~ ZHPDiag v2024.7.16.22 By Nicolas Coolman (2024/07/16) ~ Run by Katakuri3D2Y (Administrator) (2024/07/21 18:30:29) ~ Assistance: https://forum.nicolascoolman.eu/ ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ State version: Version OK ~ Mode: Scan ~ Report: C:\Users\Katakuri3D2Y\Desktop\ZHPDiag.txt ~ Report: C:\Users\Katakuri3D2Y\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Deactivate ~ System startup: Normal (Normal boot) Windows 10 Enterprise LTSC 2019, 64-bit (Build 17763) =>.Microsoft Corporation ---\\ Internet Browsers (3) - 0s ~ GCIE: Google Chrome v126.0.6478.128 ~ MFIE: Mozilla Firefox 124.0 (x64 en-GB) ~ MSIE: Internet Explorer v11.316.17763.0 ---\\ Windows Product Information (3) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : KO ---\\ System protection software (1) - 2s Windows Defender W10 (Deactivate) (Protection) ---\\ System optimization software (1) - 2s ~ CCleaner v6.25 (Optimisation) ---\\ Sharing software PeerToPeer (1) - 2s ~ qBittorrent v4.6.2 (P2P) ---\\ Informations on the system (19) - 1s ~ Operating System: Intel64 Family 6 Model 60 Stepping 3, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) System Restore: Activé (Enable) System drive C: has 13 GB (11%) free of 113 GB : ATTENTION =>Warning Disk Space ---\\ INFORMATIONS MÉMOIRE (MEMORY INFORMATIONS) ~ Slots Total (Total Slots) : 4 ~ Slots Utilisés (Used Slots) : 2 ~ Slots Disponibles (Free Slots) : 2 ~ Type de barrette (FormFactor): DIMM ~ Taille (Size) : 4 Go ~ Vitesse (Speed) : 1600 ~ Charge mémoire (Memory Usage) : 47% ~ RAM physique Total (Total Physical) : 8 Go : OK ~ RAM physique Disponible (Available Physical) : 4 Go ~ Total virtuelle (Total Virtual) : 9.83 Go ~ Disponible virtuelle (Available Virtual): 5.41 Go ~ Disponible virtuelle (Available Virtual): 5.41 Go ---\\ Connection to the system mode (3) - 0s ~ Computer Name: DESKTOP-UKRQR1T ~ User Name: Katakuri3D2Y ~ Logged in as Administrator ---\\ Enumeration of the disk units (6) - 0s ~ Drive C: has 13 GB free of 113 GB (System) ~ Drive D: has 103 GB free of 715 GB ---\\ ÉTAT DE LA COMMANDE TRIM ~ La commande TRIM est désactivée (NTFS) ~ La commande TRIM est activée (ReFS) ---\\ SYSTEM DISK MAIN FEATURES (25) - 21s ~ Model: TOSHIBA MK7575GSX vGT001M (113 Gb ) ~ Media Type: SSD Fixed Disk ( Bus: SATA) ---\\ SYSTEM DISK GENERAL ATTRIBUTES OK - N0 - Indicateur d'usure du périphérique de stockage (Storage Device Wear Indicator) (%): 0 OK - N1 - Temps de latence maximal de vidage (Maximum Flash latency) (ms): 0.028 OK - N2 - Temps de latence maximal d'écriture (Maximum write latency) (ms): 0.223 OK - N3 - Temps de latence maximal de lecture (Maximum read latency) (ms): 0.386 OK - N4 - Vitesse de rotation (Spindle Speed) (RPM): Unknown ---\\ S.M.A.R.T. PARAMETERS - [Flag][Value][Worst] [Threshold][Raw Value] OK - 05 - Nombre de secteurs réalloués (Reallocated Sector Count) - [51][100][100] [10][0] OK - 09 - Heures de fonctionnement (Power-On Hours Count (POH) - [50][92][92] [0][36059] OK - 0C - Nombre de cycles en fonctionnement (Power Cycles Count) - [50][86][86] [0][13525] OK - B1 - Total du Nombre de niveau d'usure (Total Wear Leveling Count) - [19][49][49] [0][513] OK - B3 - Nombre Total de blocs réservés utilisés (Total Used reserved Block Count) - [19][100][100] [10][0] OK - B5 - Nombre d’échecs de programme (total) (Total Program Fail Count) - [50][100][100] [10][0] OK - B6 - Total de Pire effacement du nombre d’échecs (Total Erase Fail Count) - [50][100][100] [10][0] OK - B7 - Rétrogradation de l'interface SATA (SATA Interface Downshift) - [19][100][100] [10][0] OK - BB - Nombre d'erreurs incorrigibles (Reported Uncorrectable Errors) - [50][100][100] [0][0] OK - BE - Temperature débit d'air (Temperature Airflow) - [50][58][30] [0][42] OK - C3 - Matériel ECC récupéré (Hardware ECC recovered) - [26][200][200] [0][0] OK - C7 - Nombre d'erreurs CRC Ultra-DMA (CRC Error Count) - [62][99][99] [0][5] OK - EB - Nombre de récupérations POR (POR Recovery Count) - [18][99][99] [0][476] OK - F1 - Nombre total d'écriture Hôte (Total LBA Written, Lifetime Host Writes) - [50][99][99] [0][28164] ---\\ State of the Windows Security Center (12) - 0s [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoFolderOptions: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoResolveSearch: Modified [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoClose: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableTaskMgr: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableRegistryTools: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Search Generic System Files (26) - 2s [MD5.D033CC75DD4CC0856E89B2A87559C2CC] - 13/02/2019 - (.Microsoft Corporation - Windows Explorer.) -- C:\Windows\Explorer.exe [4245280] =>.Microsoft Windows® [MD5.C73BA51880F5A7FB20C84185A23212EF] - 15/09/2018 - (.Microsoft Corporation - Windows host process (Rundll32).) -- C:\Windows\System32\rundll32.exe [71168] [Unsigned] =>.Microsoft Corporation [MD5.4E20895E641F2C3E68AB3DB91A1A16F1] - 15/09/2018 - (.Microsoft Corporation - Windows Start-Up Application.) -- C:\Windows\System32\Wininit.exe [388376] [Unsigned] =>.Microsoft Corporation [MD5.F69ACBFF1B9683F6C1E0AE9C3C0A1D18] - 13/02/2019 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\Windows\System32\wininet.dll [5086208] [Unsigned] =>.Microsoft Corporation [MD5.92419F3B74C6C3D7304B7665DA984552] - 15/09/2018 - (.Microsoft Corporation - Windows Logon Application.) -- C:\Windows\System32\Winlogon.exe [779776] [Unsigned] =>.Microsoft Corporation [MD5.409DA1CF80BD0BED054E952E905A9576] - 15/09/2018 - (.Microsoft Corporation - Software Licensing Library.) -- C:\Windows\System32\sppcomapi.dll [421376] [Unsigned] =>.Microsoft Corporation [MD5.A4A3158F5AB8D079A0B04A8894FF5429] - 13/02/2019 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\Windows\System32\dnsapi.dll [799568] =>.Microsoft Windows® [MD5.F10481D001CC1B7FB99C3296EAFECCFC] - 13/02/2019 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\Windows\Syswow64\dnsapi.dll [580024] =>.Microsoft Windows® [MD5.9035B7A1C60EC43E60892D599E8B66B1] - 13/02/2019 - (.Microsoft Corporation - Windows Update Agent.) -- C:\Windows\System32\wuaueng.dll [2992640] [Unsigned] =>.Microsoft Corporation [MD5.1C72D5EC12FB782907B1F7F3E64D1B8F] - 28/11/2018 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [19968] [Unsigned] =>.Microsoft Corporation [MD5.5AFE650194C07BE81CB5A01B72549A1B] - 15/09/2018 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [655160] [Unsigned] =>.Microsoft Corporation [MD5.A39C05B19C079401A9AF8A2EF3067B64] - 15/09/2018 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [30208] [Unsigned] =>.Microsoft Corporation [MD5.4CF28143BF2A4885D737DA7F53E9FE8C] - 13/02/2019 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [100352] [Unsigned] =>.Microsoft Corporation [MD5.D7FAEE38C867DFDAA626B886A7AEA89A] - 15/09/2018 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [165888] [Unsigned] =>.Microsoft Corporation [MD5.C7E85EEDBC05491FF1CDD3ACA98FA1DE] - 15/09/2018 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [151040] [Unsigned] =>.Microsoft Corporation [MD5.855678C1760AE7DCE0CF2BAFD989176E] - 15/09/2018 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [104960] [Unsigned] =>.Microsoft Corporation [MD5.7EF070F21CAB7E8DC906F9CA8516CE5B] - 15/09/2018 - (.Microsoft Corporation - i8042 Port Driver.) -- C:\Windows\System32\drivers\i8042prt.sys [110592] [Unsigned] =>.Microsoft Corporation [MD5.CEC63D8B8E7A525233D2AEE19EF9A5A8] - 15/09/2018 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [224768] [Unsigned] =>.Microsoft Corporation [MD5.3EA7FCFF3EDCD2402E6773F6149BA78D] - 13/02/2019 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [535048] [Unsigned] =>.Microsoft Corporation [MD5.717FC248242BDCBB3B8159B8098BD34F] - 15/09/2018 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [301568] [Unsigned] =>.Microsoft Corporation [MD5.CF26DFA7723CF8A9D639E1053284C1A4] - 13/02/2019 - (.Microsoft Corporation - NT File System Driver.) -- C:\Windows\System32\drivers\ntfs.sys [2626592] [Unsigned] =>.Microsoft Corporation [MD5.838C9F2D2EB6D29776AF1AC78B4AA1D7] - 15/09/2018 - (.Microsoft Corporation - Parallel Port Driver.) -- C:\Windows\System32\drivers\Parport.sys [106496] [Unsigned] =>.Microsoft Corporation [MD5.6E28E1CE915FE617D4F38BFB8543696F] - 15/09/2018 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [111616] [Unsigned] =>.Microsoft Corporation [MD5.1AEE22C5FBF18F53C47AC4373F0DB542] - 15/09/2018 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [166912] [Unsigned] =>.Microsoft Corporation [MD5.E5CE3388A455ED80480EAE3A8ADD53A9] - 15/09/2018 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [132408] [Unsigned] =>.Microsoft Corporation [MD5.0F13F63BA93C89DA4F54B8830EB5410B] - 15/09/2018 - (.Microsoft Corporation - Volume Shadow Copy driver.) -- C:\Windows\System32\drivers\volsnap.sys [427832] [Unsigned] =>.Microsoft Corporation ---\\ No disabled Windows Services (55) - 1s O23 - Service: C:\Windows\System32\AudioEndpointBuilder.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Windows Audio Endpoint Builder.) - C:\Windows\System32\AudioEndpointBuilder.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\audiosrv.dll (Audiosrv) . (.Microsoft Corporation - Windows Audio Service.) - C:\Windows\System32\Audiosrv.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\bfe.dll (BFE) . (.Microsoft Corporation - Base Filtering Engine.) - C:\Windows\System32\bfe.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\system32\bisrv.dll (BrokerInfrastructure) . (.Microsoft Corporation - Process State Manager (PSM) Service.) - C:\Windows\System32\psmsrv.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\coremessaging.dll (CoreMessagingRegistrar) . (.Microsoft Corporation - Microsoft CoreMessaging Dll.) - C:\Windows\System32\coremessaging.dll =>.Microsoft Windows® O23 - Service: C:\Windows\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) - C:\Windows\System32\cryptsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - DHCP Client Service.) - C:\Windows\System32\dhcpcore.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - DNS Caching Resolver Service.) - C:\Windows\System32\dnsrslvr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dusmsvc.dll (DusmSvc) . (.Microsoft Corporation - Data Usage Service.) - C:\Windows\System32\dusmsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: EaseUS UPDATE SERVICE (EaseUS UPDATE SERVICE) . (.CHENGDU YIWO Tech Development Co., Ltd. - .) - C:\Program Files (x86)\EaseUS\ENS\ensserver.exe =>.CHENGDU YIWO Tech Development Co., Ltd.® O23 - Service: C:\Windows\System32\wevtsvc.dll (EventLog) . (.Microsoft Corporation - Event Logging Service.) - C:\Windows\System32\wevtsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Windows Font Cache Service.) - C:\Windows\System32\FntCache.dll [Unsigned] =>.Microsoft Corporation O23 - Service: GoogleUpdater InternalService 128.0.6597.0 (GoogleUpdaterIn (GoogleUpdaterInternalService128.0.6597.0) . (.Google LLC - GoogleUpdater (x86).) - C:\Program Files (x86)\Google\GoogleUpdater\128.0.6597.0\updater.exe =>.Google LLC® O23 - Service: GoogleUpdater Service 128.0.6597.0 (GoogleUpdaterService128 (GoogleUpdaterService128.0.6597.0) . (.Google LLC - GoogleUpdater (x86).) - C:\Program Files (x86)\Google\GoogleUpdater\128.0.6597.0\updater.exe =>.Google LLC® O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Group Policy Client.) - C:\Windows\System32\gpsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\Windows\System32\igfxCUIService.exe [Unsigned] =>.Intel Corporation O23 - Service: C:\Windows\System32\ikeext.dll (IKEEXT) . (.Microsoft Corporation - IKE extension.) - C:\Windows\System32\ikeext.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Intel(R) TPM Provisioning Service (Intel(R) TPM Provisioning Service) . (.Intel(R) Corporation - Intel(R) TPM Provisioning Service.) - C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\TPMProvisioningService.exe =>.Intel(R) Trust Services® O23 - Service: C:\Windows\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) - C:\Windows\System32\iphlpsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) - C:\Windows\System32\srvsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) - C:\Windows\System32\wkssvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\system32\lsm.dll (LSM) . (.Microsoft Corporation - Local Session Manager Service.) - C:\Windows\System32\lsm.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\moshost.dll (MapsBroker) . (.Microsoft Corporation - Downloaded Maps Manager.) - C:\Windows\System32\moshost.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\FirewallAPI.dll (mpssvc) . (.Microsoft Corporation - Microsoft Protection Service.) - C:\Windows\System32\mpssvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Network Location Awareness 2.) - C:\Windows\System32\nlasvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Network Store Interface RPC server.) - C:\Windows\System32\nsisvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.Nvidia Corporation® O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Windows\System32\DriverStore\FileRepository\nvcvig.inf_amd64_3495276d23a96c1a\Display.NvContainer\NVDisplay.Container.exe =>.Nvidia Corporation® O23 - Service: C:\Windows\System32\umpo.dll (Power) . (.Microsoft Corporation - User-mode Power Service.) - C:\Windows\System32\umpo.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\Windows\System32\profsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\rasmans.dll (RasMan) . (.Microsoft Corporation - Remote Access Connection Manager.) - C:\Windows\System32\rasmans.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\system32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - RPC Endpoint Mapper.) - C:\Windows\System32\RpcEpMap.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @combase.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\Windows\System32\rpcss.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Task Scheduler Service.) - C:\Windows\System32\schedsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\Sens.dll (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) - C:\Windows\System32\sens.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Standard Floating License Manager (SFLMSERVERD) (SFLMSERVERD) . (...) - C:\sedatools\lib\rpc.sflmserverd\8.2.12.R\x86-nt\rpc.sflmserverd.exe [Unsigned] O23 - Service: C:\Windows\System32\SgrmBroker.exe,-100 (SgrmBroker) . (.Microsoft Corporation - System Guard Runtime Monitor Broker Service.) - C:\Windows\System32\SgrmBroker.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) - C:\Windows\System32\shsvcs.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Spooler SubSystem App.) - C:\Windows\System32\spoolsv.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Microsoft Software Protection Platform Serv.) - C:\Windows\System32\sppsvc.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\wiaservc.dll (stisvc) . (.Microsoft Corporation - Still Image Devices Service.) - C:\Windows\System32\wiaservc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: SysMain (SysMain) . (.Microsoft Corporation - SysMain Service Host.) - C:\Windows\System32\sysmain.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\system32\SystemEventsBrokerServer.dll (SystemEventsBroker) . (.Microsoft Corporation - System Events Broker.) - C:\Windows\System32\SystemEventsBrokerServer.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\themeservice.dll (Themes) . (.Microsoft Corporation - Windows Shell Theme Service Dll.) - C:\Windows\System32\themeservice.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\usermgr.dll (UserManager) . (.Microsoft Corporation - UserMgr.) - C:\Windows\System32\usermgr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\usocore.dll (UsoSvc) . (.Microsoft Corporation - Update Session Orchestrator Core.) - C:\Windows\System32\usocore.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\w32time.dll (W32Time) . (.Microsoft Corporation - Windows Time Service.) - C:\Windows\System32\w32time.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\wcmsvc.dll (Wcmsvc) . (.Microsoft Corporation - Windows Connection Manager Service DLL.) - C:\Windows\System32\wcmsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: (WindscribeService) . (.Windscribe Limited - Manages the firewall and controls the VPN t.) - C:\Program Files\Windscribe\WindscribeService.exe {0F5EE43BEEA50ED5F0EC765BF65B1350}. =>.Windscribe Limited O23 - Service: C:\Windows\System32\wbem\wmisvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\Windows\System32\wbem\WMIsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\wlansvc.dll (WlanSvc) . (.Microsoft Corporation - Windows WLAN AutoConfig Service DLL.) - C:\Windows\System32\wlansvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\wpnservice.dll (WpnService) . (.Microsoft Corporation - Windows Push Notification System Service.) - C:\Windows\System32\WpnService.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) - C:\Windows\System32\wscsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Microsoft Windows Search Indexer.) - C:\Windows\System32\SearchIndexer.exe [Unsigned] =>.Microsoft Corporation ---\\ Services not Microsoft (SR=Run, SS=Stop) (103) - 12s SR - Boot [15/09/2018] [ 107520] (3ware) . (.LSI.) - C:\Windows\System32\drivers\3ware.sys =>.Microsoft Windows® SR - Demand [07/07/2024] [ 2182128] ACE-BASE (ACE-BASE) . (.ANTICHEATEXPERT.COM.) - C:\Windows\system32\drivers\ACE-BASE.sys =>.Microsoft® SR - Boot [15/09/2018] [ 1135616] (ADP80XX) . (.PMC-Sierra.) - C:\Windows\System32\drivers\ADP80XX.SYS =>.Microsoft Windows® SR - Demand [25/11/2022] [ 46512] Insyde Airplane Mode HID Mini- (AirplaneModeHid) . (.Insyde Corporation.) - C:\Windows\System32\DRIVERS\AirplaneModeHid.sys =>.Insyde Software Corp.® SR - Boot [15/09/2018] [ 83456] (amdsata) . (.Advanced Micro Devices.) - C:\Windows\System32\drivers\amdsata.sys =>.Microsoft Windows® SR - Boot [15/09/2018] [ 259384] (amdsbs) . (.AMD Technologies Inc..) - C:\Windows\System32\drivers\amdsbs.sys =>.Microsoft Windows® SR - Boot [15/09/2018] [ 27136] (amdxata) . (.Advanced Micro Devices.) - C:\Windows\System32\drivers\amdxata.sys =>.Microsoft Windows® SR - Demand [23/10/2018] [ 30208] LGE Mobile USB Composite Dev (AndnetBus) . (.LG Electronics Inc..) - C:\Windows\System32\drivers\lgandnetbus64.sys [Unsigned] =>.LG Electronics Inc. SR - Demand [16/10/2018] [ 30720] LGE AndroidNet USB Serial Po (AndNetDiag) . (.LG Electronics Inc..) - C:\Windows\System32\DRIVERS\lgandnetdiag64.sys [Unsigned] =>.LG Electronics Inc. SR - Demand [16/10/2018] [ 37376] LGE AndroidNet USB Modem (ANDNetModem) . (.LG Electronics Inc..) - C:\Windows\System32\DRIVERS\lgandnetmodem64.sys [Unsigned] =>.LG Electronics Inc. SS - Demand [20/06/2024] [ 2106368] AntiCheatExpert Service (AntiCheatExpert Service) . (.ANTICHEATEXPERT.COM.) - C:\Program Files\AntiCheatExpert\SGuard\x64\SGuardSvc64.exe {08B400989A7B9F0D6E71BE7494B332E1}. SR - Boot [15/09/2018] [ 131896] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\Windows\System32\drivers\arcsas.sys =>.Microsoft Windows® SR - Boot [15/09/2018] [ 533816] QLogic Network Adapter VBD (b06bdrv) . (.QLogic Corporation.) - C:\Windows\System32\drivers\bxvbda.sys =>.Microsoft Windows® SR - Demand [15/09/2018] [ 9728] bcmfn2 Service (bcmfn2) . (...) - C:\Windows\System32\drivers\bcmfn2.sys [Unsigned] =>.Broadcom Corporation SS - Demand [26/06/2024] [ 1085856] CCleaner Performance Optimizer Service (CCleanerPerformanceOptimizerService) . (.Piriform Software Ltd.) - C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe =>.PIRIFORM SOFTWARE LIMITED® SR - Boot [15/09/2018] [ 319488] (cht4iscsi) . (.Chelsio Communications.) - C:\Windows\System32\drivers\cht4sx64.sys =>.Microsoft Windows® SR - Demand [15/09/2018] [ 1866768] Chelsio Virtual Bus Driver (cht4vbd) . (.Chelsio Communications.) - C:\Windows\System32\drivers\cht4vx64.sys =>.Microsoft Windows® SS - Demand [02/12/2020] [ 397680] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel(R) pGFX 2020® SR - Auto [01/04/2024] [ 26512] EaseUS UPDATE SERVICE (EaseUS UPDATE SERVICE) . (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\Program Files (x86)\EaseUS\ENS\ensserver.exe =>.CHENGDU YIWO Tech Development Co., Ltd.® SR - Boot [15/09/2018] [ 3419152] QLogic 10 Gigabit Ethernet Ada (ebdrv) . (.QLogic Corporation.) - C:\Windows\System32\drivers\evbda.sys =>.Microsoft Windows® SR - Demand [25/11/2022] [ 53632] (ETDSMBus) . (.ELAN Microelectronic Corp..) - C:\Windows\System32\drivers\ETDSMBus.sys =>.ELAN MICROELECTRONICS CORPORATION® SR - Demand [07/08/2012] [ 36696] EgisTec-Corp Fingerprint Read (FPSensor) . (.Egis Technology Inc..) - C:\Windows\System32\Drivers\FPSensor.sys =>.EGIS TECHNOLOGY INC.® SS - Demand [13/01/2023] [ 1081896] NVIDIA FrameView SDK service (FvSvc) . (.NVIDIA.) - C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe =>.NVIDIA Corporation® SS - Demand [22/06/2024] [ 1783584] Google Chrome Elevation Service (GoogleChromeElevationServi (GoogleChromeElevationService) . (.Google LLC.) - C:\Program Files\Google\Chrome\Application\126.0.6478.128\elevation_service.exe =>.Google LLC® SR - Auto [15/07/2024] [ 4889704] GoogleUpdater InternalService 128.0.6597.0 (GoogleUpdaterIn (GoogleUpdaterInternalService128.0.6597.0) . (.Google LLC.) - C:\Program Files (x86)\Google\GoogleUpdater\128.0.6597.0\updater.exe =>.Google LLC® SR - Auto [15/07/2024] [ 4889704] GoogleUpdater Service 128.0.6597.0 (GoogleUpdaterService128 (GoogleUpdaterService128.0.6597.0) . (.Google LLC.) - C:\Program Files (x86)\Google\GoogleUpdater\128.0.6597.0\updater.exe =>.Google LLC® SR - Demand [17/07/2024] [ 3698840] HoYoProtect (HoYoProtect) . (.miHoYo.) - C:\Windows\system32\HoYoKProtect.sys =>.Microsoft® SR - Boot [15/09/2018] [ 64312] (HpSAMD) . (.Hewlett-Packard Company.) - C:\Windows\System32\drivers\HpSAMD.sys =>.Microsoft Windows® SR - Demand [15/09/2018] [ 36352] Intel Serial IO GPIO Controlle (iagpio) . (.Intel(R) Corporation.) - C:\Windows\System32\drivers\iagpio.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [15/09/2018] [ 91136] Intel(R) Serial IO I2C Host Cont (iai2c) . (.Intel(R) Corporation.) - C:\Windows\System32\drivers\iai2c.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [15/09/2018] [ 79360] Intel(R) S (iaLPSS2i_GPIO2) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaLPSS2i_GPIO2.sys [Unsigned] =>.Intel Corporation SR - Demand [15/09/2018] [ 93184] In (iaLPSS2i_GPIO2_BXT_P) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [15/09/2018] [ 112128] Intel( (iaLPSS2i_GPIO2_CNL) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [15/09/2018] [ 96256] Intel( (iaLPSS2i_GPIO2_GLK) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [15/09/2018] [ 171520] Intel(R) Seria (iaLPSS2i_I2C) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaLPSS2i_I2C.sys [Unsigned] =>.Intel Corporation SR - Demand [15/09/2018] [ 175104] Intel( (iaLPSS2i_I2C_BXT_P) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [15/09/2018] [ 180736] Intel(R) S (iaLPSS2i_I2C_CNL) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaLPSS2i_I2C_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [15/09/2018] [ 177664] Intel(R) S (iaLPSS2i_I2C_GLK) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaLPSS2i_I2C_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [15/09/2018] [ 38128] Intel(R) Serial IO (iaLPSSi_GPIO) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaLPSSi_GPIO.sys =>.Intel Corporation - Client Components Group® SR - Demand [15/09/2018] [ 113152] Intel(R) Serial IO I (iaLPSSi_I2C) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaLPSSi_I2C.sys [Unsigned] =>.Intel Corporation SR - Boot [25/11/2022] [ 1469952] (iaStorA) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaStorA.sys =>.Intel(R) Rapid Storage Technology® SR - Boot [15/09/2018] [ 885048] Intel Chipset SATA RAI (iaStorAVC) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaStorAVC.sys =>.Microsoft Windows® SR - Boot [15/09/2018] [ 411960] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaStorV.sys =>.Microsoft Windows® SR - Demand [15/09/2018] [ 566800] Mellanox InfiniBand Bus/A (ibbus) . (.Mellanox.) - C:\Windows\System32\drivers\ibbus.sys =>.Microsoft Windows® SR - Demand [02/12/2020] [ 7968624] (igfx) . (.Intel Corporation.) - C:\Windows\System32\DRIVERS\igdkmd64.sys =>.Intel(R) pGFX 2020® SR - Auto [02/12/2020] [ 363376] Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation.) - C:\Windows\System32\igfxCUIService.exe =>.Intel(R) pGFX 2020® SR - Demand [09/05/2018] [ 480176] Intel(R) Display Audio (IntcDAud) . (.Intel(R) Corporation.) - C:\Windows\System32\DRIVERS\IntcDAud.sys =>.Intel Corporation® SS - Demand [25/11/2022] [ 761088] Intel(R) Capability Lice (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\SocketHeciServer.exe =>.Intel(R) Trust Services® SR - Auto [25/11/2022] [ 737552] Intel(R) TPM Provis (Intel(R) TPM Provisioning Service) . (.Intel(R) Corporation.) - C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\TPMProvisioningService.exe =>.Intel(R) Trust Services® SR - Boot [15/09/2018] [ 148480] (ItSas35i) . (.Avago Technologies.) - C:\Windows\System32\drivers\ItSas35i.sys =>.Microsoft Windows® SR - Boot [15/09/2018] [ 109056] (LSI_SAS) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_sas.sys =>.Microsoft Windows® SR - Boot [15/09/2018] [ 124416] (LSI_SAS2i) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_sas2i.sys =>.Microsoft Windows® SR - Boot [15/09/2018] [ 128512] (LSI_SAS3i) . (.Avago Technologies.) - C:\Windows\System32\drivers\lsi_sas3i.sys =>.Microsoft Windows® SR - Boot [15/09/2018] [ 82944] (LSI_SSS) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_sss.sys =>.Microsoft Windows® SR - Boot [15/09/2018] [ 59904] (megasas) . (.Avago Technologies.) - C:\Windows\System32\drivers\megasas.sys =>.Microsoft Windows® SR - Boot [15/09/2018] [ 75264] (megasas2i) . (.Avago Technologies.) - C:\Windows\System32\drivers\MegaSas2i.sys =>.Microsoft Windows® SR - Boot [15/09/2018] [ 79872] (megasas35i) . (.Avago Technologies.) - C:\Windows\System32\drivers\megasas35i.sys =>.Microsoft Windows® SR - Boot [15/09/2018] [ 575800] (megasr) . (.LSI Corporation, Inc..) - C:\Windows\System32\drivers\megasr.sys =>.Microsoft Windows® SR - Demand [25/11/2022] [ 223832] Intel(R) Management Engine Interfa (MEIx64) . (.Intel Corporation.) - C:\Windows\System32\drivers\TeeDriverW8x64.sys =>.Intel(R) Embedded Subsystems and IP Blocks Group® SR - Demand [15/09/2018] [ 1150496] Mellanox ConnectX Bus E (mlx4_bus) . (.Mellanox.) - C:\Windows\System32\drivers\mlx4_bus.sys =>.Microsoft Windows® SS - Demand [11/07/2024] [ 239520] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Boot [15/09/2018] [ 63800] (mvumis) . (.Marvell Semiconductor, Inc..) - C:\Windows\System32\drivers\mvumis.sys =>.Microsoft Windows® SR - Demand [15/09/2018] [ 153616] NetworkDirect Service (ndfltr) . (.Mellanox.) - C:\Windows\System32\drivers\ndfltr.sys =>.Microsoft Windows® SR - Auto [01/03/2013] [ 36600] NetGroup Packet Filter Driver (NPF) . (.Riverbed Technology, Inc..) - C:\Windows\System32\drivers\npf.sys =>.Riverbed Technology, Inc.