~ ZHPDiag v2023.1.31.6 Par Nicolas Coolman (2023/01/31) ~ Démarré par gokpo (Administrator) (2023/02/04 18:28:18) ~ Assistance: https://forum.nicolascoolman.eu/ ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Certificate ZHPDiag: Legal ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\gokpo\OneDrive\Bureau\ZHPDiag.txt ~ Rapport: C:\Users\gokpo\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 10 Pro, 64-bit (Build 22623) ---\\ NAVIGATEURS INTERNET (3) - 0s ~ MFIE: Mozilla Firefox 110.0 (x64 fr) ~ MSIE: Internet Explorer v11.1.22621.0 ~ OBIE: Vivaldi v5.6.2867.62 ---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (9) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows(R) Operating System, VOLUME_KMSCLIENT channel Windows ID Activation : OK ~ Windows Partial Key : T83GX Windows License : OK Expiration Licence Windows : 231500 minute(s) (161 jour(s)) ~ Windows Remaining Initializations Number : 1001 Windows Automatic Updates : OK ---\\ LOGICIELS DE PROTECTION (3) - 1s Windows Defender W10 (Activate) (Protection) Malwarebytes Windows Firewall Control v6.8.2.0 (Protection) Malwarebytes version 4.5.21.231 v4.5.21.231 (Protection) ---\\ INFORMATIONS SUR LE SYSTÈME (18) - 1s ~ Operating System: AMD64 Family 25 Model 80 Stepping 0, AuthenticAMD ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) System Restore: Activé (Enable) System drive C: has 134 GB (27%) free of 487 GB : OK =>.Disk Space ---\\ INFORMATIONS MÉMOIRE (MEMORY INFORMATIONS) ~ Slots Total (Total Slots) : 2 ~ Slots Utilisés (Used Slots) : 2 ~ Slots Disponibles (Free Slots) : 0 ~ Type de barrette (FormFactor): SO-DIMM ~ Taille (Size) : 8 Go ~ Vitesse (Speed) : 3200 ~ Charge mémoire (Memory Usage) : 43% ~ RAM physique Total (Total Physical) : 14 Go : OK ~ RAM physique Disponible (Available Physical) : 8 Go ~ Total virtuelle (Total Virtual) : 27.86 Go ~ Disponible virtuelle (Available Virtual): 20.71 Go ---\\ MODE DE CONNEXION AU SYSTÈME (3) - 0s ~ Computer Name: LENOVO ~ User Name: gokpo ~ Logged in as Administrator ---\\ ÉNUMÉRATION DES UNITÉS DE STOCKAGE (1) - 0s ~ Drive C: has 134 GB free of 487 GB (System) ---\\ CARACTÉRISTIQUES PRINCIPALES DU DISQUE SYSTÈME (1) - 0s ~ La technologie SMART n'est pas active sur le disque système ---\\ ÉTAT DU CENTRE DE SÉCURITÉ WINDOWS (7) - 0s [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ RECHERCHE PARTICULIÈRE DE FICHIERS GÉNÉRIQUES (26) - 1s [MD5.4BE3CA9373812ACFBA14C3F6CEF3D831] - 29/11/2022 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [5001112] =>.Microsoft® [MD5.57A6B4BDF247C1A6CA08AC09A8F9B742] - 07/05/2022 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [73728] [Unsigned] =>.Microsoft Corporation [MD5.6366D7292196F045BBA4A3FC5866906B] - 29/11/2022 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [584040] [Unsigned] =>.Microsoft Corporation [MD5.5005BB267A29907F96C1045A5FA0BD14] - 04/09/2022 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [5232520] =>.Microsoft® [MD5.CCFACA69B3C5DA99279E9E9E3E20E565] - 11/10/2022 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [901120] [Unsigned] =>.Microsoft Corporation [MD5.E8607542FED5A985FF91BD73F2B08BC4] - 04/09/2022 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [356352] [Unsigned] =>.Microsoft Corporation [MD5.31FB3E81A27A3518B9898AE396391032] - 07/05/2022 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [1005464] =>.Microsoft® [MD5.05AA79C0776E5F1E67EEEEAA4872655F] - 07/05/2022 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [753056] =>.Microsoft® [MD5.9D04FDB0959DE66C47555CCC7B13D982] - 29/11/2022 - (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\System32\wuaueng.dll [3464032] [Unsigned] =>.Microsoft Corporation [MD5.54DB796A38084C3DDC564713528E8FBD] - 07/05/2022 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] [Unsigned] =>.Microsoft Corporation [MD5.09C7B6254D10D3A6C4FCC505EBBEDC19] - 14/10/2022 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [697728] [Unsigned] =>.Microsoft Corporation [MD5.631339765047BA586A83593897F4D1EC] - 04/09/2022 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [62808] [Unsigned] =>.Microsoft Corporation [MD5.F3D85EBF8ABF755B680677E84AE0F575] - 21/10/2022 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [131072] [Unsigned] =>.Microsoft Corporation [MD5.BD94BB6159F87B6D4D3E10CDC20C069A] - 07/05/2022 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [204800] [Unsigned] =>.Microsoft Corporation [MD5.A47223A0B391D41BA91DF42377C4B0B4] - 21/10/2022 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [184320] [Unsigned] =>.Microsoft Corporation [MD5.E2BD5FE3957B69DAC736846D7082D3B5] - 04/09/2022 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [192512] [Unsigned] =>.Microsoft Corporation [MD5.566132924EBEEAE1A41FB521B56E0AAA] - 07/05/2022 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [159744] [Unsigned] =>.Microsoft Corporation [MD5.D7C5521CF8A49393B109F08AB4BA234E] - 11/11/2022 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [258048] [Unsigned] =>.Microsoft Corporation [MD5.82292FE2A383A446496F4A452AC167C1] - 08/11/2022 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [660816] [Unsigned] =>.Microsoft Corporation [MD5.0724B6D0678719AF6BC9D696CF02A8E7] - 04/09/2022 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [327680] [Unsigned] =>.Microsoft Corporation [MD5.E9A7F8FE6C2D92FA7D514762BBE1443C] - 21/10/2022 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [3343736] [Unsigned] =>.Microsoft Corporation [MD5.3A4E501001979A77B7F2C353944699A9] - 07/05/2022 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [135168] [Unsigned] =>.Microsoft Corporation [MD5.7E10CB7555B7CFB0CFEA1D7B1F990EA2] - 21/10/2022 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [139264] [Unsigned] =>.Microsoft Corporation [MD5.9327D2D9AEA1C64BC6993E48849232E9] - 07/05/2022 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [196608] [Unsigned] =>.Microsoft Corporation [MD5.2EEB5EAC8E854239841EEE32AFD8BDAE] - 04/09/2022 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [157040] [Unsigned] =>.Microsoft Corporation [MD5.346AFD3A66E77F234E05BE439730013C] - 07/05/2022 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [468312] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES SERVICES (Non désactivés) (83) - 3s O23 - Service: Adguard Service (Adguard Service) . (.Adguard Software Limited - AdGuard for Windows.) - C:\Program Files (x86)\AdGuard\AdguardSvc.exe {00B138E6660DCA7CC377CB2F6F6027F616}. O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\DriverStore\FileRepository\u0382639.inf_amd64_2f10f48364cd2b9e\B382560\atiesrxx.exe =>.Advanced Micro Devices Inc.® O23 - Service: AnyTXT Searcher Indexing Service (ATService) . (.anytxt.net - AnyTXT Searcher Indexing Service.) - C:\Program Files\AnyTXT Searcher\atservice.exe {2981A6A35E27685D0E0AA815022A70D9}. =>.anytxt.net O23 - Service: C:\WINDOWS\System32\AudioEndpointBuilder.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Générateur de points de terminaison du serv.) - C:\WINDOWS\System32\AudioEndpointBuilder.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\audiosrv.dll (Audiosrv) . (.Microsoft Corporation - Service Audio Windows.) - C:\WINDOWS\System32\Audiosrv.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\bdesvc.dll (BDESVC) . (.Microsoft Corporation - Service BDE.) - C:\WINDOWS\System32\bdesvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\bfe.dll (BFE) . (.Microsoft Corporation - Moteur de filtrage de base.) - C:\WINDOWS\System32\bfe.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\qmgr.dll (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) - C:\WINDOWS\System32\qmgr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\bisrv.dll (BrokerInfrastructure) . (.Microsoft Corporation - Process State Manager (PSM) Service.) - C:\WINDOWS\System32\psmsrv.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\cbdhsvc.dll (cbdhsvc) . (.Microsoft Corporation - Historique du Presse-papiers Microsoft (R).) - C:\WINDOWS\System32\cbdhsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: cbdhsvc_88b16 (cbdhsvc_88b16) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: C:\WINDOWS\System32\cdpusersvc.dll (CDPUserSvc) . (.Microsoft Corporation - Composants utilisateur Microsoft (R) CDP.) - C:\WINDOWS\System32\CDPUserSvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: CDPUserSvc_88b16 (CDPUserSvc_88b16) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: Microsoft Office Click-to-Run Service (ClickToRunSvc) . (.Microsoft Corporation - Microsoft Office Click-to-Run (SxS).) - C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe =>.Microsoft® O23 - Service: C:\WINDOWS\System32\CmService.dll (CmService) . (.Microsoft Corporation - Service du gestionnaire de conteneurs.) - C:\WINDOWS\System32\CmService.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\coremessaging.dll (CoreMessagingRegistrar) . (.Microsoft Corporation - Microsoft CoreMessaging Dll.) - C:\Windows\System32\coremessaging.dll =>.Microsoft® O23 - Service: C:\WINDOWS\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Services de chiffrement.) - C:\WINDOWS\System32\cryptsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\cscsvc.dll (CscService) . (.Microsoft Corporation - DLL du service CSC.) - C:\WINDOWS\System32\cscsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - Service client DHCP.) - C:\Windows\System32\dhcpcore.dll =>.Microsoft® O23 - Service: C:\WINDOWS\System32\dispbroker.desktop.dll (DispBrokerDesktopSvc) . (.Microsoft Corporation - Courtier d'affichage du bureau.) - C:\WINDOWS\System32\DispBroker.Desktop.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - Service de résolution du cache DNS.) - C:\WINDOWS\System32\dnsrslvr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Dolby DAX API Service (DolbyDAXAPI) . (.Dolby Laboratories - DAX API.) - C:\Windows\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_8183b45ddd94e6f9\DAX3API.exe =>.Dolby Laboratories, Inc.® O23 - Service: C:\WINDOWS\System32\dusmsvc.dll (DusmSvc) . (.Microsoft Corporation - Service Consommation des données.) - C:\WINDOWS\System32\dusmsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Microsoft Edge Update Service (edgeupdate) (edgeupdate) . (.Microsoft Corporation - Microsoft Edge Update.) - C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe =>.Microsoft® O23 - Service: C:\WINDOWS\System32\efssvc.dll (EFS) . (.Microsoft Corporation - Local Security Authority Process.) - C:\WINDOWS\System32\lsass.exe [Unsigned] =>.Microsoft Corporation O23 - Service: ESET Service (ekrn) . (.ESET - ESET Service.) - C:\Program Files\ESET\ESET Security\ekrn.exe =>.ESET, spol. s r.o.® O23 - Service: C:\WINDOWS\System32\wevtsvc.dll (EventLog) . (.Microsoft Corporation - Service journal des événements.) - C:\WINDOWS\System32\wevtsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Fortemedia APO Control Service (FMAPOService) . (.Fortemedia - Fortemedia Service.) - C:\WINDOWS\System32\FMService64.exe [Unsigned] =>.Fortemedia O23 - Service: C:\WINDOWS\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Service de cache de police Windows.) - C:\WINDOWS\System32\FntCache.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) - C:\WINDOWS\System32\gpsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\ikeext.dll (IKEEXT) . (.Microsoft Corporation - Extension IKE.) - C:\WINDOWS\System32\ikeext.dll [Unsigned] =>.Microsoft Corporation O23 - Service: System Interface Foundation Service (ImControllerService) . (...) - C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe (.not file.) =>.Lenovo Group Limited O23 - Service: C:\WINDOWS\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) - C:\WINDOWS\System32\iphlpsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - DLL du service Serveur.) - C:\WINDOWS\System32\srvsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - DLL du service Station de travail.) - C:\WINDOWS\System32\wkssvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Lenovo Fn and function keys service (LenovoFnAndFunctionKeys) . (.Lenovo(beijing) Limited - Lenovo Fn and function keys service.) - C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_da914fb427b10059\LenovoUtilityService.exe =>.Lenovo® O23 - Service: LenovoVantageService (LenovoVantageService) . (.Lenovo Group Ltd. - LenovoVantageService.) - C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\LenovoVantageService.exe =>.Lenovo® O23 - Service: Lenovo Notebook ITS Service (LITSSVC) . (.Lenovo(beijing) Limited - Lenovo Notebook ITS Service.) - C:\WINDOWS\System32\LNBITSSvc.exe [Unsigned] =>.Lenovo(beijing) Limited O23 - Service: C:\WINDOWS\system32\lsm.dll (LSM) . (.Microsoft Corporation - Service du gestionnaire de session locale.) - C:\WINDOWS\System32\lsm.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Macrium Service (MacriumService) . (.Paramount Software UK Ltd - Macrium Reflect Utility Service.) - C:\Program Files\Macrium\Common\MacriumService.exe {0EA39DC6653ADDC16FD0A739}. =>.Paramount Software UK Ltd O23 - Service: C:\WINDOWS\System32\moshost.dll (MapsBroker) . (.Microsoft Corporation - Gestionnaire des cartes téléchargées.) - C:\WINDOWS\System32\moshost.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Malwarebytes Service (MBAMService) . (.Malwarebytes - Malwarebytes Service.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc.® O23 - Service: C:\Windows\System32\FirewallAPI.dll (mpssvc) . (.Microsoft Corporation - Service de protection Microsoft.) - C:\WINDOWS\System32\mpssvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: NordSec Update Service (NordUpdaterService) . (.TEFINCOM S.A. - NordSec Update Service.) - C:\Program Files\NordUpdater\NordUpdateService.exe =>.nordvpn s.a.® O23 - Service: nordvpn-service (nordvpn-service) . (.TEFINCOM S.A. - NordVPN.) - C:\Program Files\NordVPN\nordvpn-service.exe =>.nordvpn s.a.® O23 - Service: C:\WINDOWS\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Serveur RPC de l’interface du magasin résea.) - C:\WINDOWS\System32\nsisvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\APHostRes.dll (OneSyncSvc) . (.Microsoft Corporation - Accounts Host Service.) - C:\WINDOWS\System32\APHostService.dll [Unsigned] =>.Microsoft Corporation O23 - Service: OneSyncSvc_88b16 (OneSyncSvc_88b16) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: Service de l’Assistant Compatibilité des programmes (PcaSvc) . (.Microsoft Corporation - Service de l’Assistant Compatibilité des pr.) - C:\WINDOWS\System32\pcasvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: (PCManager Service) . (.MSPCManagerService - MSPCManagerService.) - C:\Program Files\Microsoft PC Manager\MSPCManagerService.exe =>.Microsoft® O23 - Service: C:\WINDOWS\System32\umpo.dll (Power) . (.Microsoft Corporation - Service d’alimentation en mode utilisateur.) - C:\WINDOWS\System32\umpo.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\WINDOWS\System32\profsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - Mappeur de point de terminaison RPC.) - C:\WINDOWS\System32\RpcEpMap.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @combase.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\WINDOWS\System32\rpcss.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Realtek Audio Universal Service (RtkAudioUniversalService) . (.Realtek Semiconductor - Realtek HD Audio Universal Service.) - C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_05fe713c4fadacd3\RtkAudUService64.exe =>.Realtek Semiconductor Corp.® O23 - Service: C:\WINDOWS\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) - C:\WINDOWS\System32\schedsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\Sens.dll (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) - C:\WINDOWS\System32\sens.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\Sgrm\SgrmBroker.exe,-100 (SgrmBroker) . (.Microsoft Corporation - Service Broker du moniteur d'exécution Syst.) - C:\WINDOWS\System32\Sgrm\SgrmBroker.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) - C:\Windows\System32\shsvcs.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Lenovo Intelligent Sensing Service (SmartSense) . (.Lenovo Group Ltd. - Lenovo Intelligent Sensing Service.) - C:\Windows\System32\DriverStore\FileRepository\lnvsst.inf_amd64_4fb0470b333c7f0d\SmartSense.exe =>.Lenovo® O23 - Service: C:\WINDOWS\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Application sous-système spouleur.) - C:\WINDOWS\System32\spoolsv.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Service de la plateforme de protection logi.) - C:\WINDOWS\System32\sppsvc.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\windows.staterepository.dll (StateRepository) . (.Microsoft Corporation - Serveur d'API Windows StateRepository.) - C:\Windows\System32\windows.staterepository.dll =>.Microsoft® O23 - Service: C:\WINDOWS\System32\StorSvc.dll (StorSvc) . (.Microsoft Corporation - Services de stockage.) - C:\WINDOWS\System32\storsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\sysmain.dll (SysMain) . (.Microsoft Corporation - Hôte de Service SysMain.) - C:\WINDOWS\System32\sysmain.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\SystemEventsBrokerServer.dll (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) - C:\WINDOWS\System32\SystemEventsBrokerServer.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\TabSvc.dll (TextInputManagementService) . (.Microsoft Corporation - Service de gestion des entrées de texte Mic.) - C:\WINDOWS\System32\TabSvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\themeservice.dll (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) - C:\WINDOWS\System32\themeservice.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Universal Device Client Service (UDCService) . (.Lenovo Group Ltd. - UDC Service.) - C:\WINDOWS\System32\DRIVERS\Lenovo\udc\Service\UDClientService.exe [Unsigned] =>.Lenovo Group Ltd. O23 - Service: C:\WINDOWS\System32\usermgr.dll (UserManager) . (.Microsoft Corporation - UserMgr.) - C:\WINDOWS\System32\usermgr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\usosvc.dll (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) - C:\WINDOWS\System32\usosvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: VMware Authorization Service (VMAuthdService) . (.VMware, Inc. - VMware Authorization Service.) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc.® O23 - Service: VMware DHCP Service (VMnetDHCP) . (.VMware, Inc. - VMware VMnet DHCP service.) - C:\Windows\SysWOW64\vmnetdhcp.exe =>.VMware, Inc.® O23 - Service: VMware USB Arbitration Service (VMUSBArbService) . (.VMware, Inc. - VMware USB Arbitration Service.) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe =>.VMware, Inc.® O23 - Service: VMware NAT Service (VMware NAT Service) . (.VMware, Inc. - VMware NAT Service.) - C:\Windows\SysWOW64\vmnat.exe =>.VMware, Inc.® O23 - Service: C:\WINDOWS\System32\wbiosrvc.dll (WbioSrvc) . (.Microsoft Corporation - Service de biométrie Windows.) - C:\WINDOWS\System32\wbiosrvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wcmsvc.dll (Wcmsvc) . (.Microsoft Corporation - DLL du service de gestion des connexions Wi.) - C:\WINDOWS\System32\wcmsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\webthreatdefusersvc.dll (webthreatdefusersvc) . (.Microsoft Corporation - Service d’utilisateur Web Threat Defense.) - C:\WINDOWS\System32\webthreatdefusersvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: webthreatdefusersvc_88b16 (webthreatdefusersvc_88b16) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: Malwarebytes Windows Firewall Control (wfcs) . (.Malwarebytes - Malwarebytes Windows Firewall Control Servi.) - C:\Program Files\Malwarebytes\Windows Firewall Control\wfcs.exe =>.Malwarebytes Inc® O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) . (.Microsoft Corporation - Antimalware Service Executable.) - C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MsMpEng.exe =>.Microsoft® O23 - Service: C:\WINDOWS\System32\wbem\wmisvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\WINDOWS\System32\wbem\WMIsvc.dll [Unsigned] =>.Microsoft Corporation ---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (132) - 10s SR - Boot [07/05/2022] [ 108376] (3ware) . (.LSI.) - C:\WINDOWS\System32\drivers\3ware.sys =>.Microsoft® SR - Demand [31/08/2022] [ 48896] Lenovo Virtual Power Controlle (ACPIVPC) . (.Lenovo Group Ltd..) - C:\WINDOWS\System32\drivers\AcpiVpc.sys =>.Lenovo® SR - System [21/10/2022] [ 87624] adgnetworkwfpdrv (adgnetworkwfpdrv) . (.Adguard Software Limited.) - C:\WINDOWS\System32\drivers\adgnetworkwfpdrv.sys =>.Microsoft® SR - Auto [23/01/2023] [ 466136] Adguard Service (Adguard Service) . (.Adguard Software Limited.) - C:\Program Files (x86)\AdGuard\AdguardSvc.exe {00B138E6660DCA7CC377CB2F6F6027F616}. SR - Boot [07/05/2022] [ 1136472] (ADP80XX) . (.PMC-Sierra.) - C:\WINDOWS\System32\drivers\ADP80XX.SYS =>.Microsoft® SR - Demand [04/02/2023] [ 43528] ALSysIO (ALSysIO) . (.Arthur Liberman.) - C:\Users\gokpo\AppData\Local\Temp\ALSysIO64.sys =>.Microsoft® SR - Auto [23/08/2022] [ 599408] (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\DriverStore\FileRepository\u0382639.inf_amd64_2f10f48364cd2b9e\B382560\atiesrxx.exe =>.Advanced Micro Devices Inc.® SR - Demand [20/10/2021] [ 7343536] Audio Coprocessr Driver for (amdacpbus) . (.Advanced Micro Devices.) - C:\Windows\System32\DriverStore\FileRepository\amdacpbus.inf_amd64_0db72b76397684aa\amdacpbus.sys =>.Advanced Micro Devices Inc.® SR - Demand [06/10/2021] [ 346064] AMD Audio Service (AMDAfdAudioService) . (.Advanced Micro Devices.) - C:\Windows\System32\DriverStore\FileRepository\amdacpafd.inf_amd64_6feef11989456c09\amdacpafd.sys =>.Advanced Micro Devices Inc.® SR - Demand [18/06/2021] [ 54984] AMD GPIO Client Driver (amdgpio2) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdgpio2.sys =>.Advanced Micro Devices INC.® SR - Demand [22/05/2022] [ 75464] AMD I2C Controller Service (amdi2c) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdi2c.sys =>.Advanced Micro Devices Inc.® SR - Boot [23/03/2022] [ 263144] AMD Micro PEP Device (AmdMicroPEP) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\AmdMicroPEP.sys =>.Advanced Micro Devices Inc.® SR - Auto [00/00/0000] [ 0] AMDRyzenMasterDriverV19 (AMDRyzenMasterDriverV19) . (...) - C:\WINDOWS\system32\AMDRyzenMasterDriver.sys (.not file.) [Unsigned] SR - Boot [07/05/2022] [ 84312] (amdsata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdsata.sys =>.Microsoft® SR - Boot [07/05/2022] [ 260440] (amdsbs) . (.AMD Technologies Inc..) - C:\WINDOWS\System32\drivers\amdsbs.sys =>.Microsoft® SR - Demand [23/08/2022] [80544624] (amdwddmg) . (.Advanced Micro Devices, Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0382639.inf_amd64_2f10f48364cd2b9e\B382560\amdkmdag.sys =>.Advanced Micro Devices Inc.® SR - Boot [07/05/2022] [ 28008] (amdxata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdxata.sys =>.Microsoft® SR - Boot [07/05/2022] [ 113496] Apple Solid State Drive Device (AppleSSD) . (.Apple Inc..) - C:\WINDOWS\System32\drivers\AppleSSD.sys =>.Microsoft® SR - Boot [07/05/2022] [ 132968] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\WINDOWS\System32\drivers\arcsas.sys =>.Microsoft® SR - Demand [30/07/2021] [ 246200] AMD Function Driver fo (AtiHDAudioService) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\AtihdWT6.sys =>.Microsoft® SR - Auto [14/11/2022] [ 2474384] AnyTXT Searcher Indexing Service (ATService) . (.anytxt.net.) - C:\Program Files\AnyTXT Searcher\atservice.exe {2981A6A35E27685D0E0AA815022A70D9}. =>.anytxt.net SR - Demand [08/11/2021] [ 145712] ASIX AX88179A USB 3.2 Gen1 (AX88179A) . (.ASIX Electronics Corp..) - C:\Windows\System32\DriverStore\FileRepository\netax88179x_178a_772d.inf_amd64_21809f4d848ddcfe\ax88179x_178a_772d.sys {107F7D2F138A3E9F49B14F10181EA2FE}. =>.ASIX Electronics Corp. SR - Boot [07/05/2022] [ 534872] QLogic Network Adapter VBD (b06bdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\bxvbda.sys =>.Microsoft® SR - Demand [07/05/2022] [ 9728] bcmfn2 Service (bcmfn2) . (...) - C:\WINDOWS\System32\drivers\bcmfn2.sys [Unsigned] =>.Broadcom Corporation SR - Boot [07/05/2022] [ 320880] (cht4iscsi) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4sx64.sys =>.Microsoft® SR - Demand [07/05/2022] [ 1854832] Chelsio Virtual Bus Driver (cht4vbd) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4vx64.sys =>.Microsoft® SR - Auto [24/09/2021] [ 2154560] Dolby DAX API Service (DolbyDAXAPI) . (.Dolby Laboratories.) - C:\Windows\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_8183b45ddd94e6f9\DAX3API.exe =>.Dolby Laboratories, Inc.® SR - System [16/01/2023] [ 198416] eamonm (eamonm) . (.ESET.) - C:\WINDOWS\System32\DRIVERS\eamonm.sys =>.ESET, spol. s r.o.® SR - Boot [07/05/2022] [ 3441512] QLogic 10 Gigabit Ethernet Ada (ebdrv) . (.Marvell Semiconductor Inc..) - C:\WINDOWS\System32\drivers\evbda.sys =>.Microsoft® SR - Boot [07/05/2022] [ 3424104] QLogic Legacy Ethernet Adapte (ebdrv0) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\evbd0a.sys =>.Microsoft® SR - Boot [16/01/2023] [ 119904] edevmon (edevmon) . (.ESET.) - C:\WINDOWS\System32\DRIVERS\edevmon.sys =>.ESET, spol. s r.o.® SR - Boot [05/09/2022] [ 16336] eelam (eelam) . (.ESET.) - C:\WINDOWS\System32\DRIVERS\eelam.sys =>.Microsoft® SR - System [16/01/2023] [ 237208] ehdrv (ehdrv) . (.ESET.) - C:\WINDOWS\System32\DRIVERS\ehdrv.sys =>.ESET, spol. s r.o.® SR - Auto [16/01/2023] [ 55392] ekbdflt (ekbdflt) . (.ESET.) - C:\WINDOWS\System32\DRIVERS\ekbdflt.sys =>.ESET, spol. s r.o.® SR - Auto [16/01/2023] [ 3549872] ESET Service (ekrn) . (.ESET.) - C:\Program Files\ESET\ESET Security\ekrn.exe =>.ESET, spol. s r.o.® SS - Demand [16/01/2023] [ 3549872] ESET Firewall Helper (ekrnEpfw) . (.ESET.) - C:\Program Files\ESET\ESET Security\ekrn.exe =>.ESET, spol. s r.o.® SR - System [16/01/2023] [ 81696] epfw (epfw) . (.ESET.) - C:\WINDOWS\System32\DRIVERS\epfw.sys =>.ESET, spol. s r.o.® SR - System [16/01/2023] [ 122504] epfwwfp (epfwwfp) . (.ESET.) - C:\WINDOWS\System32\DRIVERS\epfwwfp.sys =>.ESET, spol. s r.o.® SR - System [04/02/2023] [ 158640] Malwarebytes Anti-Exploit (ESProtectionDriver) . (.Malwarebytes.) - C:\WINDOWS\system32\drivers\mbae64.sys =>.Microsoft® SR - Auto [07/10/2021] [ 423296] Fortemedia APO Control Service (FMAPOService) . (.Fortemedia.) - C:\WINDOWS\System32\FMService64.exe =>.Microsoft® SR - Auto [07/09/2022] [ 84480] VMware hcmon (hcmon) . (.VMware, Inc..) - C:\WINDOWS\System32\DRIVERS\hcmon.sys =>.VMware, Inc.® SR - Boot [07/05/2022] [ 65360] (HpSAMD) . (.Hewlett-Packard Company.) - C:\WINDOWS\System32\drivers\HpSAMD.sys =>.Microsoft® SR - Demand [07/05/2022] [ 36352] Intel Serial IO GPIO Controlle (iagpio) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iagpio.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [07/05/2022] [ 91136] Intel(R) Serial IO I2C Host Cont (iai2c) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iai2c.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [07/05/2022] [ 79360] Intel(R) S (iaLPSS2i_GPIO2) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [Unsigned] =>.Intel Corporation SR - Demand [07/05/2022] [ 93184] In (iaLPSS2i_GPIO2_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [07/05/2022] [ 112128] Intel( (iaLPSS2i_GPIO2_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [07/05/2022] [ 96256] Intel( (iaLPSS2i_GPIO2_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [07/05/2022] [ 171520] Intel(R) Seria (iaLPSS2i_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [Unsigned] =>.Intel Corporation SR - Demand [07/05/2022] [ 175104] Intel( (iaLPSS2i_I2C_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [07/05/2022] [ 177152] Intel(R) S (iaLPSS2i_I2C_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [07/05/2022] [ 177664] Intel(R) S (iaLPSS2i_I2C_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [07/05/2022] [ 38128] Intel(R) Serial IO (iaLPSSi_GPIO) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys =>.Intel Corporation - Client Components Group® SR - Demand [07/05/2022] [ 113152] Intel(R) Serial IO I (iaLPSSi_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [Unsigned] =>.Intel Corporation SR - Boot [07/05/2022] [ 885584] Intel Chipset SATA RAI (iaStorAVC) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorAVC.sys =>.Microsoft® SR - Boot [07/05/2022] [ 413008] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorV.sys =>.Microsoft® SR - Demand [07/05/2022] [ 559976] Mellanox InfiniBand Bus/A (ibbus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ibbus.sys =>.Microsoft® SR - Auto [00/00/0000] [ 0] System Interface Foundation (ImControllerService) . (...) - C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe (.not file.) [Unsigned] =>.Lenovo Group Limited SR - Auto [17/05/2022] [ 15008] inpoutx64 (inpoutx64) . (.Highresolution Enterprises [www.highrez.co.uk].) - C:\WINDOWS\System32\Drivers\inpoutx64.sys =>.Red Fox UK Limited® SR - Demand [21/04/2022] [ 6190528] Service for Realtek HD Audio (WDM) (IntcAzAudAddService) . (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp.® SR - Disabl [04/05/2022] [ 58760] IObitUnlocker (IObitUnlocker) . (.IObit Information Technology.) - C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlocker.sys =>.IObit CO., LTD® SR - Boot [07/05/2022] [ 187224] (ItSas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\ItSas35i.sys =>.Microsoft® SR - Auto [13/11/2022] [ 245968] Lenovo Fn and function keys service (LenovoFnAndFunctionKeys) . (.Lenovo(beijing) Limited.) - C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_da914fb427b10059\LenovoUtilityService.exe =>.Lenovo® SR - Auto [29/11/2022] [ 32464] LenovoVantageService (LenovoVantageService) . (.Lenovo Group Ltd..) - C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\LenovoVantageService.exe =>.Lenovo® SR - Auto [17/08/2022] [ 1831672] Lenovo Notebook ITS Service (LITSSVC) . (.Lenovo(beijing) Limited.) - C:\WINDOWS\System32\LNBITSSvc.exe =>.Lenovo® SR - Boot [07/05/2022] [ 109920] (LSI_SAS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas.sys =>.Microsoft® SR - Boot [07/05/2022] [ 125280] (LSI_SAS2i) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas2i.sys =>.Microsoft® SR - Boot [07/05/2022] [ 138600] (LSI_SAS3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\lsi_sas3i.sys =>.Microsoft® SR - Auto [30/01/2023] [11767208] Macrium Service (MacriumService) . (.Paramount Software UK Ltd.) - C:\Program Files\Macrium\Common\MacriumService.exe {0EA39DC6653ADDC16FD0A739}. =>.Paramount Software UK Ltd SR - Auto [04/02/2023] [ 223176] MBAMChameleon (MBAMChameleon) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\MbamChameleon.sys =>.Microsoft® SR - Boot [04/02/2023] [ 21480] MbamElam (MbamElam) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\MbamElam.sys =>.Microsoft® SR - Demand [04/02/2023] [ 198088] MBAMFarflt (MBAMFarflt) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\farflt.sys =>.Microsoft® SR - Demand [04/02/2023] [ 76216] MBAMProtection (MBAMProtection) . (.Malwarebytes.) - C:\WINDOWS\system32\DRIVERS\mbam.sys =>.Microsoft® SR - Auto [04/02/2023] [ 8966256] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc.® SR - Demand [04/02/2023] [ 239544] MBAMSwissArmy (MBAMSwissArmy) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\mbamswissarmy.sys =>.Microsoft® SR - Demand [04/02/2023] [ 181816] MBAMWebProtection (MBAMWebProtection) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\mwac.sys =>.Malwarebytes Inc.® SR - Boot [07/05/2022] [ 81752] (megasas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\MegaSas2i.sys =>.Microsoft® SR - Boot [07/05/2022] [ 101224] (megasas35i) . (.Broadcom Inc.) - C:\WINDOWS\System32\drivers\megasas35i.sys =>.Microsoft® SR - Boot [07/05/2022] [ 576856] (megasr) . (.LSI Corporation, Inc..) - C:\WINDOWS\System32\drivers\megasr.sys =>.Microsoft® SR - Demand [07/05/2022] [ 1132392] Mellanox ConnectX Bus E (mlx4_bus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\mlx4_bus.sys =>.Microsoft® SR - Boot [07/05/2022] [ 90472] (mpi3drvi) . (.Broadcom Limited.) - C:\WINDOWS\System32\drivers\mpi3drvi.sys =>.Microsoft® SR - Demand [14/05/2022] [ 286424] MTK BT Filter Driver (MTKBTFilterX64) . (.MediaTek Inc..) - C:\WINDOWS\System32\DRIVERS\mtkbtfilterx.sys {0FDDB53064C536A794495B90D3089427}. =>.MediaTek Inc. SR - Demand [15/05/2022] [ 1439976] Mediatek PCI LE Exten (mtkwlex) . (.MediaTek Inc..) - C:\WINDOWS\System32\drivers\mtkwl6ex.sys {0FDDB53064C536A794495B90D3089427}. =>.MediaTek Inc. SR - Boot [07/05/2022] [ 64872] (mvumis) . (.Marvell Semiconductor, Inc..) - C:\WINDOWS\System32\drivers\mvumis.sys =>.Microsoft® SR - Demand [07/05/2022] [ 147304] NetworkDirect Service (ndfltr) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ndfltr.sys =>.Microsoft® SR - Auto [28/06/2022] [ 131472] NordVPN Divert Driver (NDivert) . (.Nordvpn S.A..) - C:\Program Files\NordVPN\7.4.7.0\Drivers\NDivert.sys =>.nordvpn s.a.® SR - Demand [07/05/2022] [ 83288] NDKPerf Driver (NDKPerf) . (.Microsoft.) - C:\WINDOWS\System32\drivers\NDKPerf.sys =>.Microsoft® SR - System [13/03/2020] [ 96488] networx (networx) . (. {084EEAAE1D23F2E189C219261275C404}..) - C:\WINDOWS\System32\drivers\networx.sys {084EEAAE1D23F2E189C219261275C404}. SR - System [22/02/2022] [ 44928] NordVPN LightWeight Firewall (nordlwf) . (.TEFINCOM S.A..) - C:\WINDOWS\System32\DRIVERS\nordlwf.sys =>.nordvpn s.a.® SS - Demand [11/06/2021] [ 310136] nordsec-threatprotection-service (nordsec-threatprotection-service) . (.TEFINCOM S.A..) - C:\Program Files\NordVPN\NordSec ThreatProtection\nordsec-threatprotection-service.exe =>.nordvpn s.a.® SR - Auto [03/08/2022] [ 300408] NordSec Update Service (NordUpdaterService) . (.TEFINCOM S.A..) - C:\Program Files\NordUpdater\NordUpdateService.exe =>.nordvpn s.a.® SR - Auto [03/08/2022] [ 254328] nordvpn-service (nordvpn-service) . (.TEFINCOM S.A..) - C:\Program Files\NordVPN\nordvpn-service.exe =>.nordvpn s.a.® SR - System [20/08/2022] [ 77336] Npcap Packet Driver (NPCAP) (npcap) . (.Insecure.Com LLC..) - C:\WINDOWS\System32\DRIVERS\npcap.sys {0AA60783EBB5076EBC2D12DA9B04C290}. =>.Insecure.Com LLC. SR - Boot [07/05/2022] [ 151392] (nvraid) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvraid.sys =>.Microsoft® SR - Boot [07/05/2022] [ 167256] (nvstor) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvstor.sys =>.Microsoft® SR - Auto [18/01/2023] [ 102848] (PCManager Service) . (.MSPCManagerService.) - C:\Program Files\Microsoft PC Manager\MSPCManagerService.exe =>.Microsoft® SR - Boot [07/05/2022] [ 59752] (percsas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas2i.sys =>.Microsoft® SR - Boot [07/05/2022] [ 69464] (percsas3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas3i.sys =>.Microsoft® SS - Demand [05/12/2022] [ 401512] ProtonVPN Service (ProtonVPN Service) . (.ProtonVPN.) - C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPNService.exe =>.Proton Technologies AG® SR - Demand [07/10/2022] [ 34176] ProtonVPN Callout (ProtonVPNCallout) . (.Proton Technologies AG.) - C:\Program Files (x86)\Proton Technologies\ProtonVPN\x64\Win10\ProtonVPN.CalloutDriver.sys =>.Microsoft® SR - Boot [07/05/2022] [ 45408] pvscsi Storage Controller Dr (pvscsi) . (.VMware, Inc..) - C:\WINDOWS\System32\drivers\pvscsii.sys =>.Microsoft® SR - Demand [07/05/2022] [ 98304] Microsoft Route Poli (RoutePolicy) . (...) - C:\WINDOWS\System32\drivers\RoutePolicy.sys [Unsigned] SR - Auto [21/04/2022] [ 3477960] Realtek Audio Universal Service (RtkAudioUniversalService) . (.Realtek Semiconductor.) - C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_05fe713c4fadacd3\RtkAudUService64.exe =>.Realtek Semiconductor Corp.® SR - Demand [25/07/2022] [ 1398920] Realtek PCIE Card Reader - PER (RTSPER) . (.Realtek Semiconductor Corporation.) - C:\WINDOWS\System32\drivers\RtsPer.sys =>.Realtek Semiconductor Corp.® SR - Demand [00/00/0000] [ 0] RwDrv (RwDrv) . (...) - C:\WINDOWS\SysWOW64\Drivers\RwDrv.sys (.not file.) [Unsigned] SR - Boot [07/05/2022] [ 45920] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\WINDOWS\System32\drivers\SiSRaid2.sys =>.Microsoft® SR - Boot [07/05/2022] [ 82784] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\WINDOWS\System32\drivers\sisraid4.sys =>.Microsoft® SR - Boot [07/05/2022] [ 210784] (SmartSAMD) . (.Microsemi Corportation.) - C:\WINDOWS\System32\drivers\SmartSAMD.sys =>.Microsoft® SR - Auto [15/09/2022] [ 170704] Lenovo Intelligent Sensing Service (SmartSense) . (.Lenovo Group Ltd..) - C:\Windows\System32\DriverStore\FileRepository\lnvsst.inf_amd64_4fb0470b333c7f0d\SmartSense.exe =>.Lenovo® SR - Boot [07/05/2022] [ 32080] (stexstor) . (.Promise Technology, Inc..) - C:\WINDOWS\System32\drivers\stexstor.sys =>.Microsoft® SS - Demand [00/00/0000] [ 0] System Update (SUService) . (...) - C:\Program Files (x86)\Lenovo\System Update\SUService.exe (.not file.) [Unsigned] SR - Demand [13/06/2021] [ 49744] TAP-NordVPN Windows Adapter (tapnordvpn) . (.The OpenVPN Project.) - C:\WINDOWS\System32\drivers\tapnordvpn.sys =>.nordvpn s.a.® SR - Demand [01/04/2022] [ 49024] TAP-ProtonVPN Windows Adapte (tapprotonvpn) . (.The OpenVPN Project.) - C:\WINDOWS\System32\drivers\tapprotonvpn.sys =>.Microsoft® SR - Auto [17/11/2022] [ 72912] Universal Device Client Serv (UDCService) . (.Lenovo Group Ltd..) - C:\WINDOWS\System32\DRIVERS\Lenovo\udc\Service\UDClientService.exe =>.Lenovo® SR - Auto [16/11/2022] [ 89392] VMware Authorization Service (VMAuthdService) . (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc.® SR - Demand [29/12/2022] [ 94208] (vmbusproxy) . (...) - C:\WINDOWS\System32\drivers\vmbusproxy.sys [Unsigned] SR - Boot [03/07/2022] [ 104888] VMware VMCI Bus Dri (vmci) . (.VMware, Inc..) - C:\WINDOWS\System32\drivers\vmci.sys =>.Microsoft® SR - Demand [16/11/2022] [ 46576] VMware Virtual E (VMnetAdapter) . (.VMware, Inc..) - C:\WINDOWS\System32\DRIVERS\vmnetadapter.sys =>.VMware, Inc.® SR - Auto [16/11/2022] [ 67072] VMware Bridge Protocol (VMnetBridge) . (.VMware, Inc..) - C:\WINDOWS\System32\DRIVERS\vmnetbridge.sys =>.VMware, Inc.® SR - Auto [16/11/2022] [ 384304] VMware DHCP Service (VMnetDHCP) . (.VMware, Inc..) - C:\Windows\SysWOW64\vmnetdhcp.exe =>.VMware, Inc.® SR - Auto [16/11/2022] [ 44544] VMware Virtual Ethernet Userif for VMnet (VMnetuserif) . (.VMware, Inc..) - C:\WINDOWS\System32\DRIVERS\vmnetuserif.sys =>.VMware, Inc.® SR - Demand [07/09/2022] [ 70656] VMware USB Client Driver (vmusb) . (.VMware, Inc..) - C:\WINDOWS\System32\drivers\vmusb.sys =>.VMware, Inc.® SR - Auto [07/09/2022] [ 1041208] VMware USB Arbitration Service (VMUSBArbService) . (.VMware, Inc..) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe =>.VMware, Inc.® SR - Auto [16/11/2022] [ 428184] VMware NAT Service (VMware NAT Service) . (.VMware, Inc..) - C:\Windows\SysWOW64\vmnat.exe =>.VMware, Inc.® SS - Demand [16/11/2022] [ 75416] VMware Autostart Service (VmwareAutostartService) . (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-autostart.exe =>.VMware, Inc.® SR - Auto [16/11/2022] [ 99768] VMware vmx86 (vmx86) . (.VMware, Inc..) - C:\WINDOWS\System32\DRIVERS\vmx86.sys =>.Microsoft® SR - Boot [07/05/2022] [ 167784] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\WINDOWS\System32\drivers\vsmraid.sys =>.Microsoft® SR - Boot [03/07/2022] [ 88976] vSockets Virtual Machine Communication Interface Sockets dr (vsock) . (.VMware, Inc..) - C:\WINDOWS\System32\DRIVERS\vsock.sys =>.Microsoft® SR - Boot [07/05/2022] [ 306512] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\WINDOWS\System32\drivers\vstxraid.sys =>.Microsoft® SR - Auto [13/05/2022] [ 116968] Malwarebytes Windows Firewall Control (wfcs) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Windows Firewall Control\wfcs.exe =>.Malwarebytes Inc® SR - Demand [07/05/2022] [ 37224] WinMad Service (WinMad) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winmad.sys =>.Microsoft® SR - Demand [04/06/2022] [ 29592] Wintun (wintun) . (.WireGuard LLC.) - C:\WINDOWS\System32\drivers\wintun.sys =>.Microsoft® ---\\ TÂCHES PLANIFIÉES EN AUTOMATIQUE (Registre) (40) - 7s O38 - TASK: {022993F8-42BB-4AEB-A5AD-C7CC902C3F75} [64Bits][\VivaldiUpdateCheck-4e3f400590ed2d44] - (.Vivaldi Technologies AS - Vivaldi update notifier.) -- C:\Users\gokpo\AppData\Local\Vivaldi\Application\update_notifier.exe [3426152] =>.Vivaldi Technologies AS O38 - TASK: {0B309D5C-34DE-40A5-81BB-683E362F6983} [64Bits][\Lenovo\Vantage\Schedule\HeartbeatAddinDailyScheduleTask] - (.Lenovo Group Ltd. - ScheduleEventAction.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [28888] =>.Lenovo Group Ltd. O38 - TASK: {18BC4C7D-9486-4F91-9654-1BC1F6CDECEB} [64Bits][\Meta\Messenger-WSP-Helper-S-1-5-21-2741647792-3826816627-2827384255-1001] - (.Meta - .) -- MessengerHelper.exe [0] O38 - TASK: {3B5A9EC9-FAF8-4422-B0A1-1E49D95BAD1D} [64Bits][\Lenovo\Vantage\Schedule\LenovoCompanionAppAddinDailyScheduleTask] - (.Lenovo Group Ltd. - ScheduleEventAction.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [28888] =>.Lenovo Group Ltd. O38 - TASK: {3DC0ED66-75F8-49D7-8ADF-8F044279F6B0} [64Bits][\HardDiskSentinel\Hard Disk Sentinel_gokpo] - (.H.D.S. Hungary - Hard Disk Sentinel.) -- C:\Program Files (x86)\Hard Disk Sentinel\HDSentinel.exe [6160216] =>.H.D.S. Hungary O38 - TASK: {3E57A238-550E-4EB3-9EA8-1C4FAA50FBB2} [64Bits][\AMD RELAUNCHER] - (.Advanced Micro Devices, Inc. - AMD Install Manager.) -- C:\AMD\WHQL-AMD-Software-Adrenalin-Edition-22.11.2-Win10-Win11-Dec8\Bin64\InstallManagerApp.exe [954808] =>.Advanced Micro Devices, Inc. O38 - TASK: {3FE07872-5459-44E9-B2AA-05D180527606} [64Bits][\Lenovo\Vantage\Schedule\GenericMessagingAddin] - (.Lenovo Group Ltd. - ScheduleEventAction.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [28888] =>.Lenovo Group Ltd. O38 - TASK: {6553ECAB-08B5-4AF5-A17F-ACA108E4D506} [64Bits][\Lenovo\Vantage\Schedule\SettingsWidgetAddinDailyScheduleTask] - (.Lenovo Group Ltd. - ScheduleEventAction.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [28888] =>.Lenovo Group Ltd. O38 - TASK: {6C1F0487-30DF-48C3-8ED6-C983D2DDFFC5} [64Bits][\ScrollNavigator] - (.DeskSoft - ScrollNavigator Application.) -- C:\Program Files (x86)\ScrollNavigator\ScrollNavigator.exe [1538048] =>.DeskSoft O38 - TASK: {75CF2B83-1851-4212-B824-F6DBECB5C554} [64Bits][\Lenovo\Vantage\Schedule\Lenovo.Vantage.SmartPerformance.MonthlyReport] - (.Lenovo Group Ltd. - ScheduleEventAction.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [28888] =>.Lenovo Group Ltd. O38 - TASK: {7A1485C2-3108-4119-9BDD-47D6DE4A28FA} [64Bits][\Lenovo\Vantage\Schedule\IdeaNotebookAddinDailyEvent] - (.Lenovo Group Ltd. - ScheduleEventAction.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [28888] =>.Lenovo Group Ltd. O38 - TASK: {976E8AE3-02D7-44FE-ABE0-7A3EA157D076} [64Bits][\CCleanerSkipUAC - gokpo] - (.Piriform Software Ltd - CCleaner.) -- C:\Users\gokpo\OneDrive\Bureau\ccleaner_pro_6.01.9825\CCleaner\CCleaner.exe [31031896] =>.Piriform Software Ltd O38 - TASK: {98D891E4-88C5-48FD-8DDF-DFA248F67FEE} [64Bits][\Lenovo\Vantage\Schedule\BatteryGaugeAddinDailyScheduleTask] - (.Lenovo Group Ltd. - ScheduleEventAction.