2126] - [30/12/2019 03:18:53] - |A| - [2624] - C:\WINDOWS\System32\Tasks\SoftwareUpdate Pro : C:\Program Files (x86)\Glarysoft\Software Update Pro\SoftwareUpdatePro.exe [MD5.6E9635909136CCDC3C2AC085951A3194] - [25/03/2020 18:34:53] - |A| - [3870] - C:\WINDOWS\System32\Tasks\Systweak Software Updater DBUpdate Scheduler : C:\Program Files (x86)\Systweak Software Updater\SystweakSoftwareUpdater.exe [MD5.E64063C73B3DF1AAD4D978719EF25507] - [24/03/2020 20:23:37] - |A| - [3576] - C:\WINDOWS\System32\Tasks\Systweak Software Updater Startup : C:\Program Files (x86)\Systweak Software Updater\SystweakSoftwareUpdater.exe [MD5.35D53D2E833020999C70FCE051039C7A] - [24/03/2020 20:19:37] - |A| - [3474] - C:\WINDOWS\System32\Tasks\Systweak Software UpdaterNotifier : C:\Program Files (x86)\Systweak Software Updater\SSUNotifier.exe [MD5.F5AD3AC3DD029B8DE8143381082D72A5] - [24/03/2020 20:19:36] - |A| - [3396] - C:\WINDOWS\System32\Tasks\Systweak Software UpdaterNotifier_startup : C:\Program Files (x86)\Systweak Software Updater\SSUNotifier.exe [MD5.19A06B6360F6A24C5535B78B34CF1C27] - [24/01/2020 23:08:50] - |A| - [3040] - C:\WINDOWS\System32\Tasks\Uninstaller_SkipUac_antifondance_10Crem : C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [MD5.6C98F3468C8FEA1D414C85482C1FFFFF] - [20/01/2020 17:25:00] - |A| - [3296] - C:\WINDOWS\System32\Tasks\WebDefenceLaunchTask : "C:\Program Files\WebDefence\1.11.0\webdefence.exe" [MD5.00000000000000000000000000000000] - [30/12/2019 03:18:53] - |D| - [0] - C:\WINDOWS\System32\Tasks\WiseCleaner [MD5.00000000000000000000000000000000] - [12/12/2019 09:33:57] - |D| - [0] - C:\WINDOWS\Syswow64\Tasks\Microsoft ---------- | Firewall [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules] "WirelessDisplay-Infra-In-TCP"=v2.28|Action=Allow|Active=TRUE|Dir=In|Protocol=6|LPort=7250|App=%systemroot%\system32\CastSrv.exe|Name=@wifidisplay.dll,-10206|Desc=@wifidisplay.dll,-10207|EmbedCtxt=@wifidisplay.dll,-100| "WirelessDisplay-Out-UDP"=v2.28|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|App=%systemroot%\system32\WUDFHost.exe|Name=@wifidisplay.dll,-10204|Desc=@wifidisplay.dll,-10205|LUAuth=O:LSD:(A;;CC;;;S-1-5-84-0-0-0-0-0)|EmbedCtxt=@wifidisplay.dll,-100|TTK2_22=WFDDisplay| "WirelessDisplay-Out-TCP"=v2.28|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|App=%systemroot%\system32\WUDFHost.exe|Name=@wifidisplay.dll,-10202|Desc=@wifidisplay.dll,-10203|LUAuth=O:LSD:(A;;CC;;;S-1-5-84-0-0-0-0-0)|EmbedCtxt=@wifidisplay.dll,-100|TTK2_22=WFDDisplay| "WirelessDisplay-In-TCP"=v2.28|Action=Allow|Active=TRUE|Dir=In|Protocol=6|App=%systemroot%\system32\WUDFHost.exe|Name=@wifidisplay.dll,-10200|Desc=@wifidisplay.dll,-10201|LUAuth=O:LSD:(A;;CC;;;S-1-5-84-0-0-0-0-0)|EmbedCtxt=@wifidisplay.dll,-100|TTK2_22=WFDDisplay| "Netlogon-TCP-RPC-In"=v2.28|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=RPC|App=%SystemRoot%\System32\lsass.exe|Name=@netlogon.dll,-1008|Desc=@netlogon.dll,-1009|EmbedCtxt=@netlogon.dll,-1010| "Netlogon-NamedPipe-In"=v2.28|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=445|App=System|Name=@netlogon.dll,-1003|Desc=@netlogon.dll,-1006|EmbedCtxt=@netlogon.dll,-1010| "DeliveryOptimization-UDP-In"=v2.28|Action=Allow|Active=TRUE|Dir=In|Protocol=17|LPort=7680|App=%SystemRoot%\system32\svchost.exe|Svc=dosvc|Name=@%systemroot%\system32\dosvc.dll,-103|Desc=@%systemroot%\system32\dosvc.dll,-104|EmbedCtxt=@%systemroot%\system32\dosvc.dll,-100|Edge=TRUE| "DeliveryOptimization-TCP-In"=v2.28|Action=Allow|Active=TRUE|Dir=In|Protocol=6|LPort=7680|App=%SystemRoot%\system32\svchost.exe|Svc=dosvc|Name=@%systemroot%\system32\dosvc.dll,-102|Desc=@%systemroot%\system32\dosvc.dll,-104|EmbedCtxt=@%systemroot%\system32\dosvc.dll,-100|Edge=TRUE| "WiFiDirect-KM-Driver-Out-UDP"=v2.28|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|App=System|Name=@wlansvc.dll,-37381|Desc=@wlansvc.dll,-37893|EmbedCtxt=@wlansvc.dll,-36865|TTK2_27=WFDKmDriver| "WiFiDirect-KM-Driver-In-UDP"=v2.28|Action=Allow|Active=TRUE|Dir=In|Protocol=17|App=System|Name=@wlansvc.dll,-37380|Desc=@wlansvc.dll,-37892|EmbedCtxt=@wlansvc.dll,-36865|TTK2_27=WFDKmDriver| "WiFiDirect-KM-Driver-Out-TCP"=v2.28|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|App=System|Name=@wlansvc.dll,-37379|Desc=@wlansvc.dll,-37891|EmbedCtxt=@wlansvc.dll,-36865|TTK2_27=WFDKmDriver| "WiFiDirect-KM-Driver-In-TCP"=v2.28|Action=Allow|Active=TRUE|Dir=In|Protocol=6|App=System|Name=@wlansvc.dll,-37378|Desc=@wlansvc.dll,-37890|EmbedCtxt=@wlansvc.dll,-36865|TTK2_27=WFDKmDriver| "{3EF2F5A4-076A-41EF-9AF6-97667D01CD8D}"=v2.30|Action=Allow|Active=TRUE|Dir=Out|Profile=Domain|Profile=Private|Profile=Public|Name=Sway|Desc=Sway|LUOwn=S-1-5-21-4265624635-2019933758-61733912-1001|AppPkgId=S-1-15-2-584073948-3292409011-2882754242-2237763630-1999038865-1049037702-4080706152|EmbedCtxt=Sway|Platform=2:6:2|Platform2=GTEQ| "{74E07FA4-EA7A-4A73-9FC8-D7A5C09CE478}"=v2.30|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Program Files\Firefox Nightly\firefox.exe|Name=Firefox Nightly (C:\Program Files\Firefox Nightly)| "{7979B12C-1C24-4003-AB2C-E1088741E04C}"=v2.30|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Program Files\Firefox Nightly\firefox.exe|Name=Firefox Nightly (C:\Program Files\Firefox Nightly)| "{DE132D52-05C9-430C-8878-6DBD6FF766C5}"=v2.30|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\Program Files (x86)\Samsung\SideSync4\SideSync.exe|Name=Samsung SideSync| "{F577796C-6CCE-4977-BEAD-5C3A7D221B12}"=v2.30|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\Program Files (x86)\Samsung\SideSync4\SideSync.exe|Name=Samsung SideSync| "{2C13ECB8-FF97-4405-BE42-5EC8748B79C9}"=v2.30|Action=Allow|Active=TRUE|Dir=In|Protocol=17|LPort=5353|App=C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe|Name=Microsoft Edge (mDNS-In)|Desc=Règle de trafic entrant pour Microsoft Edge pour autoriser le trafic mDNS.|EmbedCtxt=Microsoft Edge| "{0CF92272-1A8D-4C41-BAC5-5BCB59406CF5}"=v2.30|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=12972|RA4=LocalSubnet|RA6=LocalSubnet|Name=audials localhttpserver 12972| "{63EC2E2B-F2EA-40A0-A8BB-9F89C7FCC225}"=v2.30|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=14714|RA4=LocalSubnet|RA6=LocalSubnet|Name=audials localhttpserver 14714| "{9B29D7CC-FA89-40B4-9260-7F4C4C3915BF}"=v2.30|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=31931|RA4=LocalSubnet|RA6=LocalSubnet|Name=audials localhttpserver 31931| "{DC514AE1-C970-4446-8080-EC060235BA36}"=v2.30|Action=Allow|Active=TRUE|Dir=In|Protocol=17|LPort=5353|App=C:\Users\jean-\AppData\Local\Epic Privacy Browser\Application\epic.exe|Name=Epic Privacy Browser (mDNS-In)|Desc=Inbound rule for Epic Privacy Browser to allow mDNS traffic.|EmbedCtxt=Epic Privacy Browser| "{FA3B97DE-6002-49E5-9268-08F066C00081}"=v2.30|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Public|App=E:\techtoolstore édition 20rem\Tech tool store tools\TechToolStore64.exe|Name=Tech tool store (TCP-OUT)| "{C1502084-3640-4F52-9B59-7DEDEB1084CB}"=v2.30|Action=Allow|Active=TRUE|Dir=Out|Profile=Domain|Profile=Private|Profile=Public|App=C:\Program Files (x86)\Innovative Solutions\VPN PRO\vpnpro.exe|Name=VPN PRO|Desc=| "{39B01843-09DE-4136-82A1-4893EAC2D9FC}"=v2.30|Action=Allow|Active=TRUE|Dir=In|App=C:\program files (x86)\common files\tencent\qqdownload\132\tencentdl.exe|Name=????????|Desc=C:\program files (x86)\common files\tencent\qqdownload\132\tencentdl.exe| "{968CAFA1-B39B-43C0-9372-F1A78D77543F}"=v2.30|Action=Allow|Active=TRUE|Dir=In|App=C:\program files (x86)\common files\tencent\qqdownload\132\bugreport_xf.exe|Name=????????Crash??|Desc=C:\program files (x86)\common files\tencent\qqdownload\132\bugreport_xf.exe| "{8001D66D-ABE8-4461-8857-D70400CFBA5F}"=v2.30|Action=Allow|Active=TRUE|Dir=In|App=e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\QQPCTray.exe|Name=PC Manager-????| "{6A8E1A8E-50C2-4B23-AA2A-A9EF38D8B967}"=v2.30|Action=Allow|Active=TRUE|Dir=In|App=e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\QQPCMgr.exe|Name=PC Manager-???| "{202FD4CA-D81E-4F63-8490-9B040C357616}"=v2.30|Action=Allow|Active=TRUE|Dir=In|App=e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\QQPCRTP.exe|Name=PC Manager-??????| "{35FAD7B4-67F7-4E14-ADE3-3BF4F9224E4E}"=v2.30|Action=Allow|Active=TRUE|Dir=In|App=e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\bugreport.exe|Name=PC Manager-crash??| "{D5D8FB7D-6273-450D-A3A2-EE9EC2FBBB5C}"=v2.30|Action=Allow|Active=TRUE|Dir=In|App=e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\QQPConfig.exe|Name=PC Manager-????| "{CFE7DD35-09DF-4D26-8365-FD45DB91C481}"=v2.30|Action=Allow|Active=TRUE|Dir=In|App=e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\QMUpdate\QQPCMgrUpdate.exe|Name=PC Manager-?????| "{F3A67B40-DEAD-430D-A6A5-74BED01E07D4}"=v2.30|Action=Allow|Active=TRUE|Dir=In|App=e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\QQPCUpdateAVLib.exe|Name=PC Manager-?????| "{E036C6D9-7E1B-4D69-A781-746ADE18A5A1}"=v2.30|Action=Allow|Active=TRUE|Dir=In|App=e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\Uninst.exe|Name=PC Manager-????| "{AD3994DE-FE3A-4941-BC28-0C797D77F6A0}"=v2.30|Action=Allow|Active=TRUE|Dir=In|App=e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\TpkUpdate.exe|Name=PC Manager-?????????| "{4E1ED76A-D0C9-4659-B91E-9B628E9DB4E1}"=v2.30|Action=Allow|Active=TRUE|Dir=In|App=e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\QMDL.exe|Name=PC Manager-????| "{AFD679FB-2ED5-4889-85DF-FE676959789E}"=v2.30|Action=Allow|Active=TRUE|Dir=In|App=e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\QMDL.exe|Name=????-????| "{F4D18A85-3B55-4A03-85D5-F16627144E1D}"=v2.30|Action=Allow|Active=TRUE|Dir=In|App=C:\program files (x86)\common files\tencent\qqdownload\132\tencentdl.exe|Name=????????|Desc=C:\program files (x86)\common files\tencent\qqdownload\132\tencentdl.exe| "{A7EDC2F2-D723-43D4-8138-5612858049B0}"=v2.30|Action=Allow|Active=TRUE|Dir=In|App=C:\program files (x86)\common files\tencent\qqdownload\132\bugreport_xf.exe|Name=????????Crash??|Desc=C:\program files (x86)\common files\tencent\qqdownload\132\bugreport_xf.exe| "{C101F798-48F3-405A-8159-E2430B99ADBE}"=v2.30|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=E:\techtoolstore édition 20rem\Tech tool store tools\TechToolStore64.exe|Name=Tech tool store| "{691FE5EE-5CB7-4CE3-82A6-8A7F3C57CB5B}"=v2.30|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=E:\techtoolstore édition 20rem\Tech tool store tools\TechToolStore64.exe|Name=Tech tool store| "TCP Query User{C68EB6D3-6B22-49D9-A78A-DE29FDD1BDCF}C:\program files\videolan\vlc\vlc.exe"=v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|Profile=Public|App=C:\program files\videolan\vlc\vlc.exe|Name=VLC media player|Desc=VLC media player|Defer=User| "UDP Query User{31F11167-C33A-4F22-80C3-F581239342EA}C:\program files\videolan\vlc\vlc.exe"=v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|Profile=Public|App=C:\program files\videolan\vlc\vlc.exe|Name=VLC media player|Desc=VLC media player|Defer=User| ---------- | Control\Class [HKLM\SYSTEM\CurrentControlSet\Control\Class\{05f5cfe2-4733-4950-a6bb-07aad01a3a84}] : (XboxComposite) [] -> @dc1-controller.inf,%ClassName%;Xbox Peripherals [HKLM\SYSTEM\CurrentControlSet\Control\Class\{1264760f-a5c8-4bfe-b314-d56a7b44a362}] : (DXGKrnl) [] -> [HKLM\SYSTEM\CurrentControlSet\Control\Class\{13e42dfa-85d9-424d-8646-28a70f864f9c}] : (RemotePosDevice) [] -> @remoteposdrv.inf,%ClassName%;POS Remote Device [HKLM\SYSTEM\CurrentControlSet\Control\Class\{14b62f50-3f15-11dd-ae16-0800200c9a66}] : (DigitalMediaDevices) [] -> @digitalmediadevice.inf,%ClassName%;Digital Media Devices [HKLM\SYSTEM\CurrentControlSet\Control\Class\{1ed2bbf9-11f0-4084-b21f-ad83a8e6dcdc}] : (PrintQueue) [] -> @printqueue.inf,%ClassName%;Print queues [HKLM\SYSTEM\CurrentControlSet\Control\Class\{25dbce51-6c8f-4a72-8a6d-b54c2b4fc835}] : (WCEUSBS) [] -> @%SystemRoot%\System32\SysClass.Dll,-3026 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{268c95a1-edfe-11d3-95c3-0010dc4050a5}] : (SecurityAccelerator) [] -> @c_sslaccel.inf,%ClassName%;Security accelerators [HKLM\SYSTEM\CurrentControlSet\Control\Class\{2a9fe532-0cdc-44f9-9827-76192f2ca2fb}] : (HidMsr) [] -> @c_magneticstripereader.inf,%ClassName%;POS HID Magnetic Stripe Reader [HKLM\SYSTEM\CurrentControlSet\Control\Class\{2db15374-706e-4131-a0c7-d7c78eb0289a}] : (SystemRecovery) [] -> @c_fssystemrecovery.inf,%ClassDesc%;FS System recovery filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{3163c566-d381-4467-87bc-a65a18d5b648}] : (fvevol) [] -> [HKLM\SYSTEM\CurrentControlSet\Control\Class\{3163c566-d381-4467-87bc-a65a18d5b649}] : (fvevol) [] -> [HKLM\SYSTEM\CurrentControlSet\Control\Class\{36fc9e60-c465-11cf-8056-444553540000}] : (USB) [] -> @%SystemRoot%\System32\SysClass.Dll,-3025 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{3e3f0674-c83c-4558-bb26-9820e1eba5c5}] : (ContentScreener) [] -> @c_fscontentscreener.inf,%ClassDesc%;FS Content screener filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{3f966bd9-fa04-4ec5-991c-d326973b5128}] : (AndroidUsbDeviceClass) [] -> @oem1.inf,%ClassName%;Android Device [HKLM\SYSTEM\CurrentControlSet\Control\Class\{43675d81-502a-4a82-9f84-b75f418c5dea}] : (Media Center Extender) [] -> @c_mcx.inf,%ClassDesc%;Media Center Extenders [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4658ee7e-f050-11d1-b6bd-00c04fa372a7}] : (PnpPrinters) [] -> @%SystemRoot%\system32\ntprint.dll,-1300 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{48721b56-6795-11d2-b1a8-0080c72e74a2}] : (Dot4) [] -> @%SystemRoot%\system32\sysclass.dll,-3023 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{48d3ebc4-4cf8-48ff-b869-9c68ad42eb9f}] : (Replication) [] -> @c_fsreplication.inf,%ClassDesc%;FS Replication filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{49ce6ac8-6f86-11d2-b1e5-0080c72e74a2}] : (Dot4Print) [] -> @%SystemRoot%\system32\sysclass.dll,-3024 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e965-e325-11ce-bfc1-08002be10318}] : (CDROM) [] -> @%SystemRoot%\System32\StorProp.dll,-17001 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e966-e325-11ce-bfc1-08002be10318}] : (Computer) [] -> @%SystemRoot%\System32\SysClass.dll,-3000 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e967-e325-11ce-bfc1-08002be10318}] : (DiskDrive) [] -> @c_diskdrive.inf,%ClassDesc%;Disk drives [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}] : (Display) [] -> @c_display.inf,%ClassDesc%;Display adapters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e969-e325-11ce-bfc1-08002be10318}] : (FDC) [] -> @%SystemRoot%\System32\SysClass.Dll,-3013 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e96a-e325-11ce-bfc1-08002be10318}] : (HDC) [] -> @%SystemRoot%\System32\SysClass.Dll,-3001 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e96b-e325-11ce-bfc1-08002be10318}] : (Keyboard) [] -> @%SystemRoot%\System32\SysClass.Dll,-3002 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e96c-e325-11ce-bfc1-08002be10318}] : (MEDIA) [] -> @c_media.inf,%ClassDesc%;Sound, video and game controllers [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e96d-e325-11ce-bfc1-08002be10318}] : (Modem) [] -> @%SystemRoot%\System32\mdminst.dll,-14100 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e96e-e325-11ce-bfc1-08002be10318}] : (Monitor) [] -> @c_monitor.inf,%ClassDesc%;Monitors [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e96f-e325-11ce-bfc1-08002be10318}] : (Mouse) [] -> @%SystemRoot%\System32\SysClass.Dll,-3004 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e970-e325-11ce-bfc1-08002be10318}] : (MTD) [] -> @%SystemRoot%\System32\SysClass.Dll,-3021 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e971-e325-11ce-bfc1-08002be10318}] : (MultiFunction) [] -> @%SystemRoot%\System32\SysClass.Dll,-3014 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e972-e325-11ce-bfc1-08002be10318}] : (Net) [] -> @%SystemRoot%\System32\NetCfgx.dll,-1502 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e973-e325-11ce-bfc1-08002be10318}] : (NetClient) [] -> @%SystemRoot%\System32\NetCfgx.dll,-1504 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e974-e325-11ce-bfc1-08002be10318}] : (NetService) [] -> @%SystemRoot%\System32\NetCfgx.dll,-1505 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e975-e325-11ce-bfc1-08002be10318}] : (NetTrans) [] -> @%SystemRoot%\System32\NetCfgx.dll,-1503 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e977-e325-11ce-bfc1-08002be10318}] : (PCMCIA) [] -> @%SystemRoot%\System32\SysClass.Dll,-3010 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e978-e325-11ce-bfc1-08002be10318}] : (Ports) [] -> @%SystemRoot%\System32\msports.dll,-10000 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e979-e325-11ce-bfc1-08002be10318}] : (Printer) [] -> @%SystemRoot%\system32\ntprint.dll,-1004 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e97b-e325-11ce-bfc1-08002be10318}] : (SCSIAdapter) [] -> @%SystemRoot%\System32\SysClass.Dll,-3005 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}] : (System) [] -> @%SystemRoot%\System32\SysClass.Dll,-3008 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e97e-e325-11ce-bfc1-08002be10318}] : (Unknown) [] -> @%SystemRoot%\System32\SysClass.Dll,-3009 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e980-e325-11ce-bfc1-08002be10318}] : (FloppyDisk) [] -> @%SystemRoot%\System32\SysClass.Dll,-3015 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4fc9541c-0fe6-4480-a4f6-9495a0d17cd2}] : (HidLineDisplay) [] -> @c_linedisplay.inf,%ClassName%;POS Line Display [HKLM\SYSTEM\CurrentControlSet\Control\Class\{50127dc3-0f36-415e-a6cc-4cb3be910b65}] : (Processor) [] -> @c_processor.inf,%ClassDesc%;Processors [HKLM\SYSTEM\CurrentControlSet\Control\Class\{50906cb8-ba12-11d1-bf5d-0000f805f530}] : (MultiPortSerial) [] -> @%SystemRoot%\system32\sysclass.dll,-3022 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{5099944a-f6b9-4057-a056-8c550228544c}] : (Memory) [] -> @%SystemRoot%\System32\SysClass.Dll,-3018 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{50dd5230-ba8a-11d1-bf5d-0000f805f530}] : (SmartCardReader) [] -> @%SystemRoot%\System32\StorProp.dll,-17002 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{5175d334-c371-4806-b3ba-71fd53c9258d}] : (Sensor) [] -> @%SystemRoot%\system32\SensorsCpl.dll,-10000 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{533c5b84-ec70-11d2-9505-00c04f79deaf}] : (VolumeSnapshot) [] -> @%SystemRoot%\System32\SysClass.Dll,-3011 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{53487c23-680f-4585-acc3-1f10d6777e82}] : (SmrDisk) [] -> @c_smrdisk.inf,%ClassDesc%;Shingled magnetic recording disks [HKLM\SYSTEM\CurrentControlSet\Control\Class\{53966cb1-4d46-4166-bf23-c522403cd495}] : (ScmDisk) [] -> @c_scmdisk.inf,%ClassDesc%;Persistent memory disks [HKLM\SYSTEM\CurrentControlSet\Control\Class\{53b3cf03-8f5a-4788-91b6-d19ed9fcccbf}] : (SmrVolume) [] -> @c_smrvolume.inf,%ClassDesc%;Shingled magnetic recording volumes [HKLM\SYSTEM\CurrentControlSet\Control\Class\{53ccb149-e543-4c84-b6e0-bce4f6b7e806}] : (ScmVolume) [] -> @c_scmvolume.inf,%ClassDesc%;Storage Class Memory volumes [HKLM\SYSTEM\CurrentControlSet\Control\Class\{53d29ef7-377c-4d14-864b-eb3a85769359}] : (Biometric) [] -> @%SystemRoot%\System32\SysClass.DLL,-3028 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{5630831c-06c9-4856-b327-f5d32586e060}] : (Proximity) [] -> @c_proximity.inf,%ClassDesc%;Proximity devices [HKLM\SYSTEM\CurrentControlSet\Control\Class\{5989fce8-9cd0-467d-8a6a-5419e31529d4}] : (AudioProcessingObject) [] -> @c_apo.inf,%ClassDesc%;Audio Processing Objects (APOs) [HKLM\SYSTEM\CurrentControlSet\Control\Class\{5aea001d-9372-4ed7-97f3-b79bf15a53c5}] : (OposLegacyDevice) [] -> @oposdrv.inf,%ClassName%;OPOS Legacy Device [HKLM\SYSTEM\CurrentControlSet\Control\Class\{5c4c3332-344d-483c-8739-259e934c9cc8}] : (SoftwareComponent) [] -> @c_swcomponent.inf,%ClassDesc%;Software components [HKLM\SYSTEM\CurrentControlSet\Control\Class\{5d1b9aaa-01e2-46af-849f-272b3f324c46}] : (FSFilterSystem) [] -> @c_fssystem.inf,%ClassDesc%;FS System filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{62f9c741-b25a-46ce-b54c-9bccce08b6f2}] : (SoftwareDevice) [] -> @c_swdevice.inf,%ClassDesc%;Software devices [HKLM\SYSTEM\CurrentControlSet\Control\Class\{645ad99b-1344-4316-837a-08a3e73db222}] : (PerceptionSimulation) [] -> @PerceptionSimulationSixDof.inf,%ClassName%;Perception Simulation Controllers [HKLM\SYSTEM\CurrentControlSet\Control\Class\{6a0a8e78-bba6-4fc4-a709-1e33cd09d67e}] : (PhysicalQuotaManagement) [] -> @c_fsphysicalquotamgmt.inf,%ClassDesc%;FS Physical quota management filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{6bdd1fc1-810f-11d0-bec7-08002be2092f}] : (1394) [] -> @%SystemRoot%\System32\SysClass.Dll,-3016 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{6bdd1fc5-810f-11d0-bec7-08002be2092f}] : (Infrared) [] -> @%SystemRoot%\System32\NetCfgx.dll,-1501 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{6bdd1fc6-810f-11d0-bec7-08002be2092f}] : (Image) [] -> @%SystemRoot%\system32\sti_ci.dll,-52 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{6d807884-7d21-11cf-801c-08002be10318}] : (TapeDrive) [] -> @%SystemRoot%\System32\SysClass.Dll,-3006 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{6fae73b7-b735-4b50-a0da-0dc2484b1f1a}] : (BasicDisplay) [] -> [HKLM\SYSTEM\CurrentControlSet\Control\Class\{71a27cdd-812a-11d0-bec7-08002be2092f}] : (Volume) [] -> @c_volume.inf,%ClassDesc%;Storage volumes [HKLM\SYSTEM\CurrentControlSet\Control\Class\{71aa14f8-6fad-4622-ad77-92bb9d7e6947}] : (ContinuousBackup) [] -> @c_fscontinuousbackup.inf,%ClassDesc%;FS Continuous backup filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}] : (Battery) [] -> @%SystemRoot%\system32\powrprof.dll,-611 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{745a17a0-74d3-11d0-b6fe-00a0c90f57da}] : (HIDClass) [] -> @%SystemRoot%\System32\hid.dll,-101 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{772e18f2-8925-4229-a5ac-6453cb482fda}] : (HidCashDrawer) [] -> @c_cashdrawer.inf,%ClassName%;POS Cash Drawer [HKLM\SYSTEM\CurrentControlSet\Control\Class\{7ebefbc0-3200-11d2-b4c2-00a0c9697d07}] : (61883) [] -> @%SystemRoot%\System32\SysClass.Dll,-3019 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{8496e87e-c0a1-4102-9d8d-bd9a9b8b07a9}] : (WDC_SAM) [] -> @oem29.inf,%WDC_SAM_ClassName%;WD Drive Management devices [HKLM\SYSTEM\CurrentControlSet\Control\Class\{8503c911-a6c7-4919-8f79-5028f5866b0c}] : (QuotaManagement) [] -> @c_fsquotamgmt.inf,%ClassDesc%;FS