® SR - Auto [15/03/2022] [ 1003128] NVIDIA LocalSystem Container (NvContainerLocalSystem) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.Nvidia Corporation® SR - Auto [24/06/2022] [ 1015360] NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation.) - C:\Windows\System32\DriverStore\FileRepository\nvcvig.inf_amd64_3495276d23a96c1a\Display.NvContainer\NVDisplay.Container.exe =>.Nvidia Corporation® SR - Demand [24/06/2022] [43718120] (nvlddmkm) . (.NVIDIA Corporation.) - C:\Windows\System32\DriverStore\FileRepository\nvcvig.inf_amd64_3495276d23a96c1a\nvlddmkm.sys =>.Nvidia Corporation® SR - Demand [14/07/2022] [ 45656] NvModuleTracker (NvModuleTracker) . (.NVIDIA Corporation.) - C:\Windows\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys =>.Nvidia Corporation® SR - Boot [15/09/2018] [ 150528] (nvraid) . (.NVIDIA Corporation.) - C:\Windows\System32\drivers\nvraid.sys =>.Microsoft Windows® SR - Boot [15/09/2018] [ 166400] (nvstor) . (.NVIDIA Corporation.) - C:\Windows\System32\drivers\nvstor.sys =>.Microsoft Windows® SR - Demand [14/10/2022] [ 59928] NVIDIA Virtual Au (nvvad_WaveExtensible) . (.NVIDIA Corporation.) - C:\Windows\System32\drivers\nvvad64v.sys =>.Nvidia Corporation® SR - Demand [14/07/2022] [ 60112] NVVHCI Enumerator Service (nvvhci) . (.NVIDIA Corporation.) - C:\Windows\System32\drivers\nvvhci.sys =>.Nvidia Corporation® SR - Boot [15/09/2018] [ 58880] (percsas2i) . (.Avago Technologies.) - C:\Windows\System32\drivers\percsas2i.sys =>.Microsoft Windows® SR - Boot [15/09/2018] [ 68608] (percsas3i) . (.Avago Technologies.) - C:\Windows\System32\drivers\percsas3i.sys =>.Microsoft Windows® SS - Demand [01/03/2013] [ 118520] Remote Packet Capture Protocol v.0 (experimental) (rpcapd) . (.Riverbed Technology, Inc..) - C:\Program Files (x86)\WinPcap\rpcapd.exe =>.Riverbed Technology, Inc.® SR - Demand [25/11/2022] [ 1210224] Realtek RT640 NT Driver (rt640x64) . (.Realtek.) - C:\Windows\System32\drivers\rt640x64.sys =>.Realtek Semiconductor Corp.® SR - Demand [26/09/2018] [ 758312] Realtek Bluetooth Filter Driver (RtkBtFilter) . (.Realtek Semiconductor Corporation.) - C:\Windows\System32\drivers\RtkBtfilter.sys =>.Realtek Semiconductor Corp.® SR - Disabl [26/09/2018] [ 713816] Realtek Bluetooth Device M (RtkBtManServ) . (.Realtek Semiconductor Corp..) - C:\Windows\RtkBtManServ.exe =>.Realtek Semiconductor Corp.® SR - Demand [25/11/2022] [ 1356656] Realtek PCIE Card Reader - PER (RTSPER) . (.Realtek Semiconductor Corporation.) - C:\Windows\System32\DRIVERS\RtsPer.sys =>.Realtek Semiconductor Corp.® SR - Demand [15/09/2018] [ 8169472] Realtek Wirel (RTWlanE) . (.Realtek Semiconductor Corporation.) - C:\Windows\System32\drivers\rtwlane.sys [Unsigned] =>.Realtek Semiconductor Corporation SR - Demand [25/11/2022] [ 9634008] Realtek Wireless L (RTWlanE02) . (.Realtek Semiconductor Corporation.) - C:\Windows\System32\drivers\rtwlane02.sys =>.Realtek Semiconductor Corp.® SR - Demand [21/01/2015] [ 3988] sflmpcidl (sflmpcidl) . (...) - C:\sedatools\lib\rpc.sflmserverd\8.2.12.R\x86-nt\sflmpcidl.sys [Unsigned] SR - Auto [07/12/2007] [ 1708032] Standard Floating License Manager (SFLMSERVERD) (SFLMSERVERD) . (...) - C:\sedatools\lib\rpc.sflmserverd\8.2.12.R\x86-nt\rpc.sflmserverd.exe [Unsigned] SR - Boot [15/09/2018] [ 45056] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\Windows\System32\drivers\SiSRaid2.sys =>.Microsoft Windows® SR - Boot [15/09/2018] [ 81920] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\Windows\System32\drivers\sisraid4.sys =>.Microsoft Windows® SR - Boot [15/09/2018] [ 219960] (SmartSAMD) . (.Microsemi Corportation.) - C:\Windows\System32\drivers\SmartSAMD.sys =>.Microsoft Windows® SR - Demand [04/08/2015] [ 42696] (SmbDrvI) . (.Synaptics Incorporated.) - C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys =>.Synaptics Incorporated® SR - Boot [15/09/2018] [ 31032] (stexstor) . (.Promise Technology, Inc..) - C:\Windows\System32\drivers\stexstor.sys =>.Microsoft Windows® SR - Demand [25/11/2022] [ 766184] Synaptics TouchPad Driver (SynTP) . (.Synaptics Incorporated.) - C:\Windows\System32\DRIVERS\SynTP.sys =>.Synaptics Incorporated® SR - Disabl [25/11/2022] [ 360168] SynTPEnhService (SynTPEnhService) . (.Synaptics Incorporated.) - C:\Windows\System32\SynTPEnhService.exe =>.Synaptics Incorporated® SR - Demand [09/12/2022] [ 57768] Windscribe VPN (tapwindscribe0901) . (.The OpenVPN Project.) - C:\Windows\System32\drivers\tapwindscribe0901.sys {0AF4B47E1A5EEDA06DB90E772E799A07}. =>.The OpenVPN Project SR - Demand [21/07/2024] [ 50216] ThrottleStop (ThrottleStop) . (.Copyright 2004-2019 (c). All rights reserved..) - C:\Users\Katakuri3D2Y\AppData\Local\Temp\ThrottleStop.sys {0AFC69772AE1EA9A285731B6AA4523C6}. SS - Demand [28/06/2024] [ 9705560] vgc (vgc) . (.Riot Games, Inc..) - C:\Program Files\Riot Vanguard\vgc.exe {0CD1D038015129A43DA0AEE211859C8E}. =>.Riot Games, Inc. SR - System [27/06/2024] [40415320] vgk (vgk) . (.Riot Games, Inc..) - C:\Program Files\Riot Vanguard\vgk.sys {0CD1D038015129A43DA0AEE211859C8E}. =>.Riot Games, Inc. SR - Boot [15/09/2018] [ 166712] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\Windows\System32\drivers\vsmraid.sys =>.Microsoft Windows® SR - Boot [15/09/2018] [ 305464] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\Windows\System32\drivers\vstxraid.sys =>.Microsoft Windows® SR - Auto [09/12/2022] [ 1052512] (WindscribeService) . (.Windscribe Limited.) - C:\Program Files\Windscribe\WindscribeService.exe {0F5EE43BEEA50ED5F0EC765BF65B1350}. =>.Windscribe Limited SR - Demand [09/12/2022] [ 35752] WindscribeSplitTunnel (WindscribeSplitTunnel) . (. {0AF4B47E1A5EEDA06DB90E772E799A07}..) - C:\Windows\System32\DRIVERS\WindscribeSplitTunnel.sys {0AF4B47E1A5EEDA06DB90E772E799A07}. SR - Demand [09/12/2022] [ 47544] Windtun420 (windtun420) . (.WireGuard LLC.) - C:\Windows\System32\drivers\windtun420.sys {0AF4B47E1A5EEDA06DB90E772E799A07}. =>.WireGuard LLC SR - Demand [15/09/2018] [ 37688] WinMad Service (WinMad) . (.Mellanox.) - C:\Windows\System32\drivers\winmad.sys =>.Microsoft Windows® SR - Demand [15/09/2018] [ 77856] WinVerbs Service (WinVerbs) . (.Mellanox.) - C:\Windows\System32\drivers\winverbs.sys =>.Microsoft Windows® SR - Demand [19/12/2022] [ 489368] WireGuard (WireGuard) . (.WireGuard LLC.) - C:\Windows\System32\drivers\wireguard.sys =>.Microsoft® SR - Demand [21/12/2022] [ 2522256] xhunter1 (xhunter1) . (.Wellbia.com Co., Ltd..) - C:\Windows\xhunter1.sys =>.Wellbia.com Co., Ltd.® ---\\ Task Planned Automatically (Register) (34) - 5s O38 - TASK: {050DE49A-584E-4CC7-A756-5696AA040064} [64Bits][\CCleanerSkipUAC - Katakuri3D2Y] - (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [39451552] =>.Piriform Software Ltd O38 - TASK: {0DBE81CB-6793-42BC-93A0-754DA3B5ED3E} [64Bits][\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA driver profile updater.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888] =>.NVIDIA Corporation O38 - TASK: {1DAA5643-BB47-4EB0-A76A-0B733D360FDD} [64Bits][\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA GeForce Experience.) -- C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3342376] =>.NVIDIA Corporation O38 - TASK: {27C5D62F-7D7D-4197-A155-2395BC6CDF93} [64Bits][\Driver Booster Update] - (.IObit - Common Component.) -- C:\Program Files (x86)\Driver Booster\AutoUpdate.exe [135704] =>.IObit O38 - TASK: {34D0D554-F92F-4B80-AB16-666E4DB20AB5} [64Bits][\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA crash and telemetry reporter.) -- C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064] =>.NVIDIA Corporation O38 - TASK: {47376F75-70E0-499B-88EA-5C5A9CB49EC4} [64Bits][\Driver Booster Scheduler] - (.IObit - Driver Booster Scheduler.) -- C:\Program Files (x86)\Driver Booster\Scheduler.exe [157784] =>.IObit O38 - TASK: {67AC7FD1-2F89-479C-A352-DD2F3084FFD3} [64Bits][\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem128.0.6597.0{F2314165-1C85-40B2-8693-8EC01D4E54F3}] - (.Google LLC - GoogleUpdater (x86).) -- C:\Program Files (x86)\Google\GoogleUpdater\128.0.6597.0\updater.exe [4889704] =>.Google LLC O38 - TASK: {7EFF5C51-EAC1-437D-A211-86685E01BC11} [64Bits][\CCleaner Update] - (.Piriform Software Ltd - CCleaner CCleaner emergency updater.) -- C:\Program Files\CCleaner\CCUpdate.exe [714256] =>.Piriform Software Ltd O38 - TASK: {A8200AA9-FF47-49A6-9FB6-5E5E5097CA89} [64Bits][\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128] =>.NVIDIA Corporation O38 - TASK: {B72E9111-074F-47CF-9FE5-FC4C5F1AA693} [64Bits][\CCleanerCrashReporting] - (.Gen Digital Inc. All rights reserved. - CCleaner Bug Report.) -- C:\Program Files\CCleaner\CCleanerBugReport.exe [5074848] O38 - TASK: {D39655DD-4E62-4D5F-BEFB-4BFD113A02EA} [64Bits][\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA driver profile updater.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888] =>.NVIDIA Corporation O38 - TASK: {DB1D42CF-6CEA-442F-BE90-BF54C8DF3D98} [64Bits][\Driver Booster SkipUAC (Katakuri3D2Y)] - (.IObit - Driver Booster.) -- C:\Program Files (x86)\Driver Booster\DriverBooster.exe [8912896] =>.IObit O38 - TASK: {DC39E8E5-FA42-409E-A7B8-B942D9D7AF96} [64Bits][\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA crash and telemetry reporter.) -- C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064] =>.NVIDIA Corporation O38 - TASK: {E5D04C79-1672-4232-94EB-D9BECA5717EA} [64Bits][\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA crash and telemetry reporter.) -- C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064] =>.NVIDIA Corporation O38 - TASK: {ED377D11-9669-4402-B7B0-5A1E9AF110BA} [64Bits][\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA nodejs launcher.) -- C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649784] =>.NVIDIA Corporation O38 - TASK: {F3B02320-1740-44F9-9AA4-CCDB50225159} [64Bits][\Mozilla\Firefox Background Update 308046B0AF4A39CB] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [671136] =>.Mozilla Corporation O38 - TASK: {F8EA1683-5122-4537-A250-F81200AAF8EF} [64Bits][\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA crash and telemetry reporter.) -- C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064] =>.NVIDIA Corporation C:\Windows\System32\Tasks\CCleanerSkipUAC - Katakuri3D2Y - (.Piriform Software Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [$(Arg0)] =>.Piriform Software Ltd C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [] =>.NVIDIA Corporation C:\Windows\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [] =>.NVIDIA Corporation C:\Windows\System32\Tasks\Driver Booster Update - (.IObit.) -- C:\Program Files (x86)\Driver Booster\AutoUpdate.exe [/auto] =>.IObit C:\Windows\System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [] =>.NVIDIA Corporation C:\Windows\System32\Tasks\Driver Booster Scheduler - (.IObit.) -- C:\Program Files (x86)\Driver Booster\Scheduler.exe [/scheduler] =>.IObit C:\Windows\System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem128.0.6597.0{F2314165-1C85-40B2-8693-8EC01D4E54F3} - (.Google LLC.) -- C:\Program Files (x86)\Google\GoogleUpdater\128.0.6597.0\updater.exe [--wake --system.--wake] =>.Google LLC C:\Windows\System32\Tasks\CCleaner Update - (.Piriform Software Ltd.) -- C:\Program Files\CCleaner\CCUpdate.exe [] =>.Piriform Software Ltd C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [-d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContain] =>.NVIDIA Corporation C:\Windows\System32\Tasks\CCleanerCrashReporting - (.Gen Digital Inc. All rights reserved..) -- C:\Program Files\CCleaner\CCleanerBugReport.exe [1] C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [] =>.NVIDIA Corporation C:\Windows\System32\Tasks\Driver Booster SkipUAC (Katakuri3D2Y) - (.IObit.) -- C:\Program Files (x86)\Driver Booster\DriverBooster.exe [/skipuac] =>.IObit C:\Windows\System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [] =>.NVIDIA Corporation C:\Windows\System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [] =>.NVIDIA Corporation C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [--launcher=TaskScheduler] =>.NVIDIA Corporation C:\Windows\System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB - (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\firefox.exe [--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla] =>.Mozilla Corporation C:\Windows\System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [] =>.NVIDIA Corporation ---\\ Auto loading programs from Registry and folders (4) - 1s O4 - HKLM\..\Run: [Riot Vanguard] . (.Riot Games, Inc. - Vanguard tray notification..) -- C:\Program Files\Riot Vanguard\vgtray.exe {0CD1D038015129A43DA0AEE211859C8E}. =>.Riot Games, Inc. O4 - HKCU\..\Run: [CCleaner Smart Cleaning] . (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.PIRIFORM SOFTWARE LIMITED® O4 - HKLM\..\Wow6432Node\Run: [AvastSvcpCP] . (.AVAST Software - Avast remediation exe.) -- C:\ProgramData\AvastSvcpCP\AvastSvc.exe =>.AVAST Software s.r.o.® O4 - HKUS\S-1-5-21-3281570312-2569251169-3552750206-1001\..\Run: [CCleaner Smart Cleaning] . (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.PIRIFORM SOFTWARE LIMITED® ---\\ Process running (41) - 5s [MD5.C90623F64413C05936510A9696C164E5] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Windows\System32\DriverStore\FileRepository\nvcvig.inf_amd64_3495276d23a96c1a\Display.NvContainer\NVDisplay.Container.exe [1015360] [PID.1348] =>.Nvidia Corporation® [MD5.13951D5221D4B0A1BC936065CB9204A1] - (.Intel Corporation - igfxCUIService Module.) -- C:\Windows\System32\igfxCUIService.exe [363376] [PID.1580] [Unsigned] =>.Intel Corporation [MD5.C90623F64413C05936510A9696C164E5] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Windows\System32\DriverStore\FileRepository\nvcvig.inf_amd64_3495276d23a96c1a\Display.NvContainer\NVDisplay.Container.exe [1015360] [PID.2280] =>.Nvidia Corporation® [MD5.B2144794B38A4B18D71B3F6B60DD26FB] - (...) -- C:\Program Files (x86)\EaseUS\ENS\ensserver.exe [26512] [PID.2684] =>.CHENGDU YIWO Tech Development Co., Ltd.® [MD5.72B8EB857AFF22C81BF5D2E62F64F021] - (...) -- C:\sedatools\lib\rpc.sflmserverd\8.2.12.R\x86-nt\rpc.sflmserverd.exe [1708032] [PID.2724] [Unsigned] [MD5.45E63493AA5450B19C91ECCCF46859A6] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128] [PID.2756] =>.Nvidia Corporation® [MD5.9FAECCAD082919FA297B52F6CC77D367] - (.Intel(R) Corporation - Intel(R) TPM Provisioning Service.) -- C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\TPMProvisioningService.exe [737552] [PID.2772] =>.Intel(R) Trust Services® [MD5.35358A23B585EBDD6B5F39A094F24E0D] - (.Windscribe Limited - Manages the firewall and controls the VPN t.) -- C:\Program Files\Windscribe\WindscribeService.exe [1052512] [PID.2784] {0F5EE43BEEA50ED5F0EC765BF65B1350}. =>.Windscribe Limited [MD5.45E63493AA5450B19C91ECCCF46859A6] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128] [PID.4688] =>.Nvidia Corporation® [MD5.45E63493AA5450B19C91ECCCF46859A6] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128] [PID.4716] =>.Nvidia Corporation® [MD5.FC115C9DA20CA2A3B28B78086BDC061D] - (.Intel Corporation - igfxHK Module.) -- C:\Windows\System32\igfxHK.exe [257904] [PID.5228] [Unsigned] =>.Intel Corporation [MD5.67F0001FA4410A89C7393AA5656CCF9A] - (.Node.js - NVIDIA Web Helper Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe [29447224] [PID.3748] =>.Nvidia Corporation® [MD5.44F9767A550FEDEA62A9B0BA683D0857] - (.NVIDIA Corporation - NVIDIA ShadowPlay Helper.) -- C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe [848424] [PID.6784] =>.NVIDIA Corporation® [MD5.FB354F3D703AD29439B9BB01E9A8D5DC] - (.NVIDIA Corporation - NVIDIA Share.) -- C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe [3342376] [PID.6792] =>.Nvidia Corporation® [MD5.FB354F3D703AD29439B9BB01E9A8D5DC] - (.NVIDIA Corporation - NVIDIA Share.) -- C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe [3342376] [PID.632] =>.Nvidia Corporation® [MD5.ECE2EA1EB7D0EBAEBD7861196EDF2329] - (.Riot Games, Inc. - Vanguard tray notification..) -- C:\Program Files\Riot Vanguard\vgtray.exe [3023152] [PID.7060] {0CD1D038015129A43DA0AEE211859C8E}. =>.Riot Games, Inc. [MD5.A72036F635CECF0DCB1E9C6F49A8FA5B] - (.AVAST Software - Avast remediation exe.) -- C:\ProgramData\AvastSvcpCP\AvastSvc.exe [61648] [PID.3052] =>.AVAST Software s.r.o.® [MD5.FDD329F95F2B9975F77B11728D72823F] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2795808] [PID.1968] =>.Google LLC® [MD5.FDD329F95F2B9975F77B11728D72823F] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2795808] [PID.3860] =>.Google LLC® [MD5.FDD329F95F2B9975F77B11728D72823F] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2795808] [PID.4876] =>.Google LLC® [MD5.FDD329F95F2B9975F77B11728D72823F] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2795808] [PID.960] =>.Google LLC® [MD5.FDD329F95F2B9975F77B11728D72823F] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2795808] [PID.5544] =>.Google LLC® [MD5.FDD329F95F2B9975F77B11728D72823F] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2795808] [PID.3992] =>.Google LLC® [MD5.FDD329F95F2B9975F77B11728D72823F] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2795808] [PID.2108] =>.Google LLC® [MD5.FDD329F95F2B9975F77B11728D72823F] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2795808] [PID.4420] =>.Google LLC® [MD5.FDD329F95F2B9975F77B11728D72823F] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2795808] [PID.5220] =>.Google LLC® [MD5.FDD329F95F2B9975F77B11728D72823F] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2795808] [PID.3892] =>.Google LLC® [MD5.FDD329F95F2B9975F77B11728D72823F] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2795808] [PID.5112] =>.Google LLC® [MD5.BD4AC95EED17D5FDB90885F262FC35B0] - (.uWebb Software - ThrottleStop.) -- C:\Users\Katakuri3D2Y\Desktop\ThrottleStop_9.2\ThrottleStop.exe [3882992] [PID.7400] {0D7E33145979E788F23FBAFF5A3FA9F9}. =>.uWebb Software [MD5.FDD329F95F2B9975F77B11728D72823F] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2795808] [PID.8124] =>.Google LLC® [MD5.FDD329F95F2B9975F77B11728D72823F] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2795808] [PID.824] =>.Google LLC® [MD5.FDD329F95F2B9975F77B11728D72823F] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2795808] [PID.4268] =>.Google LLC® [MD5.FDD329F95F2B9975F77B11728D72823F] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2795808] [PID.1856] =>.Google LLC® [MD5.FDD329F95F2B9975F77B11728D72823F] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2795808] [PID.2084] =>.Google LLC® [MD5.FDD329F95F2B9975F77B11728D72823F] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2795808] [PID.3768] =>.Google LLC® [MD5.FDD329F95F2B9975F77B11728D72823F] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2795808] [PID.3988] =>.Google LLC® [MD5.FDD329F95F2B9975F77B11728D72823F] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2795808] [PID.2628] =>.Google LLC® [MD5.FDD329F95F2B9975F77B11728D72823F] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2795808] [PID.6512] =>.Google LLC® [MD5.FDD329F95F2B9975F77B11728D72823F] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2795808] [PID.4960] =>.Google LLC® [MD5.23C23CADECA001227BF8E65BEE272681] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Katakuri3D2Y\Downloads\ZHPDiag3.exe [3370696] [PID.4500] [Unsigned] =>.Nicolas Coolman [MD5.FDD329F95F2B9975F77B11728D72823F] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2795808] [PID.3500] =>.Google LLC® ---\\ Google Chrome, Start,Search,Extensions (35) - 2s G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Extensions] [bhgkdnnlhmefhnkfilcaaibapeepkfok] Skip shorte.st ads G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Extensions] [bkkbcggnhapdmkeljlodobbkopceiche] Poper Blocker =>.DingoSolutions G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Extensions] [cjpalhdlnbpafiamejdnhcphjbkeiagm] uBlock Origin =>.Raymond Hill G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Extensions] [cmedhionkhpnakcndndgjdbohmhepckk] Adblock for Youtube™ =>.Better Adblock {Adblock pour Youtube} G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Extensions] [dhdgffkkebhmkfjojejmpbldmpobfkfo] Tampermonkey =>.tampermonkey.net G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Extensions] [ebdkffknocicikabmdbbofjakebkbhdk] G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Extensions] [gddbgllpilhpnjpkdbopahnpealaklle] Send a 'force download' command G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Extensions] [gebbhagfogifgggkldgodflihgfeippi] G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Extensions] [ghihpjhpgdepnohngpgfcmcijmkggpaf] G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Extensions] [gighmmpiobklfepjocnamgkkbiglidom] Toggle Pause/Resume on all sites =>.Legitimate G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Extensions] [maekfnoeejhpjfkfmdlckioggdcdofpg] G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Extensions] [mnjggcdmjocbbbhaepdhchncahnbgone] SponsorBlock G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Extensions] [nmkinhboiljjkhaknpaeaicmdjhagpep] Fluff Busting Purity G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Extensions] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet} G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Extensions] [oofgbpoabipfcfjapgnbbjjaenockbdp] SetupVPN - Lifetime Free VPN G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Local Extension Settings] [bkkbcggnhapdmkeljlodobbkopceiche] =>.Legitimate G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Local Extension Settings] [cjpalhdlnbpafiamejdnhcphjbkeiagm] =>.uBlock Origin G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Local Extension Settings] [cmedhionkhpnakcndndgjdbohmhepckk] =>.Better Adblock {Adblock pour Youtube} G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Local Extension Settings] [dhdgffkkebhmkfjojejmpbldmpobfkfo] =>.TamperMonkey G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Local Extension Settings] [gddbgllpilhpnjpkdbopahnpealaklle] G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Local Extension Settings] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Local Extension Settings] [ghihpjhpgdepnohngpgfcmcijmkggpaf] G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Local Extension Settings] [gighmmpiobklfepjocnamgkkbiglidom] =>.Wladimir Palant {AdBlock} G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Local Extension Settings] [maekfnoeejhpjfkfmdlckioggdcdofpg] G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Local Extension Settings] [mnjggcdmjocbbbhaepdhchncahnbgone] G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Local Extension Settings] [nmkinhboiljjkhaknpaeaicmdjhagpep] G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Local Extension Settings] [oofgbpoabipfcfjapgnbbjjaenockbdp] G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Managed Extension Settings] [cjpalhdlnbpafiamejdnhcphjbkeiagm] =>.uBlock Origin G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Managed Extension Settings] [gighmmpiobklfepjocnamgkkbiglidom] =>.Wladimir Palant {AdBlock} G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Sync Extension Settings] [bkkbcggnhapdmkeljlodobbkopceiche] =>.Legitimate G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Sync Extension Settings] [cmedhionkhpnakcndndgjdbohmhepckk] =>.Better Adblock {Adblock pour Youtube} G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Sync Extension Settings] [gddbgllpilhpnjpkdbopahnpealaklle] G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Sync Extension Settings] [gebbhagfogifgggkldgodflihgfeippi] G2 - GCE: Preference [Katakuri3D2Y][User Data\Default\Sync Extension Settings] [mnjggcdmjocbbbhaepdhchncahnbgone] ---\\ Mozilla Firefox,Plugins,Start,Search,Extensions (17) - 1s P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\formautofill@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\pictureinpicture@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\screenshots@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\webcompat-reporter@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi =>.Mozilla C:\Users\Katakuri3D2Y\AppData\Roaming\Mozilla\Firefox\Profiles\1t394om5.default-release\bookmarkbackups =>Mozilla Corporation C:\Users\Katakuri3D2Y\AppData\Roaming\Mozilla\Firefox\Profiles\1t394om5.default-release\crashes =>Mozilla Corporation C:\Users\Katakuri3D2Y\AppData\Roaming\Mozilla\Firefox\Profiles\1t394om5.default-release\datareporting =>Mozilla Corporation C:\Users\Katakuri3D2Y\AppData\Roaming\Mozilla\Firefox\Profiles\1t394om5.default-release\gmp-gmpopenh264 =>Mozilla Corporation C:\Users\Katakuri3D2Y\AppData\Roaming\Mozilla\Firefox\Profiles\1t394om5.default-release\gmp-widevinecdm =>Mozilla Corporation C:\Users\Katakuri3D2Y\AppData\Roaming\Mozilla\Firefox\Profiles\1t394om5.default-release\minidumps =>Mozilla Corporation C:\Users\Katakuri3D2Y\AppData\Roaming\Mozilla\Firefox\Profiles\1t394om5.default-release\saved-telemetry-pings =>Mozilla Corporation C:\Users\Katakuri3D2Y\AppData\Roaming\Mozilla\Firefox\Profiles\1t394om5.default-release\security_state =>Mozilla Corporation C:\Users\Katakuri3D2Y\AppData\Roaming\Mozilla\Firefox\Profiles\1t394om5.default-release\sessionstore-backups =>Mozilla Corporation C:\Users\Katakuri3D2Y\AppData\Roaming\Mozilla\Firefox\Profiles\1t394om5.default-release\settings =>Mozilla Corporation C:\Users\Katakuri3D2Y\AppData\Roaming\Mozilla\Firefox\Profiles\1t394om5.default-release\shader-cache =>Mozilla Corporation C:\Users\Katakuri3D2Y\AppData\Roaming\Mozilla\Firefox\Profiles\1t394om5.default-release\storage =>Mozilla Corporation ---\\ Internet Explorer Extensions, Start, Search (15) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Internet Browser.) (11.00.17763.1 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation ---\\ INTERNET EXPLORER, trusted site and sensitive site (1) - 0s ~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad) ---\\ Internet Explorer, Proxy Management (3) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft ---\\ Line Analysis, IniFiles, Auto loading programs (3) - 0s F2 - REG:system.ini: UserInit= F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet= ---\\ Hosts file redirection (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (32) ---\\ Global shortcuts Startup (66) - 8s O4 - GS\Desktop [Administrator]: Genshin Impact.lnk . (.Cognosphere - HoYoPlay.) D:\games\Genshin Impact luncher\HoYoPlay\launcher.exe --game=hk4e_global {0111C69A751AB53D0C4C4D18B9ED0A00}. O4 - GS\Desktop [Administrator]: HoYoPlay.lnk . (.Cognosphere - HoYoPlay.) D:\games\Genshin Impact luncher\HoYoPlay\launcher.exe {0111C69A751AB53D0C4C4D18B9ED0A00}. O4 - GS\Desktop [Administrator]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Katakuri3D2Y\AppData\Roaming\ZHP\ZHPDiag3.exe [Unsigned] =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrator]: Google Chrome.lnk . (.Google LLC - Access the Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC O4 - GS\sendTo [Administrator]: Bluetooth File Transfer.LNK . (.Microsoft Corporation - Transfers files between device.) C:\Windows\System32\fsquirt.exe [Unsigned] =>.Microsoft Corporation O4 - GS\sendTo [Administrator]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo [Unsigned] =>.Microsoft Corporation O4 - GS\TaskBar [Administrator]: Google Chrome.lnk . (.Google LLC - Access the Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC O4 - GS\TaskBar [Administrator]: MPC-HC x64.lnk . (.MPC-HC Team - MPC-HC (x64).) C:\Program Files\MPC-HC\mpc-hc64.exe [Unsigned] =>.MPC-HC