~ ZHPDiag v2022.4.10.24 Par Nicolas Coolman (2022/04/10) ~ Démarré par Mr_GT (Administrator) (2022/04/10 17:01:30) ~ Assistance: https://forum.nicolascoolman.eu/ ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Certificate ZHPDiag: Legal ~ Etat de la version: ~ Mode: Scanner ~ Rapport: C:\Users\Mr_GT\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Mr_GT\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 10 Pro, 64-bit (Build 19043) =>.Microsoft Corporation ---\\ NAVIGATEURS INTERNET (3) - 0s ~ GCIE: Google Chrome v100.0.4896.75 ~ MSIE: Internet Explorer v11.789.19041.0 ~ OBIE: Microsoft Edge v100.0.1185.36 ---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (7) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows(R) Operating System, VOLUME_KMSCLIENT channel Windows ID Activation : OK ~ Windows Partial Key : T83GX ~ Windows Remaining Initializations Number : 1001 Windows Automatic Updates : OK ---\\ LOGICIELS DE PROTECTION (2) - 1s Windows Defender W10 (Activate) (Protection) Malwarebytes version 4.3.0.98 v4.3.0.98 (Protection) ---\\ SURVEILLANCE LOGICIEL (1) - 1s ~ Adobe Acrobat Reader DC - Français (Surveillance) ---\\ INFORMATIONS SUR LE SYSTÈME (6) - 0s ~ Operating System: Intel64 Family 6 Model 158 Stepping 9, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 33491.904 MB (91% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 45 GB (19%) free of 227 GB : OK =>.Disk Space ---\\ MODE DE CONNEXION AU SYSTÈME (3) - 0s ~ Computer Name: DESKTOP-RUT1CQG ~ User Name: Mr_GT ~ Logged in as Administrator ---\\ ÉNUMÉRATION DES UNITÉS DE STOCKAGE (4) - 0s ~ Drive C: has 45 GB free of 227 GB (System) ~ Drive D: has 3442 GB free of 3815 GB ~ Drive E: has 109 GB free of 610 GB ~ Drive G: has 394 GB free of 476 GB ---\\ ÉTAT DU CENTRE DE SÉCURITÉ WINDOWS (7) - 0s [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ RECHERCHE PARTICULIÈRE DE FICHIERS GÉNÉRIQUES (26) - 1s [MD5.25C8B9AE873248CD98AB17539F5B1F15] - 01/04/2022 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [4967688] =>.Microsoft® [MD5.EF3179D498793BF4234F708D3BE28633] - 13/01/2021 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [71680] [Unsigned] =>.Microsoft Corporation [MD5.FDA73105E744211CB0E28008882DAF21] - 01/04/2022 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [427192] [Unsigned] =>.Microsoft Corporation [MD5.11F7419009AF2874C4B0E4505D185D79] - 01/04/2022 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [5038592] [Unsigned] =>.Microsoft Corporation [MD5.FC7F68EE85A3AE64D6E58C2B2D673793] - 01/04/2022 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [910336] [Unsigned] =>.Microsoft Corporation [MD5.A01E533388EF4141854A72CB9F17B5BE] - 01/04/2022 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [316416] [Unsigned] =>.Microsoft Corporation [MD5.914AE33E90AF8D3C19ED7678D56B4977] - 01/04/2022 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [820728] =>.Microsoft® [MD5.1EAD098027CC4D0CD3A8DBE7FFA4D244] - 01/04/2022 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [581568] =>.Microsoft® [MD5.CBD095290A7B0970D87AEB53A44D9018] - 01/04/2022 - (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\System32\wuaueng.dll [3403776] [Unsigned] =>.Microsoft Corporation [MD5.3996E9A5F0CC85E93AA7ADE49A892C5E] - 07/12/2019 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] [Unsigned] =>.Microsoft Corporation [MD5.E04072187F967B0041C994CCCDB9E101] - 01/04/2022 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [651096] [Unsigned] =>.Microsoft Corporation [MD5.AF0AA60DD36E4FA227F3C441B008336E] - 13/10/2021 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [30032] [Unsigned] =>.Microsoft Corporation [MD5.764FE2149251A246F6B047A0F09F5F0B] - 07/12/2019 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [100864] [Unsigned] =>.Microsoft Corporation [MD5.054ABC6C64AE969D033B7876C04D52B4] - 13/10/2021 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [175616] [Unsigned] =>.Microsoft Corporation [MD5.3D3CCAFC76E02403E2963A2CB45D61F7] - 10/03/2021 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [152064] [Unsigned] =>.Microsoft Corporation [MD5.4F39254C6E087D4789D2C3EBD3C7F744] - 01/04/2022 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [134656] [Unsigned] =>.Microsoft Corporation [MD5.E4B36C6EAAAB703CBFECB92EE590FB31] - 07/12/2019 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [118272] [Unsigned] =>.Microsoft Corporation [MD5.F63572DF4295C78B3F7036AEDA878176] - 07/12/2019 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [225280] [Unsigned] =>.Microsoft Corporation [MD5.570402953F29A5AC0FBD2715454DED89] - 01/04/2022 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [579432] [Unsigned] =>.Microsoft Corporation [MD5.49F7DE6F689C47B64A2C2D46CD98E327] - 02/11/2020 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [341504] [Unsigned] =>.Microsoft Corporation [MD5.69B5F6B8793F3E59B84D08A70BB1240C] - 01/04/2022 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2851664] [Unsigned] =>.Microsoft Corporation [MD5.138FDB1EBCB61287A645BD3B06DBED5E] - 07/12/2019 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [109056] [Unsigned] =>.Microsoft Corporation [MD5.40CBDB4B80284451536C8CA49561E5CD] - 01/11/2020 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [110080] [Unsigned] =>.Microsoft Corporation [MD5.64991B36F0BD38026F7589572C98E3D6] - 14/04/2021 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [169984] [Unsigned] =>.Microsoft Corporation [MD5.2A8B28579A4964AA7EA8CEB1AC121243] - 10/10/2021 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [117584] [Unsigned] =>.Microsoft Corporation [MD5.988A7A685BB51BAC62F4E176BE5432AC] - 01/11/2020 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [429880] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES SERVICES (Non désactivés) (70) - 2s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Inc. - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.® O23 - Service: Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated® O23 - Service: (AMD Crash Defender Service) . (.Advanced Micro Devices, Inc. - AMD Crash Defender Service.) - C:\WINDOWS\System32\amdfendrsr.exe [Unsigned] =>.Advanced Micro Devices, Inc. O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\DriverStore\FileRepository\u0377495.inf_amd64_58cc395c0bf03a26\B377432\atiesrxx.exe {535091E6CAB13AF393B51EAD0825F627}. =>.AMD O23 - Service: ASGT (ASGT) . (...) - C:\Windows\SysWOW64\ASGT.exe [Unsigned] =>.ASUSTeK O23 - Service: C:\WINDOWS\System32\AudioEndpointBuilder.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Générateur de points de terminaison du serv.) - C:\WINDOWS\System32\AudioEndpointBuilder.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\audiosrv.dll (Audiosrv) . (.Microsoft Corporation - Service Audio Windows.) - C:\WINDOWS\System32\Audiosrv.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\bfe.dll (BFE) . (.Microsoft Corporation - Moteur de filtrage de base.) - C:\WINDOWS\System32\bfe.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\qmgr.dll (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) - C:\WINDOWS\System32\qmgr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\bisrv.dll (BrokerInfrastructure) . (.Microsoft Corporation - Process State Manager (PSM) Service.) - C:\WINDOWS\System32\psmsrv.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\cdpusersvc.dll (CDPUserSvc) . (.Microsoft Corporation - Composants utilisateur Microsoft (R) CDP.) - C:\WINDOWS\System32\CDPUserSvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: CDPUserSvc_6a2c8 (CDPUserSvc_6a2c8) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: C:\Windows\System32\coremessaging.dll (CoreMessagingRegistrar) . (.Microsoft Corporation - Microsoft CoreMessaging Dll.) - C:\Windows\System32\coremessaging.dll =>.Microsoft® O23 - Service: C:\WINDOWS\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Services de chiffrement.) - C:\WINDOWS\System32\cryptsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\das.dll (DeviceAssociationService) . (.Microsoft Corporation - Service d’association de périphérique.) - C:\WINDOWS\System32\das.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - Service client DHCP.) - C:\Windows\System32\dhcpcore.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\diagtrack.dll (DiagTrack) . (.Microsoft Corporation - Suivi des diagnostics Microsoft Windows.) - C:\WINDOWS\System32\diagtrack.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\dispbroker.desktop.dll (DispBrokerDesktopSvc) . (.Microsoft Corporation - Courtier d'affichage du bureau.) - C:\WINDOWS\System32\DispBroker.Desktop.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - Service de résolution du cache DNS.) - C:\WINDOWS\System32\dnsrslvr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\dusmsvc.dll (DusmSvc) . (.Microsoft Corporation - Service Consommation des données.) - C:\WINDOWS\System32\dusmsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Service Mise à jour de Microsoft Edge (edgeupdate) (edgeupdate) . (.Microsoft Corporation - Microsoft Edge Update.) - C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe =>.Microsoft® O23 - Service: C:\WINDOWS\System32\wevtsvc.dll (EventLog) . (.Microsoft Corporation - Service journal des événements.) - C:\WINDOWS\System32\wevtsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Service de cache de police Windows.) - C:\WINDOWS\System32\FntCache.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) - C:\WINDOWS\System32\gpsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: HP Print Scan Doctor Service (HPPrintScanDoctorService) . (.HP Inc. - .) - C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe =>.HP Inc.® O23 - Service: HuaweiHiSuiteService64.exe (HuaweiHiSuiteService64.exe) . (. - HuaweiHiSuiteService.) - C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [Unsigned] =>.Huawei Technologies Co.,Ltd O23 - Service: Intel(R) PROSet Monitoring Service (Intel(R) PROSet Monitoring Service) . (.Intel Corporation - Intel® PROSet Monitoring Service.) - C:\Windows\system32\IProsetMonitor.exe [Unsigned] =>.Intel Corporation O23 - Service: C:\WINDOWS\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) - C:\WINDOWS\System32\iphlpsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - DLL du service Serveur.) - C:\WINDOWS\System32\srvsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - DLL du service Station de travail.) - C:\WINDOWS\System32\wkssvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\lsm.dll (LSM) . (.Microsoft Corporation - Service du gestionnaire de session locale.) - C:\WINDOWS\System32\lsm.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\moshost.dll (MapsBroker) . (.Microsoft Corporation - Gestionnaire des cartes téléchargées.) - C:\WINDOWS\System32\moshost.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\FirewallAPI.dll (mpssvc) . (.Microsoft Corporation - Service de protection Microsoft.) - C:\WINDOWS\System32\mpssvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Connaissance des emplacements réseau 2.) - C:\WINDOWS\System32\nlasvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Serveur RPC de l’interface du magasin résea.) - C:\WINDOWS\System32\nsisvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\APHostRes.dll (OneSyncSvc) . (.Microsoft Corporation - Accounts Host Service.) - C:\WINDOWS\System32\APHostService.dll [Unsigned] =>.Microsoft Corporation O23 - Service: OneSyncSvc_6a2c8 (OneSyncSvc_6a2c8) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: Origin Web Helper Service (Origin Web Helper Service) . (.Electronic Arts - OriginWebHelperService.) - D:\Jeux\Origin\OriginWebHelperService.exe =>.Electronic Arts, Inc.® O23 - Service: postgresql-8.4 - PostgreSQL Server 8.4 (postgresql-8.4) . (.PostgreSQL Global Development Group - pg_ctl - starts/stops/restarts the PostgreS.) - c:\postgreSQL\bin\pg_ctl.exe [Unsigned] =>.PostgreSQL Global Development Group O23 - Service: C:\WINDOWS\System32\umpo.dll (Power) . (.Microsoft Corporation - Service d’alimentation en mode utilisateur.) - C:\WINDOWS\System32\umpo.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\WINDOWS\System32\profsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\rasmans.dll (RasMan) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) - C:\WINDOWS\System32\rasmans.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - Mappeur de point de terminaison RPC.) - C:\WINDOWS\System32\RpcEpMap.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @combase.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\WINDOWS\System32\rpcss.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) - C:\WINDOWS\System32\schedsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\Sens.dll (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) - C:\WINDOWS\System32\sens.dll [Unsigned] =>.Microsoft Corporation O23 - Service: serposcope (serposcope) . (.Apache Software Foundation - Commons Daemon Service Runner.) - C:\Program Files (x86)\serposcope\bin\serposcope-service.exe {76BDA099930ACCDEF2E06E86AAC1BAFF}. =>.Apache Software Foundation O23 - Service: C:\WINDOWS\System32\SgrmBroker.exe,-100 (SgrmBroker) . (.Microsoft Corporation - Service Broker du moniteur d'exécution Syst.) - C:\WINDOWS\System32\SgrmBroker.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) - C:\Windows\System32\shsvcs.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Application sous-système spouleur.) - C:\WINDOWS\System32\spoolsv.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Service de la plateforme de protection logi.) - C:\WINDOWS\System32\sppsvc.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wiaservc.dll (stisvc) . (.Microsoft Corporation - Service de périphériques d’images fixes.) - C:\WINDOWS\System32\wiaservc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\StorSvc.dll (StorSvc) . (.Microsoft Corporation - Services de stockage.) - C:\WINDOWS\System32\storsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\sysmain.dll (SysMain) . (.Microsoft Corporation - Hôte de Service SysMain.) - C:\WINDOWS\System32\sysmain.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\SystemEventsBrokerServer.dll (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) - C:\WINDOWS\System32\SystemEventsBrokerServer.dll [Unsigned] =>.Microsoft Corporation O23 - Service: TeamViewer (TeamViewer) . (.TeamViewer Germany GmbH - TeamViewer.) - D:\Logiciels\TeamViewer\TeamViewer_Service.exe =>.TeamViewer Germany GmbH® O23 - Service: C:\WINDOWS\System32\themeservice.dll (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) - C:\WINDOWS\System32\themeservice.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\usermgr.dll (UserManager) . (.Microsoft Corporation - UserMgr.) - C:\WINDOWS\System32\usermgr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\usosvc.dll (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) - C:\WINDOWS\System32\usosvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\vmms.exe,-10 (vmms) . (.Microsoft Corporation - Service de gestion d’ordinateurs virtuels.) - C:\WINDOWS\System32\vmms.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wcmsvc.dll (Wcmsvc) . (.Microsoft Corporation - DLL du service de gestion des connexions Wi.) - C:\WINDOWS\System32\wcmsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) . (.Microsoft Corporation - Antimalware Service Executable.) - C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MsMpEng.exe =>.Microsoft® O23 - Service: C:\WINDOWS\System32\wbem\wmisvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\WINDOWS\System32\wbem\WMIsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wpnservice.dll (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) - C:\WINDOWS\System32\WpnService.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\WpnUserService.dll (WpnUserService) . (.Microsoft Corporation - Service utilisateur de notifications Push W.) - C:\WINDOWS\System32\WpnUserService.dll [Unsigned] =>.Microsoft Corporation O23 - Service: WpnUserService_6a2c8 (WpnUserService_6a2c8) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: C:\WINDOWS\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Service Centre de sécurité de Windows.) - C:\WINDOWS\System32\wscsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - C:\Windows\System32\SearchIndexer.exe [Unsigned] =>.Microsoft Corporation ---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (107) - 8s SR - Boot [07/12/2019] [ 107320] (3ware) . (.LSI.) - C:\WINDOWS\System32\drivers\3ware.sys =>.Microsoft® SR - Auto [17/11/2021] [ 169728] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Inc..) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.® SR - Boot [07/12/2019] [ 1135416] (ADP80XX) . (.PMC-Sierra.) - C:\WINDOWS\System32\drivers\ADP80XX.SYS =>.Microsoft® SR - Auto [23/08/2017] [ 2257016] Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated® SR - Auto [13/12/2021] [ 591792] (AMD Crash Defender Service) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\amdfendrsr.exe =>.Microsoft® SR - Auto [16/03/2022] [ 597424] (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\DriverStore\FileRepository\u0377495.inf_amd64_58cc395c0bf03a26\B377432\atiesrxx.exe {535091E6CAB13AF393B51EAD0825F627}. =>.AMD SR - Demand [13/12/2021] [ 164800] AMD Crash Defender Driver (amdfendr) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amdfendr.sys {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices, Inc. SR - Demand [13/12/2021] [ 33728] AMD Crash Defender Manager (amdfendrmgr) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amdfendrmgr.sys {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices, Inc. SR - Demand [07/12/2019] [ 18432] AMD GPIO Client Driver (amdgpio2) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdgpio2.sys [Unsigned] =>.Advanced Micro Devices, Inc SR - Demand [07/12/2019] [ 45568] AMD I2C Controller Service (amdi2c) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdi2c.sys [Unsigned] =>.Advanced Micro Devices, Inc SR - Boot [16/03/2022] [ 110408] AMD PCI Root Bus Lower Filter (amdkmpfd) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amdkmpfd.sys {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices, Inc. SR - Demand [05/11/2021] [ 109520] AMDSAFD (AMDSAFD) . (.Advanced Micro Devices.) - C:\Windows\System32\DriverStore\FileRepository\amdsafd.inf_amd64_edd3335a4253bf6d\amdsafd.sys {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices SR - Boot [07/12/2019] [ 83256] (amdsata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdsata.sys =>.Microsoft® SR - Boot [07/12/2019] [ 259384] (amdsbs) . (.AMD Technologies Inc..) - C:\WINDOWS\System32\drivers\amdsbs.sys =>.Microsoft® SR - Demand [16/03/2022] [90159536] (amdwddmg) . (.Advanced Micro Devices, Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0377495.inf_amd64_58cc395c0bf03a26\B377432\amdkmdag.sys {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices, Inc. SR - Boot [07/12/2019] [ 26936] (amdxata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdxata.sys =>.Microsoft® SR - Demand [17/08/2021] [ 65168] AMD Link Controller Emulation (AMDXE) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amdxe.sys {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices, Inc. SR - Demand [10/05/2018] [ 35560] Apple Lower Filter (AppleLowerFilter) . (.Apple Inc..) - C:\WINDOWS\System32\drivers\AppleLowerFilter.sys =>.WDKTestCert build,131474841775766162® SR - Boot [07/12/2019] [ 131896] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\WINDOWS\System32\drivers\arcsas.sys =>.Microsoft® SR - Auto [17/01/2012] [ 55296] ASGT (ASGT) . (...) - C:\Windows\SysWOW64\ASGT.exe [Unsigned] =>.ASUSTeK SR - System [09/09/2014] [ 15232] AsIO (AsIO) . (.ASUSTeK Computer Inc..) - C:\Windows\SysWOW64\drivers\AsIO.sys =>.ASUSTeK Computer Inc.® SR - Demand [05/06/2015] [ 149240] ASMedia USB3 Hub Se (asmthub3) . (.ASMedia Technology Inc.) - C:\WINDOWS\System32\drivers\asmthub3.sys =>.ASMedia Technology Inc.® SR - Demand [05/06/2015] [ 442104] ASMEDIA XHCI Servi (asmtxhci) . (.ASMedia Technology Inc.) - C:\WINDOWS\System32\drivers\asmtxhci.sys =>.ASMedia Technology Inc.® SR - Demand [01/11/2021] [ 246176] AMD Function Driver f (AtiHDAudioService) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\AtihdWT6.sys =>.Microsoft® SR - Boot [07/12/2019] [ 533816] QLogic Network Adapter VBD (b06bdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\bxvbda.sys =>.Microsoft® SR - Demand [07/12/2019] [ 9728] bcmfn2 Service (bcmfn2) . (...) - C:\WINDOWS\System32\drivers\bcmfn2.sys [Unsigned] =>.Broadcom Corporation SS - Demand [03/07/2021] [ 8914856] BattlEye Service (BEService) . (.BattlEye Innovations e.K..) - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe =>.BattlEye Innovations e.K.® SR - Boot [07/12/2019] [ 319800] (cht4iscsi) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4sx64.sys =>.Microsoft® SR - Demand [07/12/2019] [ 1853752] Chelsio Virtual Bus Driver (cht4vbd) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4vx64.sys =>.Microsoft® SS - Demand [13/01/2021] [ 5026104] Disc Soft Lite Bus Service (Disc Soft Lite Bus Service) . (.Disc Soft Ltd.) - D:\Logiciels\DAEMON Tools Lite\DiscSoftBusServiceLite.exe =>.AVB Disc Soft, SIA® SR - Demand [14/12/2017] [ 30264] DAEMON Tools Lite Vir (dtlitescsibus) . (.Disc Soft Ltd.) - C:\WINDOWS\System32\drivers\dtlitescsibus.sys =>.Disc Soft Ltd® SR - Demand [14/12/2017] [ 47672] DAEMON Tools Lite Virt (dtliteusbbus) . (.Disc Soft Ltd.) - C:\WINDOWS\System32\drivers\dtliteusbbus.sys =>.Disc Soft Ltd® SR - Demand [07/12/2019] [ 553984] Intel(R) PRO/10 (e1i65x64) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\e1i65x64.sys [Unsigned] =>.Intel Corporation SS - Demand [29/06/2018] [ 777856] EasyAntiCheat (EasyAntiCheat) . (.EasyAntiCheat Ltd.) - C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe =>.EasyAntiCheat Oy® SR - Boot [07/12/2019] [ 3418936] QLogic 10 Gigabit Ethernet Ada (ebdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\evbda.sys =>.Microsoft® SR - System [11/12/2020] [ 153312] Malwarebytes Anti-Exploit (ESProtectionDriver) . (.Malwarebytes.) - C:\WINDOWS\system32\drivers\mbae64.sys =>.Malwarebytes Corporation® SS - Demand [01/04/2022] [ 1591184] Google Chrome Elevation Service (GoogleChromeElevationServi (GoogleChromeElevationService) . (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\100.0.4896.75\elevation_service.exe =>.Google LLC® SR - Auto [14/12/2017] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [14/12/2017] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SR - Auto [31/03/2022] [ 218272] HP Print Scan Doctor Service (HPPrintScanDoctorService) . (.HP Inc..) - C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe =>.HP Inc.® SR - Boot [07/12/2019] [ 64312] (HpSAMD) . (.Hewlett-Packard Company.) - C:\WINDOWS\System32\drivers\HpSAMD.sys =>.Microsoft® SR - Auto [27/12/2019] [ 190784] HuaweiHiSuiteService64.exe (HuaweiHiSuiteService64.exe) . (...) - C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [Unsigned] =>.Huawei Technologies Co.,Ltd SR - Demand [07/12/2019] [ 36352] Intel Serial IO GPIO Controlle (iagpio) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iagpio.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [07/12/2019] [ 91136] Intel(R) Serial IO I2C Host Cont (iai2c) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iai2c.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [07/12/2019] [ 79360] Intel(R) S (iaLPSS2i_GPIO2) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 93184] In (iaLPSS2i_GPIO2_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 112128] Intel( (iaLPSS2i_GPIO2_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 96256] Intel( (iaLPSS2i_GPIO2_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 171520] Intel(R) Seria (iaLPSS2i_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 175104] Intel( (iaLPSS2i_I2C_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 177152] Intel(R) S (iaLPSS2i_I2C_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 177664] Intel(R) S (iaLPSS2i_I2C_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 38128] Intel(R) Serial IO (iaLPSSi_GPIO) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys =>.Intel Corporation - Client Components Group® SR - Demand [07/12/2019] [ 113152] Intel(R) Serial IO I (iaLPSSi_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [Unsigned] =>.Intel Corporation SR - Boot [29/07/2015] [ 1462720] (iaStorA) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorA.sys =>.Intel Corporation - Rapid Storage Technology® SR - Boot [07/12/2019] [ 884752] Intel Chipset SATA RAI (iaStorAVC) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorAVC.sys =>.Microsoft® SR - Boot [07/12/2019] [ 412176] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorV.sys =>.Microsoft® SR - Demand [07/12/2019] [ 558904] Mellanox InfiniBand Bus/A (ibbus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ibbus.sys =>.Microsoft® SR - Demand [30/05/2018] [ 6248896] Service for Realtek HD Audio (WDM) (IntcAzAudAddService) . (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp.® SR - Auto [07/05/2015] [ 272352] Intel(R) PROSet Monitoring Service (Intel(R) PROSet Monitoring Service) . (.Intel Corporation.) - C:\Windows\system32\IProsetMonitor.exe =>.Intel(R) Intel Network Drivers® SR - Boot [07/12/2019] [ 172344] (ItSas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\ItSas35i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 108856] (LSI_SAS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas.sys =>.Microsoft® SR - Boot [07/12/2019] [ 124216] (LSI_SAS2i) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 135992] (LSI_SAS3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\lsi_sas3i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 82744] (LSI_SSS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sss.sys =>.Microsoft® SR - Auto [13/12/2020] [ 220160] MBAMChameleon (MBAMChameleon) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\MbamChameleon.sys =>.Malwarebytes Inc® SR - Boot [11/12/2020] [ 19912] MbamElam (MbamElam) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\MbamElam.sys =>.Microsoft® SR - Demand [13/12/2020] [ 197792] MBAMFarflt (MBAMFarflt) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\farflt.sys =>.Malwarebytes Inc® SR - Demand [13/12/2020] [ 77496] MBAMProtection (MBAMProtection) . (.Malwarebytes.) - C:\WINDOWS\system32\DRIVERS\mbam.sys =>.Malwarebytes Inc® SS - Demand [11/12/2020] [ 7456464] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - D:\Logiciels\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc® SR - Boot [11/12/2020] [ 248968] MBAMSwissArmy (MBAMSwissArmy) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\mbamswissarmy.sys =>.Malwarebytes Inc® SR - Demand [13/12/2020] [ 139424] MBAMWebProtection (MBAMWebProtection) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\mwac.sys =>.Malwarebytes Inc® SR - Boot [07/12/2019] [ 59704] (megasas) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas.sys =>.Microsoft® SR - Boot [07/12/2019] [ 81720] (megasas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\MegaSas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 105480] (megasas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas35i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 575800] (megasr) . (.LSI Corporation, Inc..) - C:\WINDOWS\System32\drivers\megasr.sys =>.Microsoft® SR - Demand [06/05/2018] [ 228992] Intel(R) Management Engine Interfac (MEIx64) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys =>.Intel(R) Embedded Subsystems and IP Blocks Group® SR - Demand [07/12/2019] [ 1131320] Mellanox ConnectX Bus E (mlx4_bus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\mlx4_bus.sys =>.Microsoft® SS - Demand [10/12/2021] [ 223160] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Boot [07/12/2019] [ 63800] (mvumis) . (.Marvell Semiconductor, Inc..) - C:\WINDOWS\System32\drivers\mvumis.sys =>.Microsoft® SR - Demand [07/05/2015] [ 37832] Nal Service (NAL) . (.Intel Corporation.) - C:\WINDOWS\system32\Drivers\iqvw64e.sys =>.Intel(R) Intel Network Drivers® SR - Demand [07/12/2019] [ 146232] NetworkDirect Service (ndfltr) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ndfltr.sys =>.Microsoft® SR - Auto [02/01/2017] [ 36600] NetGroup Packet Filter Driver (npf) . (.Riverbed Technology, Inc..) - C:\Windows\system32\drivers\npf.sys =>.Riverbed Technology, Inc.® SR - Boot [07/12/2019] [ 150328] (nvraid) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvraid.sys =>.Microsoft® SR - Boot [07/12/2019] [ 166200] (nvstor) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvstor.sys =>.Microsoft® SS - Demand [15/01/2020] [ 2475312] Origin Client Service (Origin Client Service) . (.Electronic Arts.) - D:\Jeux\Origin\OriginClientService.exe =>.Electronic Arts, Inc.® SR - Auto [15/01/2020] [ 3393848] Origin Web Helper Service (Origin Web Helper Service) . (.Electronic Arts.) - D:\Jeux\Origin\OriginWebHelperService.exe =>.Electronic Arts, Inc.® SR - Boot [07/12/2019] [ 58680] (percsas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 68408] (percsas3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas3i.sys =>.Microsoft® SR - Auto [22/07/2014] [ 66048] postgresql-8.4 - PostgreSQL Server 8.4 (postgresql-8.4) . (.PostgreSQL Global Development Group.) - c:\postgreSQL\bin\pg_ctl.exe [Unsigned] =>.PostgreSQL Global Development Group SR - Demand [21/12/2016] [ 40240] Revoflt (Revoflt) . (.VS Revo Group.) - C:\WINDOWS\System32\DRIVERS\revoflt.sys =>.VS Revo Group® SR - System [19/12/2017] [ 15976] RsProxy Driver (RsProxy) . (.Realtek Semiconductor Corp.) - C:\Windows\system32\drivers\RsProxy.sys =>.Realtek Semiconductor Corp® SR - Auto [07/01/2016] [ 87880] serposcope (serposcope) . (.Apache Software Foundation.) - C:\Program Files (x86)\serposcope\bin\serposcope-service.exe {76BDA099930ACCDEF2E06E86AAC1BAFF}. =>.Apache Software Foundation SR - Boot [07/12/2019] [ 44856] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\WINDOWS\System32\drivers\SiSRaid2.sys =>.Microsoft® SR - Boot [07/12/2019] [ 81720] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\WINDOWS\System32\drivers\sisraid4.sys =>.Microsoft® SR - Boot [07/12/2019] [ 209720] (SmartSAMD) . (.Microsemi Corportation.) - C:\WINDOWS\System32\drivers\SmartSAMD.sys =>.Microsoft® SS - Demand [12/08/2021] [ 2793192] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe =>.Valve® SR - Boot [07/12/2019] [ 31032] (stexstor) . (.Promise Technology, Inc..) - C:\WINDOWS\System32\drivers\stexstor.sys =>.Microsoft® SR - Auto [02/09/2021] [13271336] TeamViewer (TeamViewer) . (.TeamViewer Germany GmbH.) - D:\Logiciels\TeamViewer\TeamViewer_Service.exe =>.TeamViewer Germany GmbH® SS - Demand [13/07/2021] [ 7099632] Uncheater for BattleGrounds_GL (ucldr_battlegrounds_gl) . (.Wellbia.com Co., Ltd..) - C:\Program Files\Common Files\UNCHEATER\ucldr_battlegrounds_gl.exe {420B1AD8D94118DCF821B8CBD6E142F9}. =>.Wellbia.com Co., Ltd. SR - Boot [07/12/2019] [ 166712] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\WINDOWS\System32\drivers\vsmraid.sys =>.Microsoft® SR - Boot [07/12/2019] [ 305464] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\WINDOWS\System32\drivers\vstxraid.sys =>.Microsoft® SR - Demand [07/12/2019] [ 36152] WinMad Service (WinMad) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winmad.sys =>.Microsoft® SR - Demand [07/12/2019] [ 73016] WinVerbs Service (WinVerbs) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winverbs.sys =>.Microsoft® SR - Demand [19/01/2018] [ 48424] WsAudio_Device (WsAudio_Device) . (.Wondershare.) - C:\WINDOWS\System32\drivers\VirtualAudio.sys =>.Wondershare Technology Co.,Ltd® SR - Demand [18/07/2021] [ 2729456] xhunter1 (xhunter1) . (.Wellbia.com Co., Ltd..) - C:\Windows\xhunter1.sys {0C067D0F436427B359B7A6BABD673873}. =>.Wellbia.com Co., Ltd. SS - Demand [17/07/2021] [ 7591624] Zakynthos Service (zksvc) . (.PUBG Corporation.) - C:\Program Files\Common Files\PUBG\zksvc.exe {06DBE19411438F282930348586B67EE7}. ---\\ TÂCHES PLANIFIÉES EN AUTOMATIQUE (Registre) (20) - 6s O38 - TASK: {031A3F6A-D7D1-441B-8120-796CEB48B157} [64Bits][\AMDLinkUpdate] - (.Advanced Micro Devices, Inc. - AMD Install Manager.) -- C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1146360] =>.Advanced Micro Devices, Inc. O38 - TASK: {1AA2711E-0B48-41CA-8B14-8D477DBE744B} [64Bits][\GoogleUpdateTaskMachineUA] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc. O38 - TASK: {5CC25D6B-71CA-4272-8ED3-E94F8380B8AD} [64Bits][\ROCCAT DEVICE SERVICE] - (.DESKTOP-RUT1CQG\Mr_GT - .) -- D:/Logiciels/Roccat Suora/ROCCAT Swarm/ROCCAT_dev_service.exe [0] O38 - TASK: {5D535425-910D-44FC-9755-81E264A0C8EF} [64Bits][\Adobe Acrobat Update Task] - (.Adobe Inc. - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424] =>.Adobe Inc. O38 - TASK: {5F763BBC-09C4-43E9-8A58-05525C7F36D2} [64Bits][\AMDInstallLauncher] - (.Advanced Micro Devices, Inc. - AMD Install Manager.) -- C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1146360] =>.Advanced Micro Devices, Inc. O38 - TASK: {DEF061BF-3D64-407D-92F3-8F22944D212B} [64Bits][\StartDVR] - (.Advanced Micro Devices, Inc. - Radeon Settings: Command Line Interface.) -- C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [260600] =>.Advanced Micro Devices, Inc. O38 - TASK: {E585B6C1-26C6-4F07-A090-0EE609D130E7} [64Bits][\StartCN] - (.Advanced Micro Devices, Inc. - AMD Software: Adrenalin Edition Command Lin.) -- C:\Program Files\AMD\CNext\CNext\cncmd.exe [55288] =>.Advanced Micro Devices, Inc. O38 - TASK: {F74D7C7D-DAB6-42A7-85B6-E8A163C53793} [64Bits][\GoogleUpdateTaskMachineCore] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc. O38 - TASK: {F9314AF5-B413-46C2-8654-11BC5B65B257} [64Bits][\Mozilla\Firefox Background Update E7CF176E110C211B] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [529848] =>.Mozilla Corporation O38 - TASK: {FADAA20D-ED35-4138-AEB7-00FF07E5DC65} [64Bits][\Mozilla\Firefox Default Browser Agent E7CF176E110C211B] - (.Mozilla Foundation - Firefox Default Browser Agent.) -- C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [651704] =>.Mozilla Foundation C:\WINDOWS\System32\Tasks\AMDLinkUpdate - (.Advanced Micro Devices, Inc..) -- C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [-AMDLinkUpdate] =>.Advanced Micro Devices, Inc. C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/ua ./ua] =>.Google Inc. C:\WINDOWS\System32\Tasks\ROCCAT DEVICE SERVICE - (.DESKTOP-RUT1CQG\Mr_GT.) -- D:/Logiciels/Roccat Suora/ROCCAT Swarm/ROCCAT_dev_service.exe [] C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task - (.Adobe Inc..) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [] =>.Adobe Inc. C:\WINDOWS\System32\Tasks\AMDInstallLauncher - (.Advanced Micro Devices, Inc..) -- C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [/InstallAUEP] =>.Advanced Micro Devices, Inc. C:\WINDOWS\System32\Tasks\StartDVR - (.Advanced Micro Devices, Inc..) -- C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [] =>.Advanced Micro Devices, Inc. C:\WINDOWS\System32\Tasks\StartCN - (.Advanced Micro Devices, Inc..) -- C:\Program Files\AMD\CNext\CNext\cncmd.exe [startwithdelay] =>.Advanced Micro Devices, Inc. C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/c] =>.Google Inc. C:\WINDOWS\System32\Tasks\Mozilla\Firefox Background Update E7CF176E110C211B - (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla] =>.Mozilla Corporation C:\WINDOWS\System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B - (.Mozilla Foundation.) -- C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [do-task "E7CF176E110C211B.do-task] =>.Mozilla Foundation ---\\ APPLICATIONS LANCÉES AU DÉMARRAGE DU SYSTÈME (18) - 2s O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Security notification icon.) -- C:\WINDOWS\system32\SecurityHealthSystray.exe [Unsigned] =>.Microsoft Corporation O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Mr_GT\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft® O4 - HKCU\..\Run: [Discord] . (. - .) -- Discord.exe O4 - HKCU\..\Run: [HoldemManager.Server] . (...) -- C:\Users\Mr_GT\AppData\Roaming\Max Value Software\Holdem Manager\3.0\HoldemManager.Server.lnk [Unsigned] O4 - HKCU\..\Run: [Skype for Desktop] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe =>.Skype Software Sarl® O4 - HKCU\..\Run: [Battle.net] . (.Blizzard Entertainment - Blizzard Battle.net App.) -- D:\Jeux\Battle.net\Battle.net.exe =>.Blizzard Entertainment, Inc.® O4 - HKCU\..\Run: [EADM] . (.Electronic Arts - Origin.) -- D:\Jeux\Origin\Origin.exe =>.Electronic Arts, Inc.® O4 - HKCU\..\Run: [Adobe Reader Synchronizer] . (.Adobe Systems Incorporated - Adobe Collaboration Synchronizer 22.1.) -- C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe =>.Adobe Inc.® O4 - HKCU\..\Run: [com.squirrel.Teams.Teams] . (. - .) -- Teams.exe O4 - HKLM\..\Wow6432Node\Run: [Aimersoft Helper Compact.exe] . (.AimerSoft - AimerSoft Studio.) -- C:\Program Files (x86)\Common Files\Aimersoft\Aimersoft Helper Compact\ASHelper.exe =>.Shenzhen Jia Xing Investment Co., Ltd.® O4 - HKUS\S-1-5-21-3351771493-749409139-3151566472-1001\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Mr_GT\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft® O4 - HKUS\S-1-5-21-3351771493-749409139-3151566472-1001\..\Run: [Discord] . (. - .) -- Discord.exe O4 - HKUS\S-1-5-21-3351771493-749409139-3151566472-1001\..\Run: [HoldemManager.Server] . (...) -- C:\Users\Mr_GT\AppData\Roaming\Max Value Software\Holdem Manager\3.0\HoldemManager.Server.lnk [Unsigned] O4 - HKUS\S-1-5-21-3351771493-749409139-3151566472-1001\..\Run: [Skype for Desktop] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe =>.Skype Software Sarl® O4 - HKUS\S-1-5-21-3351771493-749409139-3151566472-1001\..\Run: [Battle.net] . (.Blizzard Entertainment - Blizzard Battle.net App.) -- D:\Jeux\Battle.net\Battle.net.exe =>.Blizzard Entertainment, Inc.® O4 - HKUS\S-1-5-21-3351771493-749409139-3151566472-1001\..\Run: [EADM] . (.Electronic Arts - Origin.) -- D:\Jeux\Origin\Origin.exe =>.Electronic Arts, Inc.® O4 - HKUS\S-1-5-21-3351771493-749409139-3151566472-1001\..\Run: [Adobe Reader Synchronizer] . (.Adobe Systems Incorporated - Adobe Collaboration Synchronizer 22.1.) -- C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe =>.Adobe Inc.® O4 - HKUS\S-1-5-21-3351771493-749409139-3151566472-1001\..\Run: [com.squirrel.Teams.Teams] . (. - .) -- Teams.exe ---\\ PROCESSUS LANCÉS (40) - 10s [MD5.42EF3EBF9F07AAA8B049AD67D7108047] - (.Advanced Micro Devices, Inc. - AMD Crash Defender Service.) -- C:\Windows\System32\amdfendrsr.exe [591792] [PID.2584] [Unsigned] =>.Advanced Micro Devices, Inc. [MD5.F63B0BA268EBED1AA9C8850E99FC1B9C] - (.AMD - AMD External Events Service Module.) -- C:\Windows\System32\DriverStore\FileRepository\u0377495.inf_amd64_58cc395c0bf03a26\B377432\atiesrxx.exe [597424] [PID.2592] {535091E6CAB13AF393B51EAD0825F627}. =>.AMD [MD5.BA6567A7568594873F9AB9400918B652] - (.AMD - AMD External Events Client Module.) -- C:\Windows\System32\DriverStore\FileRepository\u0377495.inf_amd64_58cc395c0bf03a26\B377432\atieclxx.exe [892336] [PID.2908] {535091E6CAB13AF393B51EAD0825F627}. =>.AMD [MD5.E536856E96A7605EBF580D62A868E5FE] - (...) -- C:\Windows\SysWOW64\ASGT.exe [55296] [PID.4448] [Unsigned] [MD5.0677F5ECD4F801403C428BBAE1286379] - (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2257016] [PID.4472] =>.Adobe Systems Incorporated® [MD5.437A1C97D7A8A11006C4458408DE4A9E] - (.Adobe Inc. - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728] [PID.4480] =>.Adobe Inc.® [MD5.3A99F74AE21F2332F29A6F37FBFEA5B6] - (.HP Inc. - .) -- C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [218272] [PID.4524] =>.HP Inc.® [MD5.9CEE2BBB060DC4B7062BE4461774A7A0] - (. - HuaweiHiSuiteService.) -- C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [190784] [PID.4560] [Unsigned] =>.Huawei Technologies Co.,Ltd [MD5.F28C5A79A1698E9F1374569A1C0FB880] - (.Intel Corporation - Intel® PROSet Monitoring Service.) -- C:\Windows\system32\IProsetMonitor.exe [272352] [PID.4584] [Unsigned] =>.Intel Corporation [MD5.276D5CE5DFDB64248C9240675CFCE3DE] - (.Apache Software Foundation - Commons Daemon Service Runner.) -- C:\Program Files (x86)\serposcope\bin\serposcope-service.exe [87880] [PID.4772] {76BDA099930ACCDEF2E06E86AAC1BAFF}. =>.Apache Software Foundation [MD5.1E50488632D515F7F94A2EFD45450F3C] - (.Electronic Arts - OriginWebHelperService.) -- D:\Jeux\Origin\OriginWebHelperService.exe [3393848] [PID.5088] =>.Electronic Arts, Inc.® [MD5.89D77AB2017B19E8B3E3156C7D08E334] - (.PostgreSQL Global Development Group - pg_ctl - starts/stops/restarts the PostgreS.) -- c:\postgreSQL\bin\pg_ctl.exe [66048] [PID.5128] [Unsigned] =>.PostgreSQL Global Development Group [MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Intel(R) Corporation - NCS2Prov Module.) -- C:\Program Files\Intel\NCS2\WMIProv\ncs2prov.exe [177424] [PID.5168] =>.Intel(R) Intel Network Drivers® [MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.TeamViewer Germany GmbH - TeamViewer.) -- D:\Logiciels\TeamViewer\TeamViewer_Service.exe [13271336] [PID.5424] =>.TeamViewer Germany GmbH® [MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.PostgreSQL Global Development Group - PostgreSQL Server.) -- c:\postgreSQL\bin\postgres.exe [4562944] [PID.5576] [Unsigned] =>.PostgreSQL Global Development Group [MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.PostgreSQL Global Development Group - PostgreSQL Server.) -- c:\postgreSQL\bin\postgres.exe [4562944] [PID.6004] [Unsigned] =>.PostgreSQL Global Development Group [MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.PostgreSQL Global Development Group - PostgreSQL Server.) -- c:\postgreSQL\bin\postgres.exe [4562944] [PID.6012] [Unsigned] =>.PostgreSQL Global Development Group [MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.PostgreSQL Global Development Group - PostgreSQL Server.) -- c:\postgreSQL\bin\postgres.exe [4562944] [PID.6020] [Unsigned] =>.PostgreSQL Global Development Group [MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.PostgreSQL Global Development Group - PostgreSQL Server.) -- c:\postgreSQL\bin\postgres.exe [4562944] [PID.6028] [Unsigned] =>.PostgreSQL Global Development Group [MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (...) -- C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe [793416] [PID.6480] =>.Microsoft® [MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Google LLC - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler.exe [299592] [PID.8768] =>.Google LLC® [MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Google LLC - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler64.exe [381512] [PID.8864] =>.Google LLC® [MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Disc Soft Ltd - DAEMON Tools Shell Extensions Helper.) -- D:\Logiciels\DAEMON Tools Lite\DTShellHlp.exe [3845944] [PID.7396] =>.AVB Disc Soft, SIA® [MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9274304] [PID.9244] =>.Realtek Semiconductor Corp.