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [28888] =>.Lenovo Group Ltd. O38 - TASK: {A00DA0AC-BA65-43C9-A433-B07E763E2011} [64Bits][\npcapwatchdog] - (. - Ensure Npcap service is configured to start.) -- C:\Program Files\Npcap\CheckStatus.bat [815] O38 - TASK: {B06723F8-F759-4558-AC84-3E8915174AFE} [64Bits][\Microsoft\Windows\PI\SecureBootEncodeUEFI] - (...) -- C:\WINDOWS\system32\SecureBootEncodeUEFI.exe [94208] O38 - TASK: {B3EA59AA-19E5-4B9B-A90B-975C4EAD4270} [64Bits][\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB] - (.Mozilla Foundation - Firefox Default Browser Agent.) -- C:\Program Files\Mozilla Firefox\default-browser-agent.exe [716192] =>.Mozilla Foundation O38 - TASK: {BC209796-1155-456B-970E-8B0323AADFCA} [64Bits][\Core Temp Autostart gokpo] - (.ALCPU - CPU temperature and system information util.) -- C:\Program Files\Core Temp\Core Temp.exe [1040648] =>.Alcpu O38 - TASK: {BD0A0E5E-DA14-46D9-8E98-D09D32051017} [64Bits][\Lenovo\Vantage\Schedule\LenovoSystemUpdateAddin_WeeklyTask] - (.Lenovo Group Ltd. - ScheduleEventAction.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [28888] =>.Lenovo Group Ltd. O38 - TASK: {EC3A9A5E-97EB-4860-B042-58E548C7DA07} [64Bits][\Lenovo\UDC\Lenovo UDC Monitor] - (.Lenovo Group Ltd. - UDC Inf Installer.) -- C:\WINDOWS\system32\drivers\lenovo\udc\data\InfBackup\UdcInfInstaller.exe [186568] =>.Lenovo Group Ltd. O38 - TASK: {F8AA8E7D-B078-4F5C-A026-2CDCAEC96689} [64Bits][\Lenovo\Vantage\Schedule\DailyTelemetryTransmission] - (.Lenovo Group Ltd. - ScheduleEventAction.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [28888] =>.Lenovo Group Ltd. C:\WINDOWS\System32\Tasks\VivaldiUpdateCheck-4e3f400590ed2d44 - (.Vivaldi Technologies AS.) -- C:\Users\gokpo\AppData\Local\Vivaldi\Application\update_notifier.exe [--from-scheduler] =>.Vivaldi Technologies AS C:\WINDOWS\System32\Tasks\Lenovo\Vantage\Schedule\HeartbeatAddinDailyScheduleTask - (.Lenovo Group Ltd..) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [HeartbeatAddinDailyScheduleTask] =>.Lenovo Group Ltd. C:\WINDOWS\System32\Tasks\Meta\Messenger-WSP-Helper-S-1-5-21-2741647792-3826816627-2827384255-1001 - (.Meta.) -- MessengerHelper.exe [--lassie] C:\WINDOWS\System32\Tasks\Lenovo\Vantage\Schedule\LenovoCompanionAppAddinDailyScheduleTask - (.Lenovo Group Ltd..) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [LenovoCompanionAppAddinDailyScheduleTask] =>.Lenovo Group Ltd. C:\WINDOWS\System32\Tasks\HardDiskSentinel\Hard Disk Sentinel_gokpo - (.H.D.S. Hungary.) -- C:\Program Files (x86)\Hard Disk Sentinel\HDSentinel.exe [/AUTORUN] =>.H.D.S. Hungary C:\WINDOWS\System32\Tasks\AMD RELAUNCHER - (.Advanced Micro Devices, Inc..) -- C:\AMD\WHQL-AMD-Software-Adrenalin-Edition-22.11.2-Win10-Win11-Dec8\Bin64\InstallManagerApp.exe [/LOCAL0 ./LOCAL0] =>.Advanced Micro Devices, Inc. C:\WINDOWS\System32\Tasks\Lenovo\Vantage\Schedule\GenericMessagingAddin - (.Lenovo Group Ltd..) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [GenericMessagingAddin] =>.Lenovo Group Ltd. C:\WINDOWS\System32\Tasks\Lenovo\Vantage\Schedule\SettingsWidgetAddinDailyScheduleTask - (.Lenovo Group Ltd..) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [SettingsWidgetAddinDailyScheduleTask] =>.Lenovo Group Ltd. C:\WINDOWS\System32\Tasks\ScrollNavigator - (.DeskSoft.) -- C:\Program Files (x86)\ScrollNavigator\ScrollNavigator.exe [-TASKSCHEDULER.] =>.DeskSoft C:\WINDOWS\System32\Tasks\Lenovo\Vantage\Schedule\Lenovo.Vantage.SmartPerformance.MonthlyReport - (.Lenovo Group Ltd..) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [Lenovo.Vantage.SmartPerformance.MonthlyReport] =>.Lenovo Group Ltd. C:\WINDOWS\System32\Tasks\Lenovo\Vantage\Schedule\IdeaNotebookAddinDailyEvent - (.Lenovo Group Ltd..) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [IdeaNotebookAddinDailyEvent] =>.Lenovo Group Ltd. C:\WINDOWS\System32\Tasks\CCleanerSkipUAC - gokpo - (.Piriform Software Ltd.) -- C:\Users\gokpo\OneDrive\Bureau\ccleaner_pro_6.01.9825\CCleaner\CCleaner.exe [$(Arg0)] =>.Piriform Software Ltd C:\WINDOWS\System32\Tasks\Lenovo\Vantage\Schedule\BatteryGaugeAddinDailyScheduleTask - (.Lenovo Group Ltd..) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [BatteryGaugeAddinDailyScheduleTask] =>.Lenovo Group Ltd. C:\WINDOWS\System32\Tasks\npcapwatchdog - (..) -- C:\Program Files\Npcap\CheckStatus.bat [] C:\WINDOWS\System32\Tasks\Microsoft\Windows\PI\SecureBootEncodeUEFI - (...) -- C:\WINDOWS\system32\SecureBootEncodeUEFI.exe [] C:\WINDOWS\System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB - (.Mozilla Foundation.) -- C:\Program Files\Mozilla Firefox\default-browser-agent.exe [do-task "308046B0AF4A39CB.do-task] =>.Mozilla Foundation C:\WINDOWS\System32\Tasks\Core Temp Autostart gokpo - (.ALCPU.) -- C:\Program Files\Core Temp\Core Temp.exe [] =>.Alcpu C:\WINDOWS\System32\Tasks\Lenovo\Vantage\Schedule\LenovoSystemUpdateAddin_WeeklyTask - (.Lenovo Group Ltd..) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [LenovoSystemUpdateAddin_WeeklyTask] =>.Lenovo Group Ltd. C:\WINDOWS\System32\Tasks\Lenovo\UDC\Lenovo UDC Monitor - (.Lenovo Group Ltd..) -- C:\WINDOWS\system32\drivers\lenovo\udc\data\InfBackup\UdcInfInstaller.exe [-checkremoval] =>.Lenovo Group Ltd. C:\WINDOWS\System32\Tasks\Lenovo\Vantage\Schedule\DailyTelemetryTransmission - (.Lenovo Group Ltd..) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [DailyTelemetryTransmission] =>.Lenovo Group Ltd. ---\\ APPLICATIONS LANCÉES AU DÉMARRAGE DU SYSTÈME (17) - 1s O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Security notification icon.) -- C:\WINDOWS\system32\SecurityHealthSystray.exe [Unsigned] =>.Microsoft Corporation O4 - HKLM\..\Run: [RtkAudUService] . (.Realtek Semiconductor - Realtek HD Audio Universal Service.) -- C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_05fe713c4fadacd3\RtkAudUService64.exe =>.Realtek Semiconductor Corp.® O4 - HKLM\..\Run: [Malwarebytes Windows Firewall Control] . (.Malwarebytes - Malwarebytes Windows Firewall Control.) -- C:\Program Files\Malwarebytes\Windows Firewall Control\wfc.exe =>.Malwarebytes Inc® O4 - HKLM\..\Run: [Greenshot] . (.Greenshot - Greenshot.) -- C:\Program Files\Greenshot\Greenshot.exe =>.Open Source Developer, Robin Krom® O4 - HKLM\..\Run: [Logitech Download Assistant] . (.Logitech, Inc. - Logitech Download Assistant.) -- C:\Windows\System32\LogiLDA.dll [Unsigned] =>.Logitech, Inc. O4 - HKLM\..\Run: [WindowsMasterUI] . (.MSPCManager - MSPCManager.) -- C:\Program Files\Microsoft PC Manager\MSPCManager.exe =>.Microsoft® O4 - HKLM\..\Run: [egui] . (.ESET - ESET command line interface.) -- C:\Program Files\ESET\ESET Security\ecmds.exe =>.ESET, spol. s r.o.® O4 - HKLM\..\Run: [Open-Shell Start Menu] . (.Open-Shell - Open-Shell Menu.) -- C:\Program Files\Open-Shell\StartMenu.exe [Unsigned] =>.Open-Shell O4 - HKLM\..\Run: [Reflect UI] . (.Paramount Software UK Ltd - Macrium Reflect UI Watcher.) -- C:\Program Files\Macrium\Common\ReflectUI.exe {0EA39DC6653ADDC16FD0A739}. =>.Paramount Software UK Ltd O4 - HKCU\..\Run: [MicrosoftEdgeAutoLaunch_6E358698CD2E58123A92FA03B3394C6C] . (...) -- . [Unsigned] O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (64 bit) Setup.) -- C:\Windows\System32\OneDriveSetup.exe [Unsigned] =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (64 bit) Setup.) -- C:\Windows\System32\OneDriveSetup.exe [Unsigned] =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\RunOnce: [WAB Migrate] . (.Microsoft Corporation - Windows Contacts.) -- C:\Program Files\Windows Mail\wab.exe [Unsigned] =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [WAB Migrate] . (.Microsoft Corporation - Windows Contacts.) -- C:\Program Files\Windows Mail\wab.exe [Unsigned] =>.Microsoft Corporation O4 - HKLM\..\Wow6432Node\Run: [vmware-tray.exe] . (.VMware, Inc. - VMware Tray Process.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe =>.VMware, Inc.® O4 - HKLM\..\Wow6432Node\Run: [Adguard] . (.Adguard Software Limited - AdGuard for Windows.) -- C:\Program Files (x86)\AdGuard\Adguard.exe {00B138E6660DCA7CC377CB2F6F6027F616}. O4 - HKUS\S-1-5-21-2741647792-3826816627-2827384255-1001\..\Run: [MicrosoftEdgeAutoLaunch_6E358698CD2E58123A92FA03B3394C6C] . (...) -- . [Unsigned] ---\\ PROCESSUS LANCÉS (65) - 7s [MD5.4E82101434127D88404A88DC7391754F] - (.AMD - AMD External Events Service Module.) -- C:\Windows\System32\DriverStore\FileRepository\u0382639.inf_amd64_2f10f48364cd2b9e\B382560\atiesrxx.exe [599408] [PID.3448] =>.Advanced Micro Devices Inc.® [MD5.5DC6FC19DDE63841112CAD7BC6BE87EE] - (.AMD - AMD External Events Client Module.) -- C:\Windows\System32\DriverStore\FileRepository\u0382639.inf_amd64_2f10f48364cd2b9e\B382560\atieclxx.exe [852336] [PID.4424] =>.Advanced Micro Devices Inc.® [MD5.4CE24EA06517E83A68C5FE65771DD7D5] - (.TEFINCOM S.A. - NordVPN.) -- C:\Program Files\NordVPN\nordvpn-service.exe [254328] [PID.6628] =>.nordvpn s.a.® [MD5.6A2151C269AA6145DBA9091D10D74BF5] - (.Adguard Software Limited - AdGuard for Windows.) -- C:\Program Files (x86)\AdGuard\AdguardSvc.exe [466136] [PID.6824] {00B138E6660DCA7CC377CB2F6F6027F616}. [MD5.DBA366E8C79B00973F0A863E6FA9E589] - (.Dolby Laboratories - DAX API.) -- C:\Windows\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_8183b45ddd94e6f9\DAX3API.exe [2154560] [PID.6832] =>.Dolby Laboratories, Inc.® [MD5.E14FFCA49F0A6FF8F50C59A1B58450F5] - (.Fortemedia - Fortemedia Service.) -- C:\Windows\System32\FMService64.exe [423296] [PID.6940] [Unsigned] =>.Fortemedia [MD5.297605298D598C36E2ACA0F8058C7D78] - (.Lenovo Group Ltd. - LenovoVantageService.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\LenovoVantageService.exe [32464] [PID.6948] =>.Lenovo® [MD5.36D957766B135FB242DEF539BBFFCCE2] - (.Lenovo Group Ltd. - UDC Service.) -- C:\WINDOWS\system32\DRIVERS\Lenovo\udc\Service\UDClientService.exe [72912] [PID.6968] [Unsigned] =>.Lenovo Group Ltd. [MD5.B192126DF51E383E1C30988DD5BC0BDA] - (.Lenovo Group Ltd. - Lenovo Intelligent Sensing Service.) -- C:\Windows\System32\DriverStore\FileRepository\lnvsst.inf_amd64_4fb0470b333c7f0d\SmartSense.exe [170704] [PID.6984] =>.Lenovo® [MD5.EEDDCB550B7F208371D900C4A95A8819] - (.Lenovo(beijing) Limited - Lenovo Notebook ITS Service.) -- C:\WINDOWS\System32\LNBITSSvc.exe [1831672] [PID.6992] [Unsigned] =>.Lenovo(beijing) Limited [MD5.A54EC85E17C8B933AEDF0DBB07FB0D5A] - (.Lenovo(beijing) Limited - Lenovo Fn and function keys service.) -- C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_da914fb427b10059\LenovoUtilityService.exe [245968] [PID.7000] =>.Lenovo® [MD5.AC4003E530A811EC438B3F5CAA06077B] - (.VMware, Inc. - VMware VMnet DHCP service.) -- C:\Windows\SysWOW64\vmnetdhcp.exe [384304] [PID.7016] =>.VMware, Inc.® [MD5.87AAC64B0E7BCE1A86AA100651FC04D0] - (.VMware, Inc. - VMware USB Arbitration Service.) -- C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe [1041208] [PID.7024] =>.VMware, Inc.® [MD5.77E63B9BF07DEB17FF9D12D872FE9273] - (.MSPCManagerService - MSPCManagerService.) -- C:\Program Files\Microsoft PC Manager\MSPCManagerService.exe [102848] [PID.7032] =>.Microsoft® [MD5.8D62EF7EBEFD1FCF51D2B684597F27F4] - (.TEFINCOM S.A. - NordSec Update Service.) -- C:\Program Files\NordUpdater\NordUpdateService.exe [300408] [PID.7040] =>.nordvpn s.a.® [MD5.4851FA71AB678F6E9871FC6FBE87CF03] - (.Paramount Software UK Ltd - Macrium Reflect Utility Service.) -- C:\Program Files\Macrium\Common\MacriumService.exe [11767208] [PID.7048] {0EA39DC6653ADDC16FD0A739}. =>.Paramount Software UK Ltd [MD5.436CEDFA08F245AD52DD221BEC4480A4] - (.VMware, Inc. - VMware Authorization Service.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe [89392] [PID.7068] =>.VMware, Inc.® [MD5.4B57F95FBDBEF5E78E9E8F4AFEED99FA] - (.Malwarebytes - Malwarebytes Windows Firewall Control Servi.) -- C:\Program Files\Malwarebytes\Windows Firewall Control\wfcs.exe [116968] [PID.7076] =>.Malwarebytes Inc® [MD5.C3AABE3053FDBFCB4F39015575074309] - (.Realtek Semiconductor - Realtek HD Audio Universal Service.) -- C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_05fe713c4fadacd3\RtkAudUService64.exe [3477960] [PID.7084] =>.Realtek Semiconductor Corp.® [MD5.6EE023F00CD791995A88EC3FAC5C7DEE] - (.VMware, Inc. - VMware NAT Service.) -- C:\Windows\SysWOW64\vmnat.exe [428184] [PID.7100] =>.VMware, Inc.® [MD5.DBA366E8C79B00973F0A863E6FA9E589] - (.Dolby Laboratories - DAX API.) -- C:\Windows\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_8183b45ddd94e6f9\DAX3API.exe [2154560] [PID.9176] =>.Dolby Laboratories, Inc.® [MD5.F27E1484DA33C4AA2EB110E19A4BEDC5] - (.Lenovo Group Ltd. - Lenovo Intelligent Sensing Controller.) -- C:\Windows\System32\DriverStore\FileRepository\lnvsst.inf_amd64_4fb0470b333c7f0d\SmartSenseController.exe [293592] [PID.8796] =>.Lenovo® [MD5.D72931680DF4FABEC7C35DB5A307106E] - (.H.D.S. Hungary - Hard Disk Sentinel.) -- C:\Program Files (x86)\Hard Disk Sentinel\HDSentinel.exe [6160216] [PID.9484] =>.Janos Mathe® [MD5.DD0B36BA71E37897A4ABB6965101F0A4] - (.ALCPU - CPU temperature and system information util.) -- C:\Program Files\Core Temp\Core Temp.exe [1040648] [PID.9720] {009A98ABF49419A8449C06F85C19A551A8}. =>.Alcpu [MD5.DB961F8D377A1398BFC9BC753C755260] - (.Lenovo(beijing) Limited - ITS Component.) -- C:\WINDOWS\system32\AutoModeDetect.exe [472312] [PID.9832] [Unsigned] =>.Lenovo(beijing) Limited [MD5.0F85DE456BEC05409E22238BB9B83948] - (.Lenovo(beijing) Limited - This utility controls special keyboard func.) -- C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_da914fb427b10059\FnHotkeyUtility.exe [852184] [PID.10692] =>.Lenovo® [MD5.1615D143FF8F676D1EE900732255D451] - (.Open-Shell - Open-Shell Menu.) -- C:\Program Files\Open-Shell\StartMenu.exe [265216] [PID.11128] [Unsigned] =>.Open-Shell [MD5.33F10D8C3851DEDB22ED8769ACB83EEB] - (.Paramount Software UK Ltd - Macrium Reflect UI Watcher.) -- c:\program files\Macrium\Common\reflectui.exe [9927440] [PID.5080] {0EA39DC6653ADDC16FD0A739}. =>.Paramount Software UK Ltd [MD5.EADC846FEEBC8D7A03FCABA219CB712D] - (.Malwarebytes - Malwarebytes Tray Application.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe [8319696] [PID.14656] =>.Malwarebytes Inc.® [MD5.C3AABE3053FDBFCB4F39015575074309] - (.Realtek Semiconductor - Realtek HD Audio Universal Service.) -- C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_05fe713c4fadacd3\RtkAudUService64.exe [3477960] [PID.13872] =>.Realtek Semiconductor Corp.® [MD5.4D4EF635B812CAE7EFE1D91F254708F5] - (.Malwarebytes - Malwarebytes Windows Firewall Control.) -- C:\Program Files\Malwarebytes\Windows Firewall Control\wfc.exe [640232] [PID.13772] =>.Malwarebytes Inc® [MD5.346D22939E3079901F0DFAC7ADD71C94] - (.Greenshot - Greenshot.) -- C:\Program Files\Greenshot\Greenshot.exe [527792] [PID.15540] =>.Open Source Developer, Robin Krom® [MD5.E4CE83E9A77E2F5D9B5D36CB723A0F0B] - (.MSPCManager - MSPCManager.) -- C:\Program Files\Microsoft PC Manager\MSPCManager.exe [630208] [PID.15896] =>.Microsoft® [MD5.DEB56CBDC8471C364931BF31CF7240FD] - (.ESET - ESET Proxy GUI.) -- C:\Program Files\ESET\ESET Security\eguiproxy.exe [1116280] [PID.16040] =>.ESET, spol. s r.o.® [MD5.99EB297F5C158CD40E17FB31378DB95B] - (.TEFINCOM S.A. - NordVPN.) -- C:\Program Files\NordVPN\NordVPN.exe [253816] [PID.16356] =>.nordvpn s.a.® [MD5.D5531A4CE778FFA3B43437B6291F17D3] - (.Lenovo Group Ltd. - .) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\LenovoVantage-(VantageCoreAddin).exe [43216] [PID.11576] =>.Lenovo® [MD5.EE904689CDCC542B94B4B073D52C79A3] - (.Alexandr Irza - Volume² - advanced Windows volume control.) -- C:\Programmes Portables\Volume2\Volume2.exe [4455936] [PID.12380] [Unsigned] =>.Alexandr Irza [MD5.4F9B729B12EC4BDA54DDFC6BDD28CA03] - (.ESET - ESET Online payment protection frame.) -- C:\Program Files\ESET\ESET Security\eOPPFrame.exe [246088] [PID.14052] =>.ESET, spol. s r.o.® [MD5.B42075B402610199B90E1E1DD197E8FA] - (.File-New-Project - EarTrumpet.) -- C:\Program Files\WindowsApps\40459File-New-Project.EarTrumpet_2.2.1.0_x86__1sdd7yawvg6ne\EarTrumpet\EarTrumpet.exe [1305192] [PID.16348] {33000042699E561D96E52D5C56000000004269}. [MD5.A8336F45459A301D4C5CF342B5036C1B] - (.2019 emoacht - Monitorian.) -- C:\Program Files\WindowsApps\10186emoacht.Monitorian_4.0.1.0_neutral__0q7myvhtpbc7w\MonitorianPlus\MonitorianPlus.exe [182784] [PID.16588] [Unsigned] [MD5.A2DAC33B157D23895ABCC1C9E1A37E79] - (.VMware, Inc. - VMware Tray Process.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe [124568] [PID.17492] =>.VMware, Inc.® [MD5.1CBA97C86D05B73F6EBB3638CFE54D06] - (.LRepacks - CareUEyes Portable Launcher.) -- C:\Programmes Portables\CareUEyes\CareUEyesPortable.exe [148006] [PID.17728] [Unsigned] [MD5.15C39C8DF066F84CDA20E5AD4CFAC956] - (.The ElevenClock Project - ElevenClock.) -- C:\Users\gokpo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ElevenClock.exe [50866652] [PID.18052] [Unsigned] [MD5.8C6D07AA9C46677929416F1DA085213A] - (.Adguard Software Limited - AdGuard for Windows.) -- C:\Program Files (x86)\AdGuard\Adguard.exe [6343896] [PID.18224] {00B138E6660DCA7CC377CB2F6F6027F616}. [MD5.8C9610AA97E5AAA47E75FF3309BA3B0D] - (.Paramount Software UK Ltd - Macrium Reflect Monitor.) -- c:\program files\Macrium\Common\reflectmonitor.exe [27517368] [PID.18428] {0EA39DC6653ADDC16FD0A739}. =>.Paramount Software UK Ltd [MD5.B9A8FAD4B8A53F35C47E449F1E92B910] - (.https://care-eyes.com - CareUEyes.) -- C:\Programmes Portables\CareUEyes\App\CareUEyes\CareUEyes.exe [5881344] [PID.9104] [Unsigned] =>.https://care-eyes.com [MD5.15C39C8DF066F84CDA20E5AD4CFAC956] - (.The ElevenClock Project - ElevenClock.) -- C:\Users\gokpo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ElevenClock.exe [50866652] [PID.18632] [Unsigned] [MD5.8E2EB19C307222723C374D5BE952DBC3] - (...) -- C:\Users\gokpo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Gest.exe [2592256] [PID.19184] [Unsigned] [MD5.A6B3DB4D854FB6A64669427E4B2093A6] - (...) -- C:\Users\gokpo\AppData\Roaming\Gest\GestUpdater.exe [824320] [PID.19268] [Unsigned] [MD5.BEFD0C42447A7A09694EBD82729E52B2] - (.EnTech Taiwan - iRotate.) -- C:\Program Files (x86)\iRotate\iRotate.exe [58104] [PID.19308] [Unsigned] =>.EnTech Taiwan [MD5.B7551E8B44B3EBBC1098945EEE4E1508] - (.Rainmeter - Rainmeter desktop customization tool.) -- C:\Program Files\Rainmeter\Rainmeter.exe [475512] [PID.19380] {00D6AA3C891FC2CBDD7E185257E922701A}. =>.Rainmeter [MD5.7DFCCC67990B6DE7F30F553A4E4612A4] - (...) -- C:\Program Files (x86)\RocketDock\RocketDock.exe [495616] [PID.18932] [Unsigned] [MD5.3C3F1BF52C7705656D872D9E9E8FBEAD] - (.Copyright (C) Georg Fischer 2009-2018 - Manages explorer folder window sizes and po.) -- C:\Programmes Portables\ShellFolderFix\ShellFolderFixUI.exe [2630656] [PID.17704] [Unsigned] [MD5.81A3429C64A1E4937DCEA742748CA886] - (.NirSoft - Volumouse Utility.) -- C:\Programmes Portables\Volumouse\volumouse.exe [94816] [PID.19152] =>.Nir Sofer® [MD5.49ABBB2B8EF50AA7A91C6B722C63944F] - (. - WinSplit executable.) -- C:\Program Files (x86)\WinSplit Revolution\WinSplit.exe [3951616] [PID.19172] [Unsigned] [MD5.30F85413CA7D3C3094A9C93F06A9D800] - (...) -- C:\Programmes Portables\Volumouse\volumouse32.exe [14848] [PID.19208] [Unsigned] [MD5.6E4C258EF2FFCC1ABAC0FC5E147B5102] - (. - WinSplit Hook System.) -- C:\Program Files (x86)\WinSplit Revolution\WinSplitDrvr32.exe [15872] [PID.19024] [Unsigned] [MD5.3BC97E022501EDEDB290B0452E95F916] - (. - WinSplit Hook System.) -- C:\Program Files (x86)\WinSplit Revolution\WinSplitDrvr64.exe [17920] [PID.16496] [Unsigned] [MD5.6DA96B41736B77D8522D63A412EE5162] - (.Ramen Software - 7+ Taskbar Tweaker.) -- C:\Users\gokpo\AppData\Local\Programs\7+ Taskbar Tweaker\7+ Taskbar Tweaker.exe [494552] [PID.18652] {00CBBF3D73B5022179285FBA169D66F030}. [MD5.C05C2528840097747FE713EAE141C27B] - (.anytxt.net - AnyTXT Searcher Indexing Service.) -- C:\Program Files\AnyTXT Searcher\atservice.exe [2474384] [PID.1368] {2981A6A35E27685D0E0AA815022A70D9}. =>.anytxt.net [MD5.D5531A4CE778FFA3B43437B6291F17D3] - (.Lenovo Group Ltd. - .) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\LenovoVantage-(DeviceSettingsSystemAddin).exe [43216] [PID.13392] =>.Lenovo® [MD5.D5531A4CE778FFA3B43437B6291F17D3] - (.Lenovo Group Ltd. - .) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\LenovoVantage-(MultimediaAddin).exe [43216] [PID.13528] =>.Lenovo® [MD5.1779E3E02DE58035B32707BCF89D434A] - (.Lenovo Group Ltd. - .) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\LenovoVantage-(SmartDisplayAddin).exe [42712] [PID.13024] =>.Lenovo® [MD5.3B8B5BA40083D84758F0F6B1B32B5974] - (.Lenovo Group Ltd. - Lenovo Intelligent Sensing Application.) -- C:\Windows\System32\DriverStore\FileRepository\lnvsst.inf_amd64_4fb0470b333c7f0d\UserSSCtrl.exe [177888] [PID.15088] =>.Lenovo® [MD5.5A7D1FB047839F501B61FB20AB44350C] - (.Nicolas Coolman - ZHPSuite.) -- C:\Users\gokpo\Downloads\ZHPSuite.exe [3512520] [PID.19504] [Unsigned] =>.Nicolas Coolman ---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (408) - 41s P2 - EXT FILE: (.Amazon Container - Amazon Container isolates your Amazon .) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\@contain-amzn.xpi [Unsigned] P2 - EXT FILE: (.Facebook Container.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\@contain-facebook.xpi [Unsigned] =>.Facebook Container P2 - EXT FILE: (.Daniel C. Howe.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\adnauseam@rednoise.org.xpi [Unsigned] P2 - EXT FILE: (.Keepa - Amazon Price Tracker - Adds price history charts and the opti.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\amptra@keepa.com.xpi [Unsigned] P2 - EXT FILE: (.Social Fixer for Facebook - Social Fixer for Facebook lets you fil.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\betterfacebook@mattkruse.com.xpi [Unsigned] P2 - EXT FILE: (.Clickbait Remover - Replaces thumbnails and modifies title.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\cb-remover@search.mozilla.org.xpi [Unsigned] P2 - EXT FILE: (...) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\clearcache@michel.de.almeida.xpi [Unsigned] P2 - EXT FILE: (...) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\close-window-button@nanpuyue.com.xpi [Unsigned] P2 - EXT FILE: (.Legitimate.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\CookieAutoDelete@kennydo.com.xpi [Unsigned] P2 - EXT FILE: (...) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\customscrollbars@computerwhiz.xpi [Unsigned] P2 - EXT FILE: (.YSM.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\danabok16@gmail.com.xpi [Unsigned] P2 - EXT FILE: (.Don't track me Google - Removes the annoying link-conversion a.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\dont-track-me-google@robwu.nl.xpi [Unsigned] P2 - EXT FILE: (.Enhancer for YouTube\u2122.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\enhancerforyoutube@maximerf.addons.mozilla.org.xpi [Unsigned] P2 - EXT FILE: (.Tampermonkey - The world's most popular userscript ma.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\firefox@tampermonkey.net.xpi [Unsigned] =>.Tampermonkey P2 - EXT FILE: (.Firefox Color - Theming experiment for Firefox Quantum.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\FirefoxColor@mozilla.com.xpi [Unsigned] P2 - EXT FILE: (.Show History Frequent Sites Button - Add a \"Show History\" button to your .) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\frequent-sites-button@jeffersonscher.com.xpi [Unsigned] P2 - EXT FILE: (.VeloViewer Strava Plugin - Additions to Strava website to provide.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\generated-naz9ca08gt0s9glxoogru7@chrome-store-foxified-unsigned.xpi [Unsigned] P2 - EXT FILE: (.Download Notifications - Notification integration for downloads.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\gnome-download-notify@ion201.xpi [Unsigned] P2 - EXT FILE: (.Consent Blocker - An ad blocker but for consent, formerl.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\google-consent@defkev.xpi [Unsigned] P2 - EXT FILE: (.Legitimate.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\https-everywhere@eff.org.xpi [Unsigned] P2 - EXT FILE: (.isbffacebook - Facebook™ Seen Blocker allows you to r.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\jid0-AcfdPqSA2Ugt2vdJh6Kj7IiOp5W@jetpack.xpi [Unsigned] P2 - EXT FILE: (.PDF Mage - Click to save page as PDF.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\jid1-GeRCnsiDhZiTvA@jetpack.xpi [Unsigned] P2 - EXT FILE: (.Swift Selection Search - Swiftly access your search engines in .) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\jid1-KdTtiCj6wxVAFA@jetpack.xpi [Unsigned] P2 - EXT FILE: (.DuckDuckGo Privacy Essentials - Privacy, simplified. Protect your data.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\jid1-ZAdIEUB7XOzOJw@jetpack.xpi [Unsigned] =>.DuckDuckGo Privacy Essentials P2 - EXT FILE: (.Language: English (GB) - Firefox Language Pack for English (GB).) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\langpack-en-GB@firefox.mozilla.org.xpi [Unsigned] P2 - EXT FILE: (.Language: Fran\u00e7ais (French) - Firefox Language Pack for Fran\u00e7ai.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\langpack-fr@firefox.mozilla.org.xpi [Unsigned] P2 - EXT FILE: (...) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\linkgopher@oooninja.com.xpi [Unsigned] P2 - EXT FILE: (.Load Progress Bar - Adds minimalistic load progress bar on.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\load-progress-bar@luben.github.com.xpi [Unsigned] P2 - EXT FILE: (...) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\maximize-window-button@nanpuyue.com.xpi [Unsigned] P2 - EXT FILE: (...) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\minimize-window-button@nanpuyue.com.xpi [Unsigned] P2 - EXT FILE: (...) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\multipletab@piro.sakura.ne.jp.xpi [Unsigned] P2 - EXT FILE: (.Navigate Up WE - Navigate up one or more URL levels..) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\navigateup-we@DW-dev.xpi [Unsigned] P2 - EXT FILE: (.Neat URL.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\neaturl@hugsmile.eu.xpi [Unsigned] P2 - EXT FILE: (.Legitimate.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\newtabtools@darktrojan.net.xpi [Unsigned] P2 - EXT FILE: (.Legitimate.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\openwith@darktrojan.net.xpi [Unsigned] P2 - EXT FILE: (...) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\playbackSpeed@waldemar.b.xpi [Unsigned] P2 - EXT FILE: (...) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\PopupVideoWebExt@ettoolong.xpi [Unsigned] P2 - EXT FILE: (.Reopen in Private - Reopens the current tab into a private.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\reopen-in-private@apps.jeurissen.co.xpi [Unsigned] P2 - EXT FILE: (.Right Click Opens Link New Tab Correct - Same as 'Right Click Opens Link in New.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\rightclicknewtab@bgdam.com.xpi [Unsigned] P2 - EXT FILE: (...) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\simple-translate@sienori.xpi [Unsigned] P2 - EXT FILE: (...) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\skipredirect@sblask.xpi [Unsigned] P2 - EXT FILE: (.Sort Bookmarks - Sorts bookmarks..) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\sort-bookmarks@heftig.xpi [Unsigned] P2 - EXT FILE: (.SoundFixer - Lets you fix annoying sound problems i.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\soundfixer@unrelenting.technology.xpi [Unsigned] P2 - EXT FILE: (.SponsorBlock.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\sponsorBlocker@ajay.app.xpi [Unsigned] =>.SponsorBlock P2 - EXT FILE: (...) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\Tab-Session-Manager@sienori.xpi [Unsigned] P2 - EXT FILE: (.Tabby - Window and Tab Manager - Manage great amounts of windows and ta.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\tabby@whatsyouridea.com.xpi [Unsigned] P2 - EXT FILE: (.Legitimate.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\tb-tab-close-history-single@codefisher.org.xpi [Unsigned] P2 - EXT FILE: (.uBlock Origin.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\uBlock0@raymondhill.net.xpi [Unsigned] =>.uBlock Origin P2 - EXT FILE: (...) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\uscriptplus@mol.com.xpi [Unsigned] P2 - EXT FILE: (...) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\webextension@metamask.io.xpi [Unsigned] P2 - EXT FILE: (.Privacy Possum.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\woop-NoopscooPsnSXQ@jetpack.xpi [Unsigned] =>.Privacy Possum P2 - EXT FILE: (.Zoom Page WE - Zoom web pages (either per-site or per.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\zoompage-we@DW-dev.xpi [Unsigned] =>.Zoom Page WE P2 - EXT FILE: (.Imagus.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{00000f2a-7cde-4f20-83ed-434fcb420d71}.xpi [Unsigned] =>.Imagus P2 - EXT FILE: (.TWP - Translate Web Pages.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{036a55b4-5e72-4d05-a06c-cba2dfcc134a}.xpi [Unsigned] P2 - EXT FILE: (.audio-only-for-youtube - Listen to audio (no video) in YouTube .) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{04c0e786-13ad-428f-8106-697cf0dc9701}.xpi [Unsigned] P2 - EXT FILE: (...) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{09420bd6-3c35-444d-b85c-74d51fe3df4f}.xpi [Unsigned] P2 - EXT FILE: (.Windows 11 Light.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{0ce12f69-1f50-48b9-ae3f-ff2725f645a9}.xpi [Unsigned] P2 - EXT FILE: (.YT NonStop - Kiss the annoying \"Video paused. Cont.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{0d7cafdd-501c-49ca-8ebb-e3341caaa55e}.xpi [Unsigned] P2 - EXT FILE: (.Flagfox.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}.xpi [Unsigned] =>.Flagfox P2 - EXT FILE: (...) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{104db41e-43f7-4484-bda8-a59536364925}.xpi [Unsigned] P2 - EXT FILE: (...) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{14e605a0-6fdd-43e9-891a-29f6e481db24}.xpi [Unsigned] P2 - EXT FILE: (.PopUpOFF - Removes and prevents popups, overlays .) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{154cddeb-4c8b-4627-a478-c7e5b427ffdf}.xpi [Unsigned] P2 - EXT FILE: (...) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{287dcf75-bec6-4eec-b4f6-71948a2eea29}.xpi [Unsigned] P2 - EXT FILE: (.Chameleon.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{3579f63b-d8ee-424f-bbb6-6d0ce3285e6a}.xpi [Unsigned] =>.Chameleon P2 - EXT FILE: (.Snoopy white.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{40b588cf-e8d6-4035-a4e4-ad46707bbc25}.xpi [Unsigned] P2 - EXT FILE: (...) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{446900e4-71c2-419f-a6a7-df9c091e268b}.xpi [Unsigned] P2 - EXT FILE: (.Open in new tab - A context menu to open things in a new.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{4a9cf29c-3661-4a7c-8df3-0e046c9660da}.xpi [Unsigned] P2 - EXT FILE: (.Gesturefy.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{506e023c-7f2b-40a3-8066-bc5deb40aebe}.xpi [Unsigned] =>.Gesturefy P2 - EXT FILE: (.Universal Bypass.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{529b261b-df0b-4e3b-bf42-07b462da0ee8}.xpi [Unsigned] =>.Universal Bypass P2 - EXT FILE: (.Stylebot.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{52bda3fd-dc48-4b3d-a7b9-58af57879f1e}.xpi [Unsigned] P2 - EXT FILE: (.SingleFile.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{531906d3-e22f-4a6c-a102-8057b88a1a63}.xpi [Unsigned] P2 - EXT FILE: (.4 Pages Et Rien Dedans - Un module \u00e0 des fins \u00e9ducati.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{5da86052-20df-4ebe-9e08-a156620fd202}.xpi [Unsigned] P2 - EXT FILE: (.ContextSearch web-ext.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{5dd73bb9-e728-4d1e-990b-c77d8e03670f}.xpi [Unsigned] P2 - EXT FILE: (.DuckDuckGoogle - Adds a 'Google it' button to the DuckD.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{5fe16324-5314-467a-8a68-568933cef8c0}.xpi [Unsigned] P2 - EXT FILE: (.audio-equalizer - Stylish audio equalizer in your browse.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{63d150c4-394c-4275-bc32-c464e76a891c}.xpi [Unsigned] P2 - EXT FILE: (.Don't touch my tabs! (rel=noopener) - Prevent tabs opened by a hyperlink fro.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{6b938c0c-fc53-4f27-805f-619778631082}.xpi [Unsigned] P2 - EXT FILE: (...) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{7345afcc-32b6-4a3d-8e05-189bc954e9e7}.xpi [Unsigned] P2 - EXT FILE: (.ClearURLs.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{74145f27-f039-47ce-a470-a662b129930a}.xpi [Unsigned] P2 - EXT FILE: (.Return YouTube Dislike - Returns ability to see dislikes.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{762f9885-5a13-4abd-9c77-433dcd38b8fd}.xpi [Unsigned] P2 - EXT FILE: (.Stylus.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{7a7a4a92-a2a0-41d1-9fd7-1e92480d612d}.xpi [Unsigned] =>.Stylus P2 - EXT FILE: (.Old Layout for Facebook - Attempt to Revert Facebook to the Old .) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{8792af17-0df8-40ab-81d3-6cc777171564}.xpi [Unsigned] P2 - EXT FILE: (...) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{8ace7694-3aea-4948-9f33-0d031a51f612}.xpi [Unsigned] P2 - EXT FILE: (.Nord Est - Un module à des fins éducatives pour v.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{8b714432-d398-46aa-a423-7b8580a972ce}.xpi [Unsigned] P2 - EXT FILE: (.strava-map-switcher - Map switcher for Strava website.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{8bc8a884-a7db-45e3-84dd-963933a87d3c}.xpi [Unsigned] P2 - EXT FILE: (...) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{8bd6d796-c31a-40ff-8cb1-92459b6443d9}.xpi [Unsigned] P2 - EXT FILE: (.Notifier for GitHub - Displays your GitHub notifications unr.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{8d1582b2-ff2a-42e0-ba40-42f4ebfe921b}.xpi [Unsigned] P2 - EXT FILE: (.Mid.Lizard.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{8fbc7259-8015-4172-9af1-20e1edfbbd3a}.xpi [Unsigned] P2 - EXT FILE: (.better-history - A Better History page inspired by Viva.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{955787d0-eb12-4903-86bc-0f8c49545c68}.xpi [Unsigned] P2 - EXT FILE: (.mute-tab - Easily mute all tabs with just one cli.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{95c22bd8-268a-4956-9969-c7e9ba2865a9}.xpi [Unsigned] P2 - EXT FILE: (.MA Full Screen2 - A fullscreen add-on.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{9d3e517e-8e57-4afe-a77c-5204883101ed}.xpi [Unsigned] P2 - EXT FILE: (.Tracking Token Stripper - Removes Google Analytics (UTM) paramet.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{9fda17be-849d-4f5b-a326-28d25f0f6d29}.xpi [Unsigned] P2 - EXT FILE: (.toolbar-clock - Stylish analog clock in your browser t.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{a22167ff-2b10-4f9e-b56c-525f7cd1a47c}.xpi [Unsigned] P2 - EXT FILE: (.Hare – Beautiful tab manager for chrom - Search engine for chrome tabs. Increas.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{a31db4ab-e1a6-4e84-9a54-58081fdd33dd}.xpi [Unsigned] P2 - EXT FILE: (.Refined GitHub - Simplifies the GitHub interface and ad.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{a4c4eda4-fb84-4a84-b4a1-f7c1cbf2a1ad}.xpi [Unsigned] P2 - EXT FILE: (.Feedbro - Advanced Feed Reader - Read news & blo.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{a9c2ad37-e940-4892-8dce-cd73c6cbbc0c}.xpi [Unsigned] P2 - EXT FILE: (...) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{aecec67f-0d10-4fa7-b7c7-609a2db280cf}.xpi [Unsigned] P2 - EXT FILE: (.Permanent Progress Bar for YouTube.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{af838dcd-be8a-4237-8835-69fca92171d3}.xpi [Unsigned] P2 - EXT FILE: (.Zhongwen: Chinese-English Dictionary - Great tool for learning Chinese. Inclu.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{b65c7bc6-846b-4f65-b6ed-099d7e042309}.xpi [Unsigned] P2 - EXT FILE: (...) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{b6840179-45a1-4a2d-a4ef-e2815c1faa28}.xpi [Unsigned] P2 - EXT FILE: (.Snoopy and Woodstock Rainy Day.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{b7e8e408-c3a6-4b02-aba0-a561534a8ad8}.xpi [Unsigned] P2 - EXT FILE: (.LocalCDN.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{b86e4813-687a-43e6-ab65-0bde4ab75758}.xpi [Unsigned] P2 - EXT FILE: (.Michel Gutierrez.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [Unsigned] =>.Michel Gutierrez P2 - EXT FILE: (.Temporary Containers - Open tabs, websites, and links in auto.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{c607c8df-14a7-4f28-894f-29e8722976af}.xpi [Unsigned] P2 - EXT FILE: (...) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{d07ccf11-c0cd-4938-a265-2a4d6ad01189}.xpi [Unsigned] P2 - EXT FILE: (.Bypass Paywalls Clean - Bypass Paywalls of news sites.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{d133e097-46d9-4ecc-9903-fa6a722a6e0e}.xpi [Unsigned] P2 - EXT FILE: (...) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{e58d3966-3d76-4cd9-8552-1582fbc800c1}.xpi [Unsigned] P2 - EXT FILE: (.Project Insight.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{ed2ba263-72d9-420b-8422-37210f522948}.xpi [Unsigned] P2 - EXT FILE: (.mobile-view-switcher - Switch to mobile view with one click v.) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\{fa247c57-77ac-41cd-b942-332051e15ced}.xpi [Unsigned] P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\formautofill@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\pictureinpicture@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\screenshots@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\webcompat-reporter@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi =>.Mozilla P2 - EXT: (...) -- C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions\staged =>.Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\chrome C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\chrome_debugger_profile C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\crashes =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\datareporting =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extension-store =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\extensions =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\features =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\gmp =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\gmp-gmpopenh264 =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\gmp-widevinecdm =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\mediacapabilities =>Legitimate C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\minidumps =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\personality-provider =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\saved-telemetry-pings =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\security_state =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\settings =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\shader-cache =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\storage =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\weave =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\272 C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\2.0@disconnect.me C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\@breadcrumbus C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\@incognitonormal C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\@incogtab C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\@play-pause C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\@restart_web_browser C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\@testpilot-containers C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\abstract-bold-colorway@mozilla.org =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\abstract-soft-colorway@mozilla.org =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\adb@mozilla.org =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\app-menu@exe-boss C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\arc-theme@afnankhan C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\automute@ndevtk C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\autotabopener@pixelcode.none C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\avbhatt@umich.edu C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\betterfacebook@mattkruse.com C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\black-menu-for-google@carlosjeurissen.com C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\browser.controller@redmorph.com C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\CanvasBlocker@kkapsner.de C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\cheers-balanced-colorway@mozilla.org =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\cheers-soft-colorway@mozilla.org =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\close-window-button@nanpuyue.com C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\Count-Tabs@sienori C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\danabok16@gmail.com C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\edit@eros.man C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\elemental-balanced-colorway@mozilla.org =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\elemental-soft-colorway@mozilla.org =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\extension@foxtana.com C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\extension@one-tab.com C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\extension@tabliss.io C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\faked.jacob.sun.meta@gmail.faked.com C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\fbmessengerpanel@alejandrobrizuela.com.ar C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\firefox@tampermonkey.net C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\firemonkey@eros.man C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\fox@replace.fx C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\google-consent@defkev C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\hide-titlebar@nanpuyue.com C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\iridium@particlecore.github.io C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\jid0-LWzdpvwYVlFi9mYfHgWxSB6aFEY@jetpack =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\jid0-SzimoL45Ib8OddgoUBG0buQmjec@jetpack =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\jid0-YQz0l1jthOIz179ehuitYAOdBEs@jetpack =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\jid1-BoFifL9Vbdl2zQ@jetpack =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\jid1-i6dUGvCrz2WZu8@jetpack =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\jid1-KKzOGWgsW3Ao4Q@jetpack =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\jid1-MnnxcxisBPnSXQ@jetpack =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\jid1-Om7eJGwA1U8Akg@jetpack =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\jid1-q4eWFrH8o2PAhv@jetpack =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\jid1-u4yTmGAyu5AwHl@jetpack =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\jid1-Xo5SuA6qc1DFpw@jetpack =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\jid1-ZAdIEUB7XOzOJw@jetpack =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\juraj.masiar@gmail.com_ScrollAnywhere C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\limite@saveriomorelli.com C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\live-reload@blaise.io C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\load-progress-bar@luben.github.com C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\lush-soft-colorway@mozilla.org =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\maximize-window-button@nanpuyue.com C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\minimize-window-button@nanpuyue.com C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\move_tabs_hotkeys@jmmerz.github C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\multithreaded-download-manager@qw.linux-2g64.local C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\open-page-in-private-window@cpeterso.com C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\openwith@darktrojan.net =>Legitimate C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\page-translator-revised@mathnerd314.github.com C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\playbackSpeed@waldemar.b C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\PopupVideoWebExt@ettoolong C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\PopupWindow@ettoolong C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\reopen-in-private@apps.jeurissen.co C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\replace@eros.man C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\smart-referer@meh.paranoid.pk C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\tab-counter-icon@magicp.jp C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\tab-counter-plus@Loirooriol C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\tab-counter-wide@jmmerz.github C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\tab-counter@daawesomep.addons.mozilla.org C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\tab-counter@vhfmag.addons.mozilla.org C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\tabber@edgar-fouillet.fr C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\tabCounter@waldemar.b C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\tb-tab-close-history-single@codefisher.org =>Legitimate C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\tiletabs-we@DW-dev =>DW-dev C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\treestyletab@piro.sakura.ne.jp C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\tst-hoverswitch@klemens.io C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\uBlock0@raymondhill.net =>uBlock C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\uBO-Scope@raymondhill.net =>uBlock C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\uMatrix@raymondhill.net =>uBlock C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\user-agent-switcher@ninetailed.ninja C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\version-icon@magicp.jp C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\vPlayBackSpeed@redronin.de C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\web2pdfextension.17@acrobat.adobe.com =>Adobe Inc. C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\webext@tabmixplus.org C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\webextension@metamask.io C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\woop-NoopscooPsnSXQ@jetpack =>Mozilla Corporation C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\youtube-no-playlist@klemens.io C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\zoom@stefanvd.net C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\zoompage-we@DW-dev =>DW-dev C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{00000f2a-7cde-4f20-83ed-434fcb420d71} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{01fe4e49-4900-44b3-8698-905276c9f8cc} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{02bf35c3-6f86-4eb4-bea8-e70bc294a7dc} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{033d950a-38b9-4976-b19e-5f9ed7d78daa} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{05af7781-9309-46db-83ac-2aad620cff45} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{064b44b3-5bd6-4815-8731-10e84118eae9} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{065a1db8-6bba-4e1e-bcdc-d3dd53b68828} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{0aabc18f-86f3-4215-a12b-613f1325a840} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{0AE5CAA4-8BAB-11DB-AF59-ED4B56D89593} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{0b457cAA-602d-484a-8fe7-c1d894a011ba} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{0bba3f3b-6332-4a3f-8feb-52e63c8488c0} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{0d8c232a-1a0a-4eb9-ab64-1db5d2ccc18f} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{0da2e603-21ba-4422-8049-b6d9e013ed84} =>Legitimate C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{0ebad8b0-0773-4f97-83ea-93e198c30b95} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{0fb9fbf9-ede1-415b-ace5-25b216f3c087} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{1035e1b2-f208-493c-9073-bd8bfb287692} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{120928e3-440b-4d3d-9875-9c3b8a1ec593} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{124ac638-9949-4296-83e5-0a30089482fa} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{1295ae7b-8eb2-4c57-a9d7-01602e13170e} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{137ef823-2fbc-45db-a67f-56783b33e989} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{19feb84f-3a0b-4ca3-bbae-211b52eb158b} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{1c42218c-79ee-42a6-be4f-0982df3a1899} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{1d57f168-529b-4d0b-a298-b9b5d2c0f137} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{1da06cdd-565c-4f07-883f-acc01ffa8e91} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{1fd1213e-dcb2-48d9-806f-c0a8a7d0a8e7} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{21134985-699c-4ae6-81d9-1c056e660bff} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{2339288d-f701-45d0-a57f-a847e9adc6cc} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{23f28f6b-644f-46a6-9641-da2b20abc25f} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{24c52f25-6a38-464b-953f-a58022f56c2f} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{24e032ab-bf0b-41ad-b404-79abc127bcbf} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{25fce1f7-7e05-43a2-829f-600293bc1b26} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{27ff4a35-9ea4-418b-9940-c4e88b37b346} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{2b76e322-9dba-4abd-a249-08e9a6d35ea9} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{2da792d5-fc4a-4115-82be-b40bd88b9725} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{2dd89b36-1826-4b44-97b3-31021ddf2baf} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{2f648cd4-4ff2-46a2-add8-efa7806feac8} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{32e60cb6-1aee-40e4-9322-abb00b72990e} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{3421357a-727e-4df9-8764-bef68118edb9} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{353b3752-be6f-440a-af8c-766ce687f9d3} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{35dd5f9a-ca89-4643-b107-f07d09cc94b5} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{362b27e5-2e9a-47df-b434-93110c8f2fbf} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{372a5235-f720-4bb8-a079-7f4e1a1e6437} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{38e1d93f-103b-4db0-9e89-28c9e482a8af} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{39e34a35-15de-4e40-9353-d4ec1c91b9d2} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{3a8b7c3c-5589-4dc6-a254-fe29f5fbece4} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{3c078156-979c-498b-8990-85f7987dd929} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{3c3b4f23-e1e4-4a9f-998e-581c36a3ad22} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{3c6bf0cc-3ae2-42fb-9993-0d33104fdcaf} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{3cab4716-5961-4098-8762-d11f9379ea1e} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{3f3d778f-2a02-40b1-b61e-9d694eff716c} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{40b588cf-e8d6-4035-a4e4-ad46707bbc25} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{410291b4-33c9-4aa7-89ca-78927d94cfed} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{4125ef0f-6dbe-43d2-b887-e586f44cabef} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{42b3ec69-8aeb-4b65-80fb-fa80f707cd82} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{42cd8bf0-17e0-4770-9e52-01335aec981c} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{43394711-95ea-48f9-8693-c7abc17d003a} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{45b8e8e7-ba86-4ae7-963b-d9d33ae7b03d} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{45c6933d-fcbd-42d4-ae74-3d86affab37a} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{45cf9154-a39d-4c84-93e7-840362a3d8d0} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{45f2dc53-96cd-4c41-91f6-f4a73a8fb2b0} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{4853d046-c5a3-436b-bc36-220fd935ee1d} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{4c45bd6e-42d8-4394-bc71-a031b0a680c7} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{4efd4111-580f-4d62-9ea7-aa697527d826} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{51a9bbc8-2d3b-4e5d-9fb4-0fb4019bf4d2} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{54dad4a6-bfe8-4170-9c69-0f5be34cb99b} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{5ab9d1ca-5eb0-41d5-95c3-e0d81b14a002} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{5f235e81-3e86-4a07-8fda-33eab199c9b9} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{60ac7b3b-86c0-4bca-8ba2-fb25abb46bef} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{60B7679C-BED9-11E5-998D-8526BB8E7F8B} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{62f4bc4e-bbaa-4c3d-8b7e-92f18ec83c61} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{63d150c4-394c-4275-bc32-c464e76a891c} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{64a376fc-977e-4d98-ae2e-d90fd8f42fd6} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{66bb1f8a-6ba6-4762-92cc-7b38691af3a4} =>Unknown C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{66d854c2-fd1b-4857-bd0a-7d220e4834da} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{67b2c222-9d4e-4747-ad68-39e8ba76ca3b} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{6d543e64-5863-4031-a070-a1e81fd7f24a} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{6ee2c734-2355-42ff-9d70-1154e616bbbf} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{6f86d3d3-0c64-4b69-84b7-42044c9dc2b1} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{71864fba-a0ac-47f5-a514-e5f3378b9c12} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{73a6fe31-595d-460b-a920-fcc0f8843232} =>Giorgio Maone C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{73c0257e-a620-4c48-a2a8-2a9e8481a0d4} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{73e34798-80ae-44d0-8791-6dfba23b5421} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{74df8113-18d3-472d-b3c5-385b1272b7bb} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{74fe5dfe-e34b-4d80-b24d-a4080afc6e40} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{762f3716-b721-45fb-b431-da45152c0a00} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{77278c58-408b-4ab3-8bb7-db36f0c9fd8c} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{7a83460d-61b6-4e64-8f47-d034db9c0dc1} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{7dde6956-7095-49bb-bae4-480857e55f24} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{7f203266-0636-455c-b12b-9de018693dcc} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{7f5dbd00-a296-4696-aebb-06a992c1b4cf} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{80f6f2e4-eda1-417f-bf54-9645e1e20f5d} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{8763a270-b91e-4d56-8b17-31a5ad563229} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{8792af17-0df8-40ab-81d3-6cc777171564} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{8a668b18-72e2-4be7-a663-ce55c6e18a31} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{8ace7694-3aea-4948-9f33-0d031a51f612} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{8bc8a884-a7db-45e3-84dd-963933a87d3c} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{8cc0b007-e40b-46e8-9e50-e3bf021c94ab} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{8d0c1886-cb39-4833-a757-62d7efa71c1a} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{8dad967f-178d-41d4-a8de-a43366975921} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{8db82a75-48fd-452a-81cf-bd40b2e60dac} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{8e671754-fc9e-41c0-bb7c-0f575c4127d6} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{8fe94f17-89ca-48e8-8ddd-043a1bf3b599} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{90089c2c-9ab9-4d7b-a612-47c04c85c90e} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{910f9c6b-2723-433b-92c3-f01c6bc0e2a2} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{92e9cb9d-a88a-46fe-a22d-ec685770eea3} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{9350bc42-47fb-4598-ae0f-825e3dd9ceba} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{94866951-f60f-44f6-8d1a-6b2d8c88857b} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{97e914a7-b5d7-4ad9-bb4f-b09b36ea6901} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{99c277af-d778-4a0b-9faa-b1d8165f0a55} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{9a71339e-c621-4c6e-a4cf-c90750a76f1d} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{9AA46F4F-4DC7-4c06-97AF-5035170634FE} =>Smart Link C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{9b894a79-6d5d-465d-9ce7-c8777aec4ed2} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{9ba84475-4adb-4b3d-bb8b-f94f4915c039} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{a0b12e88-1e3b-41ae-a920-e257ea8b11a0} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{a0b8914a-ecc8-410e-a8ae-a1e1de5b5542} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{a22167ff-2b10-4f9e-b56c-525f7cd1a47c} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{a4c4eda4-fb84-4a84-b4a1-f7c1cbf2a1ad} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{a54613a6-c6b7-4515-81e6-a5c89d7ccfc0} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{a640ffbd-6293-4f7f-8f2f-d3e6cb4e2139} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{a655a6b2-69a5-40de-a3b8-3f7f200c95a7} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{a7f0c827-2783-4099-b02c-2ddda7573e76} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{a8332c60-5b6d-41ee-bfc8-e9bb331d34ad} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{a85876dc-c4b2-43ba-905d-f2ee9afb8860} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{a8e5fca1-24ae-4de6-b3c4-80d2d316f8f9} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{a9a7d796-4d59-4cec-bcb4-74245cafce08} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{a9bec75f-6787-417e-823b-94aa2e268b0f} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{ac1b4e8c-6ed7-447d-a3cc-b7b807930e0e} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{ae3cfee0-6213-44b2-86ec-8490f89e06b6} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{aff30dcc-be4e-4b7a-9525-d8730afc5e08} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{b10e06f0-86c1-4c17-bab6-1b1c81b6121b} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{b27481be-66d6-4781-ba8e-b8d79641e7e8} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{b2b531fc-23d3-41b5-8eea-84418f698877} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{b2d4a664-9f3c-4d61-aff6-2844c80f25d5} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{b6b1dc33-95f8-4e78-a34f-00f9127a5dd4} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{b7f9d2cd-d772-4302-8c3f-eb941af36f76} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{bc73f0f2-5806-40b4-b460-ff8c4d61b256} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{bf5706f2-72f0-4709-9051-8026ff323bd0} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{c28e42b2-28b5-45f0-bdc8-6989ae7e6a7e} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{c3c10168-4186-445c-9c5b-63f12b8e2c87} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{c607c8df-14a7-4f28-894f-29e8722976af} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{c78fc450-7ba1-458b-82f2-ca354fcd39bb} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{c79f92a4-8802-454a-9b80-607d0abb4eb1} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{c9bd7373-d29e-4e55-b3a8-d36cd4d71653} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{c9c24f33-fc85-4528-a2af-ac0facb0e461} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{cec4eb6c-8050-4df0-be9a-0ecd5b81ed0d} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{d07ccf11-c0cd-4938-a265-2a4d6ad01189} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{d133e097-46d9-4ecc-9903-fa6a722a6e0e} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{d24f663d-7b3b-4fa1-be9c-7205f1bba986} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{d5f6823c-406c-4b16-9f2c-6dd9b3740a18} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{d66a2d53-e02b-4403-954b-eb5089090153} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{d75ce8ce-eded-4560-8dc3-fb1587c6cde9} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{da51b461-cc67-4a34-8655-dfdf4e645a62} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{db74578b-15fe-4d97-8a17-2b4ee9e7bee3} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{dd10d63e-3096-4492-ab0e-5edcf4baf988} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{deb6d10c-6883-4e11-9d7c-aa2a27ccee03} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{dedb3663-6f13-4c6c-bf0f-5bd111cb2c79} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{e44f8534-9b1e-4d1e-b584-6fa1513c3c42} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{e4a1d170-6ead-47e2-afb2-3f8227e41f7c} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{e4a8a97b-f2ed-450b-b12d-ee082ba24781} =>Greasemonkey C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{e533b140-e649-4112-8ea3-7b2556be06d7} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{e58d3966-3d76-4cd9-8552-1582fbc800c1} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{e753a4c4-f275-4c8a-a96f-80be659836c6} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{e7d64fb6-fc6d-4f78-a7bc-3ee8beb72680} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{e839c3f9-298e-4cd0-99e0-464431cb7c34} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{ebe39161-a77d-4523-a14a-db3f0834be08} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{ee460c5b-5503-4197-9ba9-2f99b09da8dc} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{ef2fb037-c3f9-47e5-8763-35f97587e88f} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{f004c841-12fa-4f3f-8b26-fc33813094d1} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{f01b6ea5-5910-4359-afee-9f0de052c7a1} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{f21c23d3-ef76-474e-bcdb-e7d67645c0ae} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{f587d35c-943b-4323-8aee-cd8691df4db0} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{f69e22c7-bc50-414a-9269-0f5c344cd94c} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{f6ca2dfb-43a6-4334-9fad-8d5a71a1fe67} =>Unknown C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{f76596c7-9ad5-44e8-ba56-0e2319537a6e} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{f7c98944-125c-43fe-98fa-95e6e1483dda} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{f924a79c-afab-416c-b238-f1236d23342a} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{f9258c33-2e4d-4d3c-8bf9-d262edda5d40} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{fbca9f02-f999-4baf-9143-332ec192abfc} C:\Users\gokpo\AppData\Roaming\Mozilla\Firefox\Profiles\72rxhon0.default\browser-extension-data\{fd716f7a-1fdd-425d-9e03-7d0dae9a8c2e} C:\Program Files\Mozilla Firefox\defaults\pref\config-prefs.js C:\Program Files\Mozilla Firefox\defaults\pref\pref("general.config.sandbox_enabled", false); ---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (17) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.msn.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://mystart.lenovo.com =>.Lenovo Group Limited R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.22621.1105 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation ---\\ INTERNET EXPLORER, Site de confiance et site sensible (1) - 0s ~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad) ---\\ MICROSOFT EDGE, Plugin,Favoris,Démarrage,Recherche,Extension (14) - 0s E2 - GCE: Preference [gokpo][User Data\Default\Extensions] [caoacbimdbbljakfhgikoodekdnlcgpk] DuckDuckGo =>.DuckDuckGo E2 - GCE: Preference [gokpo][User Data\Default\Extensions] [djkjpnciiommncecmdefpdllknjdmmmo] Cookie AutoDelete E2 - GCE: Preference [gokpo][User Data\Default\Extensions] [jbkfoedolllekgbhcbcoahefnbanhhlh] Bitwarden =>.Legitimate E2 - GCE: Preference [gokpo][User Data\Default\Extensions] [jmjflgjpcpepeafmmgdpfkogkghcpiha] Edge relevant text changes E2 - GCE: Preference [gokpo][User Data\Default\Extensions] [lbcpkafjpgemhnnfecglcacniceiimik] Netflix Pixie E2 - GCE: Preference [gokpo][User Data\Default\Extensions] [lmijmgnfconjockjeepmlmkkibfgjmla] Decentraleyes =>.Legitimate E2 - GCE: Preference [gokpo][User Data\Default\Extensions] [odfafepnkmbhccpbejgmiehpchacaeak] uBlock Origin =>.Raymond Hill E2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [djkjpnciiommncecmdefpdllknjdmmmo] E2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [jbkfoedolllekgbhcbcoahefnbanhhlh] =>.Legitimate E2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [jdiccldimpdaibmpdkjnbmckianbfold] =>.Microsoft Corporation E2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [lmijmgnfconjockjeepmlmkkibfgjmla] E2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [odfafepnkmbhccpbejgmiehpchacaeak] =>.Raymond Hill E2 - GCE: Preference [gokpo][User Data\Default\Managed Extension Settings] [lmijmgnfconjockjeepmlmkkibfgjmla] E2 - GCE: Preference [gokpo][User Data\Default\Managed Extension Settings] [odfafepnkmbhccpbejgmiehpchacaeak] =>.Raymond Hill ---\\ VIVALDI, Démarrage,Recherche,Plugins (115) - 2s V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [Temp] V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [bbeaicapbccfllodepmimpkgecanonai] BlockTube Options V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [bgjfekefhjemchdeigphccilhncnjldn] smartUp V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [bgnkhhnnamicmpeenaelnjfhikgbkllg] Adguard Software Ltd =>.Legitimate V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [bmejphbfclcpmpohkggcjeibfilpamia] Netcraft Extension =>.Netcraft V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [bmjmipppabdlpjccanalncobmbacckjn] V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [bolggfoncklhniejomgplkjcllmnonbh] V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [ceoiohgolheciaefomofjboicekphfmp] V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [cjpalhdlnbpafiamejdnhcphjbkeiagm] uBlock Origin =>.Raymond Hill V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [clngdbkpkpeebahjckkjfobafhncgmne] Stylus =>.Legitimate V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [eimadpbcbfnmbkopoojfekhnkhdbieeh] Dark Reader =>.Alexander Shutov V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [einpaelgookohagofgnnkcfjbkkgepnp] https://github.com/tarampampam V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [ejonaglbdpcfkgbcnidjlnjogfdgbofp] modern scroll V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [emikbbbebcdfohonlaifafnoanocnebl] minerBlock =>.CryptoMineDev V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [fbhiolckidkciamgcobkokpelckgnnol] CookieBlock V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [fbohpolgemkbfphodcfgnpjcmedcjhpn] Adguard Software Ltd =>.Legitimate V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [fhcgjolkccmbidfldomjliifgaodjagh] Cookie AutoDelete V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [fkopaaikpmfhpmoobnmklgmcgmhgfkcd] V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [gebbhagfogifgggkldgodflihgfeippi] V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [himccccaelhgphommckogopgpddngimf] Extension Control V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [hipnollokpifchndpfhnlfjbdnkhiigg] Vivaldi Forum mod V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [hkgfoiooedgoejojocmhlaklaeopbecg] Picture-in-Picture Extension (by Google) V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [iabeihobmhlgpkcgjiloemdbofjbdcic] Bitly V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [iaiomicjabeggjcfkbimgmglanimpnae] V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [ibeemfhcbbikonfajhamlkdgedmekifo] CSS Exfil Protection V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [imohnlganmafcmidafklgkgfgaagiohn] Add to Speed Dial V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [jaibjcnlipcgpfbmedodbcddcoflhmho] au-revoir-utm V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [jehmdpemhgfgjblpkilmeoafmkhbckhi] Juraj Mäsiar V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [jinjaccalgkegednnccohejagnlnfdag] Gerald V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [jnfbbgcbjbmndefaeopjlicndkpoiijj] Sound Enhancement V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [khpcanbeojalbkpgpmjpdkjnkfcgfkhb] Chromium Wheel Smooth Scroller V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [kmdfbacgombndnllogoijhnggalgmkon] IP Whois & Flags Chrome & Websites Rating =>.myip.ms V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [lajondecmobodlejlcjllhojikagldgd] Stefan vd =>.stefanvd.net V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [ldpochfccmkkmhdbclfhpagapcfdljkj] Decentraleyes =>.Legitimate V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [mdjildafknihdffpkfmmpnpoiajfjnjd] Consent-O-Matic V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [mefgmmbdailogpfhfblcnnjfmnpnmdfa] Feedbro V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [megbklhjamjbcafknkgmokldgolkdfig] SessionBox =>.SessionBox V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [mhjkeimpgjokbjmioglhlngefbddppnn] Right Click Opens Link New Tab Correct Order =>Hijacker.Browser V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [mnjggcdmjocbbbhaepdhchncahnbgone] SponsorBlock V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [mpbjkejclgfgadiemmefgebjfooflfhl] Armin Sebastian V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [mpiodijhokgodhhofbcjdecpffjipkle] SingleFile V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [ndfnfhnlgoocpbbjjjfmiojdfcgcfomn] Search all Tabs V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [ngmfehckdahhmlbabjemcepfhgnoddlo] Draw on Page V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [njdfdhgcmkocbgbhcioffdbicglldapd] LocalCDN V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [njkmjblmcfiobddjgebnoeldkjcplfjb] Trace Tracking Protection V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [nngceckbapebfimnlniiiahkandclblb] Bitwarden =>.Legitimate V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [oeopbcgkkoapgobdbedcemjljbihmemj] Checker Plus for Gmail™ =>.jasonsavard.com V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [onnimgmpopjkpbnmnjgcfkndeefgkkig] Consent Popup Blocker V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [pncfbmialoiaghdehhbnbhkkgmjanfhe] V2 - GCE: Preference [gokpo][User Data\Default\Extensions] [ponfpcnoihfmfllpaingbgckeeldkhle] Enhancer for YouTube™ =>.Maxime RF V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [bbeaicapbccfllodepmimpkgecanonai] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [bgnkhhnnamicmpeenaelnjfhikgbkllg] =>.adguard.com {AdBlocker} V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [bmejphbfclcpmpohkggcjeibfilpamia] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [bmjmipppabdlpjccanalncobmbacckjn] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [bolggfoncklhniejomgplkjcllmnonbh] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [ceoiohgolheciaefomofjboicekphfmp] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [cjpalhdlnbpafiamejdnhcphjbkeiagm] =>.uBlock Origin V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [clngdbkpkpeebahjckkjfobafhncgmne] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [eimadpbcbfnmbkopoojfekhnkhdbieeh] =>.Legitimate V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [einpaelgookohagofgnnkcfjbkkgepnp] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [emikbbbebcdfohonlaifafnoanocnebl] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [fbhiolckidkciamgcobkokpelckgnnol] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [fbohpolgemkbfphodcfgnpjcmedcjhpn] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [fhcgjolkccmbidfldomjliifgaodjagh] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [fkopaaikpmfhpmoobnmklgmcgmhgfkcd] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [hipnollokpifchndpfhnlfjbdnkhiigg] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [iabeihobmhlgpkcgjiloemdbofjbdcic] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [iaiomicjabeggjcfkbimgmglanimpnae] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [ibeemfhcbbikonfajhamlkdgedmekifo] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [imohnlganmafcmidafklgkgfgaagiohn] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [jehmdpemhgfgjblpkilmeoafmkhbckhi] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [jinjaccalgkegednnccohejagnlnfdag] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [jnfbbgcbjbmndefaeopjlicndkpoiijj] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [khpcanbeojalbkpgpmjpdkjnkfcgfkhb] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [lajondecmobodlejlcjllhojikagldgd] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [ldpochfccmkkmhdbclfhpagapcfdljkj] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [mdjildafknihdffpkfmmpnpoiajfjnjd] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [mefgmmbdailogpfhfblcnnjfmnpnmdfa] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [megbklhjamjbcafknkgmokldgolkdfig] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [mnjggcdmjocbbbhaepdhchncahnbgone] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [mpbjkejclgfgadiemmefgebjfooflfhl] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [mpiodijhokgodhhofbcjdecpffjipkle] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [ndfnfhnlgoocpbbjjjfmiojdfcgcfomn] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [ngmfehckdahhmlbabjemcepfhgnoddlo] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [njdfdhgcmkocbgbhcioffdbicglldapd] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [njkmjblmcfiobddjgebnoeldkjcplfjb] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [nngceckbapebfimnlniiiahkandclblb] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [oeopbcgkkoapgobdbedcemjljbihmemj] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [pncfbmialoiaghdehhbnbhkkgmjanfhe] V2 - GCE: Preference [gokpo][User Data\Default\Local Extension Settings] [ponfpcnoihfmfllpaingbgckeeldkhle] V2 - GCE: Preference [gokpo][User Data\Default\Local App Settings] [mpognobbkildjkofajifpdfhcoklimli] =>.Vivaldi Software V2 - GCE: Preference [gokpo][User Data\Default\Managed Extension Settings] [cjpalhdlnbpafiamejdnhcphjbkeiagm] =>.uBlock Origin V2 - GCE: Preference [gokpo][User Data\Default\Managed Extension Settings] [ldpochfccmkkmhdbclfhpagapcfdljkj] V2 - GCE: Preference [gokpo][User Data\Default\Managed Extension Settings] [oeopbcgkkoapgobdbedcemjljbihmemj] V2 - GCE: Preference [gokpo][User Data\Default\Sync Extension Settings] [bgjfekefhjemchdeigphccilhncnjldn] V2 - GCE: Preference [gokpo][User Data\Default\Sync Extension Settings] [bmejphbfclcpmpohkggcjeibfilpamia] V2 - GCE: Preference [gokpo][User Data\Default\Sync Extension Settings] [ceoiohgolheciaefomofjboicekphfmp] V2 - GCE: Preference [gokpo][User Data\Default\Sync Extension Settings] [clngdbkpkpeebahjckkjfobafhncgmne] V2 - GCE: Preference [gokpo][User Data\Default\Sync Extension Settings] [eimadpbcbfnmbkopoojfekhnkhdbieeh] =>.Legitimate V2 - GCE: Preference [gokpo][User Data\Default\Sync Extension Settings] [einpaelgookohagofgnnkcfjbkkgepnp] V2 - GCE: Preference [gokpo][User Data\Default\Sync Extension Settings] [ejonaglbdpcfkgbcnidjlnjogfdgbofp] V2 - GCE: Preference [gokpo][User Data\Default\Sync Extension Settings] [fbhiolckidkciamgcobkokpelckgnnol] V2 - GCE: Preference [gokpo][User Data\Default\Sync Extension Settings] [fkopaaikpmfhpmoobnmklgmcgmhgfkcd] V2 - GCE: Preference [gokpo][User Data\Default\Sync Extension Settings] [gebbhagfogifgggkldgodflihgfeippi] V2 - GCE: Preference [gokpo][User Data\Default\Sync Extension Settings] [himccccaelhgphommckogopgpddngimf] V2 - GCE: Preference [gokpo][User Data\Default\Sync Extension Settings] [hipnollokpifchndpfhnlfjbdnkhiigg] V2 - GCE: Preference [gokpo][User Data\Default\Sync Extension Settings] [hkgfoiooedgoejojocmhlaklaeopbecg] V2 - GCE: Preference [gokpo][User Data\Default\Sync Extension Settings] [jehmdpemhgfgjblpkilmeoafmkhbckhi] V2 - GCE: Preference [gokpo][User Data\Default\Sync Extension Settings] [jnfbbgcbjbmndefaeopjlicndkpoiijj] V2 - GCE: Preference [gokpo][User Data\Default\Sync Extension Settings] [lajondecmobodlejlcjllhojikagldgd] V2 - GCE: Preference [gokpo][User Data\Default\Sync Extension Settings] [mdjildafknihdffpkfmmpnpoiajfjnjd] V2 - GCE: Preference [gokpo][User Data\Default\Sync Extension Settings] [mhjkeimpgjokbjmioglhlngefbddppnn] V2 - GCE: Preference [gokpo][User Data\Default\Sync Extension Settings] [mnjggcdmjocbbbhaepdhchncahnbgone] V2 - GCE: Preference [gokpo][User Data\Default\Sync Extension Settings] [njkmjblmcfiobddjgebnoeldkjcplfjb] V2 - GCE: Preference [gokpo][User Data\Default\Sync Extension Settings] [oeopbcgkkoapgobdbedcemjljbihmemj] ---\\ INTERNET EXPLORER,Proxy Management (3) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft ---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet= ---\\ ÉTUDE DU FICHIER HOSTS (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (2) - 1s O2 - BHO: IEToEdge BHO [64Bits] - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} . (.Microsoft Corporation - IEToEdge BHO.) -- C:\Program Files (x86)\Microsoft\Edge\Application\109.0.1518.78\BHO\ie_to_edge_bho_64.dll =>.Microsoft® O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll =>.Microsoft® ---\\ RACCOURCIS GLOBAL STARTUP (70) - 4s O4 - GS\Desktop [Alex]: JaxCore.lnk . (.Rainmeter - Launch JaxCore.) C:\Program Files (x86)\Rainmeter\Rainmeter.exe !ActivateConfig #JaxCore\Main Home.ini [Unsigned] =>.Rainmeter O4 - GS\Desktop [Alex]: Lock.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\System32\rundll32.exe user32.dll,LockWorkStation =>..Microsoft Corporation O4 - GS\Desktop [Alex]: ZHPSuite.lnk . (.Nicolas Coolman - ZHPSuite.) C:\Users\gokpo\AppData\Roaming\ZHP\ZHPSuite.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Alex]: Hard Disk Sentinel.lnk . (.H.D.S. Hungary - Hard Disk Sentinel.) C:\Program Files (x86)\Hard Disk Sentinel\HDSentinel.exe =>.Janos Mathe® O4 - GS\Quicklaunch [Alex]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\Quicklaunch [Alex]: Microsoft Outlook.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE /recycle =>.Microsoft® O4 - GS\Quicklaunch [Alex]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\gokpo\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS® O4 - GS\sendTo [Alex]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [Alex]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Startup [Alex]: Background Muter.lnk . (.WinBGMuter - WinBGMuter.) C:\Users\gokpo\OneDrive\Bureau\WinBGMuter\WinBGMuter.exe --startMinimized [Unsigned] O4 - GS\Startup [Alex]: CareUEyesPortable.lnk . (.LRepacks - CareUEyes Portable Launcher.) C:\Programmes Portables\CareUEyes\CareUEyesPortable.exe [Unsigned] O4 - GS\Startup [Alex]: Gest.lnk . (...) C:\Users\gokpo\AppData\Roaming\Gest\GestLauncher.exe [Unsigned] O4 - GS\Startup [Alex]: iRotate.lnk . (.EnTech Taiwan - iRotate.) C:\Program Files (x86)\iRotate\iRotate.exe [Unsigned] =>.EnTech Taiwan O4 - GS\Startup [Alex]: Mem Reduct.lnk . (.Henry++ - Mem Reduct.) C:\Program Files\Mem Reduct\memreduct.exe [Unsigned] =>.Henry++ O4 - GS\Startup [Alex]: Rainmeter.lnk . (.Rainmeter - Rainmeter desktop customization tool.) C:\Program Files\Rainmeter\Rainmeter.exe {00D6AA3C891FC2CBDD7E185257E922701A}. =>.Rainmeter O4 - GS\Startup [Alex]: RocketDock.lnk . (...) C:\Program Files (x86)\RocketDock\RocketDock.exe [Unsigned] O4 - GS\Startup [Alex]: ShellFolderFix.lnk . (.Copyright (C) Georg Fischer 2009-2018 - Manages explorer folder window sizes and po.) C:\Programmes Portables\ShellFolderFix\ShellFolderFixUI.exe /autostart [Unsigned] O4 - GS\Startup [Alex]: Volume2.lnk . (.Alexandr Irza - Volume² - advanced Windows volume control.) C:\Programmes Portables\Volume2\Volume2.exe [Unsigned] =>.Alexandr Irza O4 - GS\Startup [Alex]: volumouse.lnk . (.NirSoft - Volumouse Utility.) C:\Programmes Portables\Volumouse\volumouse.exe =>.Nir Sofer® O4 - GS\Startup [Alex]: WinSplit Revolution.lnk . (...) C:\Program Files (x86)\WinSplit Revolution\WinSplit.exe [Unsigned] =>.WinSplit-Revolution O4 - GS\Desktop [d3388]: JaxCore.lnk . (.Rainmeter - Launch JaxCore.) C:\Program Files (x86)\Rainmeter\Rainmeter.exe !ActivateConfig #JaxCore\Main Home.ini [Unsigned] =>.Rainmeter O4 - GS\Desktop [d3388]: Lock.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\System32\rundll32.exe user32.dll,LockWorkStation =>..Microsoft Corporation O4 - GS\Desktop [d3388]: ZHPSuite.lnk . (.Nicolas Coolman - ZHPSuite.) C:\Users\gokpo\AppData\Roaming\ZHP\ZHPSuite.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [d3388]: Hard Disk Sentinel.lnk . (.H.D.S. Hungary - Hard Disk Sentinel.) C:\Program Files (x86)\Hard Disk Sentinel\HDSentinel.exe =>.Janos Mathe® O4 - GS\Quicklaunch [d3388]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\Quicklaunch [d3388]: Microsoft Outlook.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE /recycle =>.Microsoft® O4 - GS\Quicklaunch [d3388]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\gokpo\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS® O4 - GS\sendTo [d3388]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [d3388]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Startup [d3388]: Background Muter.lnk . (.WinBGMuter - WinBGMuter.) C:\Users\gokpo\OneDrive\Bureau\WinBGMuter\WinBGMuter.exe --startMinimized [Unsigned] O4 - GS\Startup [d3388]: CareUEyesPortable.lnk . (.LRepacks - CareUEyes Portable Launcher.) C:\Programmes Portables\CareUEyes\CareUEyesPortable.exe [Unsigned] O4 - GS\Startup [d3388]: Gest.lnk . (...) C:\Users\gokpo\AppData\Roaming\Gest\GestLauncher.exe [Unsigned] O4 - GS\Startup [d3388]: iRotate.lnk . (.EnTech Taiwan - iRotate.) C:\Program Files (x86)\iRotate\iRotate.exe [Unsigned] =>.EnTech Taiwan O4 - GS\Startup [d3388]: Mem Reduct.lnk . (.Henry++ - Mem Reduct.) C:\Program Files\Mem Reduct\memreduct.exe [Unsigned] =>.Henry++ O4 - GS\Startup [d3388]: Rainmeter.lnk . (.Rainmeter - Rainmeter desktop customization tool.) C:\Program Files\Rainmeter\Rainmeter.exe {00D6AA3C891FC2CBDD7E185257E922701A}. =>.Rainmeter O4 - GS\Startup [d3388]: RocketDock.lnk . (...) C:\Program Files (x86)\RocketDock\RocketDock.exe [Unsigned] O4 - GS\Startup [d3388]: ShellFolderFix.lnk . (.Copyright (C) Georg Fischer 2009-2018 - Manages explorer folder window sizes and po.) C:\Programmes Portables\ShellFolderFix\ShellFolderFixUI.exe /autostart [Unsigned] O4 - GS\Startup [d3388]: Volume2.lnk . (.Alexandr Irza - Volume² - advanced Windows volume control.) C:\Programmes Portables\Volume2\Volume2.exe [Unsigned] =>.Alexandr Irza O4 - GS\Startup [d3388]: volumouse.lnk . (.NirSoft - Volumouse Utility.) C:\Programmes Portables\Volumouse\volumouse.exe =>.Nir Sofer® O4 - GS\Startup [d3388]: WinSplit Revolution.lnk . (...) C:\Program Files (x86)\WinSplit Revolution\WinSplit.exe [Unsigned] =>.WinSplit-Revolution O4 - GS\Desktop [gokpo]: JaxCore.lnk . (.Rainmeter - Launch JaxCore.) C:\Program Files (x86)\Rainmeter\Rainmeter.exe !ActivateConfig #JaxCore\Main Home.ini [Unsigned] =>.Rainmeter O4 - GS\Desktop [gokpo]: Lock.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\System32\rundll32.exe user32.dll,LockWorkStation =>..Microsoft Corporation O4 - GS\Desktop [gokpo]: ZHPSuite.lnk . (.Nicolas Coolman - ZHPSuite.) C:\Users\gokpo\AppData\Roaming\ZHP\ZHPSuite.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [gokpo]: Hard Disk Sentinel.lnk . (.H.D.S. Hungary - Hard Disk Sentinel.) C:\Program Files (x86)\Hard Disk Sentinel\HDSentinel.exe =>.Janos Mathe® O4 - GS\Quicklaunch [gokpo]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\Quicklaunch [gokpo]: Microsoft Outlook.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE /recycle =>.Microsoft® O4 - GS\Quicklaunch [gokpo]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\gokpo\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS® O4 - GS\sendTo [gokpo]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [gokpo]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Startup [gokpo]: Background Muter.lnk . (.WinBGMuter - WinBGMuter.) C:\Users\gokpo\OneDrive\Bureau\WinBGMuter\WinBGMuter.exe --startMinimized [Unsigned] O4 - GS\Startup [gokpo]: CareUEyesPortable.lnk . (.LRepacks - CareUEyes Portable Launcher.) C:\Programmes Portables\CareUEyes\CareUEyesPortable.exe [Unsigned] O4 - GS\Startup [gokpo]: Gest.lnk . (...) C:\Users\gokpo\AppData\Roaming\Gest\GestLauncher.exe [Unsigned] O4 - GS\Startup [gokpo]: iRotate.lnk . (.EnTech Taiwan - iRotate.) C:\Program Files (x86)\iRotate\iRotate.exe [Unsigned] =>.EnTech Taiwan O4 - GS\Startup [gokpo]: Mem Reduct.lnk . (.Henry++ - Mem Reduct.) C:\Program Files\Mem Reduct\memreduct.exe [Unsigned] =>.Henry++ O4 - GS\Startup [gokpo]: Rainmeter.lnk . (.Rainmeter - Rainmeter desktop customization tool.) C:\Program Files\Rainmeter\Rainmeter.exe {00D6AA3C891FC2CBDD7E185257E922701A}. =>.Rainmeter O4 - GS\Startup [gokpo]: RocketDock.lnk . (...) C:\Program Files (x86)\RocketDock\RocketDock.exe [Unsigned] O4 - GS\Startup [gokpo]: ShellFolderFix.lnk . (.Copyright (C) Georg Fischer 2009-2018 - Manages explorer folder window sizes and po.) C:\Programmes Portables\ShellFolderFix\ShellFolderFixUI.exe /autostart [Unsigned] O4 - GS\Startup [gokpo]: Volume2.lnk . (.Alexandr Irza - Volume² - advanced Windows volume control.) C:\Programmes Portables\Volume2\Volume2.exe [Unsigned] =>.Alexandr Irza O4 - GS\Startup [gokpo]: volumouse.lnk . (.NirSoft - Volumouse Utility.) C:\Programmes Portables\Volumouse\volumouse.exe =>.Nir Sofer® O4 - GS\Startup [gokpo]: WinSplit Revolution.lnk . (...) C:\Program Files (x86)\WinSplit Revolution\WinSplit.exe [Unsigned] =>.WinSplit-Revolution O4 - GS\Startup [Public]: Carroll.lnk . (.the sz development - Carroll.) C:\Program Files (x86)\Carroll\Carroll.exe /OnlySet [Unsigned] =>.the sz development O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player Legacy.