Team O4 - GS\TaskBar [Administrator]: ScreenRec.lnk . (.StreamingVideoProvider - ScreenRec.) C:\Users\Katakuri3D2Y\AppData\Local\StreamingVideoProvider\ScreenRec_app\screenrec.exe {059F2289AA154191E4B96A4797AFE67F}. O4 - GS\TaskBar [Administrator]: ThrottleStop.lnk . (.uWebb Software - ThrottleStop.) C:\Users\Katakuri3D2Y\Desktop\ThrottleStop_9.2\ThrottleStop.exe {0D7E33145979E788F23FBAFF5A3FA9F9}. =>.uWebb Software O4 - GS\TaskBar [Administrator]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN® O4 - GS\Desktop [Guest]: Genshin Impact.lnk . (.Cognosphere - HoYoPlay.) D:\games\Genshin Impact luncher\HoYoPlay\launcher.exe --game=hk4e_global {0111C69A751AB53D0C4C4D18B9ED0A00}. O4 - GS\Desktop [Guest]: HoYoPlay.lnk . (.Cognosphere - HoYoPlay.) D:\games\Genshin Impact luncher\HoYoPlay\launcher.exe {0111C69A751AB53D0C4C4D18B9ED0A00}. O4 - GS\Desktop [Guest]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Katakuri3D2Y\AppData\Roaming\ZHP\ZHPDiag3.exe [Unsigned] =>.Nicolas Coolman O4 - GS\Quicklaunch [Guest]: Google Chrome.lnk . (.Google LLC - Access the Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC O4 - GS\sendTo [Guest]: Bluetooth File Transfer.LNK . (.Microsoft Corporation - Transfers files between device.) C:\Windows\System32\fsquirt.exe [Unsigned] =>.Microsoft Corporation O4 - GS\sendTo [Guest]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo [Unsigned] =>.Microsoft Corporation O4 - GS\TaskBar [Guest]: Google Chrome.lnk . (.Google LLC - Access the Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC O4 - GS\TaskBar [Guest]: MPC-HC x64.lnk . (.MPC-HC Team - MPC-HC (x64).) C:\Program Files\MPC-HC\mpc-hc64.exe [Unsigned] =>.MPC-HC Team O4 - GS\TaskBar [Guest]: ScreenRec.lnk . (.StreamingVideoProvider - ScreenRec.) C:\Users\Katakuri3D2Y\AppData\Local\StreamingVideoProvider\ScreenRec_app\screenrec.exe {059F2289AA154191E4B96A4797AFE67F}. O4 - GS\TaskBar [Guest]: ThrottleStop.lnk . (.uWebb Software - ThrottleStop.) C:\Users\Katakuri3D2Y\Desktop\ThrottleStop_9.2\ThrottleStop.exe {0D7E33145979E788F23FBAFF5A3FA9F9}. =>.uWebb Software O4 - GS\TaskBar [Guest]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN® O4 - GS\Desktop [Katakuri3D2Y]: Genshin Impact.lnk . (.Cognosphere - HoYoPlay.) D:\games\Genshin Impact luncher\HoYoPlay\launcher.exe --game=hk4e_global {0111C69A751AB53D0C4C4D18B9ED0A00}. O4 - GS\Desktop [Katakuri3D2Y]: HoYoPlay.lnk . (.Cognosphere - HoYoPlay.) D:\games\Genshin Impact luncher\HoYoPlay\launcher.exe {0111C69A751AB53D0C4C4D18B9ED0A00}. O4 - GS\Desktop [Katakuri3D2Y]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Katakuri3D2Y\AppData\Roaming\ZHP\ZHPDiag3.exe [Unsigned] =>.Nicolas Coolman O4 - GS\Quicklaunch [Katakuri3D2Y]: Google Chrome.lnk . (.Google LLC - Access the Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC O4 - GS\sendTo [Katakuri3D2Y]: Bluetooth File Transfer.LNK . (.Microsoft Corporation - Transfers files between device.) C:\Windows\System32\fsquirt.exe [Unsigned] =>.Microsoft Corporation O4 - GS\sendTo [Katakuri3D2Y]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo [Unsigned] =>.Microsoft Corporation O4 - GS\TaskBar [Katakuri3D2Y]: Google Chrome.lnk . (.Google LLC - Access the Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC O4 - GS\TaskBar [Katakuri3D2Y]: MPC-HC x64.lnk . (.MPC-HC Team - MPC-HC (x64).) C:\Program Files\MPC-HC\mpc-hc64.exe [Unsigned] =>.MPC-HC Team O4 - GS\TaskBar [Katakuri3D2Y]: ScreenRec.lnk . (.StreamingVideoProvider - ScreenRec.) C:\Users\Katakuri3D2Y\AppData\Local\StreamingVideoProvider\ScreenRec_app\screenrec.exe {059F2289AA154191E4B96A4797AFE67F}. O4 - GS\TaskBar [Katakuri3D2Y]: ThrottleStop.lnk . (.uWebb Software - ThrottleStop.) C:\Users\Katakuri3D2Y\Desktop\ThrottleStop_9.2\ThrottleStop.exe {0D7E33145979E788F23FBAFF5A3FA9F9}. =>.uWebb Software O4 - GS\TaskBar [Katakuri3D2Y]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN® O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Software Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.PIRIFORM SOFTWARE LIMITED® O4 - GS\CommonDesktop [Public]: Driver Booster 10.lnk . (.IObit - Driver Booster.) C:\Program Files (x86)\Driver Booster\DriverBooster.exe [Unsigned] =>.IObit O4 - GS\CommonDesktop [Public]: EaseUS Data Recovery Wizard.lnk . (.CHENGDU YIWO Tech Development Co., Ltd - EaseUS Data Recovery Wizard.) C:\Program Files\EaseUS\EaseUS Data Recovery Wizard\DRW.exe {03BD221937F2D796FA7029547B190301}. =>.CHENGDU YIWO Tech Development Co., Ltd O4 - GS\CommonDesktop [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\CommonDesktop [Public]: GeForce Experience.lnk . (.NVIDIA Corporation - .) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [Unsigned] =>.NVIDIA Corporation O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google LLC - Access the Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC O4 - GS\CommonDesktop [Public]: Hextech Repair Tool.lnk . (.The Chromium Embedded Framework Authors - Chromium Embedded Framework (CEF) Client Ap.) D:\Riot Games\Hextech Repair Tool\Hextech Repair Tool.exe =>.Riot Games, Inc.® O4 - GS\CommonDesktop [Public]: ImageGlass.lnk . (.Duong Dieu Phap - ImageGlass.) C:\Users\Katakuri3D2Y\AppData\Local\Programs\ImageGlass\ImageGlass.exe {00F0B6855167F41310BE498DEC91901B74}. =>.Duong Dieu Phap O4 - GS\CommonDesktop [Public]: League of Legends.lnk . (.Riot Games, Inc. - Riot Client.) C:\lol new\Riot Games\Riot Client\RiotClientServices.exe --launch-product=league_of_legends --launch-patchline=live {0CD1D038015129A43DA0AEE211859C8E}. =>.Riot Games, Inc. O4 - GS\CommonDesktop [Public]: LibreOffice 7.4.lnk . (.The Document Foundation - LibreOffice, the office produc.) C:\Program Files (x86)\LibreOffice\program\soffice.exe [Unsigned] =>.The Document Foundation O4 - GS\CommonDesktop [Public]: Riot Client.lnk . (.Riot Games, Inc. - Riot Client.) C:\lol new\Riot Games\Riot Client\RiotClientServices.exe {0CD1D038015129A43DA0AEE211859C8E}. =>.Riot Games, Inc. O4 - GS\CommonDesktop [Public]: S. EDA Tools.lnk . (...) C:\sedatools\Shortcuts [Unsigned] O4 - GS\CommonDesktop [Public]: Speccy.lnk . (.Piriform Software Ltd - Speccy.) C:\Program Files\Speccy\Speccy64.exe =>.Piriform Software Ltd® O4 - GS\CommonDesktop [Public]: Tarisland.lnk . (.PROXIMA BETA PTE. LIMITED - taris launcher.) D:\Tarisland\launcher\taris_launcher.exe {08B400989A7B9F0D6E71BE7494B332E1}. O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN® O4 - GS\CommonDesktop [Public]: Windscribe.lnk . (.Windscribe Limited - .) C:\Program Files (x86)\Windscribe\WindscribeLauncher.exe [Unsigned] =>.Windscribe Limited O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\internet explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Notepad.) C:\Windows\system32\notepad.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Windows Calculator.) C:\Windows\system32\win32calc.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\Windows\system32\quickassist.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Remote Desktop Connection.) C:\Windows\system32\mstsc.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Snipping Tool.) C:\Windows\system32\SnippingTool.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Steps Recorder.) C:\Windows\system32\psr.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Windows Wordpad Application.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe [Unsigned] =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Character Map.) C:\Windows\system32\charmap.exe [Unsigned] =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Firefox Private Browsing.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\private_browsing.exe =>.Mozilla Corporation® O4 - GS\ProgramsCommon [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google LLC - Access the Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\Windows\System32\Control.exe [Unsigned] =>.Microsoft Corporation ---\\ Lop.com/Domain Hijackers (7) - 1s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = bbrouter O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{87bcad92-b6b5-43c8-9665-78bdf11cb216}: NameServer = 8.8.8.8,8.8.4.4 =>.France Google Cloud O17 - HKLM\System\CCS\Services\Tcpip\..\{87bcad92-b6b5-43c8-9665-78bdf11cb216}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{f09214db-794f-4ebc-bba9-d5ca380e7d3d}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{87bcad92-b6b5-43c8-9665-78bdf11cb216}: DhcpDomain = bbrouter O17 - HKLM\System\CCS\Services\Tcpip\..\{f09214db-794f-4ebc-bba9-d5ca380e7d3d}: DhcpDomain = bbrouter ---\\ Extra protocols (22) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation ---\\ AppInit_DLLs Registry value Autorun (1) - 0s O20 - Winlogon : UserInit . (.Microsoft Corporation - Userinit Logon Application.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation ---\\ List of key exploring StartupApproved (12) - 1s [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Smart Cleaning =>.Piriform Ltd [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Windscribe =>.Windscribe [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:ScreenRec [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Discord =>.SUP.Discord [HKEY_USERS\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Smart Cleaning =>.Piriform Ltd [HKEY_USERS\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Windscribe =>.Windscribe [HKEY_USERS\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:ScreenRec [HKEY_USERS\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Discord =>.SUP.Discord [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SecurityHealth =>.Microsoft Corporation [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Riot Vanguard =>.Riot Games [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:Genshin Impact_launcher__1_1 [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:AvastSvcpCP ---\\ ASIC (ActiveSetup Installed Components) (6) - 1s O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Microsoft Windows Media Player Setup Utilit.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Microsoft Windows Media Player Setup Utilit.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft Corporation® O40 - ASIC: Google Chrome [64Bits] - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google LLC - Google Chrome Installer.) -- C:\Program Files\Google\Chrome\Application\126.0.6478.128\Installer\chrmstp.exe =>.Google LLC® ---\\ Software installed (84) - 20s O42 - Logiciel: ArcheAge - (.Kakao Games Europe B.V..) [HKLM][64Bits] -- {765B4D1D-0E6C-44E6-8E63-B4989EEDEA03} [Unsigned] =>.Kakao Games Europe B.V. O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Software Ltd® O42 - Logiciel: Discord - (.Discord Inc..) [HKCU][64Bits] -- Discord =>.SUP.Discord O42 - Logiciel: Driver Booster - (..) [HKLM][64Bits] -- IObit Driver Booster Pro 10.0.0.38 [Unsigned] O42 - Logiciel: EaseUS Data Recovery Wizard - (.EaseUS Data Recovery Wizard.) [HKLM][64Bits] -- EaseUS Data Recovery Wizard_is1 =>.CHENGDU YIWO Tech Development Co., Ltd.® O42 - Logiciel: Google Chrome - (.Google LLC.) [HKLM][64Bits] -- Google Chrome =>.Google LLC® O42 - Logiciel: Hextech Repair Tool - (.Riot Games, Inc..) [HKLM][64Bits] -- {7F9A97E6-E666-11E5-B582-B88687E82322} [Unsigned] =>.Riot Games, Inc. O42 - Logiciel: HoYoPlay - (.COGNOSPHERE PTE. LTD..) [HKLM][64Bits] -- HYP_1_0_global {0111C69A751AB53D0C4C4D18B9ED0A00}. O42 - Logiciel: ImageGlass - (.Duong Dieu Phap.) [HKLM][64Bits] -- {47F429A7-A9A1-4B5D-977B-E458EB188F13} [Unsigned] =>.Duong Dieu Phap O42 - Logiciel: ImageGlass - (.Duong Dieu Phap.) [HKLM][64Bits] -- {56828A2A-E2F5-47FC-898E-837BC31B8267} [Unsigned] =>.Duong Dieu Phap O42 - Logiciel: Insyde Airplane Mode HID Mini-Driver - (.Insyde Corporation.) [HKLM][64Bits] -- AirplaneModeHid =>.Microsoft Windows Hardware Compatibility Publisher® O42 - Logiciel: Intel(R) Graphics Driver Software - (.Intel.) [HKLM][64Bits] -- {d9e1af9c-46b1-481f-bd13-dffef7b14da2} =>.IntelGfxReleaseExternal2020® (Hidden) O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.IntelGfxReleaseExternal2020® O42 - Logiciel: League of Legends - (.Riot Games, Inc.) [HKCU][64Bits] -- Riot Game league_of_legends.live {0CD1D038015129A43DA0AEE211859C8E}. =>.Riot Games, Inc O42 - Logiciel: LG Mobile Driver - (.LG Electronics.) [HKLM][64Bits] -- {3F490D0E-3131-438C-BCF9-7549CB88DF41} [Unsigned] =>.LG Electronics O42 - Logiciel: LibreOffice 7.4.4.2 - (.The Document Foundation.) [HKLM][64Bits] -- {D6B97DE9-6431-4CCF-B1C3-50C573A93A6E} [Unsigned] =>.The Document Foundation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D8E6291-B0D5-35EC-8441-6616F567A0F7} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {ca67548a-5ebe-413a-b50c-4b9ceb6d66c6} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {33d1fd90-4274-48a1-9bc1-97e33d9c2d6f} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {37B8F9C7-03FB-3253-8781-2517C99D7C00} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {B175520C-86A2-35A7-8619-86DC379688B9} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BD95A8CD-1D9F-35AD-981A-3E7925026EBB} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1b103cea-f037-4504-81de-956057b442c3} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] -- {ef6b00ec-13e1-4c25-9064-b2f383cb8412} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] -- {61087a79-ac85-455c-934d-1fa22cc64f36} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] -- {5740BD44-B58D-321A-AFC0-6D3D4556DD6C} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] -- {CB0836EC-B072-368D-82B2-D3470BF95707} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] -- {7DAD0258-515C-3DD4-8964-BD714199E0F7} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] -- {E30D8B21-D82D-3211-82CC-0F0A5D1495E8} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.32.31332 - (.Microsoft Corporation.) [HKLM][64Bits] -- {3746f21b-c990-4045-bb33-1cf98cff7a68} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.32.31332 - (.Microsoft Corporation.) [HKLM][64Bits] -- {a98dc6ff-d360-4878-9f0a-915eba86eaf3} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2022 X64 Additional Runtime - 14.32.31332 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F4499EE3-A166-496C-81BB-51D1BCDC70A9} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.32.31332 - (.Microsoft Corporation.) [HKLM][64Bits] -- {3407B900-37F5-4CC2-B612-5CD5D580A163} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2022 X86 Additional Runtime - 14.32.31332 - (.Microsoft Corporation.) [HKLM][64Bits] -- {8972AC25-452E-4FFE-945A-EB9E28C20322} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.32.31332 - (.Microsoft Corporation.) [HKLM][64Bits] -- {AEAA18F7-9C96-4A43-BC07-8B88A4913EEB} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft XNA Framework Redistributable 4.0 Refresh - (.Microsoft Corporation.) [HKLM][64Bits] -- {D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Mozilla Firefox (x64 en-GB) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 124.0 (x64 en-GB) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService [Unsigned] =>.Mozilla O42 - Logiciel: MPC-HC 1.9.24 (64-bit) - (.MPC-HC Team.) [HKLM][64Bits] -- {2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1 [Unsigned] =>.MPC-HC Team O42 - Logiciel: NVIDIA Backend - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvBackend [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA FrameView SDK 1.3.8513.32290073 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk [Unsigned] =>.NVIDIA Corporation O42 - Logiciel: NVIDIA GeForce Experience 3.27.0.112 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience [Unsigned] =>.NVIDIA Corporation O42 - Logiciel: NVIDIA GPX Common OSS binaries (POCO, OpenSSL, libprotobuf) - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GpxCommon.Oss [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA Graphics Driver 516.59 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver [Unsigned] =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA LocalSystem Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.LocalSystem [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA Message Bus for NvContainer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.MessageBus [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA NetworkService Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.ServiceUser [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA NodeJS - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvNodejs [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA NVAPI Monitor plugin for NvContainer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA NvModuleTracker - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvModuleTracker.Driver [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA Optimus Update 39.5.0.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA PhysX System Software 9.21.0713 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX [Unsigned] =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Session Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.Session [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA ShadowPlay 3.27.0.112 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: Nvidia Share - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_OSC [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA SHIELD Streaming - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA SHIELD Wireless Controller Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA Telemetry Client - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetry [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA TelemetryApi helper for NvContainer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.ContainerTelemetryApiHelper [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA Update 39.5.0.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA Update Core - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA User Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.User [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA Virtual Audio 4.49.0.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA Virtual Host Controller - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvVHCI [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA Watchdog Plugin for NvContainer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvPlugin.Watchdog [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: OpenAL - (.Open Audio Library.) [HKLM][64Bits] -- OpenAL =>.Creative Labs Inc® O42 - Logiciel: qBittorrent - (.The qBittorrent project.) [HKLM][64Bits] -- qBittorrent [Unsigned] =>.The qBittorrent project O42 - Logiciel: Riot Client - (.Riot Games, Inc.) [HKCU][64Bits] -- Riot Game Riot_Client. {0CD1D038015129A43DA0AEE211859C8E}. =>.Riot Games, Inc O42 - Logiciel: Riot Vanguard - (.Riot Games, Inc..) [HKLM][64Bits] -- Riot Vanguard {0CD1D038015129A43DA0AEE211859C8E}. =>.Riot Games, Inc. O42 - Logiciel: ScreenRec - (.StreamingVideoProvider.) [HKCU][64Bits] -- ScreenRec {6D1513EDD0DEB0F8CFDFA58380D9B321}. O42 - Logiciel: Speccy - (.Piriform.) [HKLM][64Bits] -- Speccy =>.Piriform Software Ltd® O42 - Logiciel: Tarisland - (.PROXIMA BETA PTE. LIMITED.) [HKCU][64Bits] -- taris_launcher {08B400989A7B9F0D6E71BE7494B332E1}. O42 - Logiciel: UE Prerequisites (x64) - (.Epic Games, Inc..) [HKLM][64Bits] -- {aad8a4b2-74da-409d-abb6-79a299008692} =>.Epic Games Inc.® (Hidden) O42 - Logiciel: UE Prerequisites (x64) - (.Epic Games, Inc..) [HKLM][64Bits] -- {E171B21A-DA58-432D-A74B-D13B204BA477} [Unsigned] =>.Epic Games, Inc. (Hidden) O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player [Unsigned] =>.VideoLAN O42 - Logiciel: Windscribe - (.Windscribe Limited.) [HKLM][64Bits] -- {fa690e90-ddb0-4f0c-b3f1-136c084e5fc7}_is1 {0F5EE43BEEA50ED5F0EC765BF65B1350}. =>.Windscribe Limited O42 - Logiciel: WinPcap 4.1.3 - (.Riverbed Technology, Inc..) [HKLM][64Bits] -- WinPcapInst [Unsigned] =>.Riverbed Technology, Inc. O42 - Logiciel: WinRAR 6.11 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® ---\\ HKCU & HKLM Software Keys (136) - 20s HKLM\SOFTWARE\1D0EC6DE-4A80-4CC3-A335-E6E41C951198 HKLM\SOFTWARE\Adobe =>.Adobe HKLM\SOFTWARE\AGEIA Technologies =>.AGEIA Technologies HKLM\SOFTWARE\Apple Inc. =>.Apple Inc. HKLM\SOFTWARE\Clevo HKLM\SOFTWARE\DefaultUserEnvironment =>.Microsoft Corporation HKLM\SOFTWARE\Duong Dieu Phap =>.Duong Dieu Phap HKLM\SOFTWARE\EASEUS =>.EaseUS Software HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\ImageGlass HKLM\SOFTWARE\InstalledOptions =>.Installed Options HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\Khronos =>.Khronos HKLM\SOFTWARE\LibreOffice =>.LibreOffice HKLM\SOFTWARE\Macromedia =>.Macromedia HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\mozilla.org =>.mozilla.org HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\OEM =>.OEM HKLM\SOFTWARE\Partner =>.Google Inc. HKLM\SOFTWARE\PhapSoftware HKLM\SOFTWARE\Piriform =>.Piriform HKLM\SOFTWARE\ProcessLasso =>.Bitsum Technologies HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\Synaptics =>.Synaptics HKLM\SOFTWARE\The Document Foundation =>.The Document Foundation HKLM\SOFTWARE\Unwinder =>.Unwinder HKLM\SOFTWARE\VideoLAN =>.VideoLan Team HKLM\SOFTWARE\WinRAR =>.WinRAR HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation HKLM\SOFTWARE\XLGames =>.XL Games HKLM\SOFTWARE\WOW6432Node\AGEIA Technologies =>.AGEIA Technologies HKLM\SOFTWARE\WOW6432Node\Google =>.Google HKLM\SOFTWARE\WOW6432Node\HD Sentinel =>.HD Sentinel HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel HKLM\SOFTWARE\WOW6432Node\IObit =>.IObit HKLM\SOFTWARE\WOW6432Node\Kakao Games Europe B.V. =>.Kakao Games Europe B.V. HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos HKLM\SOFTWARE\WOW6432Node\LG Electronics =>.LG Electronics HKLM\SOFTWARE\WOW6432Node\Macromedia =>.Macromedia HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\WOW6432Node\MSI =>.MSI HKLM\SOFTWARE\WOW6432Node\NVIDIA Corporation =>.nVidia Corporation HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\WOW6432Node\OpenAL =>.Open Audio Library HKLM\SOFTWARE\WOW6432Node\PhapSoftware HKLM\SOFTWARE\WOW6432Node\qBittorrent =>.uTorrent (P2P) HKLM\SOFTWARE\WOW6432Node\Tencent =>.Tencent HKLM\SOFTWARE\WOW6432Node\Unwinder =>.Unwinder HKLM\SOFTWARE\WOW6432Node\WinPcap =>.Riverbed Technology HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Adobe =>.Adobe HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o HKCU\SOFTWARE\Chromium =>.Chromium HKCU\SOFTWARE\Cognosphere HKCU\SOFTWARE\Discord =>.SUP.Discord HKCU\SOFTWARE\Duong Dieu Phap =>.Duong Dieu Phap HKCU\SOFTWARE\Epic Games =>.Epic Games HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\HWiNFO32 HKCU\SOFTWARE\HWiNFO64 HKCU\SOFTWARE\Intel =>.Intel HKCU\SOFTWARE\INTL HKCU\SOFTWARE\Logitech =>.Logitech HKCU\SOFTWARE\miHoYo HKCU\SOFTWARE\miHoYoSDK HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\MPC-HC =>.MPC-HC Team HKCU\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation HKCU\SOFTWARE\Piriform =>.Piriform HKCU\SOFTWARE\QtProject =>.QtProject HKCU\SOFTWARE\RandyRants HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Riot Games =>.Riot Games HKCU\SOFTWARE\silvaco HKCU\SOFTWARE\Singularity6 HKCU\SOFTWARE\StreamingVideoProvider HKCU\SOFTWARE\Synaptics =>.Synaptics HKCU\SOFTWARE\The Document Foundation =>.The Document Foundation HKCU\SOFTWARE\Trolltech =>.Trolltech HKCU\SOFTWARE\Ultimate Taskbar Controller =>.Paras Sidhu Corp HKCU\SOFTWARE\Ultimate Windows Tweaker =>.Paras Sidhu Corp HKCU\SOFTWARE\Unwinder =>.Unwinder HKCU\SOFTWARE\Valve =>.Valve HKCU\SOFTWARE\Windscribe =>.Windscribe HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\AntiCheatExpert HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKU\.DEFAULT\SOFTWARE\Google =>.Google HKU\.DEFAULT\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation HKU\.DEFAULT\SOFTWARE\Piriform =>.Piriform HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\Adobe =>.Adobe HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\AppDataLow =>.Microsoft Corporation HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\Chromium =>.Chromium HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\Cognosphere HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\Discord =>.SUP.Discord HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\Duong Dieu Phap =>.Duong Dieu Phap HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\Epic Games =>.Epic Games HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\Google =>.Google HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\HWiNFO32 HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\HWiNFO64 HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\Intel =>.Intel HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\INTL HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\Logitech =>.Logitech HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\miHoYo HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\miHoYoSDK HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\Mozilla =>.Mozilla HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\MPC-HC =>.MPC-HC Team HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\Piriform =>.Piriform HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\QtProject =>.QtProject HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\RandyRants HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\Riot Games =>.Riot Games HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\silvaco HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\Singularity6 HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\StreamingVideoProvider HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\Synaptics =>.Synaptics HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\The Document Foundation =>.The Document Foundation HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\Trolltech =>.Trolltech HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\Ultimate Taskbar Controller =>.Paras Sidhu Corp HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\Ultimate Windows Tweaker =>.Paras Sidhu Corp HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\Unwinder =>.Unwinder HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\Valve =>.Valve HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\Windscribe =>.Windscribe HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\WinRAR =>.WinRAR HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\WinRAR SFX =>.RarLab HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\SOFTWARE\ZHP =>.Nicolas Coolman ---\\ Packages (1) - 0s C:\Program Files (x86)\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.963.0_x64__56jybvy8sckqj - (.nVidia Corporation.) [][NVIDIA Control Panel] =>nVidia Corporation ---\\ Contents of the Common Files folders (234) - 9s O43 - CFD: 21/06/2024 - [] D -- C:\Program Files\AntiCheatExpert {08B400989A7B9F0D6E71BE7494B332E1}. O43 - CFD: 09/07/2024 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd O43 - CFD: 22/02/2024 - [] D -- C:\Program Files\chrome_PuffinComponentUnpacker_BeginUnzipping4924_388591980 O43 - CFD: 25/01/2024 - [] D -- C:\Program Files\chrome_url_fetcher_2248_854428980 O43 - CFD: 21/02/2024 - [] D -- C:\Program Files\chrome_url_fetcher_2308_34808837 O43 - CFD: 25/02/2024 - [] D -- C:\Program Files\chrome_url_fetcher_2644_267357741 O43 - CFD: 14/02/2024 - [] D -- C:\Program Files\chrome_url_fetcher_2812_1536922884 O43 - CFD: 07/02/2024 - [] D -- C:\Program Files\chrome_url_fetcher_2960_839031629 O43 - CFD: 11/01/2024 - [] D -- C:\Program Files\chrome_url_fetcher_3076_1477598696 O43 - CFD: 28/11/2023 - [] D -- C:\Program Files\chrome_url_fetcher_3292_1951293545 O43 - CFD: 26/02/2024 - [] D -- C:\Program Files\chrome_url_fetcher_3304_50781750 O43 - CFD: 02/11/2023 - [] D -- C:\Program Files\chrome_url_fetcher_3820_1322521064 O43 - CFD: 16/01/2024 - [] D -- C:\Program Files\chrome_url_fetcher_3824_1046738296 O43 - CFD: 16/01/2024 - [] D -- C:\Program Files\chrome_url_fetcher_3876_1314152598 O43 - CFD: 12/01/2024 - [] D -- C:\Program Files\chrome_url_fetcher_4144_894106503 O43 - CFD: 08/04/2024 - [0] D -- C:\Program Files\chrome_url_fetcher_4236_1733079143 O43 - CFD: 05/12/2023 - [] D -- C:\Program Files\chrome_url_fetcher_4792_848855983 O43 - CFD: 22/02/2024 - [] D -- C:\Program Files\chrome_url_fetcher_4924_303655102 O43 - CFD: 13/12/2023 - [] D -- C:\Program Files\chrome_url_fetcher_5236_1279715503 O43 - CFD: 16/01/2024 - [] D -- C:\Program Files\chrome_url_fetcher_5864_1533178695 O43 - CFD: 16/11/2023 - [] D -- C:\Program Files\chrome_url_fetcher_6704_1785297999 O43 - CFD: 31/01/2024 - [] D -- C:\Program Files\chrome_url_fetcher_6792_1654062359 O43 - CFD: 01/02/2024 - [] D -- C:\Program Files\chrome_url_fetcher_8844_1701771787 O43 - CFD: 15/09/2018 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 01/06/2023 - [] D -- C:\Program Files\Crashpad =>.Unknown O43 - CFD: 24/05/2024 - [] D -- C:\Program Files\EaseUS =>.EaseUS Software O43 - CFD: 26/11/2022 - [] D -- C:\Program Files\Google =>.Google LLC® O43 - CFD: 25/11/2022 - [] D -- C:\Program Files\Insyde =>.CLEVO CO.