® [MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Disc Soft Ltd - Disc Soft Bus Service Lite.) -- D:\Logiciels\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [5026104] [PID.9280] =>.AVB Disc Soft, SIA® [MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Discord Inc. - Discord.) -- C:\Users\Mr_GT\AppData\Local\Discord\app-1.0.9004\Discord.exe [117989544] [PID.9384] =>.SUP.Discord [MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Discord Inc. - Discord.) -- C:\Users\Mr_GT\AppData\Local\Discord\app-1.0.9004\Discord.exe [117989544] [PID.9716] =>.SUP.Discord [MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Discord Inc. - Discord.) -- C:\Users\Mr_GT\AppData\Local\Discord\app-1.0.9004\Discord.exe [117989544] [PID.9988] =>.SUP.Discord [MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Discord Inc. - Discord.) -- C:\Users\Mr_GT\AppData\Local\Discord\app-1.0.9004\Discord.exe [117989544] [PID.9948] =>.SUP.Discord [MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Discord Inc. - Discord.) -- C:\Users\Mr_GT\AppData\Local\Discord\app-1.0.9004\Discord.exe [117989544] [PID.10080] =>.SUP.Discord [MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Nicolas Coolman - ZHPSuite.) -- C:\Users\Mr_GT\Desktop\ZHPSuite.exe [3482312] [PID.10264] [Unsigned] =>.Nicolas Coolman [MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Adobe Systems Incorporated - Adobe Collaboration Synchronizer 22.1.) -- C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe [5411552] [PID.10448] =>.Adobe Inc.® [MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Adobe Systems Incorporated - Adobe Collaboration Synchronizer 22.1.) -- C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe [5411552] [PID.10484] =>.Adobe Inc.® [MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Advanced Micro Devices, Inc. - AMD Software: Host Application.) -- C:\Program Files\AMD\CNext\CNext\Radeonsoftware.exe [28998136] [PID.10604] {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices, Inc. [MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote Clipper.) -- D:\Logiciels\Evernote\EvernoteClipper.exe [914400] [PID.11404] =>.Evernote Corporation® [MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.AimerSoft - AimerSoft Studio.) -- C:\Program Files (x86)\Common Files\Aimersoft\Aimersoft Helper Compact\ASHelper.exe [2138272] [PID.11444] =>.Shenzhen Jia Xing Investment Co., Ltd.® [MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Advanced Micro Devices, Inc. - AMD Software: Adrenalin Edition Command Lin.) -- C:\Program Files\AMD\CNext\CNext\cncmd.exe [55288] [PID.11972] {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices, Inc. [MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Advanced Micro Devices, Inc. - Radeon Settings: Host Service.) -- C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe [2602488] [PID.12124] {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices, Inc. [MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (.Advanced Micro Devices, Inc. - Radeon Settings: Desktop Overlay.) -- C:\Program Files\AMD\CNext\CNext\amdow.exe [52216] [PID.10796] {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices, Inc. [MD5.60D2AEC9F5DC7B0BAD8A26589E7B8332] - (...) -- C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe [5013504] [PID.9928] [Unsigned] =>.Microsoft Corporation ---\\ CHROME, Démarrage, Recherche, Extensions (38) - 1s G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [bhlhnicpbhignbdhedgjhgdocnmhomnp] ColorZilla =>.Alex Sirota G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [ecgllillhilocegdanfdmbfnjonmhpie] G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [fdgfkebogiimcoedlicjlajpkdmockpc] Facebook Pixel Helper =>.Facebook G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [gighmmpiobklfepjocnamgkkbiglidom] Toggle Pause/Resume on all sites =>.Legitimate G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [giihipjfimkajhlcilipnjeohabimjhi] G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [hbapdpeemoojbophdfndmlgdhppljgmp] Keywords Everywhere - Keyword Tool G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [hmpbiickdfmcdlcpjegamgnjjkaiackl] G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [jabopobgcpjmedljpbcaablpmlmfcogm] WhatFont =>.chengyinliu.com G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [jkcacbjiofjgbnaknoojjboeiinempoa] G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [mpajidobdpdigheplhpfggmeldjcpgfh] Ali Hunter G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [nbhfcmbdimdbbclfngkjfmgmjhnkjocl] AliSave G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [ndnaehgpjlnokgebbaldlmgkapkpjkkb] G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [neebplgakaahbhdphmkckjjcegoiijjo] Keepa automatically loads on Amazon product pages. =>.Keepa G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [nkokmeaibnajheohncaamjggkanfbphi] Save Image As PNG =>.Rob W G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet} G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [oldceeleldhonbafppcapldpdifcinji] LanguageTool =>.Legitimate G2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [pnngehidikgomgfjbpffonkeimgbpjlh] Word Count G2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [ecgllillhilocegdanfdmbfnjonmhpie] G2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [fdgfkebogiimcoedlicjlajpkdmockpc] G2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [gighmmpiobklfepjocnamgkkbiglidom] =>.Wladimir Palant {AdBlock} G2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [giihipjfimkajhlcilipnjeohabimjhi] G2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [gmbgaklkmjakoegficnlkhebmhkjfich] =>.Google Calendar G2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [hbapdpeemoojbophdfndmlgdhppljgmp] G2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [hmpbiickdfmcdlcpjegamgnjjkaiackl] G2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [mpajidobdpdigheplhpfggmeldjcpgfh] G2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [nbhfcmbdimdbbclfngkjfmgmjhnkjocl] G2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [ndnaehgpjlnokgebbaldlmgkapkpjkkb] G2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [neebplgakaahbhdphmkckjjcegoiijjo] =>.Keepa G2 - GCE: Preference [Mr_GT][User Data\Default\Managed Extension Settings] [gighmmpiobklfepjocnamgkkbiglidom] =>.Wladimir Palant {AdBlock} G2 - GCE: Preference [Mr_GT][User Data\Default\Managed Extension Settings] [oldceeleldhonbafppcapldpdifcinji] G2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [emliamioobfffbgcfdchabfibonehkme] G2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [fdgfkebogiimcoedlicjlajpkdmockpc] G2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [hbapdpeemoojbophdfndmlgdhppljgmp] G2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [mpajidobdpdigheplhpfggmeldjcpgfh] G2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [nbhfcmbdimdbbclfngkjfmgmjhnkjocl] G2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [ndnaehgpjlnokgebbaldlmgkapkpjkkb] G2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [oldceeleldhonbafppcapldpdifcinji] ---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (24) - 1s M0 - MFSP: prefs.js [Mr_GT - y355bifu.default] http://www.malwarebytes.org/ =>.Malwarebytes P2 - EXT FILE: (...) -- C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\extensions\{019f5290-6afb-4863-bc31-87cc0b6adb25}.xpi [Unsigned] P2 - EXT FILE: (.Download Video.) -- C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\extensions\{bee6eb20-01e0-ebd1-da83-080329fb9a3a}.xpi [Unsigned] =>.Download Video P2 - EXT FILE: (...) -- C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\extensions\{dbac9680-d559-4cd4-9765-059879e8c467}.xpi [Unsigned] =>Toolbar.Graal P2 - EXT FILE: (.AliSave.) -- C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\extensions\{ddf5273a-f9df-4415-9dd9-034ce0b59098}.xpi [Unsigned] C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\bookmarkbackups =>Mozilla Corporation C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\browser-extension-data =>Mozilla Corporation C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\crashes =>Mozilla Corporation C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\datareporting =>Mozilla Corporation C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\extensions =>Mozilla Corporation C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\features =>Mozilla Corporation C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\gmp =>Mozilla Corporation C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\gmp-gmpopenh264 =>Mozilla Corporation C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\gmp-widevinecdm =>Mozilla Corporation C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\minidumps =>Mozilla Corporation C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\saved-telemetry-pings =>Mozilla Corporation C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\searchplugins =>Mozilla Corporation C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\security_state =>Mozilla Corporation C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\sessionstore-backups =>Mozilla Corporation C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\shader-cache =>Mozilla Corporation C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\storage =>Mozilla Corporation C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\weave =>Mozilla Corporation C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\browser-extension-data\doh-rollout@mozilla.org =>Mozilla Corporation C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\browser-extension-data\{bee6eb20-01e0-ebd1-da83-080329fb9a3a} =>Download Flash and Video ---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (11) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.19041.1586 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation ---\\ INTERNET EXPLORER, Site de confiance et site sensible (2) - 0s ~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad) ~ Microsoft Internet Explorer Restricted Site(s) EscDomains: 0(Good) / 0(Bad) ---\\ MICROSOFT EDGE, Plugin,Favoris,Démarrage,Recherche,Extension (77) - 2s E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [aadbahhifnekkkcbapdfandpimaoacmj] E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [abidfmpblafnglcjachhodnellaopilc] E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [bfiijneafemhklkccnjijmcniffmiode] Google SERP counter E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [bglkkgmmlpelbdokjlgbpfkkoplajoop] E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [bhlhnicpbhignbdhedgjhgdocnmhomnp] ColorZilla =>.Alex Sirota E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [bibdombdcdbbnfdjkaajfgnfhlapibde] Shoptimate =>.shoptimate.com E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [chlffgpmiacpedhhbkiomidkjlcfhogd] Pushbullet =>.Pushbullet E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [cknebhggccemgcnbidipinkifmmegdel] No Rank Data =>.Alexa E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [cnpniohnfphhjihaiiggeabnkjhpaldj] Image Downloader =>.Vlad Sabev E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [dinddanocgoljhkgnmmefjgiohilbcac] AliSave E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [dkkdbpgldnmkhcliffjpajcfdjkcaddf] Windscribe =>.Windscribe E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [eenflijjbchafephdplkdmeenekabdfb] E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [ejefaeioamebhekmfaclajddbpnnobje] Keepa automatically loads on Amazon product pages. E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [fdgfkebogiimcoedlicjlajpkdmockpc] Facebook Pixel Helper =>.Facebook E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [fefodpegbocmidnfphgggnjcicipaibk] nevzilya E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [fpjegfbcdijjfkceenlfoehpcakfgldj] Word Counter Plus E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [giihipjfimkajhlcilipnjeohabimjhi] E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [gppongmhjkpfnbhagpmjfkannfbllamg] Wappalyzer =>.wappalyzer.com E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [hbapdpeemoojbophdfndmlgdhppljgmp] Keywords Everywhere - Keyword Tool E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [hfjadhjooeceemgojogkhlppanjkbobc] LanguageTool =>.Legitimate E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [hgfjoaookbahbhinopgfoiajfijfcdhm] iGraal =>Toolbar.Graal E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [hnmpcagpplmpfojmgmnngilcnanddlhb] Windscribe =>.Windscribe E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [jabopobgcpjmedljpbcaablpmlmfcogm] WhatFont =>.chengyinliu.com E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [jkcacbjiofjgbnaknoojjboeiinempoa] E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [joghfdanngcpobcbmdapcemgbjphihag] E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [kefmekfmfacbdefimlancoccpocmgmpb] Commerce Inspector E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [kmhkepipobnjllejbafajoemahjejdcm] iGraal =>Toolbar.Graal E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [koldhcllpbdfcdpfpbldbicbgddglodk] Alt Text Tester E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [lfpjkncokllnfokkgpkobnkbkmelfefj] Linkclump E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [lkcandoekjlnkipbdffedlobpoldojli] E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [llhcnbijpnechllogkacbcjmkcgjbjfi] Evernote =>.EverNote Corporation E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [lpcaedmchfhocbbapmcbpinfpgnhiddi] Google Keep Chrome Extension =>.Google Inc. E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [mmanaflgaempokjfbeeabkadnkoidjam] DSers - AliExpress.com Product Importer E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [mpajidobdpdigheplhpfggmeldjcpgfh] Ali Hunter E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [nbhfcmbdimdbbclfngkjfmgmjhnkjocl] AliSave E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [ndcileolkflehcjpmjnfbnaibdcgglog] Toggle Pause/Resume on all sites =>.Legitimate E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [ndnaehgpjlnokgebbaldlmgkapkpjkkb] E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [nkokmeaibnajheohncaamjggkanfbphi] Save Image As PNG =>.Rob W E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [nmpgaoofmjlimabncmnmnopjabbflegf] E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [oldceeleldhonbafppcapldpdifcinji] LanguageTool =>.Legitimate E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [onhiacboedfinnofagfgoaanfedhmfab] Reverso Context =>.Reverso.net E2 - GCE: Preference [Mr_GT][User Data\Default\Extensions] [pnngehidikgomgfjbpffonkeimgbpjlh] Word Count E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [aadbahhifnekkkcbapdfandpimaoacmj] E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [abidfmpblafnglcjachhodnellaopilc] E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [bibdombdcdbbnfdjkaajfgnfhlapibde] E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [dinddanocgoljhkgnmmefjgiohilbcac] E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [dkkdbpgldnmkhcliffjpajcfdjkcaddf] E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [eenflijjbchafephdplkdmeenekabdfb] E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [ejefaeioamebhekmfaclajddbpnnobje] E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [giihipjfimkajhlcilipnjeohabimjhi] E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [gmbgaklkmjakoegficnlkhebmhkjfich] =>.Google Calendar E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [gppongmhjkpfnbhagpmjfkannfbllamg] E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [hbapdpeemoojbophdfndmlgdhppljgmp] E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [hgfjoaookbahbhinopgfoiajfijfcdhm] E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [hnmpcagpplmpfojmgmnngilcnanddlhb] E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [jdiccldimpdaibmpdkjnbmckianbfold] =>.Microsoft Corporation E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [kefmekfmfacbdefimlancoccpocmgmpb] E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [kmhkepipobnjllejbafajoemahjejdcm] =>Toolbar.Graal E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [lpcaedmchfhocbbapmcbpinfpgnhiddi] E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [mmanaflgaempokjfbeeabkadnkoidjam] E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [mpajidobdpdigheplhpfggmeldjcpgfh] E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [nbhfcmbdimdbbclfngkjfmgmjhnkjocl] E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [ndcileolkflehcjpmjnfbnaibdcgglog] =>.Legitimate E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [ndnaehgpjlnokgebbaldlmgkapkpjkkb] E2 - GCE: Preference [Mr_GT][User Data\Default\Local Extension Settings] [onbhkdnjgomhlomaoijdmkkoakapbchb] E2 - GCE: Preference [Mr_GT][User Data\Default\Managed Extension Settings] [dkkdbpgldnmkhcliffjpajcfdjkcaddf] E2 - GCE: Preference [Mr_GT][User Data\Default\Managed Extension Settings] [hfjadhjooeceemgojogkhlppanjkbobc] E2 - GCE: Preference [Mr_GT][User Data\Default\Managed Extension Settings] [ndcileolkflehcjpmjnfbnaibdcgglog] =>.Legitimate E2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [dinddanocgoljhkgnmmefjgiohilbcac] E2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [fdgfkebogiimcoedlicjlajpkdmockpc] E2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [hbapdpeemoojbophdfndmlgdhppljgmp] E2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [hfjadhjooeceemgojogkhlppanjkbobc] E2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [kefmekfmfacbdefimlancoccpocmgmpb] E2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [mpajidobdpdigheplhpfggmeldjcpgfh] E2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [nbhfcmbdimdbbclfngkjfmgmjhnkjocl] E2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [ndnaehgpjlnokgebbaldlmgkapkpjkkb] E2 - GCE: Preference [Mr_GT][User Data\Default\Sync Extension Settings] [oldceeleldhonbafppcapldpdifcinji] ---\\ INTERNET EXPLORER,Proxy Management (3) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft ---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet= ---\\ ÉTUDE DU FICHIER HOSTS (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (22) ---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (5) - 0s O2 - BHO: IEToEdge BHO [64Bits] - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} . (.Microsoft Corporation - IEToEdge BHO.) -- C:\Program Files (x86)\Microsoft\Edge\Application\100.0.1185.36\BHO\ie_to_edge_bho_64.dll =>.Microsoft® O2 - BHO: Skype for Business Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files\Microsoft Office\Office16\OCHelper.dll =>.Microsoft® O2 - BHO: Adobe Acrobat Create PDF Helper [64Bits] - {AE7CD045-E861-484f-8273-0445EE161910} . (.Adobe Systems Incorporated - Adobe PDF Toolbar for Internet Explorer.) -- C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll =>.Adobe Systems, Incorporated® O2 - BHO: Microsoft OneDrive for Business Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL =>.Microsoft® O2 - BHO: SmartSelect [64Bits] - {F4971EE7-DAA0-4053-9964-665D8EE6A077} . (.Adobe Systems Incorporated - Adobe PDF Toolbar for Internet Explorer.) -- C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll =>.Adobe Systems, Incorporated® ---\\ RACCOURCIS GLOBAL STARTUP (122) - 22s O4 - GS\Desktop [Mr_GT]: A-Trot'Secure dropshipping - Raccourci.lnk . (...) D:\A-Trot'Secure dropshipping [Unsigned] O4 - GS\Desktop [Mr_GT]: Adobe Photoshop CC 2019.lnk . (.Adobe Systems Incorporated - Adobe Photoshop CC 2019.) D:\Logiciels\Photosphop\Adobe Photoshop CC 2019\Photoshop.exe [Unsigned] =>.Adobe Systems Incorporated O4 - GS\Desktop [Mr_GT]: Discord.lnk . (.GitHub - Update.) C:\Users\Mr_GT\AppData\Local\Discord\Update.exe --processStart Discord.exe =>.SUP.Discord O4 - GS\Desktop [Mr_GT]: Download - Raccourci.lnk . (...) D:\Download [Unsigned] O4 - GS\Desktop [Mr_GT]: Firefox - Copie.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Desktop [Mr_GT]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Desktop [Mr_GT]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\Desktop [Mr_GT]: Movavi Video Converter 19 Premium.lnk . (.Movavi - Movavi Video Converter 19.3.0 Premium.) D:\Logiciels\movavi\Movavi Video Converter 19 Premium\converter.exe [Unsigned] =>.Movavi O4 - GS\Desktop [Mr_GT]: MSI Afterburner.lnk . (.2009-2019 Alexey Nicolaychuk aka Unwinder, developed - MSIAfterburner.) D:\Logiciels\MSI Afterburner\MSIAfterburner.exe =>.MICRO-STAR INTERNATIONAL CO., LTD.® O4 - GS\Desktop [Mr_GT]: MT2.lnk . (...) D:\Logiciels\MT2 Mechanical Keyboard\OemDrv.exe [Unsigned] O4 - GS\Desktop [Mr_GT]: Photos Produits - Trot'Secure.lnk . (...) C:\Users\Mr_GT\Desktop\A-Trot'Secure dropshipping\Photos Produits [Unsigned] O4 - GS\Desktop [Mr_GT]: Telegram.lnk . (.Telegram FZ-LLC - Telegram Desktop.) D:\Logiciels\Telegram Desktop\Telegram.exe =>.Telegram FZ-LLC® O4 - GS\Desktop [Mr_GT]: Téléchargements - Raccourci.lnk . (...) C:\Users\Mr_GT\Downloads [Unsigned] O4 - GS\Desktop [Mr_GT]: Téléchargements.lnk . (...) C:\Users\Mr_GT\Downloads [Unsigned] O4 - GS\Desktop [Mr_GT]: vegas150.exe - Raccourci.lnk . (.MAGIX Computer Products Intl. Co. - VEGAS Pro.) D:\Logiciels\Sony Vegas 12\Sony Vegas Inst\vegas150.exe [Unsigned] =>.MAGIX Computer Products Intl. Co. O4 - GS\Desktop [Mr_GT]: WhatsApp.lnk . (.WhatsApp - WhatsApp.) C:\Users\Mr_GT\AppData\Local\WhatsApp\WhatsApp.exe =>.WhatsApp, Inc® O4 - GS\Desktop [Mr_GT]: Zoom.lnk . (.Zoom Video Communications, Inc. - Zoom Meetings.) C:\Users\Mr_GT\AppData\Roaming\Zoom\bin\Zoom.exe =>.Zoom Video Communications, Inc.® O4 - GS\Quicklaunch [Mr_GT]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC® O4 - GS\Quicklaunch [Mr_GT]: Light Image Resizer 5.lnk . (.ObviousIdea SARL - Light Image Resizer.) D:\Logiciels\Light Image Resizer 5\Resize.exe [Unsigned] =>.ObviousIdea SARL O4 - GS\Quicklaunch [Mr_GT]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\Quicklaunch [Mr_GT]: Microsoft Outlook.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE /recycle =>.Microsoft® O4 - GS\sendTo [Mr_GT]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Mr_GT]: Evernote.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote.) D:\Logiciels\Evernote\Evernote.exe =>.Evernote Corporation® O4 - GS\sendTo [Mr_GT]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Mr_GT]: TeamViewer.lnk . (.TeamViewer Germany GmbH - TeamViewer.) D:\Logiciels\TeamViewer\TeamViewer.exe --sendto =>.TeamViewer Germany GmbH® O4 - GS\sendTo [Mr_GT]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [Mr_GT]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC® O4 - GS\TaskBar [Mr_GT]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --profile-directory=Default =>.Microsoft® O4 - GS\Startup [Mr_GT]: EvernoteClipper.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote Clipper.) D:\Logiciels\Evernote\EvernoteClipper.exe =>.Evernote Corporation® O4 - GS\Startup [Mr_GT]: serposcope-manager.lnk . (.Apache Software Foundation - Commons Daemon Service Manager.) C:\Program Files (x86)\serposcope\bin\serposcopew.exe //MS//serposcope {76BDA099930ACCDEF2E06E86AAC1BAFF}. =>.Apache Software Foundation O4 - GS\Programs [Mr_GT]: Bitdefender Antivirus Free.lnk . (...) C:\Program Files (x86)\Bitdefender Antivirus Free\bdagent.exe [Unsigned] O4 - GS\Programs [Mr_GT]: Microsoft Teams.lnk . (.Microsoft Corporation - Microsoft Teams.) C:\Users\Mr_GT\AppData\Local\Microsoft\Teams\Update.exe --processStart "Teams.exe" =>.Microsoft® O4 - GS\Programs [Mr_GT]: Neon.lnk . (.Ethan Fast - Neon.) C:\Users\Mr_GT\AppData\Local\Programs\Neon\Neon.exe [Unsigned] =>.Ethan Fast O4 - GS\Programs [Mr_GT]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Mr_GT\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft® O4 - GS\Programs [Mr_GT]: uTorrent Web.lnk . (...) C:\Users\Mr_GT\AppData\Roaming\uTorrent Web\utweb.exe [Unsigned] O4 - GS\Desktop [postgres]: A-Trot'Secure dropshipping - Raccourci.lnk . (...) D:\A-Trot'Secure dropshipping [Unsigned] O4 - GS\Desktop [postgres]: Adobe Photoshop CC 2019.lnk . (.Adobe Systems Incorporated - Adobe Photoshop CC 2019.) D:\Logiciels\Photosphop\Adobe Photoshop CC 2019\Photoshop.exe [Unsigned] =>.Adobe Systems Incorporated O4 - GS\Desktop [postgres]: Discord.lnk . (.GitHub - Update.) C:\Users\Mr_GT\AppData\Local\Discord\Update.exe --processStart Discord.exe =>.SUP.Discord O4 - GS\Desktop [postgres]: Download - Raccourci.lnk . (...) D:\Download [Unsigned] O4 - GS\Desktop [postgres]: Firefox - Copie.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Desktop [postgres]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Desktop [postgres]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\Desktop [postgres]: Movavi Video Converter 19 Premium.lnk . (.Movavi - Movavi Video Converter 19.3.0 Premium.) D:\Logiciels\movavi\Movavi Video Converter 19 Premium\converter.exe [Unsigned] =>.Movavi O4 - GS\Desktop [postgres]: MSI Afterburner.lnk . (.2009-2019 Alexey Nicolaychuk aka Unwinder, developed - MSIAfterburner.) D:\Logiciels\MSI Afterburner\MSIAfterburner.exe =>.MICRO-STAR INTERNATIONAL CO., LTD.® O4 - GS\Desktop [postgres]: MT2.lnk . (...) D:\Logiciels\MT2 Mechanical Keyboard\OemDrv.exe [Unsigned] O4 - GS\Desktop [postgres]: Photos Produits - Trot'Secure.lnk . (...) C:\Users\Mr_GT\Desktop\A-Trot'Secure dropshipping\Photos Produits [Unsigned] O4 - GS\Desktop [postgres]: Telegram.lnk . (.Telegram FZ-LLC - Telegram Desktop.) D:\Logiciels\Telegram Desktop\Telegram.exe =>.Telegram FZ-LLC® O4 - GS\Desktop [postgres]: Téléchargements - Raccourci.lnk . (...) C:\Users\Mr_GT\Downloads [Unsigned] O4 - GS\Desktop [postgres]: Téléchargements.lnk . (...) C:\Users\Mr_GT\Downloads [Unsigned] O4 - GS\Desktop [postgres]: vegas150.exe - Raccourci.lnk . (.MAGIX Computer Products Intl. Co. - VEGAS Pro.) D:\Logiciels\Sony Vegas 12\Sony Vegas Inst\vegas150.exe [Unsigned] =>.MAGIX Computer Products Intl. Co. O4 - GS\Desktop [postgres]: WhatsApp.lnk . (.WhatsApp - WhatsApp.) C:\Users\Mr_GT\AppData\Local\WhatsApp\WhatsApp.exe =>.WhatsApp, Inc® O4 - GS\Desktop [postgres]: Zoom.lnk . (.Zoom Video Communications, Inc. - Zoom Meetings.) C:\Users\Mr_GT\AppData\Roaming\Zoom\bin\Zoom.exe =>.Zoom Video Communications, Inc.® O4 - GS\Quicklaunch [postgres]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC® O4 - GS\Quicklaunch [postgres]: Light Image Resizer 5.lnk . (.ObviousIdea SARL - Light Image Resizer.) D:\Logiciels\Light Image Resizer 5\Resize.exe [Unsigned] =>.ObviousIdea SARL O4 - GS\Quicklaunch [postgres]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\Quicklaunch [postgres]: Microsoft Outlook.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE /recycle =>.Microsoft® O4 - GS\sendTo [postgres]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [postgres]: Evernote.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote.) D:\Logiciels\Evernote\Evernote.exe =>.Evernote Corporation® O4 - GS\sendTo [postgres]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [postgres]: TeamViewer.lnk . (.TeamViewer Germany GmbH - TeamViewer.) D:\Logiciels\TeamViewer\TeamViewer.exe --sendto =>.TeamViewer Germany GmbH® O4 - GS\sendTo [postgres]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [postgres]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC® O4 - GS\TaskBar [postgres]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --profile-directory=Default =>.Microsoft® O4 - GS\Startup [postgres]: EvernoteClipper.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote Clipper.) D:\Logiciels\Evernote\EvernoteClipper.exe =>.Evernote Corporation® O4 - GS\Startup [postgres]: serposcope-manager.lnk . (.Apache Software Foundation - Commons Daemon Service Manager.) C:\Program Files (x86)\serposcope\bin\serposcopew.exe //MS//serposcope {76BDA099930ACCDEF2E06E86AAC1BAFF}. =>.Apache Software Foundation O4 - GS\Programs [postgres]: Bitdefender Antivirus Free.lnk . (...) C:\Program Files (x86)\Bitdefender Antivirus Free\bdagent.exe [Unsigned] O4 - GS\Programs [postgres]: Microsoft Teams.lnk . (.Microsoft Corporation - Microsoft Teams.) C:\Users\Mr_GT\AppData\Local\Microsoft\Teams\Update.exe --processStart "Teams.exe" =>.Microsoft® O4 - GS\Programs [postgres]: Neon.lnk . (.Ethan Fast - Neon.) C:\Users\Mr_GT\AppData\Local\Programs\Neon\Neon.exe [Unsigned] =>.Ethan Fast O4 - GS\Programs [postgres]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Mr_GT\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft® O4 - GS\Programs [postgres]: uTorrent Web.lnk . (...) C:\Users\Mr_GT\AppData\Roaming\uTorrent Web\utweb.exe [Unsigned] O4 - GS\CommonDesktop [Public]: Acrobat Reader DC.lnk . (.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Inc.® O4 - GS\CommonDesktop [Public]: Battle.net.lnk . (.Blizzard Entertainment - Blizzard Battle.net App Launcher.) D:\Jeux\Battle.net\Battle.net Launcher.exe =>.Blizzard Entertainment, Inc.® O4 - GS\CommonDesktop [Public]: Battlefield™ V.lnk . (.EA Digital Illusions CE AB - Battlefield™ V.) D:\Jeux\Battlefield V\bfv.exe =>.Electronic Arts, Inc.® O4 - GS\CommonDesktop [Public]: HP ENVY Photo 6200 series-HP Scan.lnk . (.HP Inc. - HPScan.) C:\Program Files (x86)\HP\HP ENVY Photo 6200 series\bin\HPScan.exe =>.HP Inc® O4 - GS\CommonDesktop [Public]: HP ENVY Photo 6200 series.lnk . (.HP Inc. - .) C:\Program Files (x86)\HP\HP ENVY Photo 6200 series\Bin\HP ENVY Photo 6200 series.exe -Start UDCDevicePage [Unsigned] =>.HP Inc. O4 - GS\CommonDesktop [Public]: Light Image Resizer 5.lnk . (.ObviousIdea SARL - Light Image Resizer.) D:\Logiciels\Light Image Resizer 5\Resize.exe [Unsigned] =>.ObviousIdea SARL O4 - GS\CommonDesktop [Public]: Malwarebytes.lnk . (.Malwarebytes - Malwarebytes.) D:\Logiciels\Anti-Malware\mbam.exe =>.Malwarebytes Inc® O4 - GS\CommonDesktop [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\CommonDesktop [Public]: Notepad++.lnk . (.Don HO don.h@free.fr - Notepad++ : a free (GNU) source code editor.) D:\Logiciels\Notepad++\notepad++.exe =>.Notepad++® O4 - GS\CommonDesktop [Public]: OBS Studio.lnk . (.OBS - OBS Studio.) D:\Logiciels\obs-studio\bin\64bit\obs64.exe {06D41A66692153FFBE5DEFE873ADFF6A}. O4 - GS\CommonDesktop [Public]: Overwatch.lnk . (.Blizzard Entertainment - Overwatch Launcher.) D:\Jeux\Overwatch\Overwatch Launcher.exe --productcode=pro =>.Blizzard Entertainment, Inc.® O4 - GS\CommonDesktop [Public]: Revo Uninstaller Pro.lnk . (.VS Revo Group - Revo Uninstaller Pro.) D:\Logiciels\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group Ltd.® O4 - GS\CommonDesktop [Public]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe =>.Skype Software Sarl® O4 - GS\CommonDesktop [Public]: Steam.lnk . (.Valve Corporation - Steam.) D:\Jeux\Steam\Steam.exe =>.Valve® O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) D:\Logiciels\VLC\vlc.exe =>.VideoLAN® O4 - GS\Programs [Public]: Bitdefender Antivirus Free.lnk . (...) C:\Program Files (x86)\Bitdefender Antivirus Free\bdagent.exe [Unsigned] O4 - GS\Programs [Public]: Microsoft Teams.lnk . (.Microsoft Corporation - Microsoft Teams.) C:\Users\Mr_GT\AppData\Local\Microsoft\Teams\Update.exe --processStart "Teams.exe" =>.Microsoft® O4 - GS\Programs [Public]: Neon.lnk . (.Ethan Fast - Neon.) C:\Users\Mr_GT\AppData\Local\Programs\Neon\Neon.exe [Unsigned] =>.Ethan Fast O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Mr_GT\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft® O4 - GS\Programs [Public]: uTorrent Web.lnk . (...) C:\Users\Mr_GT\AppData\Roaming\uTorrent Web\utweb.exe [Unsigned] O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft® O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\WINDOWS\system32\xpsrchvw.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Access 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\accicons.exe =>.Microsoft® O4 - GS\ProgramsCommon [Public]: Acrobat Reader DC.lnk . (.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Inc.® O4 - GS\ProgramsCommon [Public]: Adobe Acrobat DC.lnk . (.Flexera Software LLC - InstallShield.) C:\Windows\Installer\{AC76BA86-1033-FFFF-7760-0C0F074E4100}\_SC_Acrobat.ico [Unsigned] =>.Flexera Software LLC O4 - GS\ProgramsCommon [Public]: Adobe Photoshop CC 2019.lnk . (.Adobe Systems Incorporated - Adobe Photoshop CC 2019.) D:\Logiciels\Photosphop\Adobe Photoshop CC 2019\Photoshop.exe [Unsigned] =>.Adobe Systems Incorporated O4 - GS\ProgramsCommon [Public]: Audacity.lnk . (.The Audacity Team - Audacity®, the Free, Cross-Platform Sound E.) D:\Logiciels\Audacity\audacity.exe [Unsigned] =>.The Audacity Team O4 - GS\ProgramsCommon [Public]: Excel 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\xlicons.exe =>.Microsoft® O4 - GS\ProgramsCommon [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC® O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Malwarebytes.lnk . (.Malwarebytes - Malwarebytes.) D:\Logiciels\Anti-Malware\mbam.exe =>.Malwarebytes Inc® O4 - GS\ProgramsCommon [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\ProgramsCommon [Public]: Notepad++.lnk . (.Don HO don.h@free.fr - Notepad++ : a free (GNU) source code editor.) D:\Logiciels\Notepad++\notepad++.exe =>.Notepad++® O4 - GS\ProgramsCommon [Public]: OneNote 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\joticon.exe =>.Microsoft® O4 - GS\ProgramsCommon [Public]: Outlook 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\outicon.exe =>.Microsoft® O4 - GS\ProgramsCommon [Public]: PC Health Check.lnk . (...) C:\Program Files (x86)\PCHealthCheck\PCHealthCheck.exe [Unsigned] =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: PowerPoint 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\pptico.exe =>.Microsoft® O4 - GS\ProgramsCommon [Public]: Publisher 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\pubs.exe =>.Microsoft® O4 - GS\ProgramsCommon [Public]: TeamViewer.lnk . (.TeamViewer Germany GmbH - TeamViewer.) D:\Logiciels\TeamViewer\TeamViewer.exe =>.TeamViewer Germany GmbH® O4 - GS\ProgramsCommon [Public]: Word 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft® ---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\..\{36c782bc-b08a-4b7d-81b2-0c7d35f22b2e}: DhcpNameServer = 89.2.0.1 89.2.0.2 =>.France Numéricable O17 - HKLM\System\CCS\Services\Tcpip\..\{bef21b72-e2ba-4930-b4a6-b8268a089bf5}: DhcpNameServer = 192.168.42.129 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{36c782bc-b08a-4b7d-81b2-0c7d35f22b2e}: DhcpDomain = numericable.fr =>.numericable ---\\ PROTOCOLE ADDITIONNEL (23) - 1s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE16\MSOXMLMF.DLL =>.Microsoft® ---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation ---\\ CLÉ DE REGISTRE EXPLORER StartupApproved (28) - 1s [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDrive =>.Microsoft Corporation [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Monitoring =>.Piriform Ltd [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Discord =>.SUP.Discord [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Skype =>.Skype [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:HoldemManager.Server [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:vidnotifier.exe =>.Digital Wave [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Smart Cleaning =>.Piriform Ltd [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Steam =>.Valve [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Skype for Desktop =>.Skype Technologies [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Battle.net =>.Blizzard Entertainment [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:EADM =>.Electronic Arts, Inc. [HKEY_USERS\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDrive =>.Microsoft Corporation [HKEY_USERS\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Monitoring =>.Piriform Ltd [HKEY_USERS\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Discord =>.SUP.Discord [HKEY_USERS\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Skype =>.Skype [HKEY_USERS\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:HoldemManager.Server [HKEY_USERS\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:vidnotifier.exe =>.Digital Wave [HKEY_USERS\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Smart Cleaning =>.Piriform Ltd [HKEY_USERS\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Steam =>.Valve [HKEY_USERS\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Skype for Desktop =>.Skype Technologies [HKEY_USERS\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Battle.net =>.Blizzard Entertainment [HKEY_USERS\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:EADM =>.Electronic Arts, Inc. [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SecurityHealth =>.Microsoft Corporation [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:RTHDVCPL =>.Realtek Semiconductor Corp. [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Logitech Download Assistant =>.Logitech Inc. [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:APSDaemon =>.Apple Inc. [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:HP Button Manager.lnk [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:ROCCAT Swarm Monitor.lnk ---\\ COMPOSANTS ACTIVESETUP INSTALLÉS (ASIC) (7) - 0s O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft® O40 - ASIC: Google Chrome [64Bits] - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google LLC - Google Chrome Installer.) -- C:\Program Files (x86)\Google\Chrome\Application\100.0.4896.75\Installer\chrmstp.exe =>.Google LLC® O40 - ASIC: Microsoft Edge [64Bits] - {9459C573-B17A-45AE-9F64-1857B5D58CEE} . (.Microsoft Corporation - Microsoft Edge Installer.) -- C:\Program Files (x86)\Microsoft\Edge\Application\100.0.1185.36\Installer\setup.exe =>.Microsoft® ---\\ LOGICIELS INSTALLÉS (220) - 34s =>.Microsoft O42 - Logiciel: Adobe Acrobat DC - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-1033-FFFF-7760-0C0F074E4100} [Unsigned] =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} [Unsigned] =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Photoshop CC 2019 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- PHSP_20_0_4 =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824458876} [Unsigned] =>.Adobe Systems Incorporated (Hidden) O42 - Logiciel: Aimersoft Helper Compact 2.5.2 - (.Aimersoft.) [HKLM][64Bits] -- {405147F7-FCC5-499B-A27E-EA6BD4A80435}_is1 [Unsigned] =>.Aimersoft O42 - Logiciel: AMD DVR64 - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {3EEAC93B-6240-4CA2-B1D3-7487C79000B4} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: AMD Settings - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {44E86F9E-7348-482D-BB23-934717BA7357} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: AMD Software - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- AMD Catalyst Install Manager {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices, Inc. O42 - Logiciel: AMD WVR64 - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {32F8E6C7-BF05-4F5D-B45D-4D04C58AF2F9} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: Asmedia USB Host Controller Driver - (.Asmedia Technology.) [HKLM][64Bits] -- {E4FB0B39-C991-4EE7-95DD-1A1A7857D33D} [Unsigned] =>.Asmedia Technology O42 - Logiciel: Audacity 2.1.0 - (.Audacity Team.) [HKLM][64Bits] -- Audacity_is1 [Unsigned] =>.Audacity Team O42 - Logiciel: Battle.net - (.Blizzard Entertainment.) [HKLM][64Bits] -- Battle.net =>.Blizzard Entertainment, Inc.® O42 - Logiciel: Battlefield™ V - (.Electronic Arts.) [HKLM][64Bits] -- {e26b382f-e945-4f70-9318-121b683f1d61} =>.Electronic Arts, Inc.® O42 - Logiciel: Branding64 - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {2AF42320-5ECF-4BCA-B756-8F3677262D55} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: Contrôle d’intégrité du PC Windows - (.Microsoft Corporation.) [HKLM][64Bits] -- {0150BDB3-AFFD-47A1-ADB8-DE06658EB3B2} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Counter-Strike: Global Offensive - (.Valve.) [HKLM][64Bits] -- Steam App 730 =>.Valve® O42 - Logiciel: CPUID CPU-Z 1.94 - (.CPUID, Inc..) [HKLM][64Bits] -- CPUID CPU-Z_is1 [Unsigned] =>.CPUID, Inc. O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite =>.AVB Disc Soft, SIA® O42 - Logiciel: Definition Update for Microsoft Office 2016 (KB3115085) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{7EB01F8D-7721-43AF-8A71-EC89ED48ECCA} =>.Microsoft® O42 - Logiciel: Discord - (.Discord Inc..) [HKCU][64Bits] -- Discord =>.SUP.Discord O42 - Logiciel: Equalizer APO - (.Jonas Thedering.) [HKLM][64Bits] -- EqualizerAPO [Unsigned] =>.Jonas Thedering O42 - Logiciel: Étude pour l'amélioration du produit HP ENVY Photo 6200 series - (.HP Inc..) [HKLM][64Bits] -- {A44E3541-DAF7-49F8-81B9-779BA388B1CE} [Unsigned] =>.HP Inc. O42 - Logiciel: Evernote v. 6.24.2 - (.Evernote Corp..) [HKLM][64Bits] -- {A8B80634-6257-11EA-8C8E-005056951CAD} [Unsigned] =>.Evernote Corp. O42 - Logiciel: FileZilla Client 3.52.2 - (.Tim Kosse.) [HKLM][64Bits] -- FileZilla Client [Unsigned] =>.Tim Kosse O42 - Logiciel: GenArts Sapphire Plug-ins 6.10 for OFX - (..) [HKLM][64Bits] -- GenArts Sapphire Plug-ins for OFX_is1 [Unsigned] O42 - Logiciel: Google Chrome - (.Google LLC.) [HKLM][64Bits] -- Google Chrome =>.Google LLC® O42 - Logiciel: GoTo Opener - (.LogMeIn, Inc..) [HKLM][64Bits] -- {C0F33C38-345C-4C02-B161-11389350C2A5} [Unsigned] =>.LogMeIn, Inc. O42 - Logiciel: Grand Theft Auto V - (.Rockstar Games.) [HKLM][64Bits] -- {E01FA564-2094-4833-8F2F-1FFEC6AFCC46} =>.Take-Two Interactive Software, Inc.