Quota management filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{87ef9ad1-8f70-49ee-b215-ab1fcadcbe3c}] : (NetDriver) [] -> @c_netdriver.inf,%ClassDesc%;Universal Network Drivers [HKLM\SYSTEM\CurrentControlSet\Control\Class\{88a1c342-4539-11d3-b88d-00c04fad5171}] : (TS_Generic) [] -> @ts_generic.inf,%TSClassName%;Generic Remote Desktop devices [HKLM\SYSTEM\CurrentControlSet\Control\Class\{88bae032-5a81-49f0-bc3d-a4ff138216d6}] : (USBDevice) [] -> @%SystemRoot%\System32\SysClass.Dll,-3029 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{89786ff1-9c12-402f-9c9e-17753c7f4375}] : (CopyProtection) [] -> @c_fscopyprotection.inf,%ClassDesc%;FS Copy protection filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{8ecc055d-047f-11d1-a537-0000f8753ed1}] : (LegacyDriver) [] -> @%SystemRoot%\System32\SysClass.Dll,-3003 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{990a2bd7-e738-46c7-b26f-1cf8fb9f1391}] : (SmartCard) [] -> @%SystemRoot%\System32\SysClass.DLL,-3031 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{9da2b80f-f89f-4a49-a5c2-511b085b9e8a}] : (EhStorSilo) [] -> @rawsilo.inf,%ClassName%;IEEE 1667 silo and control devices [HKLM\SYSTEM\CurrentControlSet\Control\Class\{a0a588a4-c46f-4b37-b7ea-c82fe89870c6}] : (SDHost) [] -> @%SystemRoot%\System32\SysClass.Dll,-3012 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{a0a701c0-a511-42ff-aa6c-06dc0395576f}] : (Encryption) [] -> @c_fsencryption.inf,%ClassDesc%;FS Encryption filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{a3e32dba-ba89-4f17-8386-2d0127fbd4cc}] : (rdpbus) [] -> [HKLM\SYSTEM\CurrentControlSet\Control\Class\{b1d1a169-c54f-4379-81db-bee7d88d7454}] : (AntiVirus) [] -> @c_fsantivirus.inf,%ClassDesc%;FS Anti-virus filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{b2728d24-ac56-42db-9e02-8edaf5db652f}] : (RDCamera) [] -> @rdcameradriver.inf,%ClassName%;Remote Desktop Camera devices [HKLM\SYSTEM\CurrentControlSet\Control\Class\{b86dff51-a31e-4bac-b3cf-e8cfe75c9fc2}] : (ActivityMonitor) [] -> @c_fsactivitymonitor.inf,%ClassDesc%;FS Activity monitor filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{bbbe8734-08fa-4966-b6a6-4e5ad010cdd7}] : (USBFunctionController) [] -> @%SystemRoot%\System32\SysClass.Dll,-3030 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{c06ff265-ae09-48f0-812c-16753d7cba83}] : (AVC) [] -> @%SystemRoot%\System32\SysClass.Dll,-3027 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{c166523c-fe0c-4a94-a586-f1a80cfbbf3e}] : (AudioEndpoint) [] -> @audioendpoint.inf,%ClassName%;Audio inputs and outputs [HKLM\SYSTEM\CurrentControlSet\Control\Class\{c243ffbd-3afc-45e9-b3d3-2ba18bc7ebc5}] : (BarcodeScanner) [] -> @c_barcodescanner.inf,%ClassName%;POS Barcode Scanner [HKLM\SYSTEM\CurrentControlSet\Control\Class\{c30ecea0-11ef-4ef9-b02e-6af81e6e65c0}] : (WSDPrintDevice) [] -> @wsdprint.inf,%ClassName%;WSD Print Provider [HKLM\SYSTEM\CurrentControlSet\Control\Class\{c7bc9b22-21f0-4f0d-9bb6-66c229b8cd33}] : (POSPrinter) [] -> @c_receiptprinter.inf,%ClassName%;POS Receipt Printer [HKLM\SYSTEM\CurrentControlSet\Control\Class\{ca3e7ab9-b4c3-4ae6-8251-579ef933890f}] : (Camera) [] -> @c_camera.inf,%ClassDesc%;Cameras [HKLM\SYSTEM\CurrentControlSet\Control\Class\{cdcf0939-b75b-4630-bf76-80f7ba655884}] : (CFSMetadataServer) [] -> @c_fscfsmetadataserver.inf,%ClassDesc%;FS CFS metadata server filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{ce5939ae-ebde-11d0-b181-0000f8753ec4}] : (MediumChanger) [] -> @%SystemRoot%\System32\StorProp.dll,-17003 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{d02bc3da-0c8e-4945-9bd5-f1883c226c8c}] : (SecurityEnhancer) [] -> @c_fssecurityenhancer.inf,%ClassDesc%;FS Security enhancer filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{d421b08e-6d16-41ca-9c4d-9147e5ac98e0}] : (Miracast) [] -> @miradisp.inf,%ClassName%;Miracast display devices [HKLM\SYSTEM\CurrentControlSet\Control\Class\{d48179be-ec20-11d1-b6b8-00c04fa372a7}] : (SBP2) [] -> @%SystemRoot%\System32\SysClass.Dll,-3017 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{d546500a-2aeb-45f6-9482-f4b1799c3177}] : (HSM) [] -> @c_fshsm.inf,%ClassDesc%;FS HSM filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{d612553d-06b1-49ca-8938-e39ef80eb16f}] : (Holographic) [] -> @c_holographic.inf,%ClassName%;Mixed Reality devices [HKLM\SYSTEM\CurrentControlSet\Control\Class\{d61ca365-5af4-4486-998b-9db4734c6ca3}] : (XnaComposite) [] -> @xusb22.inf,%XUSB22.ClassName%;Xbox 360 Peripherals [HKLM\SYSTEM\CurrentControlSet\Control\Class\{d94ee5d8-d189-4994-83d2-f68d7d41b0e6}] : (SecurityDevices) [] -> @%SystemRoot%\System32\SysClass.Dll,-3020 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{db4f6ddd-9c0e-45e4-9597-78dbbad0f412}] : (SmartCardFilter) [] -> @%SystemRoot%\System32\SysClass.DLL,-3032 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{e004269c-d387-4461-b955-25a64cfe23ce}] : (amdkmdag) [] -> [HKLM\SYSTEM\CurrentControlSet\Control\Class\{e0cbf06c-cd8b-4647-bb8a-263b43f0f974}] : (Bluetooth) [] -> @%SystemRoot%\system32\bthci.dll,-4001 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{e2f84ce7-8efa-411c-aa69-97454ca4cb57}] : (Extension) [] -> @c_extension.inf,%ClassDesc%;Extensions [HKLM\SYSTEM\CurrentControlSet\Control\Class\{e55fa6f9-128c-4d04-abab-630c74b1453a}] : (Infrastructure) [] -> @c_fsinfrastructure.inf,%ClassDesc%;FS Infrastructure filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{e6f1aa1c-7f3b-4473-b2e8-c97d8ac71d53}] : (UCM) [] -> @c_ucm.inf,%ClassDesc%;USB Connector Managers [HKLM\SYSTEM\CurrentControlSet\Control\Class\{eec5ad98-8080-425f-922a-dabf3de3f69a}] : (WPD) [] -> @%SystemRoot%\System32\wpd_ci.dll,-101 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{f01a9d53-3ff6-48d2-9f97-c8a7004be10c}] : (ComputeAccelerator) [] -> @c_computeaccelerator.inf,%ClassDesc%;Compute accelerators [HKLM\SYSTEM\CurrentControlSet\Control\Class\{f2e7dd72-6468-4e36-b6f1-6488f42c1b52}] : (Firmware) [] -> @c_firmware.inf,%ClassDesc%;Firmware [HKLM\SYSTEM\CurrentControlSet\Control\Class\{f3586baf-b5aa-49b5-8d6c-0569284c639f}] : (Compression) [] -> @c_fscompression.inf,%ClassDesc%;FS Compression filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{f75a86c0-10d8-4c3a-b233-ed60e4cdfaac}] : (Virtualization) [] -> @c_fsvirtualization.inf,%ClassDesc%;FS Virtualization filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{f8ecafa6-66d1-41a5-899b-66585d7216b7}] : (OpenFileBackup) [] -> @c_fsopenfilebackup.inf,%ClassDesc%;FS Open file backup filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{fe8f1572-c67a-48c0-bbac-0b5c6d66cafb}] : (Undelete) [] -> @c_fsundelete.inf,%ClassDesc%;FS Undelete filters [HKLM\SYSTEM\CurrentControlSet\Control\Els\Services\{2D64B439-6CAF-4f6b-B688-E5D0F4FAA7D7}] : (Script Detection) [@elscore.dll,-2] -> ElsLad.dll (Copyright (c) Microsoft Corporation.) [HKLM\SYSTEM\CurrentControlSet\Control\Els\Services\{A22D52C1-DBFD-40cb-AE78-E3BA9EE1D88F}] : (Transliteration) [@elscore.dll,-5] -> elstrans.dll (Copyright (c) Microsoft Corporation.) [HKLM\SYSTEM\CurrentControlSet\Control\Els\Services\{CF7E00B1-909B-4d95-A8F4-611F7C377702}] : (Language Detection) [@elscore.dll,-1] -> ElsLad.dll (Copyright (c) Microsoft Corporation.) ---------- | Loaded modules (whitelist) [05/09/2019 15:41:37] - (1.1.0.48) - (Beijing Rising Information Technology Co., Ltd. - sysmon.sys) - C:\WINDOWS\system32\DRIVERS\rfwmon.sys [05/09/2019 15:41:37] - (1.0.0.1) - (Beijing Rising Information Technology Co., Ltd. - rsndisp.sys) - C:\WINDOWS\system32\DRIVERS\rfwndisp.sys [12/12/2019 09:24:13] - (7.12.31.105) - (QLogic Corporation - QLogic Gigabit Ethernet VBD) - C:\WINDOWS\System32\drivers\bxvbda.sys [12/12/2019 09:24:13] - (7.13.65.105) - (QLogic Corporation - QLogic 10 GigE VBD) - C:\WINDOWS\System32\drivers\evbda.sys [12/12/2019 09:24:19] - (10.6.0.23) - (NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver) - C:\WINDOWS\System32\drivers\nvraid.sys [12/12/2019 09:24:19] - (5.1.0.51) - (LSI - LSI 3ware SCSI Storport Driver) - C:\WINDOWS\System32\drivers\3ware.sys [12/12/2019 09:24:19] - (3.7.1540.43) - (AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows - AMD64 platform) - C:\WINDOWS\System32\drivers\amdsbs.sys [12/12/2019 09:24:19] - (7.5.0.32048) - (PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver) - C:\WINDOWS\System32\drivers\arcsas.sys [12/12/2019 09:24:19] - (2.60.94.80) - (Avago Technologies - Avago SAS Gen3.5 Driver (StorPort)) - C:\WINDOWS\System32\drivers\ItSas35i.sys [12/12/2019 09:24:19] - (2.0.79.82) - (LSI Corporation - LSI SAS Gen2 Driver (StorPort)) - C:\WINDOWS\System32\drivers\lsi_sas2i.sys [12/12/2019 09:24:19] - (2.51.26.80) - (Avago Technologies - Avago SAS Gen3 Driver (StorPort)) - C:\WINDOWS\System32\drivers\lsi_sas3i.sys [12/12/2019 09:24:19] - (6.714.20.0) - (Avago Technologies - MEGASAS RAID Controller Driver for Windows) - C:\WINDOWS\System32\drivers\MegaSas2i.sys [12/12/2019 09:24:19] - (7.710.10.0) - (Avago Technologies - MEGASAS RAID Controller Driver for Windows) - C:\WINDOWS\System32\drivers\megasas35i.sys [12/12/2019 09:24:19] - (15.2.2013.129) - (LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver) - C:\WINDOWS\System32\drivers\megasr.sys [12/12/2019 09:24:19] - (1.0.5.1016) - (Marvell Semiconductor, Inc. - Marvell Flash Controller Driver) - C:\WINDOWS\System32\drivers\mvumis.sys [12/12/2019 09:24:19] - (10.6.0.23) - (NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver) - C:\WINDOWS\System32\drivers\nvstor.sys [12/12/2019 09:24:19] - (6.805.3.0) - (Avago Technologies - MEGASAS RAID Controller Driver for Windows) - C:\WINDOWS\System32\drivers\percsas2i.sys [12/12/2019 09:24:19] - (6.604.6.0) - (Avago Technologies - MEGASAS RAID Controller Driver for Windows) - C:\WINDOWS\System32\drivers\percsas3i.sys [12/12/2019 09:24:19] - (5.1.1039.2600) - (Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver) - C:\WINDOWS\System32\drivers\SiSRaid2.sys [12/12/2019 09:24:19] - (5.1.1039.3600) - (Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver) - C:\WINDOWS\System32\drivers\sisraid4.sys [12/12/2019 09:24:19] - (5.1.0.10) - (Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Windows x64) - C:\WINDOWS\System32\drivers\stexstor.sys [12/12/2019 09:24:19] - (7.0.9600.6352) - (VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64) - C:\WINDOWS\System32\drivers\vsmraid.sys [12/12/2019 09:24:19] - (8.0.9200.8110) - (VIA Corporation - VIA StorX RAID Controller Driver) - C:\WINDOWS\System32\drivers\vstxraid.sys [12/12/2019 09:24:20] - (6.11.4.100) - (Chelsio Communications - Chelsio iSCSI VMiniport Driver) - C:\WINDOWS\System32\drivers\cht4sx64.sys [12/12/2019 09:24:19] - (1.3.0.10769) - (PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS/SATA controller) - C:\WINDOWS\System32\drivers\ADP80XX.SYS [12/12/2019 09:24:19] - (8.0.4.0) - (Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver) - C:\WINDOWS\System32\drivers\HpSAMD.sys [12/12/2019 09:24:19] - (1.50.1.0) - (Microsemi Corportation - Storport Miniport Driver for SmartRAID/SmartHBA Controllers) - C:\WINDOWS\System32\drivers\SmartSAMD.sys [23/01/2020 10:53:20] - (6.0.6001.18000) - (Windows (R) Codename Longhorn DDK provider - Disk Performance Driver) - C:\WINDOWS\System32\drivers\EPMVolFl.sys [03/04/2020 01:02:14] - (0.0.0.0) - ( -) - C:\WINDOWS\system32\ambakdrv.sys [16/10/2019 05:57:16] - (12.1.0.6908) - (COMODO - COMODO Internet Security Eradication Driver) - C:\WINDOWS\System32\DRIVERS\cmderd.sys [12/12/2019 09:25:32] - (0.0.0.0) - ( -) - C:\WINDOWS\System32\Drivers\CimFS.SYS [16/10/2019 05:57:22] - (12.1.0.6908) - (COMODO - COMODO Internet Security Helper Driver) - C:\WINDOWS\system32\DRIVERS\cmdhlp.sys [05/09/2019 15:41:36] - (26.0.0.8) - (Beijing Rising Information Technology Co., Ltd. - rfwndis6_64.sys) - C:\WINDOWS\system32\DRIVERS\rfwndis.sys [05/09/2019 15:41:36] - (26.0.0.2) - (Beijing Rising Information Technology Co., Ltd. - rfwarp.sys) - C:\WINDOWS\system32\DRIVERS\rfwarp.sys [16/10/2019 05:57:24] - (12.1.0.6908) - (COMODO - COMODO Internet Security Firewall Driver) - C:\WINDOWS\system32\DRIVERS\inspect.sys [08/07/2019 10:16:00] - (10.0.18362.31249) - (Realsil Semiconductor Corporation - RTS USB READER Driver) - C:\WINDOWS\system32\Drivers\RtsUer.sys [28/04/2019 21:43:58] - (2.1.0.27) - (Qualcomm Atheros, Inc. - Killer e2200 PCI-E Gigabit Ethernet Controller) - C:\WINDOWS\System32\drivers\L1C63x64.sys [09/03/2020 23:24:12] - (1.0.0.1) - (Callback Technologies, Inc. - Virtual PnP Bus Driver) - C:\WINDOWS\System32\drivers\vpnpbus.sys [25/05/2019 23:34:37] - (2.0.0.3505) - (CyberLink - CyberLink Virtual CDROM Bus Enumerator) - C:\WINDOWS\System32\drivers\CLVirtualBus01.sys [01/04/2020 16:14:06] - (1.3.48618.136) - (COMODO - COMODO Secure Shopping Driver) - C:\WINDOWS\system32\drivers\cmdcss.sys [01/04/2020 14:05:28] - (1.8.2.328) - (Zemana Ltd. - Zemana AntiLogger Free) - C:\WINDOWS\system32\DRIVERS\KeyCrypt64.sys [29/10/2019 10:30:35] - (9.0.0.9) - (The OpenVPN Project - TAP-Windows Virtual Network Driver) - C:\WINDOWS\System32\drivers\tap0901.sys ---------- | LoadOrderGroup Name: System Reserved - DriverEnabled: True - GroupOrder: 1 - Status: OK Name: EMS - DriverEnabled: True - GroupOrder: 2 - Status: OK Name: WdfLoadGroup - DriverEnabled: True - GroupOrder: 3 - Status: OK Name: Boot Bus Extender - DriverEnabled: True - GroupOrder: 4 - Status: OK Name: System Bus Extender - DriverEnabled: True - GroupOrder: 5 - Status: OK Name: SCSI miniport - DriverEnabled: True - GroupOrder: 6 - Status: OK Name: Port - DriverEnabled: True - GroupOrder: 7 - Status: OK Name: Primary Disk - DriverEnabled: True - GroupOrder: 8 - Status: OK Name: SCSI Class - DriverEnabled: True - GroupOrder: 9 - Status: OK Name: SCSI CDROM Class - DriverEnabled: True - GroupOrder: 10 - Status: OK Name: FSFilter Infrastructure - DriverEnabled: True - GroupOrder: 11 - Status: OK Name: FSFilter System - DriverEnabled: True - GroupOrder: 12 - Status: OK Name: FSFilter Bottom - DriverEnabled: True - GroupOrder: 13 - Status: OK Name: FSFilter Copy Protection - DriverEnabled: True - GroupOrder: 14 - Status: OK Name: FSFilter Security Enhancer - DriverEnabled: True - GroupOrder: 15 - Status: OK Name: FSFilter Open File - DriverEnabled: True - GroupOrder: 16 - Status: OK Name: FSFilter Physical Quota Management - DriverEnabled: True - GroupOrder: 17 - Status: OK Name: FSFilter Virtualization - DriverEnabled: True - GroupOrder: 18 - Status: OK Name: FSFilter Encryption - DriverEnabled: True - GroupOrder: 19 - Status: OK Name: FSFilter Compression - DriverEnabled: True - GroupOrder: 20 - Status: OK Name: FSFilter Imaging - DriverEnabled: True - GroupOrder: 21 - Status: OK Name: FSFilter HSM - DriverEnabled: True - GroupOrder: 22 - Status: OK Name: FSFilter Cluster File System - DriverEnabled: True - GroupOrder: 23 - Status: OK Name: FSFilter System Recovery - DriverEnabled: True - GroupOrder: 24 - Status: OK Name: FSFilter Quota Management - DriverEnabled: True - GroupOrder: 25 - Status: OK Name: FSFilter Content Screener - DriverEnabled: True - GroupOrder: 26 - Status: OK Name: FSFilter Continuous Backup - DriverEnabled: True - GroupOrder: 27 - Status: OK Name: FSFilter Replication - DriverEnabled: True - GroupOrder: 28 - Status: OK Name: FSFilter Anti-Virus - DriverEnabled: True - GroupOrder: 29 - Status: OK Name: FSFilter Undelete - DriverEnabled: True - GroupOrder: 30 - Status: OK Name: FSFilter Activity Monitor - DriverEnabled: True - GroupOrder: 31 - Status: OK Name: FSFilter Top - DriverEnabled: True - GroupOrder: 32 - Status: OK Name: Filter - DriverEnabled: True - GroupOrder: 33 - Status: OK Name: Boot File System - DriverEnabled: True - GroupOrder: 34 - Status: OK Name: Base - DriverEnabled: True - GroupOrder: 35 - Status: OK Name: Pointer Port - DriverEnabled: True - GroupOrder: 36 - Status: OK Name: Keyboard Port - DriverEnabled: True - GroupOrder: 37 - Status: OK Name: Pointer Class - DriverEnabled: True - GroupOrder: 38 - Status: OK Name: Keyboard Class - DriverEnabled: True - GroupOrder: 39 - Status: OK Name: Video Init - DriverEnabled: True - GroupOrder: 40 - Status: OK Name: Video - DriverEnabled: True - GroupOrder: 41 - Status: OK Name: Video Save - DriverEnabled: True - GroupOrder: 42 - Status: OK Name: File System - DriverEnabled: True - GroupOrder: 43 - Status: OK Name: Streams Drivers - DriverEnabled: True - GroupOrder: 44 - Status: OK Name: NDIS Wrapper - DriverEnabled: True - GroupOrder: 45 - Status: OK Name: COM Infrastructure - DriverEnabled: True - GroupOrder: 46 - Status: OK Name: Event Log - DriverEnabled: True - GroupOrder: 47 - Status: OK Name: PerceptionGroup - DriverEnabled: True - GroupOrder: 48 - Status: OK Name: ProfSvc_Group - DriverEnabled: True - GroupOrder: 49 - Status: OK Name: AudioGroup - DriverEnabled: True - GroupOrder: 50 - Status: OK Name: UIGroup - DriverEnabled: True - GroupOrder: 51 - Status: OK Name: MS_WindowsLocalValidation - DriverEnabled: True - GroupOrder: 52 - Status: OK Name: PlugPlay - DriverEnabled: True - GroupOrder: 53 - Status: OK Name: Cryptography - DriverEnabled: True - GroupOrder: 54 - Status: OK Name: PNP_TDI - DriverEnabled: True - GroupOrder: 55 - Status: OK Name: NDIS - DriverEnabled: True - GroupOrder: 56 - Status: OK Name: TDI - DriverEnabled: True - GroupOrder: 57 - Status: OK Name: iSCSI - DriverEnabled: True - GroupOrder: 58 - Status: OK Name: NetBIOSGroup - DriverEnabled: True - GroupOrder: 59 - Status: OK Name: ShellSvcGroup - DriverEnabled: True - GroupOrder: 60 - Status: OK Name: SchedulerGroup - DriverEnabled: True - GroupOrder: 61 - Status: OK Name: SpoolerGroup - DriverEnabled: True - GroupOrder: 62 - Status: OK Name: SmartCardGroup - DriverEnabled: True - GroupOrder: 63 - Status: OK Name: NetworkProvider - DriverEnabled: True - GroupOrder: 64 - Status: OK Name: MS_WindowsRemoteValidation - DriverEnabled: True - GroupOrder: 65 - Status: OK Name: NetDDEGroup - DriverEnabled: True - GroupOrder: 66 - Status: OK Name: Parallel arbitrator - DriverEnabled: True - GroupOrder: 67 - Status: OK Name: Extended Base - DriverEnabled: True - GroupOrder: 68 - Status: OK Name: PCI Configuration - DriverEnabled: True - GroupOrder: 69 - Status: OK Name: MS Transactions - DriverEnabled: True - GroupOrder: 70 - Status: OK Name: Core - DriverEnabled: False - GroupOrder: 71 - Status: OK Name: PnP Filter - DriverEnabled: False - GroupOrder: 72 - Status: OK Name: Early-Launch - DriverEnabled: False - GroupOrder: 73 - Status: OK Name: Avira - DriverEnabled: False - GroupOrder: 74 - Status: OK Name: Network - DriverEnabled: False - GroupOrder: 75 - Status: OK Name: System - DriverEnabled: False - GroupOrder: 76 - Status: OK Name: Core Security Extensions - DriverEnabled: False - GroupOrder: 77 - Status: OK Name: NetworkService - DriverEnabled: False - GroupOrder: 78 - Status: OK Name: Hyper-V Parsers - DriverEnabled: False - GroupOrder: 79 - Status: OK Name: LocalService - DriverEnabled: False - GroupOrder: 80 - Status: OK ---------- | LoadOrderGroupServiceDependencies LoadOrderGroup.Name="NetBIOSGroup" - Service.Name="RemoteAccess" LoadOrderGroup.Name="SCSI CDROM Class" - SystemDriver.Name="cdfs" ---------- | LoadOrderGroupServiceMembers LoadOrderGroup.Name="FSFilter Anti-Virus" - Service.Name="a2AntiMalware" LoadOrderGroup.Name="Event log" - Service.Name="AMD External Events Utility" LoadOrderGroup.Name="ProfSvc_Group" - Service.Name="AppIDSvc" LoadOrderGroup.Name="AudioGroup" - Service.Name="AudioEndpointBuilder" LoadOrderGroup.Name="AudioGroup" - Service.Name="Audiosrv" LoadOrderGroup.Name="ShellSvcGroup" - Service.Name="avast! Antivirus" LoadOrderGroup.Name="ProfSvc_Group" - Service.Name="AvastWscReporter" LoadOrderGroup.Name="ShellSvcGroup" - Service.Name="AVG Antivirus" LoadOrderGroup.Name="NetworkProvider" - Service.Name="AVG Firewall" LoadOrderGroup.Name="ProfSvc_Group" - Service.Name="AvgWscReporter" LoadOrderGroup.Name="NetworkProvider" - Service.Name="BFE" LoadOrderGroup.Name="UIGroup" - Service.Name="BootRacerServ" LoadOrderGroup.Name="COM Infrastructure" - Service.Name="BrokerInfrastructure" LoadOrderGroup.Name="NetworkProvider" - Service.Name="Browser" LoadOrderGroup.Name="Core" - Service.Name="CmdAgent" LoadOrderGroup.Name="COM Infrastructure" - Service.Name="DcomLaunch" LoadOrderGroup.Name="PlugPlay" - Service.Name="DeviceInstall" LoadOrderGroup.Name="TDI" - Service.Name="Dhcp" LoadOrderGroup.Name="TDI" - Service.Name="Dnscache" LoadOrderGroup.Name="TDI" - Service.Name="dot3svc" LoadOrderGroup.Name="TDI" - Service.Name="DusmSvc" LoadOrderGroup.Name="Event Log" - Service.Name="EventLog" LoadOrderGroup.Name="AudioGroup" - Service.Name="FontCache" LoadOrderGroup.Name="ProfSvc_Group" - Service.Name="gpsvc" LoadOrderGroup.Name="PNP_TDI" - Service.Name="HitmanPro38CrusaderBoot" LoadOrderGroup.Name="TDI" - Service.Name="icssvc" LoadOrderGroup.Name="NetworkProvider" - Service.Name="LanmanWorkstation" LoadOrderGroup.Name="TDI" - Service.Name="lmhosts" LoadOrderGroup.Name="COM Infrastructure" - Service.Name="LSM" LoadOrderGroup.Name="NetworkService" - Service.Name="MapsBroker" LoadOrderGroup.Name="NetworkProvider" - Service.Name="mpssvc" LoadOrderGroup.Name="iSCSI" - Service.Name="MSiSCSI" LoadOrderGroup.Name="MS_WindowsRemoteValidation" - Service.Name="Netlogon" LoadOrderGroup.Name="Cryptography" - Service.Name="NgcCtnrSvc" LoadOrderGroup.Name="Cryptography" - Service.Name="NgcSvc" LoadOrderGroup.Name="FSFilter Activity Monitor" - SystemDriver.Name="360AvFlt" LoadOrderGroup.Name="SCSI miniport" - SystemDriver.Name="3ware" LoadOrderGroup.Name="System Bus Extender" - SystemDriver.Name="432231ED" LoadOrderGroup.Name="System Bus Extender" - SystemDriver.Name="5215D73F" LoadOrderGroup.Name="System Bus Extender" - SystemDriver.Name="755614B4" LoadOrderGroup.Name="Core" - SystemDriver.Name="ACPI" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="AcpiDev" LoadOrderGroup.Name="Boot Bus Extender" - SystemDriver.Name="acpiex" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="acpitime" LoadOrderGroup.Name="WdfLoadGroup" - SystemDriver.Name="Acx01000" LoadOrderGroup.Name="SCSI Miniport" - SystemDriver.Name="ADP80XX" LoadOrderGroup.Name="PNP_TDI" - SystemDriver.Name="AFD" LoadOrderGroup.Name="PNP_TDI" - SystemDriver.Name="afunix" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="amdgpio2" LoadOrderGroup.Name="Base" - SystemDriver.Name="amdi2c" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="AmdK8" LoadOrderGroup.Name="Video" - SystemDriver.Name="amdkmdag" LoadOrderGroup.Name="Video" - SystemDriver.Name="amdkmdap" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="AmdPPM" LoadOrderGroup.Name="SCSI