® O43 - CFD: 25/11/2022 - [] D -- C:\Program Files\Intel =>.Intel Corporation O43 - CFD: 28/11/2018 - [] D -- C:\Program Files\internet explorer =>.Microsoft Corporation O43 - CFD: 23/01/2023 - [] D -- C:\Program Files\LibreOffice =>.LibreOffice O43 - CFD: 13/07/2024 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla O43 - CFD: 25/11/2022 - [] D -- C:\Program Files\MPC-HC =>.MPC-HC Team O43 - CFD: 13/02/2019 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 14/07/2023 - [] D -- C:\Program Files\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 13/12/2023 - [] D -- C:\Program Files\qBittorrent [Unsigned] O43 - CFD: 13/02/2019 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 30/06/2024 - [] D -- C:\Program Files\Riot Vanguard {0CD1D038015129A43DA0AEE211859C8E}. O43 - CFD: 05/11/2023 - [] D -- C:\Program Files\Speccy =>.Piriform O43 - CFD: 25/11/2022 - [] D -- C:\Program Files\Synaptics =>.Synaptics O43 - CFD: 25/11/2022 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 26/11/2022 - [] D -- C:\Program Files\UNP =>.Microsoft Corporation O43 - CFD: 29/11/2022 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team O43 - CFD: 28/11/2018 - [] RD -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 13/02/2019 - [] D -- C:\Program Files\Windows Defender Advanced Threat Protection =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 13/02/2019 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] D -- C:\Program Files\windows nt =>.Microsoft Corporation O43 - CFD: 13/02/2019 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] D -- C:\Program Files\Windows Security =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 25/11/2022 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 14/07/2024 - [] D -- C:\Program Files\Windscribe =>.Windscribe O43 - CFD: 25/11/2022 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH® O43 - CFD: 22/03/2023 - [] HD -- C:\Program Files\Zero G Registry =>.Flexera O43 - CFD: 21/05/2024 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation O43 - CFD: 25/11/2022 - [] D -- C:\Program Files (x86)\Driver Booster =>.IObit O43 - CFD: 24/05/2024 - [] D -- C:\Program Files (x86)\EaseUS =>.EaseUS Software O43 - CFD: 20/02/2024 - [] D -- C:\Program Files (x86)\Google =>.Google LLC® O43 - CFD: 01/12/2022 - [] D -- C:\Program Files (x86)\Hard Disk Sentinel =>.H.D.S. Hungary O43 - CFD: 05/02/2024 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield O43 - CFD: 25/11/2022 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation O43 - CFD: 28/11/2018 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation O43 - CFD: 05/02/2024 - [] D -- C:\Program Files (x86)\LG Electronics [Unsigned] =>.LG Electronics O43 - CFD: 25/11/2022 - [] D -- C:\Program Files (x86)\Microsoft XNA =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 13/07/2024 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla O43 - CFD: 13/02/2019 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation O43 - CFD: 14/07/2023 - [] D -- C:\Program Files (x86)\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 25/11/2022 - [] D -- C:\Program Files (x86)\OpenAL =>.Open Audio Library O43 - CFD: 13/02/2019 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 29/11/2022 - [0] D -- C:\Program Files (x86)\RivaTuner Statistics Server =>.RivaTuner O43 - CFD: 28/11/2018 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 13/02/2019 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] D -- C:\Program Files (x86)\windows nt =>.Microsoft Corporation O43 - CFD: 13/02/2019 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 23/12/2022 - [] D -- C:\Program Files (x86)\WinPcap =>.Riverbed Technology O43 - CFD: 15/09/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 13/02/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 15/12/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcheAge O43 - CFD: 01/12/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd O43 - CFD: 25/11/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 10 O43 - CFD: 24/05/2024 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Data Recovery Wizard =>.EaseUS Software O43 - CFD: 15/04/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImageGlass O43 - CFD: 23/01/2023 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 7.4 =>.LibreOffice O43 - CFD: 15/09/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 25/11/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC x64 =>.MPC-HC Team O43 - CFD: 25/11/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 13/12/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qBittorrent O43 - CFD: 25/02/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Riot Games =>.Riot Games O43 - CFD: 15/09/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation O43 - CFD: 13/02/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 20/06/2024 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tarisland O43 - CFD: 29/11/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team O43 - CFD: 09/12/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windscribe =>.Windscribe O43 - CFD: 23/12/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPcap =>.Riverbed Technology O43 - CFD: 25/11/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 07/07/2024 - [] D -- C:\ProgramData\AntiCheatExpert O43 - CFD: 25/11/2022 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 20/05/2024 - [] HD -- C:\ProgramData\AvastSvcpCP O43 - CFD: 29/11/2022 - [] D -- C:\ProgramData\Caphyon =>.Caphyon O43 - CFD: 25/11/2022 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation O43 - CFD: 25/11/2022 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 25/11/2022 - [] D -- C:\ProgramData\Intel =>.Intel Corporation O43 - CFD: 23/06/2024 - [] D -- C:\ProgramData\INTL O43 - CFD: 20/06/2024 - [] D -- C:\ProgramData\intl_ua O43 - CFD: 25/11/2022 - [] D -- C:\ProgramData\IObit =>.IObit O43 - CFD: 30/11/2022 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 30/03/2023 - [] D -- C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 =>.Mozilla Corporation O43 - CFD: 19/03/2024 - [] D -- C:\ProgramData\Norton =>.Symantec Corporation O43 - CFD: 21/07/2024 - [] D -- C:\ProgramData\NVIDIA =>.nVidia Corporation O43 - CFD: 14/07/2023 - [] D -- C:\ProgramData\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 22/03/2023 - [] D -- C:\ProgramData\Oracle =>.Oracle O43 - CFD: 25/03/2023 - [] D -- C:\ProgramData\Orbit =>.Orbit O43 - CFD: 21/06/2024 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 25/11/2022 - [] D -- C:\ProgramData\Packages =>.Microsoft Corporation O43 - CFD: 19/03/2024 - [] D -- C:\ProgramData\Piriform =>.Piriform O43 - CFD: 25/11/2022 - [] D -- C:\ProgramData\ProductData =>.Microsoft Corporation O43 - CFD: 25/11/2022 - [] D -- C:\ProgramData\Realtek =>.Realtek O43 - CFD: 21/07/2024 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation O43 - CFD: 20/07/2024 - [] D -- C:\ProgramData\Riot Games =>.Riot Games O43 - CFD: 15/09/2018 - [0] D -- C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation O43 - CFD: 25/11/2022 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation O43 - CFD: 24/05/2024 - [] D -- C:\ProgramData\SystemAcCrux O43 - CFD: 25/11/2022 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation O43 - CFD: 25/11/2022 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation O43 - CFD: 25/11/2022 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation O43 - CFD: 27/03/2023 - [] D -- C:\ProgramData\X360CE =>.Microsoft Corporation O43 - CFD: 21/05/2024 - [] D -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe O43 - CFD: 25/11/2022 - [] D -- C:\Program Files (x86)\Common Files\Intel =>.Intel Corporation O43 - CFD: 25/11/2022 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation O43 - CFD: 28/11/2018 - [] D -- C:\Program Files (x86)\Common Files\system =>.Microsoft Corporation O43 - CFD: 21/05/2024 - [] D -- C:\Users\Katakuri3D2Y\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 17/06/2024 - [] D -- C:\Users\Katakuri3D2Y\AppData\Roaming\Cognosphere O43 - CFD: 21/05/2024 - [] D -- C:\Users\Katakuri3D2Y\AppData\Roaming\com.adobe.dunamis =>.Adobe Inc. O43 - CFD: 10/01/2023 - [] D -- C:\Users\Katakuri3D2Y\AppData\Roaming\discord O43 - CFD: 24/05/2024 - [] D -- C:\Users\Katakuri3D2Y\AppData\Roaming\EaseUS =>.EaseUS Software O43 - CFD: 30/11/2022 - [] D -- C:\Users\Katakuri3D2Y\AppData\Roaming\Hard Disk Sentinel =>.H.D.S. Hungary O43 - CFD: 28/05/2024 - [] RHD -- C:\Users\Katakuri3D2Y\AppData\Roaming\Intel =>.Intel Corporation O43 - CFD: 25/11/2022 - [] D -- C:\Users\Katakuri3D2Y\AppData\Roaming\IObit =>.IObit O43 - CFD: 24/01/2023 - [] D -- C:\Users\Katakuri3D2Y\AppData\Roaming\LibreOffice =>.LibreOffice O43 - CFD: 30/11/2022 - [] SD -- C:\Users\Katakuri3D2Y\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 19/12/2022 - [] D -- C:\Users\Katakuri3D2Y\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 01/12/2022 - [] D -- C:\Users\Katakuri3D2Y\AppData\Roaming\MPC-HC =>.MPC-HC Team O43 - CFD: 24/01/2023 - [] D -- C:\Users\Katakuri3D2Y\AppData\Roaming\NVIDIA =>.nVidia Corporation O43 - CFD: 16/07/2024 - [] D -- C:\Users\Katakuri3D2Y\AppData\Roaming\qBittorrent O43 - CFD: 20/07/2024 - [] D -- C:\Users\Katakuri3D2Y\AppData\Roaming\riot-client-ux O43 - CFD: 26/11/2022 - [] D -- C:\Users\Katakuri3D2Y\AppData\Roaming\Sekiro O43 - CFD: 07/07/2024 - [] D -- C:\Users\Katakuri3D2Y\AppData\Roaming\taris_launcher O43 - CFD: 20/06/2024 - [] D -- C:\Users\Katakuri3D2Y\AppData\Roaming\TDM =>.TDM O43 - CFD: 20/06/2024 - [] D -- C:\Users\Katakuri3D2Y\AppData\Roaming\Tencent =>.Tencent O43 - CFD: 26/11/2022 - [] D -- C:\Users\Katakuri3D2Y\AppData\Roaming\UserBenchmark O43 - CFD: 17/07/2024 - [] D -- C:\Users\Katakuri3D2Y\AppData\Roaming\vlc =>.VideoLan Team O43 - CFD: 25/11/2022 - [] D -- C:\Users\Katakuri3D2Y\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 21/07/2024 - [] D -- C:\Users\Katakuri3D2Y\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 25/11/2022 - [0] SHD -- C:\Users\Katakuri3D2Y\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 21/12/2022 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\Archeage O43 - CFD: 16/12/2022 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\cache =>.Legitimate O43 - CFD: 25/11/2022 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\CEF =>.CEF O43 - CFD: 25/11/2022 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation O43 - CFD: 19/07/2024 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 20/06/2024 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\D3DSCache =>.Legitimate O43 - CFD: 25/11/2022 - [0] D -- C:\Users\Katakuri3D2Y\AppData\Local\DBG =>.DBG O43 - CFD: 10/01/2023 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\Discord O43 - CFD: 22/03/2023 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation O43 - CFD: 25/11/2022 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\Google =>.Google O43 - CFD: 25/11/2022 - [0] SHD -- C:\Users\Katakuri3D2Y\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 25/09/2023 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\HoYoverse O43 - CFD: 23/12/2022 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 10/02/2023 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\Microsoft_Corporation =>.Microsoft Corporation O43 - CFD: 19/12/2022 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 25/03/2023 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\My Games =>.My Games O43 - CFD: 25/11/2022 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\NVIDIA =>.nVidia Corporation O43 - CFD: 25/11/2022 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 19/03/2023 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 27/08/2023 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\Palia O43 - CFD: 25/02/2023 - [0] D -- C:\Users\Katakuri3D2Y\AppData\Local\PeerDistRepub =>.Microsoft Corporation O43 - CFD: 25/11/2022 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\PlaceholderTileLogoFolder =>.Microsoft Corporation O43 - CFD: 29/11/2022 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 01/12/2022 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\qBittorrent O43 - CFD: 25/02/2023 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\Riot Games =>.Riot Games O43 - CFD: 08/01/2023 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\SquirrelTemp =>.Squirrels O43 - CFD: 16/12/2022 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\StreamingVideoProvider O43 - CFD: 20/06/2024 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\TARISMiniloader O43 - CFD: 21/07/2024 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 25/11/2022 - [0] SHD -- C:\Users\Katakuri3D2Y\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 12/08/2023 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\UnrealEngine =>.Unreal Software O43 - CFD: 25/11/2022 - [0] D -- C:\Users\Katakuri3D2Y\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 09/12/2022 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\Windscribe =>.Windscribe O43 - CFD: 21/07/2024 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 25/11/2022 - [0] D -- C:\Users\Katakuri3D2Y\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 07/07/2024 - [] D -- C:\Users\Katakuri3D2Y\AppData\Local\Programs\ImageGlass O43 - CFD: 21/05/2024 - [] D -- C:\Users\Katakuri3D2Y\AppData\LocalLow\Adobe =>.Adobe O43 - CFD: 25/11/2022 - [] D -- C:\Users\Katakuri3D2Y\AppData\LocalLow\IObit =>.IObit O43 - CFD: 25/11/2022 - [] SD -- C:\Users\Katakuri3D2Y\AppData\LocalLow\Microsoft =>.Microsoft Corporation O43 - CFD: 25/11/2022 - [] D -- C:\Users\Katakuri3D2Y\AppData\LocalLow\miHoYo O43 - CFD: 24/04/2023 - [0] D -- C:\Users\Katakuri3D2Y\AppData\LocalLow\Mozilla =>.Mozilla Corporation O43 - CFD: 23/01/2023 - [] D -- C:\Users\Katakuri3D2Y\AppData\LocalLow\Temp =>.Microsoft Corporation O43 - CFD: 24/06/2023 - [] D -- C:\Users\Katakuri3D2Y\Desktop\ThrottleStop_9.2 O43 - CFD: 15/09/2018 - [] RD -- C:\Users\Katakuri3D2Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 25/11/2022 - [] RD -- C:\Users\Katakuri3D2Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 25/11/2022 - [] RD -- C:\Users\Katakuri3D2Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 08/01/2023 - [] D -- C:\Users\Katakuri3D2Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc =>.SUP.Discord O43 - CFD: 17/06/2024 - [] D -- C:\Users\Katakuri3D2Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HoYoPlay O43 - CFD: 15/09/2018 - [] D -- C:\Users\Katakuri3D2Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 25/11/2022 - [] D -- C:\Users\Katakuri3D2Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Riot Games =>.Riot Games O43 - CFD: 16/12/2022 - [] D -- C:\Users\Katakuri3D2Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ScreenRec O43 - CFD: 25/11/2022 - [] RD -- C:\Users\Katakuri3D2Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] RD -- C:\Users\Katakuri3D2Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] RD -- C:\Users\Katakuri3D2Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation O43 - CFD: 25/11/2022 - [] D -- C:\Users\Katakuri3D2Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 25/11/2022 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 25/11/2022 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 25/11/2022 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 25/11/2022 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 25/11/2022 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 25/11/2022 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 17/07/2024 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 30/05/2024 - [0] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\DBG =>.DBG O43 - CFD: 25/11/2022 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation ---\\ ShellIconOverlayIdentifiers (SIOI) (2) - 0s O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - Windows Enhanced Storage Shell Extension DL.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - Client Side Caching UI.) -- C:\Windows\System32\cscui.dll [Unsigned] =>.Microsoft Corporation ---\\ Search Context Menu Handlers (SCMH) (30) - 2s O108 - CMH1: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH® O108 - CMH1: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned] O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Microsoft (C) Work Folders Shell Extension.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH2: NvAppShExt [64Bits] - {A929C4CE-FD36-4270-B4F5-34ECAC5BD63C} . (.NVIDIA Corporation - NVIDIA Shell Extensions.) -- C:\Windows\System32\DriverStore\FileRepository\nvcvig.inf_amd64_3495276d23a96c1a\nv3dappshext.dll =>.Nvidia Corporation® O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH2: OpenGLShExt [64Bits] - {E97DEC16-A50D-49bb-AE24-CF682282E08D} . (.NVIDIA Corporation - NVIDIA Shell Extensions.) -- C:\Windows\System32\DriverStore\FileRepository\nvcvig.inf_amd64_3495276d23a96c1a\nv3dappshext.dll =>.Nvidia Corporation® O108 - CMH2: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH® O108 - CMH2: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned] O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH4: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - Client Side Caching UI.) -- C:\Windows\System32\cscui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Microsoft (C) Work Folders Shell Extension.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: igfxDTCM [64Bits] - {9B5F5829-A529-4B12-814A-E81BCB8D93FC} . (.Intel Corporation - igfxDTCM Module.) -- C:\Windows\system32\igfxDTCM.dll [Unsigned] =>.Intel Corporation O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH5: NvCplDesktopContext [64Bits] - {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} . (.NVIDIA Corporation - NVIDIA Display Shell Extension.) -- C:\Windows\System32\DriverStore\FileRepository\nvcvig.inf_amd64_3495276d23a96c1a\nvshext.dll =>.Nvidia Corporation® O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Microsoft (C) Work Folders Shell Extension.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH6: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - Client Side Caching UI.) -- C:\Windows\System32\cscui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - App Resolver.) -- C:\Windows\System32\appresolver.dll =>.Microsoft Windows® O108 - CMH6: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH® O108 - CMH6: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned] O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - Windows Enhanced Storage Shell Extension DL.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation ---\\ Image File Execution Options (10) - 0s O50 - IFEO:C:\Windows\System32\ie4uinit.exe - (.Microsoft Corporation - IE Per-User Initialization Utility.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - IE 7.0 Unattended Install Utility.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Microsoft (R) HTML Application host.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\spoolsv.exe - (.Microsoft Corporation - Spooler SubSystem App.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Host Process for Windows Services.) [MinimumStackCommitInBytes\\32768] =>.Microsoft Windows Publisher® O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Host Process for Windows Services.) [MitigationAuditOptions\\17660905521152] =>.Microsoft Windows Publisher® ---\\ System Drivers List (443) - 16s O58 - SDL:2018/09/15 08:28:17 A . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\Windows\System32\drivers\1394ohci.sys [245248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:17 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\drivers\3ware.sys [107520] =>.Microsoft Windows® O58 - SDL:2024/07/07 14:29:37 A . (.ANTICHEATEXPERT.COM - ACE-BASE64 System Driver.) -- C:\Windows\System32\drivers\ACE-BASE.sys [2182128] =>.Microsoft® O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - ACPI Driver for NT.) -- C:\Windows\System32\drivers\acpi.sys [790840] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:17 A . (.Microsoft Corporation - ACPI Devices Driver.) -- C:\Windows\System32\drivers\AcpiDev.sys [19968] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:22 A . (.Microsoft Corporation - ACPIEx Driver.) -- C:\Windows\System32\drivers\acpiex.sys [132096] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - ACPI Processor Aggregator Device Driver.) -- C:\Windows\System32\drivers\acpipagr.sys [12800] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:17 A . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\Windows\System32\drivers\acpipmi.sys [16384] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - ACPI Wake Alarm.) -- C:\Windows\System32\drivers\acpitime.sys [13312] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:17 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\Windows\System32\drivers\adp80xx.sys [1135616] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:46 A . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\afd.sys [655160] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:55 A . (.Microsoft Corporation - AF_UNIX socket provider.) -- C:\Windows\System32\drivers\afunix.sys [40960] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:57 A . (.Microsoft Corporation - RAS Agile Vpn Miniport Call Manager.) -- C:\Windows\System32\drivers\agilevpn.sys [113664] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:52 A . (.Microsoft Corporation - Application Compatibility Cache.) -- C:\Windows\System32\drivers\ahcache.sys [288256] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/11/25 11:39:58 A . (.Insyde Corporation - Insyde Airplane Mode HID Mini-driver.) -- C:\Windows\System32\drivers\AirplaneModeHid.sys [46512] =>.Insyde Software Corp.® O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\amdk8.sys [198656] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\amdppm.sys [196608] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:17 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [83456] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:17 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [259384] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:17 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27136] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:42 A . (.Microsoft Corporation - AppID Driver.) -- C:\Windows\System32\drivers\appid.sys [201528] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:42 A . (.Microsoft Corporation - Applocker Filter.) -- C:\Windows\System32\drivers\applockerfltr.sys [18432] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 10:09:58 A . (.Microsoft Corporation - Microsoft Application Virtualization Stream.) -- C:\Windows\System32\drivers\AppVStrm.sys [137016] =>.Microsoft Windows® O58 - SDL:2018/09/15 10:09:58 A . (.Microsoft Corporation - Microsoft Application Virtualization VE Man.) -- C:\Windows\System32\drivers\AppvVemgr.sys [172560] =>.Microsoft Windows® O58 - SDL:2018/09/15 10:09:58 A . (.Microsoft Corporation - Microsoft Application Virtualization VFS Fi.) -- C:\Windows\System32\drivers\AppvVfs.sys [153400] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:17 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [131896] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:57 A . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\Windows\System32\drivers\asyncmac.sys [31232] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [30208] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\Windows\System32\drivers\ataport.sys [203264] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:29 A . (.Microsoft Corporation - BAM Kernel Driver.) -- C:\Windows\System32\drivers\bam.sys [63288] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - Battery Class Driver.) -- C:\Windows\System32\drivers\battc.sys [40760] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:17 A . (. - BCM Function 2 Device Driver.) -- C:\Windows\System32\drivers\bcmfn2.sys [9728] [Unsigned] =>.Broadcom Corporation O58 - SDL:2018/09/15 08:28:44 A . (.Microsoft Corporation - BEEP Driver.) -- C:\Windows\System32\drivers\beep.sys [10240] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/02/13 07:06:04 A . (.Microsoft Corporation - Windows Bind Filter Driver.) -- C:\Windows\System32\drivers\bindflt.sys [102392] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:25 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\Windows\System32\drivers\bowser.sys [116224] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:29:16 A . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\Windows\System32\drivers\bridge.sys [126464] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Microsoft Bluetooth Audio Multiprofile Mana.) -- C:\Windows\System32\drivers\BtaMPM.sys [35328] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/02/13 07:06:02 A . (.Microsoft Corporation - Bluetooth Bus Extender.) -- C:\Windows\System32\drivers\bthenum.sys [111104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/02/13 07:06:02 A . (.Microsoft Corporation - Bluetooth Hands-Free Audio and Call Control.) -- C:\Windows\System32\drivers\bthhfenum.sys [120320] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Bluetooth Transport Extensibility Miniport.) -- C:\Windows\System32\drivers\BthMini.SYS [34816] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:15 A . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\Windows\System32\drivers\bthmodem.sys [72192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Bluetooth Personal Area Networking.) -- C:\Windows\System32\drivers\bthpan.sys [133120] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/02/13 07:06:02 A . (.Microsoft Corporation - Bluetooth Bus Driver.) -- C:\Windows\System32\drivers\bthport.sys [1221120] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Bluetooth Miniport Driver.) -- C:\Windows\System32\drivers\BTHUSB.SYS [92672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - VHD BTT Filter Driver.) -- C:\Windows\System32\drivers\bttflt.sys [42504] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Button Converter Driver.) -- C:\Windows\System32\drivers\buttonconverter.sys [40960] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:17 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [533816] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:15 A . (.Microsoft Corporation - Charge Arbiration Driver.) -- C:\Windows\System32\drivers\CAD.sys [63288] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:17 A . (.Microsoft Corporation - CapImg HID Driver.) -- C:\Windows\System32\drivers\capimg.sys [125952] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/02/13 07:06:25 A . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\cdfs.sys [100352] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:17 A . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\cdrom.sys [165888] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:29 A . (.Microsoft Corporation - Event Aggregation Kernel Mode Library.) -- C:\Windows\System32\drivers\CEA.sys [82432] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\Windows\System32\drivers\cht4dx64.sys [142864] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\Windows\System32\drivers\cht4sx64.sys [319488] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Chelsio Communications - VF library for Chelsio ® T5/T6 Chipset.) -- C:\Windows\System32\drivers\cht4vfx.sys [29696] [Unsigned] =>.Chelsio Communications O58 - SDL:2018/09/15 08:28:18 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\Windows\System32\drivers\cht4vx64.sys [1866768] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:15 A . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\Windows\System32\drivers\circlass.sys [50688] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/02/13 07:06:18 A . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\Windows\System32\drivers\Classpnp.sys [430904] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:44 A . (.Microsoft Corporation - Cloud Files Mini Filter Driver.) -- C:\Windows\System32\drivers\cldflt.sys [452096] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:46 A . (.Microsoft Corporation - Common Log File System Driver.) -- C:\Windows\System32\drivers\clfs.sys [405504] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:04 A . (.Microsoft Corporation - CLIP Service.) -- C:\Windows\System32\drivers\ClipSp.sys [1051960] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\Windows\System32\drivers\CmBatt.sys [34816] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:22 A . (.Microsoft Corporation - Kernel Configuration Manager Initial Config.) -- C:\Windows\System32\drivers\cmimcext.sys [28984] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:46 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\Windows\System32\drivers\cng.sys [730384] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:38 A . (.Microsoft Corporation - CNG Hardware Assist algorithm provider.) -- C:\Windows\System32\drivers\cnghwassist.sys [40248] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:36 A . (.Microsoft Corporation - Console Driver.) -- C:\Windows\System32\drivers\condrv.sys [60928] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:46 A . (.Microsoft Corporation - Crash Dump Driver.) -- C:\Windows\System32\drivers\crashdmp.sys [93496] =>.Microsoft Windows® O58 - SDL:2018/09/15 10:09:56 A . (.Microsoft Corporation - Windows Client Side Caching Driver.) -- C:\Windows\System32\drivers\csc.sys [579072] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/02/13 07:06:10 A . (.Microsoft Corporation - DAM Kernel Driver.) -- C:\Windows\System32\drivers\dam.sys [97592] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:15 A . (.Microsoft Corporation - Xbox Device Authentication Driver.) -- C:\Windows\System32\drivers\devauthe.sys [46592] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:46 A . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\dfsc.sys [151040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - PnP Disk Driver.) -- C:\Windows\System32\drivers\disk.sys [97592] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:51 A . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\Windows\System32\drivers\Diskdump.sys [38200] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:51 A . (.Microsoft Corporation - Boot Over USB Dump Driver.) -- C:\Windows\System32\drivers\Dmpusbstor.sys [15360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Dynamic Memory.) -- C:\Windows\System32\drivers\dmvsc.sys [57144] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:15 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\drivers\drmk.sys [98304] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:16 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\drivers\drmkaud.sys [16328] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:43 A . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\Windows\System32\drivers\Dumpata.sys [36352] =>.Microsoft Windows® O58 - SDL:2018/09/15 10:10:05 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\Windows\System32\drivers\dumpfve.sys [92592] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:02 A . (.Microsoft Corporation - SD Crashdump Port Driver.) -- C:\Windows\System32\drivers\dumpsd.sys [193032] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:36 A . (.Microsoft Corporation - SD Host Controller Crashdump Port Driver.) -- C:\Windows\System32\drivers\dumpsdport.sys [32256] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:50 A . (.Microsoft Corporation - Storport Dump Driver.) -- C:\Windows\System32\drivers\Dumpstorport.sys [24576] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/02/13 07:06:11 A . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\drivers\dxgkrnl.sys [3379000] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:11 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\Windows\System32\drivers\dxgmms1.sys [439296] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:11 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\Windows\System32\drivers\dxgmms2.sys [863752] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:29:16 A . (.Microsoft Corporation - Enhanced Storage Class driver for IEEE 1667.) -- C:\Windows\System32\drivers\EhStorClass.sys [90936] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:15 A . (.Microsoft Corporation - Microsoft driver for storage devices suppor.) -- C:\Windows\System32\drivers\EhStorTcgDrv.sys [119608] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - Error Device Driver.) -- C:\Windows\System32\drivers\errdev.sys [14336] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/11/25 11:39:01 A . (.ELAN Microelectronic Corp. - ELAN SMBus Driver.) -- C:\Windows\System32\drivers\ETDSMBus.sys [53632] =>.ELAN MICROELECTRONICS CORPORATION® O58 - SDL:2018/09/15 08:28:17 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3419152] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:05 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\Windows\System32\drivers\exfat.sys [402944] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/02/13 07:06:05 A . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\Windows\System32\drivers\fastfat.sys [419128] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\Windows\System32\drivers\fdc.sys [35328] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:22 A . (.Microsoft Corporation - Windows sandboxing and encryption filter.) -- C:\Windows\System32\drivers\filecrypt.sys [60416] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/02/13 07:06:16 A . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\Windows\System32\drivers\fileinfo.sys [94224] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:43 A . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\Windows\System32\drivers\filetrace.sys [40448] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - Floppy Driver.) -- C:\Windows\System32\drivers\flpydisk.sys [28160] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:46 A . (.Microsoft Corporation - Microsoft Filesystem Filter Manager.) -- C:\Windows\System32\drivers\fltMgr.sys [436736] =>.Microsoft Windows® O58 - SDL:2012/08/07 15:06:54 A . (.Egis Technology Inc. - Fingerprint Sensor Driver.) -- C:\Windows\System32\drivers\FPSensor.sys [36696] =>.EGIS TECHNOLOGY INC.® O58 - SDL:2018/09/15 08:28:22 A . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) -- C:\Windows\System32\drivers\fsdepends.sys [67384] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:46 A . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\Windows\System32\drivers\fs_rec.sys [35328] =>.Microsoft Windows® O58 - SDL:2018/09/15 10:10:05 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\Windows\System32\drivers\fvevol.sys [798520] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:18 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\Windows\System32\drivers\FWPKCLNT.SYS [475152] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Generic USB Function Class Driver.) -- C:\Windows\System32\drivers\genericusbfn.sys [20992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:22 A . (.Microsoft Corporation - GPU Energy Kernel Driver.) -- C:\Windows\System32\drivers\gpuenergydrv.sys [8704] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:15 A . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\hdaudbus.sys [104960] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:15 A . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\HdAudio.sys [398336] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - Hid Battery Driver.) -- C:\Windows\System32\drivers\hidbatt.sys [39736] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Bluetooth Miniport Driver for HID Devices.) -- C:\Windows\System32\drivers\hidbth.sys [118272] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Hid Class Library.) -- C:\Windows\System32\drivers\hidclass.sys [209920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - I2C HID Miniport Driver.) -- C:\Windows\System32\drivers\hidi2c.sys [52224] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - HID Button over Interrupt Driver.) -- C:\Windows\System32\drivers\hidinterrupt.sys [51512] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:15 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\Windows\System32\drivers\hidir.sys [48640] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/02/13 07:06:02 A . (.Microsoft Corporation - Hid Parsing Library.) -- C:\Windows\System32\drivers\hidparse.sys [46080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - SPI HID Miniport Driver.) -- C:\Windows\System32\drivers\hidspi.sys [60928] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\Windows\System32\drivers\hidusb.sys [43520] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:17 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [64312] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:07 A . (.Microsoft Corporation - HTTP Protocol Stack.) -- C:\Windows\System32\drivers\http.sys [1258512] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Hyper-V Crashdump.) -- C:\Windows\System32\drivers\hvcrash.sys [33280] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:29:13 A . (.Microsoft Corporation - Hypervisor Boot Driver.) -- C:\Windows\System32\drivers\hvservice.sys [80184] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:29:24 A . (.Microsoft Corporation - Microsoft Hyper-V Socket Provider.) -- C:\Windows\System32\drivers\hvsocket.sys [144696] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:45 A . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\Windows\System32\drivers\hwpolicy.sys [29696] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Microsoft VMBus Synthetic Keyboard Driver.) -- C:\Windows\System32\drivers\hyperkbd.sys [25400] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Microsoft VMBus Video Device Miniport Drive.) -- C:\Windows\System32\drivers\HyperVideo.sys [32256] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - i8042 Port Driver.) -- C:\Windows\System32\drivers\i8042prt.sys [110592] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:15 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\Windows\System32\drivers\iagpio.sys [36352] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2018/09/15 08:28:15 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\Windows\System32\drivers\iai2c.sys [91136] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2018/09/15 08:28:15 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\Windows\System32\drivers\iaLPSS2i_GPIO2.sys [79360] [Unsigned] =>.Intel Corporation O58 - SDL:2018/09/15 08:28:15 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\Windows\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [93184] [Unsigned] =>.Intel Corporation O58 - SDL:2018/09/15 08:28:15 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\Windows\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128] [Unsigned] =>.Intel Corporation O58 - SDL:2018/09/15 08:28:15 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\Windows\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256] [Unsigned] =>.Intel Corporation O58 - SDL:2018/09/15 08:28:15 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\Windows\System32\drivers\iaLPSS2i_I2C.sys [171520] [Unsigned] =>.Intel Corporation O58 - SDL:2018/09/15 08:28:15 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\Windows\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [175104] [Unsigned] =>.Intel Corporation O58 - SDL:2018/09/15 08:28:15 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\Windows\System32\drivers\iaLPSS2i_I2C_CNL.sys [180736] [Unsigned] =>.Intel Corporation O58 - SDL:2018/09/15 08:28:15 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\Windows\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664] [Unsigned] =>.Intel Corporation O58 - SDL:2018/09/15 08:28:17 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group® O58 - SDL:2018/09/15 08:28:15 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_I2C.sys [113152] [Unsigned] =>.Intel Corporation O58 - SDL:2022/11/25 11:39:47 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver -.) -- C:\Windows\System32\drivers\iaStorA.sys [1469952] =>.Intel(R) Rapid Storage Technology® O58 - SDL:2018/09/15 08:28:18 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\Windows\System32\drivers\iaStorAVC.sys [885048] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [411960] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\Windows\System32\drivers\ibbus.sys [566800] =>.Microsoft Windows® O58 - SDL:2020/12/02 02:17:16 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [7968624] =>.Intel(R) pGFX 2020® O58 - SDL:2018/09/15 08:28:38 A . (.Microsoft Corporation - Indirect displays kernel-mode filter driver.) -- C:\Windows\System32\drivers\IndirectKmd.sys [45568] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/05/09 15:10:10 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [480176] =>.Intel Corporation® O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\Windows\System32\drivers\intelide.sys [19456] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:17 A . (.Microsoft Corporation - Intel Power Engine Plugin.) -- C:\Windows\System32\drivers\intelpep.sys [254952] =>.Microsoft® O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\intelppm.sys [219648] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:02 A . (.Microsoft Corporation - I/O rate control Filter.) -- C:\Windows\System32\drivers\iorate.sys [55608] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:56 A . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\Windows\System32\drivers\ipfltdrv.sys [90112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - WMI IPMI DRIVER.) -- C:\Windows\System32\drivers\IPMIDrv.sys [95744] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:38 A . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\ipnat.sys [224768] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:22 A . (.Microsoft Corporation - IPT Driver.) -- C:\Windows\System32\drivers\ipt.sys [42496] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:29:24 A . (.Microsoft Corporation - IRDA Protocol Driver.) -- C:\Windows\System32\drivers\irda.sys [124928] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:29:24 A . (.Microsoft Corporation - Infra-Red Bus Enumerator.) -- C:\Windows\System32\drivers\irenum.sys [20992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - PNP ISA Bus Driver.) -- C:\Windows\System32\drivers\isapnp.sys [23352] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:17 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\Windows\System32\drivers\ItSas35i.sys [148480] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Keyboard Class Driver.) -- C:\Windows\System32\drivers\kbdclass.sys [67896] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - HID Keyboard Filter Driver.) -- C:\Windows\System32\drivers\kbdhid.sys [44544] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Microsoft Kernel Debugger Network Miniport.) -- C:\Windows\System32\drivers\kdnic.sys [24064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:29:25 A . (.Microsoft Corporation - Network Power Dependency Broker.) -- C:\Windows\System32\drivers\KNetPwrDepBroker.sys [30720] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:53 A . (.Microsoft Corporation - Kernel CSA Library.) -- C:\Windows\System32\drivers\ks.sys [448000] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:46 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\drivers\ksecdd.sys [147968] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:06 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\drivers\ksecpkg.sys [178696] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:52 A . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\Windows\System32\drivers\ksthunk.sys [28672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/10/23 19:53:20 A . (.LG Electronics Inc. - LGE AndroidNet Driver.) -- C:\Windows\System32\drivers\lgandnetbus64.sys [30208] [Unsigned] =>.LG Electronics Inc. O58 - SDL:2018/10/16 15:51:38 A . (.LG Electronics Inc. - LGE AndroidNet Driver.) -- C:\Windows\System32\drivers\lgandnetdiag64.sys [30720] [Unsigned] =>.LG Electronics Inc. O58 - SDL:2018/10/16 15:53:04 A . (.LG Electronics Inc. - LGE AndroidNet Driver.) -- C:\Windows\System32\drivers\lgandnetmodem64.sys [37376] [Unsigned] =>.LG Electronics Inc. O58 - SDL:2018/09/15 08:28:52 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\Windows\System32\drivers\lltdio.sys [71680] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:17 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [109056] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:17 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2i.sys [124416] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:17 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas3i.sys [128512] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:17 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sss.sys [82944] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:53 A . (.Microsoft Corporation - LUA File Virtualization Filter Driver.) -- C:\Windows\System32\drivers\luafv.sys [135680] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - MA-USB Host Controller Driver.) -- C:\Windows\System32\drivers\mausbhost.sys [515384] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - MA-USB IP Driver.) -- C:\Windows\System32\drivers\mausbip.sys [58680] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:29:25 A . (.Microsoft Corporation - Windows Mobile Broadband Class Extension.) -- C:\Windows\System32\drivers\MbbCx.sys [290816] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:44 A . (.Microsoft Corporation - Medium changer class driver.) -- C:\Windows\System32\drivers\mcd.sys [24576] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:17 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [59904] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:17 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\MegaSas2i.sys [75264] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:17 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas35i.sys [79872] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\megasr.sys [575800] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Microsoft Bluetooth Avrcp Transport Driver.) -- C:\Windows\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [53760] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Legacy Bluetooth LE Bus Enumerator.) -- C:\Windows\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [90624] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:18 A . (.Mellanox - MLX4 Bus Driver.) -- C:\Windows\System32\drivers\mlx4_bus.sys [1150496] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:04 A . (.Microsoft Corporation - MMCSS Driver.) -- C:\Windows\System32\drivers\mmcss.sys [51712] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:29:22 A . (.Microsoft Corporation - Modem Device Driver.) -- C:\Windows\System32\drivers\modem.sys [46080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:16 A . (.Microsoft Corporation - Monitor Driver.) -- C:\Windows\System32\drivers\monitor.sys [61952] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Mouse Class Driver.) -- C:\Windows\System32\drivers\mouclass.sys [61240] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - HID Mouse Filter Driver.) -- C:\Windows\System32\drivers\mouhid.sys [34816] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:45 A . (.Microsoft Corporation - Mount Point Manager.) -- C:\Windows\System32\drivers\mountmgr.sys [112440] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:34 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\Windows\System32\drivers\mpsdrv.sys [79360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:29:25 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\Windows\System32\drivers\mrxdav.sys [157696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/02/13 07:06:18 A . (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\mrxsmb.sys [535048] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:18 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\Windows\System32\drivers\mrxsmb20.sys [262672] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:46 A . (.Microsoft Corporation - Mailslot driver.) -- C:\Windows\System32\drivers\msfs.sys [33792] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/02/13 07:06:11 A . (.Microsoft Corporation - GPIO Class Extension Driver.) -- C:\Windows\System32\drivers\msgpioclx.sys [175096] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - GPIO Button Driver.) -- C:\Windows\System32\drivers\msgpiowin32.sys [51000] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:38 A . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\Windows\System32\drivers\mshidkmdf.sys [8192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:38 A . (.Microsoft Corporation - Pass-through Driver for HID-UMDF Interface.) -- C:\Windows\System32\drivers\mshidumdf.sys [12288] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:38 A . (.Microsoft Corporation - Hardware Notification Class Extension Drive.) -- C:\Windows\System32\drivers\mshwnclx.sys [27648] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - ISA Driver.) -- C:\Windows\System32\drivers\msisadrv.sys [18744] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\Windows\System32\drivers\msiscsi.sys [292864] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:53 A . (.Microsoft Corporation - MS KS Server.) -- C:\Windows\System32\drivers\mskssrv.sys [34816] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:56 A . (.Microsoft Corporation - Microsoft Link-Layer Discovery Protocol Dri.) -- C:\Windows\System32\drivers\mslldp.sys [81920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:52 A . (.Microsoft Corporation - MS Proxy Clock.) -- C:\Windows\System32\drivers\mspclock.sys [11264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:52 A . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\Windows\System32\drivers\mspqm.sys [11264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/02/13 07:06:18 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\Windows\System32\drivers\msrpc.sys [383288] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:33 A . (.Microsoft Corporation - Microsoft Security Events Component file sy.) -- C:\Windows\System32\drivers\mssecflt.sys [317440] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\Windows\System32\drivers\mssmbios.sys [45880] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:52 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\Windows\System32\drivers\mstee.sys [12800] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:17 A . (.Microsoft Corporation - Microsoft Multi-Touch HID Driver.) -- C:\Windows\System32\drivers\MTConfig.sys [16384] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:46 A . (.Microsoft Corporation - Multiple UNC Provider Driver.) -- C:\Windows\System32\drivers\mup.sys [130360] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\Windows\System32\drivers\mvumis.sys [63800] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\Windows\System32\drivers\ndfltr.sys [153616] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:18 A . (.Microsoft Corporation - Network Driver Interface Specification (NDI.) -- C:\Windows\System32\drivers\ndis.sys [1360696] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:29:23 A . (.Microsoft Corporation - Microsoft NDIS Packet Capture Filter Driver.) -- C:\Windows\System32\drivers\ndiscap.sys [55808] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:56 A . (.Microsoft Corporation - Microsoft Network Adapter Multiplexor.) -- C:\Windows\System32\drivers\NdisImPlatform.sys [134656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:56 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\Windows\System32\drivers\ndistapi.sys [28672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:45 A . (.Microsoft Corporation - NDIS User mode I/O driver.) -- C:\Windows\System32\drivers\ndisuio.sys [69632] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:56 A . (.Microsoft Corporation - Microsoft Virtual Network Adapter Enumerato.) -- C:\Windows\System32\drivers\NdisVirtualBus.sys [20992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:57 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\Windows\System32\drivers\ndiswan.sys [206848] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:56 A . (.Microsoft Corporation - NDIS Proxy.) -- C:\Windows\System32\drivers\ndproxy.sys [70144] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:29:13 A . (.Microsoft Corporation - Windows Network Data Usage Monitoring Drive.) -- C:\Windows\System32\drivers\Ndu.sys [132096] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:46 A . (.Microsoft Corporation - Network Adapter Class Extension for WDF.) -- C:\Windows\System32\drivers\NetAdapterCx.sys [184320] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:56 A . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\Windows\System32\drivers\netbios.sys [64528] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:55 A . (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netbt.sys [301568] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/02/13 07:06:18 A . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\Windows\System32\drivers\netio.sys [588304] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Virtual NDIS Miniport.) -- C:\Windows\System32\drivers\netvsc.sys [234808] =>.Microsoft Windows® O58 - SDL:2013/03/01 02:49:12 A . (.Riverbed Technology, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) -- C:\Windows\System32\drivers\npf.sys [36600] =>.Riverbed Technology, Inc.® O58 - SDL:2018/09/15 08:28:46 A . (.Microsoft Corporation - NPFS Driver.) -- C:\Windows\System32\drivers\npfs.sys [79360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Named pipe service triggers.) -- C:\Windows\System32\drivers\npsvctrig.sys [27136] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:45 A . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\drivers\nsiproxy.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/02/13 07:06:18 A . (.Microsoft Corporation - NT File System Driver.) -- C:\Windows\System32\drivers\ntfs.sys [2626592] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:52 A . (.Microsoft Corporation - NTOS extension host driver.) -- C:\Windows\System32\drivers\ntosext.sys [20480] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:46 A . (.Microsoft Corporation - NULL Driver.) -- C:\Windows\System32\drivers\null.sys [7168] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - NVDIMM device driver.) -- C:\Windows\System32\drivers\nvdimm.sys [148480] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/06/24 04:05:46 A . (.NVIDIA Corporation - Process and module monitoring driver.) -- C:\Windows\System32\drivers\NvModuleTracker.sys [50272] =>.NVIDIA Corporation® O58 - SDL:2018/09/15 08:28:18 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [150528] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166400] =>.Microsoft Windows® O58 - SDL:2022/10/14 08:06:00 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\Windows\System32\drivers\nvvad64v.sys [59928] =>.Nvidia Corporation® O58 - SDL:2022/07/14 00:32:50 A . (.NVIDIA Corporation - Virtual USB Host Controller driver.) -- C:\Windows\System32\drivers\nvvhci.sys [60112] =>.Nvidia Corporation® O58 - SDL:2018/09/15 08:28:26 A . (.Microsoft Corporation - NativeWiFi Miniport Driver.) -- C:\Windows\System32\drivers\nwifi.sys [550912] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:36 A . (.Microsoft Corporation - QoS Packet Scheduler.) -- C:\Windows\System32\drivers\pacer.sys [159744] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - Parallel Port Driver.) -- C:\Windows\System32\drivers\parport.sys [106496] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/02/13 07:06:18 A . (.Microsoft Corporation - Partition driver.) -- C:\Windows\System32\drivers\partmgr.sys [176440] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:02 A . (.Microsoft Corporation - NT Plug and Play PCI Enumerator.) -- C:\Windows\System32\drivers\pci.sys [421376] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\pciide.sys [16696] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\Windows\System32\drivers\pciidex.sys [56320] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:15 A . (.Microsoft Corporation - PCMCIA Bus Driver.) -- C:\Windows\System32\drivers\pcmcia.sys [126264] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:46 A . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\Windows\System32\drivers\pcw.sys [57856] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:07 A . (.Microsoft Corporation - Power Dependency Coordinator Driver.) -- C:\Windows\System32\drivers\pdc.sys [157192] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:24 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\Windows\System32\drivers\PEAuth.sys [816640] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:18 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\percsas2i.sys [58880] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\percsas3i.sys [68608] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:29:24 A . (.Microsoft Corporation - Packet Monitor Driver.) -- C:\Windows\System32\drivers\PktMon.sys [85504] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - Persistent memory driver.) -- C:\Windows\System32\drivers\pmem.sys [117248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:17 A . (.Microsoft Corporation - Plug and Play Memory Driver.) -- C:\Windows\System32\drivers\pnpmem.sys [17408] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:15 A . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\Windows\System32\drivers\portcls.sys [381440] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\processr.sys [194048] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:36 A . (.Microsoft Corporation - Process Launch Monitor driver.) -- C:\Windows\System32\drivers\ProcLaunchMon.sys [36440] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:56 A . (.Microsoft Corporation - Microsoft Quality Windows Audio Video Exper.) -- C:\Windows\System32\drivers\qwavedrv.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:22 A . (.Microsoft Corporation - RAM Disk Driver.) -- C:\Windows\System32\drivers\ramdisk.sys [41784] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:57 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\Windows\System32\drivers\rasacd.sys [19968] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:57 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\rasl2tp.sys [111616] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:57 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\Windows\System32\drivers\raspppoe.sys [87552] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:56 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\Windows\System32\drivers\raspptp.sys [103424] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:56 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\Windows\System32\drivers\rassstp.sys [84992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/02/13 07:06:18 A . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) -- C:\Windows\System32\drivers\rdbss.sys [454160] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\Windows\System32\drivers\rdpbus.sys [28160] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:29:22 A . (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [166912] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:29:21 A . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\Windows\System32\drivers\rdpvideominiport.sys [31760] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:29:25 A . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\Windows\System32\drivers\rdyboost.sys [295440] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:16 A . (.Microsoft Corporation - NT ReFS FS Driver.) -- C:\Windows\System32\drivers\refs.sys [1969680] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:16 A . (.Microsoft Corporation - NT ReFS FS Driver.) -- C:\Windows\System32\drivers\refsv1.sys [982032] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Bluetooth RFCOMM Driver.) -- C:\Windows\System32\drivers\rfcomm.sys [202240] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Microsoft RemoteFX VM Transport.) -- C:\Windows\System32\drivers\RfxVmt.sys [43520] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:17 A . (.Microsoft Corporation - ResourceHub Proxy Driver.) -- C:\Windows\System32\drivers\rhproxy.sys [108032] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:29:20 A . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\Windows\System32\drivers\rmcast.sys [158720] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:57 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\Windows\System32\drivers\RNDISMP.sys [37376] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:29:22 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\Windows\System32\drivers\rootmdm.sys [13312] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:52 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) -- C:\Windows\System32\drivers\rspndr.sys [89088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/11/25 11:41:17 A . (.Realtek - Realtek 8125/8136/8168/8169 NDIS 6.40 64-bi.) -- C:\Windows\System32\drivers\rt640x64.sys [1210224] =>.Realtek Semiconductor Corp.® O58 - SDL:2018/09/15 08:28:22 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\Windows\System32\drivers\rteth.sys [59392] [Unsigned] =>.Realtek O58 - SDL:2018/09/26 09:22:32 A . (.Realtek Semiconductor Corporation - Realtek Bluetooth Filter Driver.) -- C:\Windows\System32\drivers\RtkBtfilter.sys [758312] =>.Realtek Semiconductor Corp.® O58 - SDL:2022/11/25 11:40:58 A . (.Realtek Semiconductor Corporation - RTS PCIE READER Driver.) -- C:\Windows\System32\drivers\RtsPer.sys [1356656] =>.Realtek Semiconductor Corp.® O58 - SDL:2018/09/15 08:28:15 A . (.Realtek Semiconductor Corporation - Realtek PCIE NDIS Driver 65231 29887.) -- C:\Windows\System32\drivers\rtwlane.sys [8169472] [Unsigned] =>.Realtek Semiconductor Corporation O58 - SDL:2022/11/25 11:40:41 A . (.Realtek Semiconductor Corporation - Realtek PCIE NDIS Driver 78045 35786.) -- C:\Windows\System32\drivers\rtwlane02.sys [9634008] =>.Realtek Semiconductor Corp.® O58 - SDL:2018/09/15 08:28:17 A . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\Windows\System32\drivers\sbp2port.sys [118584] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:59 A . (.Microsoft Corporation - Microsoft Smart Card Reader Filter Driver.) -- C:\Windows\System32\drivers\scfilter.sys [44032] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - Storage Class Memory Bus Driver.) -- C:\Windows\System32\drivers\scmbus.sys [135168] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:44 A . (.Microsoft Corporation - SCSI Port Driver.) -- C:\Windows\System32\drivers\scsiport.sys [186168] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:02 A . (.Microsoft Corporation - SecureDigital Bus Driver.) -- C:\Windows\System32\drivers\sdbus.sys [298296] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:17 A . (.Microsoft Corporation - SDF Reflector.) -- C:\Windows\System32\drivers\SDFRd.sys [33080] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:22 A . (.Microsoft Corporation - SD Host Controller Port Driver.) -- C:\Windows\System32\drivers\sdport.sys [104248] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - SD Storage Class Driver.) -- C:\Windows\System32\drivers\sdstor.sys [102712] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:38 A . (.Microsoft Corporation - Serial Class Extension.) -- C:\Windows\System32\drivers\SerCx.sys [76088] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:38 A . (.Microsoft Corporation - Serial Class Extension V2.) -- C:\Windows\System32\drivers\SerCx2.sys [156472] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\Windows\System32\drivers\serenum.sys [27648] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - Serial Device Driver.) -- C:\Windows\System32\drivers\serial.sys [89600] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Serial Mouse Filter Driver.) -- C:\Windows\System32\drivers\sermouse.sys [29184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\Windows\System32\drivers\sfloppy.sys [18944] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:29:13 A . (.Microsoft Corporation - System Guard Runtime Monitor Agent Driver.) -- C:\Windows\System32\drivers\SgrmAgent.sys [87552] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [45056] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [81920] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:45 A . (.Microsoft Corporation - Sleep Study Helper.) -- C:\Windows\System32\drivers\SleepStudyHelper.sys [37176] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Microsemi Corportation - Storport Miniport Driver for SmartRAID/Smar.) -- C:\Windows\System32\drivers\SmartSAMD.sys [219960] =>.Microsoft Windows® O58 - SDL:2018/09/15 10:10:02 A . (.Microsoft Corporation - SMB Network Direct Driver.) -- C:\Windows\System32\drivers\smbdirect.sys [171520] [Unsigned] =>.Microsoft Corporation O58 - SDL:2015/08/04 03:37:40 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\Windows\System32\drivers\Smb_driver_AMDASF_Aux.sys [42184] =>.Synaptics Incorporated® O58 - SDL:2015/08/04 03:37:40 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\Windows\System32\drivers\Smb_driver_Intel.sys [42696] =>.Synaptics Incorporated® O58 - SDL:2015/08/04 03:37:40 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\Windows\System32\drivers\Smb_driver_Intel_Aux.sys [42696] =>.Synaptics Incorporated® O58 - SDL:2018/09/15 08:28:58 A . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\Windows\System32\drivers\smclib.sys [21504] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/02/13 07:06:02 A . (.Microsoft Corporation - Storage Spaces Dump Driver.) -- C:\Windows\System32\drivers\spacedump.sys [195896] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:02 A . (.Microsoft Corporation - Storage Spaces Driver.) -- C:\Windows\System32\drivers\spaceport.sys [651792] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:36 A . (.Microsoft Corporation - SPB Class Extension.) -- C:\Windows\System32\drivers\SpbCx.sys [82744] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:18 A . (.Microsoft Corporation - Smb 2.0 Server driver.) -- C:\Windows\System32\drivers\srv2.sys [769536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/02/13 07:06:18 A . (.Microsoft Corporation - Server Network driver.) -- C:\Windows\System32\drivers\srvnet.sys [293376] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:18 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\Windows\System32\drivers\stexstor.sys [31032] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:02 A . (.Microsoft Corporation - MS AHCI Storport Miniport Driver.) -- C:\Windows\System32\drivers\storahci.sys [164344] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:02 A . (.Microsoft Corporation - Microsoft NVM Express Storport Miniport Dri.) -- C:\Windows\System32\drivers\stornvme.sys [132104] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:05 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\Windows\System32\drivers\storport.sys [612368] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:03 A . (.Microsoft Corporation - Storage QoS Filter.) -- C:\Windows\System32\drivers\storqosflt.sys [95544] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - MS UFS Storport Miniport Driver.) -- C:\Windows\System32\drivers\storufs.sys [51512] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Storage VSC Driver.) -- C:\Windows\System32\drivers\storvsc.sys [41784] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:44 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\Windows\System32\drivers\stream.sys [81920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Microsoft RemoteFX Synth3D Video VSC.) -- C:\Windows\System32\drivers\Synth3dVsc.sys [66560] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/11/25 11:40:17 A . (.Synaptics Incorporated - Synaptics Touchpad Win64 Driver.) -- C:\Windows\System32\drivers\SynTP.sys [766184] =>.Synaptics Incorporated® O58 - SDL:2018/09/15 08:28:44 A . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\Windows\System32\drivers\tape.sys [32768] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/12/09 21:22:17 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\Windows\System32\drivers\tapwindscribe0901.sys [57768] {0AF4B47E1A5EEDA06DB90E772E799A07}. =>.The OpenVPN Project O58 - SDL:2018/09/15 08:28:25 A . (.Microsoft Corporation - Export driver for kernel mode TPM API.) -- C:\Windows\System32\drivers\tbs.sys [28472] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:18 A . (.Microsoft Corporation - TCP/IP Driver.) -- C:\Windows\System32\drivers\tcpip.sys [2927120] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:55 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\Windows\System32\drivers\tcpipreg.sys [54272] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:46 A . (.Microsoft Corporation - TDI Wrapper.) -- C:\Windows\System32\drivers\tdi.sys [39224] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:29:13 A . (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [132408] =>.Microsoft Windows® O58 - SDL:2022/11/25 11:38:48 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\TeeDriverW8x64.sys [223832] =>.Intel(R) Embedded Subsystems and IP Blocks Group® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Terminal Server Input Driver.) -- C:\Windows\System32\drivers\terminpt.sys [38944] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:06 A . (.Microsoft Corporation - Kernel Transaction Manager Driver.) -- C:\Windows\System32\drivers\tm.sys [140808] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - TPM Device Driver.) -- C:\Windows\System32\drivers\tpm.sys [248120] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:22 A . (.Microsoft Corporation - Remote Desktop USB Hub Filter Driver.) -- C:\Windows\System32\drivers\TsUsbFlt.sys [64512] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:17 A . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\Windows\System32\drivers\TsUsbGD.sys [35840] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 10:09:57 A . (.Microsoft Corporation - Remote Desktop USB Hub.) -- C:\Windows\System32\drivers\tsusbhub.sys [131072] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:56 A . (.Microsoft Corporation - Microsoft Tunnel Interface Driver.) -- C:\Windows\System32\drivers\tunnel.sys [124416] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - Microsoft Uasp Driver.) -- C:\Windows\System32\drivers\uaspstor.sys [84792] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:38 A . (.Microsoft Corporation - USB Connector Manager KMDF Class Extension.) -- C:\Windows\System32\drivers\UcmCx.sys [146944] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:38 A . (.Microsoft Corporation - UCM-TCPCI KMDF Class Extension.) -- C:\Windows\System32\drivers\UcmTcpciCx.sys [162304] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - USB Connector Manager UCSI Client.) -- C:\Windows\System32\drivers\UcmUcsi.sys [61440] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - UCM-UCSI ACPI Client Driver.) -- C:\Windows\System32\drivers\UcmUcsiAcpiClient.sys [31232] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:38 A . (.Microsoft Corporation - UCM-UCSI KMDF Class Extension.) -- C:\Windows\System32\drivers\UcmUcsiCx.sys [99840] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:22 A . (.Microsoft Corporation - USB Controller Extension.) -- C:\Windows\System32\drivers\Ucx01000.sys [236344] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:22 A . (.Microsoft Corporation - "udecx.DRIVER".) -- C:\Windows\System32\drivers\Udecx.sys [48128] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/02/13 07:06:29 A . (.Microsoft Corporation - UDF File System Driver.) -- C:\Windows\System32\drivers\udfs.sys [340480] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - UEFI Driver for NT.) -- C:\Windows\System32\drivers\uefi.sys [30008] =>.Microsoft Windows® O58 - SDL:2018/09/15 10:10:00 A . (.Microsoft Corporation - Microsoft User Experience Virtualization Ag.) -- C:\Windows\System32\drivers\UevAgentDriver.sys [41272] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:38 A . (.Microsoft Corporation - USB Function Driver Class Extension.) -- C:\Windows\System32\drivers\ufx01000.sys [292152] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - UFX Chipidea Client Driver.) -- C:\Windows\System32\drivers\UfxChipidea.sys [99640] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - UFX Synopsys Client Driver.) -- C:\Windows\System32\drivers\ufxsynopsys.sys [147256] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - User-Mode Bus Enumerator.) -- C:\Windows\System32\drivers\umbus.sys [56832] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Generic pass-through driver.) -- C:\Windows\System32\drivers\umpass.sys [13312] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - USB Role-Switch Driver for Chipidea Core.) -- C:\Windows\System32\drivers\urschipidea.sys [28472] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:38 A . (.Microsoft Corporation - USB Role-Switch Class Extension.) -- C:\Windows\System32\drivers\urscx01000.sys [68920] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - USB Role-Switch Driver for Synopsys Core.) -- C:\Windows\System32\drivers\urssynopsys.sys [27448] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:57 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\Windows\System32\drivers\usb8023.sys [24576] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:29 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\Windows\System32\drivers\USBCAMD2.sys [39936] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\Windows\System32\drivers\usbccgp.sys [179000] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:15 A . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\Windows\System32\drivers\usbcir.sys [106496] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\Windows\System32\drivers\usbd.sys [33592] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\Windows\System32\drivers\usbehci.sys [99128] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Default Hub Driver for USB.) -- C:\Windows\System32\drivers\usbhub.sys [535352] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - USB3 HUB Driver.) -- C:\Windows\System32\drivers\USBHUB3.SYS [586552] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\Windows\System32\drivers\usbohci.sys [30720] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:38 A . (...) -- C:\Windows\System32\drivers\UsbPmApi.sys [48640] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - USB 1.1 & 2.0 Port Driver.) -- C:\Windows\System32\drivers\usbport.sys [475960] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:16 A . (.Microsoft Corporation - USB Printer driver.) -- C:\Windows\System32\drivers\usbprint.sys [29184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - USB Serial Driver.) -- C:\Windows\System32\drivers\usbser.sys [73216] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - USB Mass Storage Class Driver.) -- C:\Windows\System32\drivers\USBSTOR.SYS [138552] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\Windows\System32\drivers\usbuhci.sys [35840] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - USB XHCI Driver.) -- C:\Windows\System32\drivers\USBXHCI.SYS [467768] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - Virtual Drive Root Enumerator.) -- C:\Windows\System32\drivers\vdrvroot.sys [55608] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:46 A . (.Microsoft Corporation - Driver Verifier Extension.) -- C:\Windows\System32\drivers\VerifierExt.sys [237056] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:02 A . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\Windows\System32\drivers\vhdmp.sys [752136] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - Virtual HID Framework (VHF) Driver.) -- C:\Windows\System32\drivers\vhf.sys [37376] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/02/13 07:06:02 A . (.Microsoft Corporation - Microsoft Hyper-V Virtualization Infrastruc.) -- C:\Windows\System32\drivers\Vid.sys [519992] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:46 A . (.Microsoft Corporation - Video Port Driver.) -- C:\Windows\System32\drivers\videoprt.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:29:24 A . (.Microsoft Corporation - Hyper-V VMBus KMCL.) -- C:\Windows\System32\drivers\vmbkmcl.sys [91960] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Microsoft Hyper-V Virtual Machine Bus Child.) -- C:\Windows\System32\drivers\vmbus.sys [127288] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\Windows\System32\drivers\VMBusHID.sys [27648] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Virtual Machine Generation Counter.) -- C:\Windows\System32\drivers\vmgencounter.sys [21816] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Virtual Machine Guest Infrastructure Driver.) -- C:\Windows\System32\drivers\vmgid.sys [18232] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\Windows\System32\drivers\vms3cap.sys [9216] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Virtual Storage Filter Driver.) -- C:\Windows\System32\drivers\vmstorfl.sys [51512] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:02 A . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\drivers\volmgr.sys [90112] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:29:16 A . (.Microsoft Corporation - Volume Manager Extension Driver.) -- C:\Windows\System32\drivers\volmgrx.sys [389944] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:45 A . (.Microsoft Corporation - Volume Shadow Copy driver.) -- C:\Windows\System32\drivers\volsnap.sys [427832] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - Volume driver.) -- C:\Windows\System32\drivers\volume.sys [16696] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:02 A . (.Microsoft Corporation - Virtual PCI Bus.) -- C:\Windows\System32\drivers\vpci.sys [80400] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [166712] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\Windows\System32\drivers\VSTXRAID.SYS [305464] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:24 A . (.Microsoft Corporation - Virtual Wireless Bus Driver.) -- C:\Windows\System32\drivers\vwifibus.sys [27648] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:24 A . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\Windows\System32\drivers\vwififlt.sys [78336] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:24 A . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\Windows\System32\drivers\vwifimp.sys [47616] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:17 A . (.Microsoft Corporation - Wacom Serial Pen Tablet HID Driver.) -- C:\Windows\System32\drivers\wacompen.sys [30720] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/02/13 07:06:14 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\Windows\System32\drivers\wanarp.sys [92160] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:32 A . (.Microsoft Corporation - Watchdog Driver.) -- C:\Windows\System32\drivers\watchdog.sys [63488] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:38 A . (.Microsoft Corporation - Windows Container Isolation FS Filter Drive.) -- C:\Windows\System32\drivers\wcifs.sys [169784] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:04 A . (.Microsoft Corporation - Windows Container Name Virtualization FS Fi.) -- C:\Windows\System32\drivers\wcnfs.sys [87552] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:26 A . (.Microsoft Corporation - Microsoft antimalware boot driver.) -- C:\Windows\System32\drivers\WdBoot.sys [46584] =>.Microsoft® O58 - SDL:2018/09/15 08:28:46 A . (.Microsoft Corporation - Kernel Mode Driver Framework Runtime.) -- C:\Windows\System32\drivers\Wdf01000.sys [843496] =>.Microsoft® O58 - SDL:2018/09/15 08:28:26 A . (.Microsoft Corporation - Microsoft antimalware file system filter dr.) -- C:\Windows\System32\drivers\WdFilter.sys [340008] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:46 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\Windows\System32\drivers\WdfLdr.sys [67304] =>.Microsoft® O58 - SDL:2018/09/15 08:28:26 A . (.Microsoft Corporation - WDI Driver Framework Driver.) -- C:\Windows\System32\drivers\WdiWiFi.sys [806912] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:39 A . (.Microsoft Corporation - WDM Companion Filter.) -- C:\Windows\System32\drivers\WdmCompanionFilter.sys [22016] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:26 A . (.Microsoft Corporation - Windows Defender Network Stream Filter.) -- C:\Windows\System32\drivers\WdNisDrv.sys [61992] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:46 A . (.Microsoft Corporation - Windows Error Reporting Kernel Driver.) -- C:\Windows\System32\drivers\werkernel.sys [49976] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:36 A . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) -- C:\Windows\System32\drivers\wfplwfs.sys [179712] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:42 A . (.Microsoft Corporation - Wim file system Driver.) -- C:\Windows\System32\drivers\wimmount.sys [36664] =>.Microsoft Windows® O58 - SDL:2019/02/13 07:06:11 A . (.Microsoft Corporation - Windows Trusted Runtime Interface Driver.) -- C:\Windows\System32\drivers\WindowsTrustedRT.sys [74424] =>.Microsoft® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Windows Trusted Runtime Service Proxy Drive.) -- C:\Windows\System32\drivers\WindowsTrustedRTProxy.sys [17896] =>.Microsoft® O58 - SDL:2022/12/09 21:22:17 A . (...) -- C:\Windows\System32\drivers\WindscribeSplitTunnel.sys [35752] {0AF4B47E1A5EEDA06DB90E772E799A07}. O58 - SDL:2022/12/09 21:22:17 A . (.WireGuard LLC - Wintun Driver.) -- C:\Windows\System32\drivers\windtun420.sys [47544] {0AF4B47E1A5EEDA06DB90E772E799A07}. =>.WireGuard LLC O58 - SDL:2018/09/15 08:29:24 A . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\Windows\System32\drivers\winhv.sys [32568] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:29:13 A . (.Microsoft Corporation - Windows Hypervisor Root Interface Driver.) -- C:\Windows\System32\drivers\winhvr.sys [86328] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:18 A . (.Mellanox - Kernel WinMad.) -- C:\Windows\System32\drivers\winmad.sys [37688] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:22 A . (.Microsoft Corporation - Windows NAT Driver.) -- C:\Windows\System32\drivers\winnat.sys [240128] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:46 A . (.Microsoft Corporation - Windows QUIC Driver.) -- C:\Windows\System32\drivers\winquic.sys [156984] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:19 A . (.Microsoft Corporation - Windows WinUSB Class Driver.) -- C:\Windows\System32\drivers\winusb.sys [95744] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:18 A . (.Mellanox - Kernel WinVerbs.) -- C:\Windows\System32\drivers\winverbs.sys [77856] =>.Microsoft Windows® O58 - SDL:2022/12/19 19:09:38 AT . (.WireGuard LLC - WireGuard Driver.) -- C:\Windows\System32\drivers\wireguard.sys [489368] =>.Microsoft® O58 - SDL:2018/09/15 08:28:18 A . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\Windows\System32\drivers\wmiacpi.sys [19456] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:45 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\Windows\System32\drivers\wmilib.sys [20480] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:42 A . (.Microsoft Corporation - Windows Overlay Filter.) -- C:\Windows\System32\drivers\wof.sys [224056] =>.Microsoft Windows® O58 - SDL:2018/09/15 10:10:01 A . (.Microsoft Corporation - Windows Portable Device Upper Class Filter.) -- C:\Windows\System32\drivers\WpdUpFltr.sys [30008] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:46 A . (.Microsoft Corporation - WPP Trace Recorder.) -- C:\Windows\System32\drivers\WppRecorder.sys [40448] =>.Microsoft Windows® O58 - SDL:2018/09/15 08:28:26 A . (.Microsoft Corporation - Winsock2 IFS Layer.) -- C:\Windows\System32\drivers\ws2ifsl.sys [24576] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:52 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\Windows\System32\drivers\WUDFPf.sys [134656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:52 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\Windows\System32\drivers\WUDFRd.sys [282112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:15 A . (.Microsoft Corporation - Game Input Protocol Driver.) -- C:\Windows\System32\drivers\xboxgip.sys [317440] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:15 A . (.Microsoft Corporation - XINPUT filter driver for HID.) -- C:\Windows\System32\drivers\xinputhid.sys [48128] [Unsigned] =>.Microsoft Corporation O58 - SDL:2024/07/17 02:19:00 A . (.miHoYo - HoYoKProtect.) -- C:\Windows\System32\HoYoKProtect.sys [3698840] =>.Microsoft® O58 - SDL:2019/02/13 07:06:12 A . (.Microsoft Corporation - Full/Desktop Multi-User Win32 Driver.) -- C:\Windows\System32\win32k.sys [543744] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/02/13 07:06:11 A . (.Microsoft Corporation - Base Win32k Kernel Driver.) -- C:\Windows\System32\win32kbase.sys [2488320] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/02/13 07:06:12 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\Windows\System32\win32kfull.sys [3662336] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:28:38 A . (.Microsoft Corporation - Win32k non session driver.) -- C:\Windows\System32\win32kns.sys [17920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/09/15 08:29:05 A . (.Microsoft Corporation - Full/Desktop Multi-User Win32 Driver.) -- C:\Windows\SysWOW64\win32k.sys [320000] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/02/13 07:06:03 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\Windows\SysWOW64\win32kfull.sys [2721280] [Unsigned] =>.Microsoft Corporation ---\\ Last modified or created user files (1) - 10s O61 - LFC: 2024/07/20 22:37:14 A . (..) -- C:\ProgramData\AvastSvcpCP\wsc.dll [81920] [Unsigned] ---\\ File Associations Shell Spawning (10) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Event Viewer Snapin Launcher.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Registry Editor.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value ---\\ Start Menu Internet (12) - 0s O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\Windows\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\Windows\System32\ie4ushowIE.exe =>.Microsoft Corporation ---\\ Search Browser Infection (1) - 8s O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com ---\\ Search Svchost Services (50) - 1s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\Windows\System32\certprop.dll [192512] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\Windows\System32\certprop.dll [192512] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - Server Service DLL.) -- C:\Windows\System32\srvsvc.dll [273920] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Group Policy Client.) -- C:\Windows\System32\gpsvc.dll [1280000] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - IKE extension.) -- C:\Windows\System32\IKEEXT.DLL [1058304] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) -- C:\Windows\System32\iphlpsvc.dll [833024] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - Secondary Logon Service DLL.) -- C:\Windows\System32\seclogon.dll [31232] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - iSCSI Discovery service.) -- C:\Windows\System32\iscsiexe.dll [151552] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Microsoft EAPHost service.) -- C:\Windows\System32\eapsvc.dll [110080] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Task Scheduler Service.) -- C:\Windows\System32\schedsvc.dll [901632] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [228352] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [469504] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Remote Desktop Configuration service.) -- C:\Windows\System32\SessEnv.dll [478208] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Problem Reports and Solutions.) -- C:\Windows\System32\wercplsupport.dll [121856] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [270336] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [1671680] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Provides infrastructure support for deployi.) -- C:\Windows\System32\LanguageOverlayServer.dll [312320] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [223744] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1265152] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - Windows Managent Service DLL.) -- C:\Windows\System32\Windows.Internal.Management.dll [949248] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: WManSvc (WManSvc) . (.Microsoft Corporation - Windows Management Service DLL.) -- C:\Windows\System32\Windows.Management.Service.dll [370176] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Token Broker.) -- C:\Windows\System32\TokenBroker.dll [1462272] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Geolocation Service.) -- C:\Windows\System32\lfsvc.dll [47104] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Irmon (Irmon) . (.Microsoft Corporation - Infrared Monitor.) -- C:\Windows\System32\irmon.dll [24576] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\Windows\System32\rasauto.dll [104448] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\Windows\System32\rasmans.dll [925184] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\Windows\System32\mprdim.dll [500736] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\Windows\System32\Sens.dll [73728] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Microsoft NAT Helper Components.) -- C:\Windows\System32\ipnathlp.dll [629760] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Microsoft® Windows(TM) Telephony Server.) -- C:\Windows\System32\tapisrv.dll [310784] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\Windows\System32\wuaueng.dll [2992640] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) -- C:\Windows\System32\qmgr.dll [1388032] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) -- C:\Windows\System32\shsvcs.dll [616448] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [58368] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Flight Settings.) -- C:\Windows\System32\flightsettings.dll [889344] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Windows Push Notification System Service.) -- C:\Windows\System32\WpnService.dll [255488] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Microsoft® Account Service.) -- C:\Windows\System32\wlidsvc.dll [2185728] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1228800] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Update Session Orchestrator Core.) -- C:\Windows\System32\usocore.dll [883712] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Network Setup Service.) -- C:\Windows\System32\NetSetupSvc.dll [332800] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Natural Authentication Service.) -- C:\Windows\System32\NaturalAuth.dll [833024] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Windows Shell Theme Service Dll.) -- C:\Windows\System32\themeservice.dll [67584] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Device Setup Manager.) -- C:\Windows\System32\DeviceSetupManager.dll [240128] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Microsoft Network Connectivity Assistant Se.) -- C:\Windows\System32\NcaSvc.dll [169984] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Application Information Service.) -- C:\Windows\System32\appinfo.dll [176640] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [72704] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1049600] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [1255936] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Software installation Service.) -- C:\Windows\System32\appmgmts.dll [198656] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - BDE Service.) -- C:\Windows\System32\bdesvc.dll [454144] [Unsigned] =>.Microsoft Corporation ---\\ Firewall Active Exception List (40) - 10s O87 - FAEL: "{B27CBBAC-F3C0-4AC3-8701-1B1A0E0A1337}" [In-None-P6-TRUE] .(.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.Nvidia Corporation® O87 - FAEL: "{89F111F2-E70E-42D2-B312-82F28F6F4E16}" [In-None-P17-TRUE] .(.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.Nvidia Corporation® O87 - FAEL: "TCP Query User{EAB36E9D-E139-4252-9B53-08710CC65244}D:\games\lol\riot games\riot client\riotclientservices.exe" [In-None-P6-TRUE] .(...) -- D:\games\lol\riot games\riot client\riotclientservices.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "UDP Query User{9A59EF00-3C0E-41F7-B393-391DB7E903A7}D:\games\lol\riot games\riot client\riotclientservices.exe" [In-None-P17-TRUE] .(...) -- D:\games\lol\riot games\riot client\riotclientservices.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "TCP Query User{189015CD-B94B-4506-B7E5-06C2655F24A8}C:\lol\riot games\riot client\riotclientservices.exe" [In-None-P6-TRUE] .(...) -- C:\lol\riot games\riot client\riotclientservices.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "UDP Query User{6028716F-129B-484C-8A62-BE851AAE6DF6}C:\lol\riot games\riot client\riotclientservices.exe" [In-None-P17-TRUE] .(...) -- C:\lol\riot games\riot client\riotclientservices.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{B79C4394-16BF-494B-8173-4FAB8AF0B311}" [In-None-P6-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O87 - FAEL: "{0F24408A-36E0-40FB-AF2D-F2FD3378D072}" [In-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O87 - FAEL: "TCP Query User{1CB24F54-482D-48A7-9FD7-30C0D18DBA59}C:\users\katakuri3d2y\appdata\local\discord\app-1.0.9008\discord.exe" [In-None-P6-TRUE] .(.Discord Inc. - Discord.) -- C:\users\katakuri3d2y\appdata\local\discord\app-1.0.9008\discord.exe =>.SUP.Discord O87 - FAEL: "UDP Query User{7D6810D5-F17F-468A-9A39-3D59BF4DC5DC}C:\users\katakuri3d2y\appdata\local\discord\app-1.0.9008\discord.exe" [In-None-P17-TRUE] .(.Discord Inc. - Discord.) -- C:\users\katakuri3d2y\appdata\local\discord\app-1.0.9008\discord.exe =>.SUP.Discord O87 - FAEL: "{BB94BD92-6919-4A15-967F-FDC0DA359C6F}" [In-None-P6-TRUE] .(...) -- C:\LOL\Riot Games\League of Legends\LeagueClient.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{E63032CB-5F0A-478C-8555-DB9C0E36876A}" [In-None-P17-TRUE] .(...) -- C:\LOL\Riot Games\League of Legends\LeagueClient.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "TCP Query User{54C8FC97-4E1B-413B-9CC2-3D1DE3D87582}C:\sedatools\lib\sipc\1.2.3.r\x86-nt\sipc_console.exe" [In-None-P6-TRUE] .(...) -- C:\sedatools\lib\sipc\1.2.3.r\x86-nt\sipc_console.exe [Unsigned] O87 - FAEL: "UDP Query User{702BFD88-BDFA-4AB6-AC8A-866B1C7B8270}C:\sedatools\lib\sipc\1.2.3.r\x86-nt\sipc_console.exe" [In-None-P17-TRUE] .(...) -- C:\sedatools\lib\sipc\1.2.3.r\x86-nt\sipc_console.exe [Unsigned] O87 - FAEL: "TCP Query User{9B4A3F72-1D32-4B4E-A1C2-A0E6A79FDB74}D:\games\far cry 3 - duology\far cry 3\bin\farcry3_d3d11.exe" [In-None-P6-TRUE] .(.Ubisoft Entertainment - Far Cry 3.) -- D:\games\far cry 3 - duology\far cry 3\bin\farcry3_d3d11.exe =>.Ubisoft Entertainment® O87 - FAEL: "UDP Query User{E19A1EB7-8081-4DBA-B331-513A6B86E9D5}D:\games\far cry 3 - duology\far cry 3\bin\farcry3_d3d11.exe" [In-None-P17-TRUE] .(.Ubisoft Entertainment - Far Cry 3.) -- D:\games\far cry 3 - duology\far cry 3\bin\farcry3_d3d11.exe =>.Ubisoft Entertainment® O87 - FAEL: "TCP Query User{F1BB6371-6222-4CC6-9AC8-39196897552F}D:\games\far cry 3 - duology\far cry 3\bin\farcry3.exe" [In-None-P6-TRUE] .(.Ubisoft Entertainment - Far Cry 3.) -- D:\games\far cry 3 - duology\far cry 3\bin\farcry3.exe =>.Ubisoft Entertainment® O87 - FAEL: "UDP Query User{0492318C-559D-4F54-B5E0-DC885D35A8D5}D:\games\far cry 3 - duology\far cry 3\bin\farcry3.exe" [In-None-P17-TRUE] .(.Ubisoft Entertainment - Far Cry 3.) -- D:\games\far cry 3 - duology\far cry 3\bin\farcry3.exe =>.Ubisoft Entertainment® O87 - FAEL: "TCP Query User{E4805F3B-EEF3-4B5F-9ED3-CB7686F3F0C5}C:\sedatools\lib\deckbuild\5.0.10.r\x86_64-windows\deckbuild.exe" [In-None-P6-TRUE] .(...) -- C:\sedatools\lib\deckbuild\5.0.10.r\x86_64-windows\deckbuild.exe [Unsigned] O87 - FAEL: "UDP Query User{2BEAE744-179A-40C7-A113-48A7E7AE1D8D}C:\sedatools\lib\deckbuild\5.0.10.r\x86_64-windows\deckbuild.exe" [In-None-P17-TRUE] .(...) -- C:\sedatools\lib\deckbuild\5.0.10.r\x86_64-windows\deckbuild.exe [Unsigned] O87 - FAEL: "TCP Query User{E7C2D1F0-8A22-4AEF-AC5A-DB90BBC77A03}C:\sedatools\lib\tonyplot\3.10.22.r\x86_64-windows\tonyplot.exe" [In-None-P6-TRUE] .(...) -- C:\sedatools\lib\tonyplot\3.10.22.r\x86_64-windows\tonyplot.exe [Unsigned] O87 - FAEL: "UDP Query User{D887FF8E-7A89-44FB-BF1F-0252E0F607B8}C:\sedatools\lib\tonyplot\3.10.22.r\x86_64-windows\tonyplot.exe" [In-None-P17-TRUE] .(...) -- C:\sedatools\lib\tonyplot\3.10.22.r\x86_64-windows\tonyplot.exe [Unsigned] O87 - FAEL: "{8EA04A75-38F7-43D2-AEB1-59CAF2FE547D}" [In-None-P17-TRUE] .(.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.Nvidia Corporation® O87 - FAEL: "{4151701C-E9E7-4EB6-841B-730760452493}" [In-None-P17-TRUE] .(.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.Nvidia Corporation® O87 - FAEL: "{E97F1D5C-1AC1-46DE-B30C-8A216176D88F}" [In-None-P6-TRUE] .(.NVIDIA Corporation - NVIDIA Streamer Server Component.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe =>.Nvidia Corporation® O87 - FAEL: "{E5FC0681-A146-4054-A7EB-5B344D933F74}" [In-None-P17-TRUE] .(.NVIDIA Corporation - NVIDIA Streamer Server Component.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe =>.Nvidia Corporation® O87 - FAEL: "{254D7FD8-73AF-4489-9C0D-4519DC5B7642}" [In-None-P6-TRUE] .(.The qBittorrent Project - qBittorrent - A Bittorrent Client.) -- C:\Program Files\qBittorrent\qbittorrent.exe [Unsigned] =>.The qBittorrent project O87 - FAEL: "{DC34C918-C5B8-473B-ABA2-8B1357B54C0E}" [In-None-P17-TRUE] .(.The qBittorrent Project - qBittorrent - A Bittorrent Client.) -- C:\Program Files\qBittorrent\qbittorrent.exe [Unsigned] =>.The qBittorrent project O87 - FAEL: "TCP Query User{BCE04B7F-0755-4DEF-B331-0796CC6EB73F}C:\lol\riot games\riot client\riotclientelectron\riot client.exe" [In-None-P6-TRUE] .(...) -- C:\lol\riot games\riot client\riotclientelectron\riot client.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "UDP Query User{43FED250-69BE-4842-BE25-0F8AB7F4AECD}C:\lol\riot games\riot client\riotclientelectron\riot client.exe" [In-None-P17-TRUE] .(...) -- C:\lol\riot games\riot client\riotclientelectron\riot client.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "TCP Query User{2FAE82A8-4508-4EF9-8DD5-89F585299AFB}C:\program files\qbittorrent\qbittorrent.exe" [In-None-P6-TRUE] .(.The qBittorrent Project - qBittorrent - A Bittorrent Client.) -- C:\program files\qbittorrent\qbittorrent.exe [Unsigned] =>.The qBittorrent project O87 - FAEL: "UDP Query User{DC71A772-A1EF-4536-A3ED-1726780658D3}C:\program files\qbittorrent\qbittorrent.exe" [In-None-P17-TRUE] .(.The qBittorrent Project - qBittorrent - A Bittorrent Client.) -- C:\program files\qbittorrent\qbittorrent.exe [Unsigned] =>.The qBittorrent project O87 - FAEL: "TCP Query User{C77F455B-5F73-4B2D-BE02-37F8D184BB41}C:\lol\riot games\riot client\riotclientelectron\riot client.exe" [In-None-P6-TRUE] .(...) -- C:\lol\riot games\riot client\riotclientelectron\riot client.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "UDP Query User{95906A45-AE9F-4303-8498-F3303CF20B6E}C:\lol\riot games\riot client\riotclientelectron\riot client.exe" [In-None-P17-TRUE] .(...) -- C:\lol\riot games\riot client\riotclientelectron\riot client.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{E01B7A64-1E6A-4B1F-9413-F93CE3A70713}" [In-None-P17-TRUE] .(.CHENGDU YIWO Tech Development Co., Ltd - EaseUS Data Recovery Wizard.) -- C:\Program Files\EaseUS\EaseUS Data Recovery Wizard\DRWUI.exe {03BD221937F2D796FA7029547B190301}. =>.CHENGDU YIWO Tech Development Co., Ltd O87 - FAEL: "TCP Query User{E4416D09-1567-4118-8C80-9B97B9606C3D}C:\lol new\riot games\riot client\riotclientelectron\riot client.exe" [In-None-P6-TRUE] .(.Riot Games, Inc. - Riot Client.) -- C:\lol new\riot games\riot client\riotclientelectron\riot client.exe {0CD1D038015129A43DA0AEE211859C8E}. =>.Riot Games, Inc. O87 - FAEL: "UDP Query User{D154DEA5-32DA-43B6-98E0-DFD29B785E78}C:\lol new\riot games\riot client\riotclientelectron\riot client.exe" [In-None-P17-TRUE] .(.Riot Games, Inc. - Riot Client.) -- C:\lol new\riot games\riot client\riotclientelectron\riot client.exe {0CD1D038015129A43DA0AEE211859C8E}. =>.Riot Games, Inc. O87 - FAEL: "{1F2B43CA-F700-4F59-AEE2-68C00CA5410D}" [In-None-P6-TRUE] .(.PROXIMA BETA PTE. LIMITED All Rights Reserved. - Tarisland Minidown.exe.) -- C:\Users\Katakuri3D2Y\AppData\Local\TARISMiniloader\TARISMiniloader.exe {08B400989A7B9F0D6E71BE7494B332E1}. O87 - FAEL: "{A0EF978E-B40C-4164-95D6-3EAA00A91E7F}" [In-None-P17-TRUE] .(.PROXIMA BETA PTE. LIMITED All Rights Reserved. - Tarisland Minidown.exe.) -- C:\Users\Katakuri3D2Y\AppData\Local\TARISMiniloader\TARISMiniloader.exe {08B400989A7B9F0D6E71BE7494B332E1}. O87 - FAEL: "{000575A7-0491-4C90-BE31-D59E3E9BB1D9}" [In-None-P17-TRUE] .(.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC® ---\\ Product Upgrade Codes (22) - 1s O90 - PUC: "009B70435F732CC46B21C55D5D081A36" [HKLM] . (.Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.32.31332.) =>.Microsoft Corporation O90 - PUC: "12B8D03ED28D112328CCF0A0D541598E" [HKLM] . (.Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40660.) =>.Microsoft Corporation O90 - PUC: "1926E8D15D0BCE53481466615F760A7F" [HKLM] . (.Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219.) =>.bl.org O90 - PUC: "1D5E3C0FEDA1E123187686FED06E995A" [HKLM] . (.Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219.) =>.bl.org O90 - PUC: "3EE9944F661AC69418BB151DCBCD079A" [HKLM] . (.Microsoft Visual C++ 2022 X64 Additional Runtime - 14.32.31332.) =>.Microsoft Corporation O90 - PUC: "44DB0475D85BA123FA0CD6D35465DDC6" [HKLM] . (.Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40660.) =>.Microsoft Corporation O90 - PUC: "52CA2798E254EFF449A5BEE9822C3022" [HKLM] . (.Microsoft Visual C++ 2022 X86 Additional Runtime - 14.32.31332.) =>.Microsoft Corporation O90 - PUC: "67D6ECF5CD5FBA732B8B22BAC8DE1B4D" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161.) =>.bl.org O90 - PUC: "6E79A9F7666E5E115B288B68788E3222" [HKLM] . (.Hextech Repair Tool.) -- C:\Windows\Installer\{7F9A97E6-E666-11E5-B582-B88687E82322}\Hextech_Repair_Tool_exe_icon O90 - PUC: "6E815EB96CCE9A53884E7857C57002F0" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161.) =>.bl.org O90 - PUC: "7A924F741A9AD5B479B74E85BE81F831" [HKLM] . (.ImageGlass.) -- C:\Windows\Installer\{47F429A7-A9A1-4B5D-977B-E458EB188F13}\ImageGlass_1.exe O90 - PUC: "7C9F8B73BF303523781852719CD9C700" [HKLM] . (.Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "7F81AAEA69C934A4CB70B8884A19E3BE" [HKLM] . (.Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.32.31332.) =>.Microsoft Corporation O90 - PUC: "8520DAD7C5154DD39846DB1714990E7F" [HKLM] . (.Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40660.) =>.Microsoft Corporation O90 - PUC: "9ED79B6D1346FCC41B3C055C379AA3E6" [HKLM] . (.LibreOffice 7.4.4.2.) -- C:\Windows\Installer\{D6B97DE9-6431-4CCF-B1C3-50C573A93A6E}\soffice.ico =>.Open Source O90 - PUC: "A12B171E85ADD2347AB41DB302B44A77" [HKLM] . (.UE Prerequisites (x64).) -- C:\Windows\Installer\{E171B21A-DA58-432D-A74B-D13B204BA477}\Setup.ico =>.Legitimate O90 - PUC: "A2A828655F2ECF7498E838B73CB12876" [HKLM] . (.ImageGlass.) -- C:\Windows\Installer\{56828A2A-E2F5-47FC-898E-837BC31B8267}\ImageGlass_1.exe O90 - PUC: "C025571B2A687A53689168CD7369889B" [HKLM] . (.Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "C3AEB2FCAE628F23AAB933F1E743AB79" [HKLM] . (.Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "CE6380BC270BD863282B3D74B09F7570" [HKLM] . (.Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40660.) =>.Microsoft Corporation O90 - PUC: "DC8A59DBF9D1DA5389A1E3975220E6BB" [HKLM] . (.Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "EDE8C96D5CBBB634E8E05C6A3D11FCF4" [HKLM] . (.Microsoft XNA Framework Redistributable 4.0 Refresh.) -- C:\Windows\Installer\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}\ProductIcon =>.bl.org ---\\ Windows Installer Scan (5) - 6s [MD5.26D24F9F326FC249D2A0A2F3FFE671D0] [WIS][2023/02/25 17:18:28] (.Riot Games, Inc. - Hextech Repair Tool Installer.) -- C:\Windows\Installer\1e9e883.msi [77705216] =>.Riot Games, Inc. [MD5.FEE2A97FF61F2D9DC30A93FC52394699] [WIS][2023/01/23 08:44:51] (.The Document Foundation - LibreOffice 7.4.) -- C:\Windows\Installer\33f799c.msi [355598336] =>.The Document Foundation [MD5.E4A89A6094B0E41FBA788741CF0BE820] [WIS][2022/05/04 21:52:50] (.Epic Games, Inc. - UE Prerequisites (x64).) -- C:\Windows\Installer\5237085.msi [11968512] =>.Epic Games, Inc. [MD5.9E26FA2B5A96725025D58A9161C45C8E] [WIS][2023/04/15 06:50:31] (.Duong Dieu Phap - ImageGlass.) -- C:\Windows\Installer\79bca80.msi [28530176] =>.Duong Dieu Phap [MD5.3EB5CCE1200B46BBD1D2862624D7578D] [WIS][2022/11/29 21:50:46] (.Duong Dieu Phap - ImageGlass.) -- C:\Windows\Installer\aedf5c7.msi [26937856] =>.Duong Dieu Phap ---\\ FEATURE CONTROL. (127) - 0s [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate ---\\ Observer Of Events (79) - 46s Application.Error: rpc.sflmserverd (721) ~Numéro: 35633 ~Date: 07/21/2024 05:48:01 PM ~ID: 0 ~Description: Unable to register (SFLMPROG, SFLMVERS(3), udp). ~Suggestion: Aucune Application.Warning: rpc.dll (320) ~Numéro: 35632 ~Description: sunrpc report: 0Cannot register service: RPC: Unable to receiveError 10054, Application.Error: Application Error (51) ~Numéro: 35438 ~Date: 07/19/2024 12:58:49 AM ~ID: 1000 ~Description: Faulting application name: ShellExperienceHost.exe, version: 10.0.17763.1, time stamp: 0x5b9c8bd8 Faulting module name: Windows.UI.ActionCenter.dll, version: 10.0.17763.292, time stamp: 0x5c3ec5ae Exception code: 0xc0000409 Fault offset: 0x0000000000 ~Suggestion: Réparer ou réinstaller l'application. Application.Error: .NET Runtime (8) ~Numéro: 34662 ~Date: 07/07/2024 06:50:43 AM ~ID: 1026 ~Description: Application: igcmd.exeFramework Version: v4.0.30319Description: The process was terminated due to an unhandled exception.Exception Info: System.Threading.ThreadStateException at System.Windows.Forms.WebBrowserBase..ctor(System.String) at System.W ~Suggestion: Essayer d'installer la dernière version de l'application ou du dernier correctif Application.Error: Application Hang (5) ~Numéro: 34528 ~Date: 07/04/2024 10:35:58 PM ~ID: 1002 ~Description: The program svchost.exe version 10.0.17763.1 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel. Process ID: 784 Start ~Suggestion: Essayer les commandes suivantes ipconfig /release et ipconfig / renew. Application.Error: SideBySide (1) ~Numéro: 32573 ~Date: 05/28/2024 03:23:43 PM ~ID: 33 ~Description: Activation context generation failed for "D:\my stuff\PC stuff\Programs\vcredist_arm.exe". Dependent Assembly Microsoft.Windows.Common-Controls,language="*",processorArchitecture="arm",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0. ~Suggestion: Ces erreurs peuvent généralement être ignorées System.Error: DCOM (192) ~Numéro: 88234 ~Date: 07/21/2024 05:48:53 PM ~ID: 10016 ~Description: application-specificLocalActivation{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}{15C20B67-12E7-4BB6-92BB-7AFF07997402}DESKTOP-UKRQR1TKatakuri3D2YS-1-5-21-3281570312-2569251169-3552750206-1001LocalHost (Using LRPC)UnavailableUnavailable ~Suggestion: Vérifier les autorisations pour l'accès DCOM System.Warning: Microsoft-Windows-DNS-Client (73) ~Numéro: 88223 ~ID: 1014 ~Description: Name resolution for the name wpad timed out after none of the configured DNS servers responded. ~Suggestion: https://social.technet.microsoft.com/wiki/contents/articles/3336.event-id-1014-microsoft-windows-dns-client.aspx System.Error: Service Control Manager (89) ~Numéro: 88222 ~Date: 07/21/2024 05:47:56 PM ~ID: 7000 ~Description: The sflmpcidl service failed to start due to the following error: %sflmpcidl275 System.Error: Application Popup (30) ~Numéro: 88221 ~ID: 1060 ~Description: \??