® O42 - Logiciel: Herramientas de corrección de Microsoft Office 2016: español - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-001F-0C0A-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: HiSuite - (.Huawei Technologies Co.,Ltd.) [HKLM][64Bits] -- Hi Suite [Unsigned] =>.Huawei Technologies Co.,Ltd O42 - Logiciel: Holdem Manager 2 - (..) [HKLM][64Bits] -- HoldemManager2 [Unsigned] O42 - Logiciel: Holdem Manager 3 - (.Max Value Software.) [HKLM][64Bits] -- {F1A0512A-1DDC-4C61-887E-20A9F26AA03A} [Unsigned] =>.Max Value Software O42 - Logiciel: HP Dropbox Plugin - (.HP.) [HKLM][64Bits] -- {C722A9DD-471B-4F25-9E7E-7DD112D1BC35} [Unsigned] =>.HP O42 - Logiciel: HP EmailSMTP Plugin - (.HP.) [HKLM][64Bits] -- {C3739212-3C21-4138-9607-C31F9EA8A514} [Unsigned] =>.HP O42 - Logiciel: HP ENVY Photo 6200 series Aide - (.HP.) [HKLM][64Bits] -- {42AD9949-096B-4D00-ADA9-E5B82327E225} [Unsigned] =>.HP O42 - Logiciel: HP FTP Plugin - (.HP.) [HKLM][64Bits] -- {FC93D1CC-102B-4B59-92DA-30E0DE232FF6} [Unsigned] =>.HP O42 - Logiciel: HP Google Drive Plugin - (.HP.) [HKLM][64Bits] -- {06505D9F-A3AD-4DC0-8119-8836BAD1938E} [Unsigned] =>.HP O42 - Logiciel: HP OneDrive Plugin - (.HP.) [HKLM][64Bits] -- {6ECCAD1A-2BD7-489C-8D43-68B69A2AA879} [Unsigned] =>.HP O42 - Logiciel: HP Photo Creations - (.HP.) [HKLM][64Bits] -- HP Photo Creations =>.Visan Industries® O42 - Logiciel: HP SharePoint Plugin - (.HP.) [HKLM][64Bits] -- {0758DCDE-50A2-4D6D-B025-FBB2BF342743} [Unsigned] =>.HP O42 - Logiciel: HP Webcam HD 2300 Software - (.Hewlett-Packard.) [HKLM][64Bits] -- {74E6771A-47B5-433E-A96F-15E29F70F920} [Unsigned] =>.Hewlett-Packard O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel Corporation.) [HKLM][64Bits] -- {8C91A5EB-2C62-4A6D-8802-CC79FD2ED390} [Unsigned] =>.Intel Corporation (Hidden) O42 - Logiciel: Intel(R) Network Connections 20.2.4001.0 - (.Intel.) [HKLM][64Bits] -- {638A518B-0D2E-4143-ACF8-F3D83D822E85} [Unsigned] =>.Intel (Hidden) O42 - Logiciel: Intel(R) Network Connections 20.2.4001.0 - (.Intel.) [HKLM][64Bits] -- PROSetDX [Unsigned] =>.Intel O42 - Logiciel: Java 8 Update 251 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F32180251F0} [Unsigned] =>.Oracle Corporation O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} [Unsigned] =>.Oracle Corporation (Hidden) O42 - Logiciel: K-Lite Mega Codec Pack 15.0.9 - (.KLCP.) [HKLM][64Bits] -- KLiteCodecPack_is1 [Unsigned] =>.KLCP O42 - Logiciel: Launcher Prerequisites (x64) - (.Epic Games, Inc..) [HKLM][64Bits] -- {c6c5a357-c7ca-4a5f-9789-3bb1af579253} =>.Epic Games Inc.® (Hidden) O42 - Logiciel: Light Image Resizer 5.1.1.0 - (.ObviousIdea.) [HKLM][64Bits] -- {D5C093E0-D3DF-42D3-AFD6-CAAFB6985CBC}_is1 =>.ObviousIdea® O42 - Logiciel: Logiciel de base du périphérique HP ENVY Photo 6200 series - (.HP Inc..) [HKLM][64Bits] -- {2F03A175-09AE-429E-8E16-8619390EA508} [Unsigned] =>.HP Inc. O42 - Logiciel: Logiciel pour périphérique à chipset Intel® - (.Intel(R) Corporation.) [HKLM][64Bits] -- {60c073df-e736-4210-9c3a-5fc2b651cef3} =>.Intel Corporation - Software and Firmware Products® (Hidden) O42 - Logiciel: Malwarebytes version 4.3.0.98 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Inc® O42 - Logiciel: Microsoft Access MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0015-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft DCF MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0090-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Edge - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Edge =>.Microsoft® O42 - Logiciel: Microsoft Edge Update - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Edge Update [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Excel MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0016-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Groove MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-00BA-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft HEVC Media Extension Installation for Microsoft.HEVCVideoExtensio - (.Microsoft Corporation.) [HKLM][64Bits] -- {B0169E83-757B-EF66-E2F0-391944D785BC} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft InfoPath MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0044-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office 64-bit Components 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-002A-0000-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Korrekturhilfen 2016 – Deutsch - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-001F-0407-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office OSM MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-00E1-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office OSM UX MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-00E2-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Professional Plus 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Professionnel Plus 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- Office16.PROPLUS =>.Microsoft® O42 - Logiciel: Microsoft Office Proofing (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-002C-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Proofing Tools 2016 - English - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-001F-0409-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Proofing Tools 2016 - اللغة العربية - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-001F-0401-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Shared 64-bit MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-002A-040C-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Shared MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-006E-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft® O42 - Logiciel: Microsoft OneNote MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-00A1-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Outlook MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-001A-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft PowerPoint MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0018-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Publisher MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0019-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Skype for Business MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-012B-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Teams - (.Microsoft Corporation.) [HKCU][64Bits] -- Teams =>.Microsoft® O42 - Logiciel: Microsoft Update Health Tools - (.Microsoft Corporation.) [HKLM][64Bits] -- {7B1FCD52-8F6B-4F12-A143-361EA39F5E7C} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {7299052b-02a4-4627-81f2-1818da5d550d} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {837b34e3-7c30-493c-8f6a-2b0f04e2912c} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {071c9b48-7c32-4621-a0ac-3f809523288f} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 - (.Microsoft Corporation.) [HKLM][64Bits] -- {350AA351-21FA-3270-8B7A-835434E766AD} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 - (.Microsoft Corporation.) [HKLM][64Bits] -- {8220EEFE-38CD-377E-8595-13398D740ACE} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 - (.Microsoft Corporation.) [HKLM][64Bits] -- {FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D8E6291-B0D5-35EC-8441-6616F567A0F7} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {ca67548a-5ebe-413a-b50c-4b9ceb6d66c6} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {33d1fd90-4274-48a1-9bc1-97e33d9c2d6f} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {37B8F9C7-03FB-3253-8781-2517C99D7C00} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {B175520C-86A2-35A7-8619-86DC379688B9} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BD95A8CD-1D9F-35AD-981A-3E7925026EBB} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 - (.Microsoft Corporation.) [HKLM][64Bits] -- {050d4fc8-5d48-4b8f-8972-47c82c46020f} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] -- {ef6b00ec-13e1-4c25-9064-b2f383cb8412} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 - (.Microsoft Corporation.) [HKLM][64Bits] -- {f65db027-aff3-4070-886a-0d87064aabb1} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] -- {61087a79-ac85-455c-934d-1fa22cc64f36} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] -- {5740BD44-B58D-321A-AFC0-6D3D4556DD6C} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] -- {CB0836EC-B072-368D-82B2-D3470BF95707} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] -- {7DAD0258-515C-3DD4-8964-BD714199E0F7} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] -- {E30D8B21-D82D-3211-82CC-0F0A5D1495E8} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.28.29913 - (.Microsoft Corporation.) [HKLM][64Bits] -- {855e31d2-9031-46e1-b06d-c9d7777deefb} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2017 Redistributable (x86) - 14.15.26706 - (.Microsoft Corporation.) [HKLM][64Bits] -- {7e9fae12-5bbf-47fb-b944-09c49e75c061} =>.Microsoft Corporation® O42 - Logiciel: Microsoft Visual C++ 2017 x86 Additional Runtime - 14.15.26706 - (.Microsoft Corporation.) [HKLM][64Bits] -- {2757496A-3E74-320A-B007-36120A9F126D} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2017 x86 Minimum Runtime - 14.15.26706 - (.Microsoft Corporation.) [HKLM][64Bits] -- {39E15475-23F2-345D-8977-B5DC47A94E26} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2019 X64 Additional Runtime - 14.28.29913 - (.Microsoft Corporation.) [HKLM][64Bits] -- {620A7633-7A09-42A8-8580-076A4483C4B0} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.28.29913 - (.Microsoft Corporation.) [HKLM][64Bits] -- {EECDD137-13DA-46ED-ADA0-BDF7F8BE65B8} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Word MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-001B-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Movavi Video Converter 19 Premium - (.Movavi.) [HKCU][64Bits] -- Movavi Video Converter 19 Premium =>.Movavi Software Limited® O42 - Logiciel: Mozilla Firefox (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 95.0 (x86 fr) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService [Unsigned] =>.Mozilla O42 - Logiciel: MSI Afterburner 4.6.0 - (.MSI Co., LTD.) [HKLM][64Bits] -- Afterburner [Unsigned] =>.MSI Co., LTD O42 - Logiciel: MSVCRT Redists - (.MAGIX Computer Products Intl. Co..) [HKLM][64Bits] -- {E5637EB0-7FC4-11E7-B61D-95BE57594EAC} [Unsigned] =>.MAGIX Computer Products Intl. Co. (Hidden) O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {24DB3A5E-0BC8-11E5-9A27-F04DA23A5C58} [Unsigned] =>.Sony Creative Software Inc. (Hidden) O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {C2B8CBDE-5232-11E3-B494-F04DA23A5C58} [Unsigned] =>.Sony Creative Software Inc. (Hidden) O42 - Logiciel: MT2 Mechanical Keyboard v1.6.6 - (..) [HKLM][64Bits] -- {24179D30-A470-49A2-AF40-3A317A8F8CF3}_is1 [Unsigned] O42 - Logiciel: Neon 0.0.9 (only current user) - (.Ethan Fast.) [HKCU][64Bits] -- 211a501f-25dd-501b-8c98-509ac17aedfa [Unsigned] =>.Ethan Fast O42 - Logiciel: Notepad++ (32-bit x86) - (.Notepad++ Team.) [HKLM][64Bits] -- Notepad++ [Unsigned] =>.Notepad++ Team O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: OBS Studio - (.OBS Project.) [HKLM][64Bits] -- OBS Studio [Unsigned] =>.OBS Project O42 - Logiciel: OpenIV - (..black/OpenIV Team.) [HKCU][64Bits] -- OpenIV [Unsigned] =>..black/OpenIV Team O42 - Logiciel: Origin - (.Electronic Arts, Inc..) [HKLM][64Bits] -- Origin =>.Electronic Arts, Inc.® O42 - Logiciel: Outils de vérification linguistique 2016 de Microsoft Office - Français - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-001F-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Overwatch - (.Blizzard Entertainment.) [HKLM][64Bits] -- Overwatch =>.Blizzard Entertainment, Inc.® O42 - Logiciel: PLAYERUNKNOWN'S BATTLEGROUNDS - (.KRAFTON, Inc..) [HKLM][64Bits] -- Steam App 578080 =>.Valve® O42 - Logiciel: PokerStrategy.com Equilab - (.PokerStrategy.com.) [HKLM][64Bits] -- {86D09F48-CDAB-4B4C-8806-F6C16F17935A} [Unsigned] =>.PokerStrategy.com O42 - Logiciel: PostgreSQL 8.4 - (.PostgreSQL Global Development Group.) [HKLM][64Bits] -- PostgreSQL 8.4 [Unsigned] =>.PostgreSQL Global Development Group O42 - Logiciel: PUBG: Test Server - (..) [HKLM][64Bits] -- Steam App 622590 =>.Valve® O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp.® O42 - Logiciel: Revo Uninstaller Pro 4.0.5 - (.VS Revo Group, Ltd..) [HKLM][64Bits] -- {67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1 [Unsigned] =>.VS Revo Group, Ltd. O42 - Logiciel: Rockstar Games Social Club - (.Rockstar Games.) [HKLM][64Bits] -- Rockstar Games Social Club =>.Rockstar Games, Inc.® O42 - Logiciel: Security Update for Microsoft Office 2016 (KB2920727) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{ADA643B8-91E7-42FD-8339-3FDC73A3ABE4} =>.Microsoft® O42 - Logiciel: Security Update for Microsoft Office 2016 (KB3085538) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{57F91827-505E-4313-A3DF-EE6BD0B41A26} =>.Microsoft® O42 - Logiciel: Security Update for Microsoft Office 2016 (KB3085538) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-002A-0000-1000-0000000FF1CE}_Office16.PROPLUS_{57F91827-505E-4313-A3DF-EE6BD0B41A26} =>.Microsoft® O42 - Logiciel: Security Update for Microsoft Office 2016 (KB3085635) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-006E-040C-0000-0000000FF1CE}_Office16.PROPLUS_{CCBDE2CC-9498-4937-A88B-46FD248719C9} =>.Microsoft® O42 - Logiciel: Security Update for Microsoft Office 2016 (KB3114690) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{0431DE35-1781-4633-B69D-D547BB412C65} =>.Microsoft® O42 - Logiciel: Security Update for Microsoft Office 2016 (KB3115103) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{58F3561B-C8E6-44A7-8303-E6F0250FDF20} =>.Microsoft® O42 - Logiciel: Security Update for Microsoft Office 2016 (KB3115103) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-002A-0000-1000-0000000FF1CE}_Office16.PROPLUS_{58F3561B-C8E6-44A7-8303-E6F0250FDF20} =>.Microsoft® O42 - Logiciel: Security Update for Microsoft Publisher 2016 (KB2920680) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{5182F11C-8D2E-4E2C-B36A-5B4AC5AE723C} =>.Microsoft® O42 - Logiciel: Security Update for Microsoft Publisher 2016 (KB2920680) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0019-040C-0000-0000000FF1CE}_Office16.PROPLUS_{5182F11C-8D2E-4E2C-B36A-5B4AC5AE723C} =>.Microsoft® O42 - Logiciel: Security Update for Microsoft Word 2016 (KB3115094) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{7879768A-94DC-44C4-BD24-F2296C903A82} =>.Microsoft® O42 - Logiciel: Security Update for Skype for Business 2016 (KB3114960) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{DB202A83-17AD-4FD5-94D6-0F69FEF8A8C7} =>.Microsoft® O42 - Logiciel: Security Update for Skype for Business 2016 (KB3114960) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-012B-040C-0000-0000000FF1CE}_Office16.PROPLUS_{DB202A83-17AD-4FD5-94D6-0F69FEF8A8C7} =>.Microsoft® O42 - Logiciel: serposcope version 2.11.0 - (.SERP Hacker.) [HKLM][64Bits] -- {F78D981C-E791-487D-820B-BCA5918FB388}_is1 [Unsigned] =>.SERP Hacker O42 - Logiciel: Skype version 8.78 - (.Skype Technologies S.A..) [HKLM][64Bits] -- Skype_is1 =>.Skype Software Sarl® O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam =>.Valve® O42 - Logiciel: Taalprogramma's voor Microsoft Office 2016 - Nederlands - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-001F-0413-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: TeamViewer - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer =>.TeamViewer Germany GmbH® O42 - Logiciel: Telegram Desktop version 3.1.8 - (.Telegram FZ-LLC.) [HKCU][64Bits] -- {53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1 [Unsigned] =>.Telegram FZ-LLC O42 - Logiciel: UE4 Prerequisites (x64) - (.Epic Games, Inc..) [HKLM][64Bits] -- {2890ae6b-90e9-448d-b3e6-97e43c21e2fd} =>.Epic Games Inc.® (Hidden) O42 - Logiciel: UE4 Prerequisites (x64) - (.Epic Games, Inc..) [HKLM][64Bits] -- {36EAD5CF-44EF-4FCF-8BE1-D96C4835D7A4} [Unsigned] =>.Epic Games, Inc. (Hidden) O42 - Logiciel: Update for Microsoft Access 2016 (KB3114966) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{BA46E502-C055-4C15-B468-981B723A9BA8} =>.Microsoft® O42 - Logiciel: Update for Microsoft Excel 2016 (KB3115090) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{F3F2A6AE-2C31-4005-9771-23BB659014A7} =>.Microsoft® O42 - Logiciel: Update for Microsoft Excel 2016 (KB3115090) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0016-040C-0000-0000000FF1CE}_Office16.PROPLUS_{F3F2A6AE-2C31-4005-9771-23BB659014A7} =>.Microsoft® O42 - Logiciel: Update for Microsoft Excel 2016 (KB3115090) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0018-040C-0000-0000000FF1CE}_Office16.PROPLUS_{F3F2A6AE-2C31-4005-9771-23BB659014A7} =>.Microsoft® O42 - Logiciel: Update for Microsoft Excel 2016 (KB3115090) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-001B-040C-0000-0000000FF1CE}_Office16.PROPLUS_{F3F2A6AE-2C31-4005-9771-23BB659014A7} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB2910954) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{96EFDD2E-6496-4E0C-9EA2-034AF087211A} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB2910979) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{30BE8A1C-04BC-4CCD-942E-A10F3FA33E43} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB2910990) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0090-040C-0000-0000000FF1CE}_Office16.PROPLUS_{87B599CE-83DD-4D9C-8BE3-41249F1B405E} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB2920678) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{659F8DC4-0FD7-4C3C-9011-19B9FB400154} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB2920684) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{FA8D0376-1138-4DE0-81B4-AE2106D5ED4D} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB2920684) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-002A-0000-1000-0000000FF1CE}_Office16.PROPLUS_{FA8D0376-1138-4DE0-81B4-AE2106D5ED4D} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB2920699) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{C07AAB5B-B29E-4568-A282-2DA560D3FFB1} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB2920699) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0016-040C-0000-0000000FF1CE}_Office16.PROPLUS_{C07AAB5B-B29E-4568-A282-2DA560D3FFB1} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB2920712) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{0471C03C-B563-4F44-83E9-4D9AF243E1D3} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB2920718) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-001F-0401-0000-0000000FF1CE}_Office16.PROPLUS_{9E86151B-F943-4DED-807D-561666DB4B18} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB2920718) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-001F-0407-0000-0000000FF1CE}_Office16.PROPLUS_{9E86151B-F943-4DED-807D-561666DB4B18} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB2920718) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-001F-0409-0000-0000000FF1CE}_Office16.PROPLUS_{9E86151B-F943-4DED-807D-561666DB4B18} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB2920718) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-001F-040C-0000-0000000FF1CE}_Office16.PROPLUS_{9E86151B-F943-4DED-807D-561666DB4B18} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB2920718) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-001F-0413-0000-0000000FF1CE}_Office16.PROPLUS_{9E86151B-F943-4DED-807D-561666DB4B18} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB2920718) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-001F-0C0A-0000-0000000FF1CE}_Office16.PROPLUS_{9E86151B-F943-4DED-807D-561666DB4B18} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB2920720) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{1471A699-A87C-454C-B227-00B48E5BA75B} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB2920724) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{B5FD5FBF-150F-4BD7-A2D2-F015D1069FC5} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB3114369) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{E3DCC732-0F2B-49BD-8D00-017E437F4BE7} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB3114378) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{41DBA4C2-9AD4-41E2-8F52-43B72F982D49} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB3114533) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{D9082A69-38B8-42BC-940D-61167D1C985E} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB3114535) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{27084D6E-0050-46D7-9F86-0529F47DAE43} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB3114535) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-002A-0000-1000-0000000FF1CE}_Office16.PROPLUS_{27084D6E-0050-46D7-9F86-0529F47DAE43} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB3114689) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{ECCFA27B-A67E-4C7E-B984-8B20B9753A1D} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB3114694) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{9C5B5C7D-E79A-41C8-9D29-748A5145281E} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB3114854) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{BA767A46-1772-4902-BFB8-5FF8F932AB61} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB3114854) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-002A-0000-1000-0000000FF1CE}_Office16.PROPLUS_{BA767A46-1772-4902-BFB8-5FF8F932AB61} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB3114859) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{4BF890A7-7EBF-4E24-A288-80723AE838CB} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB3114903) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{B557BEA1-7AB8-4CA4-B9EB-7011EB0EEB4B} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB3114968) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{4049B5A4-5A41-42E9-9AA5-C141610193C3} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB3114968) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-002A-0000-1000-0000000FF1CE}_Office16.PROPLUS_{4049B5A4-5A41-42E9-9AA5-C141610193C3} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB3114971) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{F7A6F4CC-A81B-4A5B-9F59-4A26E6608562} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB3114971) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-002A-0000-1000-0000000FF1CE}_Office16.PROPLUS_{F7A6F4CC-A81B-4A5B-9F59-4A26E6608562} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB3115084) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{EBE84909-BE84-40C2-A9C5-B877D79759C2} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB3115091) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{2BCFA47D-966F-4AC5-8ED6-1F0DE1F4FA7E} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB3115091) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-006E-040C-0000-0000000FF1CE}_Office16.PROPLUS_{2BCFA47D-966F-4AC5-8ED6-1F0DE1F4FA7E} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB3115096) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{6BB730C9-AC60-46C1-B7C8-B9A33EFEC797} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB3115096) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-006E-040C-0000-0000000FF1CE}_Office16.PROPLUS_{6BB730C9-AC60-46C1-B7C8-B9A33EFEC797} =>.Microsoft® O42 - Logiciel: Update for Microsoft Office 2016 (KB3115100) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{F73DDA0B-6B6C-4C65-B310-FFA4A0B3FB33} =>.Microsoft® O42 - Logiciel: Update for Microsoft OneDrive for Business (KB3115104) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{B24F559A-48C9-49CC-BC8A-6943E29AE10C} =>.Microsoft® O42 - Logiciel: Update for Microsoft OneDrive for Business (KB3115104) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-002A-0000-1000-0000000FF1CE}_Office16.PROPLUS_{B24F559A-48C9-49CC-BC8A-6943E29AE10C} =>.Microsoft® O42 - Logiciel: Update for Microsoft OneDrive for Business (KB3115104) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-002A-040C-1000-0000000FF1CE}_Office16.PROPLUS_{B24F559A-48C9-49CC-BC8A-6943E29AE10C} =>.Microsoft® O42 - Logiciel: Update for Microsoft OneDrive for Business (KB3115104) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-00BA-040C-0000-0000000FF1CE}_Office16.PROPLUS_{B24F559A-48C9-49CC-BC8A-6943E29AE10C} =>.Microsoft® O42 - Logiciel: Update for Microsoft OneNote 2016 (KB3114711) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{AFA17D43-2B01-4922-A23E-48CEE40C68AF} =>.Microsoft® O42 - Logiciel: Update for Microsoft OneNote 2016 (KB3114711) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-002A-0000-1000-0000000FF1CE}_Office16.PROPLUS_{AFA17D43-2B01-4922-A23E-48CEE40C68AF} =>.Microsoft® O42 - Logiciel: Update for Microsoft OneNote 2016 (KB3114711) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-00A1-040C-0000-0000000FF1CE}_Office16.PROPLUS_{AFA17D43-2B01-4922-A23E-48CEE40C68AF} =>.Microsoft® O42 - Logiciel: Update for Microsoft Outlook 2016 (KB3115101) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{EB2D07A3-C553-4F5C-8F97-66D5947F37C8} =>.Microsoft® O42 - Logiciel: Update for Microsoft Outlook 2016 (KB3115101) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-001A-040C-0000-0000000FF1CE}_Office16.PROPLUS_{EB2D07A3-C553-4F5C-8F97-66D5947F37C8} =>.Microsoft® O42 - Logiciel: Update for Microsoft PowerPoint 2016 (KB3115089) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{F1FD0B1E-D16F-431D-A0F1-A149C585E68A} =>.Microsoft® O42 - Logiciel: Update for Microsoft PowerPoint 2016 (KB3115089) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0018-040C-0000-0000000FF1CE}_Office16.PROPLUS_{F1FD0B1E-D16F-431D-A0F1-A149C585E68A} =>.Microsoft® O42 - Logiciel: Update for Microsoft Project 2016 (KB3115105) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{A9072C22-17F1-4C03-B546-CEA90499721D} =>.Microsoft® O42 - Logiciel: Update for Microsoft Project 2016 (KB3115105) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-002A-0000-1000-0000000FF1CE}_Office16.PROPLUS_{A9072C22-17F1-4C03-B546-CEA90499721D} =>.Microsoft® O42 - Logiciel: Update for Microsoft Visio 2016 (KB3114957) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{6AAC0DBB-9379-40E8-B2FA-D320C734772F} =>.Microsoft® O42 - Logiciel: Update for Windows 10 for x64-based Systems (KB4023057) - (.Microsoft Corporation.) [HKLM][64Bits] -- {16AD6161-2E47-4BF1-AA77-0946EFE93E08} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Vegas Pro 12.0 (64-bit) - (.Sony.) [HKLM][64Bits] -- {BD91AC8F-5232-11E3-B420-F04DA23A5C58} [Unsigned] =>.Sony O42 - Logiciel: VEGAS Pro 15.0 - (.VEGAS.) [HKLM][64Bits] -- {E1892AB0-7FC4-11E7-9146-95BE57594EAC} [Unsigned] =>.VEGAS O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player [Unsigned] =>.VideoLAN O42 - Logiciel: WhatsApp - (.WhatsApp.) [HKCU][64Bits] -- WhatsApp =>.WhatsApp, Inc® O42 - Logiciel: Winamax Installer - (.Winamax.) [HKCU][64Bits] -- Winamax Installer 2.0 [Unsigned] =>.Winamax O42 - Logiciel: WinRAR 5.70 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® O42 - Logiciel: Zoom - (.Zoom Video Communications, Inc..) [HKCU][64Bits] -- ZoomUMX =>.Zoom Video Communications, Inc.® ---\\ CLÉ DE REGISTRE SOFTWARE HKCU & HKLM (317) - 34s HKLM\SOFTWARE\Adobe =>.Adobe HKLM\SOFTWARE\AIX Installer HKLM\SOFTWARE\AMD =>.AMD HKLM\SOFTWARE\AMDDVR HKLM\SOFTWARE\AMDLOG HKLM\SOFTWARE\Apple Inc. =>.Apple Inc. HKLM\SOFTWARE\ASIO =>.Steinberg Media Technologies HKLM\SOFTWARE\ATI =>.ATI HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies HKLM\SOFTWARE\AUEP HKLM\SOFTWARE\CPUID =>.CPUID Inc HKLM\SOFTWARE\CVSM =>.Legitimate HKLM\SOFTWARE\DefaultUserEnvironment =>.Microsoft Corporation HKLM\SOFTWARE\Disc Soft =>.Disc Soft HKLM\SOFTWARE\EA Games =>.EA Games HKLM\SOFTWARE\EqualizerAPO HKLM\SOFTWARE\FileZilla 3 =>.FileZilla HKLM\SOFTWARE\GenArts =>.GenArts HKLM\SOFTWARE\GNU =>.GNU HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\HaaliMkx =>.Haali Media HKLM\SOFTWARE\HoldemManager2 HKLM\SOFTWARE\HP =>.HP HKLM\SOFTWARE\Huawei technologies =>.Huawei Technologies HKLM\SOFTWARE\Icaros =>.Icaros HKLM\SOFTWARE\INextUUID =>.Hewlett-Packard HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\Khronos =>.Khronos HKLM\SOFTWARE\Logishrd =>.LogiShrd HKLM\SOFTWARE\Malwarebytes =>.Malwarebytes HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\Nahimic =>.Nahimic HKLM\SOFTWARE\NTLite HKLM\SOFTWARE\Nuance =>.Nuance HKLM\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation HKLM\SOFTWARE\OBS Studio =>.OBS Studio HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\OEM =>.OEM HKLM\SOFTWARE\OpenSSH =>.OpenBSD HKLM\SOFTWARE\Partner =>.Google Inc. HKLM\SOFTWARE\Pioneer =>.Pioneer HKLM\SOFTWARE\Piriform =>.Piriform HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\Sony Creative Software =>.Sony Creative Software HKLM\SOFTWARE\SRS Labs =>.SRS Labs HKLM\SOFTWARE\VideoLAN =>.VideoLan Team HKLM\SOFTWARE\Windows =>.Microsoft Corporation HKLM\SOFTWARE\WinRAR =>.WinRAR HKLM\SOFTWARE\Wondershare =>.Wondershare HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation HKLM\SOFTWARE\XBMga HKLM\SOFTWARE\xga2 HKLM\SOFTWARE\xGenArts HKLM\SOFTWARE\WOW6432Node\Adobe =>.Adobe HKLM\SOFTWARE\WOW6432Node\Aimersoft =>.Aimersoft Software HKLM\SOFTWARE\WOW6432Node\Apache Software Foundation =>.Apache Inc. HKLM\SOFTWARE\WOW6432Node\Apple Computer, Inc. =>.Apple Computer, Inc. HKLM\SOFTWARE\WOW6432Node\Apple Inc. =>.Apple Inc. HKLM\SOFTWARE\WOW6432Node\ASUS =>.ASUS HKLM\SOFTWARE\WOW6432Node\ATI Technologies =>.ATI Technologies HKLM\SOFTWARE\WOW6432Node\Bitdefender Agent =>.Bitdefender HKLM\SOFTWARE\WOW6432Node\Blizzard Entertainment =>.Blizzard Entertainment HKLM\SOFTWARE\WOW6432Node\CDDB =>.Cddb Software HKLM\SOFTWARE\WOW6432Node\DC-Unlocker =>.Cedrick Collomb HKLM\SOFTWARE\WOW6432Node\DigitalWave =>.DigitalWave Corporation HKLM\SOFTWARE\WOW6432Node\EA Games =>.EA Games HKLM\SOFTWARE\WOW6432Node\EasyAntiCheat =>.EasyAntiCheat HKLM\SOFTWARE\WOW6432Node\Electronic Arts =>.Electronic Arts HKLM\SOFTWARE\WOW6432Node\Eset =>.ESET HKLM\SOFTWARE\WOW6432Node\Evernote =>.Evernote HKLM\SOFTWARE\WOW6432Node\FileZilla 3 =>.FileZilla HKLM\SOFTWARE\WOW6432Node\FileZilla Client =>.Tim Kosse HKLM\SOFTWARE\WOW6432Node\Fraps =>.Beepa HKLM\SOFTWARE\WOW6432Node\GOG.com =>.GOG.com HKLM\SOFTWARE\WOW6432Node\Google =>.Google HKLM\SOFTWARE\WOW6432Node\HaaliMkx =>.Haali Media HKLM\SOFTWARE\WOW6432Node\Hewlett-Packard =>.Hewlett-Packard HKLM\SOFTWARE\WOW6432Node\HP =>.HP HKLM\SOFTWARE\WOW6432Node\Icaros =>.Icaros HKLM\SOFTWARE\WOW6432Node\IM Providers =>.IM Providers HKLM\SOFTWARE\WOW6432Node\iMusic =>.iMusic HKLM\SOFTWARE\WOW6432Node\InstallShield =>.InstallShield HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel HKLM\SOFTWARE\WOW6432Node\JavaSoft =>.JavaSoft HKLM\SOFTWARE\WOW6432Node\JreMetrics =>.JreMetrics HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos HKLM\SOFTWARE\WOW6432Node\KLCodecPack =>.KLite Inc HKLM\SOFTWARE\WOW6432Node\Magix =>.MAGIX_Software_GmbH HKLM\SOFTWARE\WOW6432Node\MAXSOFT-OCRON =>.Maxsoft-Ocron, Inc HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\WOW6432Node\mozilla.org =>.mozilla.org HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\WOW6432Node\MSI =>.MSI HKLM\SOFTWARE\WOW6432Node\Notepad++ =>.Don Ho HKLM\SOFTWARE\WOW6432Node\Nuance =>.Nuance HKLM\SOFTWARE\WOW6432Node\NVIDIA Corporation =>.nVidia Corporation HKLM\SOFTWARE\WOW6432Node\OBS Studio =>.OBS Studio HKLM\SOFTWARE\WOW6432Node\ObviousIdea =>.ObviousIdea HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\WOW6432Node\Oracle =>.Oracle HKLM\SOFTWARE\WOW6432Node\Origin =>.Electronic Arts, Inc. HKLM\SOFTWARE\WOW6432Node\Origin Games =>.Electronic Arts, Inc. HKLM\SOFTWARE\WOW6432Node\PostgreSQL =>.PostgreSQL HKLM\SOFTWARE\WOW6432Node\PostgreSQL Global Development Group =>.PostgreSQL Global Development Group HKLM\SOFTWARE\WOW6432Node\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\WOW6432Node\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\WOW6432Node\RocketLife =>.RocketLife HKLM\SOFTWARE\WOW6432Node\Rockstar Games =>.Rockstar Games HKLM\SOFTWARE\WOW6432Node\Skype =>.Skype HKLM\SOFTWARE\WOW6432Node\Sony Creative Software =>.Sony Creative Software HKLM\SOFTWARE\WOW6432Node\TeamViewer =>.TeamViewer GmbH HKLM\SOFTWARE\WOW6432Node\Valve =>.Valve HKLM\SOFTWARE\WOW6432Node\VideoLAN =>.VideoLan Team HKLM\SOFTWARE\WOW6432Node\Visan =>.Visan Software HKLM\SOFTWARE\WOW6432Node\Volatile =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\WafCX =>.WafCX HKLM\SOFTWARE\WOW6432Node\WinRAR =>.WinRAR HKLM\SOFTWARE\WOW6432Node\Wondershare =>.Wondershare HKLM\SOFTWARE\WOW6432Node\WOW6432Node =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\YaSoft =>.YaSoft HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Adobe =>.Adobe HKCU\SOFTWARE\Aimersoft =>.Aimersoft Software HKCU\SOFTWARE\AMD =>.AMD HKCU\SOFTWARE\Apache Software Foundation =>.Apache Inc. HKCU\SOFTWARE\Apowersoft =>.Apowersoft HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. =>.Apple Inc. HKCU\SOFTWARE\ASUS =>.ASUS HKCU\SOFTWARE\ATI =>.ATI HKCU\SOFTWARE\BitTorrentPersist HKCU\SOFTWARE\Blizzard Entertainment =>.Blizzard Entertainment HKCU\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o HKCU\SOFTWARE\BugSplat =>.Bugsplat Game HKCU\SOFTWARE\Chromium =>.Chromium HKCU\SOFTWARE\DirectShow =>.Microsoft Corporation HKCU\SOFTWARE\Disc Soft =>.Disc Soft HKCU\SOFTWARE\Discord =>.SUP.Discord HKCU\SOFTWARE\Electronic Arts =>.Electronic Arts HKCU\SOFTWARE\Epic Games =>.Epic Games HKCU\SOFTWARE\ESET =>.ESET HKCU\SOFTWARE\Evernote =>.Evernote HKCU\SOFTWARE\Gabest =>.Gabest HKCU\SOFTWARE\GenArts =>.GenArts HKCU\SOFTWARE\Ghost Town Games HKCU\SOFTWARE\GNU =>.GNU HKCU\SOFTWARE\GOG.com =>.GOG.com HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\Haali =>.Haali Media HKCU\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard HKCU\SOFTWARE\HoldemManager =>.HoldemManager HKCU\SOFTWARE\HoldemManager3 HKCU\SOFTWARE\HP =>.HP HKCU\SOFTWARE\HP Webcam =>.Hewlett-Packard HKCU\SOFTWARE\Icaros =>.Icaros HKCU\SOFTWARE\IM Providers =>.IM Providers HKCU\SOFTWARE\iMusic =>.iMusic HKCU\SOFTWARE\iZotope =>.iZotope HKCU\SOFTWARE\JavaSoft =>.JavaSoft HKCU\SOFTWARE\LAV =>.LAV Inc HKCU\SOFTWARE\LogiShrd =>.LogiShrd HKCU\SOFTWARE\Logitech =>.Logitech HKCU\SOFTWARE\LogMeInInc =>.LogMeIn Entreprise HKCU\SOFTWARE\madshi =>.madshi.net HKCU\SOFTWARE\Magix =>.MAGIX_Software_GmbH HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes HKCU\SOFTWARE\Max Value Software =>.Max Value Software HKCU\SOFTWARE\MediaInfo =>.Jérôme Martinez HKCU\SOFTWARE\Mirage =>.Mirage Game HKCU\SOFTWARE\monero-project HKCU\SOFTWARE\Movavi =>.Movavi HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\MPC-HC =>.MPC-HC Team HKCU\SOFTWARE\MSI =>.MSI HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\NewTechnologyStudio =>.New Technology Studio HKCU\SOFTWARE\NTSCorp =>.NTSCorp Ltd HKCU\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation HKCU\SOFTWARE\ObviousIdea =>.ObviousIdea HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions HKCU\SOFTWARE\Open Media LLC =>.Open Media LLC HKCU\SOFTWARE\Opera Stable Offer =>.Opera Software HKCU\SOFTWARE\PASG HKCU\SOFTWARE\Piriform =>.Piriform HKCU\SOFTWARE\Playtonic Ltd =>.Playtonic Ltd HKCU\SOFTWARE\PMU =>.PMU HKCU\SOFTWARE\ProtectedStorage =>.Microsoft Corporation HKCU\SOFTWARE\QtProject =>.QtProject HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Rockstar Games =>.Rockstar Games HKCU\SOFTWARE\ScriptHookV HKCU\SOFTWARE\Serato =>.Serato HKCU\SOFTWARE\skypeapp-dbdf7b897c02 =>.Skype Technologies HKCU\SOFTWARE\Sony Creative Software =>.Sony Creative Software HKCU\SOFTWARE\SyncEngines =>.Microsoft Corporation HKCU\SOFTWARE\TeamViewer =>.TeamViewer GmbH HKCU\SOFTWARE\TelegramDesktop =>.TelegramDesktop HKCU\SOFTWARE\Trolltech =>.Trolltech HKCU\SOFTWARE\Unity =>.Unity HKCU\SOFTWARE\Valve =>.Valve HKCU\SOFTWARE\Visan =>.Visan Software HKCU\SOFTWARE\VS Revo Group =>.VS Revo Group HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\Wondershare =>.Wondershare HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\ZoomUMX HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKU\.DEFAULT\SOFTWARE\Adobe =>.Adobe HKU\.DEFAULT\SOFTWARE\AMD =>.AMD HKU\.DEFAULT\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc. HKU\.DEFAULT\SOFTWARE\ATI =>.ATI HKU\.DEFAULT\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o HKU\.DEFAULT\SOFTWARE\Epic Games =>.Epic Games HKU\.DEFAULT\SOFTWARE\Google =>.Google HKU\.DEFAULT\SOFTWARE\Lavasoft =>.Lavasoft HKU\.DEFAULT\SOFTWARE\Malwarebytes =>.Malwarebytes HKU\.DEFAULT\SOFTWARE\Mozilla =>.Mozilla HKU\.DEFAULT\SOFTWARE\Netscape =>.Netscape HKU\.DEFAULT\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation HKU\.DEFAULT\SOFTWARE\Piriform =>.Piriform HKU\.DEFAULT\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKU\.DEFAULT\SOFTWARE\SetID =>.Bitdefender HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Adobe =>.Adobe HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Aimersoft =>.Aimersoft Software HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\AMD =>.AMD HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Apache Software Foundation =>.Apache Inc. HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Apowersoft =>.Apowersoft HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\AppDataLow =>.Microsoft Corporation HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc. HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Apple Inc. =>.Apple Inc. HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\ASUS =>.ASUS HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\ATI =>.ATI HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\BitTorrentPersist HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Blizzard Entertainment =>.Blizzard Entertainment HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\BugSplat =>.Bugsplat Game HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Chromium =>.Chromium HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\DirectShow =>.Microsoft Corporation HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Disc Soft =>.Disc Soft HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Discord =>.SUP.Discord HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Electronic Arts =>.Electronic Arts HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Epic Games =>.Epic Games HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\ESET =>.ESET HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Evernote =>.Evernote HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Gabest =>.Gabest HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\GenArts =>.GenArts HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Ghost Town Games HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\GNU =>.GNU HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\GOG.com =>.GOG.com HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Google =>.Google HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Haali =>.Haali Media HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\HoldemManager =>.HoldemManager HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\HoldemManager3 HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\HP =>.HP HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\HP Webcam =>.Hewlett-Packard HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Icaros =>.Icaros HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\IM Providers =>.IM Providers HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\iMusic =>.iMusic HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\iZotope =>.iZotope HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\JavaSoft =>.JavaSoft HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\LAV =>.LAV Inc HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\LogiShrd =>.LogiShrd HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Logitech =>.Logitech HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\LogMeInInc =>.LogMeIn Entreprise HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\madshi =>.madshi.net HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Magix =>.MAGIX_Software_GmbH HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Malwarebytes =>.Malwarebytes HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Max Value Software =>.Max Value Software HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\MediaInfo =>.Jérôme Martinez HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Mirage =>.Mirage Game HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\monero-project HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Movavi =>.Movavi HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Mozilla =>.Mozilla HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\MPC-HC =>.MPC-HC Team HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\MSI =>.MSI HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Netscape =>.Netscape HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\NewTechnologyStudio =>.New Technology Studio HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\NTSCorp =>.NTSCorp Ltd HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\ObviousIdea =>.ObviousIdea HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\ODBC =>.DB Connectivity Solutions HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Open Media LLC =>.Open Media LLC HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Opera Stable Offer =>.Opera Software HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\PASG HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Piriform =>.Piriform HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Playtonic Ltd =>.Playtonic Ltd HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\PMU =>.PMU HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\ProtectedStorage =>.Microsoft Corporation HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\QtProject =>.QtProject HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Rockstar Games =>.Rockstar Games HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\ScriptHookV HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Serato =>.Serato HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\skypeapp-dbdf7b897c02 =>.Skype Technologies HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Sony Creative Software =>.Sony Creative Software HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\SyncEngines =>.Microsoft Corporation HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\TeamViewer =>.TeamViewer GmbH HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\TelegramDesktop =>.TelegramDesktop HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Trolltech =>.Trolltech HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Unity =>.Unity HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Valve =>.Valve HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Visan =>.Visan Software HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\VS Revo Group =>.VS Revo Group HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\WinRAR =>.WinRAR HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\WinRAR SFX =>.RarLab HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Wondershare =>.Wondershare HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\ZHP =>.Nicolas Coolman HKU\S-1-5-21-3351771493-749409139-3151566472-1001\SOFTWARE\ZoomUMX ---\\ PACKAGES (8) - 0s C:\Program Files (x86)\WindowsApps\89006A2E.AutodeskSketchBook_5.1.0.0_x64__tf1gferkr813w - (.Autodesk Inc..) [][Autodesk SketchBook] =>Autodesk Inc. C:\Program Files (x86)\WindowsApps\AD2F1837.HPPrinterControl_135.1.385.0_x64__v10z8vjag6ke6 - (.Hewlett-Packard.) [][HP Smart] =>Hewlett-Packard C:\Program Files (x86)\WindowsApps\AdvancedMicroDevicesInc-2.AMDLink_10.21.50009.0_x64__0a9344xs7nr4m - (..) [][AMD Link] C:\Program Files (x86)\WindowsApps\DolbyLaboratories.DolbyAccess_3.12.419.0_x64__rz1tebttyb220 - (.Dolby Laboratories.) [][Dolby Access] =>Dolby Laboratories C:\Program Files (x86)\WindowsApps\KeeperSecurityInc.Keeper_14.0.33.0_x64__kejf07qmg0jnm - (.Keeper Security Inc.) [][Keeper - Password Manager & Secure File Storage] C:\Program Files (x86)\WindowsApps\MicrosoftWindows.UndockedDevKit_10.0.19041.1023_neutral_neutral_cw5n1h2txyewy - (.Microsoft Corporation.) [][UDK Package] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\NcsiUwpApp_1000.19041.1023.0_neutral_neutral_8wekyb3d8bbwe - (.Microsoft.) [][NcsiUwpApp] =>Microsoft C:\Program Files (x86)\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r - (.Adobe Systems Incorporated.) [][Reader Notification Client] =>Adobe Systems Incorporated ---\\ CONTENU DES DOSSIERS PROGRAMMES (406) - 15s O43 - CFD: 09/04/2022 - [] D -- C:\Program Files\AMD [Unsigned] =>.AMD O43 - CFD: 09/04/2022 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 18/03/2017 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation O43 - CFD: 11/12/2020 - [] D -- C:\Program Files\HP =>.Hewlett-Packard O43 - CFD: 31/03/2022 - [] D -- C:\Program Files\HPPrintScanDoctor =>.HP Inc.