miniport" - SystemDriver.Name="amdsata" LoadOrderGroup.Name="SCSI miniport" - SystemDriver.Name="amdsbs" LoadOrderGroup.Name="SCSI miniport" - SystemDriver.Name="amdxata" LoadOrderGroup.Name="SCSI miniport" - SystemDriver.Name="amd_sata" LoadOrderGroup.Name="SCSI miniport" - SystemDriver.Name="amd_xata" LoadOrderGroup.Name="SCSI miniport" - SystemDriver.Name="arcsas" LoadOrderGroup.Name="FSFilter Content Screener" - SystemDriver.Name="asd2fsm" LoadOrderGroup.Name="PnP Filter" - SystemDriver.Name="aswArDisk" LoadOrderGroup.Name="Early-Launch" - SystemDriver.Name="aswElam" LoadOrderGroup.Name="Keyboard Port" - SystemDriver.Name="aswKbd" LoadOrderGroup.Name="FSFilter Anti-Virus" - SystemDriver.Name="aswMonFlt" LoadOrderGroup.Name="PNP_TDI" - SystemDriver.Name="aswRdr" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="aswRvrt" LoadOrderGroup.Name="FSFilter Virtualization" - SystemDriver.Name="aswSnx" LoadOrderGroup.Name="FSFilter Security Enhancer" - SystemDriver.Name="aswSP" LoadOrderGroup.Name="NDIS" - SystemDriver.Name="aswStm" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="aswVmm" LoadOrderGroup.Name="SCSI Miniport" - SystemDriver.Name="atapi" LoadOrderGroup.Name="Early-Launch" - SystemDriver.Name="avgElam" LoadOrderGroup.Name="Keyboard Port" - SystemDriver.Name="avgKbd" LoadOrderGroup.Name="FSFilter Anti-Virus" - SystemDriver.Name="avgMonFlt" LoadOrderGroup.Name="NDIS" - SystemDriver.Name="avgNetSec" LoadOrderGroup.Name="PNP_TDI" - SystemDriver.Name="avgRdr" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="avgRvrt" LoadOrderGroup.Name="FSFilter Virtualization" - SystemDriver.Name="avgSnx" LoadOrderGroup.Name="FSFilter Security Enhancer" - SystemDriver.Name="AVGSP" LoadOrderGroup.Name="NDIS" - SystemDriver.Name="avgStm" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="avgVmm" LoadOrderGroup.Name="System Bus Extender" - SystemDriver.Name="b06bdrv" LoadOrderGroup.Name="Video" - SystemDriver.Name="BasicDisplay" LoadOrderGroup.Name="Video" - SystemDriver.Name="BasicRender" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="bcmfn2" LoadOrderGroup.Name="Base" - SystemDriver.Name="Beep" LoadOrderGroup.Name="FSFilter Top" - SystemDriver.Name="bindflt" LoadOrderGroup.Name="Network" - SystemDriver.Name="bowser" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="BthHFEnum" LoadOrderGroup.Name="PNP Filter" - SystemDriver.Name="BthMini" LoadOrderGroup.Name="PNP Filter" - SystemDriver.Name="BTHPORT" LoadOrderGroup.Name="PNP Filter" - SystemDriver.Name="BTHUSB" LoadOrderGroup.Name="PnP Filter" - SystemDriver.Name="bttflt" LoadOrderGroup.Name="Boot File System" - SystemDriver.Name="cdfs" LoadOrderGroup.Name="SCSI CDROM Class" - SystemDriver.Name="cdrom" LoadOrderGroup.Name="SCSI Miniport" - SystemDriver.Name="cht4iscsi" LoadOrderGroup.Name="System Bus Extender" - SystemDriver.Name="cht4vbd" LoadOrderGroup.Name="File system" - SystemDriver.Name="CimFS" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="circlass" LoadOrderGroup.Name="FSFilter HSM" - SystemDriver.Name="CldFlt" LoadOrderGroup.Name="Filter" - SystemDriver.Name="CLFS" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="CLVirtualBus01" LoadOrderGroup.Name="Early-Launch" - SystemDriver.Name="cmdboot" LoadOrderGroup.Name="Primary Disk" - SystemDriver.Name="cmderd" LoadOrderGroup.Name="FSFilter Anti-Virus" - SystemDriver.Name="cmdGuard" LoadOrderGroup.Name="PNP_TDI" - SystemDriver.Name="cmdhlp" LoadOrderGroup.Name="Core" - SystemDriver.Name="CNG" LoadOrderGroup.Name="Base" - SystemDriver.Name="cnghwassist" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="CompositeBus" LoadOrderGroup.Name="Base" - SystemDriver.Name="condrv" LoadOrderGroup.Name="file system" - SystemDriver.Name="DefragFS" LoadOrderGroup.Name="Network" - SystemDriver.Name="Dfsc" LoadOrderGroup.Name="Video Init" - SystemDriver.Name="DXGKrnl" LoadOrderGroup.Name="System Bus Extender" - SystemDriver.Name="ebdrv" LoadOrderGroup.Name="SCSI Class" - SystemDriver.Name="EhStorClass" LoadOrderGroup.Name="SCSI Class" - SystemDriver.Name="EhStorTcgDrv" LoadOrderGroup.Name="FSFilter Anti-Virus" - SystemDriver.Name="EnigmaFileMonDriver" LoadOrderGroup.Name="Boot File System" - SystemDriver.Name="epmntdrv" LoadOrderGroup.Name="PnP Filter" - SystemDriver.Name="EPMVolFl" LoadOrderGroup.Name="Pnp Filter" - SystemDriver.Name="eppdisk" LoadOrderGroup.Name="PNP_TDI" - SystemDriver.Name="eppwfp" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="ErrDev" LoadOrderGroup.Name="Boot File System" - SystemDriver.Name="EuGdiDrv" LoadOrderGroup.Name="Boot File System" - SystemDriver.Name="exfat" LoadOrderGroup.Name="Boot File System" - SystemDriver.Name="fastfat" LoadOrderGroup.Name="FSFilter Encryption" - SystemDriver.Name="FileCrypt" LoadOrderGroup.Name="FSFilter Bottom" - SystemDriver.Name="FileInfo" LoadOrderGroup.Name="FSFilter Activity Monitor" - SystemDriver.Name="Filetrace" LoadOrderGroup.Name="FSFilter Infrastructure" - SystemDriver.Name="FltMgr" LoadOrderGroup.Name="FSFilter Top" - SystemDriver.Name="FsDepends" LoadOrderGroup.Name="PnP Filter" - SystemDriver.Name="fvevol" LoadOrderGroup.Name="Base" - SystemDriver.Name="genericusbfn" LoadOrderGroup.Name="System Bus Extender" - SystemDriver.Name="GPIOClx0101" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="HDAudBus" LoadOrderGroup.Name="PlugPlay" - Service.Name="PlugPlay" LoadOrderGroup.Name="Plugplay" - Service.Name="Power" LoadOrderGroup.Name="profsvc_group" - Service.Name="ProfSvc" LoadOrderGroup.Name="COM Infrastructure" - Service.Name="RpcEptMapper" LoadOrderGroup.Name="COM Infrastructure" - Service.Name="RpcSs" LoadOrderGroup.Name="PlugPlay" - Service.Name="RtkAudioService" LoadOrderGroup.Name="MS_WindowsLocalValidation" - Service.Name="SamSs" LoadOrderGroup.Name="SmartCardGroup" - Service.Name="SCardSvr" LoadOrderGroup.Name="SchedulerGroup" - Service.Name="Schedule" LoadOrderGroup.Name="ProfSvc_Group" - Service.Name="SENS" LoadOrderGroup.Name="extended base" - SystemDriver.Name="HidBth" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="hidi2c" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="hidinterrupt" LoadOrderGroup.Name="extended base" - SystemDriver.Name="HidIr" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="hidspi" LoadOrderGroup.Name="extended base" - SystemDriver.Name="HidUsb" LoadOrderGroup.Name="SCSI Miniport" - SystemDriver.Name="HpSAMD" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="hvservice" LoadOrderGroup.Name="System" - SystemDriver.Name="HwNClx0101" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="hyperkbd" LoadOrderGroup.Name="Video" - SystemDriver.Name="HyperVideo" LoadOrderGroup.Name="Keyboard Port" - SystemDriver.Name="i8042prt" LoadOrderGroup.Name="Base" - SystemDriver.Name="iai2c" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="iaLPSS2i_GPIO2" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="iaLPSS2i_GPIO2_BXT_P" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="iaLPSS2i_GPIO2_CNL" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="iaLPSS2i_GPIO2_GLK" LoadOrderGroup.Name="Base" - SystemDriver.Name="iaLPSS2i_I2C" LoadOrderGroup.Name="Base" - SystemDriver.Name="iaLPSS2i_I2C_BXT_P" LoadOrderGroup.Name="Base" - SystemDriver.Name="iaLPSS2i_I2C_CNL" LoadOrderGroup.Name="Base" - SystemDriver.Name="iaLPSS2i_I2C_GLK" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="iaLPSSi_GPIO" LoadOrderGroup.Name="Base" - SystemDriver.Name="iaLPSSi_I2C" LoadOrderGroup.Name="SCSI miniport" - SystemDriver.Name="iaStorAVC" LoadOrderGroup.Name="SCSI Miniport" - SystemDriver.Name="iaStorV" LoadOrderGroup.Name="PnP Filter" - SystemDriver.Name="ibbus" LoadOrderGroup.Name="Base" - SystemDriver.Name="IndirectKmd" LoadOrderGroup.Name="NDIS" - SystemDriver.Name="inspect" LoadOrderGroup.Name="System Bus Extender" - SystemDriver.Name="intelide" LoadOrderGroup.Name="Core Security Extensions" - SystemDriver.Name="intelpep" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="intelpmax" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="intelppm" LoadOrderGroup.Name="PnP Filter" - SystemDriver.Name="iorate" LoadOrderGroup.Name="Boot Bus Extender" - SystemDriver.Name="isapnp" LoadOrderGroup.Name="SCSI Miniport" - SystemDriver.Name="ItSas35i" LoadOrderGroup.Name="FSFilter Activity Monitor" - SystemDriver.Name="IUFileFilter" LoadOrderGroup.Name="ShellSvcGroup" - Service.Name="ShellHWDetection" LoadOrderGroup.Name="SpoolerGroup" - Service.Name="Spooler" LoadOrderGroup.Name="profsvc_group" - Service.Name="SysMain" LoadOrderGroup.Name="PlugPlay" - Service.Name="TabletInputService" LoadOrderGroup.Name="ProfSvc_Group" - Service.Name="Themes" LoadOrderGroup.Name="ProfSvc_Group" - Service.Name="TrustedInstaller" LoadOrderGroup.Name="AudioGroup" - Service.Name="VacSvc" LoadOrderGroup.Name="NDIS" - SystemDriver.Name="kdnic" LoadOrderGroup.Name="Keyboard Class" - SystemDriver.Name="keycrypt" LoadOrderGroup.Name="Base" - SystemDriver.Name="KSecDD" LoadOrderGroup.Name="Cryptography" - SystemDriver.Name="KSecPkg" LoadOrderGroup.Name="PNP Filter" - SystemDriver.Name="ksthunk" LoadOrderGroup.Name="NDIS" - SystemDriver.Name="L1C" LoadOrderGroup.Name="NDIS" - SystemDriver.Name="lltdio" LoadOrderGroup.Name="SCSI Miniport" - SystemDriver.Name="LSI_SAS2i" LoadOrderGroup.Name="SCSI Miniport" - SystemDriver.Name="LSI_SAS3i" LoadOrderGroup.Name="FSFilter Virtualization" - SystemDriver.Name="luafv" LoadOrderGroup.Name="PnP Filter" - SystemDriver.Name="massfilter" LoadOrderGroup.Name="Base" - SystemDriver.Name="mausbhost" LoadOrderGroup.Name="Base" - SystemDriver.Name="mausbip" LoadOrderGroup.Name="FSFilter Activity Monitor" - SystemDriver.Name="MBAMChameleon" LoadOrderGroup.Name="Early-Launch" - SystemDriver.Name="MbamElam" LoadOrderGroup.Name="FSFilter Activity Monitor" - SystemDriver.Name="MBAMFarflt" LoadOrderGroup.Name="FSFilter Activity Monitor" - SystemDriver.Name="MBAMProtection" LoadOrderGroup.Name="NDIS" - SystemDriver.Name="MBAMWebProtection" LoadOrderGroup.Name="SCSI Miniport" - SystemDriver.Name="megasas2i" LoadOrderGroup.Name="SCSI Miniport" - SystemDriver.Name="megasas35i" LoadOrderGroup.Name="SCSI Miniport" - SystemDriver.Name="megasr" LoadOrderGroup.Name="NDIS" - SystemDriver.Name="mlx4_bus" LoadOrderGroup.Name="Extended base" - SystemDriver.Name="Modem" LoadOrderGroup.Name="System Bus Extender" - SystemDriver.Name="mountmgr" LoadOrderGroup.Name="network" - SystemDriver.Name="mpsdrv" LoadOrderGroup.Name="Network" - SystemDriver.Name="mrxsmb" LoadOrderGroup.Name="Network" - SystemDriver.Name="mrxsmb10" LoadOrderGroup.Name="Network" - SystemDriver.Name="mrxsmb20" LoadOrderGroup.Name="NDIS" - SystemDriver.Name="MsBridge" LoadOrderGroup.Name="File system" - SystemDriver.Name="Msfs" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="msgpiowin32" LoadOrderGroup.Name="Base" - SystemDriver.Name="mshidkmdf" LoadOrderGroup.Name="Base" - SystemDriver.Name="mshidumdf" LoadOrderGroup.Name="Boot Bus Extender" - SystemDriver.Name="msisadrv" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="MSKSSRV" LoadOrderGroup.Name="NDIS" - SystemDriver.Name="MsLldp" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="MSPCLOCK" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="MSPQM" LoadOrderGroup.Name="SmartCardGroup" - Service.Name="WbioSrvc" LoadOrderGroup.Name="TDI" - Service.Name="Wcmsvc" LoadOrderGroup.Name="NetworkProvider" - Service.Name="WebClient" LoadOrderGroup.Name="TDI" - Service.Name="WlanSvc" LoadOrderGroup.Name="TDI" - Service.Name="wlpasvc" LoadOrderGroup.Name="LocalService" - Service.Name="workfolderssvc" LoadOrderGroup.Name="TDI" - Service.Name="WwanSvc" LoadOrderGroup.Name="COM Infrastructure" - Service.Name="QQPCRTP" LoadOrderGroup.Name="Network" - SystemDriver.Name="MsQuic" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="MSTEE" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="MTConfig" LoadOrderGroup.Name="Network" - SystemDriver.Name="Mup" LoadOrderGroup.Name="SCSI Miniport" - SystemDriver.Name="mvumis" LoadOrderGroup.Name="NDIS" - SystemDriver.Name="NativeWifiP" LoadOrderGroup.Name="PNP Filter" - SystemDriver.Name="ndfltr" LoadOrderGroup.Name="NDIS Wrapper" - SystemDriver.Name="NDIS" LoadOrderGroup.Name="NDIS" - SystemDriver.Name="NdisCap" LoadOrderGroup.Name="NDIS" - SystemDriver.Name="NdisTapi" LoadOrderGroup.Name="NDIS" - SystemDriver.Name="Ndisuio" LoadOrderGroup.Name="NDIS" - SystemDriver.Name="ndiswanlegacy" LoadOrderGroup.Name="PNP_TDI" - SystemDriver.Name="ndproxy" LoadOrderGroup.Name="NetBIOSGroup" - SystemDriver.Name="NetBIOS" LoadOrderGroup.Name="PNP_TDI" - SystemDriver.Name="NetBT" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="netvsc" LoadOrderGroup.Name="File system" - SystemDriver.Name="Npfs" LoadOrderGroup.Name="Boot File System" - SystemDriver.Name="Ntfs" LoadOrderGroup.Name="Base" - SystemDriver.Name="Null" LoadOrderGroup.Name="Primary Disk" - SystemDriver.Name="nvdimm" LoadOrderGroup.Name="System Bus Extender" - SystemDriver.Name="nvraid" LoadOrderGroup.Name="SCSI Miniport" - SystemDriver.Name="nvstor" LoadOrderGroup.Name="Parallel arbitrator" - SystemDriver.Name="Parport" LoadOrderGroup.Name="Boot Bus Extender" - SystemDriver.Name="partmgr" LoadOrderGroup.Name="Boot Bus Extender" - SystemDriver.Name="pci" LoadOrderGroup.Name="System Bus Extender" - SystemDriver.Name="pciide" LoadOrderGroup.Name="System Bus Extender" - SystemDriver.Name="pcmcia" LoadOrderGroup.Name="System Reserved" - SystemDriver.Name="pcw" LoadOrderGroup.Name="Boot Bus Extender" - SystemDriver.Name="pdc" LoadOrderGroup.Name="FSFilter Activity Monitor" - SystemDriver.Name="PDFSFilter" LoadOrderGroup.Name="SCSI Miniport" - SystemDriver.Name="percsas2i" LoadOrderGroup.Name="SCSI Miniport" - SystemDriver.Name="percsas3i" LoadOrderGroup.Name="PnP Filter" - SystemDriver.Name="portcfg" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="Processor" LoadOrderGroup.Name="NDIS" - SystemDriver.Name="Psched" LoadOrderGroup.Name="Streams Drivers" - SystemDriver.Name="RasAcd" LoadOrderGroup.Name="Network" - SystemDriver.Name="rdbss" LoadOrderGroup.Name="PnP Filter" - SystemDriver.Name="rdyboost" LoadOrderGroup.Name="Boot File System" - SystemDriver.Name="ReFS" LoadOrderGroup.Name="Boot File System" - SystemDriver.Name="ReFSv1" LoadOrderGroup.Name="PNP_TDI" - SystemDriver.Name="RFCOMM" LoadOrderGroup.Name="NDIS" - SystemDriver.Name="RFWARP" LoadOrderGroup.Name="NDIS" - SystemDriver.Name="RFWNDIS" LoadOrderGroup.Name="Boot Bus Extender" - SystemDriver.Name="RfwSelfMon" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="rhproxy" LoadOrderGroup.Name="FSFilter Activity Monitor" - SystemDriver.Name="RkFlt" LoadOrderGroup.Name="NDIS" - SystemDriver.Name="rspndr" LoadOrderGroup.Name="FSFilter Content Screener" - SystemDriver.Name="rsSP" LoadOrderGroup.Name="Video" - SystemDriver.Name="s3cap" LoadOrderGroup.Name="PnP Filter" - SystemDriver.Name="scfilter" LoadOrderGroup.Name="System Bus Extender" - SystemDriver.Name="sdbus" LoadOrderGroup.Name="PNP Filter" - SystemDriver.Name="Serenum" LoadOrderGroup.Name="Extended base" - SystemDriver.Name="Serial" LoadOrderGroup.Name="Pointer Port" - SystemDriver.Name="sermouse" LoadOrderGroup.Name="SCSI Miniport" - SystemDriver.Name="SiSRaid2" LoadOrderGroup.Name="SCSI Miniport" - SystemDriver.Name="SiSRaid4" LoadOrderGroup.Name="SCSI Miniport" - SystemDriver.Name="SmartSAMD" LoadOrderGroup.Name="Hyper-V Parsers" - SystemDriver.Name="spaceparser" LoadOrderGroup.Name="System Bus Extender" - SystemDriver.Name="spaceport" LoadOrderGroup.Name="PnP Filter" - SystemDriver.Name="SpatialGraphFilter" LoadOrderGroup.Name="Network" - SystemDriver.Name="srv2" LoadOrderGroup.Name="Network" - SystemDriver.Name="srvnet" LoadOrderGroup.Name="SCSI Miniport" - SystemDriver.Name="stexstor" LoadOrderGroup.Name="SCSI Miniport" - SystemDriver.Name="storahci" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="storflt" LoadOrderGroup.Name="SCSI Miniport" - SystemDriver.Name="stornvme" LoadOrderGroup.Name="FSFilter Quota Management" - SystemDriver.Name="storqosflt" LoadOrderGroup.Name="Base" - SystemDriver.Name="storvsc" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="swenum" LoadOrderGroup.Name="Video Init" - SystemDriver.Name="Synth3dVsc" LoadOrderGroup.Name="NDIS" - SystemDriver.Name="tap0901" LoadOrderGroup.Name="PNP_TDI" - SystemDriver.Name="Tcpip" LoadOrderGroup.Name="PNP_TDI" - SystemDriver.Name="tdx" LoadOrderGroup.Name="Core Security Extensions" - SystemDriver.Name="Telemetry" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="terminpt" LoadOrderGroup.Name="Boot Bus Extender" - SystemDriver.Name="TPM" LoadOrderGroup.Name="Boot Bus Extender" - SystemDriver.Name="Trufos" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="TsUsbGD" LoadOrderGroup.Name="NDIS" - SystemDriver.Name="tunnel" LoadOrderGroup.Name="System Bus Extender" - SystemDriver.Name="UcmCx0101" LoadOrderGroup.Name="System Bus Extender" - SystemDriver.Name="UcmTcpciCx0101" LoadOrderGroup.Name="System Bus Extender" - SystemDriver.Name="UcmUcsiCx0101" LoadOrderGroup.Name="Boot Bus Extender" - SystemDriver.Name="Ucx01000" LoadOrderGroup.Name="Boot File System" - SystemDriver.Name="udfs" LoadOrderGroup.Name="System Bus Extender" - SystemDriver.Name="Ufx01000" LoadOrderGroup.Name="Base" - SystemDriver.Name="UfxChipidea" LoadOrderGroup.Name="Base" - SystemDriver.Name="ufxsynopsys" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="umbus" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="UmPass" LoadOrderGroup.Name="Base" - SystemDriver.Name="UrsChipidea" LoadOrderGroup.Name="System Bus Extender" - SystemDriver.Name="UrsCx01000" LoadOrderGroup.Name="Base" - SystemDriver.Name="UrsSynopsys" LoadOrderGroup.Name="Base" - SystemDriver.Name="usbccgp" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="usbcir" LoadOrderGroup.Name="Base" - SystemDriver.Name="usbehci" LoadOrderGroup.Name="Base" - SystemDriver.Name="usbhub" LoadOrderGroup.Name="Base" - SystemDriver.Name="USBHUB3" LoadOrderGroup.Name="Base" - SystemDriver.Name="usbohci" LoadOrderGroup.Name="extended base" - SystemDriver.Name="usbprint" LoadOrderGroup.Name="Base" - SystemDriver.Name="usbuhci" LoadOrderGroup.Name="Boot Bus Extender" - SystemDriver.Name="vdrvroot" LoadOrderGroup.Name="WdfLoadGroup" - SystemDriver.Name="VerifierExt" LoadOrderGroup.Name="SCSI miniport" - SystemDriver.Name="vhdmp" LoadOrderGroup.Name="Base" - SystemDriver.Name="vhf" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="Vid" LoadOrderGroup.Name="System Bus Extender" - SystemDriver.Name="vmbus" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="VMBusHID" LoadOrderGroup.Name="System Bus Extender" - SystemDriver.Name="volmgr" LoadOrderGroup.Name="System Bus Extender" - SystemDriver.Name="volmgrx" LoadOrderGroup.Name="System Bus Extender" - SystemDriver.Name="vpci" LoadOrderGroup.Name="SCSI Miniport" - SystemDriver.Name="vsmraid" LoadOrderGroup.Name="SCSI Miniport" - SystemDriver.Name="VSTXRAID" LoadOrderGroup.Name="NDIS" - SystemDriver.Name="vwififlt" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="WacomPen" LoadOrderGroup.Name="NDIS" - SystemDriver.Name="wanarp" LoadOrderGroup.Name="NDIS" - SystemDriver.Name="wanarpv6" LoadOrderGroup.Name="FSFilter Virtualization" - SystemDriver.Name="wcifs" LoadOrderGroup.Name="FSFilter Top" - SystemDriver.Name="wcnfs" LoadOrderGroup.Name="Early-Launch" - SystemDriver.Name="WdBoot" LoadOrderGroup.Name="WdfLoadGroup" - SystemDriver.Name="Wdf01000" LoadOrderGroup.Name="FSFilter Anti-Virus" - SystemDriver.Name="WdFilter" LoadOrderGroup.Name="base" - SystemDriver.Name="WdmCompanionFilter" LoadOrderGroup.Name="PNP_TDI" - SystemDriver.Name="WFPLWFS" LoadOrderGroup.Name="FSFilter Infrastructure" - SystemDriver.Name="WIMMount" LoadOrderGroup.Name="Core Security Extensions" - SystemDriver.Name="WindowsTrustedRT" LoadOrderGroup.Name="Core Security Extensions" - SystemDriver.Name="WindowsTrustedRTProxy" LoadOrderGroup.Name="PNP Filter" - SystemDriver.Name="WinMad" LoadOrderGroup.Name="PNP Filter" - SystemDriver.Name="WinVerbs" LoadOrderGroup.Name="Extended Base" - SystemDriver.Name="WmiAcpi" LoadOrderGroup.Name="FSFilter Compression" - SystemDriver.Name="Wof" LoadOrderGroup.Name="PnP Filter" - SystemDriver.Name="WpdUpFltr" LoadOrderGroup.Name="PNP_TDI" - SystemDriver.Name="ws2ifsl" LoadOrderGroup.Name="base" - SystemDriver.Name="WudfPf" LoadOrderGroup.Name="base" - SystemDriver.Name="WUDFRd" LoadOrderGroup.Name="NDIS" - SystemDriver.Name="xboxgip" LoadOrderGroup.Name="Base" - SystemDriver.Name="xinputhid" LoadOrderGroup.Name="FSFilter Anti-Virus" - SystemDriver.Name="epp" LoadOrderGroup.Name="Avira" - SystemDriver.Name="avkmgr" LoadOrderGroup.Name="Avira" - SystemDriver.Name="avipbb" LoadOrderGroup.Name="FSFilter Anti-Virus" - SystemDriver.Name="avgntflt" LoadOrderGroup.Name="FSFilter Activity Monitor" - SystemDriver.Name="TFsFlt" LoadOrderGroup.Name="FSFilter Anti-Virus" - SystemDriver.Name="QQSysMonX64_ev" LoadOrderGroup.Name="FSFilter Anti-Virus" - SystemDriver.Name="Atc" ---------- | Services | 0 : Starting up | 1 : System | 2 : Automatic | 3 : Manual | 4 : Disabled | R : Running service | S : Stopped service R0 - [Kernel Driver] - 3ware () -> System32\drivers\3ware.sys - AcceptPause: False - AcceptStop: True R0 - [File System Driver] - 432231ED (432231ED) -> system32\drivers\7EB072BC.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - ACPI (@acpi.inf,%ACPI.SvcDesc%;Microsoft ACPI Driver) -> System32\drivers\ACPI.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - acpiex (Microsoft ACPIEx Driver) -> System32\Drivers\acpiex.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - ADP80XX () -> System32\drivers\ADP80XX.SYS - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - ambakdrv (ambakdrv) -> system32\ambakdrv.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - amdsata () -> System32\drivers\amdsata.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - amdsbs () -> System32\drivers\amdsbs.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - amdxata () -> System32\drivers\amdxata.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - amd_sata () -> System32\drivers\amd_sata.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - amd_xata () -> System32\drivers\amd_xata.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - arcsas (@arcsas.inf,%arcsas_ServiceName%;Adaptec SAS/SATA-II RAID Storport's Miniport Driver) -> System32\drivers\arcsas.