\C:\sedatools\lib\rpc.sflmserverd\8.2.12.R\x86-nt\sflmpcidl. System.Warning: BTHUSB (193) ~Numéro: 88197 ~Date: 07/21/2024 05:47:47 PM ~ID: 34 ~Description: The local adapter does not support an important Low Energy controller state to support peripheral mode. The minimum required supported state mask is 0x2db1f7fffff, got 0x1fffffff. Low Energy peripheral role functionality will not be available. System.Warning: Disk (1) ~Numéro: 88145 ~Date: 07/21/2024 05:09:58 PM ~ID: 51 ~Description: An error was detected on device \Device\Harddisk2\DR2 during a paging operation. System.Warning: Microsoft-Windows-Time-Service (63) ~Numéro: 88118 ~Date: 07/21/2024 01:55:04 PM ~ID: 134 ~Description: NtpClient was unable to set a manual peer to use as a time source because of DNS resolution error on 'time.windows.com,0x9'. NtpClient will try again in 15 minutes and double the reattempt interval thereafter. The error was: No such host is known. (0 ~Suggestion: Resynchroniser le client avec l'homologue de source de temps System.Warning: iaStorA (30) ~Numéro: 88107 ~Date: 07/21/2024 06:32:46 AM ~ID: 129 ~Description: Reset to device, \Device\RaidPort0, was issued. System.Warning: Microsoft-Windows-Kernel-Processor-Power (32) ~Numéro: 88101 ~Date: 07/21/2024 05:51:44 AM ~ID: 37 ~Description: The speed of Hyper-V logical processor 0 is being limited by system firmware. The processor has been in this reduced performance state for 8 seconds since the last report. ---\\ Additional Scan (O88) (89) - 23s C:\Users\Katakuri3D2Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc =>.SUP.Discord HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} =>.SUP.Orphan HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan C:\Users\Katakuri3D2Y\AppData\Local\Google\Chrome\User Data\Default\File System\000 =>.SUP.Temporary.Chrome C:\Users\Katakuri3D2Y\AppData\Local\Google\Chrome\User Data\Default\File System\001 =>.SUP.Temporary.Chrome C:\Users\Katakuri3D2Y\AppData\Local\Google\Chrome\User Data\Default\File System\002 =>.SUP.Temporary.Chrome C:\Users\Katakuri3D2Y\AppData\Local\Google\Chrome\User Data\Default\File System\003 =>.SUP.Temporary.Chrome C:\Users\Katakuri3D2Y\AppData\Local\Google\Chrome\User Data\Default\File System\004 =>.SUP.Temporary.Chrome C:\Users\Katakuri3D2Y\AppData\Local\Google\Chrome\User Data\Default\File System\005 =>.SUP.Temporary.Chrome C:\Users\Katakuri3D2Y\AppData\Local\Google\Chrome\User Data\Default\File System\006 =>.SUP.Temporary.Chrome C:\Users\Katakuri3D2Y\AppData\Local\Google\Chrome\User Data\Default\File System\007 =>.SUP.Temporary.Chrome C:\Users\Katakuri3D2Y\AppData\Local\Google\Chrome\User Data\Default\File System\008 =>.SUP.Temporary.Chrome C:\Users\Katakuri3D2Y\AppData\Local\Google\Chrome\User Data\Default\File System\009 =>.SUP.Temporary.Chrome C:\Users\Katakuri3D2Y\AppData\Local\Google\Chrome\User Data\Default\File System\010 =>.SUP.Temporary.Chrome C:\Users\Katakuri3D2Y\AppData\Local\Google\Chrome\User Data\Default\File System\011 =>.SUP.Temporary.Chrome C:\Users\Katakuri3D2Y\AppData\Local\Google\Chrome\User Data\Default\File System\012 =>.SUP.Temporary.Chrome C:\Users\Katakuri3D2Y\AppData\Local\Google\Chrome\User Data\Default\File System\013 =>.SUP.Temporary.Chrome C:\Users\Katakuri3D2Y\AppData\Local\Google\Chrome\User Data\Default\File System\014 =>.SUP.Temporary.Chrome C:\Users\Katakuri3D2Y\AppData\Local\Google\Chrome\User Data\Default\File System\015 =>.SUP.Temporary.Chrome C:\Users\Katakuri3D2Y\AppData\Local\Google\Chrome\User Data\Default\File System\016 =>.SUP.Temporary.Chrome C:\Users\Katakuri3D2Y\AppData\Local\Google\Chrome\User Data\Default\File System\017 =>.SUP.Temporary.Chrome C:\Users\Katakuri3D2Y\AppData\Local\Google\Chrome\User Data\Default\File System\018 =>.SUP.Temporary.Chrome C:\Users\Katakuri3D2Y\AppData\Local\Google\Chrome\User Data\Default\File System\019 =>.SUP.Temporary.Chrome C:\Users\Katakuri3D2Y\AppData\Local\Google\Chrome\User Data\Default\File System\020 =>.SUP.Temporary.Chrome C:\Users\Katakuri3D2Y\AppData\Local\Google\Chrome\User Data\Default\File System\021 =>.SUP.Temporary.Chrome C:\Users\Katakuri3D2Y\AppData\Local\Google\Chrome\User Data\Default\File System\022 =>.SUP.Temporary.Chrome C:\Users\Katakuri3D2Y\AppData\Local\Google\Chrome\User Data\Default\File System\023 =>.SUP.Temporary.Chrome C:\Users\Katakuri3D2Y\AppData\Local\Google\Chrome\User Data\Default\File System\024 =>.SUP.Temporary.Chrome [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\games\LOL\Riot Games\League of Legends\Game\League of Legends.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\games\LOL\Riot Games\League of Legends\Game\League of Legends.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\lol\riot games\riot client\riotclientservices.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\lol\riot games\riot client\riotclientservices.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\LOL\Riot Games\League of Legends\Game\League of Legends.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\LOL\Riot Games\League of Legends\Game\League of Legends.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\games\ArcheAge\ArcheAge_Launcher.exe.FriendlyAppName =>.SUP.Orphan.MUICache C:\Users\katakuri3d2y\AppData\Local\Discord\app-1.0.9008\Discord.exe =>.SUP.Discord [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\users\katakuri3d2y\appdata\local\discord\app-1.0.9008\discord.exe.FriendlyAppName =>.SUP.Discord [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\users\katakuri3d2y\appdata\local\discord\app-1.0.9008\discord.exe.ApplicationCompany =>.SUP.Discord [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\LOL\Riot Games\Riot Client\UX\RiotClientUx.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\LOL\Riot Games\Riot Client\UX\RiotClientUx.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\sedatools\lib\sipc\1.2.3.r\x86-nt\sipc_console.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\sedatools\lib\deckbuild\5.0.10.r\x86_64-windows\deckbuild.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Katakuri3D2Y\Downloads\Firefox Installer.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Katakuri3D2Y\Downloads\Firefox Installer.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Katakuri3D2Y\Downloads\VSCodeUserSetup-x64-1.77.0.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Katakuri3D2Y\Downloads\VSCodeUserSetup-x64-1.77.0.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\sedatools\exe\sflm.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\my stuff\st\Study Apps\_Getintopc.com_Silvaco_TCAD_2019x64\Silvaco_TCAD_2019x64\Crack\rpc.sflmserverd.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\sedatools\lib\tonyplot\3.10.22.r\x86_64-windows\tonyplot.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\my stuff\PC stuff\Programs\New folder (2)\Selfishnet win 7\SelfishNetv0.2-beta_vista.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Katakuri3D2Y\AppData\Local\Palia\Client\Palia\Binaries\Win64\PaliaClient-Win64-Shipping.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Katakuri3D2Y\AppData\Local\Palia\Client\Palia\Binaries\Win64\PaliaClient-Win64-Shipping.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\lol\riot games\riot client\riotclientelectron\riot client.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\lol\riot games\riot client\riotclientelectron\riot client.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Katakuri3D2Y\Downloads\avast_free_antivirus_setup_online (1).exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Katakuri3D2Y\Downloads\avast_free_antivirus_setup_online (1).exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Katakuri3D2Y\Desktop\run.cmd.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\games\Beyond - Two Souls\BeyondTwoSouls_Steam.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\games\LOL\Riot Games\League of Legends\Game\League of Legends.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\games\LOL\Riot Games\League of Legends\Game\League of Legends.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\lol\riot games\riot client\riotclientservices.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\lol\riot games\riot client\riotclientservices.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\LOL\Riot Games\League of Legends\Game\League of Legends.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\LOL\Riot Games\League of Legends\Game\League of Legends.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\games\ArcheAge\ArcheAge_Launcher.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\users\katakuri3d2y\appdata\local\discord\app-1.0.9008\discord.exe.FriendlyAppName =>.SUP.Discord [HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\users\katakuri3d2y\appdata\local\discord\app-1.0.9008\discord.exe.ApplicationCompany =>.SUP.Discord [HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\LOL\Riot Games\Riot Client\UX\RiotClientUx.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\LOL\Riot Games\Riot Client\UX\RiotClientUx.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\sedatools\lib\sipc\1.2.3.r\x86-nt\sipc_console.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\sedatools\lib\deckbuild\5.0.10.r\x86_64-windows\deckbuild.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Katakuri3D2Y\Downloads\Firefox Installer.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Katakuri3D2Y\Downloads\Firefox Installer.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Katakuri3D2Y\Downloads\VSCodeUserSetup-x64-1.77.0.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Katakuri3D2Y\Downloads\VSCodeUserSetup-x64-1.77.0.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\sedatools\exe\sflm.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\my stuff\st\Study Apps\_Getintopc.com_Silvaco_TCAD_2019x64\Silvaco_TCAD_2019x64\Crack\rpc.sflmserverd.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\sedatools\lib\tonyplot\3.10.22.r\x86_64-windows\tonyplot.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\my stuff\PC stuff\Programs\New folder (2)\Selfishnet win 7\SelfishNetv0.2-beta_vista.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Katakuri3D2Y\AppData\Local\Palia\Client\Palia\Binaries\Win64\PaliaClient-Win64-Shipping.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Katakuri3D2Y\AppData\Local\Palia\Client\Palia\Binaries\Win64\PaliaClient-Win64-Shipping.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\lol\riot games\riot client\riotclientelectron\riot client.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\lol\riot games\riot client\riotclientelectron\riot client.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Katakuri3D2Y\Downloads\avast_free_antivirus_setup_online (1).exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Katakuri3D2Y\Downloads\avast_free_antivirus_setup_online (1).exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Katakuri3D2Y\Desktop\run.cmd.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-3281570312-2569251169-3552750206-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\games\Beyond - Two Souls\BeyondTwoSouls_Steam.exe.FriendlyAppName =>.Unsigned ---\\ Summary of the elements found (6) - 0s https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan https://nicolascoolman.eu/forum/Topic/Discord-logiciel-potentiellement-superflu-lps/ =>.SUP.Discord https://nicolascoolman.eu/forum/Topic/warning-eventlogapp-evenement-dapplication/ =>Warning.EventLogApp https://nicolascoolman.eu/forum/Topic/warning-eventlogsys-evenement-systeme/ =>Warning.EventLogSys https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.Temporary.Chrome https://nicolascoolman.eu/forum/Topic/orphan-muicache-logiciel-potentiellement-superflu-lps/ =>.SUP.Orphan.MUICache ---\\ Serial Number [00F0B6855167F41310BE498DEC91901B74] [03/04/2023] (.Duong Dieu Phap.) - C:\Users\Katakuri3D2Y\AppData\Local\Programs\ImageGlass\ImageGlass.exe =>.Not verified [0111C69A751AB53D0C4C4D18B9ED0A00] [06/05/2024] (.COGNOSPHERE PTE. LTD..) - D:\games\Genshin Impact\launcher.exe =>.Not verified [0111C69A751AB53D0C4C4D18B9ED0A00] [12/05/2024] (.COGNOSPHERE PTE. LTD..) - D:\games\Genshin Impact luncher\HoYoPlay\launcher.exe =>.Not verified [0111C69A751AB53D0C4C4D18B9ED0A00] [12/05/2024] (.COGNOSPHERE PTE. LTD..) - D:\games\Genshin Impact luncher\HoYoPlay\uninstall.exe =>.Not verified [0111C69A751AB53D0C4C4D18B9ED0A00] [17/07/2024] (.COGNOSPHERE PTE. LTD..) - D:\games\Genshin Impact\Genshin Impact Game\GenshinImpact.exe =>.Not verified [01E20D5BE0B5190B1DBFDE9BEF380D9A] [09/12/2022] (.Discord Inc..) - C:\users\katakuri3d2y\appdata\local\discord\app-1.0.9008\discord.exe =>.SUP.Discord [01E20D5BE0B5190B1DBFDE9BEF380D9A] [09/12/2022] (.Discord Inc..) - C:\Users\Katakuri3D2Y\AppData\Local\Discord\Update.exe =>.SUP.Discord [02FA994D660DE659EE9037ECB437D766] [14/06/2022] (.Piriform Software Ltd.) - C:\Program Files\Speccy\Speccy64.exe =>.Piriform Software Ltd [02FA994D660DE659EE9037ECB437D766] [14/06/2022] (.Piriform Software Ltd.) - C:\Program Files\Speccy\uninst.exe =>.Piriform Software Ltd [0320BE3EB866526927F999B97B04346E] [26/09/2018] (.Realtek Semiconductor Corp..) - C:\Windows\RtkBtManServ.exe =>.Realtek Semiconductor Corp. [0320BE3EB866526927F999B97B04346E] [26/09/2018] (.Realtek Semiconductor Corp..) - C:\Windows\System32\drivers\RtkBtfilter.sys =>.Realtek Semiconductor Corp. [0363E58EA376A32F24C51EB7546955AB] [20/03/2020] (.Riot Games, Inc..) - D:\Riot Games\Hextech Repair Tool\Hextech Repair Tool.exe =>.Riot Games, Inc. [03BD221937F2D796FA7029547B190301] [08/05/2024] (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\Program Files\EaseUS\EaseUS Data Recovery Wizard\DRWUI.exe =>.Not verified [03BD221937F2D796FA7029547B190301] [18/04/2024] (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\Program Files\EaseUS\EaseUS Data Recovery Wizard\DRW.exe =>.Not verified [0407ABB64E9990180789EACB81F5F914] [08/11/2022] (.VideoLAN.) - C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN [055100FDBCB3E2F470A627F03FCFE5B8] [14/07/2022] (.Nvidia Corporation.) - C:\Windows\System32\drivers\nvvhci.sys =>.Nvidia Corporation [055100FDBCB3E2F470A627F03FCFE5B8] [14/07/2022] (.Nvidia Corporation.) - C:\Windows\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys =>.Nvidia Corporation [0575E1F7EC9BD8A67A3F6189C63E97BB] [26/06/2024] (.PIRIFORM SOFTWARE LIMITED.) - C:\Program Files\CCleaner\CCleaner64.exe =>.PIRIFORM SOFTWARE LIMITED [0575E1F7EC9BD8A67A3F6189C63E97BB] [26/06/2024] (.PIRIFORM SOFTWARE LIMITED.) - C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe =>.PIRIFORM SOFTWARE LIMITED [059F2289AA154191E4B96A4797AFE67F] [15/10/2023] (.TEDDYSOFT OOD.) - C:\Users\Katakuri3D2Y\AppData\Local\StreamingVideoProvider\ScreenRec_app\screenrec.exe =>.Not verified [0636AFB1DA06CA9791388B36E258D048] [13/01/2023] (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe =>.NVIDIA Corporation [0636AFB1DA06CA9791388B36E258D048] [20/01/2023] (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe =>.NVIDIA Corporation [063D0C011B143C57893FE839779AFCD0] [25/11/2022] (.Realtek Semiconductor Corp..) - C:\Windows\System32\drivers\rtwlane02.sys =>.Realtek Semiconductor Corp. [068033EE736CDDF17B241B41E65EF935] [26/06/2024] (.Piriform Software Ltd.) - C:\Program Files\CCleaner\uninst.exe =>.Piriform Software Ltd [0686ED403EC1BF441C8F335C841EEA00] [01/04/2024] (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\Program Files (x86)\EaseUS\ENS\ensserver.exe =>.CHENGDU YIWO Tech Development Co., Ltd. [0686ED403EC1BF441C8F335C841EEA00] [24/05/2024] (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\Program Files\EaseUS\EaseUS Data Recovery Wizard\unins000.exe =>.CHENGDU YIWO Tech Development Co., Ltd. [07C70F7CAB145BC1ED385FBE69FA3130] [20/07/2024] (.AVAST Software s.r.o..) - C:\ProgramData\AvastSvcpCP\AvastSvc.exe =>.AVAST Software s.r.o. [0800EE4ED1A959CC9887E905AD662BFE] [13/12/2022] (.Nvidia Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe =>.Nvidia Corporation [0800EE4ED1A959CC9887E905AD662BFE] [14/10/2022] (.Nvidia Corporation.) - C:\Windows\System32\drivers\nvvad64v.sys =>.Nvidia Corporation [0800EE4ED1A959CC9887E905AD662BFE] [15/03/2022] (.Nvidia Corporation.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.Nvidia Corporation [0800EE4ED1A959CC9887E905AD662BFE] [20/01/2023] (.Nvidia Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe =>.Nvidia Corporation [0800EE4ED1A959CC9887E905AD662BFE] [24/06/2022] (.Nvidia Corporation.) - C:\Windows\System32\DriverStore\FileRepository\nvcvig.inf_amd64_3495276d23a96c1a\Display.NvContainer\NVDisplay.Container.exe =>.Nvidia Corporation [0800EE4ED1A959CC9887E905AD662BFE] [24/06/2022] (.Nvidia Corporation.) - C:\Windows\System32\DriverStore\FileRepository\nvcvig.inf_amd64_3495276d23a96c1a\nv3dappshext.dll =>.Nvidia Corporation [0800EE4ED1A959CC9887E905AD662BFE] [24/06/2022] (.Nvidia Corporation.) - C:\Windows\System32\DriverStore\FileRepository\nvcvig.inf_amd64_3495276d23a96c1a\nvlddmkm.sys =>.Nvidia Corporation [0800EE4ED1A959CC9887E905AD662BFE] [24/06/2022] (.Nvidia Corporation.) - C:\Windows\System32\DriverStore\FileRepository\nvcvig.inf_amd64_3495276d23a96c1a\nvshext.dll =>.Nvidia Corporation [0800EE4ED1A959CC9887E905AD662BFE] [27/01/2023] (.Nvidia Corporation.) - C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe =>.Nvidia Corporation [08B400989A7B9F0D6E71BE7494B332E1] [11/04/2024] (.PROXIMA BETA PTE. LIMITED.) - C:\Users\Katakuri3D2Y\AppData\Local\TARISMiniloader\TARISMiniloader.exe =>.Not verified [08B400989A7B9F0D6E71BE7494B332E1] [20/06/2024] (.PROXIMA BETA PTE. LIMITED.) - C:\Program Files\AntiCheatExpert\SGuard\x64\SGuard64.exe =>.Not verified [08B400989A7B9F0D6E71BE7494B332E1] [20/06/2024] (.PROXIMA BETA PTE. LIMITED.) - C:\Program Files\AntiCheatExpert\SGuard\x64\SGuardSvc64.exe =>.Not verified [08B400989A7B9F0D6E71BE7494B332E1] [20/06/2024] (.PROXIMA BETA PTE. LIMITED.) - D:\Tarisland\launcher\taris_launcher.exe =>.Not verified [08B400989A7B9F0D6E71BE7494B332E1] [20/06/2024] (.PROXIMA BETA PTE. LIMITED.) - D:\Tarisland\launcher\uninst.exe =>.Not verified [08CAC31510BE836A5069A30813AF3795] [22/12/2019] (.Ubisoft Entertainment.) - D:\games\far cry 3 - duology\far cry 3\bin\farcry3.exe =>.Ubisoft Entertainment [08CAC31510BE836A5069A30813AF3795] [22/12/2019] (.Ubisoft Entertainment.) - D:\games\far cry 3 - duology\far cry 3\bin\farcry3_d3d11.exe =>.Ubisoft Entertainment [0997C56CAA59055394D9A9CDB8BEEB56] [18/07/2024] (.NVIDIA Corporation.) - C:\Users\Katakuri3D2Y\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe =>.Not verified [0997C56CAA59055394D9A9CDB8BEEB56] [18/07/2024] (.NVIDIA Corporation.) - C:\Users\Katakuri3D2Y\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\OAWrapper.exe =>.Not verified [0997C56CAA59055394D9A9CDB8BEEB56] [18/07/2024] (.NVIDIA Corporation.) - C:\Users\Katakuri3D2Y\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\Ontology64.dll =>.Not verified [0AF4B47E1A5EEDA06DB90E772E799A07] [09/12/2022] (.Windscribe Limited.) - C:\Windows\System32\drivers\tapwindscribe0901.sys =>.Not verified [0AF4B47E1A5EEDA06DB90E772E799A07] [09/12/2022] (.Windscribe Limited.) - C:\Windows\System32\DRIVERS\WindscribeSplitTunnel.sys =>.Not verified [0AF4B47E1A5EEDA06DB90E772E799A07] [09/12/2022] (.Windscribe Limited.) - C:\Windows\System32\drivers\windtun420.sys =>.Not verified [0AFC69772AE1EA9A285731B6AA4523C6] [21/07/2024] (.TechPowerUp LLC.) - C:\Users\Katakuri3D2Y\AppData\Local\Temp\ThrottleStop.sys =>.Not verified [0B50CF246B263EFD85A729315158F3FF] [15/07/2024] (.Google LLC.) - C:\Program Files (x86)\Google\GoogleUpdater\128.0.6597.0\updater.exe =>.Google LLC [0B50CF246B263EFD85A729315158F3FF] [15/07/2024] (.Google LLC.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google LLC [0B8F52FAF64C421EABB2275AE148C519] [25/11/2022] (.Realtek Semiconductor Corp..) - C:\Windows\System32\drivers\rt640x64.sys =>.Realtek Semiconductor Corp. [0B8F52FAF64C421EABB2275AE148C519] [25/11/2022] (.Realtek Semiconductor Corp..) - C:\Windows\System32\DRIVERS\RtsPer.sys =>.Realtek Semiconductor Corp. [0C067D0F436427B359B7A6BABD673873] [21/12/2022] (.Wellbia.com Co., Ltd..) - C:\Windows\xhunter1.sys =>.Wellbia.com Co., Ltd. [0C1CD3EEA47EDDA7A032573B014D0AFD] [11/07/2024] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation [0C1CD3EEA47EDDA7A032573B014D0AFD] [11/07/2024] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation [0C1CD3EEA47EDDA7A032573B014D0AFD] [11/07/2024] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\private_browsing.exe =>.Mozilla Corporation [0C1CD3EEA47EDDA7A032573B014D0AFD] [11/07/2024] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation [0CD1D038015129A43DA0AEE211859C8E] [17/07/2024] (.Riot Games, Inc..) - C:\lol new\riot games\riot client\riotclientelectron\riot client.exe =>.Not verified [0CD1D038015129A43DA0AEE211859C8E] [17/07/2024] (.Riot Games, Inc..) - C:\lol new\Riot Games\Riot Client\RiotClientServices.exe =>.Not verified [0CD1D038015129A43DA0AEE211859C8E] [27/06/2024] (.Riot Games, Inc..) - C:\Program Files\Riot Vanguard\vgk.sys =>.Not verified [0CD1D038015129A43DA0AEE211859C8E] [28/06/2024] (.Riot Games, Inc..) - C:\Program Files\Riot Vanguard\installer.exe =>.Not verified [0CD1D038015129A43DA0AEE211859C8E] [28/06/2024] (.Riot Games, Inc..) - C:\Program Files\Riot Vanguard\vgc.exe =>.Not verified [0CD1D038015129A43DA0AEE211859C8E] [28/06/2024] (.Riot Games, Inc..) - C:\Program Files\Riot Vanguard\vgtray.exe =>.Not verified [0D7E33145979E788F23FBAFF5A3FA9F9] [11/08/2020] (.TechPowerUp LLC.) - C:\Users\Katakuri3D2Y\Desktop\ThrottleStop_9.2\ThrottleStop.exe =>.Not verified [0DFE7BA482F076DB90BCC22B2C487CBD] [11/08/2023] (.Epic Games Inc..) - C:\ProgramData\Package Cache\{aad8a4b2-74da-409d-abb6-79a299008692}\UEPrereqSetup_x64.exe =>.Epic Games Inc. [0E4418E2DEDE36DD2974C3443AFB5CE5] [17/07/2024] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\126.0.6478.128\Installer\chrmstp.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [17/07/2024] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\126.0.6478.128\Installer\setup.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [22/06/2024] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\126.0.6478.128\elevation_service.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [22/06/2024] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC [0EFF9517607A017C05655C6D48C776E4] [25/11/2022] (.CLEVO CO..) - C:\Program Files\Insyde\AirplaneModeDriver\DPInst.exe =>.CLEVO CO. [0F5EE43BEEA50ED5F0EC765BF65B1350] [09/12/2022] (.Windscribe Limited.) - C:\Program Files\Windscribe\uninstall.exe =>.Not verified [0F5EE43BEEA50ED5F0EC765BF65B1350] [09/12/2022] (.Windscribe Limited.) - C:\Program Files\Windscribe\WindscribeService.exe =>.Not verified [1402AEEF0D31BE743E73F6A7A960C4F4] [01/03/2013] (.Riverbed Technology, Inc..) - C:\Program Files (x86)\WinPcap\rpcapd.exe =>.Riverbed Technology, Inc. [1402AEEF0D31BE743E73F6A7A960C4F4] [01/03/2013] (.Riverbed Technology, Inc..) - C:\Windows\System32\drivers\npf.sys =>.Riverbed Technology, Inc. [1D9FF0CFF14FE700963E52F6CDACF575] [04/08/2015] (.Synaptics Incorporated.) - C:\Windows\System32\drivers\Smb_driver_AMDASF_Aux.sys =>.Synaptics Incorporated [1D9FF0CFF14FE700963E52F6CDACF575] [04/08/2015] (.Synaptics Incorporated.) - C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys =>.Synaptics Incorporated [1D9FF0CFF14FE700963E52F6CDACF575] [04/08/2015] (.Synaptics Incorporated.) - C:\Windows\System32\drivers\Smb_driver_Intel_Aux.sys =>.Synaptics Incorporated [30ACA6767692FDD9FB41B3E5B53F0E71] [25/11/2022] (.Synaptics Incorporated.) - C:\Windows\System32\DRIVERS\SynTP.sys =>.Synaptics Incorporated [30ACA6767692FDD9FB41B3E5B53F0E71] [25/11/2022] (.Synaptics Incorporated.) - C:\Windows\System32\SynTPEnhService.exe =>.Synaptics Incorporated [330000B97FAEF583F53CC47FCD00020000B97F] [25/11/2022] (.Intel(R) Rapid Storage Technology.) - C:\Windows\System32\drivers\iaStorA.sys =>.Intel(R) Rapid Storage Technology [36336D836A19E244FF0E52882EB5B1DE] [25/11/2022] (.Creative Labs Inc.) - C:\Program Files (x86)\OpenAL\oalinst.exe =>.Creative Labs Inc [41D2B340D783D773ED498A6D83C68A50] [07/08/2012] (.EGIS TECHNOLOGY INC..) - C:\Windows\System32\Drivers\FPSensor.sys =>.EGIS TECHNOLOGY INC. [56000001475EA46CCAEF0B7481000000000147] [25/11/2022] (.Intel(R) Trust Services.) - C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\SocketHeciServer.exe =>.Intel(R) Trust Services [56000001475EA46CCAEF0B7481000000000147] [25/11/2022] (.Intel(R) Trust Services.) - C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\TPMProvisioningService.exe =>.Intel(R) Trust Services [56000001757376CD78AD000C9A000000000175] [25/11/2022] (.Intel(R) Embedded Subsystems and IP Blocks Group.) - C:\Windows\System32\drivers\TeeDriverW8x64.sys =>.Intel(R) Embedded Subsystems and IP Blocks Group [5600000C148C3F94CD2631870A000000000C14] [21/01/2021] (.IntelGfxReleaseExternal2020.) - C:\Program Files (x86)\Intel\Intel(R) Processor Graphics\Uninstall\igxpin.exe =>.IntelGfxReleaseExternal2020 [5600000C148C3F94CD2631870A000000000C14] [25/11/2022] (.IntelGfxReleaseExternal2020.) - C:\ProgramData\Package Cache\{d9e1af9c-46b1-481f-bd13-dffef7b14da2}\win64_15.40.5171.exe =>.IntelGfxReleaseExternal2020 [5600000C3BF9A3682289A06F40000000000C3B] [02/12/2020] (.Intel(R) pGFX 2020.) - C:\Windows\System32\DRIVERS\igdkmd64.sys =>.Intel(R) pGFX 2020 [5600000C3BF9A3682289A06F40000000000C3B] [02/12/2020] (.Intel(R) pGFX 2020.) - C:\Windows\System32\igfxCUIService.exe =>.Intel(R) pGFX 2020 [5600000C3BF9A3682289A06F40000000000C3B] [02/12/2020] (.Intel(R) pGFX 2020.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel(R) pGFX 2020 [62E745E92165213C971F5C490AEA12A5] [24/06/2022] (.NVIDIA Corporation.) - C:\Windows\System32\drivers\NvModuleTracker.sys =>.NVIDIA Corporation [66EBB3883CE01617FEAD0BA0B96D302D] [25/11/2022] (.Insyde Software Corp..) - C:\Windows\System32\DRIVERS\AirplaneModeHid.sys =>.Insyde Software Corp. [6D1513EDD0DEB0F8CFDFA58380D9B321] [17/01/2020] (.TeddySoft Ltd..) - C:\Users\Katakuri3D2Y\AppData\Local\StreamingVideoProvider\ScreenRec_app\uninstall.exe =>.Not verified [6D1513EDD0DEB0F8CFDFA58380D9B321] [29/05/2021] (.TeddySoft Ltd..) - D:\my stuff\PC stuff\Programs\ScreenRec_webinstall_all.exe =>.Not verified [731D40AE3F3A1FB2BC3D8395] [03/03/2022] (.win.rar GmbH.) - C:\Program Files\WinRAR\Rar.exe =>.win.rar GmbH [731D40AE3F3A1FB2BC3D8395] [03/03/2022] (.win.rar GmbH.) - C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH [731D40AE3F3A1FB2BC3D8395] [03/03/2022] (.win.rar GmbH.) - C:\Program Files\WinRAR\uninstall.exe =>.win.rar GmbH [737BE9572E71E147EB7F035C287710BD] [25/11/2022] (.ELAN MICROELECTRONICS CORPORATION.) - C:\Windows\System32\drivers\ETDSMBus.sys =>.ELAN MICROELECTRONICS CORPORATION ~ Unselected Options: WR, O82, ~ End of the scan, 8167 items in 03mn59s (2140)(0)