® O43 - CFD: 01/04/2022 - [] D -- C:\Program Files\Hyper-V =>.Microsoft Corporation O43 - CFD: 01/11/2020 - [] D -- C:\Program Files\Intel =>.Intel Corporation O43 - CFD: 01/04/2022 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 14/12/2017 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation O43 - CFD: 05/04/2022 - [] D -- C:\Program Files\Microsoft Update Health Tools =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [0] D -- C:\Program Files\ModifiableWindowsApps =>.Microsoft Corporation O43 - CFD: 01/11/2020 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 08/08/2019 - [] D -- C:\Program Files\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 10/07/2019 - [] D -- C:\Program Files\Open Media LLC =>.Open Media LLC O43 - CFD: 07/11/2021 - [] D -- C:\Program Files\PCHealthCheck =>.Microsoft® O43 - CFD: 01/11/2020 - [] D -- C:\Program Files\Realtek =>.Realtek O43 - CFD: 01/11/2020 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 09/08/2019 - [] AD -- C:\Program Files\rempl =>.Microsoft Corporation O43 - CFD: 29/01/2019 - [] D -- C:\Program Files\Rockstar Games =>.Rockstar Games, Inc.® O43 - CFD: 18/03/2017 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 01/11/2020 - [] D -- C:\Program Files\UNP =>.Microsoft Corporation O43 - CFD: 07/12/2021 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 01/04/2022 - [] D -- C:\Program Files\Windows Defender Advanced Threat Protection =>.Microsoft Corporation O43 - CFD: 15/07/2021 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 13/10/2021 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 01/11/2020 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 13/01/2021 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows Security =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 09/04/2022 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 01/03/2019 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH® O43 - CFD: 21/02/2020 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems Incorporated® O43 - CFD: 14/12/2017 - [] AD -- C:\Program Files (x86)\ASM104xUSB3 =>.ASMedia Technology Inc O43 - CFD: 14/12/2017 - [] D -- C:\Program Files (x86)\ASUS =>.ASUSTeK Computer Inc.® O43 - CFD: 09/04/2022 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation O43 - CFD: 29/06/2018 - [] D -- C:\Program Files (x86)\EasyAntiCheat =>.EasyAntiCheat O43 - CFD: 09/07/2018 - [] D -- C:\Program Files (x86)\FreeCodecPack =>.Free Codec Pack O43 - CFD: 08/12/2020 - [] D -- C:\Program Files (x86)\GenArts =>.GenArts, Inc® O43 - CFD: 10/04/2022 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 24/06/2020 - [] D -- C:\Program Files (x86)\HiSuite =>.Huawei Technologies Co.,Ltd O43 - CFD: 11/12/2020 - [] D -- C:\Program Files (x86)\HP =>.Hewlett-Packard O43 - CFD: 11/12/2020 - [] D -- C:\Program Files (x86)\HP Photo Creations =>.Visan Industries® O43 - CFD: 07/12/2021 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield O43 - CFD: 01/04/2022 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation O43 - CFD: 05/08/2019 - [] AD -- C:\Program Files (x86)\K-Lite Codec Pack =>.KLite Inc O43 - CFD: 10/12/2020 - [0] D -- C:\Program Files (x86)\Lavasoft =>.Lavasoft O43 - CFD: 29/05/2021 - [] D -- C:\Program Files (x86)\Microsoft =>.Microsoft Corporation O43 - CFD: 14/12/2017 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services =>.Microsoft Corporation O43 - CFD: 14/12/2017 - [] AD -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation O43 - CFD: 14/12/2017 - [] D -- C:\Program Files (x86)\Microsoft SQL Server =>.Microsoft Corporation O43 - CFD: 01/11/2020 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 28/03/2022 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla O43 - CFD: 28/03/2022 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla O43 - CFD: 01/11/2020 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation O43 - CFD: 08/08/2019 - [] D -- C:\Program Files (x86)\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 11/05/2019 - [0] D -- C:\Program Files (x86)\Origin Games =>.Electronic Arts, Inc. O43 - CFD: 07/03/2019 - [] D -- C:\Program Files (x86)\PSQLINSTALL =>.EnterpriseDB Corporation® O43 - CFD: 08/03/2019 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek O43 - CFD: 01/11/2020 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 29/01/2019 - [] D -- C:\Program Files (x86)\Rockstar Games =>.Rockstar Games, Inc.® O43 - CFD: 21/05/2020 - [] D -- C:\Program Files (x86)\serposcope [Unsigned] O43 - CFD: 08/03/2019 - [0] HD -- C:\Program Files (x86)\Temp =>.Microsoft Corporation O43 - CFD: 17/05/2018 - [0] HD -- C:\Program Files (x86)\Uninstall Information =>.Microsoft Corporation O43 - CFD: 05/08/2019 - [] D -- C:\Program Files (x86)\VEGAS =>.VEGAS O43 - CFD: 11/11/2019 - [] D -- C:\Program Files (x86)\VulkanRT =>.LunarG, Inc O43 - CFD: 10/12/2020 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation O43 - CFD: 15/07/2021 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 13/10/2021 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation O43 - CFD: 13/01/2021 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 09/04/2022 - [0] D -- C:\Program Files (x86)\WondershareUpdate =>.Wondershare O43 - CFD: 13/01/2021 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 01/04/2022 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 13/10/2021 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 09/04/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Bug Report Tool O43 - CFD: 09/04/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Software꞉ Adrenalin Edition O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft =>.Apowersoft O43 - CFD: 19/04/2020 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS =>.ASUS O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net =>.Games Software O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield™ V =>.Electronic Arts, Inc. O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd O43 - CFD: 10/12/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID =>.CPUID Inc O43 - CFD: 17/05/2018 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite =>.DAEMON Tools O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Evernote =>.EverNote Corporation O43 - CFD: 01/02/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client =>.Tim Kosse O43 - CFD: 08/12/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GenArts Sapphire OFX =>.Boris FX O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hewlett-Packard =>.Hewlett-Packard O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HiSuite =>.Huawei Technologies Co.,Ltd O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Holdem Manager 2 O43 - CFD: 11/12/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP =>.Hewlett-Packard O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack =>.KLite Inc O43 - CFD: 10/12/2020 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft =>.Lavasoft O43 - CFD: 07/12/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 17/05/2018 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Monopoly Plus O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MT2 Mechanical Keyboard O43 - CFD: 09/04/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OBS Studio =>.OBS Studio O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ObviousIdea =>.ObviousIdea O43 - CFD: 23/01/2019 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin =>.Electronic Arts, Inc. O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Overwatch =>.Blizzard Entertainment O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PokerStrategy.com =>.PokerStrategy.com O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PostgreSQL 8.4 O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller =>.VS Revo Group O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro =>.VS Revo Group O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games =>.Rockstar Games O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\serposcope O43 - CFD: 28/11/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype =>.Skype O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony =>.Sony O43 - CFD: 07/12/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam =>.Steam Games O43 - CFD: 13/10/2021 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VEGAS =>.VEGAS O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team O43 - CFD: 07/12/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Yooka-Laylee [GOG.com] O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Youtube Downloader HD =>.Regensoft O43 - CFD: 14/09/2020 - [] D -- C:\ProgramData\48C4687D-9760-4F5B-BAB3-60351B0841E4 O43 - CFD: 22/02/2020 - [] D -- C:\ProgramData\Adobe =>.Adobe O43 - CFD: 09/07/2018 - [] D -- C:\ProgramData\Aimersoft =>.Aimersoft Software O43 - CFD: 09/04/2022 - [] D -- C:\ProgramData\AMD =>.AMD O43 - CFD: 16/03/2018 - [] D -- C:\ProgramData\Apple =>.Apple Inc. O43 - CFD: 09/05/2018 - [] D -- C:\ProgramData\Apple Computer =>.Apple Inc. O43 - CFD: 01/11/2020 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 14/12/2017 - [] D -- C:\ProgramData\Battle.net =>.Games Software O43 - CFD: 17/07/2021 - [] D -- C:\ProgramData\BDLogging =>.Bitdefender O43 - CFD: 15/01/2018 - [] D -- C:\ProgramData\bitmonero O43 - CFD: 14/12/2017 - [] D -- C:\ProgramData\Blizzard Entertainment =>.Blizzard Entertainment O43 - CFD: 12/03/2020 - [] D -- C:\ProgramData\boost_interprocess =>.boost.org O43 - CFD: 18/03/2017 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation O43 - CFD: 09/07/2018 - [] D -- C:\ProgramData\Caphyon =>.Caphyon O43 - CFD: 08/09/2019 - [0] D -- C:\ProgramData\dbg =>.DBG O43 - CFD: 09/07/2018 - [] D -- C:\ProgramData\DigitalWave.ApplicationUpdater_files O43 - CFD: 13/01/2021 - [] D -- C:\ProgramData\Disc-Soft O43 - CFD: 01/11/2020 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 23/01/2019 - [] D -- C:\ProgramData\Electronic Arts =>.Electronic Arts O43 - CFD: 08/12/2020 - [] D -- C:\ProgramData\GenArts =>.GenArts O43 - CFD: 14/12/2017 - [] D -- C:\ProgramData\GOG.com =>.GOG.com O43 - CFD: 09/04/2022 - [] D -- C:\ProgramData\GraphicsType13 O43 - CFD: 08/09/2021 - [] D -- C:\ProgramData\HP =>.Hewlett-Packard O43 - CFD: 11/12/2020 - [] D -- C:\ProgramData\HP Photo Creations =>.HP Photo Creations O43 - CFD: 10/12/2020 - [0] D -- C:\ProgramData\Lavasoft =>.Lavasoft O43 - CFD: 05/08/2019 - [] D -- C:\ProgramData\Magix =>.MAGIX_Software_GmbH O43 - CFD: 09/10/2019 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes O43 - CFD: 18/03/2017 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation O43 - CFD: 01/11/2020 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 17/12/2020 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation O43 - CFD: 18/03/2017 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation O43 - CFD: 16/01/2018 - [] D -- C:\ProgramData\Monopoly Plus O43 - CFD: 11/08/2019 - [] D -- C:\ProgramData\movavi =>.Movavi O43 - CFD: 29/06/2021 - [] D -- C:\ProgramData\Mozilla =>.Mozilla Corporation O43 - CFD: 29/01/2019 - [] D -- C:\ProgramData\Notepad++ =>.Don Ho O43 - CFD: 25/01/2019 - [] D -- C:\ProgramData\NVIDIA =>.nVidia Corporation O43 - CFD: 25/01/2019 - [] D -- C:\ProgramData\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 09/04/2022 - [] D -- C:\ProgramData\obs-studio-hook O43 - CFD: 21/05/2020 - [] D -- C:\ProgramData\Oracle =>.Oracle O43 - CFD: 10/12/2020 - [] D -- C:\ProgramData\Origin =>.Electronic Arts, Inc. O43 - CFD: 09/04/2022 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 19/11/2021 - [] D -- C:\ProgramData\Packages =>.Microsoft Corporation O43 - CFD: 01/01/2018 - [0] D -- C:\ProgramData\regid.1986-12.com.adobe =>.Adobe Inc. O43 - CFD: 10/04/2022 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation O43 - CFD: 10/04/2022 - [] D -- C:\ProgramData\serposcope O43 - CFD: 07/03/2019 - [] D -- C:\ProgramData\Skype =>.Skype O43 - CFD: 14/12/2017 - [] D -- C:\ProgramData\Socialclub =>.Legitimate O43 - CFD: 07/12/2019 - [0] D -- C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation O43 - CFD: 11/08/2019 - [] D -- C:\ProgramData\Sony =>.Sony O43 - CFD: 01/11/2020 - [0] D -- C:\ProgramData\ssh =>.Microsoft Corporation O43 - CFD: 14/12/2017 - [] D -- C:\ProgramData\Steam =>.Steam Games O43 - CFD: 01/11/2020 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation O43 - CFD: 05/08/2019 - [] D -- C:\ProgramData\VEGAS =>.VEGAS O43 - CFD: 05/08/2019 - [] D -- C:\ProgramData\VEGAS Pro O43 - CFD: 11/12/2020 - [] D -- C:\ProgramData\Visan =>.Visan Industries O43 - CFD: 07/03/2019 - [] D -- C:\ProgramData\VS Revo Group =>.VS Revo Group O43 - CFD: 07/12/2019 - [] D -- C:\ProgramData\WindowsHolographicDevices =>.Microsoft Corporation O43 - CFD: 09/04/2022 - [] D -- C:\ProgramData\Wondershare =>.Wondershare O43 - CFD: 14/12/2017 - [] D -- C:\ProgramData\XHEO INC O43 - CFD: 21/02/2020 - [] AD -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe O43 - CFD: 09/07/2018 - [] D -- C:\Program Files (x86)\Common Files\Aimersoft =>.Aimersoft Software O43 - CFD: 18/07/2021 - [] D -- C:\Program Files (x86)\Common Files\BattlEye =>.BattlEye O43 - CFD: 14/12/2017 - [] AD -- C:\Program Files (x86)\Common Files\DESIGNER =>.Designer O43 - CFD: 19/04/2020 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield O43 - CFD: 21/05/2020 - [] D -- C:\Program Files (x86)\Common Files\Java =>.Oracle O43 - CFD: 01/11/2020 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation O43 - CFD: 08/12/2020 - [] D -- C:\Program Files (x86)\Common Files\OFX O43 - CFD: 21/05/2020 - [] D -- C:\Program Files (x86)\Common Files\Oracle =>.Oracle O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation O43 - CFD: 12/08/2021 - [] D -- C:\Program Files (x86)\Common Files\Steam =>.Steam Games O43 - CFD: 15/07/2021 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation O43 - CFD: 01/05/2021 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 10/02/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\AnyDesk =>.philandro Software GmbH O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Apowersoft =>.Apowersoft O43 - CFD: 17/03/2018 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Apple Computer =>.Apple Inc. O43 - CFD: 11/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Audacity =>.Audacity O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Battle.net =>.Games Software O43 - CFD: 09/07/2018 - [] D -- C:\Users\Mr_GT\AppData\Roaming\cef3-cache O43 - CFD: 15/10/2018 - [] D -- C:\Users\Mr_GT\AppData\Roaming\cef3-cache-3359 O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Roaming\com.winamax.chat =>.Winamax O43 - CFD: 07/03/2019 - [] D -- C:\Users\Mr_GT\AppData\Roaming\DAEMON Tools Lite =>.DAEMON Tools O43 - CFD: 13/01/2021 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Disc-Soft O43 - CFD: 10/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Roaming\discord O43 - CFD: 09/07/2018 - [] D -- C:\Users\Mr_GT\AppData\Roaming\DVDVideoSoft =>.DVDVideoSoft O43 - CFD: 06/04/2021 - [] D -- C:\Users\Mr_GT\AppData\Roaming\FileZilla =>.FileZilla O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Roaming\HEM Data O43 - CFD: 04/07/2021 - [] D -- C:\Users\Mr_GT\AppData\Roaming\HoldemManager =>.HoldemManager O43 - CFD: 22/03/2019 - [] D -- C:\Users\Mr_GT\AppData\Roaming\HPPSDr O43 - CFD: 10/12/2020 - [0] D -- C:\Users\Mr_GT\AppData\Roaming\Lavasoft =>.Lavasoft O43 - CFD: 12/05/2021 - [] D -- C:\Users\Mr_GT\AppData\Roaming\LLXzbVjNucwmQRgM O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 05/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Roaming\MAGIX =>.MAGIX_Software_GmbH O43 - CFD: 09/12/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\MAGIX Computer Products Intl. Co =>.MAGIX_Software_GmbH O43 - CFD: 04/03/2018 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Max Value Software =>.Max Value Software O43 - CFD: 01/11/2020 - [] SD -- C:\Users\Mr_GT\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 08/09/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft Teams =>.Microsoft Corporation O43 - CFD: 16/01/2018 - [0] D -- C:\Users\Mr_GT\AppData\Roaming\Monopoly Plus O43 - CFD: 18/05/2018 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 10/04/2022 - [0] D -- C:\Users\Mr_GT\AppData\Roaming\MPC-HC =>.MPC-HC Team O43 - CFD: 10/01/2018 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Neon O43 - CFD: 14/05/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Notepad++ =>.Don Ho O43 - CFD: 10/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Roaming\obs-studio =>.OBS-Studio O43 - CFD: 09/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Roaming\ObviousIdea =>.ObviousIdea O43 - CFD: 26/07/2019 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Open Media LLC =>.Open Media LLC O43 - CFD: 12/12/2019 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Origin =>.Electronic Arts, Inc. O43 - CFD: 09/07/2018 - [] D -- C:\Users\Mr_GT\AppData\Roaming\PMU =>.PMU O43 - CFD: 12/03/2019 - [0] D -- C:\Users\Mr_GT\AppData\Roaming\QuickScan =>.Bitdefender O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Roaming =>.Microsoft Corporation O43 - CFD: 20/05/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Skype =>.Skype O43 - CFD: 10/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Sony =>.Sony O43 - CFD: 21/05/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Sun =>.Oracle O43 - CFD: 12/11/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Teams O43 - CFD: 06/04/2021 - [] D -- C:\Users\Mr_GT\AppData\Roaming\TeamViewer =>.TeamViewer GmbH O43 - CFD: 08/12/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\VEGAS =>.VEGAS O43 - CFD: 05/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Roaming\VEGAS Pro O43 - CFD: 10/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Roaming\vlc =>.VideoLan Team O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Roaming\wam.04351C371E530C3762CBA45FA283ED972DCDEFB6.1 O43 - CFD: 10/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Roaming\WhatsApp =>.WhatsApp O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 09/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Wondershare =>.Wondershare O43 - CFD: 01/01/2018 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Youtube Downloader HD =>.Regensoft O43 - CFD: 10/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 16/11/2021 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Zoom =>.ZOOM O43 - CFD: 21/05/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\ࡠĮ O43 - CFD: 22/01/2021 - [] D -- C:\Users\Mr_GT\AppData\Local\Adobe =>.Adobe O43 - CFD: 07/12/2021 - [] D -- C:\Users\Mr_GT\AppData\Local\AdvinstAnalytics =>.SUP.Various O43 - CFD: 09/07/2018 - [] D -- C:\Users\Mr_GT\AppData\Local\Aimersoft =>.Aimersoft Software O43 - CFD: 09/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Local\AMD =>.AMD O43 - CFD: 09/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Local\AMDIdentifyWindow O43 - CFD: 09/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Local\AMDSoftwareInstaller O43 - CFD: 09/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Local\AMD_Common O43 - CFD: 01/11/2020 - [0] SHD -- C:\Users\Mr_GT\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 06/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\Audacity =>.Audacity O43 - CFD: 07/06/2020 - [] D -- C:\Users\Mr_GT\AppData\Local\Battle.net =>.Games Software O43 - CFD: 29/01/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\Battlefield V =>.Electronic Arts, Inc. O43 - CFD: 02/07/2018 - [] D -- C:\Users\Mr_GT\AppData\Local\BattlEye =>.BattlEye O43 - CFD: 07/12/2021 - [0] D -- C:\Users\Mr_GT\AppData\Local\Bdch =>.Softwin O43 - CFD: 06/12/2021 - [] D -- C:\Users\Mr_GT\AppData\Local\Bitdefender =>.Bitdefender O43 - CFD: 10/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Local\BitTorrentHelper O43 - CFD: 23/04/2019 - [0] D -- C:\Users\Mr_GT\AppData\Local\Blizzard =>.Blizzard O43 - CFD: 23/04/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\Blizzard Entertainment =>.Blizzard Entertainment O43 - CFD: 06/06/2020 - [] D -- C:\Users\Mr_GT\AppData\Local\BY-K816-106 O43 - CFD: 10/01/2021 - [] D -- C:\Users\Mr_GT\AppData\Local\cache =>.Legitimate O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Local\CEF =>.CEF O43 - CFD: 29/07/2020 - [] D -- C:\Users\Mr_GT\AppData\Local\Comms =>.Microsoft Corporation O43 - CFD: 08/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation O43 - CFD: 11/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\converter =>.CocoonSoftware O43 - CFD: 11/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\ConverterAgent O43 - CFD: 10/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 11/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\CrashRpt O43 - CFD: 10/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Local\D3DSCache =>.Legitimate O43 - CFD: 14/12/2017 - [0] D -- C:\Users\Mr_GT\AppData\Local\DBG =>.DBG O43 - CFD: 19/06/2019 - [0] D -- C:\Users\Mr_GT\AppData\Local\Diagnostics =>.Microsoft Corporation O43 - CFD: 10/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Local\Discord O43 - CFD: 13/01/2021 - [] D -- C:\Users\Mr_GT\AppData\Local\Disc_Soft_Ltd =>.Disc Soft Ltd O43 - CFD: 17/02/2018 - [] D -- C:\Users\Mr_GT\AppData\Local\Downloaded Installations =>.Microsoft Corporation O43 - CFD: 10/10/2021 - [0] D -- C:\Users\Mr_GT\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation O43 - CFD: 03/05/2018 - [] D -- C:\Users\Mr_GT\AppData\Local\Equilab O43 - CFD: 15/12/2020 - [0] D -- C:\Users\Mr_GT\AppData\Local\ESET =>.ESET O43 - CFD: 01/02/2021 - [] D -- C:\Users\Mr_GT\AppData\Local\FileZilla =>.FileZilla O43 - CFD: 20/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Local\FortniteGame O43 - CFD: 09/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\FreemakeVideoConverter =>.Freemake O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Local\Google =>.Google O43 - CFD: 24/03/2020 - [] D -- C:\Users\Mr_GT\AppData\Local\GoTo Opener O43 - CFD: 01/11/2020 - [0] SHD -- C:\Users\Mr_GT\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 24/06/2020 - [] D -- C:\Users\Mr_GT\AppData\Local\HiSuite =>.Huawei Technologies Co.,Ltd O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Local\Hold'em_Manager O43 - CFD: 11/12/2020 - [] D -- C:\Users\Mr_GT\AppData\Local\HP =>.Hewlett-Packard O43 - CFD: 09/07/2018 - [] D -- C:\Users\Mr_GT\AppData\Local\iMusic =>.iMusic O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Local\IsolatedStorage =>.id Software O43 - CFD: 23/07/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\Lavasoft =>.Lavasoft O43 - CFD: 05/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\MAGIX =>.MAGIX_Software_GmbH O43 - CFD: 04/03/2018 - [] D -- C:\Users\Mr_GT\AppData\Local\Max_Value_Software_LLC O43 - CFD: 09/10/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\mbam =>.Malwarebytes O43 - CFD: 09/10/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\mbamtray =>.Malwarebytes O43 - CFD: 27/10/2021 - [] D -- C:\Users\Mr_GT\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 07/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\Microsoft Help =>.Microsoft Corporation O43 - CFD: 27/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Local\MicrosoftEdge =>.Microsoft Corporation O43 - CFD: 11/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\Movavi =>.Movavi O43 - CFD: 18/05/2018 - [] D -- C:\Users\Mr_GT\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 04/03/2018 - [0] D -- C:\Users\Mr_GT\AppData\Local\MVS O43 - CFD: 29/01/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\New Technology Studio =>.New Technology Studio O43 - CFD: 11/11/2021 - [] D -- C:\Users\Mr_GT\AppData\Local\Notepad O43 - CFD: 25/01/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 21/04/2021 - [] D -- C:\Users\Mr_GT\AppData\Local\OfficeBSCache-MyComputer O43 - CFD: 12/09/2018 - [] D -- C:\Users\Mr_GT\AppData\Local\OneDrive =>.Microsoft Corporation O43 - CFD: 10/07/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\Open Media LLC =>.Open Media LLC O43 - CFD: 10/12/2020 - [] D -- C:\Users\Mr_GT\AppData\Local\Origin =>.Electronic Arts, Inc. O43 - CFD: 09/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 01/11/2020 - [] D -- C:\Users\Mr_GT\AppData\Local\PackageStaging =>.Apcera O43 - CFD: 14/12/2017 - [0] D -- C:\Users\Mr_GT\AppData\Local\PeerDistRepub =>.Microsoft Corporation O43 - CFD: 12/10/2021 - [0] D -- C:\Users\Mr_GT\AppData\Local\PlaceholderTileLogoFolder =>.Microsoft Corporation O43 - CFD: 10/01/2018 - [] D -- C:\Users\Mr_GT\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 17/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Local\Publishers =>.Microsoft Corporation O43 - CFD: 25/01/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\RadeonInstaller O43 - CFD: 25/01/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\RadeonSettings O43 - CFD: 15/01/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\redout O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Local\Rockstar Games =>.Rockstar Games O43 - CFD: 16/03/2018 - [] D -- C:\Users\Mr_GT\AppData\Local\Serato =>.Serato O43 - CFD: 11/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\Sony =>.Sony O43 - CFD: 17/05/2018 - [] D -- C:\Users\Mr_GT\AppData\Local\speech =>.Microsoft Corporation O43 - CFD: 16/10/2021 - [] D -- C:\Users\Mr_GT\AppData\Local\SquirrelTemp =>.Squirrels O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Local\Steam =>.Steam Games O43 - CFD: 07/09/2021 - [] D -- C:\Users\Mr_GT\AppData\Local\TeamViewer =>.TeamViewer GmbH O43 - CFD: 10/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 01/11/2020 - [0] SHD -- C:\Users\Mr_GT\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 16/01/2018 - [] D -- C:\Users\Mr_GT\AppData\Local\TileDataLayer =>.Microsoft Corporation O43 - CFD: 08/04/2018 - [] D -- C:\Users\Mr_GT\AppData\Local\TslGame O43 - CFD: 15/01/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\UnrealEngine =>.Unreal Software O43 - CFD: 05/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\VEGAS =>.VEGAS O43 - CFD: 05/08/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\VEGAS Pro O43 - CFD: 14/12/2017 - [0] D -- C:\Users\Mr_GT\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 07/03/2019 - [] D -- C:\Users\Mr_GT\AppData\Local\VS Revo Group =>.VS Revo Group O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\Local\web_engine O43 - CFD: 29/01/2021 - [] D -- C:\Users\Mr_GT\AppData\Local\WELLBIA O43 - CFD: 31/03/2022 - [] D -- C:\Users\Mr_GT\AppData\Local\WhatsApp =>.WhatsApp O43 - CFD: 09/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Local\Wondershare =>.Wondershare O43 - CFD: 10/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 09/04/2022 - [] D -- C:\Users\Mr_GT\AppData\Local\_ O43 - CFD: 14/12/2017 - [0] D -- C:\Users\Mr_GT\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 10/01/2018 - [] D -- C:\Users\Mr_GT\AppData\Local\Programs\Neon O43 - CFD: 21/03/2020 - [] D -- C:\Users\Mr_GT\AppData\LocalLow\Adobe =>.Adobe O43 - CFD: 09/04/2022 - [] D -- C:\Users\Mr_GT\AppData\LocalLow\AMD =>.AMD O43 - CFD: 11/06/2020 - [] D -- C:\Users\Mr_GT\AppData\LocalLow\Evernote =>.EverNote Corporation O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\LocalLow\Ghost Town Games O43 - CFD: 01/07/2021 - [] SD -- C:\Users\Mr_GT\AppData\LocalLow\Microsoft =>.Microsoft Corporation O43 - CFD: 10/04/2022 - [] D -- C:\Users\Mr_GT\AppData\LocalLow\Mozilla =>.Mozilla Corporation O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\AppData\LocalLow\Playtonic Ltd O43 - CFD: 21/05/2020 - [] D -- C:\Users\Mr_GT\AppData\LocalLow\Sun =>.Oracle O43 - CFD: 01/06/2021 - [] D -- C:\Users\Mr_GT\AppData\LocalLow\Temp =>.Microsoft Corporation O43 - CFD: 10/04/2022 - [0] D -- C:\Users\Mr_GT\AppData\LocalLow\uTorrent O43 - CFD: 07/12/2021 - [] D -- C:\Users\Mr_GT\Desktop\AMILAB O43 - CFD: 01/07/2021 - [] D -- C:\Users\Mr_GT\Desktop\Assimil English O43 - CFD: 07/03/2019 - [] D -- C:\Users\Mr_GT\Desktop\CCleanerPro O43 - CFD: 13/10/2021 - [] D -- C:\Users\Mr_GT\Desktop\Devis - Facture Trot'Secure O43 - CFD: 07/12/2021 - [] D -- C:\Users\Mr_GT\Desktop\DUBAI O43 - CFD: 04/04/2022 - [] D -- C:\Users\Mr_GT\Desktop\ElecMotion O43 - CFD: 07/12/2021 - [] D -- C:\Users\Mr_GT\Desktop\Finances O43 - CFD: 07/12/2021 - [] D -- C:\Users\Mr_GT\Desktop\KITTYFUNNY O43 - CFD: 14/12/2017 - [] D -- C:\Users\Mr_GT\Desktop\Overcooked O43 - CFD: 08/12/2021 - [] D -- C:\Users\Mr_GT\Desktop\Ventes O43 - CFD: 01/11/2020 - [] RD -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 01/11/2020 - [] RD -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 01/11/2020 - [] RD -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 19/04/2020 - [0] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASUS =>.ASUS O43 - CFD: 07/12/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc =>.SUP.Discord O43 - CFD: 01/11/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Equalizer APO 1.2 O43 - CFD: 25/11/2018 - [0] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation O43 - CFD: 01/11/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Holdem Manager 3 O43 - CFD: 07/12/2019 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 01/11/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Movavi Video Converter 19 Premium =>.Movavi O43 - CFD: 01/11/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner =>.Micro-Star International Co O43 - CFD: 01/11/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RivaTuner Statistics Server =>.RivaTuner O43 - CFD: 01/11/2020 - [] RD -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 17/05/2018 - [0] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Supercopier =>.SFX Team O43 - CFD: 07/12/2019 - [] RD -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 01/11/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Telegram Desktop =>.Telegram Messenger LLP O43 - CFD: 16/10/2021 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp =>.WhatsApp O43 - CFD: 01/11/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Winamax =>.Winamax O43 - CFD: 01/11/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation O43 - CFD: 01/11/2020 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 16/11/2021 - [] D -- C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom =>.ZOOM O43 - CFD: 01/11/2020 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 18/03/2017 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 07/11/2021 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 01/11/2020 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 01/11/2020 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 18/03/2017 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 07/11/2021 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 01/11/2020 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 05/11/2020 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Adobe =>.Adobe O43 - CFD: 22/02/2021 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\AMD =>.AMD O43 - CFD: 07/09/2021 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 22/02/2021 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\D3DSCache =>.Legitimate O43 - CFD: 01/11/2020 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 01/11/2020 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Origin =>.Electronic Arts, Inc. O43 - CFD: 22/02/2021 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 01/11/2020 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Origin =>.Electronic Arts, Inc. ---\\ ShellIconOverlayIdentifiers (SIOI) (5) - 0s O106 - SIOI: [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL =>.Microsoft® O106 - SIOI: [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL =>.Microsoft® O106 - SIOI: [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL =>.Microsoft® O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation ---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (36) - 1s O108 - CMH1: Adobe.Acrobat.ContextMenu [64Bits] - {A6595CD1-BF77-430A-A452-18696685F7C7} . (.Adobe Systems Inc. - Adobe Acrobat Context Menu.) -- C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll =>.Adobe Systems, Incorporated® O108 - CMH1: ANotepad++64 [64Bits] - {B298D29A-A6ED-11DE-BA8C-A68E55D89593} . (. - ShellHandler for Notepad++ (64 bit).) -- D:\Logiciels\Notepad++\NppShell_06.dll =>.Notepad++® O108 - CMH1: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft® O108 - CMH1: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH® O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH2: RUShellExt [64Bits] - {2C5515DC-2A7E-4BFD-B813-CACC2B685EB7} . (.VS Revo Group - Revo Uninstaller Pro Extension.) -- D:\Logiciels\Revo Uninstaller Pro\RUExt.dll =>.VS Revo Group Ltd.® O108 - CMH2: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH® O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH3: DaemonShellExtImageLite [64Bits] - {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} . (.Disc Soft Ltd - DAEMON Tools Lite.) -- D:\Logiciels\DAEMON Tools Lite\DTShl64.dll =>.AVB Disc Soft, SIA® O108 - CMH3: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- D:\Logiciels\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation® O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft® O108 - CMH4: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: ACE [64Bits] - {5E2121EE-0300-11D4-8D3B-444553540000} . (.Advanced Micro Devices, Inc. - AMD Software: Desktop Control Panel.) -- C:\WINDOWS\System32\atiacm64.dll [Unsigned] =>.Advanced Micro Devices, Inc. O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: Adobe.Acrobat.ContextMenu [64Bits] - {A6595CD1-BF77-430A-A452-18696685F7C7} . (.Adobe Systems Inc. - Adobe Acrobat Context Menu.) -- C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll =>.Adobe Systems, Incorporated® O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH6: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- D:\Logiciels\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation® O108 - CMH6: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft® O108 - CMH6: RUShellExt [64Bits] - {2C5515DC-2A7E-4BFD-B813-CACC2B685EB7} . (.VS Revo Group - Revo Uninstaller Pro Extension.) -- D:\Logiciels\Revo Uninstaller Pro\RUExt.dll =>.VS Revo Group Ltd.® O108 - CMH6: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH® O108 - CMH7: DaemonShellExtDriveLite [64Bits] - {C06369D6-E77D-4626-9656-1256312BD576} . (.Disc Soft Ltd - DAEMON Tools Lite.) -- D:\Logiciels\DAEMON Tools Lite\DTShl64.dll =>.AVB Disc Soft, SIA® O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH7: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft® O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation ---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (19) - 1s O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft® O50 - IFEO:C:\WINDOWS\System32\drvinst.exe - (.Microsoft Corporation - Driver Installation Module.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft® O50 - IFEO:C:\WINDOWS\System32\vmcompute.exe - (.Microsoft Corporation - Service de calcul hôte Hyper-V.) [UseFilter\\1] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\vmwp.exe - (.Microsoft Corporation - Processus de travail de l’ordinateur virtue.) [UseFilter\\1] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES PILOTES DU SYSTÈME (479) - 12s O58 - SDL:2019/12/07 11:07:53 A . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\WINDOWS\System32\drivers\1394ohci.sys [266240] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:53 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107320] =>.Microsoft® O58 - SDL:2021/05/14 00:22:50 A . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\WINDOWS\System32\drivers\acpi.sys [809288] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Microsoft Corporation - ACPI Devices Driver.) -- C:\WINDOWS\System32\drivers\AcpiDev.sys [23040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - ACPIEx Driver.) -- C:\WINDOWS\System32\drivers\acpiex.sys [139792] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - ACPI Processor Aggregator Device Driver.) -- C:\WINDOWS\System32\drivers\acpipagr.sys [14336] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\WINDOWS\System32\drivers\acpipmi.sys [18432] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - ACPI Wake Alarm.) -- C:\WINDOWS\System32\drivers\acpitime.sys [16384] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:52:09 A . (.Microsoft Corporation - Audio KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\Acx01000.sys [694272] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:53 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135416] =>.Microsoft® O58 - SDL:2022/04/01 08:52:39 A . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\afd.sys [651096] =>.Microsoft® O58 - SDL:2022/04/01 08:52:42 A . (.Microsoft Corporation - AF_UNIX socket provider.) -- C:\WINDOWS\System32\drivers\afunix.sys [48128] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:52:43 A . (.Microsoft Corporation - Gestionnaire d'appels RAS Agile Vpn Minipor.) -- C:\WINDOWS\System32\drivers\agilevpn.sys [118784] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/14 13:04:13 A . (.Microsoft Corporation - Application Compatibility Cache.) -- C:\WINDOWS\System32\drivers\ahcache.sys [292352] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/12/13 21:01:26 A . (.Advanced Micro Devices, Inc. - AMD Crash Defender.) -- C:\WINDOWS\System32\drivers\amdfendr.sys [164800] {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices, Inc. O58 - SDL:2021/12/13 21:01:26 A . (.Advanced Micro Devices, Inc. - AMD Crash Defender Manager Driver.) -- C:\WINDOWS\System32\drivers\amdfendrmgr.sys [33728] {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices, Inc. O58 - SDL:2019/12/07 11:07:47 A . (.Advanced Micro Devices, Inc - AMD GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\amdgpio2.sys [18432] [Unsigned] =>.Advanced Micro Devices, Inc O58 - SDL:2019/12/07 11:07:47 A . (.Advanced Micro Devices, Inc - AMD I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\amdi2c.sys [45568] [Unsigned] =>.Advanced Micro Devices, Inc O58 - SDL:2020/11/02 17:40:32 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdk8.sys [207160] =>.Microsoft® O58 - SDL:2017/10/13 11:21:16 A . (.Advanced Micro Devices, Inc. - AMD Audio Bus Lower Filter.) -- C:\WINDOWS\System32\drivers\amdkmafd.sys [66888] =>.Advanced Micro Devices, Inc.® O58 - SDL:2022/03/16 03:41:40 A . (.Advanced Micro Devices, Inc. - AMD PCI Root Bus Lower Filter.) -- C:\WINDOWS\System32\drivers\amdkmpfd.sys [110408] {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices, Inc. O58 - SDL:2020/11/02 17:40:32 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdppm.sys [211256] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83256] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259384] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26936] =>.Microsoft® O58 - SDL:2021/08/17 18:34:00 A . (.Advanced Micro Devices, Inc. - AMD Link Controller Emulation.) -- C:\WINDOWS\System32\drivers\amdxe.sys [65168] {535091E6CAB13AF393B51EAD0825F627}. =>.Advanced Micro Devices, Inc. O58 - SDL:2022/04/01 08:52:34 A . (.Microsoft Corporation - AppID Driver.) -- C:\WINDOWS\System32\drivers\appid.sys [215400] =>.Microsoft® O58 - SDL:2018/05/10 14:05:04 A . (.Apple Inc. - Apple Mobile Device USB Device.) -- C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35560] =>.WDKTestCert build,131474841775766162® O58 - SDL:2022/04/01 08:52:34 A . (.Microsoft Corporation - Applocker Filter.) -- C:\WINDOWS\System32\drivers\applockerfltr.sys [18432] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/11/10 18:26:48 A . (.Microsoft Corporation - Microsoft Application Virtualization Stream.) -- C:\WINDOWS\System32\drivers\AppVStrm.sys [138056] =>.Microsoft® O58 - SDL:2021/11/10 18:26:48 A . (.Microsoft Corporation - Microsoft Application Virtualization VE Man.) -- C:\WINDOWS\System32\drivers\AppvVemgr.sys [174408] =>.Microsoft® O58 - SDL:2021/11/10 18:26:48 A . (.Microsoft Corporation - Microsoft Application Virtualization VFS Fi.) -- C:\WINDOWS\System32\drivers\AppvVfs.sys [154952] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131896] =>.Microsoft® O58 - SDL:2015/06/05 15:13:28 A . (.ASMedia Technology Inc - ASMedia USB3 Hub Driver.) -- C:\WINDOWS\System32\drivers\asmthub3.sys [149240] =>.ASMedia Technology Inc.® O58 - SDL:2015/06/05 15:13:28 A . (.ASMedia Technology Inc - ASMEDIA XHCI Host Controller Driver.) -- C:\WINDOWS\System32\drivers\asmtxhci.sys [442104] =>.ASMedia Technology Inc.® O58 - SDL:2019/12/07 11:09:07 A . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\WINDOWS\System32\drivers\asyncmac.sys [31232] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/10/13 01:45:13 A . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [30032] =>.Microsoft® O58 - SDL:2021/10/13 01:45:14 A . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\WINDOWS\System32\drivers\ataport.sys [224080] =>.Microsoft® O58 - SDL:2021/11/01 07:12:56 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\AtihdWT6.sys [246176] =>.Microsoft® O58 - SDL:2019/12/07 11:08:41 A . (.Microsoft Corporation - BAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\bam.sys [78136] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Battery Class Driver.) -- C:\WINDOWS\System32\drivers\battc.sys [41272] =>.Microsoft® O58 - SDL:2019/12/07 11:07:47 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] [Unsigned] =>.Broadcom Corporation O58 - SDL:2019/12/07 11:09:00 A . (.Microsoft Corporation - BEEP Driver.) -- C:\WINDOWS\System32\drivers\beep.sys [10240] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:52:31 A . (.Microsoft Corporation - Windows Bind Filter Driver.) -- C:\WINDOWS\System32\drivers\bindflt.sys [149320] =>.Microsoft® O58 - SDL:2022/04/01 08:52:12 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\WINDOWS\System32\drivers\bowser.sys [117760] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:39 A . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\WINDOWS\System32\drivers\bridge.sys [127488] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Microsoft Corporation - Microsoft Bluetooth Audio Multiprofile Mana.) -- C:\WINDOWS\System32\drivers\BtaMPM.sys [36352] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:52:07 A . (.Microsoft Corporation - Bluetooth A2DP Driver.) -- C:\WINDOWS\System32\drivers\BthA2dp.sys [287744] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/03/29 14:58:03 A . (.Microsoft Corporation - Extension de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthenum.sys [113664] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/10/13 01:45:13 A . (.Microsoft Corporation - Bluetooth Hands-free Audio Device Driver.) -- C:\WINDOWS\System32\drivers\BthHfAud.sys [65536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/10/13 01:45:13 A . (.Microsoft Corporation - Bluetooth Hands-Free Audio and Call Control.) -- C:\WINDOWS\System32\drivers\BthHfEnum.sys [154112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/03/29 14:58:03 A . (.Microsoft Corporation - Bluetooth Transport Extensibility Miniport.) -- C:\WINDOWS\System32\drivers\BthMini.SYS [45568] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\WINDOWS\System32\drivers\bthmodem.sys [76800] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Bluetooth Personal Area Networking.) -- C:\WINDOWS\System32\drivers\bthpan.sys [133632] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/03/29 14:58:03 A . (.Microsoft Corporation - Pilote de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthport.sys [1559552] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/03/29 14:58:03 A . (.Microsoft Corporation - Pilote de Miniport Bluetooth.) -- C:\WINDOWS\System32\drivers\BTHUSB.SYS [110592] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - VHD BTT Filter Driver.) -- C:\WINDOWS\System32\drivers\bttflt.sys [43832] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Button Converter Driver.) -- C:\WINDOWS\System32\drivers\buttonconverter.sys [44032] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:50 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [533816] =>.Microsoft® O58 - SDL:2019/12/07 11:07:47 A . (.Microsoft Corporation - Charge Arbiration Driver.) -- C:\WINDOWS\System32\drivers\CAD.sys [66576] =>.Microsoft® O58 - SDL:2019/12/07 11:09:37 A . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\cdfs.sys [100864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/10/13 01:45:13 A . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\cdrom.sys [175616] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:52:29 A . (.Microsoft Corporation - Event Aggregation Kernel Mode Library.) -- C:\WINDOWS\System32\drivers\CEA.sys [82256] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [144184] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [319800] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - VF library for Chelsio ® T5/T6 Chipset.) -- C:\WINDOWS\System32\drivers\cht4vfx.sys [28672] [Unsigned] =>.Chelsio Communications O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [1853752] =>.Microsoft® O58 - SDL:2021/10/13 01:45:28 A . (...) -- C:\WINDOWS\System32\drivers\cimfs.sys [98304] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\WINDOWS\System32\drivers\circlass.sys [52224] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/11/10 18:26:24 A . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\WINDOWS\System32\drivers\Classpnp.sys [417080] =>.Microsoft® O58 - SDL:2022/04/01 08:52:37 A . (.Microsoft Corporation - Cloud Files Mini Filter Driver.) -- C:\WINDOWS\System32\drivers\cldflt.sys [499712] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:52:40 A . (.Microsoft Corporation - Common Log File System Driver.) -- C:\WINDOWS\System32\drivers\clfs.sys [414024] =>.Microsoft® O58 - SDL:2022/04/01 08:52:17 A . (.Microsoft Corporation - CLIP Service.) -- C:\WINDOWS\System32\drivers\ClipSp.sys [1094456] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\WINDOWS\System32\drivers\CmBatt.sys [36864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/14 13:03:56 A . (.Microsoft Corporation - Noyau Gestionnaire de configuration Configu.) -- C:\WINDOWS\System32\drivers\cmimcext.sys [29000] =>.Microsoft® O58 - SDL:2022/03/29 14:58:15 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\WINDOWS\System32\drivers\cng.sys [746416] =>.Microsoft® O58 - SDL:2019/12/07 11:08:37 A . (.Microsoft Corporation - CNG Hardware Assist algorithm provider.) -- C:\WINDOWS\System32\drivers\cnghwassist.sys [40968] =>.Microsoft® O58 - SDL:2021/07/14 12:00:40 A . (.Microsoft Corporation - Console Driver.) -- C:\WINDOWS\System32\drivers\condrv.sys [57144] =>.Microsoft® O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\crashdmp.sys [99368] =>.Microsoft® O58 - SDL:2022/04/01 08:53:10 A . (.Microsoft Corporation - Windows Client Side Caching Driver.) -- C:\WINDOWS\System32\drivers\csc.sys [586752] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/24 15:30:27 A . (.Microsoft Corporation - DAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\dam.sys [97096] =>.Microsoft® O58 - SDL:2022/04/01 08:52:07 A . (.Microsoft Corporation - Xbox Device Authentication Driver.) -- C:\WINDOWS\System32\drivers\devauthe.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/03/10 00:54:13 A . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\dfsc.sys [152064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/02/12 01:18:23 A . (.Microsoft Corporation - PnP Disk Driver.) -- C:\WINDOWS\System32\drivers\disk.sys [98624] =>.Microsoft® O58 - SDL:2019/12/07 11:08:52 A . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\WINDOWS\System32\drivers\Diskdump.sys [38200] =>.Microsoft® O58 - SDL:2019/12/07 11:08:52 A . (.Microsoft Corporation - Boot Over USB Dump Driver.) -- C:\WINDOWS\System32\drivers\Dmpusbstor.sys [15360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Mémoire dynamique.) -- C:\WINDOWS\System32\drivers\dmvsc.sys [59192] =>.Microsoft® O58 - SDL:2021/01/13 02:14:42 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmk.sys [97792] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/01/13 02:14:42 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmkaud.sys [16128] =>.Microsoft® O58 - SDL:2017/12/14 21:41:46 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual SCSI Bus Driver.) -- C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264] =>.Disc Soft Ltd® O58 - SDL:2017/12/14 21:41:50 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual USB Bus Driver.) -- C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672] =>.Disc Soft Ltd® O58 - SDL:2019/12/07 11:08:46 A . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpata.sys [37392] =>.Microsoft® O58 - SDL:2022/03/29 14:58:38 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\WINDOWS\System32\drivers\dumpfve.sys [94176] =>.Microsoft® O58 - SDL:2022/04/01 08:52:07 A . (.Microsoft Corporation - SD Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsd.sys [196432] =>.Microsoft® O58 - SDL:2019/12/07 11:08:37 A . (.Microsoft Corporation - SD Host Controller Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsdport.sys [32768] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:52 A . (.Microsoft Corporation - Storport Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpstorport.sys [35128] =>.Microsoft® O58 - SDL:2022/04/01 08:52:17 A . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\WINDOWS\System32\drivers\dxgkrnl.sys [3814768] =>.Microsoft® O58 - SDL:2022/04/01 08:52:17 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms1.sys [456016] =>.Microsoft® O58 - SDL:2022/04/01 08:52:17 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms2.sys [901960] =>.Microsoft® O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\WINDOWS\System32\drivers\e1i65x64.sys [553984] [Unsigned] =>.Intel Corporation O58 - SDL:2021/05/14 00:23:19 A . (.Microsoft Corporation - Enhanced Storage Class driver for IEEE 1667.) -- C:\WINDOWS\System32\drivers\EhStorClass.sys [95032] =>.Microsoft® O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Microsoft driver for storage devices suppor.) -- C:\WINDOWS\System32\drivers\EhStorTcgDrv.sys [124728] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Error Device Driver.) -- C:\WINDOWS\System32\drivers\errdev.sys [15872] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:50 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3418936] =>.Microsoft® O58 - SDL:2022/04/01 08:52:08 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\WINDOWS\System32\drivers\exfat.sys [418648] =>.Microsoft® O58 - SDL:2020/12/13 22:19:33 A . (.Malwarebytes - Malwarebytes Anti-Ransomware Protection.) -- C:\WINDOWS\System32\drivers\farflt.sys [197792] =>.Malwarebytes Inc® O58 - SDL:2022/04/01 08:52:08 A . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\WINDOWS\System32\drivers\fastfat.sys [426352] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\WINDOWS\System32\drivers\fdc.sys [34816] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - Windows sandboxing and encryption filter.) -- C:\WINDOWS\System32\drivers\filecrypt.sys [59392] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:46 A . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\WINDOWS\System32\drivers\fileinfo.sys [94736] =>.Microsoft® O58 - SDL:2019/12/07 11:08:46 A . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\WINDOWS\System32\drivers\filetrace.sys [40448] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Floppy Driver.) -- C:\WINDOWS\System32\drivers\flpydisk.sys [28672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:52:38 A . (.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) -- C:\WINDOWS\System32\drivers\fltMgr.sys [435568] =>.Microsoft® O58 - SDL:2021/04/14 13:03:56 A . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) -- C:\WINDOWS\System32\drivers\fsdepends.sys [69968] =>.Microsoft® O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\WINDOWS\System32\drivers\fs_rec.sys [33592] =>.Microsoft® O58 - SDL:2022/03/29 14:58:38 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\WINDOWS\System32\drivers\fvevol.sys [801608] =>.Microsoft® O58 - SDL:2022/04/01 08:52:39 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\WINDOWS\System32\drivers\FWPKCLNT.SYS [502584] =>.Microsoft® O58 - SDL:2019/12/07 11:08:05 A . (.Microsoft Corporation - GPU Energy Kernel Driver.) -- C:\WINDOWS\System32\drivers\gpuenergydrv.sys [8704] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:52:07 A . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [134656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/01 14:02:11 A . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\HdAudio.sys [430080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Hid Battery Driver.) -- C:\WINDOWS\System32\drivers\hidbatt.sys [39440] =>.Microsoft® O58 - SDL:2020/11/01 14:02:11 A . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périp.) -- C:\WINDOWS\System32\drivers\hidbth.sys [120320] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/14 13:03:54 A . (.Microsoft Corporation - Bibliothèque Hid Class.) -- C:\WINDOWS\System32\drivers\hidclass.sys [225792] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - I2C HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidi2c.sys [57344] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - HID Button over Interrupt Driver.) -- C:\WINDOWS\System32\drivers\hidinterrupt.sys [55824] =>.Microsoft® O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidir.sys [48640] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/14 13:03:54 A . (.Microsoft Corporation - Hid Parsing Library.) -- C:\WINDOWS\System32\drivers\hidparse.sys [46080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - SPI HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidspi.sys [66560] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/14 13:03:54 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidusb.sys [44032] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/03/10 00:54:36 A . (.Microsoft Corporation - Network driver for proxying traffic.) -- C:\WINDOWS\System32\drivers\hnswfpdriver.sys [21328] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64312] =>.Microsoft® O58 - SDL:2022/04/01 08:52:38 A . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\WINDOWS\System32\drivers\http.sys [1576760] =>.Microsoft® O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Hyper-V Crashdump.) -- C:\WINDOWS\System32\drivers\hvcrash.sys [35128] =>.Microsoft® O58 - SDL:2022/04/01 08:52:55 A . (.Microsoft Corporation - Hypervisor Boot Driver.) -- C:\WINDOWS\System32\drivers\hvservice.sys [95048] =>.Microsoft® O58 - SDL:2021/04/14 13:04:28 A . (.Microsoft Corporation - Microsoft Hyper-V Socket Provider.) -- C:\WINDOWS\System32\drivers\hvsocket.sys [148280] =>.Microsoft® O58 - SDL:2021/03/10 00:54:36 A . (.Microsoft Corporation - Microsoft Hyper-V Socket Provider Control D.) -- C:\WINDOWS\System32\drivers\hvsocketcontrol.sys [36176] =>.Microsoft® O58 - SDL:2020/11/01 14:02:36 A . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\WINDOWS\System32\drivers\hwpolicy.sys [33096] =>.Microsoft® O58 - SDL:2019/12/27 04:18:54 A . (.Huawei Technologies Co., Ltd. - USB NDIS Miniport Driver.) -- C:\WINDOWS\System32\drivers\hw_quusbnet.sys [287232] [Unsigned] =>.Huawei Technologies Co., Ltd. O58 - SDL:2019/12/27 04:18:54 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\hw_usbdev.sys [116864] [Unsigned] =>.Huawei Technologies Co., Ltd. O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Microsoft VMBus Synthetic Keyboard Driver.) -- C:\WINDOWS\System32\drivers\hyperkbd.sys [27448] =>.Microsoft® O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Microsoft VMBus Video Device Miniport Drive.) -- C:\WINDOWS\System32\drivers\HyperVideo.sys [41784] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [118272] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [36352] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [91136] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [93184] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [175104] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [177152] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:50 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group® O58 - SDL:2019/12/07 11:07:50 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] [Unsigned] =>.Intel Corporation O58 - SDL:2015/07/07 09:33:10 A . (.Intel Corporation - NDIS 6.30 Advanced Networking Services..) -- C:\WINDOWS\System32\drivers\iANSW60e.sys [155192] =>.Intel(R) Intel Network Drivers® O58 - SDL:2015/07/29 13:44:00 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver -.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [1462720] =>.Intel Corporation - Rapid Storage Technology® O58 - SDL:2019/12/07 11:07:54 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAVC.sys [884752] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412176] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [558904] =>.Microsoft® O58 - SDL:2020/11/02 17:41:29 A . (.Microsoft Corporation - Indirect displays kernel-mode filter driver.) -- C:\WINDOWS\System32\drivers\IndirectKmd.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/10/13 01:45:14 A . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\WINDOWS\System32\drivers\intelide.sys [19792] =>.Microsoft® O58 - SDL:2021/10/13 01:45:13 A . (.Microsoft Corporation - Intel Power Engine Plugin.) -- C:\WINDOWS\System32\drivers\intelpep.sys [418800] =>.Microsoft® O58 - SDL:2019/12/07 11:07:47 A . (.Microsoft Corporation - Intel Power Limit Driver.) -- C:\WINDOWS\System32\drivers\intelpmax.sys [30720] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/02 17:40:32 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\intelppm.sys [230728] =>.Microsoft® O58 - SDL:2020/11/02 17:40:32 A . (.Microsoft Corporation - Intel Telemetry Driver.) -- C:\WINDOWS\System32\drivers\IntelTA.sys [26608] =>.Microsoft® O58 - SDL:2013/07/02 16:29:20 A . (.ASUSTeK Computer Inc. - ASUS Kernel Mode Driver for NT.) -- C:\WINDOWS\System32\drivers\IOMap64.sys [24824] =>.ASUSTeK Computer Inc.® O58 - SDL:2021/06/24 15:30:13 A . (.Microsoft Corporation - Filtre de contrôle de taux d’E/S.) -- C:\WINDOWS\System32\drivers\iorate.sys [57168] =>.Microsoft® O58 - SDL:2021/05/14 00:23:12 A . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\WINDOWS\System32\drivers\ipfltdrv.sys [90112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/24 15:30:12 A . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\WINDOWS\System32\drivers\IPMIDrv.sys [117584] =>.Microsoft® O58 - SDL:2019/12/07 11:08:34 A . (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\ipnat.sys [225280] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - IPT Driver.) -- C:\WINDOWS\System32\drivers\ipt.sys [59704] =>.Microsoft® O58 - SDL:2015/05/07 15:59:10 A . (.Intel Corporation - Intel(R) Network Adapter Diagnostic Driver.) -- C:\WINDOWS\System32\drivers\iqvw64e.sys [37832] =>.Intel(R) Intel Network Drivers® O58 - SDL:2021/10/10 19:28:31 A . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\WINDOWS\System32\drivers\isapnp.sys [22864] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\ItSas35i.sys [172344] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\WINDOWS\System32\drivers\kbdclass.sys [71480] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\WINDOWS\System32\drivers\kbdhid.sys [46592] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/03/10 00:54:43 A . (.Microsoft Corporation - Keyboard Lockdown Subsystem.) -- C:\WINDOWS\System32\drivers\kbldfltr.sys [29000] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Microsoft Kernel Debugger Network Miniport.) -- C:\WINDOWS\System32\drivers\kdnic.sys [33296] =>.Microsoft® O58 - SDL:2021/07/07 02:37:38 A . (.Microsoft Corporation - Network Power Dependency Broker.) -- C:\WINDOWS\System32\drivers\KNetPwrDepBroker.sys [32256] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/11 19:33:10 A . (.Microsoft Corporation - Kernel CSA Library.) -- C:\WINDOWS\System32\drivers\ks.sys [449024] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:52:39 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecdd.sys [148312] =>.Microsoft® O58 - SDL:2022/04/01 08:52:38 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecpkg.sys [180040] =>.Microsoft® O58 - SDL:2019/12/07 11:08:58 A . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\WINDOWS\System32\drivers\ksthunk.sys [29696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 18:03:29 A . (.Microsoft Corporation - Network driver for bridging packets between.) -- C:\WINDOWS\System32\drivers\l2bridge.sys [58888] =>.Microsoft® O58 - SDL:2019/12/07 11:08:55 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\WINDOWS\System32\drivers\lltdio.sys [72704] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/04/11 15:34:51 A . (...) -- C:\WINDOWS\System32\drivers\lpsport.sys [61304] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108856] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [124216] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [135992] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82744] =>.Microsoft® O58 - SDL:2021/03/10 00:54:16 A . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) -- C:\WINDOWS\System32\drivers\luafv.sys [140800] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 18:03:26 A . (.Microsoft Corporation - lun parser.) -- C:\WINDOWS\System32\drivers\lunparser.sys [35856] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - MA-USB Host Controller Driver.) -- C:\WINDOWS\System32\drivers\mausbhost.sys [537608] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - MA-USB IP Driver.) -- C:\WINDOWS\System32\drivers\mausbip.sys [64016] =>.Microsoft® O58 - SDL:2020/12/11 21:00:48 A . (.Malwarebytes - Malwarebytes Anti-Exploit.) -- C:\WINDOWS\System32\drivers\mbae64.sys [153312] =>.Malwarebytes Corporation® O58 - SDL:2020/12/13 22:19:35 A . (.Malwarebytes - Malwarebytes Real-Time Protection.) -- C:\WINDOWS\System32\drivers\mbam.sys [77496] =>.Malwarebytes Inc® O58 - SDL:2020/12/13 22:19:31 A . (.Malwarebytes - Malwarebytes Chameleon.) -- C:\WINDOWS\System32\drivers\MbamChameleon.sys [220160] =>.Malwarebytes Inc® O58 - SDL:2020/12/11 21:00:48 A . (.Malwarebytes - Malwarebytes Early Launch Anti-Malware Driv.) -- C:\WINDOWS\System32\drivers\MbamElam.sys [19912] =>.Microsoft® O58 - SDL:2020/12/11 21:01:22 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys [248968] =>.Malwarebytes Inc® O58 - SDL:2021/07/07 02:37:38 A . (.Microsoft Corporation - Windows Mobile Broadband Class Extension.) -- C:\WINDOWS\System32\drivers\MbbCx.sys [391168] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:00 A . (.Microsoft Corporation - Medium changer class driver.) -- C:\WINDOWS\System32\drivers\mcd.sys [25088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59704] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [81720] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas35i.sys [105480] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575800] =>.Microsoft® O58 - SDL:2019/12/07 11:07:47 A . (.Microsoft Corporation - Pilote de transport Microsoft Bluetooth Avr.) -- C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [65024] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/01 14:02:11 A . (.Microsoft Corporation - Legacy Bluetooth LE Bus Enumerator.) -- C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [106496] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [1131320] =>.Microsoft® O58 - SDL:2020/11/02 17:40:43 A . (.Microsoft Corporation - MMCSS Driver.) -- C:\WINDOWS\System32\drivers\mmcss.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/01/13 02:16:09 A . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\WINDOWS\System32\drivers\modem.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/08/10 22:47:44 A . (.Microsoft Corporation - Monitor Driver.) -- C:\WINDOWS\System32\drivers\monitor.sys [83968] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\WINDOWS\System32\drivers\mouclass.sys [67600] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\WINDOWS\System32\drivers\mouhid.sys [35328] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\WINDOWS\System32\drivers\mountmgr.sys [110392] =>.Microsoft® O58 - SDL:2019/12/07 11:08:33 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\WINDOWS\System32\drivers\mpsdrv.sys [80896] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:53:03 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\WINDOWS\System32\drivers\mrxdav.sys [165888] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:52:40 A . (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\mrxsmb.sys [579432] =>.Microsoft® O58 - SDL:2022/04/01 08:52:40 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\WINDOWS\System32\drivers\mrxsmb20.sys [261448] =>.Microsoft® O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Mailslot driver.) -- C:\WINDOWS\System32\drivers\msfs.sys [44048] =>.Microsoft® O58 - SDL:2020/11/01 14:02:20 A . (.Microsoft Corporation - GPIO Class Extension Driver.) -- C:\WINDOWS\System32\drivers\msgpioclx.sys [183112] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - GPIO Button Driver.) -- C:\WINDOWS\System32\drivers\msgpiowin32.sys [56120] =>.Microsoft® O58 - SDL:2019/12/07 11:08:36 A . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\WINDOWS\System32\drivers\mshidkmdf.sys [8192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:16 A . (.Microsoft Corporation - Pilote direct pour interface HID-UMDF.) -- C:\WINDOWS\System32\drivers\mshidumdf.sys [12288] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:36 A . (.Microsoft Corporation - Hardware Notification Class Extension Drive.) -- C:\WINDOWS\System32\drivers\mshwnclx.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/10/10 19:28:31 A . (.Microsoft Corporation - ISA Driver.) -- C:\WINDOWS\System32\drivers\msisadrv.sys [20280] =>.Microsoft® O58 - SDL:2021/08/10 22:47:44 A . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\WINDOWS\System32\drivers\msiscsi.sys [293176] =>.Microsoft® O58 - SDL:2020/11/11 19:33:10 A . (.Microsoft Corporation - MS KS Server.) -- C:\WINDOWS\System32\drivers\mskssrv.sys [34816] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:05 A . (.Microsoft Corporation - Pilote de protocole LLDP (Link Layer Discov.) -- C:\WINDOWS\System32\drivers\mslldp.sys [78848] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:58 A . (.Microsoft Corporation - MS Proxy Clock.) -- C:\WINDOWS\System32\drivers\mspclock.sys [11264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:58 A . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\WINDOWS\System32\drivers\mspqm.sys [11264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/01 14:02:35 A . (.Microsoft Corporation - Windows QUIC Driver.) -- C:\WINDOWS\System32\drivers\msquic.sys [322376] =>.Microsoft® O58 - SDL:2022/04/01 08:52:39 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\WINDOWS\System32\drivers\msrpc.sys [375608] =>.Microsoft® O58 - SDL:2022/03/29 14:58:03 A . (.Microsoft Corporation - Pilote du filtre de système de fichiers du.) -- C:\WINDOWS\System32\drivers\mssecflt.sys [331064] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\WINDOWS\System32\drivers\mssmbios.sys [47928] =>.Microsoft® O58 - SDL:2019/12/07 11:08:58 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\WINDOWS\System32\drivers\mstee.sys [12288] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:53 A . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\WINDOWS\System32\drivers\MTConfig.sys [17920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/03/10 00:54:13 A . (.Microsoft Corporation - Pilote de fournisseur UNC multiples.) -- C:\WINDOWS\System32\drivers\mup.sys [132920] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63800] =>.Microsoft® O58 - SDL:2020/12/13 22:19:32 A . (.Malwarebytes - Malwarebytes Web Protection.) -- C:\WINDOWS\System32\drivers\mwac.sys [139424] =>.Malwarebytes Inc® O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [146232] =>.Microsoft® O58 - SDL:2022/03/29 14:58:16 A . (.Microsoft Corporation - NDIS (Network Driver Interface Specificatio.) -- C:\WINDOWS\System32\drivers\ndis.sys [1476944] =>.Microsoft® O58 - SDL:2019/12/07 11:09:48 A . (.Microsoft Corporation - Microsoft NDIS Packet Capture Filter Driver.) -- C:\WINDOWS\System32\drivers\ndiscap.sys [54272] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/02 17:41:40 A . (.Microsoft Corporation - Microsoft Network Adapter Multiplexor.) -- C:\WINDOWS\System32\drivers\NdisImPlatform.sys [135168] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/02 17:41:43 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\WINDOWS\System32\drivers\ndistapi.sys [28672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\WINDOWS\System32\drivers\ndisuio.sys [70656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:05 A . (.Microsoft Corporation - Énumérateur de cartes réseau virtuelles Mic.) -- C:\WINDOWS\System32\drivers\NdisVirtualBus.sys [23040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/11/10 18:26:27 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\WINDOWS\System32\drivers\ndiswan.sys [212992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:48 A . (.Microsoft Corporation - RDMA Sample Driver.) -- C:\WINDOWS\System32\drivers\NDKPing.sys [72720] =>.Microsoft® O58 - SDL:2020/11/02 17:41:43 A . (.Microsoft Corporation - NDIS Proxy.) -- C:\WINDOWS\System32\drivers\ndproxy.sys [93696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:33 A . (.Microsoft Corporation - Windows Network Data Usage Monitoring Drive.) -- C:\WINDOWS\System32\drivers\Ndu.sys [131584] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/03/29 14:58:16 A . (.Microsoft Corporation - Network Adapter Class Extension for WDF.) -- C:\WINDOWS\System32\drivers\NetAdapterCx.sys [214528] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:04 A . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\WINDOWS\System32\drivers\netbios.sys [64312] =>.Microsoft® O58 - SDL:2020/11/02 17:41:40 A . (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netbt.sys [341504] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:52:39 A . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\WINDOWS\System32\drivers\netio.sys [601944] =>.Microsoft® O58 - SDL:2022/04/01 08:52:08 A . (.Microsoft Corporation - Miniport NDIS virtuel.) -- C:\WINDOWS\System32\drivers\netvsc.sys [252264] =>.Microsoft® O58 - SDL:2017/01/02 16:01:46 A . (.Riverbed Technology, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) -- C:\WINDOWS\System32\drivers\npf.sys [36600] =>.Riverbed Technology, Inc.® O58 - SDL:2022/04/01 08:52:38 A . (.Microsoft Corporation - NPFS Driver.) -- C:\WINDOWS\System32\drivers\npfs.sys [87368] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Named pipe service triggers.) -- C:\WINDOWS\System32\drivers\npsvctrig.sys [27648] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/02 17:41:36 A . (.Microsoft Corporation - NSI Proxy.) -- C:\WINDOWS\System32\drivers\nsiproxy.sys [48640] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:52:39 A . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2851664] =>.Microsoft® O58 - SDL:2019/12/07 11:08:58 A . (.Microsoft Corporation - NTOS extension host driver.) -- C:\WINDOWS\System32\drivers\ntosext.sys [20792] =>.Microsoft® O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - NULL Driver.) -- C:\WINDOWS\System32\drivers\null.sys [7680] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Pilote de périphérique NVDIMM.) -- C:\WINDOWS\System32\drivers\nvdimm.sys [168464] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150328] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166200] =>.Microsoft® O58 - SDL:2022/03/29 14:58:05 A . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\WINDOWS\System32\drivers\nwifi.sys [757760] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/02 17:41:28 A . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\WINDOWS\System32\drivers\pacer.sys [161608] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\parport.sys [109056] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/03/29 14:58:16 A . (.Microsoft Corporation - Partition driver.) -- C:\WINDOWS\System32\drivers\partmgr.sys [182608] =>.Microsoft® O58 - SDL:2019/12/07 18:03:26 A . (.Microsoft Corporation - Pass thru parser.) -- C:\WINDOWS\System32\drivers\passthruparser.sys [39440] =>.Microsoft® O58 - SDL:2022/03/29 14:58:03 A . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\WINDOWS\System32\drivers\pci.sys [469840] =>.Microsoft® O58 - SDL:2021/10/13 01:45:14 A . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\pciide.sys [16712] =>.Microsoft® O58 - SDL:2021/10/13 01:45:14 A . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\WINDOWS\System32\drivers\pciidex.sys [56656] =>.Microsoft® O58 - SDL:2021/11/10 18:26:01 A . (.Microsoft Corporation - Microsoft PCI Proxy Driver.) -- C:\WINDOWS\System32\drivers\pcip.sys [72016] =>.Microsoft® O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\WINDOWS\System32\drivers\pcmcia.sys [127800] =>.Microsoft® O58 - SDL:2022/04/01 08:52:37 A . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\WINDOWS\System32\drivers\pcw.sys [57656] =>.Microsoft® O58 - SDL:2021/06/24 15:30:14 A . (.Microsoft Corporation - Power Dependency Coordinator Driver.) -- C:\WINDOWS\System32\drivers\pdc.sys [159056] =>.Microsoft® O58 - SDL:2022/03/29 14:58:04 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\WINDOWS\System32\drivers\PEAuth.sys [823808] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58680] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [68408] =>.Microsoft® O58 - SDL:2022/04/01 08:53:03 A . (.Microsoft Corporation - Pilote du moniteur de paquets.) -- C:\WINDOWS\System32\drivers\PktMon.sys [130360] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Pilote de mémoire persistante.) -- C:\WINDOWS\System32\drivers\pmem.sys [138040] =>.Microsoft® O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Pilote mémoire Plug and Play.) -- C:\WINDOWS\System32\drivers\pnpmem.sys [17408] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:36 A . (.Microsoft Corporation - Port Device Class Configuration Filter Driv.) -- C:\WINDOWS\System32\drivers\portcfg.sys [27136] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/01/13 02:14:42 A . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\WINDOWS\System32\drivers\portcls.sys [388608] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/02 17:40:32 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\processr.sys [216376] =>.Microsoft® O58 - SDL:2019/12/07 11:08:33 A . (.Microsoft Corporation - Time Travel Debugging Process Launch Monito.) -- C:\WINDOWS\System32\drivers\ProcLaunchMon.sys [43448] =>.Microsoft® O58 - SDL:2019/12/07 18:03:26 A . (.Microsoft Corporation - Analyseur de disque dur virtuel de proxy.) -- C:\WINDOWS\System32\drivers\pvhdparser.sys [61240] =>.Microsoft® O58 - SDL:2019/12/07 11:09:05 A . (.Microsoft Corporation - Pilote du support de Microsoft Quality Wind.) -- C:\WINDOWS\System32\drivers\qwavedrv.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - RAM Disk Driver.) -- C:\WINDOWS\System32\drivers\ramdisk.sys [42296] =>.Microsoft® O58 - SDL:2019/12/07 18:03:26 A . (.Microsoft Corporation - Analyseur de RAM.) -- C:\WINDOWS\System32\drivers\ramparser.sys [44040] =>.Microsoft® O58 - SDL:2020/11/02 17:41:43 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\WINDOWS\System32\drivers\rasacd.sys [20480] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/01 14:02:42 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\rasl2tp.sys [110080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:07 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\raspppoe.sys [87552] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:52:44 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\WINDOWS\System32\drivers\raspptp.sys [101376] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/01 14:02:42 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\WINDOWS\System32\drivers\rassstp.sys [86016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:52:40 A . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) -- C:\WINDOWS\System32\drivers\rdbss.sys [462696] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\WINDOWS\System32\drivers\rdpbus.sys [28672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/14 13:04:27 A . (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [169984] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:53:02 A . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\WINDOWS\System32\drivers\rdpvideominiport.sys [32624] =>.Microsoft® O58 - SDL:2019/12/07 11:09:54 A . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\WINDOWS\System32\drivers\rdyboost.sys [297784] =>.Microsoft® O58 - SDL:2022/04/01 08:52:34 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\WINDOWS\System32\drivers\refs.sys [2004792] =>.Microsoft® O58 - SDL:2022/04/01 08:52:34 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\WINDOWS\System32\drivers\refsv1.sys [990536] =>.Microsoft® O58 - SDL:2016/12/21 15:52:50 A . (.VS Revo Group - Revo Uninstaller Minifilter.) -- C:\WINDOWS\System32\drivers\revoflt.sys [40240] =>.VS Revo Group® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Bluetooth RFCOMM Driver.) -- C:\WINDOWS\System32\drivers\rfcomm.sys [213504] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/14 13:03:54 A . (.Microsoft Corporation - Microsoft RemoteFX VM Transport.) -- C:\WINDOWS\System32\drivers\RfxVmt.sys [8192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - ResourceHub Proxy Driver.) -- C:\WINDOWS\System32\drivers\rhproxy.sys [115712] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:41 A . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\WINDOWS\System32\drivers\rmcast.sys [158208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:07 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\WINDOWS\System32\drivers\RNDISMP.sys [37376] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/01 14:02:11 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\WINDOWS\System32\drivers\rndismp6.sys [41472] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:51 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\WINDOWS\System32\drivers\rootmdm.sys [13824] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:55 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) -- C:\WINDOWS\System32\drivers\rspndr.sys [89088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/12/19 16:09:10 A . (...) -- C:\WINDOWS\System32\drivers\RsProxy.sys [15976] =>.Realtek Semiconductor Corp® O58 - SDL:2019/12/07 11:08:09 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [48640] [Unsigned] =>.Realtek O58 - SDL:2018/05/30 22:06:38 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [6248896] =>.Realtek Semiconductor Corp.® O58 - SDL:2021/10/13 01:45:13 A . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\WINDOWS\System32\drivers\sbp2port.sys [118088] =>.Microsoft® O58 - SDL:2021/03/10 00:54:18 A . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce.) -- C:\WINDOWS\System32\drivers\scfilter.sys [44032] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:52:07 A . (.Microsoft Corporation - Pilote de bus de mémoire de classe stockage.) -- C:\WINDOWS\System32\drivers\scmbus.sys [158520] =>.Microsoft® O58 - SDL:2021/10/13 01:45:36 A . (.Microsoft Corporation - SCSI Port Driver.) -- C:\WINDOWS\System32\drivers\scsiport.sys [188232] =>.Microsoft® O58 - SDL:2022/04/01 08:52:07 A . (.Microsoft Corporation - Pilote du bus numérique sécurisé (SD).) -- C:\WINDOWS\System32\drivers\sdbus.sys [306544] =>.Microsoft® O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - SDF Reflector.) -- C:\WINDOWS\System32\drivers\SDFRd.sys [35128] =>.Microsoft® O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - SD Host Controller Port Driver.) -- C:\WINDOWS\System32\drivers\sdport.sys [105488] =>.Microsoft® O58 - SDL:2021/10/13 01:45:14 A . (.Microsoft Corporation - Pilote de classe de stockage SD.) -- C:\WINDOWS\System32\drivers\sdstor.sys [104264] =>.Microsoft® O58 - SDL:2019/12/07 11:08:36 A . (.Microsoft Corporation - Serial Class Extension.) -- C:\WINDOWS\System32\drivers\SerCx.sys [86328] =>.Microsoft® O58 - SDL:2019/12/07 11:08:36 A . (.Microsoft Corporation - Serial Class Extension V2.) -- C:\WINDOWS\System32\drivers\SerCx2.sys [173072] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\WINDOWS\System32\drivers\serenum.sys [27648] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Pilote de périphérique série.) -- C:\WINDOWS\System32\drivers\serial.sys [90624] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\WINDOWS\System32\drivers\sermouse.sys [29184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/01 14:02:11 A . (.Microsoft Corporation - Serial Imaging Device Driver.) -- C:\WINDOWS\System32\drivers\serscan.sys [13312] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\WINDOWS\System32\drivers\sfloppy.sys [19456] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:33 A . (.Microsoft Corporation - System Guard Runtime Monitor Agent Driver.) -- C:\WINDOWS\System32\drivers\SgrmAgent.sys [88080] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44856] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81720] =>.Microsoft® O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Sleep Study Helper.) -- C:\WINDOWS\System32\drivers\SleepStudyHelper.sys [38200] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Microsemi Corportation - Storport Miniport Driver for SmartRAID/Smar.) -- C:\WINDOWS\System32\drivers\SmartSAMD.sys [209720] =>.Microsoft® O58 - SDL:2019/12/07 11:09:09 A . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\WINDOWS\System32\drivers\smclib.sys [21504] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:52:07 A . (.Microsoft Corporation - Storage Spaces Dump Driver.) -- C:\WINDOWS\System32\drivers\spacedump.sys [215864] =>.Microsoft® O58 - SDL:2019/12/07 11:09:34 A . (.Microsoft Corporation - Storage Spaces Parser.) -- C:\WINDOWS\System32\drivers\spaceparser.sys [26624] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:52:07 A . (.Microsoft Corporation - Storage Spaces Driver.) -- C:\WINDOWS\System32\drivers\spaceport.sys [679736] =>.Microsoft® O58 - SDL:2019/12/07 16:53:40 A . (.Microsoft Corporation - Holographic Spatial Graph Filter.) -- C:\WINDOWS\System32\drivers\SpatialGraphFilter.sys [90936] =>.Microsoft® O58 - SDL:2019/12/07 11:08:37 A . (.Microsoft Corporation - SPB Class Extension.) -- C:\WINDOWS\System32\drivers\SpbCx.sys [87352] =>.Microsoft® O58 - SDL:2022/04/01 08:52:40 A . (.Microsoft Corporation - Pilote de serveur SMB 2.0.) -- C:\WINDOWS\System32\drivers\srv2.sys [784896] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:52:40 A . (.Microsoft Corporation - Server Network driver.) -- C:\WINDOWS\System32\drivers\srvnet.sys [315904] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:53 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31032] =>.Microsoft® O58 - SDL:2021/10/13 01:45:14 A . (.Microsoft Corporation - MS AHCI Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storahci.sys [186168] =>.Microsoft® O58 - SDL:2022/04/01 08:52:07 A . (.Microsoft Corporation - Microsoft NVM Express Storport Miniport Dri.) -- C:\WINDOWS\System32\drivers\stornvme.sys [162128] =>.Microsoft® O58 - SDL:2022/04/01 08:52:09 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\WINDOWS\System32\drivers\storport.sys [723280] =>.Microsoft® O58 - SDL:2019/12/07 11:08:37 A . (.Microsoft Corporation - Filtre de qualité de service de stockage.) -- C:\WINDOWS\System32\drivers\storqosflt.sys [92984] =>.Microsoft® O58 - SDL:2021/11/10 18:26:00 A . (.Microsoft Corporation - MS UFS Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storufs.sys [61264] =>.Microsoft® O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Storage VSC Driver.) -- C:\WINDOWS\System32\drivers\storvsc.sys [44048] =>.Microsoft® O58 - SDL:2022/04/01 08:52:08 A . (.Microsoft Corporation - Pilote du fournisseur de services de virtua.) -- C:\WINDOWS\System32\drivers\storvsp.sys [183144] =>.Microsoft® O58 - SDL:2019/12/07 11:09:00 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\WINDOWS\System32\drivers\stream.sys [82432] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/14 13:03:54 A . (.Microsoft Corporation - Microsoft RemoteFX Synth3D Video VSC.) -- C:\WINDOWS\System32\drivers\Synth3dVsc.sys [6656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/14 13:03:54 A . (.Microsoft Corporation - Microsoft RemoteFX Synth3D Video VSP.) -- C:\WINDOWS\System32\drivers\Synth3dVsp.sys [6656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:00 A . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\WINDOWS\System32\drivers\tape.sys [33280] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/14 13:03:58 A . (.Microsoft Corporation - Export driver for kernel mode TPM API.) -- C:\WINDOWS\System32\drivers\tbs.sys [31568] =>.Microsoft® O58 - SDL:2022/04/01 08:52:39 A . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\WINDOWS\System32\drivers\tcpip.sys [2991416] =>.Microsoft® O58 - SDL:2019/12/07 11:09:04 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\WINDOWS\System32\drivers\tcpipreg.sys [54784] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - TDI Wrapper.) -- C:\WINDOWS\System32\drivers\tdi.sys [39736] =>.Microsoft® O58 - SDL:2021/10/10 19:28:55 A . (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [117584] =>.Microsoft® O58 - SDL:2018/05/06 08:52:26 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys [228992] =>.Intel(R) Embedded Subsystems and IP Blocks Group® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Terminal Server Input Driver.) -- C:\WINDOWS\System32\drivers\terminpt.sys [41272] =>.Microsoft® O58 - SDL:2021/10/10 19:28:46 A . (.Microsoft Corporation - Kernel Transaction Manager Driver.) -- C:\WINDOWS\System32\drivers\tm.sys [142136] =>.Microsoft® O58 - SDL:2021/01/13 02:14:42 A . (.Microsoft Corporation - Pilote de périphérique TPM.) -- C:\WINDOWS\System32\drivers\tpm.sys [255288] =>.Microsoft® O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du.) -- C:\WINDOWS\System32\drivers\TsUsbFlt.sys [66560] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/08/10 22:47:44 A . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\WINDOWS\System32\drivers\TsUsbGD.sys [37888] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:52:08 A . (.Microsoft Corporation - Concentrateur USB du Bureau à distance.) -- C:\WINDOWS\System32\drivers\tsusbhub.sys [137728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:04 A . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\WINDOWS\System32\drivers\tunnel.sys [129024] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/24 15:30:12 A . (.Microsoft Corporation - Microsoft Uasp Driver.) -- C:\WINDOWS\System32\drivers\uaspstor.sys [79160] =>.Microsoft® O58 - SDL:2021/10/13 01:45:28 A . (.Microsoft Corporation - USB Connector Manager KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmCx.sys [160256] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:37 A . (.Microsoft Corporation - UCM-TCPCI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmTcpciCx.sys [188416] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - UCM-UCSI ACPI Client Driver.) -- C:\WINDOWS\System32\drivers\UcmUcsiAcpiClient.sys [36864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/01 14:02:28 A . (.Microsoft Corporation - UCM-UCSI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmUcsiCx.sys [113152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - USB Controller Extension.) -- C:\WINDOWS\System32\drivers\Ucx01000.sys [259896] =>.Microsoft® O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - "udecx.DRIVER".) -- C:\WINDOWS\System32\drivers\Udecx.sys [52736] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:51 A . (.Microsoft Corporation - UDF File System Driver.) -- C:\WINDOWS\System32\drivers\udfs.sys [344064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/11/10 18:26:49 A . (.Microsoft Corporation - Microsoft User Experience Virtualization Ag.) -- C:\WINDOWS\System32\drivers\UevAgentDriver.sys [41288] =>.Microsoft® O58 - SDL:2021/11/10 18:26:18 A . (.Microsoft Corporation - USB Function Driver Class Extension.) -- C:\WINDOWS\System32\drivers\ufx01000.sys [324432] =>.Microsoft® O58 - SDL:2020/12/09 07:35:02 A . (.Microsoft Corporation - UFX Synopsys Client Driver.) -- C:\WINDOWS\System32\drivers\ufxsynopsys.sys [168264] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Generic pass-through driver.) -- C:\WINDOWS\System32\drivers\umpass.sys [15360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:37 A . (.Microsoft Corporation - USB Role-Switch Class Extension.) -- C:\WINDOWS\System32\drivers\urscx01000.sys [76304] =>.Microsoft® O58 - SDL:2019/12/07 11:09:07 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\WINDOWS\System32\drivers\usb8023.sys [24064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/01 14:02:11 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\WINDOWS\System32\drivers\usb80236.sys [24064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/10/10 19:28:31 A . (.Microsoft Corporation - USB Audio Class Driver.) -- C:\WINDOWS\System32\drivers\USBAUDIO.sys [209920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Microsoft USB Audio Class 2.0 Driver.) -- C:\WINDOWS\System32\drivers\usbaudio2.sys [260608] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:41 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\WINDOWS\System32\drivers\USBCAMD2.sys [40448] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/01 14:02:11 A . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\WINDOWS\System32\drivers\usbccgp.sys [185664] =>.Microsoft® O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\WINDOWS\System32\drivers\usbcir.sys [107520] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\WINDOWS\System32\drivers\usbd.sys [33080] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbehci.sys [86544] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de concentrateur USB par défaut.) -- C:\WINDOWS\System32\drivers\usbhub.sys [528184] =>.Microsoft® O58 - SDL:2021/10/10 19:28:32 A . (.Microsoft Corporation - Pilote de concentrateur USB3.) -- C:\WINDOWS\System32\drivers\USBHUB3.SYS [648016] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbohci.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:37 A . (...) -- C:\WINDOWS\System32\drivers\UsbPmApi.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\WINDOWS\System32\drivers\usbport.sys [473400] =>.Microsoft® O58 - SDL:2022/04/01 08:52:07 A . (.Microsoft Corporation - USB Printer driver.) -- C:\WINDOWS\System32\drivers\usbprint.sys [40448] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/01 14:02:11 A . (.Microsoft Corporation - USB Scanner Driver.) -- C:\WINDOWS\System32\drivers\usbscan.sys [49152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/10/10 19:28:31 A . (.Microsoft Corporation - USB Serial Driver.) -- C:\WINDOWS\System32\drivers\usbser.sys [81408] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/10/13 01:45:14 A . (.Microsoft Corporation - Pilote de classe de stockage de masse USB.) -- C:\WINDOWS\System32\drivers\USBSTOR.SYS [136528] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbuhci.sys [39424] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/03/29 14:58:03 A . (.Microsoft Corporation - USB Video Class Driver.) -- C:\WINDOWS\System32\drivers\usbvideo.sys [330576] =>.Microsoft® O58 - SDL:2022/04/01 08:52:07 A . (.Microsoft Corporation - Pilote XHCI USB.) -- C:\WINDOWS\System32\drivers\USBXHCI.SYS [624976] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Virtual Drive Root Enumerator.) -- C:\WINDOWS\System32\drivers\vdrvroot.sys [67384] =>.Microsoft® O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Extension du vérificateur de pilotes.) -- C:\WINDOWS\System32\drivers\VerifierExt.sys [347448] =>.Microsoft® O58 - SDL:2022/03/29 14:58:31 A . (.Microsoft Corporation - Microsoft Azure VFP Extension.) -- C:\WINDOWS\System32\drivers\vfpext.sys [1507840] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:52:07 A . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\WINDOWS\System32\drivers\vhdmp.sys [821584] =>.Microsoft® O58 - SDL:2019/12/07 18:03:26 A . (.Microsoft Corporation - Native VHD parser.) -- C:\WINDOWS\System32\drivers\vhdparser.sys [49192] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Virtual HID Framework (VHF) Driver.) -- C:\WINDOWS\System32\drivers\vhf.sys [47616] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:52:07 A . (.Microsoft Corporation - Microsoft Hyper-V Virtualization Infrastruc.) -- C:\WINDOWS\System32\drivers\Vid.sys [641352] =>.Microsoft® O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Video Port Driver.) -- C:\WINDOWS\System32\drivers\videoprt.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/01/19 16:38:20 A . (.Wondershare - Wondershare Virtual Audio Device.) -- C:\WINDOWS\System32\drivers\VirtualAudio.sys [48424] =>.Wondershare Technology Co.,Ltd® O58 - SDL:2022/04/01 08:53:03 A . (.Microsoft Corporation - Hyper-V VMBus KMCL.) -- C:\WINDOWS\System32\drivers\vmbkmcl.sys [114504] =>.Microsoft® O58 - SDL:2022/04/01 08:53:04 A . (.Microsoft Corporation - Hyper-V VMBus Root KMCL.) -- C:\WINDOWS\System32\drivers\vmbkmclr.sys [124776] =>.Microsoft® O58 - SDL:2022/04/01 08:52:08 A . (.Microsoft Corporation - Pilote enfant de bus VMBus sous Microsoft H.) -- C:\WINDOWS\System32\drivers\vmbus.sys [160072] =>.Microsoft® O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\WINDOWS\System32\drivers\VMBusHID.sys [36664] =>.Microsoft® O58 - SDL:2022/04/01 08:52:08 A . (.Microsoft Corporation - Pilote racine de bus VMBus sous Microsoft H.) -- C:\WINDOWS\System32\drivers\vmbusr.sys [256312] =>.Microsoft® O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Virtual Machine Generation Counter.) -- C:\WINDOWS\System32\drivers\vmgencounter.sys [23864] =>.Microsoft® O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Virtual Machine Guest Infrastructure Driver.) -- C:\WINDOWS\System32\drivers\vmgid.sys [19768] =>.Microsoft® O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\WINDOWS\System32\drivers\vms3cap.sys [18960] =>.Microsoft® O58 - SDL:2022/04/01 08:53:04 A . (.Microsoft Corporation - VMSWITCH Proxy Driver.) -- C:\WINDOWS\System32\drivers\VmsProxy.sys [52080] =>.Microsoft® O58 - SDL:2022/04/01 08:53:04 A . (.Microsoft Corporation - VmSwitch NIC Proxy Driver.) -- C:\WINDOWS\System32\drivers\VmsProxyHNic.sys [40304] =>.Microsoft® O58 - SDL:2021/05/14 00:22:51 A . (.Microsoft Corporation - Pilote de filtre de stockage virtuel.) -- C:\WINDOWS\System32\drivers\vmstorfl.sys [54080] =>.Microsoft® O58 - SDL:2022/03/29 14:58:34 A . (.Microsoft Corporation - Hyper-V Secure Virtualization Component mod.) -- C:\WINDOWS\System32\drivers\vmsvcext.sys [214384] =>.Microsoft® O58 - SDL:2022/04/01 08:53:04 A . (.Microsoft Corporation - Fournisseur de services de virtualisation d.) -- C:\WINDOWS\System32\drivers\vmswitch.sys [2491248] =>.Microsoft® O58 - SDL:2021/04/14 13:03:54 A . (.Microsoft Corporation - Pilote du gestionnaire de volumes.) -- C:\WINDOWS\System32\drivers\volmgr.sys [90960] =>.Microsoft® O58 - SDL:2019/12/07 11:09:37 A . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) -- C:\WINDOWS\System32\drivers\volmgrx.sys [389432] =>.Microsoft® O58 - SDL:2020/11/01 14:02:18 A . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [429880] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Microsoft Corporation - Volume driver.) -- C:\WINDOWS\System32\drivers\volume.sys [16696] =>.Microsoft® O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Virtual PCI Bus.) -- C:\WINDOWS\System32\drivers\vpci.sys [89400] =>.Microsoft® O58 - SDL:2020/11/01 14:02:12 A . (.Microsoft Corporation - Virtual PCI VSP Driver.) -- C:\WINDOWS\System32\drivers\vpcivsp.sys [206152] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166712] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305464] =>.Microsoft® O58 - SDL:2019/12/07 11:08:13 A . (.Microsoft Corporation - Virtual Wireless Bus Driver.) -- C:\WINDOWS\System32\drivers\vwifibus.sys [29184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/10/10 19:28:33 A . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\WINDOWS\System32\drivers\vwififlt.sys [77824] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:13 A . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\WINDOWS\System32\drivers\vwifimp.sys [50688] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:53 A . (.Microsoft Corporation - Pilote de tablette Wacom à stylet série.) -- C:\WINDOWS\System32\drivers\wacompen.sys [31232] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/02 17:41:43 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\WINDOWS\System32\drivers\wanarp.sys [93184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/14 13:04:00 A . (.Microsoft Corporation - Watchdog Driver.) -- C:\WINDOWS\System32\drivers\watchdog.sys [74752] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/11/10 18:26:18 A . (.Microsoft Corporation - Windows Container Isolation FS Filter Drive.) -- C:\WINDOWS\System32\drivers\wcifs.sys [202568] =>.Microsoft® O58 - SDL:2021/03/10 00:54:06 A . (.Microsoft Corporation - Windows Container Name Virtualization FS Fi.) -- C:\WINDOWS\System32\drivers\wcnfs.sys [93184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:15 A . (.Microsoft Corporation - Microsoft antimalware boot driver.) -- C:\WINDOWS\System32\drivers\WdBoot.sys [46688] =>.Microsoft® O58 - SDL:2022/04/01 08:52:39 A . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) -- C:\WINDOWS\System32\drivers\Wdf01000.sys [828240] =>.Microsoft® O58 - SDL:2019/12/07 11:08:15 A . (.Microsoft Corporation - Microsoft antimalware file system filter dr.) -- C:\WINDOWS\System32\drivers\WdFilter.sys [350136] =>.Microsoft® O58 - SDL:2021/08/10 22:48:00 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\WINDOWS\System32\drivers\WdfLdr.sys [59192] =>.Microsoft® O58 - SDL:2021/11/10 18:26:04 A . (.Microsoft Corporation - WDI Driver Framework Driver.) -- C:\WINDOWS\System32\drivers\WdiWiFi.sys [967168] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:39 A . (.Microsoft Corporation - WDM Companion Filter.) -- C:\WINDOWS\System32\drivers\WdmCompanionFilter.sys [23560] =>.Microsoft® O58 - SDL:2019/12/07 11:08:16 A . (.Microsoft Corporation - Windows Defender Network Stream Filter.) -- C:\WINDOWS\System32\drivers\WdNisDrv.sys [54200] =>.Microsoft® O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Windows Error Reporting Kernel Driver.) -- C:\WINDOWS\System32\drivers\werkernel.sys [52024] =>.Microsoft® O58 - SDL:2022/04/01 08:52:29 A . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) -- C:\WINDOWS\System32\drivers\wfplwfs.sys [180040] =>.Microsoft® O58 - SDL:2021/10/10 19:28:44 A . (.Microsoft Corporation - Wim file system Driver.) -- C:\WINDOWS\System32\drivers\wimmount.sys [39760] =>.Microsoft® O58 - SDL:2019/12/07 11:08:37 A . (.Microsoft Corporation - Windows Trusted Runtime Interface Driver.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRT.sys [76984] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Windows Trusted Runtime Service Proxy Drive.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys [18920] =>.Microsoft® O58 - SDL:2019/12/07 11:09:51 A . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\WINDOWS\System32\drivers\winhv.sys [32784] =>.Microsoft® O58 - SDL:2019/12/07 11:09:33 A . (.Microsoft Corporation - Windows Hypervisor Root Interface Driver.) -- C:\WINDOWS\System32\drivers\winhvr.sys [96056] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [36152] =>.Microsoft® O58 - SDL:2022/04/01 08:52:09 A . (.Microsoft Corporation - Pilote NAT Windows.) -- C:\WINDOWS\System32\drivers\winnat.sys [261120] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Windows WinUSB Class Driver.) -- C:\WINDOWS\System32\drivers\winusb.sys [107008] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [73016] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\WINDOWS\System32\drivers\wmiacpi.sys [19456] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\WINDOWS\System32\drivers\wmilib.sys [19472] =>.Microsoft® O58 - SDL:2021/04/14 13:04:08 A . (.Microsoft Corporation - Filtre de superposition Windows.) -- C:\WINDOWS\System32\drivers\wof.sys [234296] =>.Microsoft® O58 - SDL:2019/12/07 16:53:42 A . (.Microsoft Corporation - Windows Portable Device Upper Class Filter.) -- C:\WINDOWS\System32\drivers\WpdUpFltr.sys [32568] =>.Microsoft® O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - WPP Trace Recorder.) -- C:\WINDOWS\System32\drivers\WppRecorder.sys [43832] =>.Microsoft® O58 - SDL:2019/12/07 11:08:41 A . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\WINDOWS\System32\drivers\ws2ifsl.sys [25088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Web Services Print Device Driver.) -- C:\WINDOWS\System32\drivers\WSDPrint.sys [23552] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/01 14:02:11 A . (.Microsoft Corporation - Web Service Based Scan Device Driver.) -- C:\WINDOWS\System32\drivers\WSDScan.sys [26112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:52:42 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFPf.sys [136192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:52:42 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFRd.sys [315392] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:52:07 A . (.Microsoft Corporation - Game Input Protocol Driver.) -- C:\WINDOWS\System32\drivers\xboxgip.sys [332288] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/03/29 14:58:03 A . (.Microsoft Corporation - XINPUT filter driver for HID.) -- C:\WINDOWS\System32\drivers\xinputhid.sys [51712] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/14 13:03:54 A . (.Microsoft Corporation - Hid Class Library.) -- C:\WINDOWS\System32\hidclass.sys [225792] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/14 13:03:54 A . (.Microsoft Corporation - Hid Parsing Library.) -- C:\WINDOWS\System32\hidparse.sys [46080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/14 13:03:54 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\hidusb.sys [44032] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:52:31 A . (.Microsoft Corporation - Multi-User Win32 Driver.) -- C:\WINDOWS\System32\win32k.sys [596992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:52:27 A . (.Microsoft Corporation - Pilote du noyau Base Win32k.) -- C:\WINDOWS\System32\win32kbase.sys [2892800] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:52:31 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\WINDOWS\System32\win32kfull.sys [3813888] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:34 A . (.Microsoft Corporation - Win32k non session driver.) -- C:\WINDOWS\System32\win32kns.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:52:51 A . (.Microsoft Corporation - Multi-User Win32 Driver.) -- C:\WINDOWS\SysWOW64\win32k.sys [329728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/04/01 08:52:51 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\WINDOWS\SysWOW64\win32kfull.sys [2753536] [Unsigned] =>.Microsoft Corporation ---\\ ASSOCIATION Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- "C:\WINDOWS\System32\WScript.exe" "%1" %* =>.Default.Value O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value ---\\ MENU DE DÉMARRAGE INTERNET (16) - 0s O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation ---\\ RECHERCHE D'INFECTION SUR NAVIGATEURS (3) - 9s O69 - SBI: prefs.js [Mr_GT - y355bifu.default] user_pref("extensions.webextensions.ExtensionStorageIDB.migrated.{dbac9680-d559-4cd4-9765-059879e8c467}", true); =>Toolbar.Graal O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com ---\\ ÉNUMÈRE LES SERVICES DÉMARRÉS PAR Svchost (54) - 2s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [196608] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [196608] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [301568] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1335808] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1054208] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [836096] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [32768] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [160256] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [112640] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [814592] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [243712] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [488960] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [515072] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports de problèmes.) -- C:\Windows\System32\wercplsupport.dll [134656] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [2430976] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [340480] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TroubleshootingSvc (TroubleshootingSvc) . (.Microsoft Corporation - MitigationClient.) -- C:\Windows\System32\MitigationClient.dll [487936] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Fournit une prise en charge de l'infrastruc.) -- C:\Windows\System32\LanguageOverlayServer.dll [302080] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [223232] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1270272] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [1016320] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: WManSvc (WManSvc) . (.Microsoft Corporation - DLL du Service de gestion de Windows.) -- C:\Windows\System32\Windows.Management.Service.dll [809984] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [70656] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [1484288] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [335360] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2246144] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1522176] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [48640] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [454656] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [111616] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [967680] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [551936] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [77824] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [619008] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [3403776] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1481216] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [259584] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [58880] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [939984] =>.Microsoft® O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [245248] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [223232] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1295360] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) -- C:\Windows\System32\usosvc.dll [569856] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [72704] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [171520] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1049088] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [288256] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [207360] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [555008] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: hns (hns) . (.Microsoft Corporation - Service de réseau hôte.) -- C:\Windows\System32\HostNetSvc.dll [3372544] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: HgClientService (HgClientService) . (.Microsoft Corporation - Service du client Guardian hôte.) -- C:\Windows\System32\hgclientservice.dll [143872] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: nvagent (nvagent) . (.Microsoft Corporation - Agent de virtualisation de réseau..) -- C:\Windows\System32\NvAgent.dll [41784] =>.Microsoft® O83 - Search Svchost Services: MsKeyboardFilter (MsKeyboardFilter) . (.Microsoft Corporation - Service SvcHost pour le filtre clavier Micr.) -- C:\Windows\System32\KeyboardFilterSvc.dll [161096] =>.Microsoft® ---\\ LISTE DES EXCEPTIONS PAREFEU WINDOWS (48) - 16s O87 - FAEL: "UDP Query User{8E5F66E7-3B0B-4719-A474-02A7179928AF}C:\program files (x86)\mozilla firefox\firefox.exe" [In-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\program files (x86)\mozilla firefox\firefox.exe =>.Mozilla Corporation® O87 - FAEL: "TCP Query User{6993C48F-4ACF-4A60-900E-866DA5963DEF}C:\program files (x86)\mozilla firefox\firefox.exe" [In-None-P6-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\program files (x86)\mozilla firefox\firefox.exe =>.Mozilla Corporation® O87 - FAEL: "UDP Query User{99633270-8085-42CA-AE88-96A0B282C68C}D:\jeux\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe" [In-None-P17-TRUE] .(.Bluehole GinnoGames, Inc. - TslGame.) -- D:\jeux\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe =>.PUBG CORPORATION® O87 - FAEL: "TCP Query User{927986DA-3DFC-45DE-BDBE-6AEA1A8A027D}D:\jeux\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe" [In-None-P6-TRUE] .(.Bluehole GinnoGames, Inc. - TslGame.) -- D:\jeux\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe =>.PUBG CORPORATION® O87 - FAEL: "{F25A5316-B2DE-4C52-9AC7-EF9C34C98684}" [In-None-P17-TRUE] .(.BattlEye Innovations - BattlEye Launcher.) -- D:\Jeux\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe =>.BattlEye Innovations e.K.® O87 - FAEL: "{C19D553D-4041-4C8C-9455-F1131C6EA8DB}" [In-None-P6-TRUE] .(.BattlEye Innovations - BattlEye Launcher.) -- D:\Jeux\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe =>.BattlEye Innovations e.K.® O87 - FAEL: "{088CBE50-5BF4-46E9-B1A6-4FF77D2BA32F}" [In-None-P6-TRUE] .(.Valve Corporation - Steam.) -- D:\Jeux\Steam\Steam.exe =>.Valve® O87 - FAEL: "{99875545-A11D-42E9-969F-AC7816DDA855}" [In-None-P17-TRUE] .(.Valve Corporation - Steam.) -- D:\Jeux\Steam\Steam.exe =>.Valve® O87 - FAEL: "{3F80A24C-C237-4AB3-8668-7A1D1A4FF49E}" [In-None-P6-TRUE] .(...) -- D:\Jeux\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe =>.Valve® O87 - FAEL: "{1864270B-2F54-42A0-ACAD-88C0C1C6A2F9}" [In-None-P17-TRUE] .(...) -- D:\Jeux\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe =>.Valve® O87 - FAEL: "{5E670742-6E1B-4706-9BB7-6BDA7F09D5BD}" [In-None-P6-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O87 - FAEL: "{E65FA72F-41EB-4012-968D-9BD5E138C6AE}" [In-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O87 - FAEL: "{CF97CD71-BAD1-4097-9CA2-048A978A6B41}" [In-None-P6-TRUE] .(.PUBG Corporation - PUBG Launcher.) -- D:\Jeux\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe =>.PUBG CORPORATION® O87 - FAEL: "{28DED86B-DB85-4F07-8B0A-EC361FF81531}" [In-None-P17-TRUE] .(.PUBG Corporation - PUBG Launcher.) -- D:\Jeux\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe =>.PUBG CORPORATION® O87 - FAEL: "{6FFE2327-E587-4244-A980-A38CC4C43BE1}" [In-None-P6-TRUE] .(.Rockstar Games - Grand Theft Auto V.) -- D:\Jeux\GTA5\GTA5.exe =>.Rockstar Games, Inc.® O87 - FAEL: "{2B5388C6-50EF-4915-AE86-7C9C66156A92}" [In-None-P17-TRUE] .(.Rockstar Games - Grand Theft Auto V.) -- D:\Jeux\GTA5\GTA5.exe =>.Rockstar Games, Inc.® O87 - FAEL: "{49C035EC-8445-438C-9465-3A73317457B1}" [In-None-P6-TRUE] .(.Valve Corporation - Steam Client WebHelper.) -- D:\Jeux\Steam\bin\cef\cef.win7x64\steamwebhelper.exe =>.Valve® O87 - FAEL: "{0766CCA9-0A0E-477F-AA7D-1F9431B026EC}" [In-None-P17-TRUE] .(.Valve Corporation - Steam Client WebHelper.) -- D:\Jeux\Steam\bin\cef\cef.win7x64\steamwebhelper.exe =>.Valve® O87 - FAEL: "{6FA6B7C8-5932-4758-A42B-2F25DC66CC3D}" [In-None-P6-TRUE] .(.EA Digital Illusions CE AB - Battlefield™ V.) -- D:\Jeux\Battlefield V\bfvTrial.exe =>.Electronic Arts, Inc.® O87 - FAEL: "{088160CE-C623-49DF-8D32-6DFE754A3864}" [In-None-P17-TRUE] .(.EA Digital Illusions CE AB - Battlefield™ V.) -- D:\Jeux\Battlefield V\bfvTrial.exe =>.Electronic Arts, Inc.® O87 - FAEL: "{A0122E8A-BA07-4156-BFFF-9520A7E96E0C}" [In-None-P6-TRUE] .(.EA Digital Illusions CE AB - Battlefield™ V.) -- D:\Jeux\Battlefield V\bfv.exe =>.Electronic Arts, Inc.® O87 - FAEL: "{6279E8B7-1F67-4BEB-9844-BE878A64680C}" [In-None-P17-TRUE] .(.EA Digital Illusions CE AB - Battlefield™ V.) -- D:\Jeux\Battlefield V\bfv.exe =>.Electronic Arts, Inc.® O87 - FAEL: "{993486C2-A059-4F51-A5BF-1C44BBC5AE79}" [In-None-P6-TRUE] .(.HP Inc. - DeviceSetup.exe.) -- C:\Program Files\HP\HP ENVY Photo 6200 series\Bin\DeviceSetup.exe =>.HP Inc® O87 - FAEL: "{1CC41B60-ABCB-4F1D-9C9B-3C806D42CB68}" [In-None-P6-TRUE] .(.HP Inc. - HPNetworkCommunicatorCom.) -- C:\Program Files\HP\HP ENVY Photo 6200 series\Bin\HPNetworkCommunicatorCom.exe =>.HP Inc® O87 - FAEL: "{61C2619E-DDBF-4368-AF94-1BD3BAFCB413}" [In-None-P6-TRUE] .(.Disc Soft Ltd - Disc Soft Bus Service Lite.) -- D:\Logiciels\DAEMON Tools Lite\DiscSoftBusServiceLite.exe =>.AVB Disc Soft, SIA® O87 - FAEL: "{250C8DB0-283D-4330-8AFB-603D8E3B7602}" [Out-None-P6-TRUE] .(.Disc Soft Ltd - Disc Soft Bus Service Lite.) -- D:\Logiciels\DAEMON Tools Lite\DiscSoftBusServiceLite.exe =>.AVB Disc Soft, SIA® O87 - FAEL: "{5ED66307-57C5-46D9-B94C-ADCD4786BB87}" [In-None-P17-TRUE] .(.Zoom Video Communications, Inc. - Zoom Meetings.) -- C:\Users\Mr_GT\AppData\Roaming\Zoom\bin\Zoom.exe =>.Zoom Video Communications, Inc.® O87 - FAEL: "{DAA6421C-0C20-4F95-8741-B5065869E425}" [In-None-P6-TRUE] .(.Zoom Video Communications, Inc. - AirHost.) -- C:\Users\Mr_GT\AppData\Roaming\Zoom\bin\airhost.exe =>.Zoom Video Communications, Inc.® O87 - FAEL: "{15718E18-AEC8-4239-979D-345A87E8C3C2}" [In-None-P17-TRUE] .(.Zoom Video Communications, Inc. - AirHost.) -- C:\Users\Mr_GT\AppData\Roaming\Zoom\bin\airhost.exe =>.Zoom Video Communications, Inc.® O87 - FAEL: "{547DD530-2CC3-45DA-854B-A4B7983FCB1E}" [In-None-P6-TRUE] .(.HP Development Company, L.P. - HP Print and Scan Doctor 5.5.1.) -- C:\Program Files (x86)\HP\Diagnostics\PSDR\SoftPaq\Binaries\HPDiagnosticCoreUI.exe =>.HP Inc.® O87 - FAEL: "{4455CA49-1B8B-4AF2-8EE1-EFA9213F89AA}" [In-None-P17-TRUE] .(.HP Development Company, L.P. - HP Print and Scan Doctor 5.5.1.) -- C:\Program Files (x86)\HP\Diagnostics\PSDR\SoftPaq\Binaries\HPDiagnosticCoreUI.exe =>.HP Inc.® O87 - FAEL: "{3725F793-D545-483B-8481-7B4D4EA5F2E6}" [In-None-P6-TRUE] .(.HP Development Company, L.P. - HP Print and Scan Doctor 5.6.1.) -- C:\HP\Diagnostics\PSDR\HPDiagnosticCoreUI.exe =>.HP Inc.® O87 - FAEL: "{787C50E6-1051-40B9-99B6-EC0B460FFC3D}" [In-None-P17-TRUE] .(.HP Development Company, L.P. - HP Print and Scan Doctor 5.6.1.) -- C:\HP\Diagnostics\PSDR\HPDiagnosticCoreUI.exe =>.HP Inc.® O87 - FAEL: "{5CECC12B-3414-4576-B1EF-5F0CCDBCBC3F}" [In-None-P6-TRUE] .(.TeamViewer Germany GmbH - TeamViewer.) -- D:\Logiciels\TeamViewer\TeamViewer.exe =>.TeamViewer Germany GmbH® O87 - FAEL: "{E3E2E625-9D9E-4FF8-9981-6C76DDA5D1BA}" [In-None-P17-TRUE] .(.TeamViewer Germany GmbH - TeamViewer.) -- D:\Logiciels\TeamViewer\TeamViewer.exe =>.TeamViewer Germany GmbH® O87 - FAEL: "{8C454CC1-65C6-42D5-B5B5-FB7D090171D9}" [In-None-P6-TRUE] .(.TeamViewer Germany GmbH - TeamViewer.) -- D:\Logiciels\TeamViewer\TeamViewer_Service.exe =>.TeamViewer Germany GmbH® O87 - FAEL: "{8AB1CEA8-CFFA-429D-A1A9-CA620BDDBE08}" [In-None-P17-TRUE] .(.TeamViewer Germany GmbH - TeamViewer.) -- D:\Logiciels\TeamViewer\TeamViewer_Service.exe =>.TeamViewer Germany GmbH® O87 - FAEL: "{FD27B1E1-A6F2-4222-89A6-2C92A83761D8}" [In-None-P6-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe =>.Skype Software Sarl® O87 - FAEL: "{4C6914DF-1E1D-4791-89DF-7219D3EAD4DC}" [In-None-P17-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe =>.Skype Software Sarl® O87 - FAEL: "TCP Query User{EEFCCCC5-E6C4-41AD-B6F2-CC62A359B52A}C:\users\mr_gt\appdata\local\discord\app-1.0.9004\discord.exe" [In-None-P6-TRUE] .(.Discord Inc. - Discord.) -- C:\users\mr_gt\appdata\local\discord\app-1.0.9004\discord.exe =>.SUP.Discord O87 - FAEL: "UDP Query User{95F840D0-4C9F-475A-937B-B13173265846}C:\users\mr_gt\appdata\local\discord\app-1.0.9004\discord.exe" [In-None-P17-TRUE] .(.Discord Inc. - Discord.) -- C:\users\mr_gt\appdata\local\discord\app-1.0.9004\discord.exe =>.SUP.Discord O87 - FAEL: "{4BD5B199-5FF0-4891-887F-D81BD95AF84A}" [In-None-P17-TRUE] .(.Discord Inc. - Discord.) -- C:\users\mr_gt\appdata\local\discord\app-1.0.9004\discord.exe =>.SUP.Discord O87 - FAEL: "{1D8CE7F8-C587-4E14-AED0-640BFF37187E}" [In-None-P6-TRUE] .(.Discord Inc. - Discord.) -- C:\users\mr_gt\appdata\local\discord\app-1.0.9004\discord.exe =>.SUP.Discord O87 - FAEL: "{7789E0A0-1A05-4521-AB31-BFC92F152085}" [In-None-P6-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.82.404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Microsoft® O87 - FAEL: "{F3F11724-96DA-4E26-A377-F61DCA5342F7}" [Out-None-P6-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.82.404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Microsoft® O87 - FAEL: "{58422C5F-F566-4D32-AA7C-40EB43EE8AA4}" [In-None-P17-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.82.404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Microsoft® O87 - FAEL: "{F602E000-1879-43AF-B6EB-2C676D8F9005}" [Out-None-P17-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.82.404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Microsoft® O87 - FAEL: "{22DEBB05-BEFB-42DD-9041-A8F6A8F84DDF}" [In-None-P17-TRUE] .(.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC® ---\\ CODES PRODUITS LOGICIELS (84) - 1s O90 - PUC: "000061090900C0400000000000F01FEC" [HKLM] . (.Microsoft DCF MUI (French) 2016.) =>.Microsoft Corporation O90 - PUC: "00006109110000000000000000F01FEC" [HKLM] . (.Microsoft Office Professional Plus 2016.) =>.Microsoft Corporation O90 - PUC: "000061091A00C0400000000000F01FEC" [HKLM] . (.Microsoft OneNote MUI (French) 2016.) =>.Microsoft Corporation O90 - PUC: "000061091E00C0400000000000F01FEC" [HKLM] . (.Microsoft Office OSM MUI (French) 2016.) =>.Microsoft Corporation O90 - PUC: "000061092E00C0400000000000F01FEC" [HKLM] . (.Microsoft Office OSM UX MUI (French) 2016.) =>.Microsoft Corporation O90 - PUC: "000061094400C0400000000000F01FEC" [HKLM] . (.Microsoft InfoPath MUI (French) 2016.) =>.Microsoft Corporation O90 - PUC: "000061095100C0400000000000F01FEC" [HKLM] . (.Microsoft Access MUI (French) 2016.) =>.Microsoft Corporation O90 - PUC: "000061096100C0400000000000F01FEC" [HKLM] . (.Microsoft Excel MUI (French) 2016.) =>.Microsoft Corporation O90 - PUC: "000061098100C0400000000000F01FEC" [HKLM] . (.Microsoft PowerPoint MUI (French) 2016.) =>.Microsoft Corporation O90 - PUC: "000061099100C0400000000000F01FEC" [HKLM] . (.Microsoft Publisher MUI (French) 2016.) =>.bl.org O90 - PUC: "00006109A100C0400000000000F01FEC" [HKLM] . (.Microsoft Outlook MUI (French) 2016.) =>.Microsoft Corporation O90 - PUC: "00006109A20000000100000000F01FEC" [HKLM] . (.Microsoft Office 64-bit Components 2016.) =>.Microsoft Corporation O90 - PUC: "00006109A200C0400100000000F01FEC" [HKLM] . (.Microsoft Office Shared 64-bit MUI (French) 2016.) =>.Microsoft Corporation O90 - PUC: "00006109AB00C0400000000000F01FEC" [HKLM] . (.Microsoft Groove MUI (French) 2016.) =>.Microsoft Corporation O90 - PUC: "00006109B100C0400000000000F01FEC" [HKLM] . (.Microsoft Word MUI (French) 2016.) =>.Microsoft Corporation O90 - PUC: "00006109B210C0400000000000F01FEC" [HKLM] . (.Microsoft Skype for Business MUI (French) 2016.) =>.Skype Technologies O90 - PUC: "00006109C200C0400000000000F01FEC" [HKLM] . (.Microsoft Office Proofing (French) 2016.) =>.Microsoft Corporation O90 - PUC: "00006109E600C0400000000000F01FEC" [HKLM] . (.Microsoft Office Shared MUI (French) 2016.) =>.Microsoft Corporation O90 - PUC: "00006109F10010400000000000F01FEC" [HKLM] . (.Microsoft Office Proofing Tools 2016 - اللغة العربية.) -- C:\Windows\Installer\{90160000-001F-0401-0000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation O90 - PUC: "00006109F10031400000000000F01FEC" [HKLM] . (.Taalprogramma's voor Microsoft Office 2016 - Nederlands.) -- C:\Windows\Installer\{90160000-001F-0413-0000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation O90 - PUC: "00006109F10070400000000000F01FEC" [HKLM] . (.Microsoft Office Korrekturhilfen 2016 – Deutsch.) -- C:\Windows\Installer\{90160000-001F-0407-0000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation O90 - PUC: "00006109F10090400000000000F01FEC" [HKLM] . (.Microsoft Office Proofing Tools 2016 - English.) -- C:\Windows\Installer\{90160000-001F-0409-0000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation O90 - PUC: "00006109F100A0C00000000000F01FEC" [HKLM] . (.Herramientas de corrección de Microsoft Office 2016: español.) -- C:\Windows\Installer\{90160000-001F-0C0A-0000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation O90 - PUC: "00006109F100C0400000000000F01FEC" [HKLM] . (.Outils de vérification linguistique 2016 de Microsoft Office - Français.) -- C:\Windows\Installer\{90160000-001F-040C-0000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation O90 - PUC: "02324FA2FCE5ACB47B65F8637762D255" [HKLM] . (.Branding64.) -- C:\WINDOWS\Installer\{2AF42320-5ECF-4BCA-B756-8F3677262D55}\ARPPRODUCTICON.exe O90 - PUC: "0BA2981E4CF77E11196459EB7595E4CA" [HKLM] . (.VEGAS Pro 15.0.) -- C:\WINDOWS\Installer\{E1892AB0-7FC4-11E7-9146-95BE57594EAC}\vegas.ico =>.Sony Corporation O90 - PUC: "0BE7365E4CF77E116BD159EB7595E4CA" [HKLM] . (.MSVCRT Redists.) =>.Advanced Micro Devices Inc O90 - PUC: "12B8D03ED28D112328CCF0A0D541598E" [HKLM] . (.Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40660.) =>.Microsoft Corporation O90 - PUC: "1453E44A7FAD8F94189B77B93A881BEC" [HKLM] . (.Étude pour l'amélioration du produit HP ENVY Photo 6200 series.) -- C:\WINDOWS\Installer\{A44E3541-DAF7-49F8-81B9-779BA388B1CE}\ARP_Icon =>.Hewlett-Packard O90 - PUC: "153AA053AF120723B8A73845437E66DA" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022.) =>.bl.org O90 - PUC: "1616DA6174E21FB4AA779064FE9EE380" [HKLM] . (.Update for Windows 10 for x64-based Systems (KB4023057).) =>.Microsoft Corporation O90 - PUC: "1926E8D15D0BCE53481466615F760A7F" [HKLM] . (.Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219.) =>.bl.org O90 - PUC: "1D5E3C0FEDA1E123187686FED06E995A" [HKLM] . (.Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219.) =>.bl.org O90 - PUC: "2129373C12C3831469703CF1E98A5A41" [HKLM] . (.HP EmailSMTP Plugin.) -- C:\WINDOWS\Installer\{C3739212-3C21-4138-9607-C31F9EA8A514}\HPScan.ico =>.Hewlett-Packard O90 - PUC: "25DCF1B7B6F821F41A3463E13AF9E5C7" [HKLM] . (.Microsoft Update Health Tools.) =>.Microsoft Corporation O90 - PUC: "3367A02690A78A24580870A644384C0B" [HKLM] . (.Microsoft Visual C++ 2019 X64 Additional Runtime - 14.28.29913.) =>.Microsoft Corporation O90 - PUC: "38E9610BB75766FE2E0F9391447D58CB" [HKLM] . (.Microsoft HEVC Media Extension Installation for Microsoft.HEVCVideoExtension_1.0.2512.0_x64__8wekyb3d8bbwe (x64).) =>.Microsoft Corporation O90 - PUC: "3BDB0510DFFA1A74DA8BED6056E83B2B" [HKLM] . (.Contrôle d’intégrité du PC Windows.) -- C:\WINDOWS\Installer\{0150BDB3-AFFD-47A1-ADB8-DE06658EB3B2}\ArpIcon.ico =>.Microsoft Corporation O90 - PUC: "3e43b73803c7c394f8a6b2f0402e19c2" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org O90 - PUC: "43608B8A7526AE11C8E800056559C1DA" [HKLM] . (.Evernote v. 6.24.2.) -- C:\WINDOWS\Installer\{A8B80634-6257-11EA-8C8E-005056951CAD}\Evernote.ico =>.EverNote Corporation O90 - PUC: "44DB0475D85BA123FA0CD6D35465DDC6" [HKLM] . (.Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40660.) =>.Microsoft Corporation O90 - PUC: "4EA42A62D9304AC4784BF2238120150F" [HKLM] . (.Java 8 Update 251.) -- D:\Logiciels\Nouveau dossier\\bin\javaws.exe =>.Sun Microsystems O90 - PUC: "571A30F2EA90E924E861689193E05A80" [HKLM] . (.Logiciel de base du périphérique HP ENVY Photo 6200 series.) -- C:\WINDOWS\Installer\{2F03A175-09AE-429E-8E16-8619390EA508}\ARP_Icon =>.Hewlett-Packard O90 - PUC: "57451E932F32D54398775BCD749AE462" [HKLM] . (.Microsoft Visual C++ 2017 x86 Minimum Runtime - 14.15.26706.) =>.Microsoft Corporation O90 - PUC: "67D6ECF5CD5FBA732B8B22BAC8DE1B4D" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161.) =>.bl.org O90 - PUC: "68AB67CA3301FFFF7706C0F070E41400" [HKLM] . (.Adobe Acrobat DC.) -- C:\Windows\Installer\{AC76BA86-1033-FFFF-7760-0C0F074E4100}\_SC_Acrobat.ico =>.Adobe Inc. O90 - PUC: "68AB67CA408033019195008142548867" [HKLM] . (.Adobe Refresh Manager.) -- C:\WINDOWS\Installer\{AC76BA86-0804-1033-1959-001824458876}\ARPPRODUCTICON.exe =>.Western Digital Technologies O90 - PUC: "68AB67CA7DA76301B744CAF070E41400" [HKLM] . (.Adobe Acrobat Reader DC - Français.) -- C:\WINDOWS\Installer\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}\SC_Reader.ico =>.Adobe Inc. O90 - PUC: "6E815EB96CCE9A53884E7857C57002F0" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161.) =>.bl.org O90 - PUC: "6F9E66FF7E38E3A3FA41D89E8A906A4A" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.) =>.bl.org O90 - PUC: "731DDCEEAD31DE64DA0ADB7F8FEB568B" [HKLM] . (.Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.28.29913.) =>.Microsoft Corporation O90 - PUC: "7C6E8F2350FBD5F44BD5D4405CA82F9F" [HKLM] . (.AMD WVR64.) -- C:\WINDOWS\Installer\{32F8E6C7-BF05-4F5D-B45D-4D04C58AF2F9}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "7C9F8B73BF303523781852719CD9C700" [HKLM] . (.Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "84b9c17023c712640acaf308593282f8" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable (x64).) =>.bl.org O90 - PUC: "84F90D68BADCC4B488606F1CF67139A5" [HKLM] . (.PokerStrategy.com Equilab.) -- C:\WINDOWS\Installer\{86D09F48-CDAB-4B4C-8806-F6C16F17935A}\ARPPRODUCTICON.exe O90 - PUC: "8520DAD7C5154DD39846DB1714990E7F" [HKLM] . (.Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40660.) =>.Microsoft Corporation O90 - PUC: "93B0BF4E199C7EE459DDA1A187753DD3" [HKLM] . (.Asmedia USB Host Controller Driver.) -- C:\Windows\Installer\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}\ARPPRODUCTICON.exe =>.ASMedia Technology Inc O90 - PUC: "9499DA24B69000D4DA9A5E8B32722E52" [HKLM] . (.HP ENVY Photo 6200 series Aide.) -- C:\WINDOWS\Installer\{42AD9949-096B-4D00-ADA9-E5B82327E225}\ARP_Icon =>.Hewlett-Packard O90 - PUC: "A1776E475B74E3349AF6512EF9079F02" [HKLM] . (.HP Webcam HD 2300 Software.) -- C:\Windows\Installer\{74E6771A-47B5-433E-A96F-15E29F70F920}\ARPPRODUCTICON.exe =>.Hewlett-Packard O90 - PUC: "A1DACCE67DB2C984D834866BA9A28A97" [HKLM] . (.HP OneDrive Plugin.) -- C:\WINDOWS\Installer\{6ECCAD1A-2BD7-489C-8D43-68B69A2AA879}\HPScan.ico =>.Hewlett-Packard O90 - PUC: "A694757247E3A0230B706321A0F921D6" [HKLM] . (.Microsoft Visual C++ 2017 x86 Additional Runtime - 14.15.26706.) =>.Microsoft Corporation O90 - PUC: "b25099274a207264182f8181add555d0" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org O90 - PUC: "B39CAEE304262AC41B3D47787C09004B" [HKLM] . (.AMD DVR64.) -- C:\WINDOWS\Installer\{3EEAC93B-6240-4CA2-B1D3-7487C79000B4}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "BE5A19C826C2D6A48820CC97DFE23D09" [HKLM] . (.Intel(R) Chipset Device Software.) =>.Intel Corporation O90 - PUC: "C025571B2A687A53689168CD7369889B" [HKLM] . (.Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "C3AEB2FCAE628F23AAB933F1E743AB79" [HKLM] . (.Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "CC1D39CFB20195B429AD030EED32F26F" [HKLM] . (.HP FTP Plugin.) -- C:\WINDOWS\Installer\{FC93D1CC-102B-4B59-92DA-30E0DE232FF6}\HPScan.ico =>.Hewlett-Packard O90 - PUC: "CE6380BC270BD863282B3D74B09F7570" [HKLM] . (.Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40660.) =>.Microsoft Corporation O90 - PUC: "D20352A90C039D93DBF6126ECE614057" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17.) =>.bl.org O90 - PUC: "DC8A59DBF9D1DA5389A1E3975220E6BB" [HKLM] . (.Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "DD9A227CB17452F4E9E7D71D211DCB53" [HKLM] . (.HP Dropbox Plugin.) -- C:\WINDOWS\Installer\{C722A9DD-471B-4F25-9E7E-7DD112D1BC35}\HPScan.ico =>.WINSE O90 - PUC: "E5A3BD428CB05E11A9720FD42AA3C585" [HKLM] . (.MSVCRT Redists.) =>.Advanced Micro Devices Inc O90 - PUC: "E9F68E448437D284BB32397471AB3775" [HKLM] . (.AMD Settings.) -- C:\WINDOWS\Installer\{44E86F9E-7348-482D-BB23-934717BA7357}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "EDBC8B2C23253E114B490FD42AA3C585" [HKLM] . (.MSVCRT Redists.) =>.Advanced Micro Devices Inc O90 - PUC: "EDCD85702A05D6D40B52BF2BFB437234" [HKLM] . (.HP SharePoint Plugin.) -- C:\WINDOWS\Installer\{0758DCDE-50A2-4D6D-B025-FBB2BF342743}\HPScan.ico =>.Hewlett-Packard O90 - PUC: "EFEE0228DC83E77358593193D847A0EC" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17.) =>.bl.org O90 - PUC: "F60730A4A66673047777F5728467D401" [HKLM] . (.Java Auto Updater.) =>.Sun Microsystems O90 - PUC: "F8CA19DB23253E114B020FD42AA3C585" [HKLM] . (.Vegas Pro 12.0 (64-bit).) -- C:\WINDOWS\Installer\{BD91AC8F-5232-11E3-B420-F04DA23A5C58}\vegas.ico =>.Sony Corporation O90 - PUC: "F9D50560DA3A0CD418918863AB1D39E8" [HKLM] . (.HP Google Drive Plugin.) -- C:\WINDOWS\Installer\{06505D9F-A3AD-4DC0-8119-8836BAD1938E}\HPScan.ico =>.Google Inc. O90 - PUC: "FC5DAE63FE44FCF4B81E9DC684537D4A" [HKLM] . (.UE4 Prerequisites (x64).) -- C:\WINDOWS\Installer\{36EAD5CF-44EF-4FCF-8BE1-D96C4835D7A4}\Setup.ico =>.Legitimate O90 - PUC: "83C33F0CC54320C41B16118339052C5A" [HKCU] . (.GoTo Opener.) -- %APPDATA%\Microsoft\Installer\{C0F33C38-345C-4C02-B161-11389350C2A5}\icon.ico =>.LogMeIn Entreprise O90 - PUC: "A2150A1FCDD116C488E7029A2FA60AA3" [HKCU] . (.Holdem Manager 3.) -- %APPDATA%\Microsoft\Installer\{F1A0512A-1DDC-4C61-887E-20A9F26AA03A}\app_icon.ico =>.Western Digital Technologies O90 - PUC: "83C33F0CC54320C41B16118339052C5A" [HKU] . (.GoTo Opener.) -- %APPDATA%\Microsoft\Installer\{C0F33C38-345C-4C02-B161-11389350C2A5}\icon.ico =>.LogMeIn Entreprise O90 - PUC: "A2150A1FCDD116C488E7029A2FA60AA3" [HKU] . (.Holdem Manager 3.) -- %APPDATA%\Microsoft\Installer\{F1A0512A-1DDC-4C61-887E-20A9F26AA03A}\app_icon.ico =>.Western Digital Technologies ---\\ PACKAGES WINDOWS INSTALLER (60) - 24s [MD5.54EA18CAD778DB228FCD37F89762D341] [WIS][2020/04/19 15:22:51] (.InstallShield Software Corporation.) -- C:\WINDOWS\Installer\108b3078.msi [23079936] =>.InstallShield Software Corporation [MD5.61211B4CE22991CAE22A3CFB48F89ABB] [WIS][2013/11/21 00:45:13] (.Sony Creative Software Inc. - MSVCRT Redists.) -- C:\WINDOWS\Installer\117ee7f.msi [3059712] =>.Sony Creative Software Inc. [MD5.129119BC4019F1AE33A0011B1204ED4E] [WIS][2017/12/19 16:08:30] (.Hewlett-Packard - HP Webcam HD 2300 Software.) -- C:\WINDOWS\Installer\13f20985.msi [18539184] =>.Hewlett-Packard [MD5.C1E2138037F154751E37711E5DC252AD] [WIS][2020/05/21 12:54:15] (.Oracle Corporation - Java SE Runtime Environment 8 Update 251.) -- C:\WINDOWS\Installer\19873a93.msi [65818624] =>.Oracle Corporation [MD5.2973BAD4D8C3F304022410562F9C3FA0] [WIS][2020/05/21 12:54:09] (.Oracle Corporation - Java Auto Updater.) -- C:\WINDOWS\Installer\19873a99.msi [782336] =>.Oracle Corporation [MD5.7C3CB3CBA11691D8CF040D9390A7586D] [WIS][2016/02/24 16:45:42] (.Adobe Systems Incorporated - Installers.) -- C:\WINDOWS\Installer\1db14.msi [12911616] =>.Adobe Systems Incorporated [MD5.8F166FAA86839AA288055DD9B02D97FA] [WIS][2017/08/13 03:34:54] (.MAGIX Computer Products Intl. Co. - MSVCRT Redists.) -- C:\WINDOWS\Installer\206b917d.msi [6299648] =>.MAGIX Computer Products Intl. Co. [MD5.42823E084777A2BAABB74C25F709B82E] [WIS][2020/06/11 20:02:35] (.Evernote Corp. - Evernote v. 6.24.2.) -- C:\WINDOWS\Installer\20a9f83.msi [130404352] =>.Evernote Corp. [MD5.D4906210EAD1BB96C75F2AC450487F1E] [WIS][2022/04/09 16:49:23] (.VEGAS - VEGAS Pro 15.0.) -- C:\WINDOWS\Installer\257317c0.msi [3018752] =>.VEGAS [MD5.1504667BA3C10D841C0B76B6412FAFB5] [WIS][2015/03/17 10:41:29] (.Adobe Systems Incorporated.) -- C:\WINDOWS\Installer\2a221cff.msi [2805760] =>.Adobe Systems Incorporated [MD5.5376B2262B6E9773801520B6735C6DE9] [WIS][2015/12/15 15:18:36] (.Apple Inc. - QuickTime Installer.) -- C:\WINDOWS\Installer\35e452d.msi [28397568] =>.Apple Inc. [MD5.9EE546BA5D3C349FF94B1A763EA13AD7] [WIS][2016/01/12 18:51:46] (.Epic Games, Inc. - UE4 Prerequisites (x64).) -- C:\WINDOWS\Installer\42e9f2d.msi [12226560] =>.Epic Games, Inc. [MD5.F528DE1250B7154BDF9B828882C447D4] [WIS][2018/03/03 21:06:47] (.Max Value Software - Holdem Manager 3.) -- C:\WINDOWS\Installer\475be.msi [127827968] =>.Max Value Software [MD5.80B1355EB92E1F95647F85D42B63BE0F] [WIS][2015/06/16 15:44:34] (.Intel Corporation - Intel(R) Chipset Device Software.) -- C:\WINDOWS\Installer\4fca7.msi [798720] =>.Intel Corporation [MD5.E440AD30E269A40DEB541DE963DDCC32] [WIS][2017/12/14 17:30:50] (.Asmedia Technology - Asmedia USB Host Controller Driver.) -- C:\WINDOWS\Installer\4fcaf.msi [4052480] =>.Asmedia Technology [MD5.8B030138F4FB0D820770CF78F5D87457] [WIS][2015/05/07 09:17:50] (.Intel - Intel(R) Network Connections.) -- C:\WINDOWS\Installer\4fcb5.msi [10526720] =>.Intel [MD5.9952BF0F051387A950EFEBD73829025C] [WIS][2017/09/23 00:01:26] (.Advanced Micro Devices, Inc. - Catalyst Control Center next.) -- C:\WINDOWS\Installer\5ff0c.msi [600576] =>.Advanced Micro Devices, Inc. [MD5.8618AFD9A0462B91D75C3B749030F10A] [WIS][2019/08/11 11:40:27] (.Sony - Vegas Pro 12.0 (64-bit).) -- C:\WINDOWS\Installer\6dcb63d.msi [1122304] =>.Sony [MD5.87ABEE281A53FCAC5A4C9F06EF8C63E9] [WIS][2020/03/24 19:56:03] (.LogMeIn, Inc. - GoTo Opener 1.0.0.533.) -- C:\WINDOWS\Installer\70446a3.msi [114688] =>.LogMeIn, Inc. [MD5.41D8BCCE878E28766836F7F4AE458396] [WIS][2020/08/21 19:33:04] (.Advanced Micro Devices, Inc. - AMD Settings.) -- C:\WINDOWS\Installer\81380461.msi [141788712] =>.Advanced Micro Devices, Inc. [MD5.A434C0F53D349D9F90B2F162ECC27741] [WIS][2015/06/05 23:53:18] (.Sony Creative Software Inc. - MSVCRT Redists.) -- C:\WINDOWS\Installer\839975e.msi [5423104] =>.Sony Creative Software Inc. [MD5.65112C5010E5645CD5137F7A46BB7280] [WIS][2019/08/16 17:57:20] (.Advanced Micro Devices, Inc. - AMD Settings.) -- C:\WINDOWS\Installer\a13402.msi [96555288] =>.Advanced Micro Devices, Inc. [MD5.8AF6CBDE4293B7C201F25F00186F4F7A] [WIS][2018/02/17 15:04:00] (.PokerStrategy.com - PokerStrategy.com Equilab.) -- C:\WINDOWS\Installer\a77e8ff0.msi [9792476] =>.PokerStrategy.com [MD5.5FBD7FDD6C661A99A9D977955920469B] [WIS][2019/03/19 11:35:46] (.HP Inc. - HP ENVY Photo 6200 series Basic Device Soft.) -- C:\WINDOWS\Installer\b5da48.msi [5439488] =>.HP Inc. [MD5.816622FF466CCAB6DEEABA791D9E1DB5] [WIS][2019/03/19 11:35:54] (.HP - HP Scan Dropbox destination plugin.) -- C:\WINDOWS\Installer\b5da4e.msi [1503232] =>.HP [MD5.8C6FDCC23545F07A6D349DDC32F57094] [WIS][2019/03/19 11:35:54] (.HP - HP Scan EmailSMTP destination plugin.) -- C:\WINDOWS\Installer\b5da54.msi [2347008] =>.HP [MD5.6788D02B91CA1E4BFE7B6FCACE4C71BE] [WIS][2019/03/19 11:35:54] (.HP - HP Scan FTP destination plugin.) -- C:\WINDOWS\Installer\b5da5a.msi [1810432] =>.HP [MD5.F50B6AE3FE2A1D540E93217FCB30C543] [WIS][2019/03/19 11:35:55] (.HP - HP Scan Google Drive destination plugin.) -- C:\WINDOWS\Installer\b5da60.msi [1507328] =>.HP [MD5.D2CE8EE85D1E6E19E32721C4E782E667] [WIS][2019/03/19 11:35:55] (.HP - HP Scan OneDrive destination plugin.) -- C:\WINDOWS\Installer\b5da66.msi [1503232] =>.HP [MD5.6D291323735B7897F60B2F20FBCEFF59] [WIS][2019/03/19 11:35:56] (.HP - HP Scan SharePoint destination plugin.) -- C:\WINDOWS\Installer\b5da6c.msi [1880064] =>.HP [MD5.3A6D89F95412A1D682EB77E45F7E6310] [WIS][2019/03/19 11:35:57] (.HP - HP ENVY Photo 6200 series Get product speci.) -- C:\WINDOWS\Installer\b5da73.msi [159744] =>.HP [MD5.0C5B4C9830AADC71DD8DB351AEC54856] [WIS][2019/03/19 11:35:52] (.HP Inc. - Product Improvement Study for HP ENVY Photo.) -- C:\WINDOWS\Installer\b5da7a.msi [294912] =>.HP Inc. [MD5.7AF2C7A43DEEA0C4B280F655D86C821B] [WIS][2022/03/10 02:02:20] (.Advanced Micro Devices, Inc. - AMD Settings.) -- C:\WINDOWS\Installer\e6a03.msi [115557475] =>.Advanced Micro Devices, Inc. [MD5.6A0668C5D37FF784CDF73A9B1D92197E] [WIS][2022/01/24 18:55:04] (.Advanced Micro Devices, Inc. - Branding64.) -- C:\WINDOWS\Installer\e6a09.msi [1323008] =>.Advanced Micro Devices, Inc. [MD5.2DE92988D83A82E4DA3920F216D970A1] [WIS][2022/03/10 02:01:32] (.Advanced Micro Devices, Inc. - AMD DVR64.) -- C:\WINDOWS\Installer\e6a0f.msi [45105152] =>.Advanced Micro Devices, Inc. [MD5.F6573C17426D92BA0D103A255C1F573C] [WIS][2022/03/10 02:02:34] (.Advanced Micro Devices, Inc. - AMD WVR64.) -- C:\WINDOWS\Installer\e6a15.msi [19693568] =>.Advanced Micro Devices, Inc. [MD5.5C256B8910ABFA6FB390B6B6986FBDC8] [WIS][2022/03/28 16:46:53] (.Adobe Systems Incorporated - Adobe ARM Installer.) -- C:\WINDOWS\Installer\e9873.msi [1059840] =>.Adobe Systems Incorporated [MD5.65112C5010E5645CD5137F7A46BB7280] [WIS][2019/08/16 17:57:20] (.Advanced Micro Devices, Inc. - AMD Settings.) -- C:\WINDOWS\Installer\f1b4.msi [96555288] =>.Advanced Micro Devices, Inc. [MD5.F9EE3201972364B9A3B1E1AE6A783CEC] [WIS][2021/04/22 16:15:51] (.Adobe Inc..) -- C:\WINDOWS\Installer\1018b4df.msp [23986176] =>.Adobe Inc. [MD5.11BC9E9ABCF1D5812E42E5CDAC8958E7] [WIS][2016/06/02 21:08:13] (. - Customization Patch.) -- C:\WINDOWS\Installer\1dbaa.msp [2031616] [MD5.BD4173F416AC180D7AD46CB583BAB949] [WIS][2020/05/21 18:16:51] (.Adobe Inc..) -- C:\WINDOWS\Installer\20e15628.msp [1392640] =>.Adobe Inc. [MD5.ADF98A69CAA202C2435AC97C124413AC] [WIS][2020/02/05 02:29:55] (.Adobe Inc..) -- C:\WINDOWS\Installer\2a221d00.msp [244162560] =>.Adobe Inc. [MD5.B88274DA8D68D49732CC28A328885C98] [WIS][2020/11/23 12:11:53] (.Adobe Inc..) -- C:\WINDOWS\Installer\30c7bd4.msp [6557696] =>.Adobe Inc. [MD5.A74E83195378ECE24C6AF9A16274CAD8] [WIS][2021/10/05 13:08:13] (.Adobe Inc..) -- C:\WINDOWS\Installer\30cf8c1.msp [7356416] =>.Adobe Inc. [MD5.BC546F5B6982C6159BF159426F96C2F1] [WIS][2021/05/10 09:24:58] (.Adobe Inc..) -- C:\WINDOWS\Installer\3834b.msp [3588096] =>.Adobe Inc. [MD5.E10BBC17C600D131407642E6C81A81B6] [WIS][2021/06/27 10:37:13] (.Adobe Inc..) -- C:\WINDOWS\Installer\3bdf74f.msp [261931008] =>.Adobe Inc. [MD5.6C872B8971E67A78A683FD192919AB70] [WIS][2020/09/23 07:58:22] (.Adobe Inc..) -- C:\WINDOWS\Installer\453eae22.msp [33984512] =>.Adobe Inc. [MD5.E7565F34F95E68CA64D1FB70D5095291] [WIS][2021/07/28 12:44:05] (.Adobe Inc..) -- C:\WINDOWS\Installer\4a6a76a8.msp [3035136] =>.Adobe Inc. [MD5.7F1419CD81DEB4E238B7F0426B0782B7] [WIS][2020/05/11 08:43:48] (.Adobe Inc..) -- C:\WINDOWS\Installer\511eb285.msp [50810880] =>.Adobe Inc. [MD5.D537306701DC986AED8B60693701E29B] [WIS][2021/03/06 08:39:59] (.Adobe Inc..) -- C:\WINDOWS\Installer\51e20af6.msp [260001792] =>.Adobe Inc. [MD5.AC729EF5FD5047779136DD8670413E03] [WIS][2020/07/31 05:39:02] (.Adobe Inc..) -- C:\WINDOWS\Installer\5b553924.msp [70844416] =>.Adobe Inc. [MD5.11F7E4FF1AEFD307E111CA25022CD840] [WIS][2020/12/09 13:35:08] (.Adobe Inc..) -- C:\WINDOWS\Installer\877fad8.msp [3039232] =>.Adobe Inc. [MD5.BA664EAE92AA1371BA66F43C703AF5D1] [WIS][2021/04/16 16:01:55] (.Adobe Inc..) -- C:\WINDOWS\Installer\911051c.msp [24084480] =>.Adobe Inc. [MD5.923228256AD8BBCA145AE48027AA92BF] [WIS][2020/06/02 14:40:08] (.Adobe Inc..) -- C:\WINDOWS\Installer\973b39f.msp [3026944] =>.Adobe Inc. [MD5.16CD2BA3438D2627805A64D0F4DC063E] [WIS][2020/08/19 13:46:52] (.Adobe Inc..) -- C:\WINDOWS\Installer\a270cf4.msp [2781184] =>.Adobe Inc. [MD5.FA424307B479C9072535B48BF343301D] [WIS][2021/09/25 09:21:41] (.Adobe Inc..) -- C:\WINDOWS\Installer\be95f849.msp [279277568] =>.Adobe Inc. [MD5.2AD3AE06875E8C704DA9F109422277CF] [WIS][2020/07/06 14:20:53] (.Adobe Inc..) -- C:\WINDOWS\Installer\d901144.msp [5853184] =>.Adobe Inc. [MD5.59776CD5E3E33907213B1E8249F64A02] [WIS][2020/11/02 08:52:52] (.Adobe Inc..) -- C:\WINDOWS\Installer\da8f1da.msp [20647936] =>.Adobe Inc. [MD5.50718C2034AB2B86D733C85CF5FBF62F] [WIS][2022/03/03 00:19:42] (.Adobe Inc..) -- C:\WINDOWS\Installer\e9a0e.msp [304836608] =>.Adobe Inc. [MD5.DB596E2ADC480687F78F34B7D452D2CB] [WIS][2020/03/16 08:28:35] (.Adobe Inc..) -- C:\WINDOWS\Installer\f35bd80.msp [8130560] =>.Adobe Inc. ---\\ FEATURE CONTROL. (878) - 1s [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:EQNEDT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:Setup.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:ODeploy.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:Oarpmany.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:CLVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:NAMECONTROLSERVER.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:msotd.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:msoev.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOSYNC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOUC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OLicenseHeartbeat.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:SELFCERT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:SETLANG.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:GRAPH.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSQRY32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:lync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OcPubMgr.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:UcMapi.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:lync99.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:lynchtmlconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:ONENOTE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:IEContentService.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:ONENOTEM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:SCANPST.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:CNFNOT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:excelcnv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:Wordconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:POWERPNT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:PPTICO.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:misc.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOSREC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSPUB.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:PDFREFLOW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:WINWORD.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:WORDICON.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:ACCICONS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSACCESS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:SPREADSHEETCOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:filecompare.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:Video Download Capture 6.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:ProductAgentUI.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:mbamtray.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:mbam.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:AcroRd32.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:EQNEDT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:Setup.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:ODeploy.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:Oarpmany.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:CLVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:NAMECONTROLSERVER.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:msotd.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:msoev.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOSYNC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOUC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OLicenseHeartbeat.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:SELFCERT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:SETLANG.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:GRAPH.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSQRY32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:lync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OcPubMgr.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:UcMapi.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:lync99.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:lynchtmlconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:ONENOTE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:IEContentService.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:ONENOTEM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:SCANPST.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:CNFNOT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:excelcnv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:Wordconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:POWERPNT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:PPTICO.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:misc.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOSREC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSPUB.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:PDFREFLOW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:WINWORD.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:WORDICON.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:ACCICONS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSACCESS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:SPREADSHEETCOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:filecompare.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:Common.ShowHelp.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:EQNEDT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:Setup.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:ODeploy.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:Oarpmany.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:CLVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:NAMECONTROLSERVER.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:msotd.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:msoev.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOSYNC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOUC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OLicenseHeartbeat.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:SELFCERT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:SETLANG.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:GRAPH.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSQRY32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:lync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OcPubMgr.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:UcMapi.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:lync99.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:lynchtmlconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:ONENOTE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:IEContentService.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:ONENOTEM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:SCANPST.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:CNFNOT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:excelcnv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:Wordconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:POWERPNT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PPTICO.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:misc.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOSREC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSPUB.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PDFREFLOW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:WINWORD.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:WORDICON.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:ACCICONS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSACCESS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:EQNEDT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:Setup.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:ODeploy.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:Oarpmany.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:CLVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:NAMECONTROLSERVER.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:msotd.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:msoev.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOSYNC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOUC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OLicenseHeartbeat.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:SELFCERT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:SETLANG.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:GRAPH.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSQRY32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:lync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OcPubMgr.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:UcMapi.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:lync99.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:lynchtmlconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:ONENOTE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:IEContentService.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:ONENOTEM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:SCANPST.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:CNFNOT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:excelcnv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:Wordconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:POWERPNT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:PPTICO.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:misc.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOSREC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSPUB.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:PDFREFLOW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:WINWORD.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:WORDICON.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:ACCICONS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSACCESS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:EQNEDT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:Setup.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:ODeploy.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:Oarpmany.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:CLVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:NAMECONTROLSERVER.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:msotd.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:msoev.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOSYNC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOUC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OLicenseHeartbeat.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:SELFCERT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:SETLANG.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:GRAPH.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSQRY32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:lync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OcPubMgr.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:UcMapi.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:lync99.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:lynchtmlconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:ONENOTE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:IEContentService.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:ONENOTEM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:SCANPST.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:CNFNOT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:excelcnv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:Wordconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:POWERPNT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:PPTICO.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:misc.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOSREC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSPUB.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:PDFREFLOW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:WINWORD.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:WORDICON.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:ACCICONS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSACCESS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:SPREADSHEETCOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:filecompare.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:EQNEDT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:Setup.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:ODeploy.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:Oarpmany.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:CLVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:NAMECONTROLSERVER.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:msotd.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:msoev.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOSYNC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOUC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OLicenseHeartbeat.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:SELFCERT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:SETLANG.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:GRAPH.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSQRY32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:lync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OcPubMgr.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:UcMapi.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:lync99.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:lynchtmlconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:ONENOTE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:IEContentService.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:ONENOTEM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:SCANPST.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:CNFNOT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:excelcnv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:Wordconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:POWERPNT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:PPTICO.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:misc.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOSREC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSPUB.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:PDFREFLOW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:WINWORD.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:WORDICON.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:ACCICONS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSACCESS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:SPREADSHEETCOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:filecompare.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:EQNEDT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:Setup.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:ODeploy.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:Oarpmany.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:CLVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:NAMECONTROLSERVER.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:msotd.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:msoev.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOSYNC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOUC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OLicenseHeartbeat.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:SELFCERT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:SETLANG.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:GRAPH.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSQRY32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:lync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OcPubMgr.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:UcMapi.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:lync99.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:lynchtmlconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:ONENOTE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:IEContentService.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:ONENOTEM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:SCANPST.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:CNFNOT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:excelcnv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:Wordconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:POWERPNT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:PPTICO.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:misc.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOSREC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSPUB.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:PDFREFLOW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:WINWORD.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:WORDICON.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:ACCICONS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSACCESS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:SPREADSHEETCOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:filecompare.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:EQNEDT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:Setup.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:ODeploy.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:Oarpmany.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:CLVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:NAMECONTROLSERVER.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:msotd.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:msoev.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOSYNC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOUC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OLicenseHeartbeat.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:SELFCERT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:SETLANG.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:GRAPH.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSQRY32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:lync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OcPubMgr.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:UcMapi.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:lync99.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:lynchtmlconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:ONENOTE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:IEContentService.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:ONENOTEM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:SCANPST.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:CNFNOT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:excelcnv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:Wordconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:POWERPNT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:PPTICO.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:misc.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOSREC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSPUB.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:PDFREFLOW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:WINWORD.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:WORDICON.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:ACCICONS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSACCESS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:SPREADSHEETCOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:filecompare.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:EQNEDT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:Setup.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:ODeploy.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:Oarpmany.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:CLVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:NAMECONTROLSERVER.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msotd.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msoev.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOSYNC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOUC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OLicenseHeartbeat.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:SELFCERT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:SETLANG.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:GRAPH.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSQRY32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:lync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OcPubMgr.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:UcMapi.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:lync99.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:lynchtmlconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:ONENOTE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:IEContentService.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:ONENOTEM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:SCANPST.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:CNFNOT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:excelcnv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:Wordconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:POWERPNT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:PPTICO.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:misc.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOSREC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSPUB.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:PDFREFLOW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:WINWORD.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:WORDICON.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:ACCICONS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSACCESS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:SPREADSHEETCOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:EQNEDT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:Setup.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:ODeploy.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:Oarpmany.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:CLVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:NAMECONTROLSERVER.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:msotd.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:msoev.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOSYNC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOUC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OLicenseHeartbeat.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:SELFCERT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:SETLANG.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:GRAPH.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSQRY32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:lync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OcPubMgr.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:UcMapi.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:lync99.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:lynchtmlconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:IEContentService.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:ONENOTEM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:SCANPST.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:CNFNOT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:excelcnv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:Wordconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:PPTICO.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:misc.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOSREC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSPUB.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:PDFREFLOW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:WORDICON.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:ACCICONS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSACCESS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:SPREADSHEETCOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:filecompare.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:Common.ShowHelp.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:Common.DBConnection64.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:EQNEDT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:Setup.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:ODeploy.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:Oarpmany.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:CLVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:NAMECONTROLSERVER.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:msotd.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:msoev.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOSYNC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOUC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OLicenseHeartbeat.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:SELFCERT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:SETLANG.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:GRAPH.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSQRY32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:lync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OcPubMgr.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:UcMapi.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:lync99.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:lynchtmlconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:ONENOTE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:IEContentService.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:ONENOTEM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:SCANPST.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:CNFNOT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:excelcnv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:Wordconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:POWERPNT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:PPTICO.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:misc.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOSREC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSPUB.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:PDFREFLOW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:WINWORD.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:WORDICON.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:ACCICONS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSACCESS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:SPREADSHEETCOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:filecompare.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:Common.ShowHelp.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:EQNEDT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:Setup.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:ODeploy.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:Oarpmany.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:CLVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:NAMECONTROLSERVER.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:msotd.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:msoev.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOSYNC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOUC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OLicenseHeartbeat.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:SELFCERT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:SETLANG.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:GRAPH.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSQRY32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:lync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OcPubMgr.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:UcMapi.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:lync99.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:lynchtmlconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:ONENOTE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:IEContentService.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:ONENOTEM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:SCANPST.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:CNFNOT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:excelcnv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:Wordconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:POWERPNT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:PPTICO.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:misc.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOSREC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSPUB.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:PDFREFLOW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:WINWORD.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:WORDICON.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:ACCICONS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSACCESS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:SPREADSHEETCOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:filecompare.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:Common.ShowHelp.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:EQNEDT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:Setup.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:ODeploy.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:Oarpmany.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:NAMECONTROLSERVER.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:msotd.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:msoev.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOSYNC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOUC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OLicenseHeartbeat.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:SELFCERT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:SETLANG.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:GRAPH.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSQRY32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:lync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OcPubMgr.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:UcMapi.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:lync99.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:lynchtmlconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:ONENOTE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:IEContentService.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:ONENOTEM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:SCANPST.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:CNFNOT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:excelcnv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:Wordconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:POWERPNT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:PPTICO.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:misc.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOSREC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSPUB.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:PDFREFLOW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:WINWORD.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:WORDICON.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:ACCICONS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSACCESS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:SPREADSHEETCOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:filecompare.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:Common.ShowHelp.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:EQNEDT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:Setup.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:ODeploy.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:Oarpmany.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:CLVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:NAMECONTROLSERVER.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:msotd.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:msoev.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOSYNC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOUC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OLicenseHeartbeat.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:SELFCERT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:SETLANG.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:GRAPH.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSQRY32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:lync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OcPubMgr.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:UcMapi.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:lync99.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:lynchtmlconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:ONENOTE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:IEContentService.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:ONENOTEM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:SCANPST.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:CNFNOT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:excelcnv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:Wordconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:POWERPNT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:PPTICO.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:misc.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOSREC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSPUB.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:PDFREFLOW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:WINWORD.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:WORDICON.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:ACCICONS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSACCESS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:SPREADSHEETCOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:filecompare.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:EQNEDT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:Setup.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:ODeploy.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:Oarpmany.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:CLVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:NAMECONTROLSERVER.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:msotd.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:msoev.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOSYNC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOUC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OLicenseHeartbeat.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:SELFCERT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:SETLANG.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:GRAPH.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSQRY32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:lync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OcPubMgr.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:UcMapi.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:lync99.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:lynchtmlconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:ONENOTE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:IEContentService.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:ONENOTEM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:SCANPST.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:CNFNOT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:excelcnv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:Wordconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:POWERPNT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:PPTICO.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:misc.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOSREC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSPUB.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:PDFREFLOW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:WINWORD.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:WORDICON.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:ACCICONS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSACCESS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:SPREADSHEETCOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:filecompare.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:EQNEDT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:Setup.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:ODeploy.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:Oarpmany.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:CLVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:NAMECONTROLSERVER.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:msotd.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:msoev.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOSYNC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOUC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OLicenseHeartbeat.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:SELFCERT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:SETLANG.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:GRAPH.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSQRY32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:lync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OcPubMgr.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:UcMapi.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:lync99.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:lynchtmlconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:ONENOTE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:IEContentService.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:ONENOTEM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:SCANPST.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:CNFNOT32.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:excelcnv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:Wordconv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:POWERPNT.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PPTICO.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:misc.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOSREC.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSPUB.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PDFREFLOW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:WINWORD.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:WORDICON.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:ACCICONS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSACCESS.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:DATABASECOMPARE.EXE =>.Legitimate ---\\ OBSERVATEURS des évènements (151) - 22s Application.Error: Software Protection Platform Service (440) ~Numéro: 47051 ~Date: 04/10/2022 05:00:54 PM ~ID: 8198 ~Description: Échec de l’activation des licences (slui.exe) avec le code d’erreur suivant : hr=0xC004F074 Arguments de la ligne de commande : RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392- ~Suggestion: Aucune Application.Error: Application Error (101) ~Numéro: 47032 ~Date: 04/10/2022 05:00:36 PM ~ID: 1000 ~Description: Nom de l’application défaillante %1, version : %2, horodatage : 0x00000000 Nom du module défaillant : %4, version : %5, horodatage : 0xe89e47cc Code d’exception : 0x0eedfade Décalage d’erreur : 0x0012b922 ID du processus défaillant : 0x2694 Heure de ~Suggestion: Réparer ou réinstaller l'application. Application.Warning: Windows Search Service (2) ~Numéro: 46823 ~Date: 04/10/2022 04:13:58 PM ~ID: 3036 ~Description: Impossible de terminer l’analyse dans la source de contenu <%2>.Contexte : Application , Catalogue SystemIndexDétails : Une erreur interne s’est produite dans les Services HTTP Microsoft Windows (HRESULT : 0x80072ee4) (0x80072ee4) ~Suggestion: https://www.repairwin.com/fix-windows-event-3036-search-content-source-cannot-accessed-solved/ Application.Error: Application Hang (4) ~Numéro: 46497 ~Date: 04/10/2022 10:44:18 AM ~ID: 1002 ~Description: Le programme %1 version %2 a cessé d'interagir avec Windows et a été fermé. Pour voir si plus d'informations sur le problème sont disponibles, vérifiez l'historique des problèmes dans le Panneau de configuration Sécurité et maintenance. ID de proces ~Suggestion: Essayer les commandes suivantes ipconfig /release et ipconfig / renew. Application.Error: SideBySide (1) ~Numéro: 46260 ~Date: 04/09/2022 08:22:08 PM ~ID: 33 ~Description: La création du contexte d’activation a échoué pour « %11 ». Assembly dépendant %1 introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. ~Suggestion: Ces erreurs peuvent généralement être ignorées Application.Warning: Microsoft-Windows-RestartManager (4) ~Numéro: 46139 ~Date: 04/09/2022 08:04:58 PM ~ID: 10010 ~Description: Impossible de redémarrer l’application « %3 » (pid %2) - %9. ~Suggestion: Redémarrer manuellement l'application ou le service Application.Error: Microsoft-Windows-Defrag (12) ~Numéro: 44820 ~Date: 04/04/2022 06:32:20 PM ~ID: 264 ~Description: L’optimiseur de stockage n’a pas pu terminer %1 sur %2 car : L’opération demandée n’est pas prise en charge par le matériel sous-jacent au volume. (0x8900002A) ~Suggestion: Désactivez la surveillance du disque logique dans le pack d'administration du système d'exploitation de base SCOM pour arrêter l'analyse automatique de la défragmentation. Application.Error: PostgreSQL (1) ~Numéro: 44325 ~Date: 04/02/2022 10:17:03 AM ~ID: 0 ~Description: 2022-04-02 10:17:03 CESTFATAL: the database system is starting up Application.Error: VSS (2) ~Numéro: 44311 ~Date: 04/01/2022 11:41:56 PM ~ID: 8193 ~Description: Erreur du service de cliché instantané des volumes : erreur lors de l’appel de la routine %1. hr = %2. ~Suggestion: Utiliser la procédure de reconstruction du VSS Application.Error: Firefox Default Browser Agent (2) ~Numéro: 42825 ~Date: 01/02/2022 04:50:48 PM ~ID: 12007 ~Description: 0x80072EE7 in IsAgentRemoteDisabledInternal:68 System.Warning: DCOM (526) ~Numéro: 27787 ~Date: 04/10/2022 05:02:50 PM ~ID: 10016 ~Description: propres à l’applicationLocalActivation{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}{15C20B67-12E7-4BB6-92BB-7AFF07997402}DESKTOP-RUT1CQGMr_GTS-1-5-21-3351771493-749409139-3151566472-1001LocalHost (avec LRPC)Non disponibleNon disponible ~Suggestion: Vérifier les autorisations pour l'accès DCOM System.Warning: e1i65x64 (14) ~Numéro: 27744 ~Date: 04/10/2022 05:00:17 PM ~ID: 27 ~Description: Intel(R) Ethernet Connection (2) I219-V Network link is disconnected. System.Warning: Microsoft-Windows-Kernel-PnP (444) ~Numéro: 27726 ~Date: 04/10/2022 05:00:13 PM ~ID: 219 ~Description: Le chargement du pilote %5 a échoué pour le périphérique %2. ~Suggestion: Vérifier que le pilote a bien été chargé dans les informations système System.Error: Microsoft-Windows-Kernel-Boot (22) ~Numéro: 27690 ~Date: 04/10/2022 05:00:09 PM ~ID: 124 ~Description: 03225747456 System.Error: Microsoft-Windows-Hyper-V-Hypervisor (17) ~Numéro: 27689 ~ID: 41 ~Description: Hypervisor launch failed; Either VMX not present or not enabled in BIOS. System.Warning: BTHUSB (44) ~Numéro: 27573 ~Date: 04/10/2022 04:16:14 PM ~ID: 34 ~Description: La carte locale ne prend pas en charge un état de contrôleur Low Energy important pour la prise en charge du mode périphérique. Le masque d’état pris en charge requis au minimum est %2, a reçu %3. La fonctionnalité du rôle périphérique Low Energy n System.Error: Service Control Manager (2) ~Numéro: 27517 ~Date: 04/10/2022 04:15:49 PM ~ID: 7043 ~Description: Le service %1 ne s’est pas fermé correctement après avoir reçu une commande d’anticipation de fermeture. System.Warning: Microsoft-Windows-Time-Service (27) ~Numéro: 26381 ~Date: 04/08/2022 03:36:19 PM ~ID: 134 ~Description: NtpClient n'a pas pu définir d'homologue manuel utilisable comme source de temps en raison d'une erreur de résolution DNS sur "%3". NtpClient réessaiera dans %2 minutes, puis doublera l'intervalle d'attente pour les tentatives suivantes. L'erreur éta ~Suggestion: Resynchroniser le client avec l'homologue de source de temps System.Error: Microsoft-Windows-NDIS (3) ~Numéro: 26013 ~Date: 04/06/2022 08:54:10 AM ~ID: 10317 ~Description: Le miniport %4, %1, a eu l’événement 74 System.Error: Microsoft-Windows-WindowsUpdateClient (1) ~Numéro: 25398 ~Date: 04/01/2022 03:13:32 PM ~ID: 20 ~Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur %1 : %2. ~Suggestion: http://kb.eventtracker.com/evtpass/evtpages/EventId_20_Microsoft-Windows-WindowsUpdateClient_63351.asp System.Warning: Microsoft-Windows-DNS-Client (7) ~Numéro: 25367 ~Date: 04/01/2022 11:06:54 AM ~ID: 1014 ~Description: La résolution du nom %1 a expiré lorsqu’aucun des serveurs DNS configurés n’a répondu. ~Suggestion: https://social.technet.microsoft.com/wiki/contents/articles/3336.event-id-1014-microsoft-windows-dns-client.aspx System.Warning: User32 (1) ~Numéro: 25300 ~Date: 03/31/2022 11:32:44 PM ~ID: 1073 ~Description: La tentative par l’utilisateur %2 de redémarrer/arrêter l’ordinateur %1 a échoué System.Error: EventLog (5) ~Numéro: 24262 ~Date: 03/28/2022 04:30:56 PM ~ID: 6008 ~Description: L’arrêt système précédant à %1 le %2 n’était pas prévu. System.Warning: Microsoft-Windows-Ntfs (5) ~Numéro: 24217 ~Date: 01/02/2022 04:48:51 PM ~ID: 140 ~Description: 2G:24\Device\HarddiskVolume100xc000000e{f39016a1-00bb-b681-413c-d24d44743c89}8TOSHIBA 16External USB 3.04000120 Z382TA6AT70 System.Warning: disk (60) ~Numéro: 24216 ~ID: 51 ~Description: Une erreur a été détectée sur le périphérique %1 lors d'une opération de pagination. System.Error: Schannel (3) ~Numéro: 24179 ~Date: 12/15/2021 11:19:15 AM ~ID: 4103 ~Description: Une erreur irrécupérable s'est produite lors de la création des informations d'identification %1 pour TLS. État d'erreur interne : %2. System.Error: volsnap (3) ~Numéro: 24153 ~Date: 12/13/2021 07:03:25 PM ~ID: 36 ~Description: Les clichés instantanés du volume %2 ont été annulés car le stockage du cliché instantané n’a pas pu s’agrandir en raison d’une limite utilisateur. System.Warning: Ntfs (1) ~Numéro: 23333 ~Date: 12/04/2021 07:33:23 PM ~ID: 50 ~Description: {L'écriture différée a échoué} Windows n'a pas pu enregistrer les données du fichier %2. Les données ont été perdues. Cette erreur peut être due à une panne de votre matériel ou de votre connexion réseau. Essayez d'enregistrer ce fichier à un autre e ---\\ SCAN ADDITIONNEL (22) - 17s C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\extensions\{dbac9680-d559-4cd4-9765-059879e8c467}.xpi =>Toolbar.Graal C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hgfjoaookbahbhinopgfoiajfijfcdhm =>Toolbar.Graal C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kmhkepipobnjllejbafajoemahjejdcm =>Toolbar.Graal C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Local Extension Settings\kmhkepipobnjllejbafajoemahjejdcm =>Toolbar.Graal C:\Users\Mr_GT\AppData\Local\AdvinstAnalytics =>.SUP.Various C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc =>.SUP.Discord C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\Default\File System\000 =>.SUP.Temporary.Chrome [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Logiciels\PlaceMint3.0.2\PlaceMint.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Logiciels\MT2 Mechanical Keyboard\OemDrv.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Jeux\Battle.net\Battle.net Launcher.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Jeux\Battle.net\Battle.net Launcher.exe.ApplicationCompany =>.SUP.Orphan.MUICache C:\Users\Mr_GT\AppData\Local\Discord\app-1.0.9004\Discord.exe =>.SUP.Discord [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\users\mr_gt\appdata\local\discord\app-1.0.9004\discord.exe.FriendlyAppName =>.SUP.Discord [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\users\mr_gt\appdata\local\discord\app-1.0.9004\discord.exe.ApplicationCompany =>.SUP.Discord [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Download\Overcooked_2_Gourmet_Edition-Razor1911\rzr-overcooked2ge.iso.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-3351771493-749409139-3151566472-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Logiciels\PlaceMint3.0.2\PlaceMint.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-3351771493-749409139-3151566472-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Logiciels\MT2 Mechanical Keyboard\OemDrv.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-3351771493-749409139-3151566472-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Jeux\Battle.net\Battle.net Launcher.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3351771493-749409139-3151566472-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Jeux\Battle.net\Battle.net Launcher.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3351771493-749409139-3151566472-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\users\mr_gt\appdata\local\discord\app-1.0.9004\discord.exe.FriendlyAppName =>.SUP.Discord [HKU\S-1-5-21-3351771493-749409139-3151566472-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\users\mr_gt\appdata\local\discord\app-1.0.9004\discord.exe.ApplicationCompany =>.SUP.Discord [HKU\S-1-5-21-3351771493-749409139-3151566472-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Download\Overcooked_2_Gourmet_Edition-Razor1911\rzr-overcooked2ge.iso.FriendlyAppName =>.Unsigned ---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS (7) - 0s https://nicolascoolman.eu/2017/09/25/toolbar-igraal/ =>Toolbar.Graal https://nicolascoolman.eu/forum/Topic/Discord-logiciel-potentiellement-superflu-lps/ =>.SUP.Discord https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.Various https://nicolascoolman.eu/forum/Topic/warning-eventlogapp-evenement-dapplication/ =>Warning.EventLogApp https://nicolascoolman.eu/forum/Topic/warning-eventlogsys-evenement-systeme/ =>Warning.EventLogSys https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.Temporary.Chrome https://nicolascoolman.eu/forum/Topic/orphan-muicache-logiciel-potentiellement-superflu-lps/ =>.SUP.Orphan.MUICache ---\\ NUMEROS DE SÉRIE [00CC2413C6F7315CA6CC837FD2E857CC6A] [13/01/2021] (.AVB Disc Soft, SIA.) - D:\Logiciels\DAEMON Tools Lite\DiscSoftBusServiceLite.exe =>.AVB Disc Soft, SIA [00CC2413C6F7315CA6CC837FD2E857CC6A] [13/01/2021] (.AVB Disc Soft, SIA.) - D:\Logiciels\DAEMON Tools Lite\DTShellHlp.exe =>.AVB Disc Soft, SIA [00CC2413C6F7315CA6CC837FD2E857CC6A] [13/01/2021] (.AVB Disc Soft, SIA.) - D:\Logiciels\DAEMON Tools Lite\DTShl64.dll =>.AVB Disc Soft, SIA [00CC2413C6F7315CA6CC837FD2E857CC6A] [13/01/2021] (.AVB Disc Soft, SIA.) - D:\Logiciels\DAEMON Tools Lite\uninst.exe =>.AVB Disc Soft, SIA [00E49E47111FEC98CD0000000055662B3E] [04/02/2019] (.Rockstar Games, Inc..) - D:\Jeux\GTA5\GTA5.exe =>.Rockstar Games, Inc. [00E49E47111FEC98CD0000000055662B3E] [25/06/2018] (.Rockstar Games, Inc..) - C:\Program Files (x86)\Rockstar Games\Social Club\SocialClubHelper.exe =>.Rockstar Games, Inc. [00E49E47111FEC98CD0000000055662B3E] [25/06/2018] (.Rockstar Games, Inc..) - C:\Program Files\Rockstar Games\Social Club\SocialClubHelper.exe =>.Rockstar Games, Inc. [00E49E47111FEC98CD0000000055662B3E] [25/06/2018] (.Rockstar Games, Inc..) - C:\Program Files\Rockstar Games\Social Club\uninstallRGSCRedistributable.exe =>.Rockstar Games, Inc. [011F39A2261A993DD15176DA6FE4FBEA] [02/03/2022] (.Adobe Inc..) - C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Inc. [011F39A2261A993DD15176DA6FE4FBEA] [02/03/2022] (.Adobe Inc..) - C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe =>.Adobe Inc. [011F39A2261A993DD15176DA6FE4FBEA] [17/11/2021] (.Adobe Inc..) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc. [01342592A0010CB1109C11C0519CFD24] [21/04/2020] (.Notepad++.) - D:\Logiciels\Notepad++\notepad++.exe =>.Notepad++ [01342592A0010CB1109C11C0519CFD24] [21/04/2020] (.Notepad++.) - D:\Logiciels\Notepad++\NppShell_06.dll =>.Notepad++ [01901246C0A4BEB8A7ED5EA9E65C54FA] [31/03/2022] (.WhatsApp, Inc.) - C:\Users\Mr_GT\AppData\Local\WhatsApp\Update.exe =>.WhatsApp, Inc [01901246C0A4BEB8A7ED5EA9E65C54FA] [31/03/2022] (.WhatsApp, Inc.) - C:\Users\Mr_GT\AppData\Local\WhatsApp\WhatsApp.exe =>.WhatsApp, Inc [0280AE12D4C528DC0AA106FB9F17AA37] [17/05/2021] (.HP Inc..) - C:\HP\Diagnostics\PSDR\HPDiagnosticCoreUI.exe =>.HP Inc. [0280AE12D4C528DC0AA106FB9F17AA37] [31/03/2022] (.HP Inc..) - C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe =>.HP Inc. [0280AE12D4C528DC0AA106FB9F17AA37] [31/03/2022] (.HP Inc..) - C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe =>.HP Inc. [02D6AAEAB3924859805EBB529E314DE0] [28/03/2022] (.Discord Inc..) - C:\Users\Mr_GT\AppData\Local\Discord\app-1.0.9004\Discord.exe =>.SUP.Discord [02D6AAEAB3924859805EBB529E314DE0] [28/03/2022] (.Discord Inc..) - C:\Users\Mr_GT\AppData\Local\Discord\app-1.0.9004\ffmpeg.dll =>.SUP.Discord [02D6AAEAB3924859805EBB529E314DE0] [28/03/2022] (.Discord Inc..) - C:\Users\Mr_GT\AppData\Local\Discord\app-1.0.9004\libEGL.dll =>.SUP.Discord [02D6AAEAB3924859805EBB529E314DE0] [28/03/2022] (.Discord Inc..) - C:\Users\Mr_GT\AppData\Local\Discord\app-1.0.9004\libGLESv2.dll =>.SUP.Discord [02D6AAEAB3924859805EBB529E314DE0] [28/03/2022] (.Discord Inc..) - C:\Users\Mr_GT\AppData\Local\Discord\app-1.0.9004\swiftshader\libEGL.dll =>.SUP.Discord [02D6AAEAB3924859805EBB529E314DE0] [28/03/2022] (.Discord Inc..) - C:\Users\Mr_GT\AppData\Local\Discord\app-1.0.9004\swiftshader\libGLESv2.dll =>.SUP.Discord [02D6AAEAB3924859805EBB529E314DE0] [28/03/2022] (.Discord Inc..) - C:\Users\Mr_GT\AppData\Local\Discord\app-1.0.9004\vk_swiftshader.dll =>.SUP.Discord [02D6AAEAB3924859805EBB529E314DE0] [28/03/2022] (.Discord Inc..) - C:\Users\Mr_GT\AppData\Local\Discord\app-1.0.9004\vulkan-1.dll =>.SUP.Discord [0320BE3EB866526927F999B97B04346E] [30/05/2018] (.Realtek Semiconductor Corp..) - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe =>.Realtek Semiconductor Corp. [0320BE3EB866526927F999B97B04346E] [30/05/2018] (.Realtek Semiconductor Corp..) - C:\Program Files\Realtek\Audio\HDA\RtlUpd64.exe =>.Realtek Semiconductor Corp. [0320BE3EB866526927F999B97B04346E] [30/05/2018] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp. [032694CFEE1C05E1B2AA8FCF842A3539] [02/09/2021] (.TeamViewer Germany GmbH.) - D:\Logiciels\TeamViewer\TeamViewer.exe =>.TeamViewer Germany GmbH [032694CFEE1C05E1B2AA8FCF842A3539] [02/09/2021] (.TeamViewer Germany GmbH.) - D:\Logiciels\TeamViewer\TeamViewer_Service.exe =>.TeamViewer Germany GmbH [032694CFEE1C05E1B2AA8FCF842A3539] [02/09/2021] (.TeamViewer Germany GmbH.) - D:\Logiciels\TeamViewer\uninstall.exe =>.TeamViewer Germany GmbH [03574AC3E8A3001F70F9AEC1E7034AD1] [22/09/2012] (.Visan Industries.) - C:\Program Files (x86)\HP Photo Creations\PhotoProduct.exe =>.Visan Industries [037E56A19D56788E01F12630951BF5CC] [18/03/2019] (.HP Inc.) - C:\Program Files (x86)\HP\HP ENVY Photo 6200 series\bin\HPScan.exe =>.HP Inc [037E56A19D56788E01F12630951BF5CC] [18/03/2019] (.HP Inc.) - C:\Program Files\HP\HP ENVY Photo 6200 series\Bin\HPNetworkCommunicatorCom.exe =>.HP Inc [037E56A19D56788E01F12630951BF5CC] [19/03/2019] (.HP Inc.) - C:\Program Files\HP\HP ENVY Photo 6200 series\Bin\DeviceSetup.exe =>.HP Inc [03B4BC5EE79D842C03930B8619EDEAE4] [03/11/2021] (.Zoom Video Communications, Inc..) - C:\Users\Mr_GT\AppData\Roaming\Zoom\uninstall\Installer.exe =>.Zoom Video Communications, Inc. [03B4BC5EE79D842C03930B8619EDEAE4] [16/11/2021] (.Zoom Video Communications, Inc..) - C:\Users\Mr_GT\AppData\Roaming\Zoom\bin\airhost.exe =>.Zoom Video Communications, Inc. [03B4BC5EE79D842C03930B8619EDEAE4] [16/11/2021] (.Zoom Video Communications, Inc..) - C:\Users\Mr_GT\AppData\Roaming\Zoom\bin\Zoom.exe =>.Zoom Video Communications, Inc. [0443B567BFFBAA3BC083FE45A46DD041] [15/01/2019] (.Blizzard Entertainment, Inc..) - C:\ProgramData\Battle.net\Agent\Blizzard Uninstaller.exe =>.Blizzard Entertainment, Inc. [0443B567BFFBAA3BC083FE45A46DD041] [19/03/2019] (.Blizzard Entertainment, Inc..) - D:\Jeux\Overwatch\Overwatch Launcher.exe =>.Blizzard Entertainment, Inc. [0443B567BFFBAA3BC083FE45A46DD041] [28/05/2020] (.Blizzard Entertainment, Inc..) - D:\Jeux\Battle.net\Battle.net Launcher.exe =>.Blizzard Entertainment, Inc. [0443B567BFFBAA3BC083FE45A46DD041] [28/05/2020] (.Blizzard Entertainment, Inc..) - D:\Jeux\Battle.net\Battle.net.exe =>.Blizzard Entertainment, Inc. [044E3BF58976880FFD074448A8F7A058] [11/12/2020] (.Malwarebytes Corporation.) - C:\WINDOWS\system32\drivers\mbae64.sys =>.Malwarebytes Corporation [044E3BF58976880FFD074448A8F7A058] [26/06/2019] (.Malwarebytes Corporation.) - D:\Logiciels\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation [04F131322CC31D92C849FCA351D2F141] [03/12/2020] (.Discord Inc..) - C:\Users\Mr_GT\AppData\Local\Discord\Update.exe =>.SUP.Discord [054F466CECCBE9D6BEE81F5435E64D47] [12/07/2021] (.Valve.) - D:\Jeux\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe =>.Valve [054F466CECCBE9D6BEE81F5435E64D47] [12/08/2021] (.Valve.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe =>.Valve [054F466CECCBE9D6BEE81F5435E64D47] [21/07/2021] (.Valve.) - D:\Jeux\Steam\bin\cef\cef.win7x64\steamwebhelper.exe =>.Valve [054F466CECCBE9D6BEE81F5435E64D47] [21/07/2021] (.Valve.) - D:\Jeux\Steam\Steam.exe =>.Valve [06AEA76BAC46A9E8CFE6D29E45AAF033] [28/03/2022] (.Google LLC.) - C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler.exe =>.Google LLC [06AEA76BAC46A9E8CFE6D29E45AAF033] [28/03/2022] (.Google LLC.) - C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler64.exe =>.Google LLC [06B922A8397E632FE5348DA267275B4F] [22/01/2019] (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HDBox\Uninstaller.exe =>.Adobe Systems Incorporated [06D41A66692153FFBE5DEFE873ADFF6A] [29/03/2022] (.Hugh Bailey.) - D:\Logiciels\obs-studio\bin\64bit\obs64.exe =>.Not verified [06DBE19411438F282930348586B67EE7] [17/07/2021] (.PUBG CORPORATION.) - C:\Program Files\Common Files\PUBG\zksvc.exe =>.Not verified [07CDE1A1A0F336D740B9572374138D6B] [15/01/2020] (.Electronic Arts, Inc..) - D:\Jeux\Origin\Origin.exe =>.Electronic Arts, Inc. [07CDE1A1A0F336D740B9572374138D6B] [15/01/2020] (.Electronic Arts, Inc..) - D:\Jeux\Origin\OriginClientService.exe =>.Electronic Arts, Inc. [07CDE1A1A0F336D740B9572374138D6B] [15/01/2020] (.Electronic Arts, Inc..) - D:\Jeux\Origin\OriginUninstall.exe =>.Electronic Arts, Inc. [07CDE1A1A0F336D740B9572374138D6B] [15/01/2020] (.Electronic Arts, Inc..) - D:\Jeux\Origin\OriginWebHelperService.exe =>.Electronic Arts, Inc. [07CDE1A1A0F336D740B9572374138D6B] [21/09/2018] (.Electronic Arts, Inc..) - C:\Program Files\Common Files\EAInstaller\Battlefield V\Cleanup.exe =>.Electronic Arts, Inc. [084CAF4DF499141D404B7199AA2C2131] [22/05/2018] (.Valve.) - D:\Jeux\Steam\uninstall.exe =>.Valve [08A2EC4E78A09E174B192E5535984B59] [11/12/2020] (.Malwarebytes Inc.) - C:\WINDOWS\System32\Drivers\mbamswissarmy.sys =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [11/12/2020] (.Malwarebytes Inc.) - D:\Logiciels\Anti-Malware\mbam.exe =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [11/12/2020] (.Malwarebytes Inc.) - D:\Logiciels\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [13/12/2020] (.Malwarebytes Inc.) - C:\WINDOWS\System32\DRIVERS\farflt.sys =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [13/12/2020] (.Malwarebytes Inc.) - C:\WINDOWS\system32\DRIVERS\mbam.sys =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [13/12/2020] (.Malwarebytes Inc.) - C:\WINDOWS\System32\Drivers\MbamChameleon.sys =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [13/12/2020] (.Malwarebytes Inc.) - C:\WINDOWS\System32\DRIVERS\mwac.sys =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [16/11/2020] (.Malwarebytes Inc.) - D:\Logiciels\Anti-Malware\mbuns.exe =>.Malwarebytes Inc [094DC9C3B9D09B4F1D07FA327100E5D5] [03/07/2021] (.BattlEye Innovations e.K..) - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe =>.BattlEye Innovations e.K. [094DC9C3B9D09B4F1D07FA327100E5D5] [12/08/2021] (.BattlEye Innovations e.K..) - D:\Jeux\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe =>.BattlEye Innovations e.K. [09597E6236AF8128F0B7BE7B37BD3363] [05/12/2020] (.HP Inc..) - C:\Program Files (x86)\HP\Diagnostics\PSDR\SoftPaq\Binaries\HPDiagnosticCoreUI.exe =>.HP Inc. [0964B50A745C484789A9A6E114626ED2] [12/08/2021] (.PUBG CORPORATION.) - D:\Jeux\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe =>.PUBG CORPORATION [0964B50A745C484789A9A6E114626ED2] [12/08/2021] (.PUBG CORPORATION.) - D:\jeux\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe =>.PUBG CORPORATION [0C067D0F436427B359B7A6BABD673873] [18/07/2021] (.Wellbia.com Co., Ltd..) - C:\Windows\xhunter1.sys =>.Not verified [0C1CD3EEA47EDDA7A032573B014D0AFD] [10/12/2021] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation [0C1CD3EEA47EDDA7A032573B014D0AFD] [10/12/2021] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation [0C1CD3EEA47EDDA7A032573B014D0AFD] [10/12/2021] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation [0CEFAB1F7C07370C77DFB61C3CA4F5F0] [13/01/2019] (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe =>.Adobe Systems Incorporated [0D7AAE3B360869A3BA28BD7D1FD0B8F6] [06/09/2018] (.VS Revo Group Ltd..) - D:\Logiciels\Revo Uninstaller Pro\RUExt.dll =>.VS Revo Group Ltd. [0D7AAE3B360869A3BA28BD7D1FD0B8F6] [11/12/2018] (.VS Revo Group Ltd..) - D:\Logiciels\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group Ltd. [0E25850DA70F2EF8A7D9348F] [05/03/2019] (.MICRO-STAR INTERNATIONAL CO., LTD..) - D:\Logiciels\MSI Afterburner\MSIAfterburner.exe =>.MICRO-STAR INTERNATIONAL CO., LTD. [0E4418E2DEDE36DD2974C3443AFB5CE5] [01/04/2022] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\100.0.4896.75\elevation_service.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [01/04/2022] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [07/04/2022] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\100.0.4896.75\Installer\chrmstp.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [07/04/2022] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\100.0.4896.75\Installer\setup.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [29/03/2022] (.Google LLC.) - C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\SwReporter\100.281.200\software_reporter_tool.exe =>.Google LLC [0F6C6C76C237FDBD4775DF1EEC48E4E7] [09/03/2020] (.Evernote Corporation.) - D:\Logiciels\Evernote\Evernote.exe =>.Evernote Corporation [0F6C6C76C237FDBD4775DF1EEC48E4E7] [09/03/2020] (.Evernote Corporation.) - D:\Logiciels\Evernote\EvernoteClipper.exe =>.Evernote Corporation [0FA5B80428F4624CF9672211E1956FBE] [10/01/2019] (.VideoLAN.) - D:\Logiciels\VLC\vlc.exe =>.VideoLAN [10FB713319027F3F1F1C0667B3C38CA9] [26/02/2016] (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll =>.Adobe Systems, Incorporated [10FB713319027F3F1F1C0667B3C38CA9] [26/02/2016] (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll =>.Adobe Systems, Incorporated [112172E6B04266BB4059BFEF636CF8F452A0] [14/12/2017] (.Disc Soft Ltd.) - C:\WINDOWS\System32\drivers\dtlitescsibus.sys =>.Disc Soft Ltd [112172E6B04266BB4059BFEF636CF8F452A0] [14/12/2017] (.Disc Soft Ltd.) - C:\WINDOWS\System32\drivers\dtliteusbbus.sys =>.Disc Soft Ltd [12D5C9E2949D48ABACCD3514F0FB22AD] [09/09/2014] (.ASUSTeK Computer Inc..) - C:\Program Files (x86)\ASUS\IO\AsIoUnins.exe =>.ASUSTeK Computer Inc. [1402AEEF0D31BE743E73F6A7A960C4F4] [02/01/2017] (.Riverbed Technology, Inc..) - C:\Windows\system32\drivers\npf.sys =>.Riverbed Technology, Inc. [17AED194A417BC79B175CAE316DF75BA] [24/01/2015] (.Visan Industries.) - C:\Program Files (x86)\HP Photo Creations\uninst.exe =>.Visan Industries [1B0FD9717C2F577F47D64A15458EEFE2] [21/12/2016] (.VS Revo Group.) - C:\WINDOWS\System32\DRIVERS\revoflt.sys =>.VS Revo Group [1F3216F428F850BE2C66CAA056F6D821] [15/10/2021] (.Telegram FZ-LLC.) - D:\Logiciels\Telegram Desktop\Telegram.exe =>.Telegram FZ-LLC [234175E3D1A23EF8ACB50245] [29/06/2018] (.EasyAntiCheat Oy.) - C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe =>.EasyAntiCheat Oy [266D333EDE17A8B472053E4FA3934572] [11/04/2018] (.AVG Technologies CZ, s.r.o..) - C:\WINDOWS\System32\drivers\lpsport.sys =>.AVG Technologies CZ, s.r.o. [2912C70C9A2B8A3EF6F6074662D68B8D] [14/12/2017] (.Google Inc.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc [2C80892E0115B0B77AA3594B9A733953] [19/12/2017] (.Realtek Semiconductor Corp.) - C:\Windows\system32\drivers\RsProxy.sys =>.Realtek Semiconductor Corp [2D386ECA2FB81CCCE19ECF58458BB6A0] [08/10/2016] (.Shenzhen Jia Xing Investment Co., Ltd..) - C:\Program Files (x86)\Common Files\Aimersoft\Aimersoft Helper Compact\ASHelper.exe =>.Shenzhen Jia Xing Investment Co., Ltd. [33000002198C0A9FB2162B10E6000000000219] [28/10/2021] (.Skype Software Sarl.) - C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe =>.Skype Software Sarl [33000002198C0A9FB2162B10E6000000000219] [28/11/2021] (.Skype Software Sarl.) - C:\Program Files (x86)\Microsoft\Skype for Desktop\unins000.exe =>.Skype Software Sarl [330000029C6392BD77C797F02800000000029C] [31/03/2022] (.Skype Software Sarl.) - C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.82.404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Not verified [420B1AD8D94118DCF821B8CBD6E142F9] [13/07/2021] (.Wellbia.com Co., Ltd..) - C:\Program Files\Common Files\UNCHEATER\ucldr_battlegrounds_gl.exe =>.Not verified [4B20FF7D9D4C6B] [14/12/2017] (.EnterpriseDB Corporation.) - C:\Program Files (x86)\PSQLINSTALL\postgres84.exe =>.EnterpriseDB Corporation [4C17772E] [25/02/2015] (.Take-Two Interactive Software, Inc..) - C:\Program Files (x86)\InstallShield Installation Information\{E01FA564-2094-4833-8F2F-1FFEC6AFCC46}\setup.exe =>.Take-Two Interactive Software, Inc. [4CD9E755850C1372B48DC182A7308BAB] [13/10/2017] (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amdkmafd.sys =>.Advanced Micro Devices, Inc. [529E3F9FCF7D58D520D607AB74395002] [24/02/2019] (.win.rar GmbH.) - C:\Program Files\WinRAR\Rar.exe =>.win.rar GmbH [529E3F9FCF7D58D520D607AB74395002] [24/02/2019] (.win.rar GmbH.) - C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH [529E3F9FCF7D58D520D607AB74395002] [24/02/2019] (.win.rar GmbH.) - C:\Program Files\WinRAR\uninstall.exe =>.win.rar GmbH [535091E6CAB13AF393B51EAD0825F627] [05/11/2021] (.Advanced Micro Devices Inc..) - C:\Windows\System32\DriverStore\FileRepository\amdsafd.inf_amd64_edd3335a4253bf6d\amdsafd.sys =>.Not verified [535091E6CAB13AF393B51EAD0825F627] [09/03/2022] (.Advanced Micro Devices Inc..) - C:\Program Files\AMD\CNext\CNext\amdow.exe =>.Not verified [535091E6CAB13AF393B51EAD0825F627] [09/03/2022] (.Advanced Micro Devices Inc..) - C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe =>.Not verified [535091E6CAB13AF393B51EAD0825F627] [09/03/2022] (.Advanced Micro Devices Inc..) - C:\Program Files\AMD\CNext\CNext\cncmd.exe =>.Not verified [535091E6CAB13AF393B51EAD0825F627] [09/03/2022] (.Advanced Micro Devices Inc..) - C:\Program Files\AMD\CNext\CNext\Radeonsoftware.exe =>.Not verified [535091E6CAB13AF393B51EAD0825F627] [10/03/2022] (.Advanced Micro Devices Inc..) - C:\Program Files\AMD\CIM\Bin64\AMDSoftwareInstaller.exe =>.Not verified [535091E6CAB13AF393B51EAD0825F627] [13/12/2021] (.Advanced Micro Devices Inc..) - C:\WINDOWS\System32\drivers\amdfendr.sys =>.Not verified [535091E6CAB13AF393B51EAD0825F627] [13/12/2021] (.Advanced Micro Devices Inc..) - C:\WINDOWS\System32\drivers\amdfendrmgr.sys =>.Not verified [535091E6CAB13AF393B51EAD0825F627] [16/03/2022] (.Advanced Micro Devices Inc..) - C:\WINDOWS\System32\drivers\amdkmpfd.sys =>.Not verified [535091E6CAB13AF393B51EAD0825F627] [16/03/2022] (.Advanced Micro Devices Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0377495.inf_amd64_58cc395c0bf03a26\B377432\amdkmdag.sys =>.Not verified [535091E6CAB13AF393B51EAD0825F627] [16/03/2022] (.Advanced Micro Devices Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0377495.inf_amd64_58cc395c0bf03a26\B377432\atieclxx.exe =>.Not verified [535091E6CAB13AF393B51EAD0825F627] [16/03/2022] (.Advanced Micro Devices Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0377495.inf_amd64_58cc395c0bf03a26\B377432\atiesrxx.exe =>.Not verified [535091E6CAB13AF393B51EAD0825F627] [17/08/2021] (.Advanced Micro Devices Inc..) - C:\WINDOWS\System32\drivers\amdxe.sys =>.Not verified [54CCA67C86AD2DDFBB5CE4D41DC7A3E2] [15/01/2019] (.Epic Games Inc..) - C:\ProgramData\Package Cache\{2890ae6b-90e9-448d-b3e6-97e43c21e2fd}\UE4PrereqSetup_x64.exe =>.Epic Games Inc. [54CCA67C86AD2DDFBB5CE4D41DC7A3E2] [20/12/2017] (.Epic Games Inc..) - C:\ProgramData\Package Cache\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}\LauncherPrereqSetup_x64.exe =>.Epic Games Inc. [56000001757376CD78AD000C9A000000000175] [06/05/2018] (.Intel(R) Embedded Subsystems and IP Blocks Group.) - C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys =>.Intel(R) Embedded Subsystems and IP Blocks Group [586949448B11998044814E89345A337F] [10/05/2018] (.WDKTestCert build,131474841775766162.) - C:\WINDOWS\System32\drivers\AppleLowerFilter.sys =>.WDKTestCert build,131474841775766162 [5909D9C07208F38020A96B8C516A27F5] [01/05/2019] (.Electronic Arts, Inc..) - D:\Jeux\Battlefield V\bfv.exe =>.Electronic Arts, Inc. [5909D9C07208F38020A96B8C516A27F5] [01/05/2019] (.Electronic Arts, Inc..) - D:\Jeux\Battlefield V\bfvTrial.exe =>.Electronic Arts, Inc. [5CCAA82369A26AEE30D017616B1CEB69] [19/01/2018] (.Wondershare Technology Co.,Ltd.) - C:\WINDOWS\System32\drivers\VirtualAudio.sys =>.Wondershare Technology Co.,Ltd [63E34D3C5E10D736DEE1C5320C2EF8F8] [11/08/2019] (.Movavi Software Limited.) - D:\Logiciels\movavi\Movavi Video Converter 19 Premium\uninst.exe =>.Movavi Software Limited [6DC3ED4566163E279D2784C99FFFD787] [23/08/2017] (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated [720500F0177858D2E78E8C0ADD3D2D54] [01/02/2020] (.ObviousIdea.) - D:\Logiciels\Light Image Resizer 5\unins000.exe =>.ObviousIdea [75FB51C8768EF6927BF41DA1A234A1D9] [17/03/2015] (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll =>.Adobe Systems, Incorporated [76BDA099930ACCDEF2E06E86AAC1BAFF] [07/01/2016] (.Open Source Developer, Pierre Noguès.) - C:\Program Files (x86)\serposcope\bin\serposcope-service.exe =>.Not verified [76BDA099930ACCDEF2E06E86AAC1BAFF] [07/01/2016] (.Open Source Developer, Pierre Noguès.) - C:\Program Files (x86)\serposcope\bin\serposcopew.exe =>.Not verified [7818EAD53083AE1106A2D5A565786166] [05/06/2015] (.ASMedia Technology Inc..) - C:\WINDOWS\System32\drivers\asmthub3.sys =>.ASMedia Technology Inc. [7818EAD53083AE1106A2D5A565786166] [05/06/2015] (.ASMedia Technology Inc..) - C:\WINDOWS\System32\drivers\asmtxhci.sys =>.ASMedia Technology Inc. [7C5395B0039E0E7B94C2885A678B688B] [15/07/2012] (.GenArts, Inc.) - C:\Program Files (x86)\GenArts\SapphireOFX\genarts-frontend.exe =>.GenArts, Inc [7D08D9BC130726DE26EE4EF28E133084] [02/07/2013] (.ASUSTeK Computer Inc..) - C:\WINDOWS\System32\drivers\IOMap64.sys =>.ASUSTeK Computer Inc. [7D08D9BC130726DE26EE4EF28E133084] [09/09/2014] (.ASUSTeK Computer Inc..) - C:\Windows\SysWOW64\drivers\AsIO.sys =>.ASUSTeK Computer Inc. ~ Unselected Options: ~ End of the scan, 13633 items in 05mn35s (3772)(0)