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - aswArDisk (aswArDisk) -> system32\drivers\aswArDisk.sys - AcceptPause: False - AcceptStop: True S0 - [File System Driver] - aswbidsh (aswbidsh) -> system32\drivers\aswbidsh.sys - AcceptPause: False - AcceptStop: False S0 - [File System Driver] - aswbuniv (aswbuniv) -> system32\drivers\aswbuniv.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - aswElam (aswElam) -> system32\drivers\aswElam.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - aswRvrt (aswRvrt) -> system32\drivers\aswRvrt.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - aswVmm (aswVmm) -> system32\drivers\aswVmm.sys - AcceptPause: False - AcceptStop: False R0 - [Kernel Driver] - atapi (@mshdc.inf,%idechannel.DeviceDesc%;IDE Channel) -> System32\drivers\atapi.sys - AcceptPause: False - AcceptStop: True S0 - [Kernel Driver] - avgElam (avgElam) -> system32\drivers\avgElam.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - avgRvrt (avgRvrt) -> system32\drivers\avgRvrt.sys - AcceptPause: False - AcceptStop: False R0 - [Kernel Driver] - b06bdrv (@netbvbda.inf,%vbd_srv_desc%;QLogic Network Adapter VBD) -> System32\drivers\bxvbda.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - bttflt (@virtdisk.inf,%service_desc%;Microsoft Hyper-V VHDPMEM BTT Filter) -> System32\drivers\bttflt.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - cht4iscsi () -> System32\drivers\cht4sx64.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - CLFS (@%SystemRoot%\system32\drivers\clfs.sys,-100) -> System32\drivers\CLFS.sys - AcceptPause: False - AcceptStop: True S0 - [Kernel Driver] - cmdboot (COMODO Early Launch Driver) -> System32\DRIVERS\cmdboot.sys - AcceptPause: False - AcceptStop: False R0 - [Kernel Driver] - CNG () -> System32\Drivers\cng.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - disk (@disk.inf,%disk_ServiceDesc%;Disk Driver) -> System32\drivers\disk.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - ebdrv (@netevbda.inf,%vbd_srv_desc%;QLogic 10 Gigabit Ethernet Adapter VBD) -> System32\drivers\evbda.sys - AcceptPause: False - AcceptStop: True S0 - [Kernel Driver] - EhStorClass (@%SystemRoot%\system32\drivers\EhStorClass.sys,-100) -> System32\drivers\EhStorClass.sys - AcceptPause: False - AcceptStop: False R0 - [Kernel Driver] - EhStorTcgDrv (@ehstortcgdrv.inf,%EhStorTcgDrv.Desc%;Microsoft driver for storage devices supporting IEEE 1667 and TCG protocols) -> System32\drivers\EhStorTcgDrv.sys - AcceptPause: False - AcceptStop: True S0 - [Kernel Driver] - eppdisk (eppdisk) -> system32\drivers\eppdisk.sys - AcceptPause: False - AcceptStop: False R0 - [File System Driver] - FileInfo (@%SystemRoot%\system32\drivers\fileinfo.sys,-100) -> System32\drivers\fileinfo.sys - AcceptPause: False - AcceptStop: True R0 - [File System Driver] - FltMgr (@%SystemRoot%\system32\drivers\fltmgr.sys,-10001) -> system32\drivers\fltmgr.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - fvevol (@%SystemRoot%\system32\drivers\fvevol.sys,-100) -> System32\DRIVERS\fvevol.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - HpSAMD () -> System32\drivers\HpSAMD.sys - AcceptPause: False - AcceptStop: True S0 - [Kernel Driver] - hwpolicy (@%systemroot%\system32\drivers\hwpolicy.sys,-101) -> System32\drivers\hwpolicy.sys - AcceptPause: False - AcceptStop: False R0 - [Kernel Driver] - iaStorAVC (@iastorav.inf,%iaStorAVC.DeviceDesc%;Intel Chipset SATA RAID Controller) -> System32\drivers\iaStorAVC.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - iaStorV (@iastorv.inf,%*PNP0600.DeviceDesc%;Intel RAID Controller Windows 7) -> System32\drivers\iaStorV.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - intelide () -> System32\drivers\intelide.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - intelpep (@intelpep.inf,%INTELPEP.SVCDESC%;Intel(R) Power Engine Plug-in Driver) -> System32\drivers\intelpep.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - iorate (@%SystemRoot%\system32\drivers\iorate.sys,-101) -> system32\drivers\iorate.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - isapnp () -> System32\drivers\isapnp.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - ItSas35i () -> System32\drivers\ItSas35i.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - KSecDD () -> System32\Drivers\ksecdd.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - KSecPkg () -> System32\Drivers\ksecpkg.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - LSI_SAS2i () -> System32\drivers\lsi_sas2i.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - LSI_SAS3i () -> System32\drivers\lsi_sas3i.sys - AcceptPause: False - AcceptStop: True S0 - [Kernel Driver] - MbamElam (MbamElam) -> system32\DRIVERS\MbamElam.sys - AcceptPause: False - AcceptStop: False R0 - [Kernel Driver] - megasas2i () -> System32\drivers\MegaSas2i.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - megasas35i () -> System32\drivers\megasas35i.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - megasr () -> System32\drivers\megasr.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - mountmgr (@%SystemRoot%\system32\drivers\mountmgr.sys,-100) -> System32\drivers\mountmgr.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - msisadrv () -> System32\drivers\msisadrv.sys - AcceptPause: False - AcceptStop: True R0 - [File System Driver] - Mup (@%systemroot%\system32\drivers\mup.sys,-101) -> System32\Drivers\mup.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - mvumis () -> System32\drivers\mvumis.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - NDIS (@%SystemRoot%\system32\drivers\ndis.sys,-200) -> system32\drivers\ndis.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - nvdimm (@nvdimm.inf,%nvdimm.SvcDesc%;Microsoft NVDIMM device driver) -> System32\drivers\nvdimm.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - nvraid () -> System32\drivers\nvraid.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - nvstor () -> System32\drivers\nvstor.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - partmgr (@%SystemRoot%\system32\drivers\partmgr.sys,-100) -> System32\drivers\partmgr.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - pci (@pci.inf,%pci_svcdesc%;PCI Bus Driver) -> System32\drivers\pci.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - pciide () -> System32\drivers\pciide.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - pcmcia () -> System32\drivers\pcmcia.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - pcw (Performance Counters for Windows Driver) -> System32\drivers\pcw.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - pdc (@%SystemRoot%\system32\drivers\pdc.sys,-100) -> system32\drivers\pdc.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - percsas2i () -> System32\drivers\percsas2i.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - percsas3i () -> System32\drivers\percsas3i.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - pmem (@pmem.inf,%pmem.SvcDesc%;Microsoft persistent memory disk driver) -> System32\drivers\pmem.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - Ramdisk (Windows RAM Disk Driver) -> system32\DRIVERS\ramdisk.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - rdyboost (ReadyBoost) -> System32\drivers\rdyboost.sys - AcceptPause: False - AcceptStop: True R0 - [File System Driver] - RfwSelfMon (RfwSelfMon) -> system32\DRIVERS\rfwmon.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - sbp2port (@sbp2.inf,%sbp2_ServiceDesc%;SBP-2 Transport/Protocol Bus Driver) -> System32\drivers\sbp2port.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - scmbus (@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver) -> System32\drivers\scmbus.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - SgrmAgent (@%SystemRoot%\System32\Drivers\SgrmAgent.sys,-1001) -> system32\drivers\SgrmAgent.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - SiSRaid2 () -> System32\drivers\SiSRaid2.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - SiSRaid4 () -> System32\drivers\sisraid4.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - SmartSAMD () -> System32\drivers\SmartSAMD.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - spaceport (@spaceport.inf,%Spaceport_ServiceDesc%;Storage Spaces Driver) -> System32\drivers\spaceport.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - stexstor () -> System32\drivers\stexstor.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - storahci (@mshdc.inf,%storahci_ServiceDescription%;Microsoft Standard SATA AHCI Driver) -> System32\drivers\storahci.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - storflt (@wstorflt.inf,%service_desc%;Microsoft Hyper-V Storage Accelerator) -> System32\drivers\vmstorfl.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - stornvme (@stornvme.inf,%StorNVMe_ServiceDesc%;Microsoft Standard NVM Express Driver) -> System32\drivers\stornvme.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - storufs (@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver) -> System32\drivers\storufs.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - storvsc () -> System32\drivers\storvsc.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - Tcpip (@%SystemRoot%\system32\drivers\tcpip.sys,-10001) -> System32\drivers\tcpip.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - Telemetry (@intelta.inf,%Telemetry.SVCDESC%;Intel(R) Telemetry Service) -> System32\drivers\IntelTA.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - vdrvroot (@vdrvroot.inf,%vdrvroot_svcdesc%;Microsoft Virtual Drive Enumerator) -> System32\drivers\vdrvroot.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - vmbus (@wvmbus.inf,%vmbus.SVCDESC%;Virtual Machine Bus) -> System32\drivers\vmbus.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - volmgr (@volmgr.inf,%volmgr_svcdesc%;Volume Manager Driver) -> System32\drivers\volmgr.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - volmgrx (@%SystemRoot%\system32\drivers\volmgrx.sys,-100) -> System32\drivers\volmgrx.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - volsnap (@%SystemRoot%\system32\drivers\volsnap.sys,-100) -> System32\drivers\volsnap.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - volume (@volume.inf,%VolumeServiceDesc%;Volume driver) -> System32\drivers\volume.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - vpci (@wvpci.inf,%vpci.SVCDESC%;Microsoft Hyper-V Virtual PCI Bus) -> System32\drivers\vpci.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - vsmraid () -> System32\drivers\vsmraid.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - VSTXRAID (@vstxraid.inf,%Driver.DeviceDesc%;VIA StorX Storage RAID Controller Windows Driver) -> System32\drivers\vstxraid.sys - AcceptPause: False - AcceptStop: True S0 - [Kernel Driver] - WdBoot (@%ProgramFiles%\Windows Defender\MpAsDesc.dll,-390) -> system32\drivers\wd\WdBoot.sys - AcceptPause: False - AcceptStop: False R0 - [Kernel Driver] - Wdf01000 (@%SystemRoot%\system32\drivers\Wdf01000.sys,-1000) -> system32\drivers\Wdf01000.sys - AcceptPause: False - AcceptStop: True S0 - [File System Driver] - WdFilter (@%ProgramFiles%\Windows Defender\MpAsDesc.dll,-330) -> system32\drivers\wd\WdFilter.sys - AcceptPause: False - AcceptStop: False R0 - [Kernel Driver] - WFPLWFS (@%SystemRoot%\System32\drivers\wfplwfs.sys,-6000) -> System32\drivers\wfplwfs.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - WindowsTrustedRT (Windows Trusted Execution Environment Class Extension) -> system32\drivers\WindowsTrustedRT.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - WindowsTrustedRTProxy (@WindowsTrustedRTProxy.inf,%WindowsTrustedRTProxy.SVCDESC%;Microsoft Windows Trusted Runtime Secure Service) -> System32\drivers\WindowsTrustedRTProxy.sys - AcceptPause: False - AcceptStop: True R0 - [File System Driver] - Wof (Windows Overlay File System Filter Driver) -> (?) - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - AFD (@%systemroot%\system32\drivers\afd.sys,-1000) -> \SystemRoot\system32\drivers\afd.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - afunix (afunix) -> \SystemRoot\system32\drivers\afunix.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - ahcache (@%systemroot%\system32\drivers\ahcache.sys,-102) -> system32\DRIVERS\ahcache.sys - AcceptPause: False - AcceptStop: True S1 - [File System Driver] - asd2fsm (asd2fsm) -> system32\DRIVERS\asd2fsm.sys - AcceptPause: False - AcceptStop: False S1 - [Kernel Driver] - aswArPot (aswArPot) -> system32\drivers\aswArPot.sys - AcceptPause: False - AcceptStop: False S1 - [File System Driver] - aswbidsdriver (aswbidsdriver) -> system32\drivers\aswbidsdriver.sys - AcceptPause: False - AcceptStop: False S1 - [Kernel Driver] - aswHdsKe (aswHdsKe) -> system32\drivers\aswHdsKe.sys - AcceptPause: False - AcceptStop: False R1 - [Kernel Driver] - aswKbd (aswKbd) -> system32\drivers\aswKbd.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - aswRdr (aswRdr) -> system32\drivers\aswRdr2.sys - AcceptPause: False - AcceptStop: True S1 - [File System Driver] - aswSnx (aswSnx) -> system32\drivers\aswSnx.sys - AcceptPause: False - AcceptStop: False S1 - [File System Driver] - aswSP (aswSP) -> system32\drivers\aswSP.sys - AcceptPause: False - AcceptStop: False S1 - [File System Driver] - AVGSP (avgSP) -> system32\drivers\avgSP.sys - AcceptPause: False - AcceptStop: False S1 - [Kernel Driver] - bam (@%SystemRoot%\system32\drivers\bam.sys,-100) -> system32\drivers\bam.sys - AcceptPause: False - AcceptStop: False S1 - [Kernel Driver] - BAPIDRV (BAPIDRV) -> system32\DRIVERS\BAPIDRV64.sys - AcceptPause: False - AcceptStop: False R1 - [Kernel Driver] - BasicDisplay () -> \SystemRoot\System32\DriverStore\FileRepository\basicdisplay.inf_amd64_f1dd73cd7be9ab55\BasicDisplay.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - BasicRender () -> \SystemRoot\System32\DriverStore\FileRepository\basicrender.inf_amd64_2b07ff5da392ad44\BasicRender.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - Beep (Beep) -> (?) - AcceptPause: False - AcceptStop: True S1 - [Kernel Driver] - cbfsconnect2017 (cbfsconnect2017) -> \??\C:\WINDOWS\system32\drivers\cbfsconnect2017.sys - AcceptPause: False - AcceptStop: False R1 - [Kernel Driver] - cdrom (@cdrom.inf,%cdrom_ServiceDesc%;CD-ROM Driver) -> \SystemRoot\System32\drivers\cdrom.sys - AcceptPause: False - AcceptStop: True R1 - [File System Driver] - CimFS () -> (?) - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - cmdcss (COMODO Secure Shopping) -> \SystemRoot\system32\drivers\cmdcss.sys - AcceptPause: False - AcceptStop: True R1 - [File System Driver] - cmderd (COMODO Internet Security Eradication Driver) -> System32\DRIVERS\cmderd.sys - AcceptPause: False - AcceptStop: True S1 - [File System Driver] - cmdGuard (COMODO Internet Security Sandbox Driver) -> system32\DRIVERS\cmdguard.sys - AcceptPause: False - AcceptStop: False R1 - [Kernel Driver] - cmdhlp (COMODO Internet Security Helper Driver) -> \SystemRoot\system32\DRIVERS\cmdhlp.sys - AcceptPause: False - AcceptStop: True S1 - [Kernel Driver] - dam (@%SystemRoot%\system32\drivers\dam.sys,-100) -> system32\drivers\dam.sys - AcceptPause: False - AcceptStop: False R1 - [File System Driver] - Dfsc (@%systemroot%\system32\wkssvc.dll,-1008) -> System32\Drivers\dfsc.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - DXGKrnl (LDDM Graphics Subsystem) -> \SystemRoot\System32\drivers\dxgkrnl.sys - AcceptPause: False - AcceptStop: True S1 - [Kernel Driver] - ElRawDisk (ElRawDisk) -> \??\C:\WINDOWS\system32\drivers\rsdrvx64.sys - AcceptPause: False - AcceptStop: False S1 - [File System Driver] - FileCrypt (@%systemroot%\system32\drivers\filecrypt.sys,-100) -> system32\drivers\filecrypt.sys - AcceptPause: False - AcceptStop: False S1 - [Kernel Driver] - GpuEnergyDrv (@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100) -> System32\drivers\gpuenergydrv.sys - AcceptPause: False - AcceptStop: False R1 - [Kernel Driver] - inspect (@oem56.inf,%inspect_Desc%;COMODO Internet Security Firewall Driver) -> \SystemRoot\system32\DRIVERS\inspect.sys - AcceptPause: False - AcceptStop: True S1 - [Kernel Driver] - isedrv (Internet Security Essentials) -> \SystemRoot\system32\drivers\isedrv.sys - AcceptPause: False - AcceptStop: False R1 - [File System Driver] - Msfs () -> (?) - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - mssmbios (@mssmbios.inf,%mssmbios_svcdesc%;Microsoft System Management BIOS Driver) -> \SystemRoot\System32\drivers\mssmbios.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - NdisCap (@%SystemRoot%\System32\drivers\ndiscap.sys,-5000) -> System32\drivers\ndiscap.sys - AcceptPause: False - AcceptStop: True R1 - [File System Driver] - NetBIOS (@%windir%\system32\drivers\netbios.sys,-503) -> system32\drivers\netbios.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - NetBT (@%SystemRoot%\system32\drivers\netbt.sys,-2) -> System32\DRIVERS\netbt.sys - AcceptPause: False - AcceptStop: True S1 - [Kernel Driver] - NetworkX (NetworkX) -> \SystemRoot\system32\ckldrv.sys - AcceptPause: False - AcceptStop: False R1 - [File System Driver] - Npfs () -> (?) - AcceptPause: False - AcceptStop: True S1 - [Kernel Driver] - npsvctrig (@npsvctrig.inf,%NPSVCTRIG.SvcDisplayName%;Named pipe service trigger provider) -> \SystemRoot\System32\drivers\npsvctrig.sys - AcceptPause: False - AcceptStop: False R1 - [Kernel Driver] - nsiproxy (@%SystemRoot%\system32\drivers\nsiproxy.sys,-2) -> system32\drivers\nsiproxy.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - Null () -> (?) - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - Psched (@%windir%\System32\drivers\pacer.sys,-101) -> System32\drivers\pacer.sys - AcceptPause: False - AcceptStop: True R1 - [File System Driver] - rdbss (@%systemroot%\system32\wkssvc.dll,-1000) -> system32\DRIVERS\rdbss.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - RFWARP (@oem22.inf,%RFWARP_Desc%;Rising RfwARP Driver) -> \SystemRoot\system32\DRIVERS\rfwarp.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - RFWNDIS (@oem26.inf,%RfwNdis_Desc%;Rising RfwNdis Driver) -> \SystemRoot\system32\DRIVERS\rfwndis.sys - AcceptPause: False - AcceptStop: True S1 - [File System Driver] - rsSP (rsSP) -> system32\DRIVERS\rsSP.sys - AcceptPause: False - AcceptStop: False R1 - [Kernel Driver] - tdx (@%SystemRoot%\system32\tcpipcfg.dll,-50004) -> \SystemRoot\system32\DRIVERS\tdx.sys - AcceptPause: False - AcceptStop: True S1 - [Kernel Driver] - Vid () -> \SystemRoot\System32\drivers\Vid.sys - AcceptPause: False - AcceptStop: False R1 - [Kernel Driver] - vwififlt (@%SystemRoot%\System32\drivers\vwififlt.sys,-259) -> System32\drivers\vwififlt.sys - AcceptPause: False - AcceptStop: True S1 - [Kernel Driver] - ZAM (ZAM Helper Driver) -> \??\C:\WINDOWS\System32\drivers\zam64.sys - AcceptPause: False - AcceptStop: False S1 - [Kernel Driver] - ZAM_Guard (ZAM Guard Driver) -> \??\C:\WINDOWS\System32\drivers\zamguard64.sys - AcceptPause: False - AcceptStop: False S1 - [Kernel Driver] - avkmgr (avkmgr) -> \SystemRoot\system32\DRIVERS\avkmgr.sys - AcceptPause: False - AcceptStop: False S1 - [Kernel Driver] - avipbb (avipbb) -> \SystemRoot\system32\DRIVERS\avipbb.sys - AcceptPause: False - AcceptStop: False S2 - [Kernel Driver] - ammntdrv (ammntdrv) -> \??\C:\WINDOWS\system32\ammntdrv.sys - AcceptPause: False - AcceptStop: False S2 - [Kernel Driver] - amwrtdrv (amwrtdrv) -> \??\C:\WINDOWS\system32\amwrtdrv.sys - AcceptPause: False - AcceptStop: False S2 - [File System Driver] - aswMonFlt (aswMonFlt) -> system32\drivers\aswMonFlt.sys - AcceptPause: False - AcceptStop: False S2 - [Kernel Driver] - aswStm (aswStm) -> system32\drivers\aswStm.sys - AcceptPause: False - AcceptStop: False S2 - [File System Driver] - avgMonFlt (avgMonFlt) -> system32\drivers\avgMonFlt.sys - AcceptPause: False - AcceptStop: False S2 - [Kernel Driver] - AWEAlloc (AWE Memory Allocation Driver) -> \SystemRoot\system32\DRIVERS\awealloc.sys - AcceptPause: False - AcceptStop: False S2 - [File System Driver] - bindflt (@%systemroot%\system32\drivers\bindflt.sys,-100) -> \SystemRoot\system32\drivers\bindflt.sys - AcceptPause: False - AcceptStop: False S2 - [File System Driver] - CldFlt (Windows Cloud Files Filter Driver) -> system32\drivers\cldflt.sys - AcceptPause: False - AcceptStop: False S2 - [Kernel Driver] - CLFCL5.18 (CyberLink FCL Service 5.18) -> \SystemRoot\system32\DRIVERS\CLFCL5.18\000.fcl - AcceptPause: False - AcceptStop: False S2 - [File System Driver] - DefragFS (DefragFS) -> (?) - AcceptPause: False - AcceptStop: False S2 - [Kernel Driver] - IDMWFP (IDMWFP) -> \SystemRoot\system32\DRIVERS\idmwfp.sys - AcceptPause: False - AcceptStop: False S2 - [Kernel Driver] - ImDisk (ImDisk Virtual Disk Driver) -> \SystemRoot\system32\DRIVERS\imdisk.sys - AcceptPause: False - AcceptStop: False S2 - [Kernel Driver] - lltdio (@%SystemRoot%\system32\lltdres.dll,-6) -> system32\drivers\lltdio.sys - AcceptPause: False - AcceptStop: False S2 - [File System Driver] - luafv (@%systemroot%\system32\drivers\luafv.sys,-100) -> \SystemRoot\system32\drivers\luafv.sys - AcceptPause: False - AcceptStop: False S2 - [Kernel Driver] - MMCSS (@%systemroot%\system32\drivers\mmcss.sys,-100) -> \SystemRoot\system32\drivers\mmcss.sys - AcceptPause: False - AcceptStop: False R2 - [File System Driver] - mrxsmb10 (@%systemroot%\system32\wkssvc.dll,-1004) -> system32\DRIVERS\mrxsmb10.sys - AcceptPause: False - AcceptStop: True S2 - [Kernel Driver] - MsLldp (@%SystemRoot%\system32\drivers\mslldp.sys,-200) -> system32\drivers\mslldp.sys - AcceptPause: False - AcceptStop: False S2 - [Kernel Driver] - Ndu (@%SystemRoot%\system32\drivers\Ndu.sys,-10001) -> system32\drivers\Ndu.sys - AcceptPause: False - AcceptStop: False S2 - [File System Driver] - PDFSFilter (PDFsFilter) -> system32\DRIVERS\PDFsFilter.sys - AcceptPause: False - AcceptStop: False S2 - [Kernel Driver] - PEAUTH (PEAUTH) -> system32\drivers\peauth.sys - AcceptPause: False - AcceptStop: False S2 - [Kernel Driver] - rspndr (@%SystemRoot%\system32\lltdres.dll,-5) -> system32\drivers\rspndr.sys - AcceptPause: False - AcceptStop: False S2 - [File System Driver] - storqosflt (@%SystemRoot%\System32\drivers\storqosflt.sys,-101) -> system32\drivers\storqosflt.sys - AcceptPause: False - AcceptStop: False S2 - [Kernel Driver] - tcpipreg (TCP/IP Registry Compatibility) -> System32\drivers\tcpipreg.sys - AcceptPause: False - AcceptStop: False S2 - [Kernel Driver] - wanarp (@%systemroot%\system32\mprmsg.dll,-32011) -> System32\DRIVERS\wanarp.sys - AcceptPause: False - AcceptStop: False S2 - [File System Driver] - wcifs (@%systemroot%\system32\drivers\wcifs.sys,-100) -> \SystemRoot\system32\drivers\wcifs.sys - AcceptPause: False - AcceptStop: False S2 - [File System Driver] - avgntflt (avgntflt) -> system32\DRIVERS\avgntflt.sys - AcceptPause: False - AcceptStop: False S2 - [File System Driver] - QQSysMonX64_ev (QQSysMonX64_ev) -> \??