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: eM Client.lnk . (.eM Client s.r.o. - eM Client.) C:\Program Files (x86)\eM Client\MailClient.exe {082A101C9CFE2154314B45317A3DC200}. O4 - GS\ProgramsCommon [Public]: Malwarebytes.lnk . (.Malwarebytes - .) C:\Program Files (x86)\Malwarebytes\Anti-Malware\mbam.exe [Unsigned] =>.Malwarebytes O4 - GS\ProgramsCommon [Public]: PC Manager.lnk . (.MSPCManager - MSPCManager.) C:\Program Files\Microsoft PC Manager\MSPCManager.exe =>.Microsoft® O4 - GS\ProgramsCommon [Public]: Shell.lnk . (.Nilesoft - Nilesoft Shell.) C:\Program Files\Nilesoft Shell\shell.exe {35C95CBA9434DB0F425D3BAA3157DE13}. ---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.61.221 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{69f30426-9c77-49a9-a390-9bed7bc55d6b}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{ecd36e41-9034-473a-a703-745ce79ad68f}: DhcpNameServer = 192.168.61.221 =>.Local IP Adress ---\\ PROTOCOLE ADDITIONNEL (23) - 1s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL =>.Microsoft® ---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation ---\\ CLÉ DE REGISTRE EXPLORER StartupApproved (56) - 1s [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:7 Taskbar Tweaker [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CareUEyes [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:DesktopOK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:elevenClock [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Mem Reduct [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:RocketDock =>.Punk Software [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:ScrollNavigator [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Textify [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Volume2 [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:$Volumouse$ [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Winsplit =>.Winsplit [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:WinXCorners [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:NordVPN =>.NordVPN [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:ElevenClock.exe [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:Gest.exe [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:Gest.lnk [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:Rainmeter.lnk =>.kimmo.pekkola [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:ShellFolderFix.lnk [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:CareUEyesPortable.lnk [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:iRotate.lnk [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:Mem Reduct.lnk [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:Volume2.lnk [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:volumouse.lnk [HKEY_USERS\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:7 Taskbar Tweaker [HKEY_USERS\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CareUEyes [HKEY_USERS\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:DesktopOK [HKEY_USERS\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:elevenClock [HKEY_USERS\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Mem Reduct [HKEY_USERS\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:RocketDock =>.Punk Software [HKEY_USERS\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:ScrollNavigator [HKEY_USERS\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Textify [HKEY_USERS\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Volume2 [HKEY_USERS\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:$Volumouse$ [HKEY_USERS\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Winsplit =>.Winsplit [HKEY_USERS\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:WinXCorners [HKEY_USERS\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:NordVPN =>.NordVPN [HKEY_USERS\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:ElevenClock.exe [HKEY_USERS\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:Gest.exe [HKEY_USERS\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:Gest.lnk [HKEY_USERS\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:Rainmeter.lnk =>.kimmo.pekkola [HKEY_USERS\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:ShellFolderFix.lnk [HKEY_USERS\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:CareUEyesPortable.lnk [HKEY_USERS\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:iRotate.lnk [HKEY_USERS\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:Mem Reduct.lnk [HKEY_USERS\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:Volume2.lnk [HKEY_USERS\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:volumouse.lnk [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SecurityHealth =>.Microsoft Corporation [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Greenshot =>.Greenshot [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Logitech Download Assistant =>.Logitech Inc. [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Reflect UI =>.Paramount [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:RtkAudUService =>.Realtek Semiconductor Corp. [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Open-Shell Start Menu [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Malwarebytes Windows Firewall Control [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:vmware-tray.exe =>.VMware [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:$McRebootA5E6DEAA56$.lnk [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:Carroll.lnk ---\\ COMPOSANTS ACTIVESETUP INSTALLÉS (ASIC) (6) - 1s O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur multim.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur multim.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft® O40 - ASIC: Microsoft Edge [64Bits] - {9459C573-B17A-45AE-9F64-1857B5D58CEE} . (.Microsoft Corporation - Microsoft Edge Installer.) -- C:\Program Files (x86)\Microsoft\Edge\Application\109.0.1518.78\Installer\setup.exe =>.Microsoft® ---\\ LOGICIELS INSTALLÉS (128) - 29s O42 - Logiciel: 7+ Taskbar Tweaker v5.14.1 - (.Ramen Software.) [HKCU][64Bits] -- 7 Taskbar Tweaker {00CBBF3D73B5022179285FBA169D66F030}. O42 - Logiciel: AdGuard - (.Adguard Software Limited.) [HKLM][64Bits] -- {685F6AB3-7C61-42D1-AE5B-3864E48D1035} [Unsigned] (Hidden) O42 - Logiciel: AdGuard - (.Adguard Software Limited.) [HKLM][64Bits] -- {f022675c-8a58-4979-bb1e-2ac7728982da} {00B138E6660DCA7CC377CB2F6F6027F616}. O42 - Logiciel: Adobe Illustrator 2022 - (.Adobe Inc..) [HKLM][64Bits] -- ILST_26_3_1 =>.Adobe Inc.® O42 - Logiciel: Adobe Photoshop 2022 - (.Adobe Inc..) [HKLM][64Bits] -- PHSP_23_3_2 =>.Adobe Inc.® O42 - Logiciel: AMD Chipset Software - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- AMD_Chipset_IODrivers [Unsigned] =>.Advanced Micro Devices, Inc. O42 - Logiciel: AMD GPIO2 Driver - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {E9DD399F-21A3-479E-A7DF-D6CF4B2ADBF3} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: AMD I2C Driver - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {B31D92D9-2914-46B0-9738-F668A563DE73} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: AMD MicroPEP Driver - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {C36029EB-19FF-4462-A283-03B41BE9EFA4} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: AMD PSP Driver - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {988F14B8-79A8-475D-BAC7-83F96AD3D821} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: AMD Ryzen Balanced Driver - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {A171D320-C42C-4F3B-A2D8-C6A09F6788CC} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: AMD SBxxx SMBus Driver - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {AAE0E27D-C88A-49BA-8715-77ADCD4286A3} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: AMD_Chipset_Drivers - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {c63a1907-428b-458b-935e-e61aad4aac6e} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: AnyTXT Searcher 1.3 - (.CBEWIN.) [HKLM][64Bits] -- {A83692D5-3E9B-4E95-9E7E-B5DF7536C09D}_is1 [Unsigned] O42 - Logiciel: Argente Utilities - (.Raúl Argente.) [HKLM][64Bits] -- AUtilities [Unsigned] =>.Raúl Argente O42 - Logiciel: Battery Notifier - (.Sandip Chaudhary.) [HKCU][64Bits] -- BatteryNotifier [Unsigned] O42 - Logiciel: BetterDesktopTool version 1.94 - (.Florian Schwarz.) [HKLM][64Bits] -- {D51FADF8-48F9-4234-8BB5-9D99A973AC65}_is1 [Unsigned] O42 - Logiciel: BowPad - (.Stefans Tools.) [HKLM][64Bits] -- {6A1360CB-373B-4376-A24D-A3EDDDB49B61} [Unsigned] =>.Stefans Tools O42 - Logiciel: busTRACE Storage Manager - (.busTRACE Technologies.) [HKLM][64Bits] -- busTRACE Storage Manager10.0 [Unsigned] O42 - Logiciel: Carroll 1.28 - (.the sz development.) [HKLM][64Bits] -- Carroll_is1 [Unsigned] =>.the sz development O42 - Logiciel: Core Temp 1.18 - (.ALCPU.) [HKLM][64Bits] -- {086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1 [Unsigned] =>.Alcpu O42 - Logiciel: EdgeDeflector - (.Open Source.) [HKCU][64Bits] -- EdgeDeflector [Unsigned] =>.Open source O42 - Logiciel: Elan Smart-id Fingerprint - (.ELAN Microelectronic Corp..) [HKLM][64Bits] -- ElanFP =>.ELAN Microelectronics Corporation® O42 - Logiciel: ElevenClock - (.Martí Climent.) [HKCU][64Bits] -- {D62480B8-71F1-48CE-BEEC-9D3E172C87B5}_is1 [Unsigned] O42 - Logiciel: eM Client - (.eM Client Inc..) [HKLM][64Bits] -- {C7E29BBB-767C-4F2D-91B0-58B419372583} [Unsigned] =>.eM Client Inc. O42 - Logiciel: eM Client 9.0.1708.0 - (.lrepacks.net.) [HKLM][64Bits] -- eM Client_is1 [Unsigned] O42 - Logiciel: Equalizer APO - (.Jonas Thedering.) [HKLM][64Bits] -- EqualizerAPO [Unsigned] =>.Jonas Thedering O42 - Logiciel: ESET Security - (.ESET, spol. s r.o..) [HKLM][64Bits] -- {AC01C534-2ECB-460E-9D4E-D4D158076F50} [Unsigned] =>.ESET, spol. s r.o. O42 - Logiciel: ExplorerPatcher - (.VALINET Solutions SRL.) [HKLM][64Bits] -- {D17F1E1A-5919-4427-8F89-A1A8503CA3EB}_ExplorerPatcher [Unsigned] O42 - Logiciel: foobar2000 v2.0 beta 20 (x64) - (.Peter Pawlowski.) [HKLM][64Bits] -- foobar2000 [Unsigned] =>.Peter Pawlowski O42 - Logiciel: Greenshot 1.2.10.6 - (.Greenshot.) [HKLM][64Bits] -- Greenshot_is1 =>.Open Source Developer, Robin Krom® O42 - Logiciel: Hard Disk Sentinel PRO - (.Janos Mathe.) [HKLM][64Bits] -- Hard Disk Sentinel_is1 =>.Janos Mathe® O42 - Logiciel: IObit Unlocker - (.IObit.) [HKLM][64Bits] -- IObit Unlocker_is1 =>.IObit CO., LTD® O42 - Logiciel: IrfanView 4.62 (64-bit) - (.Irfan Skiljan.) [HKLM][64Bits] -- IrfanView64 {71AB43B1129754EA5809102A59EC8950}. =>.Irfan Skiljan O42 - Logiciel: iRotate - (..) [HKLM][64Bits] -- iRotate [Unsigned] O42 - Logiciel: KORG Collection - M1 version 2.3.2 - (.KORG Inc..) [HKLM][64Bits] -- {AA1D88F2-E75B-4FC3-80C6-9E041D7F4B00}_is1 {00CE5C9151129B61FC293F1DD150C10AE3}. =>.KORG Inc. O42 - Logiciel: Kutools for Excel - (.ExtendOffice.com.) [HKLM][64Bits] -- {231BE672-3C44-4531-A725-A3F3762CA799} [Unsigned] =>.ExtendOffice.com O42 - Logiciel: Kutools for Word - (.ExtendOffice.com.) [HKLM][64Bits] -- {F5523375-4EE1-47B1-8DA1-FF579B2FBF16} [Unsigned] =>.ExtendOffice.com (Hidden) O42 - Logiciel: Kutools for Word - (.ExtendOffice.com.) [HKLM][64Bits] -- Kutools for Word 10.00 [Unsigned] =>.ExtendOffice.com O42 - Logiciel: Lenovo Vantage Service - (.Lenovo Group Ltd..) [HKLM][64Bits] -- VantageSRV_is1 =>.Lenovo® O42 - Logiciel: LRTimelapse 6.0.1 - (.Gunther Wegner.) [HKLM][64Bits] -- {25499041-D76C-4010-95CD-02374529C59B}}_is1 {74846CB601CF0B0D863AD991529361FE}. =>.Gunther Wegner O42 - Logiciel: Macrium Reflect Workstation - (.Paramount Software (UK) Ltd..) [HKLM][64Bits] -- {826D3416-3001-4981-A0E1-FEA59AF6ED2B} [Unsigned] =>.Paramount Software (UK) Ltd. (Hidden) O42 - Logiciel: Macrium Reflect Workstation - (.Paramount Software (UK) Ltd..) [HKLM][64Bits] -- MacriumReflect {0EA39DC6653ADDC16FD0A739}. =>.Paramount Software (UK) Ltd. O42 - Logiciel: Malwarebytes version 4.5.21.231 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Inc.® O42 - Logiciel: Malwarebytes Windows Firewall Control - (.BiniSoft.org.) [HKLM][64Bits] -- Windows Firewall Control =>.Malwarebytes Inc® O42 - Logiciel: Mem Reduct - (.Henry++.) [HKLM][64Bits] -- memreduct [Unsigned] =>.Henry++ O42 - Logiciel: Microsoft .NET Host - 7.0.2 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0719345-342D-4A57-8EE4-30BF4FA3FBE9} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft .NET Host FX Resolver - 7.0.2 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {BE394B10-AD5D-4503-9AA9-E79F953B30E3} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft .NET Runtime - 7.0.2 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {2830137e-5fb5-4d10-b5fd-eedcbe1c5ae5} =>.Microsoft® O42 - Logiciel: Microsoft .NET Runtime - 7.0.2 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {AE2D80C7-F19D-463F-B48F-3F343806721C} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Edge - (.Microsoft Corporation.) [HKLM][64Bits] -- {4B325713-EC5E-3D0D-B0F4-80906D2561D6} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Edge Update - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Edge Update [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Edge WebView2 Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft EdgeWebView =>.Microsoft® O42 - Logiciel: Microsoft Filter Pack 2.0 - (.Microsoft Corporation.) [HKLM][64Bits] -- {95140000-2000-0409-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Office Professional Plus 2021 - en-us - (.Microsoft Corporation.) [HKLM][64Bits] -- ProPlus2021Retail - en-us =>.Microsoft® O42 - Logiciel: Microsoft Office Professional Plus 2021 - fr-fr - (.Microsoft Corporation.) [HKLM][64Bits] -- ProPlus2021Retail - fr-fr =>.Microsoft® O42 - Logiciel: Microsoft Office 專業增強版 2021 - zh-tw - (.Microsoft Corporation.) [HKLM][64Bits] -- ProPlus2021Retail - zh-tw =>.Microsoft® O42 - Logiciel: Microsoft Update Health Tools - (.Microsoft Corporation.) [HKLM][64Bits] -- {6A2A8076-135F-4F55-BB02-DED67C8C6934} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D8E6291-B0D5-35EC-8441-6616F567A0F7} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {ca67548a-5ebe-413a-b50c-4b9ceb6d66c6} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {33d1fd90-4274-48a1-9bc1-97e33d9c2d6f} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {37B8F9C7-03FB-3253-8781-2517C99D7C00} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {B175520C-86A2-35A7-8619-86DC379688B9} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BD95A8CD-1D9F-35AD-981A-3E7925026EBB} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 - (.Microsoft Corporation.) [HKLM][64Bits] -- {042d26ef-3dbe-4c25-95d3-4c1b11b235a7} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9dff3540-fc85-4ed5-ac84-9e3c7fd8bece} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 - (.Microsoft Corporation.) [HKLM][64Bits] -- {010792BA-551A-3AC0-A7EF-0FAB4156C382} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 - (.Microsoft Corporation.) [HKLM][64Bits] -- {53CF6934-A98D-3D84-9146-FC4EDF3D5641} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 - (.Microsoft Corporation.) [HKLM][64Bits] -- {D401961D-3A20-3AC7-943B-6139D5BD490A} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 - (.Microsoft Corporation.) [HKLM][64Bits] -- {8122DAB1-ED4D-3676-BB0A-CA368196543E} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.34.31931 - (.Microsoft Corporation.) [HKLM][64Bits] -- {d4cecf3b-b68f-4995-8840-52ea0fab646e} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.34.31931 - (.Microsoft Corporation.) [HKLM][64Bits] -- {6ba9fb5e-8366-4cc4-bf65-25fe9819b2fc} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2022 X64 Additional Runtime - 14.34.31931 - (.Microsoft Corporation.) [HKLM][64Bits] -- {EAE242B1-0A26-485A-BFEB-0292EE9F03CB} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.34.31931 - (.Microsoft Corporation.) [HKLM][64Bits] -- {CF4C347D-954E-4543-88D2-EC17F07F466F} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2022 X86 Additional Runtime - 14.34.31931 - (.Microsoft Corporation.) [HKLM][64Bits] -- {C2662EFF-06E6-4FD1-9D6D-FDCA91025757} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.34.31931 - (.Microsoft Corporation.) [HKLM][64Bits] -- {AB1BDF73-7393-42CE-812D-9A90918814D5} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {7C0242A3-8B66-35D1-9FE0-13B426ACB609} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Visual Studio 2010 Tools for Office Runtime (x64) =>.Microsoft® O42 - Logiciel: Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - - (.Microsoft Corporation.) [HKLM][64Bits] -- {F7A83723-0746-3DCA-A011-DEC81093E828} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Windows Desktop Runtime - 7.0.2 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {007ff79f-5c20-48a1-92da-a78201768353} =>.Microsoft® O42 - Logiciel: Microsoft Windows Desktop Runtime - 7.0.2 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {B7177578-AF27-44BF-A0B1-8B9D6AF7ECC3} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Module linguistique Microsoft Visual Studio 2010 Tools pour Office Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - FRA =>.Microsoft® O42 - Logiciel: Mozilla Firefox (x64 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 110.0 (x64 fr) =>.Mozilla Corporation® O42 - Logiciel: NetWorx 6.2.8 - (.SoftPerfect Pty Ltd.) [HKLM][64Bits] -- NetWorx_is1 [Unsigned] =>.SoftPerfect Pty Ltd O42 - Logiciel: Nilesoft Shell - (.Nilesoft.) [HKLM][64Bits] -- {A5E0BCAC-2748-424B-81E8-4481FF33F479}_is1 [Unsigned] O42 - Logiciel: NordUpdater - (.Nord Security.) [HKLM][64Bits] -- {6E35DB82-3D19-4DD6-B8CB-F082815FDE18}_is1 =>.nordvpn s.a.® O42 - Logiciel: NordVPN - (.Nord Security.) [HKLM][64Bits] -- {19465C24-3D5D-4327-B99F-3CC0A1D38151}_is1 =>.nordvpn s.a.® O42 - Logiciel: NordVPN network TAP - (.NordVPN.) [HKLM][64Bits] -- {97DEC5D6-2BE9-45BB-BFC5-274B851B486B} [Unsigned] =>.NordVPN O42 - Logiciel: Npcap - (.Nmap Project.) [HKLM][64Bits] -- NpcapInst {0AA60783EBB5076EBC2D12DA9B04C290}. =>.Nmap Project O42 - Logiciel: Office 16 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0000-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Office 16 Click-to-Run Extensibility Component 64-bit Registration - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-00DD-0000-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Office 16 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008F-0000-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0404-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Open-Shell - (.The Open-Shell Team.) [HKLM][64Bits] -- {3D7E1C3E-D50C-431B-81C1-11862C5B8848} [Unsigned] =>.The Open-Shell Team O42 - Logiciel: PC Manager(Beta) - (.Microsoft Corporation.) [HKLM][64Bits] -- MSPCManager =>.Microsoft® O42 - Logiciel: PerfmonBar 1.0.6.178 - (.XhmikosR.) [HKLM][64Bits] -- PerfmonBar_is1 [Unsigned] O42 - Logiciel: Power Plan Switcher - (.The Refactory.) [HKCU][64Bits] -- d99a8ba9a4cdee39 [Unsigned] O42 - Logiciel: PowerToys (Preview) - (.Microsoft Corporation.) [HKLM][64Bits] -- {57FC4D2E-D9BB-4F1B-A4EA-6037EEDE6E0C} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: PowerToys (Preview) x64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {3ece69df-0f51-455b-b00e-f4715ded8876} =>.Microsoft® O42 - Logiciel: ProtonVPN - (.Proton Technologies AG.) [HKLM][64Bits] -- {8C4BBBC6-B52E-47C4-9E77-4AE1CF93BC85} [Unsigned] =>.Proton Technologies AG (Hidden) O42 - Logiciel: ProtonVPN - (.Proton Technologies AG.) [HKLM][64Bits] -- ProtonVPN 2.3.1 [Unsigned] =>.Proton Technologies AG O42 - Logiciel: ProtonVPNTap - (.Proton Technologies AG.) [HKLM][64Bits] -- {87BDF456-9882-44E6-8FFC-F73B83E42EAD} [Unsigned] =>.Proton Technologies AG O42 - Logiciel: ProtonVPNTun - (.Proton Technologies AG.) [HKLM][64Bits] -- {B1EBF050-CC3E-45B0-9DE5-339C6241F3DA} [Unsigned] =>.Proton Technologies AG O42 - Logiciel: Quick CPU x64 - (.CoderBag.) [HKLM][64Bits] -- {B34D47B4-A042-4A31-9365-0C81C935F06B} [Unsigned] O42 - Logiciel: Rainmeter - (.Rainmeter.) [HKLM][64Bits] -- Rainmeter [Unsigned] =>.Rainmeter O42 - Logiciel: RAMMon - (.PassMark Software.) [HKLM][64Bits] -- {D0E36B69-687C-43B3-93BA-5E4B6E531023}_is1 {3A40F3370808BDA1520827090BFA0541}. =>.PassMark Software O42 - Logiciel: RestoreWindowPos - (..) [HKCU][64Bits] -- RestoreWindowPos [Unsigned] O42 - Logiciel: RocketDock 1.3.5 - (.Punk Software.) [HKLM][64Bits] -- RocketDock_is1 [Unsigned] =>.Punk Software O42 - Logiciel: Ryzen Controller 2.5.4 - (.Ryzen Controller Team.) [HKLM][64Bits] -- 8907e46f-2265-5ed5-98af-d6a560955949 [Unsigned] O42 - Logiciel: ScrollNavigator - (.DeskSoft.) [HKLM][64Bits] -- ScrollNavigator {1C7533D77728BC417D504DFD8B793EDC}. =>.DeskSoft O42 - Logiciel: ScrollNavigator - (.DeskSoft.) [HKLM][64Bits] -- ScrollNavigator_is1 [Unsigned] =>.DeskSoft O42 - Logiciel: SoundSwitch 6.4.3.0 (Utilisateur courant) - (.Antoine Aflalo.) [HKCU][64Bits] -- SoundSwitch_is1 {942A37BCA9A9889442F6710533CB5548}. =>.Antoine Aflalo O42 - Logiciel: taskbar-monitor - (.Leandro Lugarinho.) [HKLM][64Bits] -- {c7f3d760-a8d1-4fdc-9c74-41bf9112e835} [Unsigned] O42 - Logiciel: Textify v1.10.3 - (.Ramen Software.) [HKCU][64Bits] -- Textify {00CBBF3D73B5022179285FBA169D66F030}. =>Adware.TextifyCompany O42 - Logiciel: TweakNow WinSecret for Windows 11 - (.TweakNow.com.) [HKLM][64Bits] -- TweakNow WinSecret for Windows 11_is1 {00E110CB7D6CBE5DB5AB7FA23AAD0D6225}. =>.TweakNow.com O42 - Logiciel: UXP WebView Support - (.Adobe Inc..) [HKLM][64Bits] -- UXPW_1_1_0 =>.Adobe Inc.® O42 - Logiciel: Vivaldi - (.Vivaldi LLC.) [HKCU][64Bits] -- Vivaldi =>.Vivaldi Technologies AS® O42 - Logiciel: VMware Workstation - (.VMware, Inc..) [HKLM][64Bits] -- {0E992720-1330-4AB3-8155-255F79785535} [Unsigned] =>.VMware, Inc. O42 - Logiciel: Winaero Tweaker - (.Winaero.) [HKLM][64Bits] -- Winaero Tweaker_is1 [Unsigned] =>.Winaero O42 - Logiciel: Windows 11 Manager - (.Yamicsoft.) [HKCU][64Bits] -- Windows 11 Manager 1.1.9 {46B6D641BE59D0F7D77DEFCB2A080C2E}. =>.Yamicsoft O42 - Logiciel: Windows 11 Manager - (.Yamicsoft.) [HKLM][64Bits] -- {BE9AF178-8FB7-4CFC-9758-9D1E3B39086E} [Unsigned] =>.Yamicsoft (Hidden) O42 - Logiciel: WingetUI - (.Martí Climent.) [HKCU][64Bits] -- {889610CC-4337-4BDB-AC3B-4F21806C0BDD}_is1 [Unsigned] O42 - Logiciel: WinRAR 6.20 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® O42 - Logiciel: WinSplit Revolution (v11.04) - (.Raphael Lencrerot.) [HKLM][64Bits] -- WinSplit Revolution [Unsigned] O42 - Logiciel: XnView Shell Extension 4.1.5 (64bits) - (.Gougelet Pierre-e.) [HKLM][64Bits] -- XnView Shell Extension_is1 =>.Pierre GOUGELET® ---\\ CLÉ DE REGISTRE SOFTWARE HKCU & HKLM (265) - 29s HKLM\SOFTWARE\Adobe =>.Adobe HKLM\SOFTWARE\AIX INSTALLER HKLM\SOFTWARE\AMD =>.AMD HKLM\SOFTWARE\AUEP HKLM\SOFTWARE\BowPad HKLM\SOFTWARE\CBEWIN HKLM\SOFTWARE\CVSM =>.Legitimate HKLM\SOFTWARE\DefaultUserEnvironment =>.Microsoft Corporation HKLM\SOFTWARE\Dolby =>.Dolby HKLM\SOFTWARE\dotnet HKLM\SOFTWARE\ELAN HKLM\SOFTWARE\EqualizerAPO HKLM\SOFTWARE\ESET =>.ESET HKLM\SOFTWARE\ExtendOffice =>.ExtendOffice HKLM\SOFTWARE\foobar2000 =>.Peter Pawlowski HKLM\SOFTWARE\Fortemedia =>.Lugert Europe HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\Icaros =>.Icaros HKLM\SOFTWARE\INextUUID =>.Hewlett-Packard HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\IrfanView =>.Irfan Skiljan HKLM\SOFTWARE\KORG =>.KORG HKLM\SOFTWARE\Lenovo =>.Lenovo HKLM\SOFTWARE\Licenses =>.Microsoft Corporation HKLM\SOFTWARE\Logishrd =>.LogiShrd HKLM\SOFTWARE\Logitech =>.Logitech HKLM\SOFTWARE\Macrium =>.Macrium HKLM\SOFTWARE\Macromedia =>.Macromedia HKLM\SOFTWARE\Malwarebytes =>.Malwarebytes HKLM\SOFTWARE\McAfee =>.McAfee Inc. HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\mozilla.org =>.mozilla.org HKLM\SOFTWARE\mtkbt HKLM\SOFTWARE\NordDivert HKLM\SOFTWARE\NordSec HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\OEM =>.OEM HKLM\SOFTWARE\OpenShell =>.Legitimate HKLM\SOFTWARE\OpenSSH =>.OpenBSD HKLM\SOFTWARE\Ordinarysoft =>.OrdinarySoft HKLM\SOFTWARE\Paramount Software (UK) Ltd. =>.Paramount Software (UK) Ltd. HKLM\SOFTWARE\Partner =>.Google Inc. HKLM\SOFTWARE\PhotoViewer HKLM\SOFTWARE\Piriform =>.Piriform HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\Setup =>.Unknown HKLM\SOFTWARE\SOFTWARE =>.Unknown HKLM\SOFTWARE\VMware, Inc. =>.VMware, Inc. HKLM\SOFTWARE\Windows =>.Microsoft Corporation HKLM\SOFTWARE\WinRAR =>.WinRAR HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\Adguard =>.Adguard HKLM\SOFTWARE\WOW6432Node\Adobe =>.Adobe HKLM\SOFTWARE\WOW6432Node\AMD =>.AMD HKLM\SOFTWARE\WOW6432Node\BetterDesktopTool HKLM\SOFTWARE\WOW6432Node\Caphyon =>.Caphyon HKLM\SOFTWARE\WOW6432Node\Cliqz =>.Cliqz GmbH HKLM\SOFTWARE\WOW6432Node\DeskSoft =>.DeskSoft HKLM\SOFTWARE\WOW6432Node\dotnet HKLM\SOFTWARE\WOW6432Node\EnTech =>.EnTech HKLM\SOFTWARE\WOW6432Node\ESET =>.ESET HKLM\SOFTWARE\WOW6432Node\ExtendOffice =>.ExtendOffice HKLM\SOFTWARE\WOW6432Node\ExtendOffice.com =>.ExtendOffice.com HKLM\SOFTWARE\WOW6432Node\Google =>.Google HKLM\SOFTWARE\WOW6432Node\HD Sentinel =>.HD Sentinel HKLM\SOFTWARE\WOW6432Node\Icaros =>.Icaros HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel HKLM\SOFTWARE\WOW6432Node\Lenovo =>.Lenovo HKLM\SOFTWARE\WOW6432Node\Licenses =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\Macromedia =>.Macromedia HKLM\SOFTWARE\WOW6432Node\McAfee =>.McAfee Inc. HKLM\SOFTWARE\WOW6432Node\McAfee NGI =>.McAfee Inc. HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\WOW6432Node\MSPCManager HKLM\SOFTWARE\WOW6432Node\NordVPN =>.NordVPN HKLM\SOFTWARE\WOW6432Node\Npcap =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\WOW6432Node\PhotoViewer HKLM\SOFTWARE\WOW6432Node\Proton Technologies AG =>.Proton Technologies AG HKLM\SOFTWARE\WOW6432Node\Rainmeter =>.Rainmeter HKLM\SOFTWARE\WOW6432Node\ThinPrint =>.ThinPrint HKLM\SOFTWARE\WOW6432Node\VMware, Inc. =>.VMware, Inc. HKLM\SOFTWARE\WOW6432Node\Waterfox =>.Waterfox HKLM\SOFTWARE\WOW6432Node\WinSplit Revolution HKLM\SOFTWARE\WOW6432Node\Wow6432Node =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\7 Taskbar Tweaker HKCU\SOFTWARE\AdGuard =>.Adguard HKCU\SOFTWARE\Adobe =>.Adobe HKCU\SOFTWARE\AMD =>.AMD HKCU\SOFTWARE\AnyTXT Searcher =>.Legitimate HKCU\SOFTWARE\appdatalow =>.Microsoft Corporation HKCU\SOFTWARE\AppInsights HKCU\SOFTWARE\ATI =>.ATI HKCU\SOFTWARE\Aura HKCU\SOFTWARE\BetterDesktopTool HKCU\SOFTWARE\BiniSoft.org =>.BiniSoft.org HKCU\SOFTWARE\BowPad HKCU\SOFTWARE\busTRACE Technologies HKCU\SOFTWARE\Caphyon =>.Caphyon HKCU\SOFTWARE\CareUEyes HKCU\SOFTWARE\ChangeTracker =>.Legitimate HKCU\SOFTWARE\Chromium =>.Chromium HKCU\SOFTWARE\Circitor =>.Circitor HKCU\SOFTWARE\CoderBag HKCU\SOFTWARE\CompSoft =>.CompSoft HKCU\SOFTWARE\EarTrumpet HKCU\SOFTWARE\Edge HKCU\SOFTWARE\eM Client =>.eM Client HKCU\SOFTWARE\EqualizerAPO HKCU\SOFTWARE\ESET =>.ESET HKCU\SOFTWARE\ExplorerPatcher HKCU\SOFTWARE\ExtendOffice =>.ExtendOffice HKCU\SOFTWARE\Gest HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\Hasleo Software =>.Hasleo Software HKCU\SOFTWARE\Icaros =>.Icaros HKCU\SOFTWARE\InternetOff HKCU\SOFTWARE\JavaSoft =>.JavaSoft HKCU\SOFTWARE\KORG =>.KORG HKCU\SOFTWARE\Kutools for Excel =>.Addin Technology Inc HKCU\SOFTWARE\KutoolsforExcel =>.Addin Technology Inc HKCU\SOFTWARE\Lenovo =>.Lenovo HKCU\SOFTWARE\LogiShrd =>.LogiShrd HKCU\SOFTWARE\Logitech =>.Logitech HKCU\SOFTWARE\lx-systems HKCU\SOFTWARE\Macrium =>.Macrium HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes HKCU\SOFTWARE\McAfee =>.McAfee Inc. HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\MPC-HC =>.MPC-HC Team HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions HKCU\SOFTWARE\OpenShell =>.Legitimate HKCU\SOFTWARE\Ordinarysoft =>.OrdinarySoft HKCU\SOFTWARE\Otaku Software =>.Otaku Software HKCU\SOFTWARE\Panisz HKCU\SOFTWARE\Paramount Software (UK) Ltd. =>.Paramount Software (UK) Ltd. HKCU\SOFTWARE\Piriform =>.Piriform HKCU\SOFTWARE\PortableApps.com =>.PortableApps.com HKCU\SOFTWARE\QtProject =>.QtProject HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\RIT HKCU\SOFTWARE\RocketDock =>.Punk Software HKCU\SOFTWARE\RSD Software, Inc. =>.RSD Software, Inc. HKCU\SOFTWARE\Run HKCU\SOFTWARE\RW-Everything =>.RW-Everything HKCU\SOFTWARE\ScorpioSoftware HKCU\SOFTWARE\ShellFolderFix =>.Legitimate HKCU\SOFTWARE\SoftwareOK.de =>.SoftwareOK.de HKCU\SOFTWARE\SteveChaisonSoftware HKCU\SOFTWARE\SyncEngines =>.Microsoft Corporation HKCU\SOFTWARE\Sysinternals =>.Sysinternals HKCU\SOFTWARE\Textify HKCU\SOFTWARE\TweakNow WinSecret HKCU\SOFTWARE\Vivaldi =>.Vivaldi HKCU\SOFTWARE\VMware, Inc. =>.VMware, Inc. HKCU\SOFTWARE\Win11ClockToggler HKCU\SOFTWARE\Winaero.com =>.Winaero HKCU\SOFTWARE\WindowsMaster HKCU\SOFTWARE\WinPaletter HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\Wireshark =>.Wireshark HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\XnView =>.Pierre-Emmanuel Gougelet HKCU\SOFTWARE\Yamicsoft =>.Yamicsoft HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\software =>.Microsoft Corporation HKU\.DEFAULT\SOFTWARE\AMD =>.AMD HKU\.DEFAULT\SOFTWARE\AppDataLow =>.Microsoft Corporation HKU\.DEFAULT\SOFTWARE\AppInsights HKU\.DEFAULT\SOFTWARE\ATI =>.ATI HKU\.DEFAULT\SOFTWARE\ESET =>.ESET HKU\.DEFAULT\SOFTWARE\IOff HKU\.DEFAULT\SOFTWARE\Lenovo =>.Lenovo HKU\.DEFAULT\SOFTWARE\Macrium =>.Macrium HKU\.DEFAULT\SOFTWARE\Malwarebytes =>.Malwarebytes HKU\.DEFAULT\SOFTWARE\Mozilla =>.Mozilla HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\7 Taskbar Tweaker HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\AdGuard =>.Adguard HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Adobe =>.Adobe HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\AMD =>.AMD HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\AnyTXT Searcher =>.Legitimate HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\appdatalow =>.Microsoft Corporation HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\AppInsights HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\ATI =>.ATI HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Aura HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\BetterDesktopTool HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\BiniSoft.org =>.BiniSoft.org HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\BowPad HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\busTRACE Technologies HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Caphyon =>.Caphyon HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\CareUEyes HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\ChangeTracker =>.Legitimate HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Chromium =>.Chromium HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Circitor =>.Circitor HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\CoderBag HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\CompSoft =>.CompSoft HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\EarTrumpet HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Edge HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\eM Client =>.eM Client HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\EqualizerAPO HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\ESET =>.ESET HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\ExplorerPatcher HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\ExtendOffice =>.ExtendOffice HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Gest HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Google =>.Google HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Hasleo Software =>.Hasleo Software HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Icaros =>.Icaros HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\InternetOff HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\JavaSoft =>.JavaSoft HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\KORG =>.KORG HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Kutools for Excel =>.Addin Technology Inc HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\KutoolsforExcel =>.Addin Technology Inc HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Lenovo =>.Lenovo HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\LogiShrd =>.LogiShrd HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Logitech =>.Logitech HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\lx-systems HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Macrium =>.Macrium HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Malwarebytes =>.Malwarebytes HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\McAfee =>.McAfee Inc. HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Mozilla =>.Mozilla HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\MPC-HC =>.MPC-HC Team HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Netscape =>.Netscape HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\ODBC =>.DB Connectivity Solutions HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\OpenShell =>.Legitimate HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Ordinarysoft =>.OrdinarySoft HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Otaku Software =>.Otaku Software HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Panisz HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Paramount Software (UK) Ltd. =>.Paramount Software (UK) Ltd. HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Piriform =>.Piriform HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\PortableApps.com =>.PortableApps.com HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\QtProject =>.QtProject HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\RIT HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\RocketDock =>.Punk Software HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\RSD Software, Inc. =>.RSD Software, Inc. HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Run HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\RW-Everything =>.RW-Everything HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\ScorpioSoftware HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\ShellFolderFix =>.Legitimate HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\SoftwareOK.de =>.SoftwareOK.de HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\SteveChaisonSoftware HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\SyncEngines =>.Microsoft Corporation HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Sysinternals =>.Sysinternals HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Textify HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\TweakNow WinSecret HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Vivaldi =>.Vivaldi HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\VMware, Inc. =>.VMware, Inc. HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Win11ClockToggler HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Winaero.com =>.Winaero HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\WindowsMaster HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\WinPaletter HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\WinRAR =>.WinRAR HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\WinRAR SFX =>.RarLab HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Wireshark =>.Wireshark HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\XnView =>.Pierre-Emmanuel Gougelet HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\Yamicsoft =>.Yamicsoft HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\SOFTWARE\ZHP =>.Nicolas Coolman ---\\ PACKAGES (32) - 1s C:\Program Files (x86)\WindowsApps\10186emoacht.Monitorian_4.0.1.0_neutral__0q7myvhtpbc7w - (..) [][Monitorian] C:\Program Files (x86)\WindowsApps\1527c705-839a-4832-9118-54d4Bd6a0c89_10.0.19640.1000_neutral_neutral_cw5n1h2txyewy - (..) [][ms-resource:AppxManifest_DisplayName] C:\Program Files (x86)\WindowsApps\40459File-New-Project.EarTrumpet_2.2.1.0_x86__1sdd7yawvg6ne - (..) [][EarTrumpet] C:\Program Files (x86)\WindowsApps\4505Fortemedia.FMAPOControl_1.0.38.0_x64__4pejv7q2gmsnr - (.Fortemedia.) [][Smart Microphone Setting] =>Fortemedia C:\Program Files (x86)\WindowsApps\49306atecsolution.FilesUWP_2.4.21.0_x64__et10x9a9vyk8t - (..) [][Files] C:\Program Files (x86)\WindowsApps\4DF9E0F8.Netflix_6.98.1805.0_x64__mcm4njqhnhss8 - (.Netflix.) [][Netflix] =>Netflix C:\Program Files (x86)\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.21.30024.0_x64__0a9344xs7nr4m - (..) [][AMD Radeon Software] C:\Program Files (x86)\WindowsApps\c5e2524a-ea46-4f67-841f-6a9465d9d515_10.0.22621.1_neutral_neutral_cw5n1h2txyewy - (.Microsoft Corporation.) [][ms-resource:AppxManifest_DisplayName] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\Deezer.62021768415AF_5.30.400.0_x86__q7m17pa7q8kj0 - (.Deezer.) [][Deezer Music] =>Deezer C:\Program Files (x86)\WindowsApps\Disney.37853FC22B2CE_1.44.2.0_x64__6rarf9sa4v8jt - (.Disney.) [][Disney+] C:\Program Files (x86)\WindowsApps\DolbyLaboratories.DolbyAccess_3.16.345.0_x64__rz1tebttyb220 - (.Dolby Laboratories.) [][Dolby Access] =>Dolby Laboratories C:\Program Files (x86)\WindowsApps\DolbyLaboratories.DolbyAtmos_3.30100.101.0_x64__rz1tebttyb220 - (.Dolby Laboratories.) [][Dolby Atmos] =>Dolby Laboratories C:\Program Files (x86)\WindowsApps\E046963F.LenovoCompanion_10.2212.9.0_x64__k1h2ywk1493x8 - (.Lenovo Group Limited.) [][Lenovo Companion] =>Lenovo Group Limited C:\Program Files (x86)\WindowsApps\E0469640.LenovoUtility_4.3.28.0_x64__5grkq8ppsgwt4 - (.Lenovo Group Limited.) [][Lenovo Hotkeys] =>Lenovo Group Limited C:\Program Files (x86)\WindowsApps\E2A4F912-2574-4A75-9BB0-0D023378592B_10.0.19640.1000_neutral_neutral_cw5n1h2txyewy - (..) [][ms-resource:AppxManifest_DisplayName] C:\Program Files (x86)\WindowsApps\EsetContextMenu_16.0.24.0_neutral__v6agp04fc5akm - (..) [][ESET Context Menu] C:\Program Files (x86)\WindowsApps\F46D4000-FD22-4DB4-AC8E-4E1DDDE828FE_10.0.22621.1_neutral_neutral_cw5n1h2txyewy - (.Microsoft Corporation.) [][ms-resource:AppxManifest_DisplayName] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\FACEBOOK.317180B0BB486_1720.28.215.0_x64__8xx8rvfyw5nnt - (..) [][Messenger] C:\Program Files (x86)\WindowsApps\KaliLinux.54290C8133FEE_1.14.0.0_x64__ey8k8hqnwqnmg - (..) [][Kali Linux] C:\Program Files (x86)\WindowsApps\MicrosoftCorporationII.QuickAssist_2.0.15.0_x64__8wekyb3d8bbwe - (..) [][ms-resource://MicrosoftCorporationII.QuickAssist/resources/APP_WINDOW_NAME] C:\Program Files (x86)\WindowsApps\MicrosoftCorporationII.WindowsAppRuntime.Main.1.0_4.528.1755.0_x64__8wekyb3d8bbwe - (..) [][WindowsAppRuntime.Main.1.0] C:\Program Files (x86)\WindowsApps\MicrosoftTeams_22287.702.1670.9453_x64__8wekyb3d8bbwe - (..) [][Microsoft Teams] C:\Program Files (x86)\WindowsApps\MicrosoftWindows.Client.CBS_1000.22638.1000.0_x64__cw5n1h2txyewy - (.Microsoft Corporation.) [][ms-resource:ProductPkgDisplayName] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\MicrosoftWindows.Client.Core_1000.22634.1000.0_x64__cw5n1h2txyewy - (.Microsoft Corporation.) [][ms-resource:ProductPkgDisplayName] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\MicrosoftWindows.Client.WebExperience_423.1800.0.0_x64__cw5n1h2txyewy - (.Microsoft Corporation.) [][Windows Web Experience Pack] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\MicrosoftWindows.Speech.en-US.1_1.0.8.0_x64__cw5n1h2txyewy - (..) [][Speech Pack - English (United States)] C:\Program Files (x86)\WindowsApps\MicrosoftWindows.UndockedDevKit_10.0.22621.1_neutral_neutral_cw5n1h2txyewy - (..) [][UDK Package] C:\Program Files (x86)\WindowsApps\MirametrixInc.GlancebyMirametrix_9.26.3905.0_x64__17mer8kcn3j54 - (..) [][Glance by Mirametrix] C:\Program Files (x86)\WindowsApps\NAVER.LINEwin8_7.14.1.0_x86__8ptj331gd3tyt - (..) [][LINE] C:\Program Files (x86)\WindowsApps\NcsiUwpApp_1000.22621.1.0_neutral_neutral_8wekyb3d8bbwe - (.Microsoft.) [][NcsiUwpApp] =>Microsoft C:\Program Files (x86)\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.35.271.0_x64__dt26b99r8h8gj - (.Realtek Semiconductor Corp.) [][Realtek Audio Control] =>Realtek Semiconductor Corp C:\Program Files (x86)\WindowsApps\WinRAR.ShellExtension_1.0.0.2_x64__s4jet1zx4n14a - (..) [][WinRAR] ---\\ CONTENU DES DOSSIERS PROGRAMMES (392) - 23s O43 - CFD: 15/09/2022 - [] D -- C:\Program Files\Adobe {010280E632AA56509167C42ADC452F68}. =>.Adobe O43 - CFD: 22/12/2022 - [] D -- C:\Program Files\AMD =>.AMD O43 - CFD: 15/11/2022 - [] D -- C:\Program Files\AnyTXT Searcher {2981A6A35E27685D0E0AA815022A70D9}. O43 - CFD: 04/11/2022 - [] D -- C:\Program Files\Argente Utilities [Unsigned] O43 - CFD: 16/10/2022 - [] D -- C:\Program Files\BowPad {157F6D9D452A2AE334CA4348D1E265F0}. O43 - CFD: 08/09/2022 - [] D -- C:\Program Files\busTRACE Storage Manager [Unsigned] O43 - CFD: 18/11/2022 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 28/01/2023 - [] D -- C:\Program Files\Core Temp =>.Legitimate O43 - CFD: 12/01/2023 - [] D -- C:\Program Files\dotnet =>.Microsoft® O43 - CFD: 26/05/2022 - [] D -- C:\Program Files\ElanFP =>.ELAN Microelectronics Corporation® O43 - CFD: 24/11/2022 - [] D -- C:\Program Files\EqualizerAPO [Unsigned] O43 - CFD: 15/11/2022 - [] D -- C:\Program Files\ESET =>.ESET, spol. s r.o.® O43 - CFD: 16/11/2022 - [] D -- C:\Program Files\ExplorerPatcher [Unsigned] O43 - CFD: 26/05/2022 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation O43 - CFD: 04/02/2023 - [] D -- C:\Program Files\foobar2000 =>.Peter Pawlowski O43 - CFD: 18/05/2022 - [] D -- C:\Program Files\Greenshot =>.Open Source Developer, Robin Krom® O43 - CFD: 06/12/2022 - [] D -- C:\Program Files\Hasleo O43 - CFD: 06/09/2022 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 20/05/2022 - [] D -- C:\Program Files\IrfanView =>.Irfan skiljan O43 - CFD: 25/05/2022 - [] D -- C:\Program Files\KORG {00CE5C9151129B61FC293F1DD150C10AE3}. =>.KORG O43 - CFD: 21/05/2022 - [] D -- C:\Program Files\Lenovo =>.Lenovo O43 - CFD: 21/05/2022 - [] D -- C:\Program Files\LRTimelapse 6 [Unsigned] O43 - CFD: 31/01/2023 - [] D -- C:\Program Files\Macrium {0EA39DC6653ADDC16FD0A739}. =>.Macrium O43 - CFD: 04/02/2023 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes O43 - CFD: 17/05/2022 - [] D -- C:\Program Files\Mem Reduct [Unsigned] O43 - CFD: 04/02/2023 - [] D -- C:\Program Files\Microsoft =>.Microsoft Corporation O43 - CFD: 26/05/2022 - [] D -- C:\Program Files\Microsoft LifeCam =>.Microsoft Corporation O43 - CFD: 15/05/2022 - [] D -- C:\Program Files\Microsoft Office 15 =>.Microsoft Corporation O43 - CFD: 28/01/2023 - [] D -- C:\Program Files\Microsoft PC Manager =>.Microsoft Corporation O43 - CFD: 13/05/2022 - [] D -- C:\Program Files\Microsoft Update Health Tools =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [0] D -- C:\Program Files\ModifiableWindowsApps =>.Microsoft Corporation O43 - CFD: 03/02/2023 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla O43 - CFD: 26/05/2022 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 21/05/2022 - [] D -- C:\Program Files\NetWorx {084EEAAE1D23F2E189C219261275C404}. O43 - CFD: 16/01/2023 - [] D -- C:\Program Files\Nilesoft Shell {35C95CBA9434DB0F425D3BAA3157DE13}. O43 - CFD: 24/11/2022 - [] D -- C:\Program Files\NordUpdater =>.nordvpn s.a.® O43 - CFD: 22/01/2023 - [] D -- C:\Program Files\NordVPN =>.nordvpn s.a.