\e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\QQSysMonX64_ev.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - 1394ohci (@1394.inf,%PCI\CC_0C0010.DeviceDesc%;1394 OHCI Compliant Host Controller) -> \SystemRoot\System32\drivers\1394ohci.sys - AcceptPause: False - AcceptStop: False S3 - [File System Driver] - 360AvFlt (360AvFlt mini-filter driver) -> system32\DRIVERS\360AvFlt.sys - AcceptPause: False - AcceptStop: False S3 - [File System Driver] - 5215D73F (5215D73F) -> \??\C:\WINDOWS\system32\drivers\5215D73F.sys - AcceptPause: False - AcceptStop: False S3 - [File System Driver] - 755614B4 (755614B4) -> \??\C:\WINDOWS\system32\drivers\6C3F275E.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - AcpiDev (@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver) -> \SystemRoot\System32\drivers\AcpiDev.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - acpipagr (@acpipagr.inf,%SvcDesc%;ACPI Processor Aggregator Driver) -> \SystemRoot\System32\drivers\acpipagr.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - AcpiPmi (@acpipmi.inf,%AcpiPmi.SvcDesc%;ACPI Power Meter Driver) -> \SystemRoot\System32\drivers\acpipmi.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - acpitime (@acpitime.inf,%AcpiTime.SvcDesc%;ACPI Wake Alarm Driver) -> \SystemRoot\System32\drivers\acpitime.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - Acx01000 (@%SystemRoot%\system32\drivers\Acx01000.sys,-1000) -> system32\drivers\Acx01000.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - amdgpio2 (@amdgpio2.inf,%GPIO.SvcDesc%;AMD GPIO Client Driver) -> \SystemRoot\System32\drivers\amdgpio2.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - amdi2c (@amdi2c.inf,%amdi2c.SVCDESC%;AMD I2C Controller Service) -> \SystemRoot\System32\drivers\amdi2c.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - AmdK8 (@cpu.inf,%AmdK8.SvcDesc%;AMD K8 Processor Driver) -> \SystemRoot\System32\drivers\amdk8.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - amdkmdag () -> \SystemRoot\system32\DRIVERS\atikmdag.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - amdkmdap () -> \SystemRoot\system32\DRIVERS\atikmpag.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - AmdPPM (@cpu.inf,%AmdPPM.SvcDesc%;AMD Processor Driver) -> \SystemRoot\System32\drivers\amdppm.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - AppID (@%systemroot%\system32\srpapi.dll,-100) -> system32\drivers\appid.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - AppleKmdfFilter (@oem35.inf,%AppleKmdfFilterDisplayName%;Apple KMDF Filter Driver) -> \SystemRoot\System32\drivers\AppleKmdfFilter.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - AppleLowerFilter (@oem35.inf,%AppleLowerFilterDisplayName%;Apple Lower Filter Driver) -> \SystemRoot\System32\drivers\AppleLowerFilter.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - applockerfltr (@%systemroot%\system32\srpapi.dll,-102) -> system32\drivers\applockerfltr.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - AsyncMac (@%systemroot%\system32\mprmsg.dll,-32000) -> \SystemRoot\System32\drivers\asyncmac.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - avgArPot (avgArPot) -> system32\drivers\avgArPot.sys - AcceptPause: False - AcceptStop: False S3 - [File System Driver] - avgbidsdriver (avgbidsdriver) -> system32\drivers\avgbidsdriver.sys - AcceptPause: False - AcceptStop: False S3 - [File System Driver] - avgbidsh (avgbidsh) -> system32\drivers\avgbidsh.sys - AcceptPause: False - AcceptStop: False S3 - [File System Driver] - avgbuniv (avgbuniv) -> system32\drivers\avgbuniv.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - avgKbd (avgKbd) -> system32\drivers\avgKbd.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - avgNetSec (avgNetSec) -> system32\drivers\avgNetSec.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - avgRdr (avgRdr) -> system32\drivers\avgRdr2.sys - AcceptPause: False - AcceptStop: False S3 - [File System Driver] - avgSnx (avgSnx) -> system32\drivers\avgSnx.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - avgStm (avgStm) -> system32\drivers\avgStm.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - avgVmm (avgVmm) -> system32\drivers\avgVmm.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - bcmfn2 (@bcmfn2.inf,%bcmfn2.SVCDESC%;bcmfn2 Service) -> \SystemRoot\System32\drivers\bcmfn2.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - BioNTDrv (BioNTDrv) -> \??\C:\Program Files\Paragon Software\Partition Manager 17 CE\program\BioNTDrv.SYS - AcceptPause: False - AcceptStop: False R3 - [File System Driver] - bowser (@%systemroot%\system32\wkssvc.dll,-2001) -> system32\DRIVERS\bowser.sys - AcceptPause: False - AcceptStop: True S3 - [Kernel Driver] - BthA2dp (@microsoft_bluetooth_a2dp.inf,%BthA2dp.ServiceDescription%;Microsoft Bluetooth A2dp driver) -> \SystemRoot\System32\drivers\BthA2dp.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - BthEnum (@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service) -> \SystemRoot\System32\drivers\BthEnum.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - BthHFEnum (@microsoft_bluetooth_hfp.inf,%BTHHFENUM_DISPLAY_NAME%;Microsoft Bluetooth Hands-Free Profile driver) -> \SystemRoot\System32\drivers\bthhfenum.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - BthLEEnum (@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver) -> \SystemRoot\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - BthMini (@bth.inf,%BTHMINI.SvcDesc%;Bluetooth Radio Driver) -> \SystemRoot\System32\drivers\BTHMINI.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - BTHMODEM (@mdmbtmdm.inf,%BthModem.DisplayName%;Bluetooth Modem Communications Driver) -> \SystemRoot\System32\drivers\bthmodem.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - BTHPORT (@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver) -> \SystemRoot\System32\drivers\BTHport.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - BTHUSB (@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver) -> \SystemRoot\System32\drivers\BTHUSB.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - buttonconverter (@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices) -> \SystemRoot\System32\drivers\buttonconverter.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - CAD (@ChargeArbitration.inf,%CAD_DevDesc%;Charge Arbitration Driver) -> \SystemRoot\System32\drivers\CAD.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - cht4vbd (@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver) -> \SystemRoot\System32\drivers\cht4vx64.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - circlass (@circlass.inf,%circlass.SVCDESC%;Consumer IR Devices) -> \SystemRoot\System32\drivers\circlass.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - clvad () -> \SystemRoot\system32\drivers\clvad.sys - AcceptPause: False - AcceptStop: False R3 - [Kernel Driver] - CLVirtualBus01 (@oem17.inf,%CLVirtualBus01.SVCDESC%;CyberLink Virtual CDROM Bus Enumerator) -> \SystemRoot\System32\drivers\CLVirtualBus01.sys - AcceptPause: False - AcceptStop: True S3 - [Kernel Driver] - clwvd7 (CyberLink YouCam 7 Service) -> \SystemRoot\system32\DRIVERS\clwvd7.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - clwvd9 (CyberLink YouCam 9 Service) -> \SystemRoot\System32\drivers\clwvd9.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - clwvdPFC (CyberLink PerfectCam Service) -> \SystemRoot\System32\drivers\clwvdPFC.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - clwvdVM (Camera for VideoMeeting+/PresenterLink+ Service) -> \SystemRoot\System32\drivers\clwvdVM.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - CmBatt (@cmbatt.inf,%CmBatt.SvcDesc%;Microsoft ACPI Control Method Battery Driver) -> \SystemRoot\System32\drivers\CmBatt.sys - AcceptPause: False - AcceptStop: False R3 - [Kernel Driver] - CompositeBus (@compositebus.inf,%CompositeBus.SVCDESC%;Composite Bus Enumerator Driver) -> \SystemRoot\System32\DriverStore\FileRepository\compositebus.inf_amd64_047c0e1e0272c4ae\CompositeBus.sys - AcceptPause: False - AcceptStop: True R3 - [Kernel Driver] - condrv (Console Driver) -> System32\drivers\condrv.sys - AcceptPause: False - AcceptStop: True S3 - [Kernel Driver] - dmvsc () -> \SystemRoot\System32\drivers\dmvsc.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - drmkaud (@wdmaudio.inf,%drmkaud.SvcDesc%;Microsoft Trusted Audio Drivers) -> \SystemRoot\System32\drivers\drmkaud.sys - AcceptPause: False - AcceptStop: False S3 - [File System Driver] - EnigmaFileMonDriver (EnigmaFileMonDriver Mini-Filter Driver) -> system32\drivers\EnigmaFileMonDriver.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - epmntdrv (epmntdrv) -> \SystemRoot\system32\epmntdrv.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - ErrDev (@errdev.inf,%ERRDEV.SvcDesc%;Microsoft Hardware Error Device Driver) -> \SystemRoot\System32\drivers\errdev.sys - AcceptPause: False - AcceptStop: False R3 - [File System Driver] - exfat (exFAT File System Driver) -> (?) - AcceptPause: False - AcceptStop: True R3 - [File System Driver] - fastfat (FAT12/16/32 File System Driver) -> (?) - AcceptPause: False - AcceptStop: True S3 - [Kernel Driver] - fdc (@fdc.inf,%fdc_ServiceDesc%;Floppy Disk Controller Driver) -> \SystemRoot\System32\drivers\fdc.sys - AcceptPause: False - AcceptStop: False S3 - [File System Driver] - Filetrace (@%SystemRoot%\system32\drivers\filetrace.sys,-10001) -> system32\drivers\filetrace.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - flpydisk (@flpydisk.inf,%floppy_ServiceDesc%;Floppy Disk Driver) -> \SystemRoot\System32\drivers\flpydisk.sys - AcceptPause: False - AcceptStop: False S3 - [File System Driver] - FsDepends (@%SystemRoot%\system32\drivers\fsdepends.sys,-10001) -> System32\drivers\FsDepends.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - gencounter (@wgencounter.inf,%GenCounter.SVCDESC%;Microsoft Hyper-V Generation Counter) -> \SystemRoot\System32\drivers\vmgencounter.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - genericusbfn (@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class) -> \SystemRoot\System32\DriverStore\FileRepository\genericusbfn.inf_amd64_e62a6524cf8f6278\genericusbfn.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - GPIOClx0101 (Microsoft GPIO Class Extension Driver) -> System32\Drivers\msgpioclx.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - HdAudAddService (@hdaudio.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Microsoft 1.1 UAA Function Driver for High Definition Audio Service) -> \SystemRoot\System32\drivers\HdAudio.sys - AcceptPause: False - AcceptStop: False R3 - [Kernel Driver] - HDAudBus (@hdaudbus.inf,%HDAudBus.SVCDESC%;Microsoft UAA Bus Driver for High Definition Audio) -> \SystemRoot\System32\drivers\HDAudBus.sys - AcceptPause: False - AcceptStop: True S3 - [Kernel Driver] - HidBatt (@hidbatt.inf,%HidBatt.SvcDesc%;HID UPS Battery Driver) -> \SystemRoot\System32\drivers\HidBatt.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - HidBth (@hidbth.inf,%HIDBTH.SvcDesc%;Microsoft Bluetooth HID Miniport) -> \SystemRoot\System32\drivers\hidbth.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - hidi2c (@hidi2c.inf,%hidi2c.SVCDESC%;Microsoft I2C HID Miniport Driver) -> \SystemRoot\System32\drivers\hidi2c.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - hidinterrupt (@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts) -> \SystemRoot\System32\drivers\hidinterrupt.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - HidIr (@hidir.inf,%HIDIR.SvcDesc%;Microsoft Infrared HID Driver) -> \SystemRoot\System32\drivers\hidir.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - hidspi (@hidspi_km.inf,%hidspi.SVCDESC%;Microsoft SPI HID Miniport Driver) -> \SystemRoot\System32\drivers\hidspi.sys - AcceptPause: False - AcceptStop: False R3 - [Kernel Driver] - HidUsb (@input.inf,%HID.SvcDesc%;Microsoft HID Class Driver) -> \SystemRoot\System32\drivers\hidusb.sys - AcceptPause: False - AcceptStop: True S3 - [Kernel Driver] - HTTP (@%SystemRoot%\system32\drivers\http.sys,-1) -> system32\drivers\HTTP.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - hvservice (@%SystemRoot%\system32\drivers\hvservice.sys,-16) -> system32\drivers\hvservice.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - HwNClx0101 (Microsoft Hardware Notifications Class Extension Driver) -> System32\Drivers\mshwnclx.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - hyperkbd () -> \SystemRoot\System32\drivers\hyperkbd.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - HyperVideo () -> \SystemRoot\System32\drivers\HyperVideo.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - i8042prt (@keyboard.inf,%i8042prt.SvcDesc%;i8042 Keyboard and PS/2 Mouse Port Driver) -> \SystemRoot\System32\drivers\i8042prt.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - iagpio (@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver) -> \SystemRoot\System32\drivers\iagpio.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - iai2c (@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller) -> \SystemRoot\System32\drivers\iai2c.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - iaLPSS2i_GPIO2 (@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2) -> \SystemRoot\System32\drivers\iaLPSS2i_GPIO2.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - iaLPSS2i_GPIO2_BXT_P (@iaLPSS2i_GPIO2_BXT_P.inf,%iaLPSS2i_GPIO2_BXT_P.SVCDESC%;Intel(R) Serial IO GPIO Driver v2) -> \SystemRoot\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - iaLPSS2i_GPIO2_CNL (@iaLPSS2i_GPIO2_CNL.inf,%iaLPSS2i_GPIO2_CNL.SVCDESC%;Intel(R) Serial IO GPIO Driver v2) -> \SystemRoot\System32\drivers\iaLPSS2i_GPIO2_CNL.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - iaLPSS2i_GPIO2_GLK (@iaLPSS2i_GPIO2_GLK.inf,%iaLPSS2i_GPIO2_GLK.SVCDESC%;Intel(R) Serial IO GPIO Driver v2) -> \SystemRoot\System32\drivers\iaLPSS2i_GPIO2_GLK.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - iaLPSS2i_I2C (@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2) -> \SystemRoot\System32\drivers\iaLPSS2i_I2C.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - iaLPSS2i_I2C_BXT_P (@iaLPSS2i_I2C_BXT_P.inf,%iaLPSS2i_I2C_BXT_P.SVCDESC%;Intel(R) Serial IO I2C Driver v2) -> \SystemRoot\System32\drivers\iaLPSS2i_I2C_BXT_P.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - iaLPSS2i_I2C_CNL (@iaLPSS2i_I2C_CNL.inf,%iaLPSS2i_I2C_CNL.SVCDESC%;Intel(R) Serial IO I2C Driver v2) -> \SystemRoot\System32\drivers\iaLPSS2i_I2C_CNL.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - iaLPSS2i_I2C_GLK (@iaLPSS2i_I2C_GLK.inf,%iaLPSS2i_I2C_GLK.SVCDESC%;Intel(R) Serial IO I2C Driver v2) -> \SystemRoot\System32\drivers\iaLPSS2i_I2C_GLK.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - iaLPSSi_GPIO (@ialpssi_gpio.inf,%iaLPSSi_GPIO.SVCDESC%;Intel(R) Serial IO GPIO Controller Driver) -> \SystemRoot\System32\drivers\iaLPSSi_GPIO.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - iaLPSSi_I2C (@ialpssi_i2c.inf,%iaLPSSi_I2C.SVCDESC%;Intel(R) Serial IO I2C Controller Driver) -> \SystemRoot\System32\drivers\iaLPSSi_I2C.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - ibbus (@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver)) -> \SystemRoot\System32\drivers\ibbus.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - IndirectKmd (@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100) -> \SystemRoot\System32\drivers\IndirectKmd.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - IntcAzAudAddService (Service for Realtek HD Audio (WDM)) -> \SystemRoot\system32\drivers\RTKVHD64.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - intelpmax (@intelpmax.inf,%SvcDesc%;Intel(R) Dynamic Device Peak Power Manager Driver) -> \SystemRoot\System32\drivers\intelpmax.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - intelppm (@cpu.inf,%IntelPPM.SvcDesc%;Intel Processor Driver) -> \SystemRoot\System32\drivers\intelppm.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - IpFilterDriver (@%systemroot%\system32\mprmsg.dll,-32013) -> system32\DRIVERS\ipfltdrv.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - IPMIDRV () -> \SystemRoot\System32\drivers\IPMIDrv.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - IPNAT (IP Network Address Translator) -> System32\drivers\ipnat.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - IPT () -> \SystemRoot\System32\drivers\ipt.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - iScsiPrt (@iscsi.inf,%iScsiPortName%;iScsiPort Driver) -> \SystemRoot\System32\drivers\msiscsi.sys - AcceptPause: False - AcceptStop: False R3 - [Kernel Driver] - kbdclass (@keyboard.inf,%kbdclass.SvcDesc%;Keyboard Class Driver) -> \SystemRoot\System32\drivers\kbdclass.sys - AcceptPause: False - AcceptStop: True R3 - [Kernel Driver] - kbdhid (@keyboard.inf,%KBDHID.SvcDesc%;Keyboard HID Driver) -> \SystemRoot\System32\drivers\kbdhid.sys - AcceptPause: False - AcceptStop: True R3 - [Kernel Driver] - kdnic (@kdnic.inf,%KdNic.Service.DispName%;Microsoft Kernel Debug Network Miniport (NDIS 6.20)) -> \SystemRoot\System32\drivers\kdnic.sys - AcceptPause: False - AcceptStop: True R3 - [Kernel Driver] - keycrypt (keycrypt) -> system32\DRIVERS\KeyCrypt64.sys - AcceptPause: False - AcceptStop: True S3 - [Kernel Driver] - ksthunk (Kernel Streaming Thunks) -> \SystemRoot\system32\drivers\ksthunk.sys - AcceptPause: False - AcceptStop: False R3 - [Kernel Driver] - L1C (@oem10.inf,%L1C.Service.DispName%;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller) -> \SystemRoot\System32\drivers\L1C63x64.sys - AcceptPause: False - AcceptStop: True S3 - [Kernel Driver] - LVRS64 (@oem37.inf,%lvrs.SrvDesc%;Logitech RightSound Filter Driver) -> \SystemRoot\system32\DRIVERS\lvrs64.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - LVUVC64 (@oem36.inf,%PID_081B_DD%(UVC);Logitech HD Webcam C310(UVC)) -> \SystemRoot\system32\DRIVERS\lvuvc64.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - massfilter (@oem24.inf,%filter.SvcDesc%;MBB Mass Storage Filter Driver) -> \SystemRoot\System32\drivers\massfilter.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - mausbhost (@mausbhost.inf,%MAUSBHost.ServiceName%;MA-USB Host Controller Driver) -> \SystemRoot\System32\drivers\mausbhost.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - mausbip (@mausbhost.inf,%MAUSBIP.ServiceName%;MA-USB IP Filter Driver) -> \SystemRoot\System32\drivers\mausbip.sys - AcceptPause: False - AcceptStop: False S3 - [File System Driver] - MBAMFarflt (MBAMFarflt) -> system32\DRIVERS\farflt.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - MbbCx (MBB Network Adapter Class Extension) -> system32\drivers\MbbCx.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - Microsoft_Bluetooth_AvrcpTransport (@microsoft_bluetooth_avrcptransport.inf,%Microsoft_Bluetooth_AvrcpTransport.ServiceDescription%;Microsoft Bluetooth Avrcp Transport Driver) -> \SystemRoot\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - mlx4_bus (@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator) -> \SystemRoot\System32\drivers\mlx4_bus.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - Modem () -> system32\drivers\modem.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - monitor (@oem3.inf,%Monitor.SVCDESC%;Microsoft Monitor Class Function Driver Service) -> \SystemRoot\System32\drivers\monitor.sys - AcceptPause: False - AcceptStop: False R3 - [Kernel Driver] - mouclass (@msmouse.inf,%mouclass.SvcDesc%;Mouse Class Driver) -> \SystemRoot\System32\drivers\mouclass.sys - AcceptPause: False - AcceptStop: True R3 - [Kernel Driver] - mouhid (@msmouse.inf,%MOUHID.SvcDesc%;Mouse HID Driver) -> \SystemRoot\System32\drivers\mouhid.sys - AcceptPause: False - AcceptStop: True R3 - [Kernel Driver] - mpsdrv (@%SystemRoot%\system32\drivers\mpsdrv.sys,-23092) -> System32\drivers\mpsdrv.sys - AcceptPause: False - AcceptStop: True S3 - [File System Driver] - MRxDAV (@%systemroot%\system32\webclnt.dll,-104) -> \SystemRoot\system32\drivers\mrxdav.sys - AcceptPause: False - AcceptStop: False R3 - [File System Driver] - mrxsmb (@%systemroot%\system32\wkssvc.dll,-1002) -> system32\DRIVERS\mrxsmb.sys - AcceptPause: False - AcceptStop: True R3 - [File System Driver] - mrxsmb20 (@%systemroot%\system32\wkssvc.dll,-1006) -> system32\DRIVERS\mrxsmb20.sys - AcceptPause: False - AcceptStop: True S3 - [Kernel Driver] - MsBridge (@%SystemRoot%\system32\bridgeres.dll,-1) -> System32\drivers\bridge.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - msgpiowin32 (@msgpiowin32.inf,%GPIO.SvcDesc%;Common Driver for Buttons, DockMode and Laptop/Slate Indicator) -> \SystemRoot\System32\drivers\msgpiowin32.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - mshidkmdf (@%SystemRoot%\system32\drivers\mshidkmdf.sys,-100) -> \SystemRoot\System32\drivers\mshidkmdf.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - mshidumdf (@%SystemRoot%\system32\drivers\mshidumdf.sys,-100) -> \SystemRoot\System32\drivers\mshidumdf.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - MSKSSRV (@ksfilter.inf,%MSKSSRV.DeviceDesc%;Microsoft Streaming Service Proxy) -> \SystemRoot\System32\drivers\MSKSSRV.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - MSPCLOCK (@ksfilter.inf,%MSPCLOCK.DeviceDesc%;Microsoft Streaming Clock Proxy) -> \SystemRoot\System32\drivers\MSPCLOCK.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - MSPQM (@ksfilter.inf,%MSPQM.DeviceDesc%;Microsoft Streaming Quality Manager Proxy) -> \SystemRoot\System32\drivers\MSPQM.sys - AcceptPause: False - AcceptStop: False R3 - [Kernel Driver] - MsQuic (@%SystemRoot%\system32\drivers\msquic.sys,-1) -> system32\drivers\msquic.sys - AcceptPause: False - AcceptStop: True S3 - [Kernel Driver] - MsRPC () -> (?) - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - MSTEE (@ksfilter.inf,%MSTEE.DeviceDesc%;Microsoft Streaming Tee/Sink-to-Sink Converter) -> \SystemRoot\System32\drivers\MSTEE.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - MTConfig (@mtconfig.inf,%MTConfig.SVCDESC%;Microsoft Input Configuration Driver) -> \SystemRoot\System32\drivers\MTConfig.sys - AcceptPause: False - AcceptStop: False R3 - [Kernel Driver] - NativeWifiP (@%SystemRoot%\System32\drivers\nwifi.sys,-101) -> system32\DRIVERS\nwifi.sys - AcceptPause: False - AcceptStop: True S3 - [Kernel Driver] - ndfltr (@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service) -> \SystemRoot\System32\drivers\ndfltr.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - NdisImPlatform (@%SystemRoot%\System32\drivers\ndisimplatform.sys,-501) -> System32\drivers\NdisImPlatform.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - NdisTapi (@%systemroot%\system32\mprmsg.dll,-32001) -> System32\DRIVERS\ndistapi.sys - AcceptPause: False - AcceptStop: False R3 - [Kernel Driver] - Ndisuio (NDIS Usermode I/O Protocol) -> system32\drivers\ndisuio.sys - AcceptPause: False - AcceptStop: True R3 - [Kernel Driver] - NdisVirtualBus (@%SystemRoot%\System32\drivers\NdisVirtualBus.sys,-200) -> \SystemRoot\System32\drivers\NdisVirtualBus.sys - AcceptPause: False - AcceptStop: True S3 - [Kernel Driver] - NdisWan (@%systemroot%\system32\mprmsg.dll,-32002) -> \SystemRoot\System32\drivers\ndiswan.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - ndiswanlegacy (@%systemroot%\system32\mprmsg.dll,-32014) -> System32\DRIVERS\ndiswan.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - NDKPing (NDKPing Driver) -> system32\drivers\NDKPing.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - ndproxy (@%SystemRoot%\system32\drivers\ndproxy.sys,-6000) -> System32\DRIVERS\NDProxy.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - NetAdapterCx (Network Adapter Wdf Class Extension Library) -> system32\drivers\NetAdapterCx.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - netvsc () -> \SystemRoot\System32\drivers\netvsc.sys - AcceptPause: False - AcceptStop: False R3 - [File System Driver] - Ntfs () -> (?) - AcceptPause: False - AcceptStop: True S3 - [Kernel Driver] - Parport (@msports.inf,%Parport.SVCDESC%;Parallel port driver) -> \SystemRoot\System32\drivers\parport.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - PktMon (Packet Monitor Driver) -> system32\drivers\PktMon.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - PNPMEM (@memory.inf,%PNPMEM.SvcDesc%;Microsoft Memory Module Driver) -> \SystemRoot\System32\drivers\pnpmem.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - portcfg () -> \SystemRoot\System32\drivers\portcfg.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - PptpMiniport (@%systemroot%\system32\mprmsg.dll,-32006) -> \SystemRoot\System32\drivers\raspptp.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - Processor (@cpu.inf,%Processor.SvcDesc%;Processor Driver) -> \SystemRoot\System32\drivers\processr.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - QWAVEdrv (@%SystemRoot%\system32\drivers\qwavedrv.sys,-1) -> \SystemRoot\system32\drivers\qwavedrv.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - RasAcd (Remote Access Auto Connection Driver) -> System32\DRIVERS\rasacd.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - RasAgileVpn (@netavpna.inf,%Svc-Mp-AgileVpn-DispName%;WAN Miniport (IKEv2)) -> \SystemRoot\System32\drivers\AgileVpn.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - Rasl2tp (@%systemroot%\system32\mprmsg.dll,-32005) -> \SystemRoot\System32\drivers\rasl2tp.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - RasPppoe (@%systemroot%\system32\mprmsg.dll,-32007) -> System32\DRIVERS\raspppoe.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - RasSstp (@%systemroot%\system32\sstpsvc.dll,-202) -> \SystemRoot\System32\drivers\rassstp.sys - AcceptPause: False - AcceptStop: False R3 - [Kernel Driver] - rdpbus (@rdpbus.inf,%rdpbus_svcdesc%;Remote Desktop Device Redirector Bus Driver) -> \SystemRoot\System32\drivers\rdpbus.sys - AcceptPause: False - AcceptStop: True S3 - [Kernel Driver] - RDPDR (@%SystemRoot%\System32\DRIVERS\rdpdr.sys,-100) -> System32\drivers\rdpdr.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - RdpVideoMiniport (Remote Desktop Video Miniport Driver) -> System32\drivers\rdpvideominiport.sys - AcceptPause: False - AcceptStop: False S3 - [File System Driver] - ReFS () -> (?) - AcceptPause: False - AcceptStop: False S3 - [File System Driver] - ReFSv1 () -> (?) - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - RFCOMM (@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI)) -> \SystemRoot\System32\drivers\rfcomm.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - rhproxy (@rhproxy.inf,%rhproxy.SVCDESC%;Resource Hub proxy driver) -> \SystemRoot\System32\drivers\rhproxy.sys - AcceptPause: False - AcceptStop: False S3 - [File System Driver] - RkFlt (RkFlt) -> \??\C:\Windows\System32\drivers\rkflt.sys - AcceptPause: False - AcceptStop: False R3 - [Kernel Driver] - RTSUER (@oem5.inf,%RtsUER%;Realtek USB Card Reader - UER) -> \SystemRoot\system32\Drivers\RtsUer.sys - AcceptPause: False - AcceptStop: True S3 - [Kernel Driver] - s3cap () -> \SystemRoot\System32\drivers\vms3cap.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - scfilter (@%SystemRoot%\System32\drivers\scfilter.sys,-11) -> System32\DRIVERS\scfilter.sys - AcceptPause: False - AcceptStop: False R3 - [Kernel Driver] - sdbus () -> \SystemRoot\System32\drivers\sdbus.sys - AcceptPause: False - AcceptStop: True S3 - [Kernel Driver] - SDFRd (@SDFRd.inf,%SDFRd.ServiceDesc%;SDF Reflector) -> \SystemRoot\System32\drivers\SDFRd.sys - AcceptPause: False - AcceptStop: False R3 - [Kernel Driver] - sdstor (@sdstor.inf,%sdstor_ServiceDesc%;SD Storage Port Driver) -> \SystemRoot\System32\drivers\sdstor.sys - AcceptPause: False - AcceptStop: True S3 - [Kernel Driver] - SerCx (Serial UART Support Library) -> system32\drivers\SerCx.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - SerCx2 (Serial UART Support Library) -> system32\drivers\SerCx2.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - Serenum (@msports.inf,%Serenum.SVCDESC%;Serenum Filter Driver) -> \SystemRoot\System32\drivers\serenum.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - Serial (@msports.inf,%Serial.SVCDESC%;Serial port driver) -> \SystemRoot\System32\drivers\serial.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - sermouse (@msmouse.inf,%sermouse.SvcDesc%;Serial Mouse Driver) -> \SystemRoot\System32\drivers\sermouse.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - sfloppy (@flpydisk.inf,%sfloppy_devdesc%;High-Capacity Floppy Disk Drive) -> \SystemRoot\System32\drivers\sfloppy.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - spaceparser (@%systemroot%\system32\drivers\spaceparser.sys,-1001) -> system32\drivers\spaceparser.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - SpatialGraphFilter (Holographic Spatial Graph Filter) -> System32\drivers\SpatialGraphFilter.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - SpbCx (Simple Peripheral Bus Support Library) -> system32\drivers\SpbCx.sys - AcceptPause: False - AcceptStop: False R3 - [File System Driver] - srv2 (@%systemroot%\system32\srvsvc.dll,-104) -> System32\DRIVERS\srv2.sys - AcceptPause: False - AcceptStop: True R3 - [File System Driver] - srvnet () -> System32\DRIVERS\srvnet.sys - AcceptPause: False - AcceptStop: True R3 - [Kernel Driver] - swenum (@swenum.inf,%SWENUM.SVCDESC%;Software Bus Driver) -> \SystemRoot\System32\DriverStore\FileRepository\swenum.inf_amd64_195940f7d1c0c2ce\swenum.sys - AcceptPause: False - AcceptStop: True S3 - [Kernel Driver] - Synth3dVsc () -> \SystemRoot\System32\drivers\Synth3dVsc.sys - AcceptPause: False - AcceptStop: False R3 - [Kernel Driver] - tap0901 (@oem15.inf,%DeviceDescription%;TAP-Windows Adapter V9) -> \SystemRoot\System32\drivers\tap0901.sys - AcceptPause: False - AcceptStop: True S3 - [Kernel Driver] - Tcpip6 (@todo.dll,-100;Microsoft IPv6 Protocol Driver) -> System32\drivers\tcpip.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - terminpt (@termkbd.inf,%TermInpt.SVCDESC%;Microsoft Remote Desktop Input Driver) -> \SystemRoot\System32\drivers\terminpt.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - TPM (@tpm.inf,%TPM%;TPM) -> \SystemRoot\System32\drivers\tpm.sys - AcceptPause: False - AcceptStop: False S3 - [File System Driver] - Trufos (Trufos) -> system32\DRIVERS\Trufos.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - TsUsbFlt (@%SystemRoot%\system32\drivers\tsusbflt.sys,-1000) -> system32\drivers\tsusbflt.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - TsUsbGD (@tsgenericusbdriver.inf,%TsUsbGD.DeviceDesc.Generic%;Remote Desktop Generic USB Device) -> \SystemRoot\System32\drivers\TsUsbGD.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - tunnel (@%SystemRoot%\System32\drivers\tunnel.sys,-500) -> System32\drivers\tunnel.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - UASPStor (@uaspstor.inf,%UASPortName%;USB Attached SCSI (UAS) Driver) -> \SystemRoot\System32\drivers\uaspstor.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - UcmCx0101 (USB Connector Manager KMDF Class Extension) -> System32\Drivers\UcmCx.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - UcmTcpciCx0101 (UCM-TCPCI KMDF Class Extension) -> System32\Drivers\UcmTcpciCx.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - UcmUcsiAcpiClient (@UcmUcsiAcpiClient.inf,%UcmUcsiAcpiClient.ServiceName%;UCM-UCSI ACPI Client) -> \SystemRoot\System32\drivers\UcmUcsiAcpiClient.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - UcmUcsiCx0101 (UCM-UCSI KMDF Class Extension) -> System32\Drivers\UcmUcsiCx.sys - AcceptPause: False - AcceptStop: False R3 - [Kernel Driver] - Ucx01000 (USB Host Support Library) -> system32\drivers\ucx01000.sys - AcceptPause: False - AcceptStop: True S3 - [Kernel Driver] - UdeCx (USB Device Emulation Support Library) -> system32\drivers\udecx.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - UEFI (@uefi.inf,%UEFI.SvcDesc%;Microsoft UEFI Driver) -> \SystemRoot\System32\DriverStore\FileRepository\uefi.inf_amd64_b06f65132d2e42f6\UEFI.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - Ufx01000 (USB Function Class Extension) -> system32\drivers\ufx01000.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - UfxChipidea (@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller) -> \SystemRoot\System32\DriverStore\FileRepository\ufxchipidea.inf_amd64_ffa28224ecabcebe\UfxChipidea.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - ufxsynopsys (@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller) -> \SystemRoot\System32\drivers\ufxsynopsys.sys - AcceptPause: False - AcceptStop: False R3 - [Kernel Driver] - umbus (@umbus.inf,%umbus.SVCDESC%;UMBus Enumerator Driver) -> \SystemRoot\System32\DriverStore\FileRepository\umbus.inf_amd64_b6a5e2c0477a05cb\umbus.sys - AcceptPause: False - AcceptStop: True S3 - [Kernel Driver] - UmPass (@umpass.inf,%UmPass.SVCDESC%;Microsoft UMPass Driver) -> \SystemRoot\System32\drivers\umpass.sys - AcceptPause: False - AcceptStop: False R3 - [Kernel Driver] - UrsChipidea (@urschipidea.inf,%UrsChipidea.ServiceName%;Chipidea USB Role-Switch Driver) -> \SystemRoot\System32\DriverStore\FileRepository\urschipidea.inf_amd64_a72918cb12e1033a\urschipidea.sys - AcceptPause: False - AcceptStop: True R3 - [Kernel Driver] - UrsCx01000 (USB Role-Switch Support Library) -> system32\drivers\urscx01000.sys - AcceptPause: False - AcceptStop: True S3 - [Kernel Driver] - UrsSynopsys (@urssynopsys.inf,%UrsSynopsys.ServiceName%;Synopsys USB Role-Switch Driver) -> \SystemRoot\System32\DriverStore\FileRepository\urssynopsys.inf_amd64_24c5f38235f6b92f\urssynopsys.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - usbaudio (@wdma_usb.inf,%USBAudio.SvcDesc%;Pilote USB audio (WDM)) -> \SystemRoot\system32\drivers\usbaudio.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - usbaudio2 (@usbaudio2.inf,%usbaudio2.SVCDESC%;USB Audio 2.0 Service) -> \SystemRoot\System32\drivers\usbaudio2.sys - AcceptPause: False - AcceptStop: False R3 - [Kernel Driver] - usbccgp (@usb.inf,%GenericParent.SvcDesc%;Pilote parent générique USB Microsoft) -> \SystemRoot\System32\drivers\usbccgp.sys - AcceptPause: False - AcceptStop: True S3 - [Kernel Driver] - usbcir (@usbcir.inf,%usbcir.SVCDESC%;eHome Infrared Receiver (USBCIR)) -> \SystemRoot\System32\drivers\usbcir.sys - AcceptPause: False - AcceptStop: False R3 - [Kernel Driver] - usbehci (@usbport.inf,%EHCIMP.SvcDesc%;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver) -> \SystemRoot\System32\drivers\usbehci.sys - AcceptPause: False - AcceptStop: True R3 - [Kernel Driver] - usbhub (@usbport.inf,%ROOTHUB.SvcDesc%;Microsoft USB Standard Hub Driver) -> \SystemRoot\System32\drivers\usbhub.sys - AcceptPause: False - AcceptStop: True R3 - [Kernel Driver] - USBHUB3 (@usbhub3.inf,%UsbHub3.SVCDESC%;SuperSpeed Hub) -> \SystemRoot\System32\drivers\UsbHub3.sys - AcceptPause: False - AcceptStop: True R3 - [Kernel Driver] - usbohci (@usbport.inf,%OHCIMP.SvcDesc%;Microsoft USB Open Host Controller Miniport Driver) -> \SystemRoot\System32\drivers\usbohci.sys - AcceptPause: False - AcceptStop: True S3 - [Kernel Driver] - usbprint (@usbprint.inf,%USBPRINT.SvcDesc%;Microsoft USB PRINTER Class) -> \SystemRoot\System32\drivers\usbprint.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - usbser (@usbser.inf,%UsbSerial.DriverDesc%;Microsoft USB Serial Driver) -> \SystemRoot\System32\drivers\usbser.sys - AcceptPause: False - AcceptStop: False R3 - [Kernel Driver] - USBSTOR (@usbstor.inf,%USBSTOR.SvcDesc%;Pilote de stockage de masse USB) -> \SystemRoot\System32\drivers\USBSTOR.SYS - AcceptPause: False - AcceptStop: True S3 - [Kernel Driver] - usbuhci (@usbport.inf,%UHCIMP.SvcDesc%;Microsoft USB Universal Host Controller Miniport Driver) -> \SystemRoot\System32\drivers\usbuhci.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - usbvideo (@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM)) -> \SystemRoot\System32\Drivers\usbvideo.sys - AcceptPause: False - AcceptStop: False R3 - [Kernel Driver] - USBXHCI (@usbxhci.inf,%PCI\CC_0C0330.DeviceDesc%;USB xHCI Compliant Host Controller) -> \SystemRoot\System32\drivers\USBXHCI.SYS - AcceptPause: False - AcceptStop: True S3 - [Kernel Driver] - VerifierExt (@%SystemRoot%\System32\drivers\VerifierExt.sys,-1000) -> System32\drivers\VerifierExt.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - vhdmp () -> \SystemRoot\System32\drivers\vhdmp.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - vhf (@hidvhf.inf,%VhfService%;Virtual HID Framework (VHF) Driver) -> \SystemRoot\System32\drivers\vhf.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - VirtualRender () -> \SystemRoot\System32\DriverStore\FileRepository\vrd.inf_amd64_808b3f41e0503245\vrd.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - VMBusHID () -> \SystemRoot\System32\drivers\VMBusHID.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - vmgid (@wvmgid.inf,%VmGid.SVCDESC%;Microsoft Hyper-V Guest Infrastructure Driver) -> \SystemRoot\System32\drivers\vmgid.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - voxaldriver (Voxal Filter Driver 3.3.0) -> \SystemRoot\system32\DRIVERS\voxaldriverx64.sys - AcceptPause: False - AcceptStop: False R3 - [Kernel Driver] - vpnpbus (@oem57.inf,%VBusService.Desc%;Callback Technologies PnP Virtual Bus driver) -> \SystemRoot\System32\drivers\vpnpbus.sys - AcceptPause: False - AcceptStop: True S3 - [Kernel Driver] - vwifibus (@%SystemRoot%\System32\drivers\vwifibus.sys,-257) -> \SystemRoot\System32\drivers\vwifibus.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - WacomPen (@hiddigi.inf,%WacomPen.SVCDESC%;Wacom Serial Pen HID Driver) -> \SystemRoot\System32\drivers\wacompen.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - wanarpv6 (@%systemroot%\system32\mprmsg.dll,-32012) -> System32\DRIVERS\wanarp.sys - AcceptPause: False - AcceptStop: False S3 - [File System Driver] - wcnfs (@%systemroot%\system32\drivers\wcnfs.sys,-100) -> \SystemRoot\system32\drivers\wcnfs.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - wdiwifi (WDI Driver Framework) -> system32\DRIVERS\wdiwifi.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - WdmCompanionFilter (@%SystemRoot%\system32\drivers\WdmCompanionFilter.sys,-1000) -> system32\drivers\WdmCompanionFilter.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - WdNisDrv (@%ProgramFiles%\Windows Defender\MpAsDesc.dll,-370) -> system32\drivers\wd\WdNisDrv.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - WifiCx (Wifi Network Adapter Class Extension) -> system32\drivers\WifiCx.sys - AcceptPause: False - AcceptStop: False S3 - [File System Driver] - WIMMount (@%SystemRoot%\system32\drivers\wimmount.sys,-101) -> system32\drivers\wimmount.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - WinMad (@mlx4_bus.inf,%WinMad.ServiceDesc%;WinMad Service) -> \SystemRoot\System32\drivers\winmad.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - WinNat (@%SystemRoot%\system32\drivers\winnat.sys,-10001) -> system32\drivers\winnat.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - WINUSB (@winusb.inf,%WINUSB_SvcName%;Pilote WinUsb) -> \SystemRoot\System32\drivers\WinUSB.SYS - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - WinVerbs (@mlx4_bus.inf,%WinVerbs.ServiceDesc%;WinVerbs Service) -> \SystemRoot\System32\drivers\winverbs.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - WmiAcpi (@wmiacpi.inf,%WMIMAP.SvcDesc%;Microsoft Windows Management Interface for ACPI) -> \SystemRoot\System32\drivers\wmiacpi.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - WpdUpFltr (@%systemroot%\System32\drivers\WpdUpFltr.sys,-100) -> System32\drivers\WpdUpFltr.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - WudfPf (@%SystemRoot%\system32\drivers\Wudfpf.sys,-1000) -> system32\drivers\WudfPf.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - WUDFRd (@%SystemRoot%\system32\drivers\WudfRd.sys,-1000) -> \SystemRoot\System32\drivers\WUDFRd.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - WUDFWpdFs (@wpdfs.inf,%WPDFS_SvcName%;Pilote du système de fichiers WPD) -> \SystemRoot\system32\DRIVERS\WUDFRd.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - WUDFWpdMtp () -> \SystemRoot\system32\DRIVERS\WUDFRd.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - xboxgip (@xboxgip.inf,%XBOXGIP_Desc%;Xbox Game Input Protocol Driver) -> \SystemRoot\System32\drivers\xboxgip.sys - AcceptPause: False - AcceptStop: False S3 - [Kernel Driver] - xinputhid (@xinputhid.inf,%xinputhid.SvcDesc%;XINPUT HID Filter Driver) -> \SystemRoot\System32\drivers\xinputhid.sys - AcceptPause: False - AcceptStop: False S3 - [Unknown] - TFsFlt () -> system32\Drivers\TFsFltX64_ev.sys - AcceptPause: False - AcceptStop: False S3 - [File System Driver] - Atc (Atc) -> \??\E:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\QMHips\drivers\atc.sys - AcceptPause: False - AcceptStop: False S4 - [File System Driver] - cdfs (CD/DVD File System Reader) -> system32\DRIVERS\cdfs.sys - AcceptPause: False - AcceptStop: False S4 - [Kernel Driver] - cnghwassist (@%SystemRoot%\system32\drivers\cnghwassist.sys,-100) -> System32\DRIVERS\cnghwassist.sys - AcceptPause: False - AcceptStop: False S4 - [Kernel Driver] - hvcrash () -> \SystemRoot\System32\drivers\hvcrash.sys - AcceptPause: False - AcceptStop: False R4 - [File System Driver] - udfs (udfs) -> system32\DRIVERS\udfs.sys - AcceptPause: False - AcceptStop: True S4 - [Kernel Driver] - ws2ifsl (@%systemroot%\System32\drivers\ws2ifsl.sys,-1000) -> \SystemRoot\system32\drivers\ws2ifsl.sys - AcceptPause: False - AcceptStop: False ---------- | System files (Microsoft|Avast|Atheros|Adaptec|Brother|Intel Files whitelisted) [MD5.BDFA7A13CC73B180BBDF1ABA280E1CF7] - [13/06/2019 09:11:47] - (.(C) Malwarebytes. - Malwarebytes SwissArmy.) - [249.93 Ko] - (4.3.0.15) - C:\WINDOWS\System32\Drivers\113E0300.sys ---------- | Uninstall (Whitelist) [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\7-Zip] : (7-Zip 19.00 (x64).-.Igor Pavlov) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\701281E8283E9E3681220099A9DA5013A5A437AF] : (Package de pilotes Windows - SAMSUNG Electronics Co., Ltd. (WinUSB) AndroidUsbDeviceClass (12/02/2015 2.12.1.0).-.SAMSUNG Electronics Co., Ltd.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\85A33267F12961AF9ED9AE799DEDA5E62BEA236F] : (Package de pilotes Windows - SAMSUNG Electronics Co., Ltd. (dg_ssudbus) USB (12/02/2015 2.12.1.0).-.SAMSUNG Electronics Co., Ltd.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\88ED314360B98E6E82E7CC3201FAEB4A9FD291B4] : (Package de pilotes Windows - SAMSUNG Electronics Co., Ltd. (ssudmdm) Modem (12/02/2015 2.12.1.0).-.SAMSUNG Electronics Co., Ltd.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\Bandizip] : (Bandizip.-.Bandisoft.com) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\BE156A27AFEAEA39D6A7C9D25CFA8DAFAF91756B] : (Package de pilotes Windows - Google, Inc. (WinUSB) AndroidUsbDeviceClass (08/27/2012 7.0.0000.00004).-.Google, Inc.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\CCleaner] : (CCleaner.-.Piriform) -> ----------[{Hidden}][HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\Connection Manager] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\D43FD4059F47ACA9539247D6CF690AAEA503AF2D] : (Package de pilotes Windows - Google, Inc. (WinUSB) AndroidUsbDeviceClass (08/27/2012 7.0.0000.00004).-.Google, Inc.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\MyPC Backup] : (MyPC Backup 1.0.0.-.MyPC Backup) -> C:\Program Files (x86)\MyPC Backup\uninst.exe [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\PC Optimizer Pro] : (PC Optimizer Pro.-.Xportsoft Technologies) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\UVK - Ultra virus killer] : (UVK - Ultra Virus Killer.-.Carifred) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\WIC] : (.-.) -> ----------[{Hidden}][HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{063E67F0-C298-8A2A-0FA6-84C15322A4E0}] : (ccc-utility64.-.Advanced Micro Devices, Inc.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{26A24AE4-039D-4CA4-87B4-2F64180221F0}] : (Java 8 Update 221 (64-bit).-.Oracle Corporation) -> MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F64180221F0} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{26A24AE4-039D-4CA4-87B4-2F64180241F0}] : (Java 8 Update 241 (64-bit).-.Oracle Corporation) -> MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F64180241F0} ----------[{Hidden}][HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{2BDF230B-4373-444E-BBC9-9C1AE58F8AF8}] : (Paragon Partition Manager™ 17 CE.-.Paragon Software) -> MsiExec.exe /X{2BDF230B-4373-444E-BBC9-9C1AE58F8AF8} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1] : (Malwarebytes version 4.1.0.56.-.Malwarebytes) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{3E494002-985C-4908-B72C-5B4DD15BE090}_is1] : (Start Menu X version 6.5.