® O43 - CFD: 27/10/2022 - [] D -- C:\Program Files\Npcap =>.Microsoft Corporation O43 - CFD: 19/01/2023 - [] D -- C:\Program Files\Open-Shell [Unsigned] =>.Open-Shell O43 - CFD: 19/10/2022 - [] D -- C:\Program Files\PerfmonBar [Unsigned] O43 - CFD: 12/01/2023 - [] D -- C:\Program Files\PowerToys =>.Microsoft® O43 - CFD: 13/11/2022 - [] D -- C:\Program Files\QuickCPU {0B710DC423C7D000E30BAE9F11AE1151}. O43 - CFD: 26/12/2022 - [] D -- C:\Program Files\Rainmeter =>.kimmo.pekkola O43 - CFD: 23/01/2023 - [] D -- C:\Program Files\RAMMon {3A40F3370808BDA1520827090BFA0541}. O43 - CFD: 26/05/2022 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 17/05/2022 - [] D -- C:\Program Files\Ryzen Controller [Unsigned] O43 - CFD: 05/09/2022 - [] D -- C:\Program Files\SmartTaskbar O43 - CFD: 25/05/2022 - [] D -- C:\Program Files\Steinberg =>.Steinberg O43 - CFD: 19/11/2020 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 11/01/2023 - [0] D -- C:\Program Files\valnoxy O43 - CFD: 13/05/2022 - [] D -- C:\Program Files\Winaero Tweaker [Unsigned] O43 - CFD: 06/09/2022 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 20/01/2023 - [] D -- C:\Program Files\Windows Defender Advanced Threat Protection =>.Microsoft Corporation O43 - CFD: 20/01/2023 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 04/09/2022 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 26/05/2022 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 26/05/2022 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 04/02/2023 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 27/01/2023 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH® O43 - CFD: 25/05/2022 - [] D -- C:\Program Files\XnView =>.Pierre-Emmanuel Gougelet O43 - CFD: 22/12/2022 - [] D -- C:\Program Files\Yamicsoft {46B6D641BE59D0F7D77DEFCB2A080C2E}. =>.Yamicsoft O43 - CFD: 04/02/2023 - [] D -- C:\Program Files (x86)\AdGuard =>.Insoft LLC O43 - CFD: 14/05/2022 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Inc.® O43 - CFD: 13/05/2022 - [] D -- C:\Program Files (x86)\AMD =>.Advanced Micro Devices Inc.® O43 - CFD: 03/10/2022 - [] D -- C:\Program Files (x86)\Carroll [Unsigned] O43 - CFD: 18/11/2022 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation O43 - CFD: 15/11/2022 - [] D -- C:\Program Files (x86)\eM Client =>.Microsoft® O43 - CFD: 04/02/2023 - [] D -- C:\Program Files (x86)\foobar2000 =>.Peter Pawlowski O43 - CFD: 29/12/2022 - [] D -- C:\Program Files (x86)\Hard Disk Sentinel =>.H.D.S. Hungary O43 - CFD: 06/09/2022 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation O43 - CFD: 18/05/2022 - [] D -- C:\Program Files (x86)\InternetOff =>.Crystal Rich Ltd® O43 - CFD: 04/06/2022 - [] D -- C:\Program Files (x86)\IObit =>.IObit O43 - CFD: 04/09/2022 - [] D -- C:\Program Files (x86)\iRotate [Unsigned] O43 - CFD: 11/09/2022 - [] D -- C:\Program Files (x86)\Kutools for Excel =>.Addin Technology Inc O43 - CFD: 11/09/2022 - [] D -- C:\Program Files (x86)\Kutools for Word =>.Addin Technology Inc O43 - CFD: 03/02/2023 - [] D -- C:\Program Files (x86)\Lenovo =>.Lenovo O43 - CFD: 29/12/2022 - [] D -- C:\Program Files (x86)\Lexicool [Unsigned] =>.Lexicool O43 - CFD: 26/05/2022 - [] D -- C:\Program Files (x86)\Microsoft =>.Microsoft Corporation O43 - CFD: 26/05/2022 - [] D -- C:\Program Files (x86)\Microsoft LifeCam =>.Microsoft Corporation O43 - CFD: 13/09/2022 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation O43 - CFD: 26/05/2022 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 04/02/2023 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla O43 - CFD: 26/05/2022 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation O43 - CFD: 16/10/2022 - [] D -- C:\Program Files (x86)\MSECache =>.Microsoft Corporation O43 - CFD: 29/05/2022 - [] D -- C:\Program Files (x86)\NordVPN network TAP =>.OpenVPN Technologies, Inc.® O43 - CFD: 29/12/2022 - [] D -- C:\Program Files (x86)\Proton Technologies =>.Proton Technologies AG® O43 - CFD: 26/05/2022 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 20/05/2022 - [] D -- C:\Program Files (x86)\RocketDock =>.Punk Software O43 - CFD: 21/05/2022 - [] D -- C:\Program Files (x86)\ScrollNavigator [Unsigned] O43 - CFD: 11/10/2022 - [] D -- C:\Program Files (x86)\TaskbarMonitor [Unsigned] O43 - CFD: 04/09/2022 - [] D -- C:\Program Files (x86)\TweakNow WinSecret {00E110CB7D6CBE5DB5AB7FA23AAD0D6225}. O43 - CFD: 18/11/2022 - [] D -- C:\Program Files (x86)\VMware =>.VMware, Inc.® O43 - CFD: 06/09/2022 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation O43 - CFD: 20/01/2023 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 26/05/2022 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation O43 - CFD: 26/05/2022 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 20/05/2022 - [] D -- C:\Program Files (x86)\WinSplit Revolution [Unsigned] O43 - CFD: 07/05/2022 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 12/01/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\lenovo =>.Lenovo O43 - CFD: 07/05/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 19/10/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PerfmonBar O43 - CFD: 03/10/2022 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation O43 - CFD: 04/02/2023 - [] D -- C:\ProgramData\Adguard =>.Insoft LLC O43 - CFD: 14/05/2022 - [] D -- C:\ProgramData\Adobe =>.Adobe O43 - CFD: 16/10/2022 - [] HD -- C:\ProgramData\Anytxt O43 - CFD: 26/05/2022 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 26/05/2022 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation O43 - CFD: 17/05/2022 - [] D -- C:\ProgramData\DeskSoft =>.DeskSoft O43 - CFD: 26/05/2022 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 13/05/2022 - [] D -- C:\ProgramData\Dolby =>.Dolby O43 - CFD: 15/11/2022 - [] D -- C:\ProgramData\ESET =>.ESET O43 - CFD: 08/09/2022 - [] D -- C:\ProgramData\HDD Thermometer O43 - CFD: 04/06/2022 - [] D -- C:\ProgramData\IObit =>.IObit O43 - CFD: 18/05/2022 - [] D -- C:\ProgramData\IOffSvc O43 - CFD: 25/05/2022 - [] D -- C:\ProgramData\KORG =>.KORG O43 - CFD: 03/02/2023 - [] D -- C:\ProgramData\Lenovo =>.Lenovo O43 - CFD: 04/06/2022 - [] D -- C:\ProgramData\LockHunter =>.Crystal Rich Ltd O43 - CFD: 03/02/2023 - [0] D -- C:\ProgramData\Logishrd =>.Logitech Inc. O43 - CFD: 28/11/2022 - [] D -- C:\ProgramData\Macrium =>.Macrium O43 - CFD: 04/02/2023 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes O43 - CFD: 13/05/2022 - [] D -- C:\ProgramData\McInstTemp0224571635296603 O43 - CFD: 13/05/2022 - [] D -- C:\ProgramData\McInstTemp0260831652396264 O43 - CFD: 26/05/2022 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation O43 - CFD: 26/05/2022 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 26/05/2022 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation O43 - CFD: 26/05/2022 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation O43 - CFD: 04/02/2023 - [] D -- C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 =>.Mozilla Corporation O43 - CFD: 24/11/2022 - [] D -- C:\ProgramData\NordUpdater O43 - CFD: 28/10/2022 - [] D -- C:\ProgramData\NordVPN =>.NordVPN O43 - CFD: 02/02/2023 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 12/01/2023 - [] D -- C:\ProgramData\Packages =>.Microsoft Corporation O43 - CFD: 13/05/2022 - [] D -- C:\ProgramData\Propagation O43 - CFD: 22/05/2022 - [] D -- C:\ProgramData\ProtonVPN =>.Legitimate O43 - CFD: 04/02/2023 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation O43 - CFD: 21/05/2022 - [] D -- C:\ProgramData\SoftPerfect =>.SoftPerfect O43 - CFD: 07/05/2022 - [0] D -- C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [0] D -- C:\ProgramData\ssh =>.Microsoft Corporation O43 - CFD: 08/01/2023 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation O43 - CFD: 04/02/2023 - [] D -- C:\ProgramData\VMware =>.VMware O43 - CFD: 28/01/2023 - [] D -- C:\ProgramData\Windows Master O43 - CFD: 07/05/2022 - [] D -- C:\ProgramData\WindowsHolographicDevices =>.Microsoft Corporation O43 - CFD: 21/05/2022 - [] D -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe O43 - CFD: 15/05/2022 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER =>.Designer O43 - CFD: 26/05/2022 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation O43 - CFD: 20/01/2023 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation O43 - CFD: 18/11/2022 - [] D -- C:\Program Files (x86)\Common Files\ThinPrint =>.ThinPrint O43 - CFD: 18/11/2022 - [] D -- C:\Program Files (x86)\Common Files\VMware =>.VMware O43 - CFD: 07/09/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\0install.net O43 - CFD: 02/02/2023 - [] D -- C:\Users\gokpo\AppData\Roaming\Adguard Software Limited O43 - CFD: 21/05/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 13/05/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\AMD =>.AMD O43 - CFD: 28/09/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\ATI =>.ATI O43 - CFD: 27/09/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\AutoDarkMode O43 - CFD: 16/10/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\BowPad O43 - CFD: 19/05/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\careueyes O43 - CFD: 17/05/2022 - [0] D -- C:\Users\gokpo\AppData\Roaming\Carthago O43 - CFD: 24/05/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\deezer-desktop =>.Deezer O43 - CFD: 17/05/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\DeskSoft =>.DeskSoft O43 - CFD: 18/05/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\DesktopOK O43 - CFD: 04/02/2023 - [] D -- C:\Users\gokpo\AppData\Roaming\eM Client =>.eM Client O43 - CFD: 27/09/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\ExplorerPatcher O43 - CFD: 11/09/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\ExtendOffice =>.ExtendOffice O43 - CFD: 11/09/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\ExtendOffice.com =>.Extendoffice.com O43 - CFD: 31/01/2023 - [] D -- C:\Users\gokpo\AppData\Roaming\foobar2000 =>.Peter Pawlowski O43 - CFD: 04/02/2023 - [] D -- C:\Users\gokpo\AppData\Roaming\foobar2000-v2 O43 - CFD: 25/01/2023 - [] D -- C:\Users\gokpo\AppData\Roaming\FreeTube O43 - CFD: 14/05/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\Gest O43 - CFD: 18/05/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\Greenshot =>.Greenshot O43 - CFD: 07/09/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\Hard Disk Sentinel =>.H.D.S. Hungary O43 - CFD: 08/09/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\HDD Thermometer O43 - CFD: 17/05/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\Henry++ =>.Henry++ O43 - CFD: 20/05/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\IrfanView =>.Irfan skiljan O43 - CFD: 25/05/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\KORG =>.KORG O43 - CFD: 11/09/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\Kutools for Excel =>.Addin Technology Inc O43 - CFD: 07/09/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\LibreOffice =>.LibreOffice O43 - CFD: 21/05/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\LRTimelapse O43 - CFD: 14/11/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\Maassoft O43 - CFD: 03/10/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\MatSpoon O43 - CFD: 17/09/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\MAXON =>.Maxon O43 - CFD: 22/12/2022 - [] SD -- C:\Users\gokpo\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 13/05/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 04/02/2023 - [0] D -- C:\Users\gokpo\AppData\Roaming\MPC-HC =>.MPC-HC Team O43 - CFD: 21/05/2022 - [0] D -- C:\Users\gokpo\AppData\Roaming\mpv O43 - CFD: 13/05/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\Neos Eureka S.r.l O43 - CFD: 13/05/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\OpenShell O43 - CFD: 27/09/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\OtakuSoftware O43 - CFD: 19/10/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\PerfmonBar O43 - CFD: 29/12/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\Proton Technologies AG =>.Proton Technologies AG O43 - CFD: 28/05/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\Quantum Nox O43 - CFD: 08/09/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\Rainmeter =>.kimmo.pekkola O43 - CFD: 18/09/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\ryzen-controller O43 - CFD: 17/09/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\Samsung Magician =>.Samsung Electronics O43 - CFD: 23/05/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\ShellFolderFix =>.Legitimate O43 - CFD: 17/01/2023 - [] D -- C:\Users\gokpo\AppData\Roaming\SoundSwitch O43 - CFD: 13/11/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\SystemTrayMenu O43 - CFD: 08/10/2022 - [0] D -- C:\Users\gokpo\AppData\Roaming\TrafficMonitor O43 - CFD: 27/05/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\TweakNow WinSecret O43 - CFD: 13/05/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\vantage-widget-host O43 - CFD: 29/12/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\vlc =>.VideoLan Team O43 - CFD: 09/01/2023 - [] D -- C:\Users\gokpo\AppData\Roaming\VMware =>.VMware O43 - CFD: 04/01/2023 - [0] D -- C:\Users\gokpo\AppData\Roaming\Windows Master O43 - CFD: 18/10/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\windows95 O43 - CFD: 13/05/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 13/09/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\Winsplit Revolution O43 - CFD: 11/09/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\WordKutools =>.Addin Technology Inc O43 - CFD: 22/12/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\Yamicsoft =>.Yamicsoft O43 - CFD: 26/09/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\youtube-dl-gui O43 - CFD: 18/10/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\youtube-dlg O43 - CFD: 04/02/2023 - [] D -- C:\Users\gokpo\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 07/09/2022 - [] D -- C:\Users\gokpo\AppData\Local\0install.net O43 - CFD: 11/10/2022 - [] D -- C:\Users\gokpo\AppData\Local\AATUV3 O43 - CFD: 04/09/2022 - [] D -- C:\Users\gokpo\AppData\Local\Abdelrhman-AK O43 - CFD: 30/11/2022 - [] D -- C:\Users\gokpo\AppData\Local\Adguard_Software_Limited O43 - CFD: 05/09/2022 - [] D -- C:\Users\gokpo\AppData\Local\Adobe =>.Adobe O43 - CFD: 25/12/2022 - [] D -- C:\Users\gokpo\AppData\Local\AMD =>.AMD O43 - CFD: 13/05/2022 - [] D -- C:\Users\gokpo\AppData\Local\AMDSoftwareInstaller O43 - CFD: 28/09/2022 - [] D -- C:\Users\gokpo\AppData\Local\AMD_Common O43 - CFD: 26/05/2022 - [0] SHD -- C:\Users\gokpo\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 23/05/2022 - [] D -- C:\Users\gokpo\AppData\Local\Apps =>.Microsoft Corporation O43 - CFD: 27/09/2022 - [] D -- C:\Users\gokpo\AppData\Local\AutoDarkMode O43 - CFD: 03/10/2022 - [] D -- C:\Users\gokpo\AppData\Local\BatteryNotifier O43 - CFD: 06/09/2022 - [] D -- C:\Users\gokpo\AppData\Local\Briano O43 - CFD: 14/05/2022 - [] D -- C:\Users\gokpo\AppData\Local\cache =>.Legitimate O43 - CFD: 13/05/2022 - [] D -- C:\Users\gokpo\AppData\Local\Caphyon =>.Caphyon O43 - CFD: 16/05/2022 - [] D -- C:\Users\gokpo\AppData\Local\CEF =>.CEF O43 - CFD: 05/09/2022 - [] D -- C:\Users\gokpo\AppData\Local\Chanple O43 - CFD: 19/09/2022 - [] D -- C:\Users\gokpo\AppData\Local\Coderbag O43 - CFD: 13/05/2022 - [] D -- C:\Users\gokpo\AppData\Local\Comms =>.Microsoft Corporation O43 - CFD: 13/05/2022 - [] D -- C:\Users\gokpo\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation O43 - CFD: 04/02/2023 - [0] D -- C:\Users\gokpo\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 04/02/2023 - [] D -- C:\Users\gokpo\AppData\Local\D3DSCache =>.Legitimate O43 - CFD: 06/10/2022 - [0] D -- C:\Users\gokpo\AppData\Local\Deployment =>.Microsoft Corporation O43 - CFD: 04/09/2022 - [0] D -- C:\Users\gokpo\AppData\Local\Diagnostics =>.Microsoft Corporation O43 - CFD: 29/12/2022 - [] D -- C:\Users\gokpo\AppData\Local\eChess O43 - CFD: 04/02/2023 - [] D -- C:\Users\gokpo\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation O43 - CFD: 16/05/2022 - [] D -- C:\Users\gokpo\AppData\Local\eM Client =>.eM Client O43 - CFD: 16/05/2022 - [] D -- C:\Users\gokpo\AppData\Local\ESET =>.ESET O43 - CFD: 01/02/2023 - [] D -- C:\Users\gokpo\AppData\Local\EverythingToolbar =>.Everything O43 - CFD: 29/10/2022 - [] D -- C:\Users\gokpo\AppData\Local\Greenshot =>.Greenshot O43 - CFD: 26/05/2022 - [0] SHD -- C:\Users\gokpo\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 21/05/2022 - [] D -- C:\Users\gokpo\AppData\Local\Icaros O43 - CFD: 02/06/2022 - [] D -- C:\Users\gokpo\AppData\Local\IsolatedStorage =>.id Software O43 - CFD: 30/11/2022 - [] D -- C:\Users\gokpo\AppData\Local\JamesCJ O43 - CFD: 29/12/2022 - [] D -- C:\Users\gokpo\AppData\Local\JoeEditor O43 - CFD: 11/09/2022 - [] D -- C:\Users\gokpo\AppData\Local\KutoolsforExcel =>.Addin Technology Inc O43 - CFD: 03/02/2023 - [] D -- C:\Users\gokpo\AppData\Local\Lenovo =>.Lenovo O43 - CFD: 03/02/2023 - [] D -- C:\Users\gokpo\AppData\Local\mbam =>.Malwarebytes O43 - CFD: 29/12/2022 - [] D -- C:\Users\gokpo\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 13/11/2022 - [] D -- C:\Users\gokpo\AppData\Local\Microsoft_Corporation =>.Microsoft Corporation O43 - CFD: 13/05/2022 - [] D -- C:\Users\gokpo\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 23/01/2023 - [] D -- C:\Users\gokpo\AppData\Local\NordVPN =>.NordVPN O43 - CFD: 13/05/2022 - [] D -- C:\Users\gokpo\AppData\Local\OneDrive =>.Microsoft Corporation O43 - CFD: 20/05/2022 - [] D -- C:\Users\gokpo\AppData\Local\OO Software =>.O&O Software GmbH O43 - CFD: 04/02/2023 - [] D -- C:\Users\gokpo\AppData\Local\OpenShell O43 - CFD: 12/01/2023 - [] D -- C:\Users\gokpo\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 23/01/2023 - [] D -- C:\Users\gokpo\AppData\Local\paint.net =>.Rick Brewster O43 - CFD: 06/11/2022 - [] D -- C:\Users\gokpo\AppData\Local\PC Manager O43 - CFD: 15/05/2022 - [0] D -- C:\Users\gokpo\AppData\Local\PeerDistRepub =>.Microsoft Corporation O43 - CFD: 13/11/2022 - [0] D -- C:\Users\gokpo\AppData\Local\PlaceholderTileLogoFolder =>.Microsoft Corporation O43 - CFD: 17/01/2023 - [] D -- C:\Users\gokpo\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 29/12/2022 - [] D -- C:\Users\gokpo\AppData\Local\ProtonVPN =>.Legitimate O43 - CFD: 04/11/2022 - [] D -- C:\Users\gokpo\AppData\Local\Publishers =>.Microsoft Corporation O43 - CFD: 17/09/2022 - [] D -- C:\Users\gokpo\AppData\Local\RetroBar O43 - CFD: 17/05/2022 - [] D -- C:\Users\gokpo\AppData\Local\ryzen-controller-updater O43 - CFD: 13/05/2022 - [] D -- C:\Users\gokpo\AppData\Local\setup O43 - CFD: 14/11/2022 - [] D -- C:\Users\gokpo\AppData\Local\speech =>.Microsoft Corporation O43 - CFD: 03/10/2022 - [] D -- C:\Users\gokpo\AppData\Local\SquirrelTemp =>.Squirrels O43 - CFD: 04/02/2023 - [] D -- C:\Users\gokpo\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 26/05/2022 - [0] SHD -- C:\Users\gokpo\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 19/05/2022 - [] D -- C:\Users\gokpo\AppData\Local\ToastNotificationManagerCompat O43 - CFD: 20/01/2023 - [] D -- C:\Users\gokpo\AppData\Local\Tvsukernel =>.Lenovo Group Limited O43 - CFD: 29/12/2022 - [] D -- C:\Users\gokpo\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 26/01/2023 - [] D -- C:\Users\gokpo\AppData\Local\Vivaldi =>.Vivaldi O43 - CFD: 09/01/2023 - [] D -- C:\Users\gokpo\AppData\Local\VMware =>.VMware O43 - CFD: 28/01/2023 - [] D -- C:\Users\gokpo\AppData\Local\Windows Master O43 - CFD: 20/01/2023 - [] D -- C:\Users\gokpo\AppData\Local\WinTools.Info =>.WinTools.Info O43 - CFD: 04/02/2023 - [] D -- C:\Users\gokpo\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 13/05/2022 - [] D -- C:\Users\gokpo\AppData\Local\Programs\7+ Taskbar Tweaker O43 - CFD: 13/05/2022 - [0] D -- C:\Users\gokpo\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 18/11/2022 - [] D -- C:\Users\gokpo\AppData\Local\Programs\EdgeDeflector O43 - CFD: 15/01/2023 - [] D -- C:\Users\gokpo\AppData\Local\Programs\ElevenClock O43 - CFD: 17/01/2023 - [] D -- C:\Users\gokpo\AppData\Local\Programs\RestoreWindowPos O43 - CFD: 29/12/2022 - [] D -- C:\Users\gokpo\AppData\Local\Programs\SoundSwitch O43 - CFD: 11/10/2022 - [] D -- C:\Users\gokpo\AppData\Local\Programs\taskbar-monitor O43 - CFD: 21/05/2022 - [] D -- C:\Users\gokpo\AppData\Local\Programs\Textify =>.RaMMicHaeL O43 - CFD: 28/01/2023 - [] D -- C:\Users\gokpo\AppData\Local\Programs\WingetUI O43 - CFD: 14/05/2022 - [] D -- C:\Users\gokpo\AppData\LocalLow\Adobe =>.Adobe O43 - CFD: 23/12/2022 - [] D -- C:\Users\gokpo\AppData\LocalLow\AMD =>.AMD O43 - CFD: 04/02/2023 - [] D -- C:\Users\gokpo\AppData\LocalLow\IGDump O43 - CFD: 04/09/2022 - [] SD -- C:\Users\gokpo\AppData\LocalLow\Microsoft =>.Microsoft Corporation O43 - CFD: 03/02/2023 - [0] D -- C:\Users\gokpo\AppData\LocalLow\Mozilla =>.Mozilla Corporation O43 - CFD: 30/11/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\AATU.Standard O43 - CFD: 04/09/2022 - [] RD -- C:\Users\gokpo\OneDrive\Bureau\ADB_AppControl_162 O43 - CFD: 04/09/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\appresourcesusageview O43 - CFD: 27/09/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\AutoDarkModeX_10.2.0.18 O43 - CFD: 04/09/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\Bureau 1 O43 - CFD: 19/01/2023 - [] D -- C:\Users\gokpo\OneDrive\Bureau\Business O43 - CFD: 04/09/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\ccleaner_pro_6.01.9825 O43 - CFD: 04/09/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\CinebenchR23 O43 - CFD: 03/10/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\CloseTheDoor-v0.2.2-portable O43 - CFD: 14/11/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\ColorControl O43 - CFD: 13/11/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\ContextMenuCustomPackage_3.1.0.0_x64 O43 - CFD: 04/09/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\dexpot_1614_portable_r2439 O43 - CFD: 14/11/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\Dism++10.1.1002.1 O43 - CFD: 04/09/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\DotNetVersions O43 - CFD: 04/02/2023 - [] D -- C:\Users\gokpo\OneDrive\Bureau\Everything-1.4.1.1016.x64 =>.Everything O43 - CFD: 04/09/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\Firewall.Easy.0.7.Portable O43 - CFD: 25/01/2023 - [] D -- C:\Users\gokpo\OneDrive\Bureau\freetube-0.18.0-win-x64-portable O43 - CFD: 04/02/2023 - [] D -- C:\Users\gokpo\OneDrive\Bureau\FRST-OlderVersion O43 - CFD: 26/12/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\glasses O43 - CFD: 07/09/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\HardDiskSentinelProBeta O43 - CFD: 04/01/2023 - [] D -- C:\Users\gokpo\OneDrive\Bureau\Hide-Taskbar O43 - CFD: 04/09/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\KeyFreeze O43 - CFD: 04/02/2023 - [] D -- C:\Users\gokpo\OneDrive\Bureau\KORGMonoPoly-RSLOAD.NET- O43 - CFD: 04/09/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\Kyodai Mahjongg =>.René-Gilles Deberdt O43 - CFD: 16/09/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\lili O43 - CFD: 04/02/2023 - [] D -- C:\Users\gokpo\OneDrive\Bureau\Macrium.Reflect.8-RSLOAD.NET- O43 - CFD: 04/09/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\MajorGeeks Windows Tweaks O43 - CFD: 04/09/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\MicaForEveryone-v1.0.6.2-x64-Release O43 - CFD: 12/01/2023 - [] D -- C:\Users\gokpo\OneDrive\Bureau\MPC-HC.2.0.0.x64 O43 - CFD: 04/09/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\nilesoft-shell-1.6 O43 - CFD: 04/09/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\Nouveau dossier O43 - CFD: 26/09/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\open-video-downloader O43 - CFD: 23/01/2023 - [] D -- C:\Users\gokpo\OneDrive\Bureau\paint.net.5.0.1.portable.x64 O43 - CFD: 12/11/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\PreventTurnOff_x64_Portable O43 - CFD: 01/02/2023 - [] D -- C:\Users\gokpo\OneDrive\Bureau\Programmes Windows 11 O43 - CFD: 19/01/2023 - [] D -- C:\Users\gokpo\OneDrive\Bureau\Quiche O43 - CFD: 04/09/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\Registry Finder O43 - CFD: 08/11/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\RegistryFinder64 O43 - CFD: 17/09/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\RetroBar.64-bit O43 - CFD: 04/09/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\Rufus O43 - CFD: 04/09/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\Simple-Screen-Recorder-Release-Portable.x64 O43 - CFD: 04/09/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\SystemTrayMenu-1.2.9.0 O43 - CFD: 08/10/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\TrafficMonitor_V1.84_x64 O43 - CFD: 06/09/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\UWPHook O43 - CFD: 20/01/2023 - [] D -- C:\Users\gokpo\OneDrive\Bureau\Vivetool O43 - CFD: 04/09/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\Vmwares Services O43 - CFD: 10/01/2023 - [] D -- C:\Users\gokpo\OneDrive\Bureau\W11ClassicMenu O43 - CFD: 04/01/2023 - [] D -- C:\Users\gokpo\OneDrive\Bureau\Win11ClockTogglerGUI_x64 O43 - CFD: 18/11/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\WinBGMuter O43 - CFD: 07/12/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\WindowsVirtualDesktopHelper.Executable.v1.6 O43 - CFD: 13/10/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\WinSetView-2.43 O43 - CFD: 27/10/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\WiresharkPortable64 O43 - CFD: 06/09/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\wscc_x64 O43 - CFD: 18/10/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\youtube-dl-gui-0.4-win-portable O43 - CFD: 04/09/2022 - [] D -- C:\Users\gokpo\OneDrive\Bureau\zero-install O43 - CFD: 07/05/2022 - [] RD -- C:\Users\gokpo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 26/05/2022 - [] RD -- C:\Users\gokpo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 04/02/2023 - [] D -- C:\Users\gokpo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Audio O43 - CFD: 03/02/2023 - [] D -- C:\Users\gokpo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Custom O43 - CFD: 26/05/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Gest O43 - CFD: 23/01/2023 - [] D -- C:\Users\gokpo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hardware O43 - CFD: 02/11/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image O43 - CFD: 27/01/2023 - [] D -- C:\Users\gokpo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet O43 - CFD: 06/11/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 11/09/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Office 2021 =>.Microsoft Corporation O43 - CFD: 15/11/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pilotes O43 - CFD: 29/12/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Protection O43 - CFD: 03/02/2023 - [] RD -- C:\Users\gokpo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [] RD -- C:\Users\gokpo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 17/01/2023 - [] RD -- C:\Users\gokpo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Systeme O43 - CFD: 26/05/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Video O43 - CFD: 29/05/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VPN O43 - CFD: 07/05/2022 - [] D -- C:\Users\gokpo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation O43 - CFD: 29/12/2022 - [] HD -- C:\Users\gokpo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled O43 - CFD: 26/05/2022 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 26/05/2022 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 26/05/2022 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 26/05/2022 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 26/05/2022 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 26/05/2022 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 07/09/2022 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 29/12/2022 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\PeerDistRepub =>.Microsoft Corporation O43 - CFD: 04/09/2022 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 30/11/2022 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Adguard Software Limited O43 - CFD: 04/02/2023 - [0] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\VMware =>.VMware O43 - CFD: 17/12/2022 - [0] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Windows Master ---\\ ShellIconOverlayIdentifiers (SIOI) (5) - 1s O106 - SIOI: [ AccExtIco1] - {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47}. (.2013-2020, Adobe. All rights reserved. - Core Sync.) -- C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll =>.Adobe Inc.® O106 - SIOI: [ AccExtIco2] - {853B7E05-C47D-4985-909A-D0DC5C6D7303}. (.2013-2020, Adobe. All rights reserved. - Core Sync.) -- C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll =>.Adobe Inc.® O106 - SIOI: [ AccExtIco3] - {42D38F2E-98E9-4382-B546-E24E4D6D04BB}. (.2013-2020, Adobe. All rights reserved. - Core Sync.) -- C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll =>.Adobe Inc.® O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation ---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (42) - 1s O108 - CMH1: AccExt [64Bits] - {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} . (.2013-2020, Adobe. All rights reserved. - Core Sync.) -- C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll =>.Adobe Inc.® O108 - CMH1: ESET Security Shell [64Bits] - {B089FE88-FB52-11D3-BDF1-0050DA34150D} . (.ESET - ESET Shell Extension.) -- C:\Program Files\ESET\ESET Security\shellExt.dll =>.ESET, spol. s r.o.® O108 - CMH1: IrfanViewShellExt [64Bits] - {C835F12F-DD15-4294-B245-954A877D778A} . (.Irfan Skiljan - IrfanView Shell Extension.) -- C:\Program Files\IrfanView\Shell Extension\IrfanViewShellExt64.dll [Unsigned] =>.Irfan Skiljan O108 - CMH1: IXnView [64Bits] - {A5D35F9F-6A11-4EAA-B70B-7BB6FE32663A} . (. - XnViewShellExt Module.) -- C:\Program Files\XnView\ShellEx\XnViewShellExt64.dll =>.Pierre GOUGELET® O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: ReflectShellExt [64Bits] - {DEBB9B79-B3DD-47F4-9E5C-EA6975BAB611} . (.Paramount Software UK Ltd - Reflect Shell Extension Context Menu.) -- C:\Program Files\Macrium\Reflect\RContextMenu.dll {0EA39DC6653ADDC16FD0A739}. =>.Paramount Software UK Ltd O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: UnLockerMenu [64Bits] - {410BF280-86EF-4E0F-8279-EC5848546AD3} . (.IObit Information Technology - UnlockerExtension.) -- C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll =>.IObit Information Technology® O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH2: ESET Security Shell [64Bits] - {B089FE88-FB52-11D3-BDF1-0050DA34150D} . (.ESET - ESET Shell Extension.) -- C:\Program Files\ESET\ESET Security\shellExt.dll =>.ESET, spol. s r.o.® O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH2: StartMenuExt [64Bits] - {E595F05F-903F-4318-8B0A-7F633B520D2B} . (.Open-Shell - Start Menu Helper Extension.) -- C:\WINDOWS\system32\StartMenuHelper64.dll [Unsigned] =>.Open-Shell O108 - CMH2: UnLockerMenu [64Bits] - {410BF280-86EF-4E0F-8279-EC5848546AD3} . (.IObit Information Technology - UnlockerExtension.) -- C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll =>.IObit Information Technology® O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH3: FileLocksmithExt [64Bits] - {84D68575-E186-46AD-B0CB-BAEB45EE29C0} . (.Microsoft Corporation - PowerToys File Locksmith Static Library.) -- C:\Program Files\PowerToys\modules\FileLocksmith\PowerToys.FileLocksmithExt.dll =>.Microsoft® O108 - CMH3: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Inc.® O108 - CMH3: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH3: PowerRenameExt [64Bits] - {0440049F-D1DC-4E46-B27B-98393D79486B} . (.Microsoft Corporation - PowerToys PowerRenameExt.) -- C:\Program Files\PowerToys\modules\PowerRename\PowerToys.PowerRenameExt.dll =>.Microsoft® O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: UnLockerMenu [64Bits] - {410BF280-86EF-4E0F-8279-EC5848546AD3} . (.IObit Information Technology - UnlockerExtension.) -- C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll =>.IObit Information Technology® O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: ACE [64Bits] - {5E2121EE-0300-11D4-8D3B-444553540000} . (.Advanced Micro Devices, Inc. - Radeon Software: Desktop Control Panel.) -- C:\WINDOWS\System32\atiacm64.dll [Unsigned] =>.Advanced Micro Devices, Inc. O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: AccExt [64Bits] - {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} . (.2013-2020, Adobe. All rights reserved. - Core Sync.) -- C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll =>.Adobe Inc.® O108 - CMH6: ESET Security Shell [64Bits] - {B089FE88-FB52-11D3-BDF1-0050DA34150D} . (.ESET - ESET Shell Extension.) -- C:\Program Files\ESET\ESET Security\shellExt.dll =>.ESET, spol. s r.o.® O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH6: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Inc.® O108 - CMH6: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft® O108 - CMH6: StartMenuExt [64Bits] - {E595F05F-903F-4318-8B0A-7F633B520D2B} . (.Open-Shell - Start Menu Helper Extension.) -- C:\WINDOWS\system32\StartMenuHelper64.dll [Unsigned] =>.Open-Shell O108 - CMH6: UnLockerMenu [64Bits] - {410BF280-86EF-4E0F-8279-EC5848546AD3} . (.IObit Information Technology - UnlockerExtension.) -- C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll =>.IObit Information Technology® O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH7: ESET Security Shell [64Bits] - {B089FE88-FB52-11D3-BDF1-0050DA34150D} . (.ESET - ESET Shell Extension.) -- C:\Program Files\ESET\ESET Security\shellExt.dll =>.ESET, spol. s r.o.® O108 - CMH7: FileLocksmithExt [64Bits] - {84D68575-E186-46AD-B0CB-BAEB45EE29C0} . (.Microsoft Corporation - PowerToys File Locksmith Static Library.) -- C:\Program Files\PowerToys\modules\FileLocksmith\PowerToys.FileLocksmithExt.dll =>.Microsoft® O108 - CMH7: ReflectShellExt [64Bits] - {DEBB9B79-B3DD-47F4-9E5C-EA6975BAB611} . (.Paramount Software UK Ltd - Reflect Shell Extension Context Menu.) -- C:\Program Files\Macrium\Reflect\RContextMenu.dll {0EA39DC6653ADDC16FD0A739}. =>.Paramount Software UK Ltd O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation ---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (12) - 0s O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\LSASS.exe - (.Microsoft Corporation - Local Security Authority Process.) [AuditLevel\\8] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\notepad.exe - (.Microsoft Corporation - Bloc-notes.) [UseFilter\\1] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft® ---\\ LISTE DES PILOTES DU SYSTÈME (497) - 17s O58 - SDL:2022/09/04 16:50:00 A . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\WINDOWS\System32\drivers\1394ohci.sys [299008] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:03 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [108376] =>.Microsoft® O58 - SDL:2022/10/14 08:04:53 A . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\WINDOWS\System32\drivers\acpi.sys [755040] =>.Microsoft® O58 - SDL:2022/09/04 16:50:00 A . (.Microsoft Corporation - ACPI Devices Driver.) -- C:\WINDOWS\System32\drivers\AcpiDev.sys [57344] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:56 A . (.Microsoft Corporation - ACPIEx Driver.) -- C:\WINDOWS\System32\drivers\acpiex.sys [169312] =>.Microsoft® O58 - SDL:2022/05/07 13:19:04 A . (.Microsoft Corporation - ACPI Processor Aggregator Device Driver.) -- C:\WINDOWS\System32\drivers\acpipagr.sys [49152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:02 A . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\WINDOWS\System32\drivers\acpipmi.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:04 A . (.Microsoft Corporation - ACPI Wake Alarm.) -- C:\WINDOWS\System32\drivers\acpitime.sys [57344] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/08/31 20:15:02 A . (.Lenovo Group Ltd. - ACPI Virtual Power Controller Driver.) -- C:\WINDOWS\System32\drivers\AcpiVpc.sys [48896] =>.Lenovo® O58 - SDL:2022/09/04 16:50:00 A . (.Microsoft Corporation - Audio KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\Acx01000.sys [733184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/10/21 07:29:20 A . (.Adguard Software Limited - AdGuard WFP network driver x64 for Windows.) -- C:\WINDOWS\System32\drivers\adgnetworkwfpdrv.sys [87624] =>.Microsoft® O58 - SDL:2022/05/07 13:19:03 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1136472] =>.Microsoft® O58 - SDL:2022/10/14 08:04:52 A . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\afd.sys [697728] =>.Microsoft® O58 - SDL:2022/05/07 13:19:42 A . (.Microsoft Corporation - AF_UNIX socket provider.) -- C:\WINDOWS\System32\drivers\afunix.sys [81920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - Gestionnaire d'appels RAS Agile Vpn Minipor.) -- C:\WINDOWS\System32\drivers\agilevpn.sys [143360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/11/29 21:46:40 A . (.Microsoft Corporation - Application Compatibility Cache.) -- C:\WINDOWS\System32\drivers\ahcache.sys [376832] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/01/18 10:23:40 A . (.Microsoft Corporation - AntiHack Filter Driver.) -- C:\WINDOWS\System32\drivers\ahflt.sys [46480] =>.Microsoft® O58 - SDL:2021/06/18 18:58:10 A . (.Advanced Micro Devices, Inc - AMD GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\amdgpio2.sys [54984] =>.Advanced Micro Devices INC.® O58 - SDL:2022/05/22 16:01:00 A . (.Advanced Micro Devices, Inc - AMD I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\amdi2c.sys [75464] =>.Advanced Micro Devices Inc.® O58 - SDL:2022/11/11 19:15:01 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdk8.sys [251264] =>.Microsoft® O58 - SDL:2022/03/23 04:26:42 A . (.Advanced Micro Devices, Inc. - AMD Micro PEP driver.) -- C:\WINDOWS\System32\drivers\AmdMicroPEP.sys [263144] =>.Advanced Micro Devices Inc.® O58 - SDL:2022/11/11 19:15:01 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdppm.sys [259424] =>.Microsoft® O58 - SDL:2022/05/26 09:13:14 A . (.Advanced Micro Devices, Inc. - amdpsp sys.) -- C:\WINDOWS\System32\drivers\amdpsp.sys [49168] =>.Advanced Micro Devices Inc.® O58 - SDL:2022/05/07 13:19:03 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [84312] =>.Microsoft® O58 - SDL:2022/05/07 13:19:03 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [260440] =>.Microsoft® O58 - SDL:2022/05/07 13:19:03 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [28008] =>.Microsoft® O58 - SDL:2022/09/04 16:49:56 A . (.Microsoft Corporation - AppID Driver.) -- C:\WINDOWS\System32\drivers\appid.sys [247120] =>.Microsoft® O58 - SDL:2022/05/07 13:19:00 A . (.Apple Inc. - Apple Solid State Drive Device.) -- C:\WINDOWS\System32\drivers\AppleSSD.sys [113496] =>.Microsoft® O58 - SDL:2022/09/04 16:49:56 A . (.Microsoft Corporation - Applocker Filter.) -- C:\WINDOWS\System32\drivers\applockerfltr.sys [49152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:51 A . (.Microsoft Corporation - Microsoft Application Virtualization Stream.) -- C:\WINDOWS\System32\drivers\AppVStrm.sys [173408] =>.Microsoft® O58 - SDL:2022/09/04 16:49:51 A . (.Microsoft Corporation - Microsoft Application Virtualization VE Man.) -- C:\WINDOWS\System32\drivers\AppvVemgr.sys [206176] =>.Microsoft® O58 - SDL:2022/09/04 16:49:51 A . (.Microsoft Corporation - Microsoft Application Virtualization VFS Fi.) -- C:\WINDOWS\System32\drivers\AppvVfs.sys [189776] =>.Microsoft® O58 - SDL:2022/05/07 13:19:03 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [132968] =>.Microsoft® O58 - SDL:2022/05/07 13:19:43 A . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\WINDOWS\System32\drivers\asyncmac.sys [61440] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:50:00 A . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [62808] =>.Microsoft® O58 - SDL:2022/09/04 16:50:00 A . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\WINDOWS\System32\drivers\ataport.sys [259424] =>.Microsoft® O58 - SDL:2021/07/30 12:23:46 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\AtihdWT6.sys [246200] =>.Microsoft® O58 - SDL:2022/05/07 13:19:29 A . (.Microsoft Corporation - BAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\bam.sys [116056] =>.Microsoft® O58 - SDL:2022/05/07 13:19:04 A . (.Microsoft Corporation - Battery Class Driver.) -- C:\WINDOWS\System32\drivers\battc.sys [107880] =>.Microsoft® O58 - SDL:2022/05/07 13:19:00 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] [Unsigned] =>.Broadcom Corporation O58 - SDL:2022/05/07 13:19:45 A . (.Microsoft Corporation - BEEP Driver.) -- C:\WINDOWS\System32\drivers\beep.sys [40960] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:57 A . (.Microsoft Corporation - Pilote de filtre Bfs.) -- C:\WINDOWS\System32\drivers\bfs.sys [91504] =>.Microsoft® O58 - SDL:2022/11/11 19:15:10 A . (.Microsoft Corporation - Windows Bind Filter Driver.) -- C:\WINDOWS\System32\drivers\bindflt.sys [173408] =>.Microsoft® O58 - SDL:2022/05/07 13:19:10 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\WINDOWS\System32\drivers\bowser.sys [155648] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:52 A . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\WINDOWS\System32\drivers\bridge.sys [159744] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:00 A . (.Microsoft Corporation - Microsoft Bluetooth Audio Multiprofile Mana.) -- C:\WINDOWS\System32\drivers\BtaMPM.sys [73728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:50:00 A . (.Microsoft Corporation - Bluetooth A2DP Driver.) -- C:\WINDOWS\System32\drivers\BthA2dp.sys [532480] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/11/29 21:46:28 A . (.Microsoft Corporation - Extension de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthenum.sys [143360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:50:00 A . (.Microsoft Corporation - Bluetooth Hands-free Audio Device Driver.) -- C:\WINDOWS\System32\drivers\BthHfAud.sys [110592] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:50:00 A . (.Microsoft Corporation - Bluetooth Hands-Free Audio and Call Control.) -- C:\WINDOWS\System32\drivers\BthHfEnum.sys [184320] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/11/29 21:46:28 A . (.Microsoft Corporation - Bluetooth Transport Extensibility Miniport.) -- C:\WINDOWS\System32\drivers\BthMini.SYS [86016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:01 N . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\WINDOWS\System32\drivers\bthmodem.sys [106496] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:25 A . (.Microsoft Corporation - Bluetooth Personal Area Networking.) -- C:\WINDOWS\System32\drivers\bthpan.sys [159744] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/11/29 21:46:28 A . (.Microsoft Corporation - Pilote de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthport.sys [2048000] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/11/29 21:46:28 A . (.Microsoft Corporation - Pilote de Miniport Bluetooth.) -- C:\WINDOWS\System32\drivers\BTHUSB.SYS [139264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:05 A . (.Microsoft Corporation - VHD BTT Filter Driver.) -- C:\WINDOWS\System32\drivers\bttflt.sys [79184] =>.Microsoft® O58 - SDL:2022/05/07 13:19:25 A . (.Microsoft Corporation - Button Converter Driver.) -- C:\WINDOWS\System32\drivers\buttonconverter.sys [90112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:02 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [534872] =>.Microsoft® O58 - SDL:2022/05/07 13:19:01 A . (.Microsoft Corporation - Charge Arbiration Driver.) -- C:\WINDOWS\System32\drivers\CAD.sys [99672] =>.Microsoft® O58 - SDL:2022/10/21 09:35:26 A . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\cdfs.sys [131072] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:03 A . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\cdrom.sys [204800] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:20 A . (.Microsoft Corporation - Event Aggregation Kernel Mode Library.) -- C:\WINDOWS\System32\drivers\CEA.sys [107880] =>.Microsoft® O58 - SDL:2022/05/07 13:19:04 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [145256] =>.Microsoft® O58 - SDL:2022/05/07 13:19:04 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [320880] =>.Microsoft® O58 - SDL:2022/05/07 13:19:04 A . (.Chelsio Communications - VF library for Chelsio ® T5/T6 Chipset.) -- C:\WINDOWS\System32\drivers\cht4vfx.sys [28672] [Unsigned] =>.Chelsio Communications O58 - SDL:2022/05/07 13:19:04 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [1854832] =>.Microsoft® O58 - SDL:2022/05/07 13:19:23 A . (.Microsoft Corporation - CimFS driver.) -- C:\WINDOWS\System32\drivers\cimfs.sys [173424] =>.Microsoft® O58 - SDL:2022/05/07 13:19:01 A . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\WINDOWS\System32\drivers\circlass.sys [90112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:30 A . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\WINDOWS\System32\drivers\Classpnp.sys [488792] =>.Microsoft® O58 - SDL:2022/11/29 21:46:38 A . (.Microsoft Corporation - Cloud Files Mini Filter Driver.) -- C:\WINDOWS\System32\drivers\cldflt.sys [569344] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/11/11 19:15:17 A . (.Microsoft Corporation - Common Log File System Driver.) -- C:\WINDOWS\System32\drivers\clfs.sys [451968] =>.Microsoft® O58 - SDL:2022/11/29 21:46:23 A . (.Microsoft Corporation - CLIP Service.) -- C:\WINDOWS\System32\drivers\ClipSp.sys [1135960] =>.Microsoft® O58 - SDL:2022/05/07 13:19:04 A . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\WINDOWS\System32\drivers\CmBatt.sys [73728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:05 A . (.Microsoft Corporation - Noyau Gestionnaire de configuration Configu.) -- C:\WINDOWS\System32\drivers\cmimcext.sys [71008] =>.Microsoft® O58 - SDL:2022/10/07 10:05:41 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\WINDOWS\System32\drivers\cng.sys [782360] =>.Microsoft® O58 - SDL:2022/05/07 13:19:23 A . (.Microsoft Corporation - CNG Hardware Assist algorithm provider.) -- C:\WINDOWS\System32\drivers\cnghwassist.sys [75088] =>.Microsoft® O58 - SDL:2022/05/07 13:19:23 A . (.Microsoft Corporation - Console Driver.) -- C:\WINDOWS\System32\drivers\condrv.sys [87376] =>.Microsoft® O58 - SDL:2022/09/04 16:49:56 A . (.Microsoft Corporation - Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\crashdmp.sys [161120] =>.Microsoft® O58 - SDL:2022/05/07 18:35:32 A . (.Microsoft Corporation - Windows Client Side Caching Driver.) -- C:\WINDOWS\System32\drivers\csc.sys [602112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:57 A . (.Microsoft Corporation - DAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\dam.sys [140632] =>.Microsoft® O58 - SDL:2022/09/04 16:50:00 A . (.Microsoft Corporation - Xbox Device Authentication Driver.) -- C:\WINDOWS\System32\drivers\devauthe.sys [86016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/10/21 09:35:26 A . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\dfsc.sys [184320] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:56 A . (.Microsoft Corporation - PnP Disk Driver.) -- C:\WINDOWS\System32\drivers\disk.sys [140640] =>.Microsoft® O58 - SDL:2022/05/07 13:19:35 A . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\WINDOWS\System32\drivers\Diskdump.sys [79200] =>.Microsoft® O58 - SDL:2022/05/07 13:19:35 A . (.Microsoft Corporation - Boot Over USB Dump Driver.) -- C:\WINDOWS\System32\drivers\Dmpusbstor.sys [57344] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:20:16 A . (.Microsoft Corporation - Mémoire dynamique.) -- C:\WINDOWS\System32\drivers\dmvsc.sys [99664] =>.Microsoft® O58 - SDL:2022/05/07 13:19:01 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmk.sys [143360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:01 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmkaud.sys [50984] =>.Microsoft® O58 - SDL:2022/05/07 13:19:33 A . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpata.sys [79216] =>.Microsoft® O58 - SDL:2022/10/21 09:35:26 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\WINDOWS\System32\drivers\dumpfve.sys [133624] =>.Microsoft® O58 - SDL:2022/05/07 13:19:25 A . (.Microsoft Corporation - SD Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsd.sys [230744] =>.Microsoft® O58 - SDL:2022/05/07 13:19:23 A . (.Microsoft Corporation - SD Host Controller Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsdport.sys [73728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:35 A . (.Microsoft Corporation - Storport Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpstorport.sys [79184] =>.Microsoft® O58 - SDL:2022/11/29 21:46:23 A . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\WINDOWS\System32\drivers\dxgkrnl.sys [4687232] =>.Microsoft® O58 - SDL:2022/10/14 08:04:52 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms1.sys [566624] =>.Microsoft® O58 - SDL:2022/11/29 21:46:23 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms2.sys [1148248] =>.Microsoft® O58 - SDL:2023/01/16 20:43:15 A . (.ESET - ESET real-time file system monitor.) -- C:\WINDOWS\System32\drivers\eamonm.sys [198416] =>.ESET, spol. s r.o.® O58 - SDL:2023/01/16 20:43:15 A . (.ESET - Devmon monitor.) -- C:\WINDOWS\System32\drivers\edevmon.sys [119904] =>.ESET, spol. s r.o.® O58 - SDL:2022/09/05 10:36:47 A . (.ESET - ESET ELAM driver.) -- C:\WINDOWS\System32\drivers\eelam.sys [16336] =>.Microsoft® O58 - SDL:2023/01/16 20:43:15 A . (.ESET - ESET Helper driver.) -- C:\WINDOWS\System32\drivers\ehdrv.sys [237208] =>.ESET, spol. s r.o.® O58 - SDL:2022/05/07 13:20:05 A . (.Microsoft Corporation - Enhanced Storage Class driver for IEEE 1667.) -- C:\WINDOWS\System32\drivers\EhStorClass.sys [152944] =>.Microsoft® O58 - SDL:2022/09/04 16:50:00 A . (.Microsoft Corporation - Microsoft driver for storage devices suppor.) -- C:\WINDOWS\System32\drivers\EhStorTcgDrv.sys [165208] =>.Microsoft® O58 - SDL:2023/01/16 20:43:15 A . (.ESET - ESET OPP Keyboard Filter.) -- C:\WINDOWS\System32\drivers\ekbdflt.sys [55392] =>.ESET, spol. s r.o.® O58 - SDL:2023/01/16 20:43:15 A . (.ESET - ESET Firewall Driver.) -- C:\WINDOWS\System32\drivers\epfw.sys [81696] =>.ESET, spol. s r.o.® O58 - SDL:2023/01/16 20:43:15 A . (.ESET - ESET Firewall Driver.) -- C:\WINDOWS\System32\drivers\epfwwfp.sys [122504] =>.ESET, spol. s r.o.® O58 - SDL:2022/05/07 13:19:04 A . (.Microsoft Corporation - Error Device Driver.) -- C:\WINDOWS\System32\drivers\errdev.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:02 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbd0a.sys [3424104] =>.Microsoft® O58 - SDL:2022/05/07 13:19:02 A . (.Marvell Semiconductor Inc. - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3441512] =>.Microsoft® O58 - SDL:2022/09/04 16:49:56 A . (.Microsoft Corporation - CPU Scheduler for High Performance I/O.) -- C:\WINDOWS\System32\drivers\ExecutionContext.sys [75112] =>.Microsoft® O58 - SDL:2022/11/11 19:15:00 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\WINDOWS\System32\drivers\exfat.sys [451928] =>.Microsoft® O58 - SDL:2023/02/04 17:45:30 A . (.Malwarebytes - Malwarebytes Anti-Ransomware Protection.) -- C:\WINDOWS\System32\drivers\farflt.sys [198088] =>.Microsoft® O58 - SDL:2022/11/11 19:15:00 A . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\WINDOWS\System32\drivers\fastfat.sys [456024] =>.Microsoft® O58 - SDL:2022/05/07 13:19:04 A . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\WINDOWS\System32\drivers\fdc.sys [69632] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:02 A . (.Microsoft Corporation - Windows sandboxing and encryption filter.) -- C:\WINDOWS\System32\drivers\filecrypt.sys [90112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:33 A . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\WINDOWS\System32\drivers\fileinfo.sys [124240] =>.Microsoft® O58 - SDL:2022/05/07 13:19:33 A . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\WINDOWS\System32\drivers\filetrace.sys [73728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:04 A . (.Microsoft Corporation - Floppy Driver.) -- C:\WINDOWS\System32\drivers\flpydisk.sys [65536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:56 A . (.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) -- C:\WINDOWS\System32\drivers\fltMgr.sys [488816] =>.Microsoft® O58 - SDL:2022/09/04 16:49:57 A . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) -- C:\WINDOWS\System32\drivers\fsdepends.sys [103792] =>.Microsoft® O58 - SDL:2022/10/11 09:20:36 A . (.Microsoft Corporation - Flow Steering Engine Driver.) -- C:\WINDOWS\System32\drivers\fse.sys [218456] =>.Microsoft® O58 - SDL:2022/05/07 13:19:30 A . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\WINDOWS\System32\drivers\fs_rec.sys [71008] =>.Microsoft® O58 - SDL:2022/10/21 09:35:26 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\WINDOWS\System32\drivers\fvevol.sys [877912] =>.Microsoft® O58 - SDL:2022/10/21 09:35:28 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\WINDOWS\System32\drivers\FWPKCLNT.SYS [546176] =>.Microsoft® O58 - SDL:2022/09/07 09:13:42 A . (.VMware, Inc. - VMware USB monitor.) -- C:\WINDOWS\System32\drivers\hcmon.sys [84480] =>.VMware, Inc.® O58 - SDL:2022/09/04 16:50:00 A . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [192512] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:50:00 A . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\HdAudio.sys [528384] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:04 A . (.Microsoft Corporation - Hid Battery Driver.) -- C:\WINDOWS\System32\drivers\hidbatt.sys [71016] =>.Microsoft® O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périp.) -- C:\WINDOWS\System32\drivers\hidbth.sys [151552] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/11/11 19:15:10 A . (.Microsoft Corporation - Bibliothèque de classes Hid.) -- C:\WINDOWS\System32\drivers\hidclass.sys [278528] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - I2C HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidi2c.sys [102400] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:25 A . (.Microsoft Corporation - HID Button over Interrupt Driver.) -- C:\WINDOWS\System32\drivers\hidinterrupt.sys [91472] =>.Microsoft® O58 - SDL:2022/05/07 13:19:01 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidir.sys [81920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/11/11 19:15:10 A . (.Microsoft Corporation - Hid Parsing Library.) -- C:\WINDOWS\System32\drivers\hidparse.sys [90112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - SPI HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidspi.sys [139264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - HidSpi KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\HidSpiCx.sys [126976] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/11/11 19:15:10 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidusb.sys [77824] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/12/29 12:42:48 A . (.Microsoft Corporation - Network driver for proxying traffic.) -- C:\WINDOWS\System32\drivers\hnswfpdriver.sys [58704] =>.Microsoft® O58 - SDL:2022/05/07 13:19:03 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [65360] =>.Microsoft® O58 - SDL:2022/05/07 13:19:08 A . (.Microsoft Corporation - HSP Device Driver.) -- C:\WINDOWS\System32\drivers\Hsp.sys [124264] =>.Microsoft® O58 - SDL:2022/11/11 19:15:14 A . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\WINDOWS\System32\drivers\http.sys [1774936] =>.Microsoft® O58 - SDL:2022/05/07 13:20:16 A . (.Microsoft Corporation - Hyper-V Crashdump.) -- C:\WINDOWS\System32\drivers\hvcrash.sys [75112] =>.Microsoft® O58 - SDL:2022/09/04 16:49:53 A . (.Microsoft Corporation - Hypervisor Boot Driver.) -- C:\WINDOWS\System32\drivers\hvservice.sys [91504] =>.Microsoft® O58 - SDL:2022/09/04 16:49:52 A . (.Microsoft Corporation - Microsoft Hyper-V Socket Provider.) -- C:\WINDOWS\System32\drivers\hvsocket.sys [181616] =>.Microsoft® O58 - SDL:2022/09/04 16:51:28 A . (.Microsoft Corporation - Microsoft Hyper-V Socket Provider Control D.) -- C:\WINDOWS\System32\drivers\hvsocketcontrol.sys [66912] =>.Microsoft® O58 - SDL:2022/05/07 13:19:30 A . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\WINDOWS\System32\drivers\hwpolicy.sys [79200] =>.Microsoft® O58 - SDL:2022/05/07 13:20:16 A . (.Microsoft Corporation - Microsoft VMBus Synthetic Keyboard Driver.) -- C:\WINDOWS\System32\drivers\hyperkbd.sys [62800] =>.Microsoft® O58 - SDL:2022/05/07 13:20:16 A . (.Microsoft Corporation - Microsoft VMBus Video Device Miniport Drive.) -- C:\WINDOWS\System32\drivers\HyperVideo.sys [79200] =>.Microsoft® O58 - SDL:2022/05/07 13:19:25 A . (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [159744] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:00 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [36352] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2022/05/07 13:19:00 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [91136] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2022/05/07 13:19:00 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360] [Unsigned] =>.Intel Corporation O58 - SDL:2022/05/07 13:19:00 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [93184] [Unsigned] =>.Intel Corporation O58 - SDL:2022/05/07 13:19:00 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128] [Unsigned] =>.Intel Corporation O58 - SDL:2022/05/07 13:19:00 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256] [Unsigned] =>.Intel Corporation O58 - SDL:2022/05/07 13:19:00 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520] [Unsigned] =>.Intel Corporation O58 - SDL:2022/05/07 13:19:00 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [175104] [Unsigned] =>.Intel Corporation O58 - SDL:2022/05/07 13:19:00 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [177152] [Unsigned] =>.Intel Corporation O58 - SDL:2022/05/07 13:19:00 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664] [Unsigned] =>.Intel Corporation O58 - SDL:2022/05/07 13:19:02 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group® O58 - SDL:2022/05/07 13:19:01 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] [Unsigned] =>.Intel Corporation O58 - SDL:2022/05/07 13:19:04 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAVC.sys [885584] =>.Microsoft® O58 - SDL:2022/05/07 13:19:04 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [413008] =>.Microsoft® O58 - SDL:2022/05/07 13:19:04 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [559976] =>.Microsoft® O58 - SDL:2022/09/04 16:49:57 A . (.Microsoft Corporation - Indirect displays kernel-mode filter driver.) -- C:\WINDOWS\System32\drivers\IndirectKmd.sys [77824] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/17 18:59:33 A . (.Highresolution Enterprises [www.highrez.co.uk] - Kernel level port access driver.) -- C:\WINDOWS\System32\drivers\inpoutx64.sys [15008] =>.Red Fox UK Limited® O58 - SDL:2022/09/04 16:50:00 A . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\WINDOWS\System32\drivers\intelide.sys [58712] =>.Microsoft® O58 - SDL:2022/05/07 13:19:03 A . (.Microsoft Corporation - Intel Power Engine Plugin.) -- C:\WINDOWS\System32\drivers\intelpep.sys [488960] =>.Microsoft® O58 - SDL:2022/05/07 13:19:00 A . (.Microsoft Corporation - Intel Power Limit Driver.) -- C:\WINDOWS\System32\drivers\intelpmax.sys [65536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:03 A . (.Microsoft Corporation - Intel Platform Monitoring Driver.) -- C:\WINDOWS\System32\drivers\IntelPMT.sys [87552] =>.Microsoft® O58 - SDL:2022/11/11 19:15:01 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\intelppm.sys [288128] =>.Microsoft® O58 - SDL:2022/05/07 13:18:58 A . (.Microsoft Corporation - Filtre de contrôle de taux d’E/S.) -- C:\WINDOWS\System32\drivers\iorate.sys [87392] =>.Microsoft® O58 - SDL:2022/05/07 13:19:43 A . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\WINDOWS\System32\drivers\ipfltdrv.sys [118784] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:50:00 A . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\WINDOWS\System32\drivers\IPMIDrv.sys [148832] =>.Microsoft® O58 - SDL:2022/11/11 19:15:10 A . (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\ipnat.sys [258048] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:00 A . (.Microsoft Corporation - IPT Driver.) -- C:\WINDOWS\System32\drivers\ipt.sys [99688] =>.Microsoft® O58 - SDL:2022/05/07 13:19:04 A . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\WINDOWS\System32\drivers\isapnp.sys [54624] =>.Microsoft® O58 - SDL:2022/05/07 13:19:03 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\ItSas35i.sys [187224] =>.Microsoft® O58 - SDL:2022/05/07 13:19:25 A . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\WINDOWS\System32\drivers\kbdclass.sys [95576] =>.Microsoft® O58 - SDL:2022/05/07 13:19:25 A . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\WINDOWS\System32\drivers\kbdhid.sys [73728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 18:35:36 A . (.Microsoft Corporation - Keyboard Lockdown Subsystem.) -- C:\WINDOWS\System32\drivers\kbldfltr.sys [63392] =>.Microsoft® O58 - SDL:2022/05/07 13:19:31 A . (.Microsoft Corporation - Microsoft Kernel Debugger Network Miniport.) -- C:\WINDOWS\System32\drivers\kdnic.sys [70992] =>.Microsoft® O58 - SDL:2022/09/04 16:49:58 A . (.Microsoft Corporation - Kernel Mode Power Dependency Coordinator.) -- C:\WINDOWS\System32\drivers\kmpdc.sys [71008] =>.Microsoft® O58 - SDL:2022/09/04 16:50:00 A . (.Microsoft Corporation - Network Power Dependency Broker.) -- C:\WINDOWS\System32\drivers\KNetPwrDepBroker.sys [73728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:38 A . (.Microsoft Corporation - Kernel CSA Library.) -- C:\WINDOWS\System32\drivers\ks.sys [544768] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/10/21 09:35:28 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecdd.sys [189792] =>.Microsoft® O58 - SDL:2022/10/14 08:04:52 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecpkg.sys [218456] =>.Microsoft® O58 - SDL:2022/05/07 13:19:38 A . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\WINDOWS\System32\drivers\ksthunk.sys [65536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/12/29 12:42:49 A . (.Microsoft Corporation - Network driver for bridging packets between.) -- C:\WINDOWS\System32\drivers\l2bridge.sys [87376] =>.Microsoft® O58 - SDL:2015/09/21 00:08:58 A . (.Microsoft Corporation - Microsoft® LcUvcUpper driver.) -- C:\WINDOWS\System32\drivers\LcUvcUpper.sys [37912] =>.Microsoft Corporation® O58 - SDL:2022/09/04 16:49:56 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\WINDOWS\System32\drivers\lltdio.sys [102400] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:03 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [109920] =>.Microsoft® O58 - SDL:2022/05/07 13:19:03 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [125280] =>.Microsoft® O58 - SDL:2022/05/07 13:19:03 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [138600] =>.Microsoft® O58 - SDL:2022/09/04 16:49:56 A . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) -- C:\WINDOWS\System32\drivers\luafv.sys [167936] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/11/29 21:47:06 A . (.Microsoft Corporation - LX Core.) -- C:\WINDOWS\System32\drivers\lxcore.sys [1123664] =>.Microsoft® O58 - SDL:2022/12/29 12:42:48 A . (.Microsoft Corporation - LXSS.) -- C:\WINDOWS\System32\drivers\lxss.sys [50536] =>.Microsoft® O58 - SDL:2022/05/07 13:19:04 A . (.Microsoft Corporation - MA-USB Host Controller Driver.) -- C:\WINDOWS\System32\drivers\mausbhost.sys [566632] =>.Microsoft® O58 - SDL:2022/05/07 13:19:04 A . (.Microsoft Corporation - MA-USB IP Driver.) -- C:\WINDOWS\System32\drivers\mausbip.sys [99664] =>.Microsoft® O58 - SDL:2023/02/04 12:44:44 A . (.Malwarebytes - Malwarebytes Anti-Exploit.) -- C:\WINDOWS\System32\drivers\mbae64.sys [158640] =>.Microsoft® O58 - SDL:2023/02/04 17:45:36 A . (.Malwarebytes - Malwarebytes Real-Time Protection.) -- C:\WINDOWS\System32\drivers\mbam.sys [76216] =>.Microsoft® O58 - SDL:2023/02/04 16:54:25 A . (.Malwarebytes - Malwarebytes Chameleon.) -- C:\WINDOWS\System32\drivers\MbamChameleon.sys [223176] =>.Microsoft® O58 - SDL:2023/02/04 12:43:03 A . (.Malwarebytes - Malwarebytes Early Launch Anti-Malware Driv.) -- C:\WINDOWS\System32\drivers\MbamElam.sys [21480] =>.Microsoft® O58 - SDL:2023/02/04 17:45:29 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys [239544] =>.Microsoft® O58 - SDL:2022/09/04 16:50:00 A . (.Microsoft Corporation - Windows Mobile Broadband Class Extension.) -- C:\WINDOWS\System32\drivers\MbbCx.sys [454656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:45 A . (.Microsoft Corporation - Medium changer class driver.) -- C:\WINDOWS\System32\drivers\mcd.sys [61440] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:03 A . (.Avago Technologies - MEGASAS2i RAID Controller Driver for Window.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [81752] =>.Microsoft® O58 - SDL:2022/05/07 13:19:03 A . (.Broadcom Inc - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas35i.sys [101224] =>.Microsoft® O58 - SDL:2022/05/07 13:19:03 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [576856] =>.Microsoft® O58 - SDL:2022/05/07 13:19:00 A . (.Microsoft Corporation - Pilote de transport Microsoft Bluetooth Avr.) -- C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [98304] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - Legacy Bluetooth LE Bus Enumerator.) -- C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [143360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:04 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [1132392] =>.Microsoft® O58 - SDL:2022/09/04 16:50:00 A . (.Microsoft Corporation - MMCSS Driver.) -- C:\WINDOWS\System32\drivers\mmcss.sys [90112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:52 A . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\WINDOWS\System32\drivers\modem.sys [81920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/11/29 21:46:13 A . (.Microsoft Corporation - Monitor Driver.) -- C:\WINDOWS\System32\drivers\monitor.sys [122880] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:25 A . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\WINDOWS\System32\drivers\mouclass.sys [95592] =>.Microsoft® O58 - SDL:2022/05/07 13:19:25 A . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\WINDOWS\System32\drivers\mouhid.sys [69632] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:56 A . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\WINDOWS\System32\drivers\mountmgr.sys [136560] =>.Microsoft® O58 - SDL:2022/05/07 13:19:03 A . (.Broadcom Limited - Broadcom MPI 3.0 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\mpi3drvi.sys [90472] =>.Microsoft® O58 - SDL:2022/09/04 16:49:59 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\WINDOWS\System32\drivers\mpsdrv.sys [110592] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/21 15:41:14 A . (. - Macrium Reflect Changed Block Tracker.) -- C:\WINDOWS\System32\drivers\mrcbt.sys [101032] =>.Paramount Software UK Ltd® O58 - SDL:2022/05/21 15:41:14 A . (. - Macrium Image Guardian Filter Driver.) -- C:\WINDOWS\System32\drivers\mrigflt.sys [75160] =>.Microsoft® O58 - SDL:2022/05/07 13:20:16 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\WINDOWS\System32\drivers\mrxdav.sys [196608] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/11/08 22:20:56 A . (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\mrxsmb.sys [660816] =>.Microsoft® O58 - SDL:2022/10/21 09:35:26 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\WINDOWS\System32\drivers\mrxsmb20.sys [333168] =>.Microsoft® O58 - SDL:2022/09/04 16:49:56 A . (.Microsoft Corporation - Mailslot driver.) -- C:\WINDOWS\System32\drivers\msfs.sys [79208] =>.Microsoft® O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - GPIO Class Extension Driver.) -- C:\WINDOWS\System32\drivers\msgpioclx.sys [218480] =>.Microsoft® O58 - SDL:2022/09/04 16:49:56 A . (.Microsoft Corporation - GPIO Button Driver.) -- C:\WINDOWS\System32\drivers\msgpiowin32.sys [95600] =>.Microsoft® O58 - SDL:2022/05/07 13:19:23 A . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\WINDOWS\System32\drivers\mshidkmdf.sys [49152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:13 A . (.Microsoft Corporation - Pilote direct pour interface HID-UMDF.) -- C:\WINDOWS\System32\drivers\mshidumdf.sys [49152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:23 A . (.Microsoft Corporation - Hardware Notification Class Extension Drive.) -- C:\WINDOWS\System32\drivers\mshwnclx.sys [61440] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:04 A . (.Microsoft Corporation - ISA Driver.) -- C:\WINDOWS\System32\drivers\msisadrv.sys [54608] =>.Microsoft® O58 - SDL:2022/05/07 13:19:04 A . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\WINDOWS\System32\drivers\msiscsi.sys [333168] =>.Microsoft® O58 - SDL:2022/05/07 13:19:38 A . (.Microsoft Corporation - MS KS Server.) -- C:\WINDOWS\System32\drivers\mskssrv.sys [73728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:51 A . (.Microsoft Corporation - Pilote de protocole LLDP (Link Layer Discov.) -- C:\WINDOWS\System32\drivers\mslldp.sys [102400] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:38 A . (.Microsoft Corporation - MS Proxy Clock.) -- C:\WINDOWS\System32\drivers\mspclock.sys [49152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:38 A . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\WINDOWS\System32\drivers\mspqm.sys [49152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:31 A . (.Microsoft Corporation - Microsoft® QUIC Library.) -- C:\WINDOWS\System32\drivers\msquic.sys [404336] =>.Microsoft® O58 - SDL:2022/05/07 13:19:30 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\WINDOWS\System32\drivers\msrpc.sys [406872] =>.Microsoft® O58 - SDL:2022/09/04 16:50:00 A . (.Microsoft Corporation - Pilote du filtre de système de fichiers du.) -- C:\WINDOWS\System32\drivers\mssecflt.sys [394600] =>.Microsoft® O58 - SDL:2022/05/07 13:19:04 A . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\WINDOWS\System32\drivers\mssmbios.sys [79216] =>.Microsoft® O58 - SDL:2022/05/07 13:19:38 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\WINDOWS\System32\drivers\mstee.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:03 A . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\WINDOWS\System32\drivers\MTConfig.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/14 00:43:24 A . (.MediaTek Inc. - MTK Filter driver.) -- C:\WINDOWS\System32\drivers\mtkbtfilterx.sys [286424] {0FDDB53064C536A794495B90D3089427}. =>.MediaTek Inc. O58 - SDL:2022/05/15 04:26:12 A . (.MediaTek Inc. - MediaTek 802.11AX Wireless Adapter Driver.) -- C:\WINDOWS\System32\drivers\mtkwl6ex.sys [1439976] {0FDDB53064C536A794495B90D3089427}. =>.MediaTek Inc. O58 - SDL:2022/09/04 16:49:51 A . (.Microsoft Corporation - Pilote de fournisseur UNC multiples.) -- C:\WINDOWS\System32\drivers\mup.sys [169312] =>.Microsoft® O58 - SDL:2022/05/07 13:19:03 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [64872] =>.Microsoft® O58 - SDL:2023/02/04 17:45:29 A . (.Malwarebytes - Malwarebytes Web Protection.) -- C:\WINDOWS\System32\drivers\mwac.sys [181816] =>.Malwarebytes Inc.® O58 - SDL:2022/05/07 13:19:04 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [147304] =>.Microsoft® O58 - SDL:2022/11/29 21:46:35 A . (.Microsoft Corporation - NDIS (Network Driver Interface Specificatio.) -- C:\WINDOWS\System32\drivers\ndis.sys [1631576] =>.Microsoft® O58 - SDL:2022/05/07 13:20:14 A . (.Microsoft Corporation - Microsoft NDIS Packet Capture Filter Driver.) -- C:\WINDOWS\System32\drivers\ndiscap.sys [86016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - Microsoft Network Adapter Multiplexor.) -- C:\WINDOWS\System32\drivers\NdisImPlatform.sys [163840] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\WINDOWS\System32\drivers\ndistapi.sys [65536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:31 A . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\WINDOWS\System32\drivers\ndisuio.sys [102400] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:42 A . (.Microsoft Corporation - Énumérateur de cartes réseau virtuelles Mic.) -- C:\WINDOWS\System32\drivers\NdisVirtualBus.sys [57344] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:43 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\WINDOWS\System32\drivers\ndiswan.sys [237568] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:20:14 A . (...) -- C:\WINDOWS\System32\drivers\NDKPerf.sys [83288] =>.Microsoft® O58 - SDL:2022/05/07 13:20:14 A . (.Microsoft Corporation - RDMA Sample Driver.) -- C:\WINDOWS\System32\drivers\NDKPing.sys [107872] =>.Microsoft® O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - NDIS Proxy.) -- C:\WINDOWS\System32\drivers\ndproxy.sys [122880] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:53 A . (.Microsoft Corporation - Windows Network Data Usage Monitoring Drive.) -- C:\WINDOWS\System32\drivers\Ndu.sys [188416] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/11/29 21:46:36 A . (.Microsoft Corporation - Network Adapter Class Extension for WDF.) -- C:\WINDOWS\System32\drivers\NetAdapterCx.sys [394624] =>.Microsoft® O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\WINDOWS\System32\drivers\netbios.sys [95576] =>.Microsoft® O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netbt.sys [327680] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/10/21 09:35:28 A . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\WINDOWS\System32\drivers\netio.sys [652624] =>.Microsoft® O58 - SDL:2022/09/04 16:49:52 A . (.Microsoft Corporation - Miniport NDIS virtuel.) -- C:\WINDOWS\System32\drivers\netvsc.sys [329056] =>.Microsoft® O58 - SDL:2020/03/13 14:46:30 A . (. - NetFilter SDK WFP Driver (WPP).) -- C:\WINDOWS\System32\drivers\networx.sys [96488] {084EEAAE1D23F2E189C219261275C404}. O58 - SDL:2022/02/22 10:52:10 A . (.TEFINCOM S.A. - NordVPN LightWeight Firewall.) -- C:\WINDOWS\System32\drivers\nordlwf.sys [44928] =>.nordvpn s.a.® O58 - SDL:2022/08/20 03:59:06 A . (.Insecure.Com LLC. - npcap.sys (NT6 AMD64) Kernel Filter Driver.) -- C:\WINDOWS\System32\drivers\npcap.sys [77336] {0AA60783EBB5076EBC2D12DA9B04C290}. =>.Insecure.Com LLC. O58 - SDL:2022/09/04 16:49:56 A . (.Microsoft Corporation - NPFS Driver.) -- C:\WINDOWS\System32\drivers\npfs.sys [120168] =>.Microsoft® O58 - SDL:2022/05/07 13:19:32 A . (.Microsoft Corporation - Named pipe service triggers.) -- C:\WINDOWS\System32\drivers\npsvctrig.sys [65536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:31 A . (.Microsoft Corporation - NSI Proxy.) -- C:\WINDOWS\System32\drivers\nsiproxy.sys [77824] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/10/21 09:35:28 A . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [3343736] =>.Microsoft® O58 - SDL:2022/05/07 13:19:39 A . (.Microsoft Corporation - NTOS extension host driver.) -- C:\WINDOWS\System32\drivers\ntosext.sys [58704] =>.Microsoft® O58 - SDL:2022/05/07 13:19:30 A . (.Microsoft Corporation - NULL Driver.) -- C:\WINDOWS\System32\drivers\null.sys [45056] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:05 A . (.Microsoft Corporation - Pilote de périphérique NVDIMM.) -- C:\WINDOWS\System32\drivers\nvdimm.sys [206160] =>.Microsoft® O58 - SDL:2022/05/07 13:19:03 A . (.Microsoft Corporation - Nvme Disk Driver.) -- C:\WINDOWS\System32\drivers\nvmedisk.sys [91496] =>.Microsoft® O58 - SDL:2022/05/07 13:19:04 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [151392] =>.Microsoft® O58 - SDL:2022/05/07 13:19:04 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [167256] =>.Microsoft® O58 - SDL:2022/10/14 08:04:53 A . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\WINDOWS\System32\drivers\nwifi.sys [753664] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:20:18 A . (.Microsoft Corporation - Plan 9 redirector.) -- C:\WINDOWS\System32\drivers\p9rdr.sys [148816] =>.Microsoft® O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\WINDOWS\System32\drivers\pacer.sys [185696] =>.Microsoft® O58 - SDL:2022/05/07 13:19:04 A . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\parport.sys [135168] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/11/11 19:15:14 A . (.Microsoft Corporation - Partition driver.) -- C:\WINDOWS\System32\drivers\partmgr.sys [218464] =>.Microsoft® O58 - SDL:2022/12/29 12:42:49 A . (.Microsoft Corporation - Pass thru parser.) -- C:\WINDOWS\System32\drivers\passthruparser.sys [75104] =>.Microsoft® O58 - SDL:2022/11/29 21:46:16 A . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\WINDOWS\System32\drivers\pci.sys [570712] =>.Microsoft® O58 - SDL:2022/09/04 16:50:00 A . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\pciide.sys [54608] =>.Microsoft® O58 - SDL:2022/09/04 16:50:00 A . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\WINDOWS\System32\drivers\pciidex.sys [91472] =>.Microsoft® O58 - SDL:2022/11/18 22:05:29 A . (.Microsoft Corporation - Microsoft PCI Proxy Driver.) -- C:\WINDOWS\System32\drivers\pcip.sys [111976] =>.Microsoft® O58 - SDL:2022/05/07 13:19:01 A . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\WINDOWS\System32\drivers\pcmcia.sys [157016] =>.Microsoft® O58 - SDL:2022/09/04 16:49:56 A . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\WINDOWS\System32\drivers\pcw.sys [99680] =>.Microsoft® O58 - SDL:2022/09/04 16:49:58 A . (.Microsoft Corporation - Power Dependency Coordinator Driver.) -- C:\WINDOWS\System32\drivers\pdc.sys [202072] =>.Microsoft® O58 - SDL:2022/10/07 10:05:42 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\WINDOWS\System32\drivers\PEAuth.sys [856064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:04 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [59752] =>.Microsoft® O58 - SDL:2022/05/07 13:19:04 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [69464] =>.Microsoft® O58 - SDL:2022/10/14 08:04:50 A . (.Microsoft Corporation - Pilote du moniteur de paquets.) -- C:\WINDOWS\System32\drivers\PktMon.sys [177488] =>.Microsoft® O58 - SDL:2022/09/04 16:50:00 A . (.Microsoft Corporation - Pilote de mémoire persistante.) -- C:\WINDOWS\System32\drivers\pmem.sys [181600] =>.Microsoft® O58 - SDL:2022/05/07 13:19:02 A . (.Microsoft Corporation - Pilote mémoire Plug and Play.) -- C:\WINDOWS\System32\drivers\pnpmem.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:23 A . (.Microsoft Corporation - Port Device Class Configuration Filter Driv.) -- C:\WINDOWS\System32\drivers\portcfg.sys [61440] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:01 A . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\WINDOWS\System32\drivers\portcls.sys [471040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/11/11 19:15:01 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\processr.sys [259416] =>.Microsoft® O58 - SDL:2022/05/07 13:19:23 A . (.Microsoft Corporation - Time Travel Debugging Process Launch Monito.) -- C:\WINDOWS\System32\drivers\ProcLaunchMon.sys [79896] =>.Microsoft® O58 - SDL:2019/02/15 11:01:28 A . (. - Paramount Software Image Mounting Driver.) -- C:\WINDOWS\System32\drivers\psmounterex.sys [179416] =>.Paramount Software UK Ltd® O58 - SDL:2022/10/27 10:44:08 A . (. - Volume Access Driver.) -- C:\WINDOWS\System32\drivers\PSVolAcc.sys [50376] =>.Microsoft® O58 - SDL:2022/12/29 12:42:48 A . (.Microsoft Corporation - Analyseur de disque dur virtuel de proxy.) -- C:\WINDOWS\System32\drivers\pvhdparser.sys [95584] =>.Microsoft® O58 - SDL:2022/05/07 13:19:04 A . (.VMware, Inc. - VMware PVSCSI StorPort driver (64-bit).) -- C:\WINDOWS\System32\drivers\pvscsii.sys [45408] =>.Microsoft® O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - Pilote du support de Microsoft Quality Wind.) -- C:\WINDOWS\System32\drivers\qwavedrv.sys [86016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:02 A . (.Microsoft Corporation - RAM Disk Driver.) -- C:\WINDOWS\System32\drivers\ramdisk.sys [75104] =>.Microsoft® O58 - SDL:2022/05/07 13:19:43 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\WINDOWS\System32\drivers\rasacd.sys [57344] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/10/21 09:35:27 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\rasl2tp.sys [139264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:43 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\raspppoe.sys [118784] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/11/11 19:15:19 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\WINDOWS\System32\drivers\raspptp.sys [139264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/10/21 09:35:27 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\WINDOWS\System32\drivers\rassstp.sys [122880] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:51 A . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) -- C:\WINDOWS\System32\drivers\rdbss.sys [496984] =>.Microsoft® O58 - SDL:2022/09/04 16:49:52 A . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\WINDOWS\System32\drivers\rdpbus.sys [65536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:20:14 A . (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [196608] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:52 A . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\WINDOWS\System32\drivers\rdpvideominiport.sys [66896] =>.Microsoft® O58 - SDL:2022/09/04 16:49:52 A . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\WINDOWS\System32\drivers\rdyboost.sys [329056] =>.Microsoft® O58 - SDL:2022/11/11 19:15:16 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\WINDOWS\System32\drivers\refs.sys [2868568] =>.Microsoft® O58 - SDL:2022/09/04 16:49:56 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\WINDOWS\System32\drivers\refsv1.sys [1000792] =>.Microsoft® O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - Bluetooth RFCOMM Driver.) -- C:\WINDOWS\System32\drivers\rfcomm.sys [253952] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:50:00 A . (.Microsoft Corporation - ResourceHub Proxy Driver.) -- C:\WINDOWS\System32\drivers\rhproxy.sys [147456] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:20:09 A . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\WINDOWS\System32\drivers\rmcast.sys [184320] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:43 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\WINDOWS\System32\drivers\RNDISMP.sys [69632] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:20:15 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\WINDOWS\System32\drivers\rootmdm.sys [49152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:20:02 A . (...) -- C:\WINDOWS\System32\drivers\RoutePolicy.sys [98304] [Unsigned] O58 - SDL:2022/09/04 16:49:56 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) -- C:\WINDOWS\System32\drivers\rspndr.sys [118784] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:00 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [86016] [Unsigned] =>.Realtek O58 - SDL:2022/04/21 00:20:18 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [6190528] =>.Realtek Semiconductor Corp.® O58 - SDL:2022/07/25 23:17:20 A . (.Realtek Semiconductor Corporation - RTS PCIE READER Driver.) -- C:\WINDOWS\System32\drivers\RtsPer.sys [1398920] =>.Realtek Semiconductor Corp.® O58 - SDL:2022/09/04 16:50:00 A . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\WINDOWS\System32\drivers\sbp2port.sys [148848] =>.Microsoft® O58 - SDL:2022/05/07 13:19:44 A . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce.) -- C:\WINDOWS\System32\drivers\scfilter.sys [77824] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:59 A . (.Microsoft Corporation - Pilote de bus de mémoire de classe stockage.) -- C:\WINDOWS\System32\drivers\scmbus.sys [222552] =>.Microsoft® O58 - SDL:2022/05/07 13:19:45 A . (.Microsoft Corporation - SCSI Port Driver.) -- C:\WINDOWS\System32\drivers\scsiport.sys [226656] =>.Microsoft® O58 - SDL:2022/05/07 13:19:25 A . (.Microsoft Corporation - Pilote du bus numérique sécurisé (SD).) -- C:\WINDOWS\System32\drivers\sdbus.sys [341336] =>.Microsoft® O58 - SDL:2022/05/07 13:19:02 A . (.Microsoft Corporation - SDF Reflector.) -- C:\WINDOWS\System32\drivers\SDFRd.sys [71016] =>.Microsoft® O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - SD Host Controller Port Driver.) -- C:\WINDOWS\System32\drivers\sdport.sys [140640] =>.Microsoft® O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - Pilote de classe de stockage SD.) -- C:\WINDOWS\System32\drivers\sdstor.sys [132448] =>.Microsoft® O58 - SDL:2022/05/07 13:19:23 A . (.Microsoft Corporation - Serial Class Extension.) -- C:\WINDOWS\System32\drivers\SerCx.sys [120144] =>.Microsoft® O58 - SDL:2022/10/07 10:05:40 A . (.Microsoft Corporation - Serial Class Extension V2.) -- C:\WINDOWS\System32\drivers\SerCx2.sys [202088] =>.Microsoft® O58 - SDL:2022/05/07 13:19:04 A . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\WINDOWS\System32\drivers\serenum.sys [65536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:04 A . (.Microsoft Corporation - Pilote de périphérique série.) -- C:\WINDOWS\System32\drivers\serial.sys [122880] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:25 A . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\WINDOWS\System32\drivers\sermouse.sys [65536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:04 A . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\WINDOWS\System32\drivers\sfloppy.sys [57344] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:20:01 A . (.Microsoft Corporation - System Guard Runtime Monitor Agent Driver.) -- C:\WINDOWS\System32\drivers\SgrmAgent.sys [124264] =>.Microsoft® O58 - SDL:2022/05/07 13:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [45920] =>.Microsoft® O58 - SDL:2022/05/07 13:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [82784] =>.Microsoft® O58 - SDL:2022/05/07 13:19:04 A . (.Microsemi Corportation - Storport Miniport Driver for SmartRAID/Smar.) -- C:\WINDOWS\System32\drivers\SmartSAMD.sys [210784] =>.Microsoft® O58 - SDL:2022/09/04 16:49:51 A . (.Microsoft Corporation - Pilote réseau SMB Direct.) -- C:\WINDOWS\System32\drivers\smbdirect.sys [225280] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:44 A . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\WINDOWS\System32\drivers\smclib.sys [65536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/11/29 21:46:14 A . (.Microsoft Corporation - Storage Spaces Dump Driver.) -- C:\WINDOWS\System32\drivers\spacedump.sys [284032] =>.Microsoft® O58 - SDL:2022/05/07 13:20:02 A . (.Microsoft Corporation - Storage Spaces Parser driver.) -- C:\WINDOWS\System32\drivers\spaceparser.sys [81920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/11/29 21:46:14 A . (.Microsoft Corporation - Storage Spaces Driver.) -- C:\WINDOWS\System32\drivers\spaceport.sys [931160] =>.Microsoft® O58 - SDL:2022/05/07 18:35:36 A . (.Microsoft Corporation - Holographic Spatial Graph Filter.) -- C:\WINDOWS\System32\drivers\SpatialGraphFilter.sys [132448] =>.Microsoft® O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - SPB Class Extension.) -- C:\WINDOWS\System32\drivers\SpbCx.sys [124272] =>.Microsoft® O58 - SDL:2022/09/04 16:49:56 A . (.Microsoft Corporation - Pilote de serveur SMB 2.0.) -- C:\WINDOWS\System32\drivers\srv2.sys [868352] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/10/11 09:19:00 A . (.Microsoft Corporation - Server Network driver.) -- C:\WINDOWS\System32\drivers\srvnet.sys [368640] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:04 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [32080] =>.Microsoft® O58 - SDL:2022/09/04 16:50:00 A . (.Microsoft Corporation - MS AHCI Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storahci.sys [214368] =>.Microsoft® O58 - SDL:2022/10/11 09:19:01 A . (.Microsoft Corporation - Microsoft NVM Express Storport Miniport Dri.) -- C:\WINDOWS\System32\drivers\stornvme.sys [251208] =>.Microsoft® O58 - SDL:2022/11/29 21:46:16 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\WINDOWS\System32\drivers\storport.sys [1164640] =>.Microsoft® O58 - SDL:2022/11/29 21:46:28 A . (.Microsoft Corporation - Filtre de qualité de service de stockage.) -- C:\WINDOWS\System32\drivers\storqosflt.sys [120160] =>.Microsoft® O58 - SDL:2022/09/04 16:49:59 A . (.Microsoft Corporation - MS UFS Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storufs.sys [107880] =>.Microsoft® O58 - SDL:2022/09/04 16:49:52 A . (.Microsoft Corporation - Storage VSC Driver.) -- C:\WINDOWS\System32\drivers\storvsc.sys [87392] =>.Microsoft® O58 - SDL:2022/09/04 16:51:29 A . (.Microsoft Corporation - Pilote du fournisseur de services de virtua.) -- C:\WINDOWS\System32\drivers\storvsp.sys [271712] =>.Microsoft® O58 - SDL:2022/05/07 13:19:45 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\WINDOWS\System32\drivers\stream.sys [118784] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:45 A . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\WINDOWS\System32\drivers\tape.sys [69632] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/13 12:49:14 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\tapnordvpn.sys [49744] =>.nordvpn s.a.® O58 - SDL:2022/04/01 15:26:41 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\tapprotonvpn.sys [49024] =>.Microsoft® O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - Export driver for kernel mode TPM API.) -- C:\WINDOWS\System32\drivers\tbs.sys [75120] =>.Microsoft® O58 - SDL:2022/11/29 21:46:36 A . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\WINDOWS\System32\drivers\tcpip.sys [3306832] =>.Microsoft® O58 - SDL:2022/10/21 09:35:28 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\WINDOWS\System32\drivers\tcpipreg.sys [86016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:31 A . (.Microsoft Corporation - TDI Wrapper.) -- C:\WINDOWS\System32\drivers\tdi.sys [79184] =>.Microsoft® O58 - SDL:2022/09/04 16:49:53 A . (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [157040] =>.Microsoft® O58 - SDL:2022/05/07 13:20:12 A . (.Microsoft Corporation - Terminal Server Input Driver.) -- C:\WINDOWS\System32\drivers\terminpt.sys [75104] =>.Microsoft® O58 - SDL:2022/09/04 16:49:56 A . (.Microsoft Corporation - Kernel Transaction Manager Driver.) -- C:\WINDOWS\System32\drivers\tm.sys [177512] =>.Microsoft® O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - Pilote de périphérique TPM.) -- C:\WINDOWS\System32\drivers\tpm.sys [365928] =>.Microsoft® O58 - SDL:2022/05/07 13:19:02 A . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du.) -- C:\WINDOWS\System32\drivers\TsUsbFlt.sys [98304] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:03 A . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\WINDOWS\System32\drivers\TsUsbGD.sys [69632] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:51 A . (.Microsoft Corporation - Concentrateur USB du Bureau à distance.) -- C:\WINDOWS\System32\drivers\tsusbhub.sys [163840] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/10/14 08:04:52 A . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\WINDOWS\System32\drivers\tunnel.sys [167936] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:59 A . (.Microsoft Corporation - Microsoft Uasp Driver.) -- C:\WINDOWS\System32\drivers\uaspstor.sys [116048] =>.Microsoft® O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - USB Connector Manager KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmCx.sys [204800] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - UCM-TCPCI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmTcpciCx.sys [217088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:25 A . (.Microsoft Corporation - UCM-UCSI ACPI Client Driver.) -- C:\WINDOWS\System32\drivers\UcmUcsiAcpiClient.sys [69632] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - UCM-UCSI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmUcsiCx.sys [155648] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:05 A . (.Microsoft Corporation - USB Controller Extension.) -- C:\WINDOWS\System32\drivers\Ucx01000.sys [292184] =>.Microsoft® O58 - SDL:2022/05/07 13:19:05 A . (.Microsoft Corporation - "udecx.DRIVER".) -- C:\WINDOWS\System32\drivers\Udecx.sys [90112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:20:15 A . (.Microsoft Corporation - UDF File System Driver.) -- C:\WINDOWS\System32\drivers\udfs.sys [389120] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 18:35:37 A . (.Microsoft Corporation - Microsoft User Experience Virtualization Ag.) -- C:\WINDOWS\System32\drivers\UevAgentDriver.sys [75088] =>.Microsoft® O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - USB Function Driver Class Extension.) -- C:\WINDOWS\System32\drivers\ufx01000.sys [361824] =>.Microsoft® O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - UFX Synopsys Client Driver.) -- C:\WINDOWS\System32\drivers\ufxsynopsys.sys [197984] =>.Microsoft® O58 - SDL:2022/05/07 13:19:25 A . (.Microsoft Corporation - Generic pass-through driver.) -- C:\WINDOWS\System32\drivers\umpass.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - USB Role-Switch Class Extension.) -- C:\WINDOWS\System32\drivers\urscx01000.sys [111976] =>.Microsoft® O58 - SDL:2022/05/07 13:19:43 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\WINDOWS\System32\drivers\usb8023.sys [57344] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:50:00 A . (.Microsoft Corporation - USB Audio Class Driver.) -- C:\WINDOWS\System32\drivers\USBAUDIO.sys [282624] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:01 A . (.Microsoft Corporation - Microsoft USB Audio Class 2.0 Driver.) -- C:\WINDOWS\System32\drivers\usbaudio2.sys [397312] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:29 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\WINDOWS\System32\drivers\USBCAMD2.sys [81920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/10/14 08:04:52 A . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\WINDOWS\System32\drivers\usbccgp.sys [230784] =>.Microsoft® O58 - SDL:2022/05/07 13:19:01 A . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\WINDOWS\System32\drivers\usbcir.sys [143360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\WINDOWS\System32\drivers\usbd.sys [71024] =>.Microsoft® O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbehci.sys [120176] =>.Microsoft® O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - Pilote de concentrateur USB par défaut.) -- C:\WINDOWS\System32\drivers\usbhub.sys [558424] =>.Microsoft® O58 - SDL:2022/05/07 13:19:25 A . (.Microsoft Corporation - Pilote de concentrateur USB3.) -- C:\WINDOWS\System32\drivers\USBHUB3.SYS [722256] =>.Microsoft® O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbohci.sys [65536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:23 A . (.Microsoft Corporation - USB Policy Manager Kernel-Mode Library.) -- C:\WINDOWS\System32\drivers\UsbPmApi.sys [94208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\WINDOWS\System32\drivers\usbport.sys [505168] =>.Microsoft® O58 - SDL:2022/10/21 09:35:54 A . (.Microsoft Corporation - USB Printer driver.) -- C:\WINDOWS\System32\drivers\usbprint.sys [110592] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/10/21 09:35:54 A . (.Microsoft Corporation - USB Serial Driver.) -- C:\WINDOWS\System32\drivers\usbser.sys [126976] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:25 A . (.Microsoft Corporation - Pilote de classe de stockage de masse USB.) -- C:\WINDOWS\System32\drivers\USBSTOR.SYS [173392] =>.Microsoft® O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbuhci.sys [73728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:50:00 A . (.Microsoft Corporation - USB Video Class Driver.) -- C:\WINDOWS\System32\drivers\usbvideo.sys [382312] =>.Microsoft® O58 - SDL:2022/10/14 08:04:52 A . (.Microsoft Corporation - Pilote XHCI USB.) -- C:\WINDOWS\System32\drivers\USBXHCI.SYS [677216] =>.Microsoft® O58 - SDL:2022/05/07 13:19:05 A . (.Microsoft Corporation - Virtual Drive Root Enumerator.) -- C:\WINDOWS\System32\drivers\vdrvroot.sys [124248] =>.Microsoft® O58 - SDL:2022/09/04 16:49:56 A . (.Microsoft Corporation - Extension du vérificateur de pilotes.) -- C:\WINDOWS\System32\drivers\VerifierExt.sys [247128] =>.Microsoft® O58 - SDL:2022/10/07 10:06:59 A . (.Microsoft Corporation - Microsoft Azure VFP Extension.) -- C:\WINDOWS\System32\drivers\vfpext.sys [1617920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/11/29 21:46:16 A . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\WINDOWS\System32\drivers\vhdmp.sys [1013080] =>.Microsoft® O58 - SDL:2022/11/29 21:47:05 A . (.Microsoft Corporation - Native VHD parser.) -- C:\WINDOWS\System32\drivers\vhdparser.sys [87392] =>.Microsoft® O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - Virtual HID Framework (VHF) Driver.) -- C:\WINDOWS\System32\drivers\vhf.sys [90112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:53 A . (.Microsoft Corporation - Microsoft Hyper-V Virtualization Infrastruc.) -- C:\WINDOWS\System32\drivers\Vid.sys [828768] =>.Microsoft® O58 - SDL:2022/05/07 13:19:35 A . (.Microsoft Corporation - Video Port Driver.) -- C:\WINDOWS\System32\drivers\videoprt.sys [90112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/12/29 12:42:48 A . (.Microsoft Corporation - Microsoft Hyper-V NT Kernel Integration VSC.) -- C:\WINDOWS\System32\drivers\vkrnlintvsc.sys [79192] =>.Microsoft® O58 - SDL:2022/12/29 12:42:49 A . (.Microsoft Corporation - Microsoft Hyper-V NT Kernel Integration VSP.) -- C:\WINDOWS\System32\drivers\vkrnlintvsp.sys [79200] =>.Microsoft® O58 - SDL:2022/09/04 16:49:51 A . (.Microsoft Corporation - Hyper-V VMBus KMCL.) -- C:\WINDOWS\System32\drivers\vmbkmcl.sys [169320] =>.Microsoft® O58 - SDL:2022/09/04 16:51:28 A . (.Microsoft Corporation - Hyper-V VMBus Root KMCL.) -- C:\WINDOWS\System32\drivers\vmbkmclr.sys [185704] =>.Microsoft® O58 - SDL:2022/11/29 21:47:04 A . (.Microsoft Corporation - Pilote enfant de bus VMBus sous Microsoft H.) -- C:\WINDOWS\System32\drivers\vmbus.sys [206208] =>.Microsoft® O58 - SDL:2022/05/07 13:20:16 A . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\WINDOWS\System32\drivers\VMBusHID.sys [71000] =>.Microsoft® O58 - SDL:2022/12/29 12:42:48 A . (...) -- C:\WINDOWS\System32\drivers\vmbusproxy.sys [94208] [Unsigned] O58 - SDL:2022/11/29 21:47:04 A . (.Microsoft Corporation - Pilote racine de bus VMBus sous Microsoft H.) -- C:\WINDOWS\System32\drivers\vmbusr.sys [296280] =>.Microsoft® O58 - SDL:2022/07/03 18:47:16 A . (.VMware, Inc. - VMware PCI VMCI Bus Device.) -- C:\WINDOWS\System32\drivers\vmci.sys [104888] =>.Microsoft® O58 - SDL:2022/05/07 13:20:16 A . (.Microsoft Corporation - Virtual Machine Generation Counter.) -- C:\WINDOWS\System32\drivers\vmgencounter.sys [58720] =>.Microsoft® O58 - SDL:2022/05/07 13:20:16 A . (.Microsoft Corporation - Virtual Machine Guest Infrastructure Driver.) -- C:\WINDOWS\System32\drivers\vmgid.sys [58720] =>.Microsoft® O58 - SDL:2022/11/16 01:15:14 A . (.VMware, Inc. - VMware virtual network driver (64-bit).) -- C:\WINDOWS\System32\drivers\vmnet.sys [46576] =>.VMware, Inc.® O58 - SDL:2022/11/16 01:15:14 A . (.VMware, Inc. - VMware virtual network adapter driver (64-b.) -- C:\WINDOWS\System32\drivers\vmnetadapter.sys [46576] =>.VMware, Inc.® O58 - SDL:2022/11/16 01:15:14 A . (.VMware, Inc. - VMware bridge driver (64-bit).) -- C:\WINDOWS\System32\drivers\vmnetbridge.sys [67072] =>.VMware, Inc.® O58 - SDL:2022/11/16 01:15:14 A . (.VMware, Inc. - VMware network application interface driver.) -- C:\WINDOWS\System32\drivers\vmnetuserif.sys [44544] =>.VMware, Inc.® O58 - SDL:2022/05/07 13:20:16 A . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\WINDOWS\System32\drivers\vms3cap.sys [54616] =>.Microsoft® O58 - SDL:2022/10/14 08:06:31 A . (.Microsoft Corporation - VMSWITCH Proxy Driver.) -- C:\WINDOWS\System32\drivers\VmsProxy.sys [70992] =>.Microsoft® O58 - SDL:2022/10/14 08:06:31 A . (.Microsoft Corporation - VmSwitch NIC Proxy Driver.) -- C:\WINDOWS\System32\drivers\VmsProxyHNic.sys [75136] =>.Microsoft® O58 - SDL:2022/05/07 13:20:16 A . (.Microsoft Corporation - Pilote de filtre de stockage virtuel.) -- C:\WINDOWS\System32\drivers\vmstorfl.sys [87376] =>.Microsoft® O58 - SDL:2022/10/07 10:07:00 A . (.Microsoft Corporation - Hyper-V Secure Virtualization Component mod.) -- C:\WINDOWS\System32\drivers\vmsvcext.sys [234864] =>.Microsoft® O58 - SDL:2022/11/29 21:47:06 A . (.Microsoft Corporation - Fournisseur de services de virtualisation d.) -- C:\WINDOWS\System32\drivers\vmswitch.sys [2684248] =>.Microsoft® O58 - SDL:2022/09/07 09:13:50 A . (.VMware, Inc. - VMware USB driver.) -- C:\WINDOWS\System32\drivers\vmusb.sys [70656] =>.VMware, Inc.® O58 - SDL:2022/11/16 01:10:10 A . (.VMware, Inc. - VMware kernel driver.) -- C:\WINDOWS\System32\drivers\vmx86.sys [99768] =>.Microsoft® O58 - SDL:2022/09/04 16:49:56 A . (.Microsoft Corporation - Volume Manager Driver.) -- C:\WINDOWS\System32\drivers\volmgr.sys [124264] =>.Microsoft® O58 - SDL:2022/05/07 13:20:03 A . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) -- C:\WINDOWS\System32\drivers\volmgrx.sys [419168] =>.Microsoft® O58 - SDL:2022/05/07 13:19:13 A . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [468312] =>.Microsoft® O58 - SDL:2022/05/07 13:19:03 A . (.Microsoft Corporation - Volume driver.) -- C:\WINDOWS\System32\drivers\volume.sys [54640] =>.Microsoft® O58 - SDL:2022/10/11 09:18:58 A . (.Microsoft Corporation - Virtual PCI Bus.) -- C:\WINDOWS\System32\drivers\vpci.sys [120160] =>.Microsoft® O58 - SDL:2022/11/18 22:05:29 A . (.Microsoft Corporation - Virtual PCI VSP Driver.) -- C:\WINDOWS\System32\drivers\vpcivsp.sys [243048] =>.Microsoft® O58 - SDL:2022/05/07 13:19:04 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [167784] =>.Microsoft® O58 - SDL:2022/07/03 18:47:16 A . (.VMware, Inc. - VMware vSockets Service.) -- C:\WINDOWS\System32\drivers\vsock.sys [88976] =>.Microsoft® O58 - SDL:2022/05/07 13:19:04 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [306512] =>.Microsoft® O58 - SDL:2022/05/07 13:19:11 A . (.Microsoft Corporation - Virtual Wireless Bus Driver.) -- C:\WINDOWS\System32\drivers\vwifibus.sys [65536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:11 A . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\WINDOWS\System32\drivers\vwififlt.sys [110592] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:11 A . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\WINDOWS\System32\drivers\vwifimp.sys [86016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:03 A . (.Microsoft Corporation - Pilote de tablette Wacom à stylet série.) -- C:\WINDOWS\System32\drivers\wacompen.sys [65536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\WINDOWS\System32\drivers\wanarp.sys [126976] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:56 A . (.Microsoft Corporation - Watchdog Driver.) -- C:\WINDOWS\System32\drivers\watchdog.sys [139264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/10/21 09:35:26 A . (.Microsoft Corporation - Windows Container Isolation FS Filter Drive.) -- C:\WINDOWS\System32\drivers\wcifs.sys [251232] =>.Microsoft® O58 - SDL:2022/05/07 13:19:08 A . (.Microsoft Corporation - Microsoft antimalware boot driver.) -- C:\WINDOWS\System32\drivers\WdBoot.sys [48536] =>.Microsoft® O58 - SDL:2022/05/07 13:19:08 A . (.Microsoft Corporation - Microsoft antimalware device filter driver.) -- C:\WINDOWS\System32\drivers\WdDevFlt.sys [169232] =>.Microsoft® O58 - SDL:2022/11/29 21:46:35 A . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) -- C:\WINDOWS\System32\drivers\Wdf01000.sys [820576] =>.Microsoft® O58 - SDL:2022/05/07 13:19:08 A . (.Microsoft Corporation - Microsoft antimalware file system filter dr.) -- C:\WINDOWS\System32\drivers\WdFilter.sys [438544] =>.Microsoft® O58 - SDL:2022/09/04 16:49:56 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\WINDOWS\System32\drivers\WdfLdr.sys [103792] =>.Microsoft® O58 - SDL:2022/10/14 08:04:53 A . (.Microsoft Corporation - WDI Driver Framework Driver.) -- C:\WINDOWS\System32\drivers\WdiWiFi.sys [1073152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:26 A . (.Microsoft Corporation - WDM Companion Filter.) -- C:\WINDOWS\System32\drivers\WdmCompanionFilter.sys [62800] =>.Microsoft® O58 - SDL:2022/05/07 13:19:08 A . (.Microsoft Corporation - Windows Defender Network Stream Filter.) -- C:\WINDOWS\System32\drivers\WdNisDrv.sys [90384] =>.Microsoft® O58 - SDL:2022/09/04 16:49:56 A . (.Microsoft Corporation - Windows Error Reporting Kernel Driver.) -- C:\WINDOWS\System32\drivers\werkernel.sys [99680] =>.Microsoft® O58 - SDL:2022/10/07 10:05:40 A . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) -- C:\WINDOWS\System32\drivers\wfplwfs.sys [210280] =>.Microsoft® O58 - SDL:2022/11/08 22:20:47 A . (.Microsoft Corporation - Windows Wifi Class Extension.) -- C:\WINDOWS\System32\drivers\WifiCx.sys [835584] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:56 A . (.Microsoft Corporation - Wim file system Driver.) -- C:\WINDOWS\System32\drivers\wimmount.sys [71008] =>.Microsoft® O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - Windows Trusted Runtime Interface Driver.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRT.sys [108032] =>.Microsoft® O58 - SDL:2022/05/07 13:19:25 A . (.Microsoft Corporation - Windows Trusted Runtime Service Proxy Drive.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys [54784] =>.Microsoft® O58 - SDL:2022/05/07 13:20:16 A . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\WINDOWS\System32\drivers\winhv.sys [75096] =>.Microsoft® O58 - SDL:2022/09/04 16:49:51 A . (.Microsoft Corporation - Windows Hypervisor Root Interface Driver.) -- C:\WINDOWS\System32\drivers\winhvr.sys [152912] =>.Microsoft® O58 - SDL:2022/05/07 13:19:04 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [37224] =>.Microsoft® O58 - SDL:2022/10/07 10:05:37 A . (.Microsoft Corporation - Pilote NAT Windows.) -- C:\WINDOWS\System32\drivers\winnat.sys [307184] =>.Microsoft® O58 - SDL:2022/05/26 12:28:51 A . (.Microsoft Corporation - SetupPlatform NEO Mini-Filter.) -- C:\WINDOWS\System32\drivers\WinSetupBoot.sys [111960] =>.Microsoft® O58 - SDL:2022/06/04 14:01:26 A . (.WireGuard LLC - Wintun Driver.) -- C:\WINDOWS\System32\drivers\wintun.sys [29592] =>.Microsoft® O58 - SDL:2022/09/04 16:49:55 A . (.Microsoft Corporation - Windows WinUSB Class Driver.) -- C:\WINDOWS\System32\drivers\winusb.sys [139264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:04 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [74096] =>.Microsoft® O58 - SDL:2022/05/22 17:15:29 A . (.WireGuard LLC - WireGuard Driver.) -- C:\WINDOWS\System32\drivers\wireguard.sys [489368] =>.Microsoft® O58 - SDL:2022/05/07 13:19:05 A . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\WINDOWS\System32\drivers\wmiacpi.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:30 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\WINDOWS\System32\drivers\wmilib.sys [58704] =>.Microsoft® O58 - SDL:2022/11/11 19:15:16 A . (.Microsoft Corporation - Filtre de superposition Windows.) -- C:\WINDOWS\System32\drivers\wof.sys [292224] =>.Microsoft® O58 - SDL:2022/05/07 18:35:38 A . (.Microsoft Corporation - Windows Portable Device Upper Class Filter.) -- C:\WINDOWS\System32\drivers\WpdUpFltr.sys [71000] =>.Microsoft® O58 - SDL:2022/05/07 13:19:30 A . (.Microsoft Corporation - WPP Trace Recorder.) -- C:\WINDOWS\System32\drivers\WppRecorder.sys [87384] =>.Microsoft® O58 - SDL:2022/05/07 13:19:29 A . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\WINDOWS\System32\drivers\ws2ifsl.sys [57344] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/11/08 22:21:04 A . (.Microsoft Corporation - WTD Driver.) -- C:\WINDOWS\System32\drivers\wtd.sys [118784] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:56 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFPf.sys [167936] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:49:56 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFRd.sys [352256] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/09/04 16:50:00 A . (.Microsoft Corporation - Game Input Protocol Driver.) -- C:\WINDOWS\System32\drivers\xboxgip.sys [393216] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:00 A . (.Microsoft Corporation - XINPUT filter driver for HID.) -- C:\WINDOWS\System32\drivers\xinputhid.sys [81920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/11/11 19:15:10 A . (.Microsoft Corporation - Multi-User Win32 Driver.) -- C:\WINDOWS\System32\win32k.sys [688128] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/11/29 21:46:27 A . (.Microsoft Corporation - Pilote du noyau Base Win32k.) -- C:\WINDOWS\System32\win32kbase.sys [3575808] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/11/29 21:46:28 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\WINDOWS\System32\win32kfull.sys [3821568] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:23 A . (.Microsoft Corporation - Win32k non session driver.) -- C:\WINDOWS\System32\win32kns.sys [69632] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 13:19:23 A . (.Microsoft Corporation - Win32k temporary session global driver.) -- C:\WINDOWS\System32\win32ksgd.sys [49152] [Unsigned] =>.Microsoft Corporation ---\\ DERNIERS FICHIERS MODIFIÉS OU CRÉÉS (Utilisateur) (1) - 9s O61 - LFC: 2023/01/28 21:41:22 A . (.Martí Climent.) -- C:\Users\gokpo\WingetUI-Updater.exe [48307101] [Unsigned] ---\\ ASSOCIATION Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value ---\\ MENU DE DÉMARRAGE INTERNET (12) - 1s O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation ---\\ RECHERCHE D'INFECTION SUR NAVIGATEURS (2) - 15s O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] [64Bits]{6CF0FF77-77BA-42E1-857C-C83D804A2602} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com ---\\ ÉNUMÈRE LES SERVICES DÉMARRÉS PAR Svchost (54) - 2s O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\System32\srvsvc.dll [344064] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1359872] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1531904] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [843776] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [57344] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [176128] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [122880] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [815104] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [245760] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [598016] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports de problèmes.) -- C:\Windows\System32\wercplsupport.dll [102400] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2052096] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [1478656] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [434176] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [114688] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1044480] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [1187840] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1040384] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1810432] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [69632] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [241664] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [135168] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [1097728] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [512000] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [98304] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [683168] =>.Microsoft® O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [335872] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Shell DLL - Ancré.) -- C:\Windows\System32\wuauserv.dll [137560] =>.Microsoft® O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1388544] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [270336] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [143360] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [1013728] =>.Microsoft® O83 - Search Svchost Services: WManSvc (WManSvc) . (.Microsoft Corporation - DLL du Service de gestion de Windows.) -- C:\Windows\System32\Windows.Management.Service.dll [1245184] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [266240] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1392640] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) -- C:\Windows\System32\usosvc.dll [102400] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [315392] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [2789376] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Fournit une prise en charge de l'infrastruc.) -- C:\Windows\System32\LanguageOverlayServer.dll [552960] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TroubleshootingSvc (TroubleshootingSvc) . (.Microsoft Corporation - MitigationClient.) -- C:\Windows\System32\MitigationClient.dll [507904] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [299008] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DcSvc (DcSvc) . (.Microsoft Corporation - dcsvc.) -- C:\Windows\System32\dcsvc.dll [811008] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [188416] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [294912] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [131072] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [425984] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [221184] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [221184] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [225280] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: MsKeyboardFilter (MsKeyboardFilter) . (.Microsoft Corporation - Service SvcHost pour le filtre clavier Micr.) -- C:\Windows\System32\KeyboardFilterSvc.dll [193872] =>.Microsoft® O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [647168] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: nvagent (nvagent) . (.Microsoft Corporation - Agent de virtualisation de réseau..) -- C:\Windows\System32\NvAgent.dll [66912] =>.Microsoft® O83 - Search Svchost Services: LxssManager (LxssManager) . (.Microsoft Corporation - Service de gestion LXSS.) -- C:\Windows\System32\lxss\LxssManager.dll [1208320] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: hns (hns) . (.Microsoft Corporation - Service de réseau hôte.) -- C:\Windows\System32\HostNetSvc.dll [4227072] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES EXCEPTIONS PAREFEU WINDOWS (55) - 4s O87 - FAEL: "{F6D6E6BB-C0EA-4B96-952D-DE4746679229}" [Out-None-P6-TRUE] .(...) -- C:\Program Files\WindowsApps\NAVER.LINEwin8_7.8.1.0_x86__8ptj331gd3tyt\lineapp.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{39B537AE-936B-4987-AFE0-666BF93B3CCC}" [Out-None-P6-TRUE] .(.Mozilla Corporation - Tor Browser.) -- C:\Programmes Portables\Tor Browser\Browser\firefox.exe [Unsigned] =>.Mozilla Corporation O87 - FAEL: "{41675D1B-DA55-407A-B75A-99D4BBBA84F7}" [Out-None-P6-TRUE] .(.ProtonVPN - Proton VPN.) -- C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPN.TlsVerify.exe =>.Proton Technologies AG® O87 - FAEL: "{BD600B96-0A30-4477-9461-CBD77353B326}" [Out-None-P6-TRUE] .(.ProtonVPN - Proton VPN.) -- C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPN.RestoreInternet.exe =>.Proton Technologies AG® O87 - FAEL: "{45A84E71-76AC-4A78-A2B1-92600B82E92E}" [Out-None-P6-TRUE] .(.ProtonVPN - Proton VPN.) -- C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPN.WireGuardService.exe =>.Proton Technologies AG® O87 - FAEL: "{C763548E-0BEB-4347-A38A-EE411215CD2E}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPN.UpdateService.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{41E92BAC-426E-4406-A251-317FE3C125A2}" [Out-None-P6-TRUE] .(.ProtonVPN - Proton VPN.) -- C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPNService.exe =>.Proton Technologies AG® O87 - FAEL: "{E870D825-6955-413C-83FA-5A0F25A90031}" [Out-None-P6-TRUE] .(.ProtonVPN - Proton VPN.) -- C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPN.exe =>.Proton Technologies AG® O87 - FAEL: "{09EE5778-C36A-4EFF-B8D9-58D9CF3CAF5A}" [Out-None-P6-TRUE] .(.Paramount Software UK Ltd - Macrium Reflect live Updates from the web.) -- C:\Program Files\Macrium\Reflect\ReflectUpdater.exe {0EA39DC6653ADDC16FD0A739}. =>.Paramount Software UK Ltd O87 - FAEL: "{AB4282EE-31FE-4B2B-B45E-2F82C6C09169}" [Out-None-P6-TRUE] .(.Paramount Software UK Ltd - Macrium Reflect Disk Imaging and Backup.) -- C:\Program Files\Macrium\Reflect\MRVerify.exe {0EA39DC6653ADDC16FD0A739}. =>.Paramount Software UK Ltd O87 - FAEL: "{36BAA064-A7F9-4BA9-AB02-A35FB4404787}" [Out-None-P6-TRUE] .(.Paramount Software UK Ltd - Repair COM+ installation.) -- C:\Program Files\Macrium\Reflect\vssfixx64.exe {0100000000011657D28AD3}. =>.Paramount Software UK Ltd O87 - FAEL: "{7FB9A6BF-6429-4780-8EEB-EAB101C76847}" [Out-None-P6-TRUE] .(.Paramount Software UK Ltd - Macrium Reflect Disk Imaging and Backup.) -- C:\Program Files\Macrium\Reflect\Reflect.exe {0EA39DC6653ADDC16FD0A739}. =>.Paramount Software UK Ltd O87 - FAEL: "{A382FC37-DAA7-44BA-8952-209A1DE902D9}" [Out-None-P6-TRUE] .(.AdoptOpenJDK - OpenJDK Platform binary.) -- C:\Program Files\LRTimelapse 6\jre\bin\javaw.exe =>.London Jamocha Community CIC® O87 - FAEL: "{D8417FE8-5B2C-4924-B268-3F49CBA4BDE9}" [Out-None-P6-TRUE] .(.DeskSoft - ScrollNavigator Application.) -- C:\Program Files (x86)\ScrollNavigator\ScrollNavigator.exe [Unsigned] =>.DeskSoft O87 - FAEL: "{4AEDFF3D-7F62-4298-B133-E6A454723D66}" [Out-None-P6-TRUE] .(.SoftPerfect - NetWorx Application (64-bit).) -- C:\Program Files\NetWorx\networx.exe {084EEAAE1D23F2E189C219261275C404}. =>.SoftPerfect O87 - FAEL: "{E1A194A7-B8AC-40EC-901A-5E37AC8E4D4B}" [In-None-P6-TRUE] .(.SoftPerfect - NetWorx Application (64-bit).) -- C:\Program Files\NetWorx\networx.exe {084EEAAE1D23F2E189C219261275C404}. =>.SoftPerfect O87 - FAEL: "{3D5B66C1-D2CF-40CF-B939-2D8D06EAD67F}" [Out-None-P6-TRUE] .(.Raúl Argente - Argente About.) -- C:\Program Files\Argente Utilities\AAbout.exe [Unsigned] =>.Raúl Argente O87 - FAEL: "{4EFDB476-7A8F-44D0-B9ED-C285E5EE65DB}" [Out-None-P6-TRUE] .(.Raúl Argente - Argente Config.) -- C:\Program Files\Argente Utilities\AConfig.exe [Unsigned] =>.Raúl Argente O87 - FAEL: "{65D251AF-433A-444E-94D0-B0A96A62E83A}" [Out-None-P6-TRUE] .(.Raúl Argente - Argente Rescue Center.) -- C:\Program Files\Argente Utilities\ARescue.exe [Unsigned] =>.Raúl Argente O87 - FAEL: "{3B906069-E737-4072-975A-271D6E522C07}" [Out-None-P6-TRUE] .(.Raúl Argente - Argente Setup Installer.) -- C:\Program Files\Argente Utilities\ASetup.exe [Unsigned] =>.Raúl Argente O87 - FAEL: "{767944C8-C68D-42E7-9656-50CCBF502FCE}" [Out-None-P6-TRUE] .(.Raúl Argente - Argente Task Finalizer.) -- C:\Program Files\Argente Utilities\ATaskFinalizer.exe [Unsigned] =>.Raúl Argente O87 - FAEL: "{795FA022-FC20-4480-8F72-EFC6A902E159}" [Out-None-P6-TRUE] .(.Raúl Argente - Argente Uninstall Programs.) -- C:\Program Files\Argente Utilities\AUninstall.exe [Unsigned] =>.Raúl Argente O87 - FAEL: "{FC66FA76-3284-4432-8B21-43560FEB114A}" [Out-None-P6-TRUE] .(.Raúl Argente - Argente Update.) -- C:\Program Files\Argente Utilities\AUpdate.exe [Unsigned] =>.Raúl Argente O87 - FAEL: "{18AE6953-F8E4-463D-9686-AD1579DDA3AB}" [Out-None-P6-TRUE] .(...) -- C:\Programmes Portables\CareUeyes\CareUEyes\CareUEyes.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{22D395FD-60D6-4A10-A5AF-1075096D8988}" [Out-None-P6-TRUE] .(.SoftPerfect - NetWorx Application (64-bit).) -- C:\Program Files\NetWorx\networx.exe {084EEAAE1D23F2E189C219261275C404}. =>.SoftPerfect O87 - FAEL: "{81FD680A-2359-4FD9-923D-8D3F7DD9C48A}" [Out-None-P6-TRUE] .(.eM Client s.r.o. - eM Client.) -- C:\Program Files (x86)\eM Client\MailClient.exe {082A101C9CFE2154314B45317A3DC200}. O87 - FAEL: "{869BBCDE-D8D0-4608-A93B-620FFA269A2A}" [Out-None-P6-TRUE] .(...) -- C:\Program Files\AMD\CNext\CNext\Radeonsoftware.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{14589063-0503-4079-83B7-08327F19A4D8}" [Out-None-P17-TRUE] .(.ESET - ESET Service.) -- C:\Program Files\ESET\ESET Security\ekrn.exe =>.ESET, spol. s r.o.® O87 - FAEL: "{3D88AC3E-5E32-4012-B055-FC683A7D5023}" [Out-None-P17-TRUE] .(.ESET - ESET Main GUI.) -- C:\Program Files\ESET\ESET Security\egui.exe =>.ESET, spol. s r.o.® O87 - FAEL: "{CDCCF680-3305-4386-9AC6-167965618BD3}" [In-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O87 - FAEL: "{73780F0A-CE47-4425-9C62-FD02704B8A54}" [In-None-P6-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O87 - FAEL: "{0DB4515D-46EF-4CBB-A3D1-9A5F70B13C7E}" [Out-None-P6-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O87 - FAEL: "{E662DBC7-F86B-4856-9718-82DE79EA7EA5}" [Out-None-P6-TRUE] .(.Malwarebytes - Malwarebytes Windows Firewall Control.) -- C:\Program Files\Malwarebytes\Windows Firewall Control\wfc.exe =>.Malwarebytes Inc® O87 - FAEL: "{F01C0937-3364-4F22-9E27-B35A783F1D4D}" [Out-None-P17-TRUE] .(.TEFINCOM S.A. - NordVPN.) -- C:\Program Files\NordVPN\NordVPN.exe =>.nordvpn s.a.® O87 - FAEL: "{71A718B7-BE6B-4660-B46D-0B9DC53C55D5}" [Out-None-P17-TRUE] .(.IObit Information Technology - Unlocker.) -- C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlocker.exe =>.IObit Information Technology® O87 - FAEL: "{BE24AE6C-ACDD-4B09-8B2E-5C6812A69D53}" [Out-None-P17-TRUE] .(.Vivaldi Technologies AS - Vivaldi.) -- C:\Users\gokpo\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS® O87 - FAEL: "{FA16B2B1-D73C-406F-AB78-395DCED148A3}" [Out-None-P17-TRUE] .(.Vivaldi Technologies AS - Vivaldi update notifier.) -- C:\Users\gokpo\AppData\Local\Vivaldi\Application\update_notifier.exe =>.Vivaldi Technologies AS® O87 - FAEL: "{6F4B41AD-F667-495D-8B12-76635C06BAF2}" [Out-None-P17-TRUE] .(.TEFINCOM S.A. - NordVPN.) -- C:\Program Files\NordVPN\NordVPN.exe =>.nordvpn s.a.® O87 - FAEL: "{CB0867E4-0C8D-4FF6-94DC-1085BE775AA3}" [Out-None-P17-TRUE] .(.TEFINCOM S.A. - NordSec Update Service.) -- C:\Program Files\NordUpdater\NordUpdateService.exe =>.nordvpn s.a.® O87 - FAEL: "{64425446-DD2E-4EF8-8488-DC797193EE83}" [Out-None-P17-TRUE] .(.TEFINCOM S.A. - NordVPN.) -- C:\Program Files\NordVPN\nordvpn-service.exe =>.nordvpn s.a.® O87 - FAEL: "{3BC08B35-9507-4A0D-9EE5-61563E2FA8D9}" [Out-None-P17-TRUE] .(...) -- C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsUI.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{801F95CB-68A1-484A-BE27-CEFB7BA7B590}" [Out-None-P17-TRUE] .(...) -- C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{5C293198-F04F-4A7D-9F05-058FCF0C91E4}" [Out-None-P17-TRUE] .(...) -- C:\Users\d3388\Desktop\Office.2013-2021 C2R 7.3.9\OInstallLite.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{413B826E-DB6C-4242-871A-9B58FDC6CCC1}" [Out-None-P17-TRUE] .(...) -- C:\Users\d3388\Desktop\Office.2013-2021 C2R 7.3.9\OInstall.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{71485E96-D926-4FE6-AEB6-D02AC4BB47E0}" [Out-None-P17-TRUE] .(.eM Client s.r.o. - eM Client.) -- C:\Program Files (x86)\eM Client\MailClient.exe {082A101C9CFE2154314B45317A3DC200}. O87 - FAEL: "{F87DEA1B-F7E3-4CFB-A156-9BD77561E306}" [In-None-P6-TRUE] .(.anytxt.net - AnyTXT Searcher GUI.) -- C:\Program Files\AnyTXT Searcher\atgui.exe {2981A6A35E27685D0E0AA815022A70D9}. =>.anytxt.net O87 - FAEL: "{B29EA78A-CC32-407D-BF48-16961E9D6CA7}" [In-None-P6-TRUE] .(.VMware, Inc. - VMware Authorization Service.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc.® O87 - FAEL: "{EC8E07A9-1348-47D0-8309-4CA5B65AC72A}" [In-None-P6-TRUE] .(.VMware, Inc. - VMware Authorization Service.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc.® O87 - FAEL: "{8EA569F8-1923-46CC-A9AE-D4A6C7F629A5}" [In-None-P6-TRUE] .(.Adguard Software Limited - AdGuard for Windows.) -- C:\Program Files (x86)\AdGuard\AdguardSvc.exe {00B138E6660DCA7CC377CB2F6F6027F616}. O87 - FAEL: "{53AD1902-5B2C-4B6E-825B-833D0D99379C}" [In-None-P6-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.92.3401.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl® O87 - FAEL: "{B9F7967A-08B6-42FD-A540-5EBC5F12564B}" [Out-None-P6-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.92.3401.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl® O87 - FAEL: "{4FDD508E-256B-404C-8B57-C9BC12F1F13F}" [In-None-P17-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.92.3401.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl® O87 - FAEL: "{675C35DB-AEBF-4A99-93F7-32AE70E6B4A8}" [Out-None-P17-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.92.3401.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl® O87 - FAEL: "{B21D3FBE-3720-40D3-964F-6156263454F5}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Lenovo\System Update\uncserver.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{EB948638-6F4D-4520-9DFC-78ABEF7D2983}" [Out-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Lenovo\System Update\uncserver.exe [Unsigned] (.not file.) =>.SUP.Orphan ---\\ CODES PRODUITS LOGICIELS (53) - 1s O90 - PUC: "00004159000290400100000000F01FEC" [HKLM] . (.Microsoft Filter Pack 2.0.) =>.Microsoft Corporation O90 - PUC: "00006109C80000000000000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Extensibility Component.) =>.Microsoft Corporation O90 - PUC: "00006109C80040400000000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Localization Component.) =>.Microsoft Corporation O90 - PUC: "00006109C800C0400000000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Localization Component.) =>.Microsoft Corporation O90 - PUC: "00006109DD0000000100000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Extensibility Component 64-bit Registration.) =>.Microsoft Corporation O90 - PUC: "00006109F80000000100000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Licensing Component.) =>.Microsoft Corporation O90 - PUC: "01B493EBD5DA3054A99A7EF959B3033E" [HKLM] . (.Microsoft .NET Host FX Resolver - 7.0.2 (x64).) =>.Microsoft Corporation O90 - PUC: "023D171AC24CB3F42A8D6C0AF97688CC" [HKLM] . (.AMD Ryzen Balanced Driver.) -- C:\WINDOWS\Installer\{A171D320-C42C-4F3B-A2D8-C6A09F6788CC}\ARPPRODUCTICON.exe =>.Adobe Inc. O90 - PUC: "027299E003313BA4185552F597875553" [HKLM] . (.VMware Workstation.) =>.VMware O90 - PUC: "050FBE1BE3CC0B54D95E33C926143FAD" [HKLM] . (.ProtonVPNTun.) -- C:\WINDOWS\Installer\{B1EBF050-CC3E-45B0-9DE5-339C6241F3DA}\protonvpn.exe =>.ProtonVPN O90 - PUC: "1926E8D15D0BCE53481466615F760A7F" [HKLM] . (.Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219.) =>.bl.org O90 - PUC: "1B242EAE62A0A584FBBE2029EEF930BC" [HKLM] . (.Microsoft Visual C++ 2022 X64 Additional Runtime - 14.34.31931.) =>.Microsoft Corporation O90 - PUC: "1BAD2218D4DE6763BBA0AC63186945E3" [HKLM] . (.Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664.) =>.Microsoft Corporation O90 - PUC: "1D5E3C0FEDA1E123187686FED06E995A" [HKLM] . (.Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219.) =>.bl.org O90 - PUC: "276EB13244C313547A523A3F67C27A99" [HKLM] . (.Kutools for Excel.) -- C:\WINDOWS\Installer\{231BE672-3C44-4531-A725-A3F3762CA799}\KutoolsLauncher.exe O90 - PUC: "317523B4E5CED0D30B4F0809D652166D" [HKLM] . (.Microsoft Edge.) -- C:\WINDOWS\Installer\{4B325713-EC5E-3D0D-B0F4-80906D2561D6}\icon.ico =>.Microsoft Corporation O90 - PUC: "32738A7F6470ACD30A11ED8C01398E82" [HKLM] . (.Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - FRA.) =>.Microsoft Corporation O90 - PUC: "37FDB1BA3937EC2418D2A9091988415D" [HKLM] . (.Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.34.31931.) =>.Microsoft Corporation O90 - PUC: "3A2420C766B81D53F90E314B62CA6B90" [HKLM] . (.Microsoft Visual Studio 2010 Tools for Office Runtime (x64).) =>.Microsoft Corporation O90 - PUC: "3BA6F58616C71D24EAB583464ED80153" [HKLM] . (.AdGuard.) -- C:\WINDOWS\Installer\{685F6AB3-7C61-42D1-AE5B-3864E48D1035}\AdguardIcon.exe =>.Performix LLC O90 - PUC: "435C10CABCE2E064D9E44D1D8570F605" [HKLM] . (.ESET Security.) -- C:\WINDOWS\Installer\{AC01C534-2ECB-460E-9D4E-D4D158076F50}\Icon_Product O90 - PUC: "4396FC35D89A48D31964CFE4FDD36514" [HKLM] . (.Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664.) =>.Microsoft Corporation O90 - PUC: "4B74D43B240A13A43956C0189C530FB6" [HKLM] . (.Quick CPU x64.) -- C:\WINDOWS\Installer\{B34D47B4-A042-4A31-9365-0C81C935F06B}\icon.ico O90 - PUC: "5439170FD24375A4E84E03FBF43ABF9E" [HKLM] . (.Microsoft .NET Host - 7.0.2 (x64).) =>.Microsoft Corporation O90 - PUC: "5733255F1EE41B74D81AFF75B9F2FB61" [HKLM] . (.Kutools for Word.) -- C:\WINDOWS\Installer\{F5523375-4EE1-47B1-8DA1-FF579B2FBF16}\Kutools.exe O90 - PUC: "6143D628100318940A1EEF5AA96FDEB2" [HKLM] . (.Macrium Reflect Workstation.) -- C:\WINDOWS\Installer\{826D3416-3001-4981-A0E1-FEA59AF6ED2B}\Reflect.ico =>.Macrium Software O90 - PUC: "654FDB7828896E44F8CF7FB3384EE2DA" [HKLM] . (.ProtonVPNTap.) -- C:\WINDOWS\Installer\{87BDF456-9882-44E6-8FFC-F73B83E42EAD}\protonvpn.exe =>.ProtonVPN O90 - PUC: "6708A2A6F53155F4BB20ED6DC7C89643" [HKLM] . (.Microsoft Update Health Tools.) =>.Microsoft Corporation O90 - PUC: "6CBBB4C8E25B4C74E977A41EFC39CB58" [HKLM] . (.ProtonVPN.) -- C:\WINDOWS\Installer\{8C4BBBC6-B52E-47C4-9E77-4AE1CF93BC85}\protonvpn.exe =>.ProtonVPN O90 - PUC: "6D5CED799EB2BB54FB5C72B458B184B6" [HKLM] . (.NordVPN network TAP.) -- C:\WINDOWS\Installer\{97DEC5D6-2BE9-45BB-BFC5-274B851B486B}\appwindow.exe =>.Hewlett-Packard O90 - PUC: "7091a36cb824b85439e56ea1daa4cae6" [HKLM] . (.AMD_Chipset_Drivers.) -- C:\WINDOWS\Installer\{c63a1907-428b-458b-935e-e61aad4aac6e}\ARPPRODUCTICON.exe O90 - PUC: "7C08D2EAD91FF3644BF8F343836027C1" [HKLM] . (.Microsoft .NET Runtime - 7.0.2 (x64).) =>.Microsoft Corporation O90 - PUC: "7C9F8B73BF303523781852719CD9C700" [HKLM] . (.Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "8757717B72FAFB440A1BB8D9A67FCE3C" [HKLM] . (.Microsoft Windows Desktop Runtime - 7.0.2 (x64).) =>.Microsoft Corporation O90 - PUC: "8B41F8898A97D574AB7C389FA63D8D12" [HKLM] . (.AMD PSP Driver.) -- C:\WINDOWS\Installer\{988F14B8-79A8-475D-BAC7-83F96AD3D821}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "9D29D13B41920B6479836F865A36ED37" [HKLM] . (.AMD I2C Driver.) -- C:\WINDOWS\Installer\{B31D92D9-2914-46B0-9738-F668A563DE73}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "AB297010A1550CA37AFEF0BA14653C28" [HKLM] . (.Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664.) =>.Microsoft Corporation O90 - PUC: "BBB92E7CC767D2F4190B854B91735238" [HKLM] . (.eM Client.) -- C:\WINDOWS\Installer\{C7E29BBB-767C-4F2D-91B0-58B419372583}\MailClientIcon.exe O90 - PUC: "BE92063CFF9126442A38304BB19EFE4A" [HKLM] . (.AMD MicroPEP Driver.) -- C:\WINDOWS\Installer\{C36029EB-19FF-4462-A283-03B41BE9EFA4}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "C025571B2A687A53689168CD7369889B" [HKLM] . (.Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "C3AEB2FCAE628F23AAB933F1E743AB79" [HKLM] . (.Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "D169104D02A37CA349B316935DDB94A0" [HKLM] . (.Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664.) =>.Microsoft Corporation O90 - PUC: "D72E0EAAA88CAB94785177DADC24683A" [HKLM] . (.AMD SBxxx SMBus Driver.) -- C:\WINDOWS\Installer\{AAE0E27D-C88A-49BA-8715-77ADCD4286A3}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "D743C4FCE4593454882DCE710FF764F6" [HKLM] . (.Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.34.31931.) =>.Microsoft Corporation O90 - PUC: "DC8A59DBF9D1DA5389A1E3975220E6BB" [HKLM] . (.Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "E2D4CF75BB9DB1F44AAE0673EEEDE6C0" [HKLM] . (.PowerToys (Preview).) -- C:\WINDOWS\Installer\{57FC4D2E-D9BB-4F1B-A4EA-6037EEDE6E0C}\powertoys.exe O90 - PUC: "E3C1E7D3C05DB134181C1168C2B58884" [HKLM] . (.Open-Shell.) -- C:\WINDOWS\Installer\{3D7E1C3E-D50C-431B-81C1-11862C5B8848}\icon.ico O90 - PUC: "F993DD9E3A12E9747AFD6DFCB4A2BD3F" [HKLM] . (.AMD GPIO2 Driver.) -- C:\WINDOWS\Installer\{E9DD399F-21A3-479E-A7DF-D6CF4B2ADBF3}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "FFE2662C6E601DF4D9D6DFAC19207575" [HKLM] . (.Microsoft Visual C++ 2022 X86 Additional Runtime - 14.34.31931.) =>.Microsoft Corporation O90 - PUC: "871FA9EB7BF8CFC47985D9E1B39380E6" [HKCU] . (.Windows 11 Manager.) -- %APPDATA%\Microsoft\Installer\{BE9AF178-8FB7-4CFC-9758-9D1E3B39086E}\W11MLogo.exe =>.Western Digital Technologies O90 - PUC: "BC0631A6B37367342AD43ADEDD4BB916" [HKCU] . (.BowPad.) -- %APPDATA%\Microsoft\Installer\{6A1360CB-373B-4376-A24D-A3EDDDB49B61}\BowPadIcon =>.Stefans Tools O90 - PUC: "871FA9EB7BF8CFC47985D9E1B39380E6" [HKU] . (.Windows 11 Manager.) -- %APPDATA%\Microsoft\Installer\{BE9AF178-8FB7-4CFC-9758-9D1E3B39086E}\W11MLogo.exe =>.Western Digital Technologies O90 - PUC: "BC0631A6B37367342AD43ADEDD4BB916" [HKU] . (.BowPad.) -- %APPDATA%\Microsoft\Installer\{6A1360CB-373B-4376-A24D-A3EDDDB49B61}\BowPadIcon =>.Stefans Tools ---\\ PACKAGES WINDOWS INSTALLER (26) - 6s [MD5.5B800C3EB86D4A9184EB8D090D67446B] [WIS][2022/11/15 20:32:49] (.eM Client Inc. - eM Client.) -- C:\WINDOWS\Installer\133ff08.msi [120324096] =>.eM Client Inc. [MD5.2AFB8E149FF4D2463C4DE02E20EEB084] [WIS][2022/12/22 21:57:24] (.Yamicsoft - Windows 11 Manager.) -- C:\WINDOWS\Installer\1991a54.msi [5457408] =>.Yamicsoft [MD5.F50CA75DB2856F4D6FBDC4985B084C23] [WIS][2022/11/18 22:03:24] (.VMware, Inc. - VMware Workstation.) -- C:\WINDOWS\Installer\2109f.msi [596537344] =>.VMware, Inc. [MD5.9217388D4B322B636EBBF3EA10C9DEA2] [WIS][2022/09/18 12:25:35] (.CoderBag - Quick CPU x64.) -- C:\WINDOWS\Installer\2a5452c.msi [34144256] [MD5.179B5DAB259A8EEDF1375DE401EADB40] [WIS][2023/01/17 10:40:35] (.ESET, spol. s r.o. - ESET Security.) -- C:\WINDOWS\Installer\347daed.msi [53714944] =>.ESET, spol. s r.o. [MD5.3FDDE4B120557D746CE9FC3C0D784983] [WIS][2022/09/28 07:36:22] (.Advanced Micro Devices, Inc. - AMD_Chipset_Drivers.) -- C:\WINDOWS\Installer\39b1aa9.msi [10539520] =>.Advanced Micro Devices, Inc. [MD5.A42F526A8D8042408917C19640D19A3F] [WIS][2022/02/01 11:03:20] (.Advanced Micro Devices, Inc. - AMD GPIO2 Driver.) -- C:\WINDOWS\Installer\39b1aaf.msi [2941952] =>.Advanced Micro Devices, Inc. [MD5.5A6C63ED373D97480C89C8F7D626B406] [WIS][2022/05/31 00:23:32] (.Advanced Micro Devices, Inc. - AMD I2C Driver.) -- C:\WINDOWS\Installer\39b1ab9.msi [2947072] =>.Advanced Micro Devices, Inc. [MD5.F796F375F1BC7584BCCCFBC15C0FA9DB] [WIS][2022/02/01 11:39:10] (.Advanced Micro Devices, Inc. - AMD SBxxx SMBus Driver.) -- C:\WINDOWS\Installer\39b1abf.msi [2940928] =>.Advanced Micro Devices, Inc. [MD5.78AE1CF2E322BD1D08942BBECDB4DC91] [WIS][2022/06/02 00:30:20] (.Advanced Micro Devices, Inc. - AMD PSP Driver.) -- C:\WINDOWS\Installer\39b1acc.msi [2958848] =>.Advanced Micro Devices, Inc. [MD5.27F121B4184CB1314416E641AE5149C6] [WIS][2022/04/19 01:22:54] (.Advanced Micro Devices, Inc. - AMD Ryzen Balanced Driver.) -- C:\WINDOWS\Installer\39b1ad6.msi [1343488] =>.Advanced Micro Devices, Inc. [MD5.7C9B47947511A10FB8C1F2039CE06EBF] [WIS][2022/03/23 06:04:42] (.Advanced Micro Devices, Inc. - AMD MicroPEP Driver.) -- C:\WINDOWS\Installer\39b1ae1.msi [2021888] =>.Advanced Micro Devices, Inc. [MD5.3079702AE0DF4BB5FC6C438A4E8CA922] [WIS][2023/01/19 20:03:00] (.The Open-Shell Team - Open-Shell.) -- C:\WINDOWS\Installer\4bf97d3.msi [5262049] =>.The Open-Shell Team [MD5.9ED92BE64E543965858468AC8D5ED0A6] [WIS][2022/08/05 18:00:11] (.ExtendOffice.com - Kutools for Excel.) -- C:\WINDOWS\Installer\500d4b.msi [7975424] =>.ExtendOffice.com [MD5.A86A6BF27FB1C320AFDD7AF9C099E866] [WIS][2023/01/31 22:02:26] (.Paramount Software (UK) Ltd. - Paramount Software (UK) Ltd.) -- C:\WINDOWS\Installer\5586444.msi [173035520] =>.Paramount Software (UK) Ltd. [MD5.C496338C51677B45F1B93857F2B42FE8] [WIS][2023/01/23 17:22:48] (.Adguard Software Limited - Version: 7.12.4170.0 .) -- C:\WINDOWS\Installer\73ed5c7.msi [31813632] [MD5.8ABC60168543F32FC98F80A5756AACC9] [WIS][2022/05/24 09:55:05] (.ExtendOffice.com - Kutools for Word.) -- C:\WINDOWS\Installer\a23d07.msi [2184704] =>.ExtendOffice.com [MD5.93BB559D35BF105793E8538BCCD37624] [WIS][2022/05/24 15:37:38] (.Proton Technologies AG - ProtonVPNTap.) -- C:\WINDOWS\Installer\a92a3d7.msi [2421760] =>.Proton Technologies AG [MD5.7F8AC403FFA373796C4172AA35D8EA09] [WIS][2022/05/24 15:37:49] (.Proton Technologies AG - ProtonVPNTun.) -- C:\WINDOWS\Installer\a92a3df.msi [2152448] =>.Proton Technologies AG [MD5.4D4FBDC8FA67AB60BC9D3372426EF26C] [WIS][2022/10/16 12:04:08] (.Stefan's Tools - BowPad Text Editor.) -- C:\WINDOWS\Installer\b210818.msi [3235840] [MD5.1FF048E13074F66F5554E33FAA7AABCC] [WIS][2022/05/29 20:24:16] (.NordVPN - NordVPN network TAP.) -- C:\WINDOWS\Installer\c228c8.msi [1560064] =>.NordVPN [MD5.13C5D58FFF38CEC2FB4C48CF72DA86D4] [WIS][2022/12/05 20:17:12] (.Proton Technologies AG - ProtonVPN.) -- C:\WINDOWS\Installer\edada.msi [19957760] =>.Proton Technologies AG [MD5.0D3EFDE7DAFB3FEDA27E60B8EC0A182D] [WIS][2022/05/21 15:40:55] (.Paramount Software (UK) Ltd. - Paramount Software (UK) Ltd.) -- C:\WINDOWS\Installer\reflect_setupv8.0.6758-x64-15.msi [159883264] =>.Paramount Software (UK) Ltd. [MD5.CF4A48FBA23BA49A8DDE41E7755096A0] [WIS][2022/09/05 11:56:12] (.Paramount Software (UK) Ltd. - Paramount Software (UK) Ltd.) -- C:\WINDOWS\Installer\reflect_setupv8.0.6867-x64-15.msi [160002048] =>.Paramount Software (UK) Ltd. [MD5.D9D1AF1C1569A05187FF92BAC29450A6] [WIS][2022/11/28 09:40:10] (.Paramount Software (UK) Ltd. - Paramount Software (UK) Ltd.) -- C:\WINDOWS\Installer\reflect_setupv8.0.7175-x64-15.msi [160317440] =>.Paramount Software (UK) Ltd. [MD5.A86A6BF27FB1C320AFDD7AF9C099E866] [WIS][2023/01/31 22:02:26] (.Paramount Software (UK) Ltd. - Paramount Software (UK) Ltd.) -- C:\WINDOWS\Installer\reflect_setupv8.1.7336-x64-15.msi [173035520] =>.Paramount Software (UK) Ltd. ---\\ FEATURE CONTROL. (191) - 0s [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:msoasb.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:winword.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:mspub.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:powerpnt.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:onenote.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:excel.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:msaccess.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:winword.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:msoasb.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:mspub.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:powerpnt.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:onenote.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:excel.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:msaccess.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:VSTOInstaller.exe =>.Legitimate ---\\ OBSERVATEURS des évènements (143) - 29s Application.Error: Software Protection Platform Service (217) ~Numéro: 82901 ~Date: 02/04/2023 06:23:21 PM ~ID: 8198 ~Description: Échec de l’activation des licences (slui.exe) avec le code d’erreur suivant : hr=0xC004F074 Arguments de la ligne de commande : RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de ~Suggestion: Aucune Application.Error: .NET Runtime (38) ~Numéro: 82860 ~Date: 02/04/2023 05:45:55 PM ~ID: 1023 ~Description: Description: A .NET application failed.Application: WinBGMuter.exePath: C:\Users\gokpo\OneDrive\Bureau\WinBGMuter\WinBGMuter.exeMessage: You must install or update .NET to run this application.App: C:\Users\gokpo\OneDrive\Bureau\WinBGMuter\WinBGMuter Application.Error: Application Error (169) ~Numéro: 82849 ~Date: 02/04/2023 05:45:30 PM ~ID: 1005 ~Description: C:\Windows\System32\vmchipset.dllVirtual Machine Worker Process0xc00002250x3 Application.Error: CertEnroll (46) ~Numéro: 82836 ~Date: 02/04/2023 05:45:29 PM ~ID: 86 ~Description: WORKGROUP\LENOVO$https://AMD-KeyId-578c545f796951421221a4a578acdb5f682f89c8.microsoftaik.azure.net/templates/Aik/scepGetCACapsGET(0ms)GetCACapsL’adresse ou le nom de serveur n’a pas pu être résolu 0x80072ee7 (WinHttp: 12007 ERROR_WINHTTP_NAME_NOT_RES Application.Warning: Wlclntfy (18) ~Numéro: 82790 ~Date: 02/04/2023 05:45:02 PM ~ID: 6000 ~Description: L’abonné aux notifications Winlogon <%1> n’était pas disponible pour traiter un événement de notification. Application.Error: Microsoft Security Client (6) ~Numéro: 82629 ~Date: 02/04/2023 01:15:13 PM ~ID: 3002 ~Description: 0x80041001 Application.Error: Firefox Default Browser Agent (19) ~Numéro: 82129 ~Date: 02/03/2023 08:21:51 PM ~ID: 12007 ~Description: 0x80072EE7 in IsAgentRemoteDisabledInternal:68 Application.Error: Application Hang (6) ~Numéro: 82125 ~Date: 02/03/2023 08:21:39 PM ~ID: 1002 ~Description: Le programme %1 version %2 a cessé d'interagir avec Windows et a été fermé. Pour savoir si vous disposez de plus d'informations sur le problème, consultez l'historique des problèmes dans le panneau de configuration Sécurité et maintenance. ~Suggestion: Essayer les commandes suivantes ipconfig /release et ipconfig / renew. Application.Warning: Microsoft-Windows-RestartManager (3) ~Numéro: 81594 ~Date: 01/31/2023 05:15:29 PM ~ID: 10010 ~Description: Impossible de redémarrer l’application « %3 » (pid %2) - %9. ~Suggestion: Redémarrer manuellement l'application ou le service Application.Warning: ESENT (1) ~Numéro: 79295 ~Date: 01/20/2023 08:53:11 AM ~ID: 472 ~Description: %1 (%2) %3Page d’en-tête de sauvegarde du fichier %4 endommagée. La page d’en-tête primaire (%5 octets) a été utilisée à la place. ~Suggestion: 1)Fermer le processus explorer.exe. 2)lancer la commande 'del/f/s/q/a C:\Users\\AppData\Local\Microsoft\Windows\WebCacheLock.dat'. 3) Redémarrer le processus explorer.exe System.Warning: Microsoft-Windows-DNS-Client (17) ~Numéro: 50149 ~Date: 02/04/2023 06:23:06 PM ~ID: 1014 ~Description: La résolution de noms pour le nom %1 expirée après qu’aucun des serveurs DNS configurés n’a répondu. PID client %4. ~Suggestion: https://social.technet.microsoft.com/wiki/contents/articles/3336.event-id-1014-microsoft-windows-dns-client.aspx System.Warning: DCOM (1009) ~Numéro: 50148 ~Date: 02/04/2023 06:21:56 PM ~ID: 10016 ~Description: propres à l’applicationLocalActivation{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}{15C20B67-12E7-4BB6-92BB-7AFF07997402}LENOVOgokpoS-1-5-21-2741647792-3826816627-2827384255-1001LocalHost (avec LRPC)Non disponibleNon disponible ~Suggestion: Vérifier les autorisations pour l'accès DCOM System.Error: Service Control Manager (65) ~Numéro: 50146 ~Date: 02/04/2023 06:00:27 PM ~ID: 7000 ~Description: Le service %1 n’a pas pu démarrer en raison de l’erreur : %%2 System.Warning: Microsoft-Windows-FilterManager (14) ~Numéro: 50129 ~ID: 11 ~Description: Le filtre de système de fichiers '%1' (version %2.%3, %4) ne prend pas en charge le contournement d’E/S. Fonctionnalités prises en charge : %5. System.Warning: LsaSrv (214) ~Numéro: 50070 ~Date: 02/04/2023 05:45:22 PM ~ID: 6155 ~Description: Le package LSA n’est pas signé comme prévu. Cela peut provoquer un comportement inattendu avec Credential Guard. PackageName: msv1_0 System.Warning: Microsoft-Windows-Kernel-PnP (120) ~Numéro: 50050 ~Date: 02/04/2023 05:45:19 PM ~ID: 219 ~Description: Le chargement du pilote %5 a échoué pour le périphérique %2. ~Suggestion: Vérifier que le pilote a bien été chargé dans les informations système System.Error: Microsoft-Windows-BitLocker-Driver (21) ~Numéro: 50009 ~Date: 02/04/2023 05:45:14 PM ~ID: 24641 ~Description: Une erreur inattendue s’est produite lors d’une tentative de récupération de la clé principale du volume BitLocker pendant le redémarrage. System.Warning: Microsoft-Windows-Wininit (6) ~Numéro: 49876 ~Date: 02/04/2023 04:54:21 PM ~ID: 15 ~Description: Credential Guard et/ou l’isolation de clé VBS sont configurés, mais le noyau sécurisé n’est pas en cours d’exécution ; en continuant sans eux. System.Warning: vmci (6) ~Numéro: 49853 ~Date: 02/04/2023 04:54:13 PM ~ID: 2 ~Description: VMCI: Not supported in Safe Boot Mode. System.Error: Microsoft-Windows-Kernel-Boot (6) ~Numéro: 49847 ~Date: 02/04/2023 04:54:12 PM ~ID: 124 ~Description: 03225747456 System.Warning: Microsoft-Windows-WLAN-AutoConfig (13) ~Numéro: 49836 ~Date: 02/04/2023 04:53:58 PM ~ID: 10002 ~Description: Le module d’extensibilité WLAN s’est arrêté. Chemin d’accès du module : C:\WINDOWS\system32\mtkihvx.dll ~Suggestion: 1)Désactivez/Réactiver la connexion réseau sans fil. ou 2) Redémarrer le service WLAN AutoConfig System.Warning: Win32k (184) ~Numéro: 49814 ~Date: 02/04/2023 04:47:58 PM ~ID: 701 ~Description: Le Gestionnaire d’alimentation n’a pas demandé la suppression de toutes les entrées (INPUT_SUPPRESS_REQUEST=0) System.Warning: Microsoft-Windows-USB-USBHUB3 (71) ~Numéro: 49807 ~Date: 02/04/2023 04:31:18 PM ~ID: 196 ~Description: Périphérique USB sollicitant fortement l'alimentation système lorsque le système est inactif. Périphérique USB : VID : %3 PID : %4 REV : 320 Échec de l'action de suppression : 0 System.Warning: stornvme (1) ~Numéro: 49106 ~Date: 02/04/2023 12:59:00 PM ~ID: 129 ~Description: Une réinitialisation au périphérique, %1, a été émise. System.Warning: Microsoft-Windows-Time-Service (6) ~Numéro: 46360 ~Date: 01/30/2023 10:23:38 AM ~ID: 134 ~Description: NtpClient n'a pas pu définir d'homologue manuel utilisable comme source de temps en raison d'une erreur de résolution DNS sur "%3". NtpClient réessaiera dans %2 minutes, puis doublera l'intervalle d'attente pour les tentatives suivantes. L'erreur éta ~Suggestion: Resynchroniser le client avec l'homologue de source de temps System.Error: volmgr (1) ~Numéro: 45267 ~Date: 01/27/2023 08:25:32 AM ~ID: 161 ~Description: Échec de la création du fichier de l’image mémoire en raison d’une erreur lors de la création de cette image. System.Error: EventLog (1) ~Numéro: 45257 ~Date: 01/27/2023 08:25:57 AM ~ID: 6008 ~Description: L’arrêt système précédant à %1 le %2 n’était pas prévu. ---\\ SCAN ADDITIONNEL (50) - 8s C:\Users\gokpo\AppData\Local\Vivaldi\User Data\Default\Extensions\mhjkeimpgjokbjmioglhlngefbddppnn =>Hijacker.Browser HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Textify =>Adware.TextifyCompany [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\eis_nt64.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\eis_nt64.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\keygrabber.bat.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\SoundSwitch\SoundSwitch.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\SoundSwitch\SoundSwitch.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\Infinite_Screen_v1.72.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\Redémarrer.bat.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\Killprocess.bat.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\foobar2000\foobar2000.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\foobar2000\foobar2000.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\mpv-0.34.0-i686\mpv.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\vlc-3.0.17\vlc.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\Cleanmgr.bat.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\VMware-workstation-full-17.0.0-20800274.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\VMware-workstation-full-17.0.0-20800274.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\TaskbarMonitorInstaller.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\OpenShellSetup_4_4_185.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\OpenShellSetup_4_4_185.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\KutoolsTrialReset.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Lenovo\System Update\tvsu.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\adwcleaner_8.4.0.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\adwcleaner_8.4.0.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\ZHPCleaner.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\ZHPCleaner.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\eis_nt64.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\eis_nt64.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\keygrabber.bat.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\SoundSwitch\SoundSwitch.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\SoundSwitch\SoundSwitch.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\Infinite_Screen_v1.72.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\Redémarrer.bat.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\Killprocess.bat.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\foobar2000\foobar2000.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\foobar2000\foobar2000.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\mpv-0.34.0-i686\mpv.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\vlc-3.0.17\vlc.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\Cleanmgr.bat.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\VMware-workstation-full-17.0.0-20800274.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\VMware-workstation-full-17.0.0-20800274.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\TaskbarMonitorInstaller.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\OpenShellSetup_4_4_185.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\OpenShellSetup_4_4_185.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\KutoolsTrialReset.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Lenovo\System Update\tvsu.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\adwcleaner_8.4.0.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\adwcleaner_8.4.0.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\ZHPCleaner.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2741647792-3826816627-2827384255-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\gokpo\OneDrive\Bureau\ZHPCleaner.exe.ApplicationCompany =>.SUP.Orphan.MUICache ---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS (6) - 0s https://nicolascoolman.eu/2017/11/10/hijacker-browser-3/ =>Hijacker.Browser https://nicolascoolman.eu/2017/11/09/adware-textifycompany/ =>Adware.TextifyCompany https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan https://nicolascoolman.eu/forum/Topic/warning-eventlogapp-evenement-dapplication/ =>Warning.EventLogApp https://nicolascoolman.eu/forum/Topic/warning-eventlogsys-evenement-systeme/ =>Warning.EventLogSys https://nicolascoolman.eu/forum/Topic/orphan-muicache-logiciel-potentiellement-superflu-lps/ =>.SUP.Orphan.MUICache ---\\ NUMEROS DE SÉRIE [008BA1F172FD50BA8D4C11B74FFAC8A282] [04/06/2022] (.IObit CO., LTD.) - C:\Program Files (x86)\IObit\IObit Unlocker\unins000.exe =>.IObit CO., LTD [009A98ABF49419A8449C06F85C19A551A8] [04/12/2022] (.ALCPU.) - C:\Program Files\Core Temp\Core Temp.exe =>.Not verified [00A657F778B31AE523D667131718D16EB2] [04/02/2023] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\mb4uns.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [04/02/2023] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [04/02/2023] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [04/02/2023] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [04/02/2023] (.Malwarebytes Inc..) - C:\WINDOWS\System32\DRIVERS\mwac.sys =>.Malwarebytes Inc. [00B138E6660DCA7CC377CB2F6F6027F616] [02/02/2023] (.Adguard Software Limited.) - C:\ProgramData\Package Cache\{f022675c-8a58-4979-bb1e-2ac7728982da}\adgSetup.exe =>.Not verified [00B138E6660DCA7CC377CB2F6F6027F616] [23/01/2023] (.Adguard Software Limited.) - C:\Program Files (x86)\AdGuard\Adguard.exe =>.Not verified [00B138E6660DCA7CC377CB2F6F6027F616] [23/01/2023] (.Adguard Software Limited.) - C:\Program Files (x86)\AdGuard\AdguardSvc.exe =>.Not verified [00CBBF3D73B5022179285FBA169D66F030] [04/09/2022] (.Michael Maltsev.) - C:\Users\gokpo\AppData\Local\Programs\Textify\uninstall.exe =>.Not verified [00CBBF3D73B5022179285FBA169D66F030] [23/12/2022] (.Michael Maltsev.) - C:\Users\gokpo\AppData\Local\Programs\7+ Taskbar Tweaker\7+ Taskbar Tweaker.exe =>.Not verified [00CBBF3D73B5022179285FBA169D66F030] [26/12/2022] (.Michael Maltsev.) - C:\Users\gokpo\AppData\Local\Programs\7+ Taskbar Tweaker\uninstall.exe =>.Not verified [00CE5C9151129B61FC293F1DD150C10AE3] [19/05/2022] (.KORG INC..) - C:\Program Files\KORG\M1\M1.exe =>.Not verified [00CE5C9151129B61FC293F1DD150C10AE3] [25/05/2022] (.KORG INC..) - C:\Program Files\KORG\M1\unins000.exe =>.Not verified [00D3DCC11435E0252F9E0A532039FE0CCC] [06/09/2022] (.Janos Mathe.) - C:\Program Files (x86)\Hard Disk Sentinel\HDSentinel.exe =>.Janos Mathe [00D3DCC11435E0252F9E0A532039FE0CCC] [07/09/2022] (.Janos Mathe.) - C:\Program Files (x86)\Hard Disk Sentinel\unins000.exe =>.Janos Mathe [00D6AA3C891FC2CBDD7E185257E922701A] [25/12/2022] (.Firebit OU.) - C:\Program Files\Rainmeter\Rainmeter.exe =>.Not verified [00E110CB7D6CBE5DB5AB7FA23AAD0D6225] [04/09/2022] (.Priyo Hutomo.) - C:\Program Files (x86)\TweakNow WinSecret\unins000.exe =>.Not verified [00E110CB7D6CBE5DB5AB7FA23AAD0D6225] [20/05/2022] (.Priyo Hutomo.) - C:\Program Files (x86)\TweakNow WinSecret\TransTaskbar.exe =>.Not verified [00E596FEF10C079CAB9B18674DDD3E8D8B] [07/06/2022] (.Steve Chaison.) - C:\Users\gokpo\OneDrive\Bureau\InetProcs.exe =>.Not verified [0100000000011657D28AD3] [03/01/2023] (.Paramount Software UK Ltd.) - C:\Program Files\Macrium\Reflect\vssfixx64.exe =>.Not verified [010280E632AA56509167C42ADC452F68] [14/05/2022] (.Adobe Inc..) - C:\Program Files\Adobe\Adobe Photoshop 2022\convert.exe =>.Not verified [010FB25B4DE76443A40569857A384F24] [13/11/2022] (.Pavel Yosifovich.) - C:\Users\gokpo\OneDrive\Bureau\TotalReg.exe =>.Not verified [01EAB87B37173553ADA09907253C884B] [21/04/2022] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp. [01EAB87B37173553ADA09907253C884B] [21/04/2022] (.Realtek Semiconductor Corp..) - C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_05fe713c4fadacd3\RtkAudUService64.exe =>.Realtek Semiconductor Corp. [03C364883635B9CA96A5349D6F8349C9] [24/09/2021] (.Dolby Laboratories, Inc..) - C:\Windows\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_8183b45ddd94e6f9\DAX3API.exe =>.Dolby Laboratories, Inc. [041E10CC0F2075CF8446114A3DDC2CFC] [17/08/2022] (.Lenovo.) - C:\WINDOWS\System32\LNBITSSvc.exe =>.Lenovo [041E10CC0F2075CF8446114A3DDC2CFC] [31/08/2022] (.Lenovo.) - C:\WINDOWS\System32\drivers\AcpiVpc.sys =>.Lenovo [04D54DC0A2016B263EEEB255D321056E] [11/04/2022] (.OpenVPN Technologies, Inc..) - C:\Program Files (x86)\NordVPN network TAP\bin\i386\tapinstall.exe =>.OpenVPN Technologies, Inc. [050D30A415301D62B5797ADDA45FDF94] [25/07/2022] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RtsPer.sys =>.Realtek Semiconductor Corp. [053593BF71F7481B9FB76BCB4ECCF578] [14/05/2022] (.Adobe Inc..) - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HDBox\Uninstaller.exe =>.Adobe Inc. [053593BF71F7481B9FB76BCB4ECCF578] [27/04/2022] (.Adobe Inc..) - C:\Program Files (x86)\Adobe\Adobe Sync\CoreSyncPlugins\LiveType\customhook\uninstall.exe =>.Adobe Inc. [053593BF71F7481B9FB76BCB4ECCF578] [27/04/2022] (.Adobe Inc..) - C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll =>.Adobe Inc. [05F97D054A9BFCBF9D5E12F8D0ABBE07] [15/11/2022] (.ESET, spol. s r.o..) - C:\Program Files\ESET\ESET Security\eOPPFrame.exe =>.ESET, spol. s r.o. [05F97D054A9BFCBF9D5E12F8D0ABBE07] [16/01/2023] (.ESET, spol. s r.o..) - C:\Program Files\ESET\ESET Security\callmsi.exe =>.ESET, spol. s r.o. [05F97D054A9BFCBF9D5E12F8D0ABBE07] [16/01/2023] (.ESET, spol. s r.o..) - C:\Program Files\ESET\ESET Security\ecmds.exe =>.ESET, spol. s r.o. [05F97D054A9BFCBF9D5E12F8D0ABBE07] [16/01/2023] (.ESET, spol. s r.o..) - C:\Program Files\ESET\ESET Security\egui.exe =>.ESET, spol. s r.o. [05F97D054A9BFCBF9D5E12F8D0ABBE07] [16/01/2023] (.ESET, spol. s r.o..) - C:\Program Files\ESET\ESET Security\eguiproxy.exe =>.ESET, spol. s r.o. [05F97D054A9BFCBF9D5E12F8D0ABBE07] [16/01/2023] (.ESET, spol. s r.o..) - C:\Program Files\ESET\ESET Security\ekrn.exe =>.ESET, spol. s r.o. [05F97D054A9BFCBF9D5E12F8D0ABBE07] [16/01/2023] (.ESET, spol. s r.o..) - C:\Program Files\ESET\ESET Security\shellExt.dll =>.ESET, spol. s r.o. [05F97D054A9BFCBF9D5E12F8D0ABBE07] [16/01/2023] (.ESET, spol. s r.o..) - C:\WINDOWS\System32\DRIVERS\eamonm.sys =>.ESET, spol. s r.o. [05F97D054A9BFCBF9D5E12F8D0ABBE07] [16/01/2023] (.ESET, spol. s r.o..) - C:\WINDOWS\System32\DRIVERS\edevmon.sys =>.ESET, spol. s r.o. [05F97D054A9BFCBF9D5E12F8D0ABBE07] [16/01/2023] (.ESET, spol. s r.o..) - C:\WINDOWS\System32\DRIVERS\ehdrv.sys =>.ESET, spol. s r.o. [05F97D054A9BFCBF9D5E12F8D0ABBE07] [16/01/2023] (.ESET, spol. s r.o..) - C:\WINDOWS\System32\DRIVERS\ekbdflt.sys =>.ESET, spol. s r.o. [05F97D054A9BFCBF9D5E12F8D0ABBE07] [16/01/2023] (.ESET, spol. s r.o..) - C:\WINDOWS\System32\DRIVERS\epfw.sys =>.ESET, spol. s r.o. [05F97D054A9BFCBF9D5E12F8D0ABBE07] [16/01/2023] (.ESET, spol. s r.o..) - C:\WINDOWS\System32\DRIVERS\epfwwfp.sys =>.ESET, spol. s r.o. [06ED9786195FFE948CD6749CBEC394A3] [21/04/2021] (.London Jamocha Community CIC.) - C:\Program Files\LRTimelapse 6\jre\bin\javaw.exe =>.London Jamocha Community CIC [06FDFE1CF0EF43D40CFDB0016F42BD2A] [24/11/2021] (.Pierre GOUGELET.) - C:\Program Files\XnView\ShellEx\XnViewShellExt64.dll =>.Pierre GOUGELET [06FDFE1CF0EF43D40CFDB0016F42BD2A] [25/05/2022] (.Pierre GOUGELET.) - C:\Program Files\XnView\ShellEx\unins000.exe =>.Pierre GOUGELET [082A101C9CFE2154314B45317A3DC200] [10/11/2022] (.eM Client, s.r.o..) - C:\Program Files (x86)\eM Client\MailClient.exe =>.Not verified [084EEAAE1D23F2E189C219261275C404] [13/03/2020] (.SoftPerfect Pty. Ltd..) - C:\WINDOWS\System32\drivers\networx.sys =>.Not verified [084EEAAE1D23F2E189C219261275C404] [16/03/2020] (.SoftPerfect Pty. Ltd..) - C:\Program Files\NetWorx\networx.exe =>.Not verified [090EAA294CD4ABD9EB1CC784C924243D] [07/09/2022] (.VMware, Inc..) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe =>.VMware, Inc. [090EAA294CD4ABD9EB1CC784C924243D] [07/09/2022] (.VMware, Inc..) - C:\WINDOWS\System32\DRIVERS\hcmon.sys =>.VMware, Inc. [090EAA294CD4ABD9EB1CC784C924243D] [07/09/2022] (.VMware, Inc..) - C:\WINDOWS\System32\drivers\vmusb.sys =>.VMware, Inc. [090EAA294CD4ABD9EB1CC784C924243D] [16/11/2022] (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Workstation\7za.exe =>.VMware, Inc. [090EAA294CD4ABD9EB1CC784C924243D] [16/11/2022] (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc. [090EAA294CD4ABD9EB1CC784C924243D] [16/11/2022] (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-autostart.exe =>.VMware, Inc. [090EAA294CD4ABD9EB1CC784C924243D] [16/11/2022] (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe =>.VMware, Inc. [090EAA294CD4ABD9EB1CC784C924243D] [16/11/2022] (.VMware, Inc..) - C:\WINDOWS\System32\drivers\vmnet.sys =>.VMware, Inc. [090EAA294CD4ABD9EB1CC784C924243D] [16/11/2022] (.VMware, Inc..) - C:\WINDOWS\System32\DRIVERS\vmnetadapter.sys =>.VMware, Inc. [090EAA294CD4ABD9EB1CC784C924243D] [16/11/2022] (.VMware, Inc..) - C:\WINDOWS\System32\DRIVERS\vmnetbridge.sys =>.VMware, Inc. [090EAA294CD4ABD9EB1CC784C924243D] [16/11/2022] (.VMware, Inc..) - C:\WINDOWS\System32\DRIVERS\vmnetuserif.sys =>.VMware, Inc. [090EAA294CD4ABD9EB1CC784C924243D] [16/11/2022] (.VMware, Inc..) - C:\Windows\SysWOW64\vmnat.exe =>.VMware, Inc. [090EAA294CD4ABD9EB1CC784C924243D] [16/11/2022] (.VMware, Inc..) - C:\Windows\SysWOW64\vmnetdhcp.exe =>.VMware, Inc. [0AA60783EBB5076EBC2D12DA9B04C290] [20/08/2022] (.Insecure.Com LLC.) - C:\Program Files\Npcap\uninstall.exe =>.Not verified [0AA60783EBB5076EBC2D12DA9B04C290] [20/08/2022] (.Insecure.Com LLC.) - C:\WINDOWS\System32\DRIVERS\npcap.sys =>.Not verified [0B10496C28AE1C5264AB93937DA7F486] [13/11/2022] (.Lenovo.) - C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_da914fb427b10059\FnHotkeyUtility.exe =>.Lenovo [0B10496C28AE1C5264AB93937DA7F486] [13/11/2022] (.Lenovo.) - C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_da914fb427b10059\LenovoUtilityService.exe =>.Lenovo [0B10496C28AE1C5264AB93937DA7F486] [15/09/2022] (.Lenovo.) - C:\Windows\System32\DriverStore\FileRepository\lnvsst.inf_amd64_4fb0470b333c7f0d\SmartSense.exe =>.Lenovo [0B10496C28AE1C5264AB93937DA7F486] [15/09/2022] (.Lenovo.) - C:\Windows\System32\DriverStore\FileRepository\lnvsst.inf_amd64_4fb0470b333c7f0d\SmartSenseController.exe =>.Lenovo [0B10496C28AE1C5264AB93937DA7F486] [15/09/2022] (.Lenovo.) - C:\Windows\System32\DriverStore\FileRepository\lnvsst.inf_amd64_4fb0470b333c7f0d\UserSSCtrl.exe =>.Lenovo [0B10496C28AE1C5264AB93937DA7F486] [17/11/2022] (.Lenovo.) - C:\WINDOWS\System32\DRIVERS\Lenovo\udc\Service\UDClientService.exe =>.Lenovo [0B10496C28AE1C5264AB93937DA7F486] [29/11/2022] (.Lenovo.) - C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\LenovoVantage-(DeviceSettingsSystemAddin).exe =>.Lenovo [0B10496C28AE1C5264AB93937DA7F486] [29/11/2022] (.Lenovo.) - C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\LenovoVantage-(MultimediaAddin).exe =>.Lenovo [0B10496C28AE1C5264AB93937DA7F486] [29/11/2022] (.Lenovo.) - C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\LenovoVantage-(SmartDisplayAddin).exe =>.Lenovo [0B10496C28AE1C5264AB93937DA7F486] [29/11/2022] (.Lenovo.) - C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\LenovoVantage-(VantageCoreAddin).exe =>.Lenovo [0B10496C28AE1C5264AB93937DA7F486] [29/11/2022] (.Lenovo.) - C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\LenovoVantageService.exe =>.Lenovo [0B10496C28AE1C5264AB93937DA7F486] [29/11/2022] (.Lenovo.) - C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\Uninstall.exe =>.Lenovo [0B710DC423C7D000E30BAE9F11AE1151] [17/09/2022] (.CoderBag, LLC.) - C:\Program Files\QuickCPU\QuickCPU.exe =>.Not verified [0C1CD3EEA47EDDA7A032573B014D0AFD] [03/02/2023] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation [0C1CD3EEA47EDDA7A032573B014D0AFD] [03/02/2023] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation [0D36AB0805BA9450220F865C58918F52] [13/05/2022] (.Malwarebytes Inc.) - C:\Program Files\Malwarebytes\Windows Firewall Control\wfc.exe =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [13/05/2022] (.Malwarebytes Inc.) - C:\Program Files\Malwarebytes\Windows Firewall Control\wfcs.exe =>.Malwarebytes Inc [0D98F5DF96C592C5B76BFDE1CB823096] [04/05/2022] (.IObit CO., LTD.) - C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlocker.sys =>.IObit CO., LTD [0EA39DC6653ADDC16FD0A739] [30/01/2023] (.PARAMOUNT SOFTWARE UK LIMITED.) - C:\Program Files\Macrium\Common\MacriumService.exe =>.Not verified [0EA39DC6653ADDC16FD0A739] [30/01/2023] (.PARAMOUNT SOFTWARE UK LIMITED.) - c:\program files\Macrium\Common\reflectmonitor.exe =>.Not verified [0EA39DC6653ADDC16FD0A739] [30/01/2023] (.PARAMOUNT SOFTWARE UK LIMITED.) - C:\Program Files\Macrium\Common\ReflectUI.exe =>.Not verified [0EA39DC6653ADDC16FD0A739] [30/01/2023] (.PARAMOUNT SOFTWARE UK LIMITED.) - C:\Program Files\Macrium\Reflect\Consolidate.exe =>.Not verified [0EA39DC6653ADDC16FD0A739] [30/01/2023] (.PARAMOUNT SOFTWARE UK LIMITED.) - C:\Program Files\Macrium\Reflect\MRVerify.exe =>.Not verified [0EA39DC6653ADDC16FD0A739] [30/01/2023] (.PARAMOUNT SOFTWARE UK LIMITED.) - C:\Program Files\Macrium\Reflect\RContextMenu.dll =>.Not verified [0EA39DC6653ADDC16FD0A739] [30/01/2023] (.PARAMOUNT SOFTWARE UK LIMITED.) - C:\Program Files\Macrium\Reflect\Reflect.exe =>.Not verified [0EA39DC6653ADDC16FD0A739] [30/01/2023] (.PARAMOUNT SOFTWARE UK LIMITED.) - C:\Program Files\Macrium\Reflect\ReflectUpdater.exe =>.Not verified [0EA39DC6653ADDC16FD0A739] [30/01/2023] (.PARAMOUNT SOFTWARE UK LIMITED.) - C:\Program Files\Macrium\Reflect\xReflect.exe =>.Not verified [0FDDB53064C536A794495B90D3089427] [14/05/2022] (.MEDIATEK INC..) - C:\WINDOWS\System32\DRIVERS\mtkbtfilterx.sys =>.Not verified [0FDDB53064C536A794495B90D3089427] [15/05/2022] (.MEDIATEK INC..) - C:\WINDOWS\System32\drivers\mtkwl6ex.sys =>.Not verified [107F7D2F138A3E9F49B14F10181EA2FE] [08/11/2021] (.WDKTestCert AndyChen,132652806163117881.) - C:\Windows\System32\DriverStore\FileRepository\netax88179x_178a_772d.inf_amd64_21809f4d848ddcfe\ax88179x_178a_772d.sys =>.Not verified [157F6D9D452A2AE334CA4348D1E265F0] [27/09/2022] (.Open Source Developer, Stefan KUENG.) - C:\Program Files\BowPad\BowPad.exe =>.Not verified [1885B7E188D8FAFD38A43D48967D7488] [18/06/2021] (.Advanced Micro Devices INC..) - C:\WINDOWS\System32\drivers\amdgpio2.sys =>.Advanced Micro Devices INC. [1AF0660E837A35A2CD92EC613FC15DB8] [03/10/2014] (.Nir Sofer.) - C:\Programmes Portables\Volumouse\volumouse.exe =>.Nir Sofer [1C7533D77728BC417D504DFD8B793EDC] [28/12/2021] (.DeskSoft.) - C:\Program Files (x86)\ScrollNavigator\Uninstall.exe =>.Not verified [23F4B491123AC4CDBD68042D] [05/12/2022] (.Proton Technologies AG.) - C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPN.exe =>.Proton Technologies AG [23F4B491123AC4CDBD68042D] [05/12/2022] (.Proton Technologies AG.) - C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPN.RestoreInternet.exe =>.Proton Technologies AG [23F4B491123AC4CDBD68042D] [05/12/2022] (.Proton Technologies AG.) - C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPN.TlsVerify.exe =>.Proton Technologies AG [23F4B491123AC4CDBD68042D] [05/12/2022] (.Proton Technologies AG.) - C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPN.WireGuardService.exe =>.Proton Technologies AG [23F4B491123AC4CDBD68042D] [05/12/2022] (.Proton Technologies AG.) - C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPNService.exe =>.Proton Technologies AG [23F4B491123AC4CDBD68042D] [24/05/2022] (.Proton Technologies AG.) - C:\Program Files (x86)\Proton Technologies\ProtonVPNTap\installer\x86\tapinstall.exe =>.Proton Technologies AG [26C8011E27F667CF5FD468DCB4AC16BE] [25/05/2016] (.Crystal Rich Ltd.) - C:\Program Files (x86)\InternetOff\IOffSvc.exe =>.Crystal Rich Ltd [2981A6A35E27685D0E0AA815022A70D9] [14/11/2022] (.CBEWIN TECH LIMITED.) - C:\Program Files\AnyTXT Searcher\ATDHelper.exe =>.Not verified [2981A6A35E27685D0E0AA815022A70D9] [14/11/2022] (.CBEWIN TECH LIMITED.) - C:\Program Files\AnyTXT Searcher\atgui.exe =>.Not verified [2981A6A35E27685D0E0AA815022A70D9] [14/11/2022] (.CBEWIN TECH LIMITED.) - C:\Program Files\AnyTXT Searcher\atservice.exe =>.Not verified [33000003054D620D688507AA33000000000305] [06/12/2022] (..NET.) - C:\Program Files\dotnet\dotnet.exe =>.Not verified [33000003054D620D688507AA33000000000305] [12/01/2023] (..NET.) - C:\ProgramData\Package Cache\{007ff79f-5c20-48a1-92da-a78201768353}\windowsdesktop-runtime-7.0.2-win-x64.exe =>.Not verified [33000003054D620D688507AA33000000000305] [12/01/2023] (..NET.) - C:\ProgramData\Package Cache\{2830137e-5fb5-4d10-b5fd-eedcbe1c5ae5}\dotnet-runtime-7.0.2-win-x64.exe =>.Not verified [33000003054D620D688507AA33000000000305] [23/10/2022] (..NET.) - C:\Program Files (x86)\eM Client\createdump.exe =>.Not verified [33000003183E18830F1770AD20000000000318] [10/01/2023] (.Skype Software Sarl.) - C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.92.3401.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl [33000042699E561D96E52D5C56000000004269] [12/11/2022] (.File-New-Project.) - C:\Program Files\WindowsApps\40459File-New-Project.EarTrumpet_2.2.1.0_x86__1sdd7yawvg6ne\EarTrumpet\EarTrumpet.exe =>.Not verified [35C95CBA9434DB0F425D3BAA3157DE13] [15/01/2023] (.Mahmoud Gomaa.) - C:\Program Files\Nilesoft Shell\shell.exe =>.Not verified [3A40F3370808BDA1520827090BFA0541] [23/01/2023] (.PassMark Software Pty Ltd.) - C:\Program Files\RAMMon\RAMMon32.exe =>.Not verified [3A40F3370808BDA1520827090BFA0541] [23/01/2023] (.PassMark Software Pty Ltd.) - C:\Program Files\RAMMon\unins000.exe =>.Not verified [455DDDAFCDCC783C2FE0E268] [21/05/2022] (.Paramount Software UK Ltd.) - C:\WINDOWS\System32\drivers\mrcbt.sys =>.Paramount Software UK Ltd [46B6D641BE59D0F7D77DEFCB2A080C2E] [22/12/2022] (.YAMICSOFT TECHNOLOGY LIMITED.) - C:\Program Files\Yamicsoft\Windows 11 Manager\1-ClickCleaner.exe =>.Not verified [46B6D641BE59D0F7D77DEFCB2A080C2E] [22/12/2022] (.YAMICSOFT TECHNOLOGY LIMITED.) - C:\Users\gokpo\AppData\Local\Caphyon\Advanced Installer\{EACB76CB-3652-4762-9392-0AC513B08B89}\windows11manager.exe =>.Not verified [535091E6CAB13AF393B51EAD0825F627] [06/10/2021] (.Advanced Micro Devices Inc..) - C:\Windows\System32\DriverStore\FileRepository\amdacpafd.inf_amd64_6feef11989456c09\amdacpafd.sys =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [10/06/2022] (.Advanced Micro Devices Inc..) - C:\Program Files (x86)\AMD\Chipset_Software\AMD_Chipset_Drivers.exe =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [20/10/2021] (.Advanced Micro Devices Inc..) - C:\Windows\System32\DriverStore\FileRepository\amdacpbus.inf_amd64_0db72b76397684aa\amdacpbus.sys =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [22/05/2022] (.Advanced Micro Devices Inc..) - C:\WINDOWS\System32\drivers\amdi2c.sys =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [23/03/2022] (.Advanced Micro Devices Inc..) - C:\WINDOWS\System32\drivers\AmdMicroPEP.sys =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [23/08/2022] (.Advanced Micro Devices Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0382639.inf_amd64_2f10f48364cd2b9e\B382560\amdkmdag.sys =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [23/08/2022] (.Advanced Micro Devices Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0382639.inf_amd64_2f10f48364cd2b9e\B382560\atieclxx.exe =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [23/08/2022] (.Advanced Micro Devices Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0382639.inf_amd64_2f10f48364cd2b9e\B382560\atiesrxx.exe =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [26/05/2022] (.Advanced Micro Devices Inc..) - C:\WINDOWS\System32\drivers\amdpsp.sys =>.Advanced Micro Devices Inc. [56D5DA041463DAAA3E50181A] [25/01/2023] (.Vivaldi Technologies AS.) - C:\Users\gokpo\AppData\Local\Vivaldi\Application\update_notifier.exe =>.Vivaldi Technologies AS [56D5DA041463DAAA3E50181A] [25/01/2023] (.Vivaldi Technologies AS.) - C:\Users\gokpo\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS [56D5DA041463DAAA3E50181A] [26/01/2023] (.Vivaldi Technologies AS.) - C:\Users\gokpo\AppData\Local\Vivaldi\Application\5.6.2867.62\Installer\setup.exe =>.Vivaldi Technologies AS [5CD0502920C27EEAEC2A184D0452E53A] [10/10/2020] (.IObit Information Technology.) - C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll =>.IObit Information Technology [5CD0502920C27EEAEC2A184D0452E53A] [28/01/2021] (.IObit Information Technology.) - C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlocker.exe =>.IObit Information Technology [5DB3AB95B89D4AE090608B4A] [03/08/2022] (.nordvpn s.a..) - C:\Program Files\NordUpdater\NordUpdateService.exe =>.nordvpn s.a. [5DB3AB95B89D4AE090608B4A] [03/08/2022] (.nordvpn s.a..) - C:\Program Files\NordVPN\NordVPN.exe =>.nordvpn s.a. [5DB3AB95B89D4AE090608B4A] [03/08/2022] (.nordvpn s.a..) - C:\Program Files\NordVPN\nordvpn-service.exe =>.nordvpn s.a. [5DB3AB95B89D4AE090608B4A] [11/06/2021] (.nordvpn s.a..) - C:\Program Files\NordVPN\NordSec ThreatProtection\nordsec-threatprotection-service.exe =>.nordvpn s.a. [5DB3AB95B89D4AE090608B4A] [13/06/2021] (.nordvpn s.a..) - C:\WINDOWS\System32\drivers\tapnordvpn.sys =>.nordvpn s.a. [5DB3AB95B89D4AE090608B4A] [22/01/2023] (.nordvpn s.a..) - C:\Program Files\NordVPN\unins000.exe =>.nordvpn s.a. [5DB3AB95B89D4AE090608B4A] [22/02/2022] (.nordvpn s.a..) - C:\WINDOWS\System32\DRIVERS\nordlwf.sys =>.nordvpn s.a. [5DB3AB95B89D4AE090608B4A] [24/11/2022] (.nordvpn s.a..) - C:\Program Files\NordUpdater\unins000.exe =>.nordvpn s.a. [5DB3AB95B89D4AE090608B4A] [28/06/2022] (.nordvpn s.a..) - C:\Program Files\NordVPN\7.4.7.0\Drivers\NDivert.sys =>.nordvpn s.a. [620CBCBA5648E27B80AEF5226EE67FCE] [17/05/2022] (.Red Fox UK Limited.) - C:\WINDOWS\System32\Drivers\inpoutx64.sys =>.Red Fox UK Limited [6606F76CF00BC54EB3260E6E1BC70074] [16/11/2022] (.Open Source Developer, Jonas Günner.) - C:\Users\gokpo\OneDrive\Bureau\GoAwayEdge.exe =>.Not verified [66C5DCC14B517809C172B44B7E9784F7] [09/08/2017] (.Open Source Developer, Robin Krom.) - C:\Program Files\Greenshot\Greenshot.exe =>.Open Source Developer, Robin Krom [66C5DCC14B517809C172B44B7E9784F7] [18/05/2022] (.Open Source Developer, Robin Krom.) - C:\Program Files\Greenshot\unins000.exe =>.Open Source Developer, Robin Krom [6DCCE46BF957272AE06D045FED960536] [17/07/2017] (.ELAN Microelectronics Corporation.) - C:\Program Files\ElanFP\EFDUninst.exe =>.ELAN Microelectronics Corporation [71AB43B1129754EA5809102A59EC8950] [15/12/2022] (.Irfan Skiljan.) - C:\Program Files\IrfanView\iv_uninstall.exe =>.Not verified [731D40AE3F3A1FB2BC3D8395] [18/01/2023] (.win.rar GmbH.) - C:\Program Files\WinRAR\Rar.exe =>.win.rar GmbH [731D40AE3F3A1FB2BC3D8395] [18/01/2023] (.win.rar GmbH.) - C:\Program Files\WinRAR\uninstall.exe =>.win.rar GmbH [74846CB601CF0B0D863AD991529361FE] [21/05/2022] (.Gunther Wegner.) - C:\Program Files\LRTimelapse 6\unins000.exe =>.Not verified [7C4BA269A79BFCBA77F289AA] [15/02/2019] (.Paramount Software UK Ltd.) - C:\WINDOWS\System32\drivers\psmounterex.sys =>.Paramount Software UK Ltd [942A37BCA9A9889442F6710533CB5548] [29/12/2022] (.SoundSwitch.) - C:\Users\gokpo\AppData\Local\Programs\SoundSwitch\unins000.exe =>.Not verified ~ Unselected Options: O82, ~ End of the scan, 21170 items in 04mn11s (3409)(0)