-.OrdinarySoft) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{5502032C-88C1-4303-99FE-B5CBD7684CEA}_is1] : (Emsisoft Anti-Malware.-.Emsisoft Ltd.) -> ----------[{Hidden}][HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{567591EE-85F7-4E4D-AE28-FD65FCF4F201}] : (COMODO Internet Security Premium.-.COMODO Security Solutions Inc.) -> MsiExec.exe /I{567591EE-85F7-4E4D-AE28-FD65FCF4F201} ----------[{Hidden}][HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{5C7A5F94-02E9-4C5D-A594-B1F10865965A}] : (AntimalwareEngine.-.adaware) -> MsiExec.exe /I{5C7A5F94-02E9-4C5D-A594-B1F10865965A} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{825F60D9-2633-4D52-B2B0-5DA143433BBC}] : (Backup and Sync from Google.-.Google, Inc.) -> MsiExec.exe /X{825F60D9-2633-4D52-B2B0-5DA143433BBC} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{B4C63984-9C49-3934-AE54-26B97EB7D531}] : (Google Chrome.-.Google LLC) -> MsiExec.exe /X{B4C63984-9C49-3934-AE54-26B97EB7D531} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{C4E01CDC-0063-493C-B383-9C4FCF7A89F7}] : (PerfectDisk Professional.-.Raxco Software Inc.) -> MsiExec.exe /I{C4E01CDC-0063-493C-B383-9C4FCF7A89F7} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}] : (Samsung USB Driver for Mobile Phones.-.Samsung Electronics Co., Ltd.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{DF972766-B496-3EA3-F7E5-919810CE21A5}_is1] : (Ashampoo Backup 2018.-.Ashampoo GmbH & Co. KG) -> ----------[{Hidden}][HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{E7366CA8-7179-77AE-E712-BA18D70A0A07}] : (AMD Fuel.-.Advanced Micro Devices, Inc.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{f4fef76c-1aa9-441c-af7e-d27f58d898d1}_is1] : (BCUninstaller.-.Marcin Szeniak) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\AIMP] : (AIMP.-.AIMP DevTeam) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\Anvi Ultimate Defrag] : (Anvi Ultimate Defrag 1.2.-.Anvisoft) -> C:\Program Files (x86)\Anvisoft\Anvi Ultimate Defrag\Uninstall.exe [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\Any Audio Converter] : (Any Audio Converter 6.3.8.-.Anvsoft) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\AOMEI Backupper] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\ByteFence] : (ByteFence Anti-Malware.-.Byte Technologies LLC) -> "C:\Program Files\ByteFence\uninstall.exe" [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\Cloud System Booster] : (Cloud System Booster.-.Anvisoft) -> C:\Program Files (x86)\Anvisoft\Cloud System Booster\UnInstall.exe [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\Comodo Dragon] : (Comodo Dragon.-.Comodo) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\Comodo Secure_Shopping_list_uninstall] : (COMODO Secure Shopping.-.Comodo) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\Compel install Adaptec WinASPI-4.6.0(1021)_is1] : (Compel Adaptec WinASPI.-.) -> "C:\Program Files (x86)\WinASPI\unins000.exe" ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\Connection Manager] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\DataNumen BKF Repair v2.6] : (DataNumen BKF Repair v2.6.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\DVDFab 11(x64)] : (DVDFab (x64) 11.0.7.7 (05/03/2020).-.DVDFab Software Inc.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\foobar2000] : (foobar2000 v1.2.-.Peter Pawlowski) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\Freemake Audio Converter_is1] : (Freemake Audio Converter version 1.1.9.-.Ellora Assets Corporation) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\GOM Player] : (GOM Player.-.GOM & Company) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\GOMAudio] : (GOM Audio.-.GOM & Company) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\ImgBurn] : (ImgBurn.-.LIGHTNING UK!) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\KeePassPasswordSafe2_is1] : (KeePass Password Safe 2.44.-.Dominik Reichl) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\KLiteCodecPack_is1] : (K-Lite Codec Pack 15.4.0 Full.-.KLCP) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\Magoshare Uninstaller Free 2.7_is1] : (Magoshare Uninstaller Free 2.7.-.Magoshare) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\Microsoft SQL Server 11] : (Microsoft SQL Server 2012.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\Moo0 ImageViewer] : (Moo0 Visionneuse d'Image SP 1.83.-.) -> C:\Users\jean-\Desktop\Laurent, sifaou, carole, nathalie, christine, léa, lynnlo, amélie, noémie Anti-JJAD Suite & Goodies\MoO0 Image Viewer Paid (dont pour garder Anti-JJAD Finalisé)\ImageViewer SP 1.83\uninstaller.exe [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\MusicBee] : (MusicBee 3.3.7367.-.Steven Mayall) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\QQ2003] : (QQ2003 SA.-.Tencent Technology (Shenzhen) Limited) -> C:\Program Files (x86)\QQ\Africa2003\uninst.exe [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\QQPCMgr] : (PC Manager12.3.-.Tencent Technology(Shenzhen) Company Limited) -> "e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\Uninst.exe" [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\Reload Icons Cache 1.00] : (Reload Icons Cache 1.00.-.Mr Blade Design's) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\SEAF] : (SEAF By C_XX.-.C_XX) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\SkinPack] : (SkinPack Windows 10 X.-.SkinPack) -> C:\SkinPack\uninst.exe [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\Smart PC_is1] : (Smart PC v6.2.-.Smart PC Solutions) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\TeamViewer] : (TeamViewer 14.-.TeamViewer) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\UltraUXThemePatcher] : (UltraUXThemePatcher.-.Manuel Hoefs (Zottel)) -> C:\Program Files (x86)\UltraUXThemePatcher\Uninstall.exe [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\WIC] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\Wondershare TidyMyMusic_is1] : (Wondershare TidyMyMusic(Build 2.1.0.3).-.Wondershare Software) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\Wubi] : (Xubuntu.-.Xubuntu) -> C:\ubuntu\uninstall-wubi.exe ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{07326A3E-02B3-1078-25D7-B8666BA8FE15}] : (CCC Help Korean.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{085EBD0C-F24E-EB94-6D33-2A22EF64C5CF}] : (CCC Help Finnish.-.Advanced Micro Devices, Inc.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{10E4121C-8181-4217-8DA9-6CD38DDC34F9}_is1] : (Microsoft .NET Framework 2.0 Client Profile Basic SP2 Version 2.0.0.26.-.© Wondershare Corporation.) -> "C:\WINDOWS\unins000.exe" ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{11087D24-567D-7D88-69C6-D7A08B5F4C47}] : (Catalyst Control Center - Branding.-.Advanced Micro Devices, Inc.) -> MsiExec.exe /I{11087D24-567D-7D88-69C6-D7A08B5F4C47} [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{12DF6C85-9207-47F4-939E-C93393B2032F}] : (ProtectStar (TM) Data Shredder v2.5.-.ProtectStar Inc.) -> MsiExec.exe /I{12DF6C85-9207-47F4-939E-C93393B2032F} [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{13D4CD54-EA09-4FDB-B979-8B2BC0F020CA}_is1] : (Booking.-.Booking) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{18455581-E099-4BA8-BC6B-F34B2F06600C}] : (Google Toolbar for Internet Explorer.-.Google Inc.) -> MsiExec.exe /I{18455581-E099-4BA8-BC6B-F34B2F06600C} ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{1AD99E77-37CC-744E-39CA-67F6FD34565A}] : (Catalyst Control Center Localization All.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{1BB85E73-0D92-604A-0AAF-C7AAD5E3A3C6}] : (CCC Help English.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{1E72F5D1-553E-CFF9-06A3-8C5AF507DD1C}] : (CCC Help French.-.Advanced Micro Devices, Inc.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{2318C2B1-4965-11d4-9B18-009027A5CD4F}] : (Google Toolbar for Internet Explorer.-.Google Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{25ACE797-EBDA-0E4B-096F-9FE97A1E2A6F}] : (CCC Help Russian.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{2D07E15C-A9A4-D8D6-D371-92EC8779E587}] : (CCC Help Hungarian.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{350E61E5-6C2C-2F3C-3A14-7E094AB6D3A0}] : (CCC Help Spanish.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{35A71DED-DA81-1313-352A-EC8A0B27DF3B}] : (CCC Help Chinese Standard.-.Advanced Micro Devices, Inc.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{405147F7-FCC5-499B-A27E-EA6BD4A80435}_is1] : (Aimersoft Helper Compact 2.5.2.-.Aimersoft) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{48F22622-1CC2-4A83-9C1E-644DD96F832D}] : (.-.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{4A03706F-666A-4037-7777-5F2748764D10}] : (Java Auto Updater.-.Oracle Corporation) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{50380485-9F99-4EA1-BD78-045C5E1BAD0A}] : (VPN Shield.-.Defendemus) -> MsiExec.exe /I{50380485-9F99-4EA1-BD78-045C5E1BAD0A} [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{50EB4E13-A810-411E-8F1F-C22FE7841DA2}_is1] : (BootRacer 7.90.-.Greatis Software) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}] : (Realtek Card Reader.-.Realtek Semiconduct Corp.) -> C:\WINDOWS\RtCRU64.exe /u ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}] : (Google Update Helper.-.Google LLC) -> MsiExec.exe /I{60EC980A-BDA2-4CB6-A427-B07A5498B4CA} ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{64D5A142-BD50-726E-ED9E-D2508D2A17E2}] : (Catalyst Control Center InstallProxy.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{6FDCB1C3-9EDC-3CBC-473C-DD85ED5E0494}] : (CCC Help German.-.Advanced Micro Devices, Inc.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{73734A45-6D87-4624-9EE9-8CC9291FFC12}] : (e-Carte Bleue La Banque Postale.-.e-Carte Bleue La Banque Postale) -> MsiExec.exe /I{73734A45-6D87-4624-9EE9-8CC9291FFC12} ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{79D22166-78C1-2AD4-04E7-BD22BD58FD46}] : (CCC Help Chinese Traditional.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{82CA1714-13EA-F419-91FE-12834424745E}] : (CCC Help Italian.-.Advanced Micro Devices, Inc.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{8B438F56-F6B0-4A48-8753-EA84E536E5D5}_is1] : (SysTools PDF Bates Numberer v3.5.-.SysTools Software Pvt. Ltd.) -> "C:\Users\jean-\Desktop\Laurent, sifaou, carole, nathalie, christine, léa, lynnlo, amélie, noémie Anti-JJAD Suite & Goodies\PDF Bates NumBeReR\SysTools PDF Bates Numberer\unins000.exe" ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{8CBC65A3-40AB-DE65-2CB1-997ABDA8FD68}] : (CCC Help Turkish.-.Advanced Micro Devices, Inc.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{8F0CD7D1-42F3-4195-95CD-833578D45057}_is1] : (PerfectGuard.-.Raxco Software, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{8FFCCB27-EE2D-D58F-5ABD-ED5C06B91E81}] : (CCC Help Swedish.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{A5A6A4D0-2005-2A05-2E21-495808CF95ED}] : (CCC Help Norwegian.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{A760847A-C4D9-E7EF-716F-07C6CBF6B147}] : (CCC Help Thai.-.Advanced Micro Devices, Inc.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{A83692F5-3E9B-4E95-9E7E-B5DF5536CE9D}_is1] : (AOMEI Backupper Standard.-.AOMEI Technology Co., Ltd.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}] : (Google Update Helper.-.Google Inc.) -> MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{AE386B48-84C7-4078-8619-C857C1076CD3}] : (iPhone Backup Extractor.-.Reincubate Ltd) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{AF0FDA86-6E7B-1A6C-51D4-43AF50181ED2}] : (AMD Catalyst Control Center.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{B839153C-D4D2-F89C-5033-0A160C62706B}] : (CCC Help Portuguese.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{C1EA3764-1138-AE27-AD63-549BAD99BA15}] : (CCC Help Japanese.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{C3D13AB8-468A-0174-1D06-DB9AAE8A131B}] : (CCC Help Czech.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{CA95D57F-9FC3-0DD7-7C36-362F74D8C04E}] : (CCC Help Dutch.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{CC5EFF2C-EC29-430F-B2F5-7CCA1DD606FE}] : (SocialMediaBlocker Personal Edition.-.XenArmor) -> MsiExec.exe /I{CC5EFF2C-EC29-430F-B2F5-7CCA1DD606FE} ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{D15DF9B0-3A98-4BEF-B7D5-FC3AEA478445}] : (COMODO Secure Shopping.-.COMODO) -> MsiExec.exe /X{D15DF9B0-3A98-4BEF-B7D5-FC3AEA478445} [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{DE57204B-4E6E-44E0-814A-D3823B5F45FE}] : (Audials 2020.-.Audials AG) -> MsiExec.exe /X{DE57204B-4E6E-44E0-814A-D3823B5F45FE} ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{E817E580-6318-AFC8-2102-322C73117EC4}] : (CCC Help Polish.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{F77474EE-EB6C-C87B-88AF-3310C848E068}] : (CCC Help Greek.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{F8DDBE95-DCBE-03B5-5359-DE3601146E21}] : (CCC Help Danish.-.Advanced Micro Devices, Inc.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{ReiBoot for Android}_is1] : (.-.) -> ---------- | Ports ---------- | Microsoft Specifications CheckID: fe1559e6e1022144a8b5b0ae14281475a31{97B6FAD9-6F14-CC46-3165-F1785ECCE255} - "AMD64" ~= %PROCESSOR_ARCHITECTURE -> fe1559e6e1022144a8b5b0ae14281475a3 CheckID: CreateShortCut1{DE57204B-4E6E-44E0-814A-D3823B5F45FE} - PARTNER_ID <> "61000" AND PARTNER_ID <> "11082" -> CreateShortCut CheckID: File_Type_Associations1{DE57204B-4E6E-44E0-814A-D3823B5F45FE} - PARTNER_ID <> "11082" -> File_Type_Associations CheckID: aplp1{DE57204B-4E6E-44E0-814A-D3823B5F45FE} - PARTNER_ID <> "11082" -> aplp CheckID: PDGUI200{C4E01CDC-0063-493C-B383-9C4FCF7A89F7} - NOGUI -> PDGUI CheckID: VC80RunTime200{C4E01CDC-0063-493C-B383-9C4FCF7A89F7} - NOT (VersionNT64 < 600) OR REMOVE="ALL" -> VC80RunTime ---------- | CLSID (Whitelist) [HKCR\CLSID\{043B13A3-C479-48AF-9E98-E9F08A411670}] - (.-.) - C:\Windows\SysWOW64\UpdateDeploymentProvider.dll [HKCR\CLSID\{06ADA938-0FB0-4BC0-B19B-0A38AB17F182}] - (.TODO: (c) . - TODO: .) - C:\Program Files (x86)\QQ\Africa2003\ImageOle.dll [18/01/2005 05:29:32] [HKCR\CLSID\{0932B8A4-BBB4-4bc0-A8AB-91C626950C75}] - (.-.) - C:\WINDOWS\system32\LVUI2.dll [HKCR\CLSID\{09AC4892-81B7-4d39-B235-8F0DB0DAF4F8}] - (.-.) - C:\WINDOWS\system32\LVUI2.dll [HKCR\CLSID\{0C1F87AE-AE62-11D3-911C-00105A17B608}] - (.©2000 Dart Communications - PowerTCP© Winsock Controls.) - C:\WINDOWS\SysWow64\DartSock.dll [18/01/2020 01:02:26] [HKCR\CLSID\{1159F2AF-F989-4d11-8B34-9550029269BB}] - (.-.) - C:\WINDOWS\system32\LVUI2.dll [HKCR\CLSID\{15FD01A3-6E5D-4ECD-9EBD-1813CB3887A1}] - (.-.) - %windir%\system32\btpanui.dll [HKCR\CLSID\{179F3D56-1B0B-42B2-A962-59B7EF59FE1B}] - (.-.) - C:\Windows\SysWOW64\speech_onecore\engines\tts\MSTTSEngine_OneCore.dll [12/12/2019 09:27:05] [HKCR\CLSID\{19741013-C829-11D1-8233-0020AF3E97A0}] - (.-.) - C:\Windows\SysWow64\WSContextMenu.dll [20/01/2020 14:45:56] [HKCR\CLSID\{1CEBDE3E-6B91-484A-AF48-5E4F4ED6B1E1}] - (.-.) - C:\WINDOWS\System32\dmscript.dll [HKCR\CLSID\{22475926-4E06-4294-BD36-E42CB90C44EB}] - (.-.) - E:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\QMHips\QMHipsProxy32.dll [07/04/2020 00:14:24] [HKCR\CLSID\{2781761E-28E0-4109-99FE-B9D127C57AFE}] - (.-.) - "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\X86\MpOav.dll" [HKCR\CLSID\{2C5F9B72-7148-4D97-BFC9-68A0E076BEBD}] - (.-.) - C:\WINDOWS\System32\dmscript.dll [HKCR\CLSID\{2FE8F810-B2A5-11d0-A787-0000F803ABFC}] - (.-.) - C:\WINDOWS\system32\dplayx.dll [HKCR\CLSID\{371D0743-7A57-11D2-AD5A-00105A17B608}] - (.©2000 Dart Communications - PowerTCP© Winsock Controls.) - C:\WINDOWS\SysWow64\DartSock.dll [18/01/2020 01:02:26] [HKCR\CLSID\{4062C116-0270-11D3-8BCB-00600893B1B6}] - (.-.) - C:\WINDOWS\System32\dmscript.dll [HKCR\CLSID\{4108FA85-3586-11D3-8BD7-00600893B1B6}] - (.-.) - C:\WINDOWS\System32\dmscript.dll [HKCR\CLSID\{4516EC43-8F20-11D0-9B6D-0000C0781BC3}] - (.-.) - C:\WINDOWS\system32\d3dxof.dll [HKCR\CLSID\{4C8DD17E-7079-4c7e-96E5-A7AFDB12F132}] - (.-.) - C:\WINDOWS\system32\LVUI2.dll [HKCR\CLSID\{4EE17959-931E-49E4-A2C6-977ECF3628F3}] - (.-.) - C:\WINDOWS\System32\dmscript.dll [HKCR\CLSID\{4F99A075-5227-11D2-AD06-00105A17B608}] - (.©2000 Dart Communications - PowerTCP© Winsock Controls.) - C:\WINDOWS\SysWow64\DartSock.dll [18/01/2020 01:02:26] [HKCR\CLSID\{50079BC0-CF6C-11d3-912D-00105A17B608}] - (.©2000 Dart Communications - PowerTCP© Secure Controls.) - C:\WINDOWS\SysWow64\DartSecure2.dll [18/01/2020 01:02:29] [HKCR\CLSID\{513D916F-2A8E-4F51-AEAB-0CBC76FB1AF8}] - (.-.) - %windir%\system32\acppage.dll [HKCR\CLSID\{517539A3-905F-4755-9F94-D91B095A07CC}] - (.-.) - C:\WINDOWS\system32\LVUI2.dll [HKCR\CLSID\{51A00247-40A8-4845-9F17-7DBFCC9A8783}] - (.-.) - C:\Program Files (x86)\FreeCodecPack\Haali\avi.dll [03/04/2020 11:39:53] [HKCR\CLSID\{53D9DE0B-FC61-4650-9773-74D13CC7E582}] - (.-.) - C:\Program Files (x86)\FreeCodecPack\Haali\mkx.dll [03/04/2020 11:39:54] [HKCR\CLSID\{5872C980-0AAF-4cdb-A62D-4F453DA2EFAD}] - (.-.) - C:\WINDOWS\system32\LVUI2.dll [HKCR\CLSID\{640167b4-59b0-47a6-b335-a6b3c0695aea}] - (.-.) - C:\WINDOWS\system32\audiodev.dll [HKCR\CLSID\{64F2005C-6CF5-4652-B94F-600360B15B27}] - (.-.) - C:\Program Files (x86)\FreeCodecPack\Haali\mkx.dll [03/04/2020 11:39:54] [HKCR\CLSID\{65A3CD37-3208-45B1-8F10-5F5BAD78DDD8}] - (.-.) - C:\WINDOWS\system32\LVUI2.dll [HKCR\CLSID\{6691680C-8B1C-49ec-9254-8FFBE471C256}] - (.-.) - C:\WINDOWS\system32\LVUI2.dll [HKCR\CLSID\{75579960-3DAF-4389-9CFA-C2BB270C91E6}] - (.All rights reserved. - ATLMovie Module.) - C:\WINDOWS\SysWow64\WS_ATLMovie.dll [20/01/2020 14:49:29] [HKCR\CLSID\{760A8F35-97E7-479D-AAF5-DA9EFF95D751}] - (.-.) - C:\Program Files (x86)\FreeCodecPack\Haali\dxr.dll [03/04/2020 11:39:53] [HKCR\CLSID\{79BA9E00-B6EE-11D1-86BE-00C04FBF8FEF}] - (.-.) - C:\WINDOWS\System32\dmband.dll [HKCR\CLSID\{810B5013-E88D-11D2-8BC1-00600893B1B6}] - (.-.) - C:\WINDOWS\System32\dmscript.dll [HKCR\CLSID\{8E8B4A31-408B-4929-86A4-A9FA9F01BA43}] - (.-.) - C:\Program Files (x86)\FreeCodecPack\Haali\dxr.dll [03/04/2020 11:39:53] [HKCR\CLSID\{93D500FE-C927-11D3-912C-00105A17B608}] - (.©2000 Dart Communications - PowerTCP© Certificate Controls.) - C:\WINDOWS\SysWow64\DartCertificate.dll [18/01/2020 01:02:28] [HKCR\CLSID\{93D50102-C927-11D3-912C-00105A17B608}] - (.©2000 Dart Communications - PowerTCP© Certificate Controls.) - C:\WINDOWS\SysWow64\DartCertificate.dll [18/01/2020 01:02:28] [HKCR\CLSID\{93D50104-C927-11D3-912C-00105A17B608}] - (.©2000 Dart Communications - PowerTCP© Certificate Controls.) - C:\WINDOWS\SysWow64\DartCertificate.dll [18/01/2020 01:02:28] [HKCR\CLSID\{A36C253D-CEE4-4BCA-9CC2-E03CF6BBB054}] - (.-.) - C:\Program Files (x86)\FreeCodecPack\Haali\dxr.dll [03/04/2020 11:39:53] [HKCR\CLSID\{A6098E79-9C50-4F87-8973-5FB4532C93D8}] - (.-.) - %windir%\system32\btpanui.dll [HKCR\CLSID\{A8004167-E235-4148-A4E5-7C3108100200}] - (.©Conexant Systems Inc. - Conexant APO.) - C:\WINDOWS\SysWow64\RTCOM\CX32APO.dll [08/09/2016 14:59:03] [HKCR\CLSID\{A861C6E2-FCFC-11D2-8BC9-00600893B1B6}] - (.-.) - C:\WINDOWS\System32\dmscript.dll [HKCR\CLSID\{AA4CE0BA-E016-4FE4-B44C-3E4208100200}] - (.©Conexant Systems Inc. - Conexant APO.) - C:\WINDOWS\SysWow64\RTCOM\CX32APO.dll [08/09/2016 14:59:03] [HKCR\CLSID\{AA804471-0CB9-4AE3-B886-192560624193}] - (.©2000 Dart Communications - PowerTCP© Certificate Controls.) - C:\WINDOWS\SysWow64\DartCertificate.dll [18/01/2020 01:02:28] [HKCR\CLSID\{AB11D9E2-CE9A-11d3-912D-00105A17B608}] - (.©2000 Dart Communications - PowerTCP© Secure Controls.) - C:\WINDOWS\SysWow64\DartSecure2.dll [18/01/2020 01:02:29] [HKCR\CLSID\{B22FE43C-D1E8-432A-A862-9F83D5F04732}] - (.©2000 Dart Communications - PowerTCP© Winsock Controls.) - C:\WINDOWS\SysWow64\DartSock.dll [18/01/2020 01:02:26] [HKCR\CLSID\{B3DE7EDC-0CD4-4d07-B1C5-92219CD475CC}] - (.-.) - C:\Program Files (x86)\FreeCodecPack\Haali\mp4.dll [03/04/2020 11:39:54] [HKCR\CLSID\{B7125B4E-CA73-47f1-AEAA-6B3EFA553F5A}] - (.-.) - C:\Program Files (x86)\Trillian\events.dll [HKCR\CLSID\{B841F346-4835-4de8-AA5E-2E7CD2D4C435}] - (.-.) - C:\Program Files (x86)\FreeCodecPack\Haali\ts.dll [03/04/2020 11:39:54] [HKCR\CLSID\{BD4FB4BE-809D-487b-ADD6-F7D164247E52}] - (.-.) - C:\Program Files (x86)\FreeCodecPack\Haali\mkx.dll [03/04/2020 11:39:54] [HKCR\CLSID\{C05D20C2-15E5-4567-95C7-1546EF9C52F3}] - (.-.) - C:\Windows\SysWOW64\windows.applicationmodel.conversationalagent.proxystub.dll [12/12/2019 09:26:42] [HKCR\CLSID\{C5621364-87CC-4731-8947-929CAE75323E}] - (.-.) - %windir%\system32\F12\msdbg2.dll [HKCR\CLSID\{C64501F6-E6E6-451f-A150-25D0839BC510}] - (.-.) - C:\Windows\SysWOW64\speech\engines\tts\MSTTSEngine.dll [12/12/2019 09:26:50] [HKCR\CLSID\{C70EB77F-EFD4-4678-A27B-BF1648F30D04}] - (.-.) - C:\WINDOWS\System32\dmscript.dll [HKCR\CLSID\{CA4FC24B-C65C-11D1-AA6F-000000000000}] - (.©2000 Dart Communications - PowerTCP© Winsock Controls.) - C:\WINDOWS\SysWow64\DartSock.dll [18/01/2020 01:02:26] [HKCR\CLSID\{D1EB6D20-8923-11d0-9D97-00A0C90A43CB}] - (.-.) - C:\WINDOWS\system32\dplayx.dll [HKCR\CLSID\{D2AC2894-B39B-11D1-8704-00600893B1BD}] - (.-.) - C:\WINDOWS\System32\dmband.dll [HKCR\CLSID\{D3075F87-A7BD-4231-9F6A-60C5E07374A7}] - (.-.) - %windir%\system32\acppage.dll [HKCR\CLSID\{D6FCA954-F7AE-4EAC-8783-85F5E4ABD840}] - (.-.) - %windir%\system32\F12\pdmproxy100.dll [HKCR\CLSID\{DACE006F-9846-4D70-A0BE-6EF90FA99392}] - (.-.) - C:\Windows\SysWOW64\windows.applicationmodel.conversationalagent.internal.proxystub.dll [12/12/2019 09:26:42] [HKCR\CLSID\{DB43B405-43AA-4f01-82D8-D84D47E6019C}] - (.-.) - C:\Program Files (x86)\FreeCodecPack\Haali\ogm.dll [03/04/2020 11:39:54] [HKCR\CLSID\{DDD136CE-517B-11D2-AD03-00105A17B608}] - (.©2000 Dart Communications - PowerTCP© Winsock Controls.) - C:\WINDOWS\SysWow64\DartSock.dll [18/01/2020 01:02:26] [HKCR\CLSID\{DE7371F4-4CCD-47cd-B12B-8887C9125895}] - (.-.) - C:\WINDOWS\system32\LVUI2.dll [HKCR\CLSID\{e8cc4cbe-fdff-11d0-b865-00a0c9081c1d}] - (.-.) - C:\Program Files\Common Files\System\Ole DB\msdaora.dll [HKCR\CLSID\{e8cc4cbf-fdff-11d0-b865-00a0c9081c1d}] - (.-.) - C:\Program Files\Common Files\System\Ole DB\msdaora.dll [HKCR\CLSID\{E9D55102-9683-11D2-BA68-0040053687FE}] - (.©2000 Dart Communications - PowerTCP© Winsock Controls.) - C:\WINDOWS\SysWow64\DartSock.dll [18/01/2020 01:02:26] [HKCR\CLSID\{EBF2320A-2502-11D3-8BD1-00600893B1B6}] - (.-.) - C:\WINDOWS\System32\dmscript.dll [HKCR\CLSID\{FCCB2C0A-8305-11d3-B327-00C04F79563A}] - (.©2000 Dart Communications - PowerTCP© Secure Controls.) - C:\WINDOWS\SysWow64\DartSecure2.dll [18/01/2020 01:02:29] [HKCR\CLSID\{FCCB2C0B-8305-11d3-B327-00C04F79563A}] - (.©2000 Dart Communications - PowerTCP© Secure Controls.) - C:\WINDOWS\SysWow64\DartSecure2.dll [18/01/2020 01:02:29] [HKCR\CLSID\{fdb00e52-a214-4aa1-8fba-4357bb0072ec}] - (.-.) - %windir%\system32\amsi.dll ---------- | Installer [HKCR\Installer\Products\026F45BF555911A362BC0B724CDD2F06] : Imaging Designer [HKCR\Installer\Products\085E718E81368CFA122023C23711E74C] : CCC Help Polish -> C:\WINDOWS\Installer\{E817E580-6318-AFC8-2102-322C73117EC4}\ARPPRODUCTICON.exe [HKCR\Installer\Products\0B9FD51D89A3FEB47B5DCFA3AE744854] : COMODO Secure Shopping -> C:\WINDOWS\Installer\{D15DF9B0-3A98-4BEF-B7D5-FC3AEA478445}\icon.ico [HKCR\Installer\Products\0BE6E9B4DEE047E449979F283C52F417] : SQL Server Browser for SQL Server 2012 -> C:\WINDOWS\Installer\{4B9E6EB0-0EED-4E74-9479-F982C3254F71}\ARPIco [HKCR\Installer\Products\0D4A6A5A500250A2E212948580FC59DE] : CCC Help Norwegian -> C:\WINDOWS\Installer\{A5A6A4D0-2005-2A05-2E21-495808CF95ED}\ARPPRODUCTICON.exe [HKCR\Installer\Products\0F76E360892CA2A8F06A481C35224A0E] : ccc-utility64 -> C:\WINDOWS\Installer\{063E67F0-C298-8A2A-0FA6-84C15322A4E0}\ARPPRODUCTICON.exe [HKCR\Installer\Products\18555481990E8AB4CBB63FB4F26006C0] : Google Toolbar for Internet Explorer [HKCR\Installer\Products\1A15D4212C3FEA548B213DAC17420739] : SQL Server 2012 Common Files [HKCR\Installer\Products\1D5F27E1E3559FFC603AC8A55F70DDC1] : CCC Help French -> C:\WINDOWS\Installer\{1E72F5D1-553E-CFF9-06A3-8C5AF507DD1C}\ARPPRODUCTICON.exe [HKCR\Installer\Products\1E6AF1658349876ED2A2AC998FDDBF0C] : Windows Assessment Services - Client (AMD64 Architecture Specific, Client SKU) [HKCR\Installer\Products\234989D47D950A67DD159B46226FFFF7] : Windows Phone Common Packaging and Test Tools (NT_x86_fre) [HKCR\Installer\Products\241A5D4605DBE627DEE92D05D8A2712E] : Catalyst Control Center InstallProxy -> C:\WINDOWS\Installer\{64D5A142-BD50-726E-ED9E-D2508D2A17E2}\ARPPRODUCTICON.exe [HKCR\Installer\Products\25E8C8C9A2A4D674B9C07CFE43048F0F] : [HKCR\Installer\Products\2C31622C4A7C16749A6011E6DCE44777] : SQL Server 2012 Database Engine Services [HKCR\Installer\Products\2F12AC03A109BD444AF3CF13DCF04239] : Sql Server Customer Experience Improvement Program -> C:\WINDOWS\Installer\{30CA21F2-901A-44DB-A43F-FC31CD0F2493}\ARPIco [HKCR\Installer\Products\314F814C75D66CA468B2661BDCBDFC29] : Banque Populaire -> C:\WINDOWS\Installer\{C418F413-6D57-4AC6-862B-66B1CDDBCF92}\ARPPRODUCTICON.exe [HKCR\Installer\Products\33305D78435EA394E889A094CB826FB4] : SQL Server 2012 Database Engine Services [HKCR\Installer\Products\36DE92D79F487CE44BF999A4A313592B] : SQL Server 2012 Common Files [HKCR\Installer\Products\37E58BB129D0A406A0FA7CAA5D3E3A6C] : CCC Help English -> C:\WINDOWS\Installer\{1BB85E73-0D92-604A-0AAF-C7AAD5E3A3C6}\ARPPRODUCTICON.exe [HKCR\Installer\Products\39753950C43A27243316A79FEAEE6594] : Imaging And Configuration Designer [HKCR\Installer\Products\3978828F6B15FE74F2393D777666F35C] : Assessments on Client [HKCR\Installer\Products\3A56CBC8BA0456EDC21B99A7DB8ADF86] : CCC Help Turkish -> C:\WINDOWS\Installer\{8CBC65A3-40AB-DE65-2CB1-997ABDA8FD68}\ARPPRODUCTICON.exe [HKCR\Installer\Products\3C1BCDF6CDE9CBC374C3DD58DEE54049] : CCC Help German -> C:\WINDOWS\Installer\{6FDCB1C3-9EDC-3CBC-473C-DD85ED5E0494}\ARPPRODUCTICON.exe [HKCR\Installer\Products\3D4250324BDACC96A287698D973E22B1] : Windows PE x86 x64 [HKCR\Installer\Products\401EEA7469FB704E3DEF08BB4D72234F] : Windows PE x86 x64 wims [HKCR\Installer\Products\4171AC28AE31914F19EF2138444247E5] : CCC Help Italian -> C:\WINDOWS\Installer\{82CA1714-13EA-F419-91FE-12834424745E}\ARPPRODUCTICON.exe [HKCR\Installer\Products\42D78011D76588D7966C7D0AB8F5C474] : Catalyst Control Center - Branding -> C:\WINDOWS\Installer\{11087D24-567D-7D88-69C6-D7A08B5F4C47}\ARPPRODUCTICON.exe [HKCR\Installer\Products\4673AE1C831172EADA3645B9DA99AB51] : CCC Help Japanese -> C:\WINDOWS\Installer\{C1EA3764-1138-AE27-AD63-549BAD99BA15}\ARPPRODUCTICON.exe [HKCR\Installer\Products\47B800D0226053F770197C3624F79396] : Volume Activation Management Tool [HKCR\Installer\Products\48936C4B94C94393EA45629BE77B5D13] : Google Chrome -> C:\WINDOWS\Installer\{B4C63984-9C49-3934-AE54-26B97EB7D531}\icon.ico [HKCR\Installer\Products\496A34161EF56FDB7FE8F4B73F9E14B9] : Toolkit Documentation [HKCR\Installer\Products\49F5A7C59E20D5C45A491B1F805669A5] : AntimalwareEngine -> C:\WINDOWS\Installer\{5C7A5F94-02E9-4C5D-A594-B1F10865965A}\ARPPRODUCTICON.exe [HKCR\Installer\Products\4EA42A62D9304AC4784BF2468120120F] : Java 8 Update 221 (64-bit) -> C:\Program Files\Java\jre1.8.0_221\\bin\javaws.exe [HKCR\Installer\Products\4EA42A62D9304AC4784BF2468120140F] : Java 8 Update 241 (64-bit) -> C:\Program Files\Java\jre1.8.0_241\\bin\javaws.exe [HKCR\Installer\Products\50848F456110F764783198D9CF742253] : SQL Server 2012 Database Engine Shared [HKCR\Installer\Products\54A4373778D64264E99EC89C92F1CF21] : e-Carte Bleue La Banque Postale -> C:\WINDOWS\Installer\{73734A45-6D87-4624-9EE9-8CC9291FFC12}\ARPPRODUCTICON.exe [HKCR\Installer\Products\5840830599F91AE4DB8740C5E5B1DAA0] : VPN Shield -> C:\WINDOWS\Installer\{50380485-9F99-4EA1-BD78-045C5E1BAD0A}\InstallerIcon [HKCR\Installer\Products\59EBDD8FEBCD5B303595ED631041E612] : CCC Help Danish -> C:\WINDOWS\Installer\{F8DDBE95-DCBE-03B5-5359-DE3601146E21}\ARPPRODUCTICON.exe [HKCR\Installer\Products\5E16E053C2C6C3F2A341E790A46B3D0A] : CCC Help Spanish -> C:\WINDOWS\Installer\{350E61E5-6C2C-2F3C-3A14-7E094AB6D3A0}\ARPPRODUCTICON.exe [HKCR\Installer\Products\66122D971C874DA2407EDB22DB85DF64] : CCC Help Chinese Traditional -> C:\WINDOWS\Installer\{79D22166-78C1-2AD4-04E7-BD22BD58FD46}\ARPPRODUCTICON.exe [HKCR\Installer\Products\66F055D925D5AC92825BEEC0C2C0FDEB] : Windows Deployment Customizations [HKCR\Installer\Products\68ADF0FAB7E6C6A1154D34FA0581E12D] : AMD Catalyst Control Center -> C:\WINDOWS\Installer\{AF0FDA86-6E7B-1A6C-51D4-43AF50181ED2}\ARPPRODUCTICON.exe [HKCR\Installer\Products\72BCCFF8D2EEF85DA5DBDEC5609BE118] : CCC Help Swedish -> C:\WINDOWS\Installer\{8FFCCB27-EE2D-D58F-5ABD-ED5C06B91E81}\ARPPRODUCTICON.exe [HKCR\Installer\Products\73C44F0DB22A3374BB7A689C4F897852] : SQL Server 2012 Database Engine Shared [HKCR\Installer\Products\7541215B621026E4CBFBD67C7CD3E9A4] : Oracle VM VirtualBox 4.3.12_ZZZZ -> C:\WINDOWS\Installer\{B5121457-0126-4E62-BCBF-6DC7C73D9E4A}\IconVirtualBox [HKCR\Installer\Products\77E99DA1CC73E44793AC766FDF4365A5] : Catalyst Control Center Localization All -> C:\WINDOWS\Installer\{1AD99E77-37CC-744E-39CA-67F6FD34565A}\ARPPRODUCTICON.exe [HKCR\Installer\Products\797ECA52ADBEB4E090F6F99EA7E1A2F6] : CCC Help Russian -> C:\WINDOWS\Installer\{25ACE797-EBDA-0E4B-096F-9FE97A1E2A6F}\ARPPRODUCTICON.exe [HKCR\Installer\Products\815BF5C8C87E0F8FFBCEE8CA565F0130] : Windows Assessment Services - Client (Client SKU) [HKCR\Installer\Products\849FBE4FE00FFE9298C41DA017F889D1] : Windows Assessment Toolkit [HKCR\Installer\Products\8AC6637E9717EA777E21AB817DA0A070] : AMD Fuel -> C:\WINDOWS\Installer\{E7366CA8-7179-77AE-E712-BA18D70A0A07}\ARPPRODUCTICON.exe [HKCR\Installer\Products\8BA31D3CA8644710D160BDA9EAA831B1] : CCC Help Czech -> C:\WINDOWS\Installer\{C3D13AB8-468A-0174-1D06-DB9AAE8A131B}\ARPPRODUCTICON.exe [HKCR\Installer\Products\93BAD29AC2E44034A96BCB446EB8552E] : Google Update Helper [HKCR\Installer\Products\93CB8D4505CF0C84EA9FBA56916489C9] : Watchdog PC Cleaner 2019 -> C:\WINDOWS\Installer\{54D8BC39-FC50-48C0-AEF9-AB651946989C}\icon.exe [HKCR\Installer\Products\9C282A3CB8C436A44B94A360F43B877D] : Apple Application Support (32 bits) -> C:\WINDOWS\Installer\{C3A282C9-4C8B-4A63-B449-3A064FB378D7}\WinInstall.ico [HKCR\Installer\Products\9D06F528336225D42B0BD51A3434B3CB] : Backup and Sync from Google -> C:\WINDOWS\Installer\{825F60D9-2633-4D52-B2B0-5DA143433BBC}\DriveIcon [HKCR\Installer\Products\9DAF6B7941F664CC13561F87E5CC2E55] : WPTx64 [HKCR\Installer\Products\A089CE062ADB6BC44A720BA745894BAC] : Google Update Helper [HKCR\Installer\Products\A2B16319147F195E03B3E49F753FAB1F] : Windows Assessment Toolkit (AMD64 Architecture Specific) [HKCR\Installer\Products\A748067A9D4CFE7E17F6706CBC6F1B74] : CCC Help Thai -> C:\WINDOWS\Installer\{A760847A-C4D9-E7EF-716F-07C6CBF6B147}\ARPPRODUCTICON.exe [HKCR\Installer\Products\A927A03CAB9E8F73C38546DAF9D16449] : Imaging Tools Support [HKCR\Installer\Products\ADEDAA7FA3329701DC5130EA0B050F6C] : User State Migration Tool [HKCR\Installer\Products\B032FDB23734E444BB9CC9A15EF8A88F] : Paragon Partition Manager™ 17 CE [HKCR\Installer\Products\B40275EDE6E40E4418A43D28B3F554EF] : Audials 2020 -> C:\WINDOWS\Installer\{DE57204B-4E6E-44E0-814A-D3823B5F45FE}\AudialsOne_installer.exe [HKCR\Installer\Products\B54B166CA2D1C7FA720D4BFF6D074AEF] : Kits Configuration Installer [HKCR\Installer\Products\C0DBE580E42F49BED633A222FE465CFC] : CCC Help Finnish -> C:\WINDOWS\Installer\{085EBD0C-F24E-EB94-6D33-2A22EF64C5CF}\ARPPRODUCTICON.exe [HKCR\Installer\Products\C2FFE5CC92CEF0342B5FC7ACD16D60EF] : SocialMediaBlocker Personal Edition -> C:\WINDOWS\Installer\{CC5EFF2C-EC29-430F-B2F5-7CCA1DD606FE}\GooglePasswordDecryptor.exe [HKCR\Installer\Products\C351938B2D4DC98F0533A061C02607B6] : CCC Help Portuguese -> C:\WINDOWS\Installer\{B839153C-D4D2-F89C-5033-0A160C62706B}\ARPPRODUCTICON.exe [HKCR\Installer\Products\C51E70D24A9A6D8D3D1729CE78975E78] : CCC Help Hungarian -> C:\WINDOWS\Installer\{2D07E15C-A9A4-D8D6-D371-92EC8779E587}\ARPPRODUCTICON.exe [HKCR\Installer\Products\CDC10E4C3600C3943B38C9F4FCA7987F] : PerfectDisk Professional -> C:\WINDOWS\Installer\{C4E01CDC-0063-493C-B383-9C4FCF7A89F7}\ARPPRODUCTICON.exe [HKCR\Installer\Products\CE67D3639B5BB7D5F0951C39FFF630CF] : Windows System Image Manager on amd64 [HKCR\Installer\Products\D2DAD9455052C402CE859508F76E0E73] : WPT Redistributables [HKCR\Installer\Products\DED17A5318AD313153A2CEA8B072FDB3] : CCC Help Chinese Standard -> C:\WINDOWS\Installer\{35A71DED-DA81-1313-352A-EC8A0B27DF3B}\ARPPRODUCTICON.exe [HKCR\Installer\Products\E065AE25F05EF8CD41D6B1365184AB92] : Windows Deployment Tools [HKCR\Installer\Products\E128CD23D7A48784EB8E33F71A357D2F] : Update for Windows 10 for x64-based Systems (KB4023057) [HKCR\Installer\Products\E3A623703B208701527D8B66B68AEF51] : CCC Help Korean -> C:\WINDOWS\Installer\{07326A3E-02B3-1078-25D7-B8666BA8FE15}\ARPPRODUCTICON.exe [HKCR\Installer\Products\E4AF4541CB851FE2A99141B7E094E930] : UEV Tools on amd64 [HKCR\Installer\Products\E9530420C4A64884E9493B790AD298C3] : Remote Desktop Connection Manager -> C:\WINDOWS\Installer\{0240359E-6A4C-4884-9E94-B397A02D893C}\ARPPRODUCTICON.exe [HKCR\Installer\Products\EA58071E856963AAEA36A29785D1B846] : MXAx64 [HKCR\Installer\Products\EC9283ECB955AFB3AB7EF047F5FADC82] : Application Compatibility Toolkit [HKCR\Installer\Products\EE1957657F58D4E4EA82DF56CF4F2F10] : COMODO Internet Security Premium [HKCR\Installer\Products\EE47477FC6BEB78C88FA33018C840E86] : CCC Help Greek -> C:\WINDOWS\Installer\{F77474EE-EB6C-C87B-88AF-3310C848E068}\ARPPRODUCTICON.exe [HKCR\Installer\Products\F60730A4A66673047777F5728467D401] : Java Auto Updater [HKCR\Installer\Products\F75D59AC3CF97DD0C76363F2478D0CE4] : CCC Help Dutch -> C:\WINDOWS\Installer\{CA95D57F-9FC3-0DD7-7C36-362F74D8C04E}\ARPPRODUCTICON.exe [HKCR\Installer\Products\FD91ED4468AAA794C9ACF4250DFB9F8A] : AdAwareInstaller -> C:\WINDOWS\Installer\{44DE19DF-AA86-497A-9CCA-4F52D0BFF9A8}\ARPPRODUCTICON.exe ---------- | ADS ---------- | Drives ---------- | MBR 64 bits not supported by MBR.exe, Dump : C:\QuickDiag\MBR.Bin ---------- | 20 LastEventLog La création du contexte d’activation a échoué pour « C:\Program Files (x86)\Samsung\SideSync4\SideSync.exe ». Erreur dans le fichier de manifeste ou de stratégie «  » à la ligne . Une version de composant nécessaire à l’application est en conflit avec une autre version de composant déjà active. Les composants en conflit sont : Composant 1 : C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19536.1000_none_6d05df02e0ffcff1.manifest. Composant 2 : C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19536.1000_none_b4b315d9f57bf8f7.manifest. ------------ Échec de la création d’un point de restauration (Processus = C:\WINDOWS\system32\msiexec.exe /V ; Description = Installé OUTDATEfighter. ; Erreur = 0x8007043c). ------------ Échec de la création d’un point de restauration (Processus = C:\WINDOWS\system32\msiexec.exe /V ; Description = Installed OUTDATEfighter. ; Erreur = 0x8007043c). ------------ Nom de l’application défaillante bugreport.exe, version : 12.3.26607.901, horodatage : 0x5d10be3f Nom du module défaillant : bugreport.exe, version : 12.3.26607.901, horodatage : 0x5d10be3f Code d’exception : 0xc0000005 Décalage d’erreur : 0x00018bff ID du processus défaillant : 0x1a40 Heure de début de l’application défaillante : 0x01d60ccd7315985f Chemin d’accès de l’application défaillante : e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\bugreport.exe Chemin d’accès du module défaillant: e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\bugreport.exe ID de rapport : 26a7a7a8-95cf-435e-9d4d-fdaaee212701 Nom complet du package défaillant : ID de l’application relative au package défaillant : ------------ Nom de l’application défaillante bugreport.exe, version : 12.3.26607.901, horodatage : 0x5d10be3f Nom du module défaillant : bugreport.exe, version : 12.3.26607.901, horodatage : 0x5d10be3f Code d’exception : 0xc0000005 Décalage d’erreur : 0x00018bff ID du processus défaillant : 0x788 Heure de début de l’application défaillante : 0x01d60ccd7315981a Chemin d’accès de l’application défaillante : e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\bugreport.exe Chemin d’accès du module défaillant: e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\bugreport.exe ID de rapport : 3664fdca-e026-4be9-8a1b-b838ba8cecd7 Nom complet du package défaillant : ID de l’application relative au package défaillant : ------------ Nom de l’application défaillante IEXPLORE.EXE, version : 11.0.19536.1000, horodatage : 0x9725c1a0 Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00000000 ID du processus défaillant : 0x18a0 Heure de début de l’application défaillante : 0x01d60cbcdfc5fed8 Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE Chemin d’accès du module défaillant: unknown ID de rapport : 0f3b7e46-79d8-47d9-b0b5-bd8bc3551282 Nom complet du package défaillant : ID de l’application relative au package défaillant : ------------ Nom de l’application défaillante IEXPLORE.EXE, version : 11.0.19536.1000, horodatage : 0x9725c1a0 Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00000000 ID du processus défaillant : 0xcc4 Heure de début de l’application défaillante : 0x01d60c61fa028264 Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE Chemin d’accès du module défaillant: unknown ID de rapport : 60c1d226-ce9e-4e08-aced-347ab1adeafe Nom complet du package défaillant : ID de l’application relative au package défaillant : ------------ Nom de l’application défaillante IEXPLORE.EXE, version : 11.0.19536.1000, horodatage : 0x9725c1a0 Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00000000 ID du processus défaillant : 0x12f4 Heure de début de l’application défaillante : 0x01d60cbcdfc46043 Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE Chemin d’accès du module défaillant: unknown ID de rapport : c70a670c-ebeb-43d2-aa19-1a9817ab2f77 Nom complet du package défaillant : ID de l’application relative au package défaillant : ------------ Nom de l’application défaillante bugreport.exe, version : 12.3.26607.901, horodatage : 0x5d10be3f Nom du module défaillant : bugreport.exe, version : 12.3.26607.901, horodatage : 0x5d10be3f Code d’exception : 0xc0000005 Décalage d’erreur : 0x00018bff ID du processus défaillant : 0x134 Heure de début de l’application défaillante : 0x01d60cbce05175e4 Chemin d’accès de l’application défaillante : e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\bugreport.exe Chemin d’accès du module défaillant: e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\bugreport.exe ID de rapport : e8b1496f-f1bf-4123-a675-562b2df2e834 Nom complet du package défaillant : ID de l’application relative au package défaillant : ------------ Nom de l’application défaillante bugreport.exe, version : 12.3.26607.901, horodatage : 0x5d10be3f Nom du module défaillant : bugreport.exe, version : 12.3.26607.901, horodatage : 0x5d10be3f Code d’exception : 0xc0000005 Décalage d’erreur : 0x00018bff ID du processus défaillant : 0x19c4 Heure de début de l’application défaillante : 0x01d60cbce05892dc Chemin d’accès de l’application défaillante : e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\bugreport.exe Chemin d’accès du module défaillant: e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\bugreport.exe ID de rapport : 5ac706a6-d6b2-4d2b-b4bc-6dde385e771e Nom complet du package défaillant : ID de l’application relative au package défaillant : ------------ Nom de l’application défaillante IEXPLORE.EXE, version : 11.0.19536.1000, horodatage : 0x9725c1a0 Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00000000 ID du processus défaillant : 0x1aec Heure de début de l’application défaillante : 0x01d60c5d5f1cfcc5 Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE Chemin d’accès du module défaillant: unknown ID de rapport : a95f9851-f625-4982-9e3d-7a6b9f917503 Nom complet du package défaillant : ID de l’application relative au package défaillant : ------------ Nom de l’application défaillante IEXPLORE.EXE, version : 11.0.19536.1000, horodatage : 0x9725c1a0 Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00000000 ID du processus défaillant : 0x1008 Heure de début de l’application défaillante : 0x01d60c61f9ffcc33 Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE Chemin d’accès du module défaillant: unknown ID de rapport : d973d916-5674-491c-a96f-556f46b0511e Nom complet du package défaillant : ID de l’application relative au package défaillant : ------------ La création du contexte d’activation a échoué pour « C:\Program Files (x86)\Samsung\SideSync4\SideSync.exe ». Erreur dans le fichier de manifeste ou de stratégie «  » à la ligne . Une version de composant nécessaire à l’application est en conflit avec une autre version de composant déjà active. Les composants en conflit sont : Composant 1 : C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19536.1000_none_6d05df02e0ffcff1.manifest. Composant 2 : C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19536.1000_none_b4b315d9f57bf8f7.manifest. ------------ Nom de l’application défaillante bugreport.exe, version : 12.3.26607.901, horodatage : 0x5d10be3f Nom du module défaillant : bugreport.exe, version : 12.3.26607.901, horodatage : 0x5d10be3f Code d’exception : 0xc0000005 Décalage d’erreur : 0x00018bff ID du processus défaillant : 0x74c Heure de début de l’application défaillante : 0x01d60c61fa58d044 Chemin d’accès de l’application défaillante : e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\bugreport.exe Chemin d’accès du module défaillant: e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\bugreport.exe ID de rapport : 1e3b8816-c825-4b58-81dc-94bef8450a83 Nom complet du package défaillant : ID de l’application relative au package défaillant : ------------ Nom de l’application défaillante bugreport.exe, version : 12.3.26607.901, horodatage : 0x5d10be3f Nom du module défaillant : bugreport.exe, version : 12.3.26607.901, horodatage : 0x5d10be3f Code d’exception : 0xc0000005 Décalage d’erreur : 0x00018bff ID du processus défaillant : 0xdc Heure de début de l’application défaillante : 0x01d60c61fa5bfab2 Chemin d’accès de l’application défaillante : e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\bugreport.exe Chemin d’accès du module défaillant: e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\bugreport.exe ID de rapport : 774e7d76-c0c1-4c66-8b95-82df34873b35 Nom complet du package défaillant : ID de l’application relative au package défaillant : ------------ Nom de l’application défaillante IEXPLORE.EXE, version : 11.0.19536.1000, horodatage : 0x9725c1a0 Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00000000 ID du processus défaillant : 0x158c Heure de début de l’application défaillante : 0x01d60c61e88ae84d Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE Chemin d’accès du module défaillant: unknown ID de rapport : f5853d50-b95b-46ce-b690-1ddadc172810 Nom complet du package défaillant : ID de l’application relative au package défaillant : ------------ Nom de l’application défaillante bugreport.exe, version : 12.3.26607.901, horodatage : 0x5d10be3f Nom du module défaillant : bugreport.exe, version : 12.3.26607.901, horodatage : 0x5d10be3f Code d’exception : 0xc0000005 Décalage d’erreur : 0x00018bff ID du processus défaillant : 0x194c Heure de début de l’application défaillante : 0x01d60c61e917cede Chemin d’accès de l’application défaillante : e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\bugreport.exe Chemin d’accès du module défaillant: e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26607.901\bugreport.exe ID de rapport : 9b4a8a74-680c-41dd-a0da-3c895151b9ca Nom complet du package défaillant : ID de l’application relative au package défaillant : ------------ Nom de l’application défaillante IEXPLORE.EXE, version : 11.0.19536.1000, horodatage : 0x9725c1a0 Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00000000 ID du processus défaillant : 0x788 Heure de début de l’application défaillante : 0x01d60c3aaaa34ddd Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE Chemin d’accès du module défaillant: unknown ID de rapport : 03adf32e-ccb8-4cce-8669-6a646105d57f Nom complet du package défaillant : ID de l’application relative au package défaillant : ------------ Nom de l’application défaillante bugreport.exe, version : 12.3.26600.901, horodatage : 0x5c470242 Nom du module défaillant : bugreport.exe, version : 12.3.26600.901, horodatage : 0x5c470242 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00018bff ID du processus défaillant : 0xdfc Heure de début de l’application défaillante : 0x01d60c5d64a95b98 Chemin d’accès de l’application défaillante : e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26600.901\bugreport.exe Chemin d’accès du module défaillant: e:\Program Files (x86)\Tencent\QQPCMgr\12.3.26600.901\bugreport.exe ID de rapport : 1311a3a7-de03-4d42-856b-c18f9735314a Nom complet du package défaillant : ID de l’application relative au package défaillant : ------------ ----------( EOF)---------- - 12073 | 16:18:10